From c3ddacbddbb6efa70e5dbe1d8aa8c8f5090fda7b Mon Sep 17 00:00:00 2001 From: Jason Johnston Date: Mon, 3 Aug 2026 13:47:49 -0400 Subject: [PATCH 001/189] Delete API Doctor pipeline config (#29390) * Update security-auditrecordtypedictionary.md * Delete apidoctor.validation.yml --- .../security-auditrecordtypedictionary.md | 2 +- apidoctor.validation.yml | 136 ------------------ 2 files changed, 1 insertion(+), 137 deletions(-) delete mode 100644 apidoctor.validation.yml diff --git a/api-reference/beta/resources/security-auditrecordtypedictionary.md b/api-reference/beta/resources/security-auditrecordtypedictionary.md index 840d976a40c..9849a5409d0 100644 --- a/api-reference/beta/resources/security-auditrecordtypedictionary.md +++ b/api-reference/beta/resources/security-auditrecordtypedictionary.md @@ -37,4 +37,4 @@ The following JSON representation shows the resource type. { "@odata.type": "#microsoft.graph.security.auditRecordTypeDictionary" } -``` +``` diff --git a/apidoctor.validation.yml b/apidoctor.validation.yml deleted file mode 100644 index 683638e585f..00000000000 --- a/apidoctor.validation.yml +++ /dev/null @@ -1,136 +0,0 @@ -# Copyright (c) Microsoft Corporation. All rights reserved. -# Licensed under the MIT License. - -# Pipeline for validating Microsoft Graph docs using API Doctor - -trigger: - branches: - include: - - live - - main - -pr: - branches: - include: - - live - - main - -parameters: - - name: useNuGetPackage - displayName: "Use API Doctor NuGet Package (If disabled, source code from GitHub will be used)?" - type: boolean - default: true - - - name: apiDoctorNuGetVersion - default: "1.2.2312.152" - displayName: "API Doctor NuGet Package Version" - - - name: apiDoctorGitRepoUrl - default: "https://github.com/OneDrive/apidoctor.git" - displayName: "API Doctor Git Repo URL" - - - name: apiDoctorGitBranch - default: "master" - displayName: "API Doctor Git branch" - -resources: - repositories: - - repository: 1ESPipelineTemplates - type: git - name: 1ESPipelineTemplates/1ESPipelineTemplates - ref: refs/tags/release - -extends: - template: v1/1ES.Official.PipelineTemplate.yml@1ESPipelineTemplates - parameters: - pool: - name: Azure-Pipelines-1ESPT-ExDShared - image: windows-2022 - os: windows - sdl: - credscan: - suppressionsFile: $(Build.SourcesDirectory)\.azure-pipelines\.config\CredScanSuppressions.json - baseline: - baselineFile: $(Build.SourcesDirectory)\.gdn\.gdnbaselines - suppression: - suppressionFile: $(Build.SourcesDirectory)\.gdn\.gdnsuppress - customBuildTags: - - ES365AIMigrationTooling - - stages: - - stage: ValidateDocs - displayName: "Validate docs" - jobs: - - job: RunAPIDoctorScript - displayName: "Run API Doctor script" - variables: - USE_NUGET_PACKAGE: ${{ parameters.useNuGetPackage }} - API_DOCTOR_NUGET_VERSION: ${{ parameters.apiDoctorNuGetVersion }} - API_DOCTOR_GIT_REPO_URL: ${{ parameters.apiDoctorGitRepoUrl }} - API_DOCTOR_GIT_BRANCH: ${{ parameters.apiDoctorGitBranch }} - steps: - - pwsh: | - Write-Host "Executing API Doctor script with the following parameters:" - if ($env:USE_NUGET_PACKAGE -eq $true) { - if ([string]::IsNullOrWhiteSpace($env:USE_NUGET_PACKAGE)) { - Write-Host "API Doctor NuGet package version has not been set. Aborting..." - exit 1 - } - Write-Host " - API Doctor NuGet Version: $($env:API_DOCTOR_NUGET_VERSION)" - } - else { - if ([string]::IsNullOrWhiteSpace($env:API_DOCTOR_GIT_REPO_URL)) { - Write-Host "API Doctor Git Repo URL has not been set. Aborting..." - exit 1 - } - Write-Host " - API Doctor Git Repo URL: $($env:API_DOCTOR_GIT_REPO_URL)" - Write-Host " - API Doctor Git Branch: $($env:API_DOCTOR_GIT_BRANCH)" - } - displayName: "Evaluate pipeline parameters" - - - checkout: self - displayName: "Checkout Microsoft Graph docs" - clean: true - fetchDepth: 1 - - - task: UseDotNet@2 - displayName: "Use .NET Core SDK 6.x" - inputs: - version: 6.x - - - task: UseDotNet@2 - displayName: "Use .NET Core SDK 8.x" - inputs: - version: 8.x - - # Configure and authenticate the central package feed (CFS network isolation) - - task: NuGetAuthenticate@1 - displayName: "Authenticate to Azure Artifacts" - - - pwsh: | - @" - - - - - - - - "@ | Set-Content -Path "$(Build.SourcesDirectory)\nuget.config" -Encoding UTF8 - displayName: "Create nuget.config (central feed)" - - - task: PowerShell@2 - displayName: "Validate v1.0 docs" - env: - DOCS_SUB_PATH: \api-reference\v1.0 - inputs: - filePath: Test-Docs.ps1 - arguments: -cleanUp - - - task: PowerShell@2 - displayName: "Validate beta docs" - env: - DOCS_SUB_PATH: \api-reference\beta - inputs: - filePath: Test-Docs.ps1 - arguments: -cleanUp From c3e7f1541d9ff2d12a009038dd3a5f840d836faa Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 3 Aug 2026 13:45:03 -0600 Subject: [PATCH 002/189] 2026-08-03: Automated permissions reference update (#29382) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling --- concepts/permissions-reference.md | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/concepts/permissions-reference.md b/concepts/permissions-reference.md index 8022cdee23c..9b471d9e642 100644 --- a/concepts/permissions-reference.md +++ b/concepts/permissions-reference.md @@ -7,7 +7,7 @@ ms.localizationpriority: high ms.topic: reference ms.subservice: entra-applications ms.custom: graphiamtop20, scenarios:getting-started -ms.date: 07/27/2026 +ms.date: 08/03/2026 #Customer intent: As a developer, I want to learn more about the permissions available in Microsoft Graph, so that I understand the impact of granting specific permissions to my app. --- @@ -705,8 +705,8 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000 | Category | Application | Delegated | |--|--|--| | Identifier | 1bfefb4e-e0b5-418b-a88f-73c46d2cc8e9 | bdfbf15f-ee85-4955-8675-146e8e5296b5 | -| DisplayText | Read and write all applications | Read and write all applications | -| Description | Allows the app to create, read, update and delete applications and service principals without a signed-in user. Does not allow management of consent grants. | Allows the app to create, read, update and delete applications and service principals on behalf of the signed-in user. Does not allow management of consent grants. | +| DisplayText | Read and write all applications | Read and write applications | +| Description | Allows the app to create, read, update and delete applications and service principals without a signed-in user. Allows management of app role assignments, except those exposed by Microsoft Graph. Does not allow management of delegated permission grants. | Allows the app to create, read, update and delete applications and service principals on behalf of the signed-in user. Allows management of app role assignments, except those exposed by Microsoft Graph. Does not allow management of delegated permission grants. | | AdminConsentRequired | Yes | Yes | ![personal Microsoft accounts][MSA] The *Application.ReadWrite.All* delegated permission is available for consent in personal Microsoft accounts. @@ -9764,7 +9764,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000 | Category | Application | Delegated | |--|--|--| | Identifier | 50483e42-d915-4231-9639-7fdb7fd190e5 | b7887744-6746-4312-813d-72daeaee7e2d | -| DisplayText | Read and write all users' authentication methods | Read and write all users' authentication methods. | +| DisplayText | Read and write all users' authentication methods | Read and write all users' authentication methods | | Description | Allows the application to read and write authentication methods of all users in your organization, without a signed-in user. Authentication methods include things like a user's phone numbers and Authenticator app settings. This does not allow the app to see secret information like passwords, or to sign-in or otherwise use the authentication methods | Allows the app to read and write authentication methods of all users in your organization that the signed-in user has access to. Authentication methods include things like a user's phone numbers and Authenticator app settings. This does not allow the app to see secret information like passwords, or to sign-in or otherwise use the authentication methods. | | AdminConsentRequired | Yes | Yes | From b569a7ae65107607011e3ac38ab617a8698e3cfc Mon Sep 17 00:00:00 2001 From: Tim Larson <50213291+tilarso@users.noreply.github.com> Date: Mon, 3 Aug 2026 15:44:51 -0500 Subject: [PATCH 003/189] Update Verified ID profile beta documentation (#29327) * Update Verified ID profile beta documentation * Address Verified ID documentation review feedback * Fix unpublished Verified ID changelog links * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixes. * What's new * Update reference TOC * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address remaining Verified ID review comments * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Tim Larson Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> --- .../identityverifiedidroot-list-profiles.md | 26 ++++-- .../identityverifiedidroot-post-profiles.md | 44 ++++++++-- .../beta/api/verifiedidprofile-get.md | 82 +++++++++++-------- .../beta/api/verifiedidprofile-update.md | 45 ++++++---- api-reference/beta/resources/claimbinding.md | 4 +- api-reference/beta/resources/enums.md | 11 +++ .../beta/resources/facecheckconfiguration.md | 4 +- .../mobiledriverslicenseconfiguration.md | 50 +++++++++++ .../beta/resources/verifiedidprofile.md | 16 +++- .../verifiedidprofileconfiguration.md | 16 ++-- .../verifiedidselfserviceissuance.md | 48 +++++++++++ .../resources/verifiedidusageconfiguration.md | 4 +- api-reference/beta/toc/toc.mapping.json | 4 + ...icrosoft.VerifiedId.VerifiedIdProfile.json | 76 ++++++++++++++++- concepts/whats-new-overview.md | 2 + 15 files changed, 351 insertions(+), 81 deletions(-) create mode 100644 api-reference/beta/resources/mobiledriverslicenseconfiguration.md create mode 100644 api-reference/beta/resources/verifiedidselfserviceissuance.md diff --git a/api-reference/beta/api/identityverifiedidroot-list-profiles.md b/api-reference/beta/api/identityverifiedidroot-list-profiles.md index 7cc1f33c414..25a98987b31 100644 --- a/api-reference/beta/api/identityverifiedidroot-list-profiles.md +++ b/api-reference/beta/api/identityverifiedidroot-list-profiles.md @@ -8,7 +8,7 @@ ms.subservice: "entra-sign-in" doc_type: apiPageType --- -# List verifiedIdProfile objects +# List verifiedIdProfile objects Namespace: microsoft.graph @@ -39,7 +39,7 @@ GET /identity/verifiedId/profiles ## Optional query parameters -None +None ## Request headers @@ -125,7 +125,9 @@ Content-Type: application/json "verifierDid": "did:web:eu.did-dev.contoso.io", "priority": 1, "verifiedIdProfileConfiguration": { + "methodType": "tenantCustomCredential", "type": "verifiedIdentity", + "manifestUrl": "https://verifiedid.contoso.com/manifest", "acceptedIssuer": "did:web:eu.did-dev.contoso.io", "claimBindingSource": "directory", "claimBindings": [ @@ -137,18 +139,32 @@ Content-Type: application/json "sourceAttribute": "Last name", "verifiedIdClaim": "vc.credentialSubject.lastName" } - ] + ], + "claimValidation": { + "isEnabled": false, + "customExtensionId": "" + } }, "faceCheckConfiguration": { "isEnabled": true, "sourcePhotoClaimName": "portrait" }, + "mobileDriversLicenseConfiguration": { + "acceptedRegions": [ + "region-code" + ], + "documentStandard": "document-standard" + }, "verifiedIdUsageConfigurations": [ { "isEnabledForTestOnly": true, - "purpose": "recovery" + "purpose": "verification" } - ] + ], + "selfServiceIssuance": { + "isEnabled": true, + "issuanceUrl": "https://verifiedid.contoso.com/issue" + } } ] } diff --git a/api-reference/beta/api/identityverifiedidroot-post-profiles.md b/api-reference/beta/api/identityverifiedidroot-post-profiles.md index 166351d2b99..368c9cd3a55 100644 --- a/api-reference/beta/api/identityverifiedidroot-post-profiles.md +++ b/api-reference/beta/api/identityverifiedidroot-post-profiles.md @@ -52,15 +52,17 @@ You can specify the following properties when creating a **verifiedIdProfile**. |Property|Type|Description| |:---|:---|:---| -|name|String| Display name for the verified Id profile. Required.| |description|String| Description for the verified Id profile. Required.| +|faceCheckConfiguration|[faceCheckConfiguration](../resources/facecheckconfiguration.md)| Set of properties configuring Entra Verified ID Face Check behavior. Required.| |lastModifiedDateTime|DateTimeOffset|DateTime the profile was last modified. Optional.| +|mobileDriversLicenseConfiguration|[mobileDriversLicenseConfiguration](../resources/mobiledriverslicenseconfiguration.md)|Configuration for accepting mobile driver's licenses. Optional.| +|name|String| Display name for the verified Id profile. Required.| +|priority|Int32|Defines profile processing priority if multiple profiles are configured. Optional.| +|selfServiceIssuance|[verifiedIdSelfServiceIssuance](../resources/verifiedidselfserviceissuance.md)|Configuration for self-service issuance. Optional.| |state|verifiedIdProfileState| Enablement state for the profile. The possible values are: `enabled`, `disabled`, `unknownFutureValue`. Required.| -|verifierDid|String| Decentralized Identifier (DID) string that represents the verifier in the verifiable credential exchange. Required.| -|priority|Int32|Defines profile processing priority if multiple profiles are configured. Optional.| |verifiedIdProfileConfiguration|[verifiedIdProfileConfiguration](../resources/verifiedidprofileconfiguration.md)| Set of properties expressing the accepted issuer, claims binding, and credential type. Required.| -|faceCheckConfiguration|[faceCheckConfiguration](../resources/facecheckconfiguration.md)| Set of properties configuring Entra Verified ID Face Check behavior. Required.| -|verifiedIdUsageConfigurations|[verifiedIdUsageConfiguration](../resources/verifiedidusageconfiguration.md) collection| Collection defining the usage purpose for the profile. The possible values are: `recovery`, `onboarding`, `all`, `unknownFutureValue`. Required.| +|verifiedIdUsageConfigurations|[verifiedIdUsageConfiguration](../resources/verifiedidusageconfiguration.md) collection| Collection defining the usage purpose for the profile. The possible values are: `recovery`, `onboarding`, `all`, `unknownFutureValue`, `verification`. Use the `Prefer: include-unknown-enum-members` request header to get the following value from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `verification`. Required.| +|verifierDid|String| Decentralized Identifier (DID) string that represents the verifier in the verifiable credential exchange. Required.| ## Response @@ -90,7 +92,9 @@ Content-Type: application/json "verifierDid": "did:web:eu.did-dev.contoso.io", "priority": 0, "verifiedIdProfileConfiguration": { + "methodType": "tenantCustomCredential", "type": "verifiedIdentity", + "manifestUrl": "https://verifiedid.contoso.com/manifest", "acceptedIssuer": "did:web:eu.did-dev.contoso.io", "claimBindingSource": "directory", "claimBindings": [ @@ -108,12 +112,22 @@ Content-Type: application/json "isEnabled": true, "sourcePhotoClaimName": "portrait" }, + "mobileDriversLicenseConfiguration": { + "acceptedRegions": [ + "region-code" + ], + "documentStandard": "document-standard" + }, "verifiedIdUsageConfigurations": [ { "isEnabledForTestOnly": true, - "purpose": "recovery" + "purpose": "verification" } - ] + ], + "selfServiceIssuance": { + "isEnabled": true, + "issuanceUrl": "https://verifiedid.contoso.com/issue" + } } ``` @@ -171,7 +185,9 @@ Content-Type: application/json "verifierDid": "did:web:eu.did-dev.contoso.io", "priority": 0, "verifiedIdProfileConfiguration": { + "methodType": "tenantCustomCredential", "type": "verifiedIdentity", + "manifestUrl": "https://verifiedid.contoso.com/manifest", "acceptedIssuer": "did:web:eu.did-dev.contoso.io", "claimBindingSource": "directory", "claimBindings": [ @@ -189,12 +205,22 @@ Content-Type: application/json "isEnabled": true, "sourcePhotoClaimName": "portrait" }, + "mobileDriversLicenseConfiguration": { + "acceptedRegions": [ + "region-code" + ], + "documentStandard": "document-standard" + }, "verifiedIdUsageConfigurations": [ { "isEnabledForTestOnly": true, - "purpose": "onboarding" + "purpose": "verification" } - ] + ], + "selfServiceIssuance": { + "isEnabled": true, + "issuanceUrl": "https://verifiedid.contoso.com/issue" + } } ``` diff --git a/api-reference/beta/api/verifiedidprofile-get.md b/api-reference/beta/api/verifiedidprofile-get.md index 8c4d7dbca61..91295a8faf0 100644 --- a/api-reference/beta/api/verifiedidprofile-get.md +++ b/api-reference/beta/api/verifiedidprofile-get.md @@ -39,7 +39,7 @@ GET /identity/verifiedId/profiles/{verifiedIdProfileId} ## Optional query parameters -None +None ## Request headers @@ -116,42 +116,54 @@ HTTP/1.1 200 OK Content-Type: application/json { - "value": [ - { - "id": "9dda0ae1-e007-4a1d-81ec-2cf4b1274610", - "name": "Contoso IDV Provider ", - "description": "Contoso Verified Identity", - "lastModifiedDateTime": null, - "state": "enabled", - "verifierDid": "did:web:eu.did-dev.contoso.io", - "priority": 1, - "verifiedIdProfileConfiguration": { - "type": "verifiedIdentity", - "acceptedIssuer": "did:web:eu.did-dev.contoso.io", - "claimBindingSource": "directory", - "claimBindings": [ - { - "sourceAttribute": "First name", - "verifiedIdClaim": "vc.credentialSubject.firstName" - }, - { - "sourceAttribute": "Last name", - "verifiedIdClaim": "vc.credentialSubject.lastName" - } - ] - }, - "faceCheckConfiguration": { - "isEnabled": true, - "sourcePhotoClaimName": "portrait" + "id": "9dda0ae1-e007-4a1d-81ec-2cf4b1274610", + "name": "Contoso IDV Provider", + "description": "Contoso Verified Identity", + "lastModifiedDateTime": null, + "state": "enabled", + "verifierDid": "did:web:eu.did-dev.contoso.io", + "priority": 1, + "verifiedIdProfileConfiguration": { + "methodType": "tenantCustomCredential", + "type": "verifiedIdentity", + "manifestUrl": "https://verifiedid.contoso.com/manifest", + "acceptedIssuer": "did:web:eu.did-dev.contoso.io", + "claimBindingSource": "directory", + "claimBindings": [ + { + "sourceAttribute": "First name", + "verifiedIdClaim": "vc.credentialSubject.firstName" }, - "verifiedIdUsageConfigurations": [ - { - "isEnabledForTestOnly": true, - "purpose": "recovery" - } - ] + { + "sourceAttribute": "Last name", + "verifiedIdClaim": "vc.credentialSubject.lastName" + } + ], + "claimValidation": { + "isEnabled": false, + "customExtensionId": "" + } + }, + "faceCheckConfiguration": { + "isEnabled": true, + "sourcePhotoClaimName": "portrait" + }, + "mobileDriversLicenseConfiguration": { + "acceptedRegions": [ + "region-code" + ], + "documentStandard": "document-standard" + }, + "verifiedIdUsageConfigurations": [ + { + "isEnabledForTestOnly": true, + "purpose": "verification" } - ] + ], + "selfServiceIssuance": { + "isEnabled": true, + "issuanceUrl": "https://verifiedid.contoso.com/issue" + } } ``` diff --git a/api-reference/beta/api/verifiedidprofile-update.md b/api-reference/beta/api/verifiedidprofile-update.md index 5a9aee59272..fd413b8cfdb 100644 --- a/api-reference/beta/api/verifiedidprofile-update.md +++ b/api-reference/beta/api/verifiedidprofile-update.md @@ -1,7 +1,7 @@ --- title: "Update verifiedIdProfile" description: "Update the properties of a verifiedIdProfile object." -author: "tilarso" +author: "tilarso" ms.date: 10/10/2025 ms.localizationpriority: medium ms.subservice: "entra-sign-in" @@ -51,15 +51,17 @@ PATCH /identity/verifiedId/profiles/{verifiedIdProfileId} |Property|Type|Description| |:---|:---|:---| -|name|String| Display name for the verified Id profile. Required.| -|description|String| Description for the verified Id profile. Required.| -|lastModifiedDateTime|DateTimeOffset|DateTime the profile was last modified. Optional.| -|state|verifiedIdProfileState| Enablement state for the profile. The possible values are: `enabled`, `disabled`, `unknownFutureValue`. Required.| -|verifierDid|String| Decentralized Identifier (DID) string that represents the verifier in the verifiable credential exchange. Required.| -|priority|Int32|Defines profile processing priority if multiple profiles are configured. Optional.| -|verifiedIdProfileConfiguration|[verifiedIdProfileConfiguration](../resources/verifiedidprofileconfiguration.md)| Set of properties expressing the accepted issuer, claims binding, and credential type. Required.| -|faceCheckConfiguration|[faceCheckConfiguration](../resources/facecheckconfiguration.md)| Set of properties configuring Entra Verified ID Face Check behavior. Required.| -|verifiedIdUsageConfigurations|[verifiedIdUsageConfiguration](../resources/verifiedidusageconfiguration.md) collection| Collection defining the usage purpose for the profile. The possible values are: `recovery`, `onboarding`, `all`, `unknownFutureValue`. Required.| +|description|String|Description for the verified ID profile.| +|faceCheckConfiguration|[faceCheckConfiguration](../resources/facecheckconfiguration.md)|Set of properties configuring Microsoft Entra Verified ID Face Check behavior.| +|lastModifiedDateTime|DateTimeOffset|Date and time when the profile was last modified.| +|mobileDriversLicenseConfiguration|[mobileDriversLicenseConfiguration](../resources/mobiledriverslicenseconfiguration.md)|Configuration for accepting mobile driver's licenses.| +|name|String|Display name for the verified ID profile.| +|priority|Int32|Defines profile processing priority if multiple profiles are configured.| +|selfServiceIssuance|[verifiedIdSelfServiceIssuance](../resources/verifiedidselfserviceissuance.md)|Configuration for self-service issuance.| +|state|verifiedIdProfileState|Enablement state for the profile. The possible values are: `enabled`, `disabled`, `unknownFutureValue`.| +|verifiedIdProfileConfiguration|[verifiedIdProfileConfiguration](../resources/verifiedidprofileconfiguration.md)|Set of properties expressing the accepted issuer, claims binding, and credential type.| +|verifiedIdUsageConfigurations|[verifiedIdUsageConfiguration](../resources/verifiedidusageconfiguration.md) collection|Collection defining the usage purpose for the profile. The possible values are: `recovery`, `onboarding`, `all`, `unknownFutureValue`, `verification`. Use the `Prefer: include-unknown-enum-members` request header to get the following value from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `verification`.| +|verifierDid|String|Decentralized identifier (DID) string that represents the verifier in the verifiable credential exchange.| @@ -83,14 +85,27 @@ PATCH https://graph.microsoft.com/beta/identity/verifiedId/profiles/ca15ec56-7ad Content-Type: application/json { + "verifiedIdProfileConfiguration": { + "methodType": "tenantCustomCredential", + "manifestUrl": "https://verifiedid.contoso.com/manifest" + }, + "mobileDriversLicenseConfiguration": { + "acceptedRegions": [ + "region-code" + ], + "documentStandard": "document-standard" + }, + "selfServiceIssuance": { + "isEnabled": true, + "issuanceUrl": "https://verifiedid.contoso.com/issue" + }, "verifiedIdUsageConfigurations": [ - { - "isEnabledForTestOnly": false, - "purpose": "recovery" - } + { + "isEnabledForTestOnly": false, + "purpose": "verification" + } ] } - ``` # [C#](#tab/csharp) diff --git a/api-reference/beta/resources/claimbinding.md b/api-reference/beta/resources/claimbinding.md index 2c795836911..f37e322e47a 100644 --- a/api-reference/beta/resources/claimbinding.md +++ b/api-reference/beta/resources/claimbinding.md @@ -21,8 +21,8 @@ Defines the mapping between a source attribute and a Verifiable ID claim. |Property|Type|Description| |:---|:---|:---| |matchConfidenceLevel|matchConfidenceLevel|The confidence level for matching the claim to the source attribute. The possible values are: `exact`, `relaxed`, `unknownFutureValue`.| -|sourceAttribute|String|Source attribute value| -|verifiedIdClaim|String|Entra ID attribute value| +|sourceAttribute|String|The source attribute from the directory or credential.| +|verifiedIdClaim|String|The claim name in the verified ID credential.| ## Relationships None. diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index 2bb1d3e5921..8da52323926 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -5857,6 +5857,16 @@ Possible values for user account types (group membership), per Windows definitio |disabled| |unknownFutureValue| +### verifiedIdMethodType values + +|Member| +|:---| +|identityVerificationPartner| +|tenantCustomCredential| +|verifiedEmployee| +|unknownFutureValue| +|notConfigured| + ### verifiedIdUsageConfigurationPurpose values |Member| @@ -5865,6 +5875,7 @@ Possible values for user account types (group membership), per Windows definitio |onboarding| |all| |unknownFutureValue| +|verification| ### siteTemplateType values diff --git a/api-reference/beta/resources/facecheckconfiguration.md b/api-reference/beta/resources/facecheckconfiguration.md index 393a8e1bb03..bb46087c024 100644 --- a/api-reference/beta/resources/facecheckconfiguration.md +++ b/api-reference/beta/resources/facecheckconfiguration.md @@ -19,8 +19,8 @@ Configuration for Face Check requirements in a Verified ID Profile ## Properties |Property|Type|Description| |:---|:---|:---| -|isEnabled|Boolean|Defines if Face Check is required. Currently must always be true.| -|sourcePhotoClaimName|String|Source of photo to validate Face Check against. Currently must always be `portrait`| +|isEnabled|Boolean|Indicates whether Face Check is required. Currently must be `true`.| +|sourcePhotoClaimName|String|The source claim name for the photo used to validate Face Check. Currently must be `portrait`.| ## Relationships None. diff --git a/api-reference/beta/resources/mobiledriverslicenseconfiguration.md b/api-reference/beta/resources/mobiledriverslicenseconfiguration.md new file mode 100644 index 00000000000..b75fa996440 --- /dev/null +++ b/api-reference/beta/resources/mobiledriverslicenseconfiguration.md @@ -0,0 +1,50 @@ +--- +title: "mobileDriversLicenseConfiguration resource type" +description: "Configuration for accepting mobile driver's licenses in a Verified ID profile." +author: "tilarso" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# mobileDriversLicenseConfiguration resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Contains settings for accepting mobile driver's licenses through the **mobileDriversLicenseConfiguration** property of a [verifiedIdProfile](../resources/verifiedidprofile.md). + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|acceptedRegions|String collection|The ISO 3166-2 region codes accepted for mobile driver's licenses. An empty collection indicates all regions are accepted.| +|documentStandard|String|The document standard that accepted mobile driver's licenses must use, such as ISO18013-5.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.mobileDriversLicenseConfiguration", + "acceptedRegions": [ + "String" + ], + "documentStandard": "String" +} +``` diff --git a/api-reference/beta/resources/verifiedidprofile.md b/api-reference/beta/resources/verifiedidprofile.md index 7d9d0a28ef4..496bd0bba4f 100644 --- a/api-reference/beta/resources/verifiedidprofile.md +++ b/api-reference/beta/resources/verifiedidprofile.md @@ -15,7 +15,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Verified ID profiles defining set of properties and usage patterns. +Represents a set of properties and usage patterns for a Verified ID provider. Inherits from [entity](../resources/entity.md). @@ -36,12 +36,14 @@ Inherits from [entity](../resources/entity.md). |faceCheckConfiguration|[faceCheckConfiguration](../resources/facecheckconfiguration.md)| Set of properties configuring Entra Verified ID Face Check behavior. Required.| |id|String| Profile identifier. Inherited from [entity](../resources/entity.md).| |lastModifiedDateTime|DateTimeOffset|DateTime the profile was last modified. Optional.| +|mobileDriversLicenseConfiguration|[mobileDriversLicenseConfiguration](../resources/mobiledriverslicenseconfiguration.md)|Configuration for accepting mobile driver's licenses. Optional.| |name|String| Display name for the verified ID profile. Required.| |priority|Int32|Defines profile processing priority if multiple profiles are configured. Optional.| +|selfServiceIssuance|[verifiedIdSelfServiceIssuance](../resources/verifiedidselfserviceissuance.md)|Configuration for self-service issuance. Optional.| |state|verifiedIdProfileState| Enablement state for the profile. The possible values are: `enabled`, `disabled`, `unknownFutureValue`. Required.| -|verifierDid|String| Decentralized Identifier (DID) string that represents the verifier in the verifiable credential exchange. Required.| |verifiedIdProfileConfiguration|[verifiedIdProfileConfiguration](../resources/verifiedidprofileconfiguration.md)| Set of properties expressing the accepted issuer, claims binding, and credential type. Required.| -|verifiedIdUsageConfigurations|[verifiedIdUsageConfiguration](../resources/verifiedidusageconfiguration.md) collection| Collection defining the usage purpose for the profile. The possible values are: `recovery`, `onboarding`, `all`, `unknownFutureValue`. Required.| +|verifiedIdUsageConfigurations|[verifiedIdUsageConfiguration](../resources/verifiedidusageconfiguration.md) collection| Collection defining the usage purpose for the profile. The possible values are: `recovery`, `onboarding`, `all`, `unknownFutureValue`, `verification`. Use the `Prefer: include-unknown-enum-members` request header to get the following value from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `verification`. Required.| +|verifierDid|String| Decentralized Identifier (DID) string that represents the verifier in the verifiable credential exchange. Required.| ## Relationships @@ -73,11 +75,17 @@ The following JSON representation shows the resource type. "faceCheckConfiguration": { "@odata.type": "microsoft.graph.faceCheckConfiguration" }, + "mobileDriversLicenseConfiguration": { + "@odata.type": "microsoft.graph.mobileDriversLicenseConfiguration" + }, "verifiedIdUsageConfigurations": [ { "@odata.type": "microsoft.graph.verifiedIdUsageConfiguration" } - ] + ], + "selfServiceIssuance": { + "@odata.type": "microsoft.graph.verifiedIdSelfServiceIssuance" + } } ``` diff --git a/api-reference/beta/resources/verifiedidprofileconfiguration.md b/api-reference/beta/resources/verifiedidprofileconfiguration.md index 8c838165443..8561144d6dd 100644 --- a/api-reference/beta/resources/verifiedidprofileconfiguration.md +++ b/api-reference/beta/resources/verifiedidprofileconfiguration.md @@ -14,16 +14,18 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Verified ID profile configuration defining set of properties of a specific [Verified ID credential](../resources/verifiedidprofile.md). +Contains settings for a specific credential in a [Verified ID profile](../resources/verifiedidprofile.md). ## Properties |Property|Type|Description| |:---|:---|:---| -|acceptedIssuer|String|Trusted Verified ID issuer.| -|claimBindings|[claimBinding](../resources/claimbinding.md) collection| Claim bindings from Verified ID to source attributes.| -|claimBindingSource|claimBindingSource| Source to validate against Verified ID claims. The possible values are: `directory`, `unknownFutureValue`.| -|claimValidation|[claimValidation](../resources/claimvalidation.md)|Validation settings for claim processing.| -|type|String|Verified ID type.| +|acceptedIssuer|String|Trusted Verified ID issuer. Required.| +|claimBindings|[claimBinding](../resources/claimbinding.md) collection| Claim bindings from Verified ID to source attributes. Required.| +|claimBindingSource|claimBindingSource| Source to validate against Verified ID claims. The possible values are: `directory`, `unknownFutureValue`. Required.| +|claimValidation|[claimValidation](../resources/claimvalidation.md)|Validation settings for claim processing. Required.| +|manifestUrl|String|The URL where the credential issuer's manifest can be found. The manifest defines the credential schema and issuer details. Optional.| +|methodType|verifiedIdMethodType|The method used to configure the Verified ID profile. When omitted, null, or set to `notConfigured`, the effective method type is `identityVerificationPartner`. The possible values are: `identityVerificationPartner`, `tenantCustomCredential`, `verifiedEmployee`, `unknownFutureValue`, `notConfigured`. Use the `Prefer: include-unknown-enum-members` request header to get the following value from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `notConfigured`. The default value is `identityVerificationPartner`. Optional.| +|type|String|Verified ID type. Required.| ## Relationships None. @@ -38,7 +40,9 @@ The following JSON representation shows the resource type. ``` json { "@odata.type": "#microsoft.graph.verifiedIdProfileConfiguration", + "methodType": "String", "type": "String", + "manifestUrl": "String", "acceptedIssuer": "String", "claimBindingSource": "String", "claimBindings": [ diff --git a/api-reference/beta/resources/verifiedidselfserviceissuance.md b/api-reference/beta/resources/verifiedidselfserviceissuance.md new file mode 100644 index 00000000000..da3901e5f3a --- /dev/null +++ b/api-reference/beta/resources/verifiedidselfserviceissuance.md @@ -0,0 +1,48 @@ +--- +title: "verifiedIdSelfServiceIssuance resource type" +description: "Configuration for self-service issuance in a Verified ID profile." +author: "tilarso" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# verifiedIdSelfServiceIssuance resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Contains settings for self-service Verified ID issuance through the **selfServiceIssuance** property of a [verifiedIdProfile](../resources/verifiedidprofile.md). + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|isEnabled|Boolean|Indicates whether self-service issuance is enabled.| +|issuanceUrl|String|The HTTPS URL where users can start self-service issuance to obtain the credential when required by the credential type.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.verifiedIdSelfServiceIssuance", + "isEnabled": "Boolean", + "issuanceUrl": "String" +} +``` diff --git a/api-reference/beta/resources/verifiedidusageconfiguration.md b/api-reference/beta/resources/verifiedidusageconfiguration.md index 2025c2814ea..e444bc87aed 100644 --- a/api-reference/beta/resources/verifiedidusageconfiguration.md +++ b/api-reference/beta/resources/verifiedidusageconfiguration.md @@ -14,14 +14,14 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Configuration defining the usage capability of a Verified ID credential +Defines the usage capability of a Verified ID credential. ## Properties |Property|Type|Description| |:---|:---|:---| |isEnabledForTestOnly|Boolean|Sets profile usage for evaluation (test-only) or production.| -|purpose|verifiedIdUsageConfigurationPurpose|Sets the supported scenarios for a Verified ID profile. Currently only `recovery` is supported. The possible values are: `recovery`, `onboarding`, `all`, `unknownFutureValue`.| +|purpose|verifiedIdUsageConfigurationPurpose|Sets the supported scenarios for a Verified ID profile. The possible values are: `recovery`, `onboarding`, `all`, `unknownFutureValue`, `verification`. Use the `Prefer: include-unknown-enum-members` request header to get the following value from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `verification`.| ## Relationships None. diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 2b2e8bf3b2b..59612f8deab 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -1631,6 +1631,10 @@ "name": "Verified ID", "resources": [ "verifiedIdProfile" + ], + "complexTypes": [ + "mobileDriversLicenseConfiguration", + "verifiedIdSelfServiceIssuance" ] }, { diff --git a/changelog/Microsoft.VerifiedId.VerifiedIdProfile.json b/changelog/Microsoft.VerifiedId.VerifiedIdProfile.json index 7f4d0a7046d..71ae999488b 100644 --- a/changelog/Microsoft.VerifiedId.VerifiedIdProfile.json +++ b/changelog/Microsoft.VerifiedId.VerifiedIdProfile.json @@ -1,5 +1,79 @@ -{ +{ "changelog": [ + { + "ChangeList": [ + { + "Id": "f7e5f8df-59e3-4ed0-be53-6e634d06ffbb", + "ApiChange": "Enumeration", + "ChangedApiName": "verifiedIdMethodType", + "ChangeType": "Addition", + "Description": "Added the **verifiedIdMethodType** enumeration type.", + "Target": "verifiedIdMethodType" + }, + { + "Id": "f7e5f8df-59e3-4ed0-be53-6e634d06ffbb", + "ApiChange": "Member", + "ChangedApiName": "verification", + "ChangeType": "Addition", + "Description": "Added the `verification` member to the **verifiedIdUsageConfigurationPurpose** enumeration.", + "Target": "verifiedIdUsageConfigurationPurpose" + }, + { + "Id": "f7e5f8df-59e3-4ed0-be53-6e634d06ffbb", + "ApiChange": "Resource", + "ChangedApiName": "mobileDriversLicenseConfiguration", + "ChangeType": "Addition", + "Description": "Added the [mobileDriversLicenseConfiguration](https://learn.microsoft.com/en-us/graph/api/resources/mobiledriverslicenseconfiguration?view=graph-rest-beta) resource.", + "Target": "mobileDriversLicenseConfiguration" + }, + { + "Id": "f7e5f8df-59e3-4ed0-be53-6e634d06ffbb", + "ApiChange": "Property", + "ChangedApiName": "manifestUrl", + "ChangeType": "Addition", + "Description": "Added the **manifestUrl** property to the [verifiedIdProfileConfiguration](https://learn.microsoft.com/graph/api/resources/verifiedidprofileconfiguration?view=graph-rest-beta) resource.", + "Target": "verifiedIdProfileConfiguration" + }, + { + "Id": "f7e5f8df-59e3-4ed0-be53-6e634d06ffbb", + "ApiChange": "Property", + "ChangedApiName": "methodType", + "ChangeType": "Addition", + "Description": "Added the **methodType** property to the [verifiedIdProfileConfiguration](https://learn.microsoft.com/graph/api/resources/verifiedidprofileconfiguration?view=graph-rest-beta) resource.", + "Target": "verifiedIdProfileConfiguration" + }, + { + "Id": "f7e5f8df-59e3-4ed0-be53-6e634d06ffbb", + "ApiChange": "Resource", + "ChangedApiName": "verifiedIdSelfServiceIssuance", + "ChangeType": "Addition", + "Description": "Added the [verifiedIdSelfServiceIssuance](https://learn.microsoft.com/en-us/graph/api/resources/verifiedidselfserviceissuance?view=graph-rest-beta) resource.", + "Target": "verifiedIdSelfServiceIssuance" + }, + { + "Id": "f7e5f8df-59e3-4ed0-be53-6e634d06ffbb", + "ApiChange": "Property", + "ChangedApiName": "mobileDriversLicenseConfiguration", + "ChangeType": "Addition", + "Description": "Added the **mobileDriversLicenseConfiguration** property to the [verifiedIdProfile](https://learn.microsoft.com/graph/api/resources/verifiedidprofile?view=graph-rest-beta) resource.", + "Target": "verifiedIdProfile" + }, + { + "Id": "f7e5f8df-59e3-4ed0-be53-6e634d06ffbb", + "ApiChange": "Property", + "ChangedApiName": "selfServiceIssuance", + "ChangeType": "Addition", + "Description": "Added the **selfServiceIssuance** property to the [verifiedIdProfile](https://learn.microsoft.com/graph/api/resources/verifiedidprofile?view=graph-rest-beta) resource.", + "Target": "verifiedIdProfile" + } + ], + "Id": "f7e5f8df-59e3-4ed0-be53-6e634d06ffbb", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-03T16:49:56.8088212Z", + "WorkloadArea": "Identity and access", + "SubArea": "Identity and sign-in" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index a4d45232620..14029b2645e 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -104,6 +104,8 @@ Added support for automatically quarantining Lifecycle Workflows to stop a workf ### Identity and access | Identity and sign-in - Added support to update and delete Microsoft 365 cross-tenant capabilities in the cross-tenant access policy. For details, see [m365CapabilityBase](/graph/api/resources/m365capabilitybase?view=graph-rest-beta&preserve-view=true). + +- Updated the [verifiedIdProfile](/graph/api/resources/verifiedidprofile?view=graph-rest-beta&preserve-view=true) resource to support mobile driver's license verification and self-service Verified ID issuance through MyAccount. Profiles can specify the verification method and credential manifest used for these experiences. - Enhanced the [verifiedIdProfile](/graph/api/resources/verifiedidprofile?view=graph-rest-beta&preserve-view=true) resource with expanded verification capabilities: - Added the **methodType** property to [verifiedIdProfileConfiguration](/graph/api/resources/verifiedidprofileconfiguration?view=graph-rest-beta&preserve-view=true) to specify the verification method category, including tenant custom credentials, verified employee credentials, and identity verification partners. Introduced the **verifiedIdMethodType** enumeration to support these scenarios. - Added the **manifestUrl** property to [verifiedIdProfileConfiguration](/graph/api/resources/verifiedidprofileconfiguration?view=graph-rest-beta&preserve-view=true) to reference the credential issuer's manifest defining the credential schema and issuer details. From d0d4cdfd4190acf892f417247c07a70b626900bb Mon Sep 17 00:00:00 2001 From: Akshat Goel <47198486+akgoel23@users.noreply.github.com> Date: Mon, 3 Aug 2026 15:57:15 -0700 Subject: [PATCH 004/189] Add resourceAccountKeyAuthenticationMethod to beta (#29283) * Add resourceAccountKeyAuthenticationMethod resource and operations for beta - Added resourceAccountKeyAuthenticationMethod resource type - Added List, Get, and Delete API operations - Updated authentication resource with resourceAccountKeyAuthenticationMethods relationship - Updated authenticationMethod base type with new derived type - Added permissions files for all three operations - Updated changelog and What's New - Updated TOC mapping * Resolve merge conflict in whats-new-overview.md * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Jane Xing <296623908+janexingms@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling --- ...resourceaccountkeyauthenticationmethods.md | 115 ++++++++++++++++++ ...ceaccountkeyauthenticationmethod-delete.md | 87 +++++++++++++ ...ourceaccountkeyauthenticationmethod-get.md | 102 ++++++++++++++++ ...untkeyauthenticationmethods-permissions.md | 12 ++ ...authenticationmethod-delete-permissions.md | 12 ++ ...keyauthenticationmethod-get-permissions.md | 12 ++ .../beta/resources/authentication.md | 1 + .../beta/resources/authenticationmethod.md | 1 + .../resourceaccountkeyauthenticationmethod.md | 63 ++++++++++ .../beta/toc/identity-and-access/toc.yml | 16 +++ api-reference/beta/toc/toc.mapping.json | 1 + .../Microsoft.StrongAuthenticationAPI.json | 26 ++++ concepts/whats-new-overview.md | 11 ++ 13 files changed, 459 insertions(+) create mode 100644 api-reference/beta/api/authentication-list-resourceaccountkeyauthenticationmethods.md create mode 100644 api-reference/beta/api/resourceaccountkeyauthenticationmethod-delete.md create mode 100644 api-reference/beta/api/resourceaccountkeyauthenticationmethod-get.md create mode 100644 api-reference/beta/includes/permissions/authentication-list-resourceaccountkeyauthenticationmethods-permissions.md create mode 100644 api-reference/beta/includes/permissions/resourceaccountkeyauthenticationmethod-delete-permissions.md create mode 100644 api-reference/beta/includes/permissions/resourceaccountkeyauthenticationmethod-get-permissions.md create mode 100644 api-reference/beta/resources/resourceaccountkeyauthenticationmethod.md diff --git a/api-reference/beta/api/authentication-list-resourceaccountkeyauthenticationmethods.md b/api-reference/beta/api/authentication-list-resourceaccountkeyauthenticationmethods.md new file mode 100644 index 00000000000..b2db5e17084 --- /dev/null +++ b/api-reference/beta/api/authentication-list-resourceaccountkeyauthenticationmethods.md @@ -0,0 +1,115 @@ +--- +title: "List resourceAccountKeyAuthenticationMethods" +description: "Retrieve a list of resourceAccountKeyAuthenticationMethod objects for a resource account." +author: "akgoel" +ms.date: 06/23/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: apiPageType +--- + +# List resourceAccountKeyAuthenticationMethods + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Retrieve a list of the [resourceAccountKeyAuthenticationMethod](../resources/resourceaccountkeyauthenticationmethod.md) objects and their properties for a resource account. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/authentication-list-resourceaccountkeyauthenticationmethods-permissions.md)] + +## HTTP request + + +``` http +GET /users/{id | userPrincipalName}/authentication/resourceAccountKeyAuthenticationMethods +``` + +## Optional query parameters + +This method supports the `$select`, `$top`, `$skip`, and `$count` [OData query parameters](/graph/query-parameters) to help customize the response. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [resourceAccountKeyAuthenticationMethod](../resources/resourceaccountkeyauthenticationmethod.md) objects in the response body. + +If the user has no resource account key credentials, this method returns a `404 Not Found` error code with an error code of `resourceNotFound`. + +## Examples + +### Request + +The following example shows a request. + + +``` http +GET https://graph.microsoft.com/beta/users/0a3e7ad0-8d1b-4e25-ad43-5b7c7c2b5f6f/authentication/resourceAccountKeyAuthenticationMethods +``` + + +### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#users('0a3e7ad0-8d1b-4e25-ad43-5b7c7c2b5f6f')/authentication/resourceAccountKeyAuthenticationMethods", + "value": [ + { + "@odata.type": "#microsoft.graph.resourceAccountKeyAuthenticationMethod", + "id": "aB3dE5fG7hI9jK1lM3nO5pQ7rS9tU1vW3xY5zA7bC9d1", + "displayName": "Conference Room MTR-W", + "createdDateTime": "2026-05-28T19:55:40Z", + "isUsable": true, + "methodUsabilityReason": "EnabledByPolicy", + "lastUsedDateTime": "2026-06-15T08:30:00Z" + }, + { + "@odata.type": "#microsoft.graph.resourceAccountKeyAuthenticationMethod", + "id": "cD5eF7gH9iJ1kL3mN5oP7qR9sT1uV3wX5yZ7aB9cD1e1", + "displayName": "Teams Phone Room MTR-W", + "createdDateTime": "2026-05-28T19:53:14Z", + "isUsable": true, + "methodUsabilityReason": "EnabledByPolicy", + "lastUsedDateTime": "2026-06-14T14:22:10Z" + } + ] +} +``` diff --git a/api-reference/beta/api/resourceaccountkeyauthenticationmethod-delete.md b/api-reference/beta/api/resourceaccountkeyauthenticationmethod-delete.md new file mode 100644 index 00000000000..fc746e21e88 --- /dev/null +++ b/api-reference/beta/api/resourceaccountkeyauthenticationmethod-delete.md @@ -0,0 +1,87 @@ +--- +title: "Delete resourceAccountKeyAuthenticationMethod" +description: "Delete a resourceAccountKeyAuthenticationMethod object." +author: "akgoel" +ms.date: 06/23/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: apiPageType +--- + +# Delete resourceAccountKeyAuthenticationMethod + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Delete a [resourceAccountKeyAuthenticationMethod](../resources/resourceaccountkeyauthenticationmethod.md) object. + +> [!WARNING] +> Deleting a resource account key authentication method cannot be undone. After deletion, the shared device will no longer be able to authenticate silently using this credential. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/resourceaccountkeyauthenticationmethod-delete-permissions.md)] + +## HTTP request + + +``` http +DELETE /users/{id | userPrincipalName}/authentication/resourceAccountKeyAuthenticationMethods/{resourceAccountKeyAuthenticationMethodId} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `204 No Content` response code. It doesn't return anything in the response body. + +If the credential ID doesn't exist, this method returns a `404 Not Found` error code with an error code of `resourceNotFound`. + +## Examples + +### Request + +The following example shows a request. + + +``` http +DELETE https://graph.microsoft.com/beta/users/0a3e7ad0-8d1b-4e25-ad43-5b7c7c2b5f6f/authentication/resourceAccountKeyAuthenticationMethods/aB3dE5fG7hI9jK1lM3nO5pQ7rS9tU1vW3xY5zA7bC9d1 +``` + + +### Response + +The following example shows the response. + + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/beta/api/resourceaccountkeyauthenticationmethod-get.md b/api-reference/beta/api/resourceaccountkeyauthenticationmethod-get.md new file mode 100644 index 00000000000..ffc3440e04d --- /dev/null +++ b/api-reference/beta/api/resourceaccountkeyauthenticationmethod-get.md @@ -0,0 +1,102 @@ +--- +title: "Get resourceAccountKeyAuthenticationMethod" +description: "Read the properties and relationships of a resourceAccountKeyAuthenticationMethod object." +author: "akgoel" +ms.date: 06/23/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: apiPageType +--- + +# Get resourceAccountKeyAuthenticationMethod + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Read the properties and relationships of a [resourceAccountKeyAuthenticationMethod](../resources/resourceaccountkeyauthenticationmethod.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/resourceaccountkeyauthenticationmethod-get-permissions.md)] + +## HTTP request + + +``` http +GET /users/{id | userPrincipalName}/authentication/resourceAccountKeyAuthenticationMethods/{resourceAccountKeyAuthenticationMethodId} +``` + +## Optional query parameters + +This method supports the `$select` [OData query parameter](/graph/query-parameters) to help customize the response. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [resourceAccountKeyAuthenticationMethod](../resources/resourceaccountkeyauthenticationmethod.md) object in the response body. + +If the credential ID doesn't exist, this method returns a `404 Not Found` error code with an error code of `resourceNotFound`. + +## Examples + +### Request + +The following example shows a request. + + +``` http +GET https://graph.microsoft.com/beta/users/0a3e7ad0-8d1b-4e25-ad43-5b7c7c2b5f6f/authentication/resourceAccountKeyAuthenticationMethods/aB3dE5fG7hI9jK1lM3nO5pQ7rS9tU1vW3xY5zA7bC9d1 +``` + + +### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#users('0a3e7ad0-8d1b-4e25-ad43-5b7c7c2b5f6f')/authentication/resourceAccountKeyAuthenticationMethods/$entity", + "@odata.type": "#microsoft.graph.resourceAccountKeyAuthenticationMethod", + "id": "aB3dE5fG7hI9jK1lM3nO5pQ7rS9tU1vW3xY5zA7bC9d1", + "displayName": "Conference Room MTR-W", + "createdDateTime": "2026-05-28T19:55:40Z", + "isUsable": true, + "methodUsabilityReason": "EnabledByPolicy", + "lastUsedDateTime": "2026-06-15T08:30:00Z" +} +``` diff --git a/api-reference/beta/includes/permissions/authentication-list-resourceaccountkeyauthenticationmethods-permissions.md b/api-reference/beta/includes/permissions/authentication-list-resourceaccountkeyauthenticationmethods-permissions.md new file mode 100644 index 00000000000..d3daf9687d0 --- /dev/null +++ b/api-reference/beta/includes/permissions/authentication-list-resourceaccountkeyauthenticationmethods-permissions.md @@ -0,0 +1,12 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|UserAuthMethod-ResourceKey.Read.All|UserAuthenticationMethod.Read.All, UserAuthenticationMethod.ReadWrite.All, UserAuthMethod-ResourceKey.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|UserAuthMethod-ResourceKey.Read.All|UserAuthenticationMethod.Read.All, UserAuthenticationMethod.ReadWrite.All, UserAuthMethod-ResourceKey.ReadWrite.All| + diff --git a/api-reference/beta/includes/permissions/resourceaccountkeyauthenticationmethod-delete-permissions.md b/api-reference/beta/includes/permissions/resourceaccountkeyauthenticationmethod-delete-permissions.md new file mode 100644 index 00000000000..0acf05bfdc4 --- /dev/null +++ b/api-reference/beta/includes/permissions/resourceaccountkeyauthenticationmethod-delete-permissions.md @@ -0,0 +1,12 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|UserAuthMethod-ResourceKey.ReadWrite.All|UserAuthenticationMethod.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|UserAuthMethod-ResourceKey.ReadWrite.All|UserAuthenticationMethod.ReadWrite.All| + diff --git a/api-reference/beta/includes/permissions/resourceaccountkeyauthenticationmethod-get-permissions.md b/api-reference/beta/includes/permissions/resourceaccountkeyauthenticationmethod-get-permissions.md new file mode 100644 index 00000000000..d3daf9687d0 --- /dev/null +++ b/api-reference/beta/includes/permissions/resourceaccountkeyauthenticationmethod-get-permissions.md @@ -0,0 +1,12 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|UserAuthMethod-ResourceKey.Read.All|UserAuthenticationMethod.Read.All, UserAuthenticationMethod.ReadWrite.All, UserAuthMethod-ResourceKey.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|UserAuthMethod-ResourceKey.Read.All|UserAuthenticationMethod.Read.All, UserAuthenticationMethod.ReadWrite.All, UserAuthMethod-ResourceKey.ReadWrite.All| + diff --git a/api-reference/beta/resources/authentication.md b/api-reference/beta/resources/authentication.md index 9225e302249..3b57527490a 100644 --- a/api-reference/beta/resources/authentication.md +++ b/api-reference/beta/resources/authentication.md @@ -53,6 +53,7 @@ Inherits from [entity](entity.md). |phoneMethods|[phoneAuthenticationMethod](../resources/phoneauthenticationmethod.md) collection|Represents the phone registered to a user for authentication. | |qrCodePinMethod|[qrCodePinAuthenticationMethod](../resources/qrcodepinauthenticationmethod.md)|Represents a QR code authentication method registered to a user for authentication.| |platformCredentialMethods|[platformCredentialAuthenticationMethod](../resources/platformcredentialauthenticationmethod.md) collection|Represents a platform credential instance registered to a user on Mac OS. | +|resourceAccountKeyAuthenticationMethods|[resourceAccountKeyAuthenticationMethod](../resources/resourceaccountkeyauthenticationmethod.md) collection|Represents the resource account key credentials registered to a user for authentication on shared devices.| |softwareOathMethods|[softwareOathAuthenticationMethod](../resources/softwareoathauthenticationmethod.md) collection|The software OATH time-based one-time password (TOTP) applications registered to a user for authentication.| |temporaryAccessPassMethods|[temporaryAccessPassAuthenticationMethod](../resources/temporaryaccesspassauthenticationmethod.md) collection|Represents a Temporary Access Pass registered to a user for authentication through time-limited passcodes.| |windowsHelloForBusinessMethods|[windowsHelloForBusinessAuthenticationMethod](../resources/windowshelloforbusinessauthenticationmethod.md) collection|Represents the Windows Hello for Business authentication method registered to a user for authentication.| diff --git a/api-reference/beta/resources/authenticationmethod.md b/api-reference/beta/resources/authenticationmethod.md index 7dcb55c8abf..531f4317f49 100644 --- a/api-reference/beta/resources/authenticationmethod.md +++ b/api-reference/beta/resources/authenticationmethod.md @@ -35,6 +35,7 @@ This resource type is an abstract type that's inherited by the following derived + [windowsHelloForBusinessAuthenticationMethod](windowshelloforbusinessauthenticationmethod.md) + [platformCredentialAuthenticationMethod](platformcredentialauthenticationmethod.md) + [qrCodePinAuthenticationmethod](qrcodepinauthenticationmethod.md) ++ [resourceAccountKeyAuthenticationMethod](resourceaccountkeyauthenticationmethod.md) > [!IMPORTANT] > Listing users' authentication methods only returns methods supported on this API version and registered to the user. See [Microsoft Entra authentication methods API overview](authenticationmethods-overview.md) for a list of currently supported methods. diff --git a/api-reference/beta/resources/resourceaccountkeyauthenticationmethod.md b/api-reference/beta/resources/resourceaccountkeyauthenticationmethod.md new file mode 100644 index 00000000000..9e7f575cbdb --- /dev/null +++ b/api-reference/beta/resources/resourceaccountkeyauthenticationmethod.md @@ -0,0 +1,63 @@ +--- +title: "resourceAccountKeyAuthenticationMethod resource type" +description: "Represents a resource account key credential registered on a shared device for passwordless authentication. Resource account keys enable shared devices to silently sign in to Microsoft Entra ID without user interaction." +author: "akgoel" +ms.date: 06/23/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# resourceAccountKeyAuthenticationMethod resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a resource account key credential registered on a shared device (such as a Teams Meeting Room or Teams phone) for passwordless authentication. Resource account keys enable shared devices to silently sign in to Microsoft Entra ID without user interaction. + +Inherits from [authenticationMethod](../resources/authenticationmethod.md). + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[List](../api/authentication-list-resourceaccountkeyauthenticationmethods.md)|[resourceAccountKeyAuthenticationMethod](../resources/resourceaccountkeyauthenticationmethod.md) collection|Get a list of the resourceAccountKeyAuthenticationMethod objects and their properties.| +|[Get](../api/resourceaccountkeyauthenticationmethod-get.md)|[resourceAccountKeyAuthenticationMethod](../resources/resourceaccountkeyauthenticationmethod.md)|Read the properties and relationships of a resourceAccountKeyAuthenticationMethod object.| +|[Delete](../api/resourceaccountkeyauthenticationmethod-delete.md)|None|Delete a resourceAccountKeyAuthenticationMethod object.| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|createdDateTime|DateTimeOffset|The date and time when the resource account key was registered. Inherited from [authenticationMethod](../resources/authenticationmethod.md).| +|displayName|String|The display name of the resource account key credential as shown in the Teams Room interface.| +|id|String|A unique identifier for this instance of an authentication method. Inherited from [entity](../resources/entity.md).| +|isUsable|Boolean|Indicates whether the method is usable for sign-in. **Returned by default.**| +|lastUsedDateTime|DateTimeOffset|The date and time when this authentication method was last used for sign-in. **Requires `$select`.** Inherited from [authenticationMethod](../resources/authenticationmethod.md).| +|methodUsabilityReason|String|The reason for the usability state. Possible values are: `EnabledByPolicy`, `DisabledByPolicy`. **Returned by default.**| + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|device|[device](../resources/device.md)|The registered device on which this resource account key resides. Supports `$expand`.| + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.resourceAccountKeyAuthenticationMethod", + "id": "String (identifier)", + "createdDateTime": "String (timestamp)", + "displayName": "String", + "isUsable": "Boolean", + "lastUsedDateTime": "String (timestamp)", + "methodUsabilityReason": "String" +} +``` diff --git a/api-reference/beta/toc/identity-and-access/toc.yml b/api-reference/beta/toc/identity-and-access/toc.yml index a4403d0fc51..8da0ae220b5 100644 --- a/api-reference/beta/toc/identity-and-access/toc.yml +++ b/api-reference/beta/toc/identity-and-access/toc.yml @@ -2110,6 +2110,16 @@ items: href: ../../api/platformcredentialauthenticationmethod-get.md - name: Delete href: ../../api/platformcredentialauthenticationmethod-delete.md + - name: Resource account key authentication method + items: + - name: Resource account key authentication method + href: ../../resources/resourceaccountkeyauthenticationmethod.md + - name: List + href: ../../api/authentication-list-resourceaccountkeyauthenticationmethods.md + - name: Get + href: ../../api/resourceaccountkeyauthenticationmethod-get.md + - name: Delete + href: ../../api/resourceaccountkeyauthenticationmethod-delete.md - name: Software OATH items: - name: Software OATH @@ -3407,6 +3417,12 @@ items: href: ../../api/verifiedidprofile-update.md - name: Delete href: ../../api/identityverifiedidroot-delete-profiles.md + - name: Complex types + items: + - name: Mobile drivers license configuration + href: ../../resources/mobiledriverslicenseconfiguration.md + - name: Verified id self service issuance + href: ../../resources/verifiedidselfserviceissuance.md - name: Web application firewall items: - name: Web application firewall provider diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 59612f8deab..0439e646c9a 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -1651,6 +1651,7 @@ "passwordAuthenticationMethod", "phoneAuthenticationMethod", "platformCredentialAuthenticationMethod", + "resourceAccountKeyAuthenticationMethod", "softwareOathAuthenticationMethod", "temporaryAccessPassAuthenticationMethod", "windowsHelloForBusinessAuthenticationMethod", diff --git a/changelog/Microsoft.StrongAuthenticationAPI.json b/changelog/Microsoft.StrongAuthenticationAPI.json index 1042515fd00..e89bfc5c2d5 100644 --- a/changelog/Microsoft.StrongAuthenticationAPI.json +++ b/changelog/Microsoft.StrongAuthenticationAPI.json @@ -1,5 +1,31 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "64728a28-e10d-4a61-a2a8-b8ab7f979d6c", + "ApiChange": "Relationship", + "ChangedApiName": "resourceAccountKeyAuthenticationMethods", + "ChangeType": "Addition", + "Description": "Added the **resourceAccountKeyAuthenticationMethods** relationship to the [authentication](https://learn.microsoft.com/en-us/graph/api/resources/authentication?view=graph-rest-beta) resource.", + "Target": "authentication" + }, + { + "Id": "64728a28-e10d-4a61-a2a8-b8ab7f979d6c", + "ApiChange": "Resource", + "ChangedApiName": "resourceAccountKeyAuthenticationMethod", + "ChangeType": "Addition", + "Description": "Added the [resourceAccountKeyAuthenticationMethod](https://learn.microsoft.com/en-us/graph/api/resources/resourceAccountKeyAuthenticationMethod?view=graph-rest-beta) resource.", + "Target": "resourceAccountKeyAuthenticationMethod" + } + ], + "Id": "64728a28-e10d-4a61-a2a8-b8ab7f979d6c", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-03T20:07:44.2258254Z", + "WorkloadArea": "Identity and access", + "SubArea": "Identity and sign-in" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 14029b2645e..3145a4af5e4 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -103,6 +103,8 @@ Added support for automatically quarantining Lifecycle Workflows to stop a workf ### Identity and access | Identity and sign-in +- Added the [resourceAccountKeyAuthenticationMethod](/graph/api/resources/resourceaccountkeyauthenticationmethod?view=graph-rest-beta&preserve-view=true) resource type and related methods for managing resource account key credentials on shared devices. Use these APIs to list, get, and delete resource account key authentication methods for Teams Meeting Rooms and Teams phones that authenticate silently to Microsoft Entra ID. +- Added support for programmatic FIDO2 passkey registration. Use the [creationOptions](/graph/api/fido2authenticationmethod-creationoptions?view=graph-rest-beta&preserve-view=true) function to get WebAuthn credential creation options, then complete registration by posting the new **publicKeyCredential** property to the [fido2AuthenticationMethod](/graph/api/resources/fido2authenticationmethod?view=graph-rest-beta&preserve-view=true) resource. - Added support to update and delete Microsoft 365 cross-tenant capabilities in the cross-tenant access policy. For details, see [m365CapabilityBase](/graph/api/resources/m365capabilitybase?view=graph-rest-beta&preserve-view=true). - Updated the [verifiedIdProfile](/graph/api/resources/verifiedidprofile?view=graph-rest-beta&preserve-view=true) resource to support mobile driver's license verification and self-service Verified ID issuance through MyAccount. Profiles can specify the verification method and credential manifest used for these experiences. @@ -111,6 +113,15 @@ Added support for automatically quarantining Lifecycle Workflows to stop a workf - Added the **manifestUrl** property to [verifiedIdProfileConfiguration](/graph/api/resources/verifiedidprofileconfiguration?view=graph-rest-beta&preserve-view=true) to reference the credential issuer's manifest defining the credential schema and issuer details. - Added the `verification` member to the **verifiedIdUsageConfigurationPurpose** enumeration to enable just-in-time identity verification scenarios, such as step-up authentication enforcement through Conditional Access policies. +### Security | Alerts and incidents + +- Added the **tenantId** property to the [userAccount](/graph/api/resources/security-useraccount) resource to provide the Entra home tenant ID for the compromised user account indicated in a [security alert](/graph/api/resources/security-alert) where the alert evidence is related to a [processEvidence](/graph/api/resources/security-processevidence), [userEvidence](/graph/api/resources/security-userevidence), or [mailboxEvidence](/graph/api/resources/security-mailboxevidence). +- Added the [alert: moveAlerts](/graph/api/security-alert-movealerts) and [incident: mergeIncidents](/graph/api/security-incident-mergeincidents) actions to support moving alerts and merging incidents in Microsoft Defender. +- Added the [correlationReason](/graph/api/resources/security-correlationreason) enumeration and [mergeResponse](/graph/api/resources/security-mergeresponse) resource type. + +### Security | eDiscovery + +Added the `cloudNativeHtmlConversion` member to the [additionalDataOptions](/graph/api/resources/security-ediscoveryaddtoreviewsetoperation#additionaldataoptions-values) enumeration. ### Mailbox import and export Added the [Delete mailboxItem](/graph/api/mailboxfolder-delete-items?view=graph-rest-beta&preserve-view=true) method to delete an individual [mailboxItem](/graph/api/resources/mailboxitem?view=graph-rest-beta&preserve-view=true) from a mailbox folder by using the mailbox import and export APIs. Use the **disposalType** query parameter to specify soft-delete or hard-delete semantics. From 1d52c66b1bc7c5239297a2bd4552ae0e1d0452eb Mon Sep 17 00:00:00 2001 From: Dan Winter Date: Mon, 3 Aug 2026 19:00:40 -0400 Subject: [PATCH 005/189] Clarify SharePoint Embedded sharing parameter support (#29392) Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: abd60c1b-0218-41c5-8db8-2a04993db572 --- api-reference/beta/api/driveitem-createlink.md | 2 +- api-reference/beta/api/driveitem-invite.md | 2 +- api-reference/v1.0/api/driveitem-createlink.md | 2 +- api-reference/v1.0/api/driveitem-invite.md | 2 +- 4 files changed, 4 insertions(+), 4 deletions(-) diff --git a/api-reference/beta/api/driveitem-createlink.md b/api-reference/beta/api/driveitem-createlink.md index 2357b8e3edd..1db06cccfb9 100644 --- a/api-reference/beta/api/driveitem-createlink.md +++ b/api-reference/beta/api/driveitem-createlink.md @@ -60,7 +60,7 @@ The request should be a JSON object with the following properties. |expirationDateTime|DateTimeOffset|Optional. A String with format of yyyy-MM-ddTHH:mm:ssZ of DateTime indicates the expiration time of the permission.| |password|String|Optional. The creator sets the password for the sharing link.| |recipients|[driveRecipient](../resources/driverecipient.md) collection|Optional. A collection of recipients who receive access to the sharing link.| -| retainInheritedPermissions | Boolean | Optional. If `true` (default), any existing inherited permissions are retained on the shared item when sharing this item for the first time. If `false`, all existing permissions are removed when sharing for the first time. | +| retainInheritedPermissions | Boolean | Optional. If `true` (default), any existing inherited permissions are retained on the shared item when sharing this item for the first time. If `false`, all existing permissions are removed when sharing for the first time. Not supported with SharePoint Embedded. | |sendNotification|Boolean|If `true`, this method sends a [sharing link](../resources/permission.md#sharing-links) in an email to users specified in `recipients`. Applicable to OneDrive for Business or SharePoint. The default value is `false`. Optional.| ### Link types diff --git a/api-reference/beta/api/driveitem-invite.md b/api-reference/beta/api/driveitem-invite.md index 389741063b5..1c4cc1dc0c5 100644 --- a/api-reference/beta/api/driveitem-invite.md +++ b/api-reference/beta/api/driveitem-invite.md @@ -70,7 +70,7 @@ In the request body, provide a JSON object with the following parameters. | roles | String collection | Specifies the roles that are granted to the recipients of the sharing invitation. | | expirationDateTime | DateTimeOffset | Specifies the **dateTime** after which the permission expires. For OneDrive for work or school and SharePoint, **expirationDateTime** is only applicable for **sharingLink** permissions. Available on OneDrive for work or school, SharePoint, and premium personal OneDrive accounts. | | password | String | The password set on the invite by the creator. Optional, and OneDrive for home only. | -| retainInheritedPermissions | Boolean | Optional. If `true` (default), any existing inherited permissions are retained on the shared item when sharing this item for the first time. If `false`, all existing permissions are removed when sharing for the first time. | +| retainInheritedPermissions | Boolean | Optional. If `true` (default), any existing inherited permissions are retained on the shared item when sharing this item for the first time. If `false`, all existing permissions are removed when sharing for the first time. Not supported with SharePoint Embedded. | ## Response diff --git a/api-reference/v1.0/api/driveitem-createlink.md b/api-reference/v1.0/api/driveitem-createlink.md index 6abb9cdfd19..1e1429fdf1b 100644 --- a/api-reference/v1.0/api/driveitem-createlink.md +++ b/api-reference/v1.0/api/driveitem-createlink.md @@ -58,7 +58,7 @@ The request should be a JSON object with the following properties. | **type** | string | The type of sharing link to create. Either `view`, `edit`, or `embed`. | | **password** | string | The password of the sharing link set by the creator. Optional and OneDrive Personal only.| | **expirationDateTime** | string | A String with format of yyyy-MM-ddTHH:mm:ssZ of DateTime indicates the expiration time of the permission. | -| **retainInheritedPermissions** | Boolean | Optional. If `true` (default), any existing inherited permissions are retained on the shared item when sharing this item for the first time. If `false`, all existing permissions are removed when sharing for the first time. | +| **retainInheritedPermissions** | Boolean | Optional. If `true` (default), any existing inherited permissions are retained on the shared item when sharing this item for the first time. If `false`, all existing permissions are removed when sharing for the first time. Not supported with SharePoint Embedded. | | **scope** | string | Optional. The scope of link to create. Either `anonymous`, `organization`, or `users`. | ### Link types diff --git a/api-reference/v1.0/api/driveitem-invite.md b/api-reference/v1.0/api/driveitem-invite.md index fb2a667b266..f515330519f 100644 --- a/api-reference/v1.0/api/driveitem-invite.md +++ b/api-reference/v1.0/api/driveitem-invite.md @@ -76,7 +76,7 @@ In the request body, provide a JSON object with the following parameters. | roles | String collection | Specifies the roles that are to be granted to the recipients of the sharing invitation.| | expirationDateTime | DateTimeOffset | Specifies the **dateTime** after which the permission expires. For OneDrive for work or school and SharePoint, **expirationDateTime** is only applicable for **sharingLink** permissions. Available on OneDrive for work or school, SharePoint, and premium personal OneDrive accounts. | | password | String | The password set on the invite by the creator. Optional and OneDrive for home only. | -| retainInheritedPermissions | Boolean | Optional. If `true` (default), any existing inherited permissions are retained on the shared item when sharing this item for the first time. If `false`, all existing permissions are removed when sharing for the first time. | +| retainInheritedPermissions | Boolean | Optional. If `true` (default), any existing inherited permissions are retained on the shared item when sharing this item for the first time. If `false`, all existing permissions are removed when sharing for the first time. Not supported with SharePoint Embedded. | ## Response From c649cba459eb435810a5ea8e989755f851e82270 Mon Sep 17 00:00:00 2001 From: jessieli-ad Date: Mon, 3 Aug 2026 16:01:35 -0700 Subject: [PATCH 006/189] Update subscription-update.md with renewal guidance (#29326) * Update subscription-update.md with renewal guidance Added note about handling expired subscriptions and proactive renewal. * Update subscription-update.md with 404 handling note Added note about handling 404 Not Found response for subscriptions. * Revise 404 response note in subscription-update.md Updated note on 404 response for subscription updates. * Revise 404 response note in subscription-update.md Updated note on 404 response for subscription updates to include lifecycle notifications link. * Update note format for subscription update response * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Clarify 404 response handling for subscriptions Updated note on 404 response for subscription updates to clarify the need for creating a new subscription and added links to relevant documentation. * Fix link in 404 response note for subscriptions Updated the note about 404 response for subscriptions to include a link to the correct lifecycle notifications documentation. * Fix link to lifecycle notifications in subscription update Updated the lifecycle notifications link to the correct path. --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- api-reference/beta/api/subscription-update.md | 3 +++ api-reference/v1.0/api/subscription-update.md | 3 +++ 2 files changed, 6 insertions(+) diff --git a/api-reference/beta/api/subscription-update.md b/api-reference/beta/api/subscription-update.md index 9adc4958605..508d56588e7 100644 --- a/api-reference/beta/api/subscription-update.md +++ b/api-reference/beta/api/subscription-update.md @@ -162,6 +162,9 @@ The request body must contain either the `expirationDateTime` or `notificationUr If successful, this method returns a `200 OK` response code and [subscription](../resources/subscription.md) object in the response body. +> [!NOTE] +> A `404 Not Found` response indicates that the subscription no longer exists. For example, it already expired and was removed by the service, or it was deleted. The subscription can't be renewed in this state, so retrying the update keeps failing. To avoid missing change notifications, [create a new subscription](subscription-post-subscriptions.md) instead of retrying the update. To reduce how often this happens, renew subscriptions well before they expire and use [lifecycle notifications](/graph/change-notifications-lifecycle-events) to renew subscriptions proactively. + For details about how errors are returned, see [Error responses][error-response]. ## Example diff --git a/api-reference/v1.0/api/subscription-update.md b/api-reference/v1.0/api/subscription-update.md index 54c17daae95..150036ce5a6 100644 --- a/api-reference/v1.0/api/subscription-update.md +++ b/api-reference/v1.0/api/subscription-update.md @@ -131,6 +131,9 @@ The request body must contain either the `expirationDateTime` or `notificationUr If successful, this method returns a `200 OK` response code and [subscription](../resources/subscription.md) object in the response body. +> [!NOTE] +> A `404 Not Found` response indicates that the subscription no longer exists. For example, it already expired and was removed by the service, or it was deleted. The subscription can't be renewed in this state, so retrying the update keeps failing. To avoid missing change notifications, [create a new subscription](subscription-post-subscriptions.md) instead of retrying the update. To reduce how often this happens, renew subscriptions well before they expire and use [lifecycle notifications](/graph/change-notifications-lifecycle-events) to renew subscriptions proactively. + For details about how errors are returned, see [Error responses][error-response]. ## Example From f82a67158b31490112a6e994e359da11d77a9c0c Mon Sep 17 00:00:00 2001 From: Jaden Stetler <301517737+jadenstetler@users.noreply.github.com> Date: Mon, 3 Aug 2026 16:06:58 -0700 Subject: [PATCH 007/189] Planner Goals API docs (#29321) * Add Planner Goals API documentation Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Refine Planner Goals API documentation Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Correct Planner Goals documentation semantics Align goal defaults and relationship behavior with the service implementation, and preserve existing topic metadata. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Fix Planner Goals date examples Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Address Planner Goals review feedback Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Normalize Planner resource links Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Address Planner Goals documentation review Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Fix Planner Goals changelog link Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Update reference TOC * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Jaden Stetler Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 --- api-reference/beta/api/plannergoal-get.md | 96 +++++++++++++++ .../beta/api/plannerplan-list-goals.md | 111 ++++++++++++++++++ .../plannergoal-get-permissions.md | 11 ++ .../plannerplan-list-goals-permissions.md | 11 ++ api-reference/beta/resources/enums.md | 11 ++ .../beta/resources/planner-overview.md | 13 +- api-reference/beta/resources/planner.md | 11 +- api-reference/beta/resources/plannerdelta.md | 2 +- api-reference/beta/resources/plannergoal.md | 74 ++++++++++++ api-reference/beta/resources/plannerplan.md | 30 ++--- api-reference/beta/resources/plannertask.md | 2 + .../beta/toc/tasks-and-plans/toc.yml | 10 ++ api-reference/beta/toc/toc.mapping.json | 1 + changelog/Microsoft.Office.Tasks.json | 50 ++++++++ concepts/whats-new-overview.md | 65 +++++++++- 15 files changed, 475 insertions(+), 23 deletions(-) create mode 100644 api-reference/beta/api/plannergoal-get.md create mode 100644 api-reference/beta/api/plannerplan-list-goals.md create mode 100644 api-reference/beta/includes/permissions/plannergoal-get-permissions.md create mode 100644 api-reference/beta/includes/permissions/plannerplan-list-goals-permissions.md create mode 100644 api-reference/beta/resources/plannergoal.md diff --git a/api-reference/beta/api/plannergoal-get.md b/api-reference/beta/api/plannergoal-get.md new file mode 100644 index 00000000000..e579c32fe3c --- /dev/null +++ b/api-reference/beta/api/plannergoal-get.md @@ -0,0 +1,96 @@ +--- +title: "Get plannerGoal" +description: "Retrieve the properties and relationships of a plannerGoal object." +author: "jadenstetler" +ms.date: 07/21/2026 +ms.localizationpriority: medium +ms.subservice: "planner" +doc_type: apiPageType +--- + +# Get plannerGoal + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Retrieve the properties and relationships of a [plannerGoal](../resources/plannergoal.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/plannergoal-get-permissions.md)] + +## HTTP request + + +```http +GET /planner/goals/{goal-id} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [plannerGoal](../resources/plannergoal.md) object in the response body. + +This method can return any of the [HTTP status codes](/graph/errors). The most common errors that apps should handle for this method are the 403 and 404 responses. For more information about these errors, see [Common Planner error conditions](../resources/planner-overview.md#common-planner-error-conditions). + +## Example + +### Request + +The following example shows a request. + + +```http +GET https://graph.microsoft.com/beta/planner/goals/eDsaMcSvzUqAeS1NkgTFY5UAHYBs +``` + +### Response + +The following example shows the response. + +> **Note:** The response object shown here might be shortened for readability. + + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#planner/goals/$entity", + "@odata.etag": "W/\"JzEtVGFzayAgQEBAQEBAQEBAQEBAQEBATCc=\"", + "id": "eDsaMcSvzUqAeS1NkgTFY5UAHYBs", + "planId": "V5pBRwb_vEugGKGpZuLnX5UAG9iy", + "displayName": "Complete Project X", + "priority": 1, + "startDate": null, + "finishDate": null, + "notes": { + "contentType": "html", + "content": "This goal covers all tasks related to Project X." + }, + "status": "onTrack" +} +``` diff --git a/api-reference/beta/api/plannerplan-list-goals.md b/api-reference/beta/api/plannerplan-list-goals.md new file mode 100644 index 00000000000..f4f57e3ead8 --- /dev/null +++ b/api-reference/beta/api/plannerplan-list-goals.md @@ -0,0 +1,111 @@ +--- +title: "List goals" +description: "Retrieve the goals associated with a plannerPlan object." +author: "jadenstetler" +ms.date: 07/21/2026 +ms.localizationpriority: medium +ms.subservice: "planner" +doc_type: apiPageType +--- + +# List goals + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Retrieve the [plannerGoal](../resources/plannergoal.md) objects associated with a [plannerPlan](../resources/plannerplan.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/plannerplan-list-goals-permissions.md)] + +## HTTP request + + +```http +GET /planner/plans/{plan-id}/goals +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [plannerGoal](../resources/plannergoal.md) objects in the response body. + +This method can return any of the [HTTP status codes](/graph/errors). The most common errors that apps should handle for this method are the 403 and 404 responses. For more information about these errors, see [Common Planner error conditions](../resources/planner-overview.md#common-planner-error-conditions). + +## Example + +### Request + +The following example shows a request. + + +```http +GET https://graph.microsoft.com/beta/planner/plans/V5pBRwb_vEugGKGpZuLnX5UAG9iy/goals +``` + +### Response + +The following example shows the response. + +> **Note:** The response object shown here might be shortened for readability. + + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#Collection(microsoft.graph.plannerGoal)", + "value": [ + { + "@odata.etag": "W/\"JzEtVGFzayAgQEBAQEBAQEBAQEBAQEBATCc=\"", + "id": "eDsaMcSvzUqAeS1NkgTFY5UAHYBs", + "planId": "V5pBRwb_vEugGKGpZuLnX5UAG9iy", + "displayName": "Complete Project X", + "priority": 1, + "startDate": null, + "finishDate": null, + "notes": { + "contentType": "html", + "content": "This goal covers all tasks related to Project X." + }, + "status": "onTrack" + }, + { + "@odata.etag": "W/\"JzEtVGFzayAgQEBAQEBAQEBAQEBAQEBBTCc=\"", + "id": "kSjJdsWtY0eLmNpQrStUvY5UAG7cd", + "planId": "V5pBRwb_vEugGKGpZuLnX5UAG9iy", + "displayName": "Launch marketing campaign", + "priority": 3, + "startDate": null, + "finishDate": null, + "notes": null, + "status": "atRisk" + } + ] +} +``` diff --git a/api-reference/beta/includes/permissions/plannergoal-get-permissions.md b/api-reference/beta/includes/permissions/plannergoal-get-permissions.md new file mode 100644 index 00000000000..79d5fb80834 --- /dev/null +++ b/api-reference/beta/includes/permissions/plannergoal-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Tasks.Read|Tasks.ReadWrite| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Tasks.Read.All|Tasks.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/plannerplan-list-goals-permissions.md b/api-reference/beta/includes/permissions/plannerplan-list-goals-permissions.md new file mode 100644 index 00000000000..79d5fb80834 --- /dev/null +++ b/api-reference/beta/includes/permissions/plannerplan-list-goals-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Tasks.Read|Tasks.ReadWrite| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Tasks.Read.All|Tasks.ReadWrite.All| diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index 8da52323926..27415ca1cd6 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -551,6 +551,17 @@ Namespace: microsoft.graph | cancelled | | unknownFutureValue | +### plannerGoalStatus values + +| Member | +| -------------------- | +| notStarted | +| onTrack | +| behind | +| atRisk | +| closed | +| unknownFutureValue | + ### plannerTaskChatMentionType values | Member | diff --git a/api-reference/beta/resources/planner-overview.md b/api-reference/beta/resources/planner-overview.md index ab9ba52f0bd..ccc0bc705dc 100644 --- a/api-reference/beta/resources/planner-overview.md +++ b/api-reference/beta/resources/planner-overview.md @@ -125,6 +125,18 @@ To [retrieve the tasks in a plan](../api/plannerplan-list-tasks.md), make the fo GET /planner/plans/{plan-id}/tasks ``` +## Goals + +[Goals](../resources/plannergoal.md) express the high-level outcomes that a set of tasks in a plan is intended to accomplish. A plan can have multiple goals, and a task can be associated with multiple goals. + +To [retrieve the goals in a plan](../api/plannerplan-list-goals.md), make the following HTTP request. + +```http +GET /planner/plans/{plan-id}/goals +``` + +Use the read-only **goalIds** property on a [plannerTask](../resources/plannertask.md) object to identify the goals associated with the task. + ## Tasks Each task can be assigned to a user by adding an [assignment](plannerassignment.md) in the [assignments](plannerassignments.md) property on the task object. @@ -252,4 +264,3 @@ The following are the possible values for the limit types. All Planner API `POST`, `PATCH`, and `DELETE` requests require the `If-Match` header to be specified with the last known etag value of the resource that is subject to the request. The 412 status code can also be returned if the etag value specified in the request no longer matches a version of the resource in the service. In this case, the clients should read the resource again and get a new etag. - diff --git a/api-reference/beta/resources/planner.md b/api-reference/beta/resources/planner.md index 1e87b13cf3f..952cba6d000 100644 --- a/api-reference/beta/resources/planner.md +++ b/api-reference/beta/resources/planner.md @@ -34,10 +34,11 @@ The **planner** resource is the entry point for the Planner object model. It ret ## Relationships | Relationship | Type |Description| |:---------------|:--------|:----------| -|buckets|[plannerBucket](plannerbucket.md) collection| Read-only. Nullable. Returns a collection of the specified buckets| -|plans|[plannerPlan](plannerplan.md) collection| Read-only. Nullable. Returns a collection of the specified plans| -|rosters|[plannerRoster](plannerroster.md) collection|Read-only. Nullable. Returns a collection of the specified rosters| -|tasks|[plannerTask](plannertask.md) collection| Read-only. Nullable. Returns a collection of the specified tasks| +|buckets|[plannerBucket](../resources/plannerbucket.md) collection| Read-only. Nullable. Returns a collection of the specified buckets| +|goals|[plannerGoal](../resources/plannergoal.md) collection| Read-only. Nullable. Returns a collection of the specified goals| +|plans|[plannerPlan](../resources/plannerplan.md) collection| Read-only. Nullable. Returns a collection of the specified plans| +|rosters|[plannerRoster](../resources/plannerroster.md) collection|Read-only. Nullable. Returns a collection of the specified rosters| +|tasks|[plannerTask](../resources/plannertask.md) collection| Read-only. Nullable. Returns a collection of the specified tasks| ## JSON representation The following JSON representation shows the resource type. @@ -71,5 +72,3 @@ The following JSON representation shows the resource type. "suppressions": [] } --> - - diff --git a/api-reference/beta/resources/plannerdelta.md b/api-reference/beta/resources/plannerdelta.md index 406024733f5..6fe829b9784 100644 --- a/api-reference/beta/resources/plannerdelta.md +++ b/api-reference/beta/resources/plannerdelta.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph An abstract type that represents the base type for planner entities such as a plan or a task. -Base type of [plannerHistoryItem](plannerhistoryitem.md), [plannerTask](plannertask.md), [plannerPlan](plannerplan.md), and [plannerBucket](plannerbucket.md). +Base type of [plannerBucket](../resources/plannerbucket.md), [plannerGoal](../resources/plannergoal.md), [plannerHistoryItem](../resources/plannerhistoryitem.md), [plannerPlan](../resources/plannerplan.md), and [plannerTask](../resources/plannertask.md). ## Methods None. diff --git a/api-reference/beta/resources/plannergoal.md b/api-reference/beta/resources/plannergoal.md new file mode 100644 index 00000000000..a0fdbfe13be --- /dev/null +++ b/api-reference/beta/resources/plannergoal.md @@ -0,0 +1,74 @@ +--- +title: "plannerGoal resource type" +description: "Represents a goal associated with a set of tasks in a Planner plan." +author: "jadenstetler" +ms.date: 07/21/2026 +ms.localizationpriority: medium +ms.subservice: "planner" +doc_type: resourcePageType +--- + +# plannerGoal resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a goal associated with a set of tasks in a [Planner plan](../resources/plannerplan.md). + +Third-party applications can read goals but can't create, update, or delete them. + +Inherits from [plannerDelta](../resources/plannerdelta.md). + +## Methods + +|Method|Return type|Description| +|:---|:---|:---| +|[Get goal](../api/plannergoal-get.md)|[plannerGoal](../resources/plannergoal.md)|Read the properties and relationships of a **plannerGoal** object.| +|[List goals](../api/plannerplan-list-goals.md)|[plannerGoal](../resources/plannergoal.md) collection|Get the goals associated with a **plannerPlan** object.| + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|displayName|String|Required. The display name of the goal.| +|finishDate|Date|Nullable. The date on which the goal is scheduled to finish.| +|id|String|Read-only. The unique identifier of the goal. Inherited from [plannerDelta](../resources/plannerdelta.md).| +|notes|[itemBody](../resources/itembody.md)|Nullable. The notes associated with the goal.| +|planId|String|Required. The ID of the plan that contains the goal.| +|priority|Int32|Optional. The relative priority of the goal. Valid values range from `0` to `10`, inclusive. The default value is `5`.| +|startDate|Date|Nullable. The date on which the goal is scheduled to start.| +|status|[plannerGoalStatus](../resources/enums.md#plannergoalstatus-values)|Required. The current status of the goal. The default value is `notStarted`. The possible values are: `notStarted`, `onTrack`, `behind`, `atRisk`, `closed`, `unknownFutureValue`.| + +## Relationships + +|Relationship|Type|Description| +|:---|:---|:---| +|tasks|[plannerTask](../resources/plannertask.md) collection|Read-only. Nullable. The tasks associated with the goal. This relationship doesn't support direct retrieval or `$expand`. To identify the goals associated with a task, read the **goalIds** property of the [plannerTask](../resources/plannertask.md) resource.| + +## JSON representation + +The following JSON representation shows the resource type. + + +```json +{ + "@odata.type": "#microsoft.graph.plannerGoal", + "displayName": "String", + "finishDate": "Date", + "id": "String (identifier)", + "notes": { + "@odata.type": "microsoft.graph.itemBody" + }, + "planId": "String", + "priority": "Int32", + "startDate": "Date", + "status": "String" +} +``` diff --git a/api-reference/beta/resources/plannerplan.md b/api-reference/beta/resources/plannerplan.md index f13c3a1ab94..c229b15e24a 100644 --- a/api-reference/beta/resources/plannerplan.md +++ b/api-reference/beta/resources/plannerplan.md @@ -14,24 +14,25 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a plan in Microsoft 365. Either a [group](group.md) or a [user](user.md) owns a plan. Plans contain a collection of [plannerTasks](plannertask.md). Plans can also have a collection of [plannerBuckets](plannerbucket.md). Each plan object has a [details](plannerplandetails.md) object that can contain more information about the plan. For more information about the relationships between groups, plans, and tasks, see [Planner](planner-overview.md). +Represents a plan in Microsoft 365. Either a [group](../resources/group.md) or a [user](../resources/user.md) owns a plan. Plans contain a collection of [plannerTasks](../resources/plannertask.md). Plans can also have collections of [plannerBuckets](../resources/plannerbucket.md) and [plannerGoals](../resources/plannergoal.md). Each plan object has a [details](../resources/plannerplandetails.md) object that can contain more information about the plan. For more information about the relationships between groups, plans, and tasks, see [Planner](../resources/planner-overview.md). ## Methods | Method | Return Type |Description| |:---------------|:--------|:----------| -|[Create](../api/planner-post-plans.md) | [plannerPlan](plannerplan.md) |Create a **plannerPlan** object.| -|[Get](../api/plannerplan-get.md) | [plannerPlan](plannerplan.md) |Read properties and relationships of **plannerPlan** object.| -|[Update](../api/plannerplan-update.md) | [plannerPlan](plannerplan.md) |Update **plannerPlan** object. | +|[Create](../api/planner-post-plans.md) | [plannerPlan](../resources/plannerplan.md) |Create a **plannerPlan** object.| +|[Get](../api/plannerplan-get.md) | [plannerPlan](../resources/plannerplan.md) |Read properties and relationships of **plannerPlan** object.| +|[Update](../api/plannerplan-update.md) | [plannerPlan](../resources/plannerplan.md) |Update **plannerPlan** object. | |[Delete](../api/plannerplan-delete.md) | None | Delete **plannerPlan** object. | -|[Archive plan](../api/plannerplan-archive.md) | [plannerPlan](plannerplan.md) | Archive a **plannerPlan** object.| -|[Unarchive plan](../api/plannerplan-unarchive.md) | [plannerPlan](plannerplan.md) | Unarchive an archived **plannerPlan** object.| +|[Archive plan](../api/plannerplan-archive.md) | [plannerPlan](../resources/plannerplan.md) | Archive a **plannerPlan** object.| +|[Unarchive plan](../api/plannerplan-unarchive.md) | [plannerPlan](../resources/plannerplan.md) | Unarchive an archived **plannerPlan** object.| |[Move to container](../api/plannerplan-movetocontainer.md) | [plannerPlan](../resources/plannerplan.md) | Move a **plannerPlan** object from one **plannerPlanContainer** to another. | -|[List plan buckets](../api/plannerplan-list-buckets.md) |[plannerBucket](plannerbucket.md) collection| Get a **plannerBucket** object collection.| -|[List plan tasks](../api/plannerplan-list-tasks.md) |[plannerTask](plannertask.md) collection| Get a **plannerTask** object collection.| -|[Get delta](../api/plannerplan-delta.md) | [plannerPlan](../resources/plannerplan.md) collection | Get newly created, updated, or deleted **plannerPlan** objects in either a **group** or a [plannerRoster](plannerroster.md) type container without having to perform a full read of the entire resource collection. | +|[List plan buckets](../api/plannerplan-list-buckets.md) |[plannerBucket](../resources/plannerbucket.md) collection| Get a **plannerBucket** object collection.| +|[List plan goals](../api/plannerplan-list-goals.md) |[plannerGoal](../resources/plannergoal.md) collection| Get the goals associated with the plan.| +|[List plan tasks](../api/plannerplan-list-tasks.md) |[plannerTask](../resources/plannertask.md) collection| Get a **plannerTask** object collection.| +|[Get delta](../api/plannerplan-delta.md) | [plannerPlan](../resources/plannerplan.md) collection | Get newly created, updated, or deleted **plannerPlan** objects in either a **group** or a [plannerRoster](../resources/plannerroster.md) type container without having to perform a full read of the entire resource collection. | |[Get usage rights](../api/plannerplan-getusagerights.md)|[planUsageRight](../resources/planusageright.md)|Get the usage rights for a specific [plan](../resources/plannerplan.md) based on its sensitivity label assignment and the requesting user's permissions.| -|[List history items](../api/plannerplan-list-historyitems.md)|[plannerHistoryItem](plannerhistoryitem.md) collection|Get the [history](../resources/plannerhistoryitem.md) of changes made to tasks within a [plan](../resources/plannerplan.md).| +|[List history items](../api/plannerplan-list-historyitems.md)|[plannerHistoryItem](../resources/plannerhistoryitem.md) collection|Get the [history](../resources/plannerhistoryitem.md) of changes made to tasks within a [plan](../resources/plannerplan.md).| ## Properties | Property | Type |Description| @@ -52,10 +53,11 @@ Represents a plan in Microsoft 365. Either a [group](group.md) or a [user](user. ## Relationships | Relationship | Type |Description| |:---------------|:--------|:----------| -|buckets|[plannerBucket](plannerbucket.md) collection| Collection of buckets in the plan. Read-only. Nullable.| -|details|[plannerPlanDetails](plannerplandetails.md)| Extra details about the plan. Read-only. Nullable. | -|historyItems|[plannerHistoryItem](plannerhistoryitem.md) collection| Collection of history items for entities in the plan. Read-only. Nullable. | -|tasks|[plannerTask](plannertask.md) collection| Collection of tasks in the plan. Read-only. Nullable. | +|buckets|[plannerBucket](../resources/plannerbucket.md) collection| Collection of buckets in the plan. Read-only. Nullable.| +|details|[plannerPlanDetails](../resources/plannerplandetails.md)| Extra details about the plan. Read-only. Nullable. | +|goals|[plannerGoal](../resources/plannergoal.md) collection| Collection of goals in the plan. Read-only. Nullable. | +|historyItems|[plannerHistoryItem](../resources/plannerhistoryitem.md) collection| Collection of history items for entities in the plan. Read-only. Nullable. | +|tasks|[plannerTask](../resources/plannertask.md) collection| Collection of tasks in the plan. Read-only. Nullable. | ## JSON representation diff --git a/api-reference/beta/resources/plannertask.md b/api-reference/beta/resources/plannertask.md index 9646052df7a..ee94e60e3be 100644 --- a/api-reference/beta/resources/plannertask.md +++ b/api-reference/beta/resources/plannertask.md @@ -46,6 +46,7 @@ Represents a planner task in Microsoft 365. A planner task is contained in a [pl |createdDateTime|DateTimeOffset|Read-only. The date and time at which the task is created. The Timestamp type represents date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`| |creationSource|[plannerTaskCreation](../resources/plannertaskcreation.md)|Information about the origin of the task.| |dueDateTime|DateTimeOffset|The date and time at which the task is due. The timestamp type represents date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`| +|goalIds|String collection|Read-only. The IDs of the goals associated with the task.| |hasChat|Boolean|Read-only. This value is `true` if the task has chat messages associated with it. Otherwise, `false`.| |hasDescription|Boolean|Read-only. This value is `true` if the details object of the task has a nonempty description. Otherwise, `false`.| |id|String|Read-only. The unique identifier of the task. The value of this property is 28 characters long and case-sensitive. [Format validation](tasks-identifiers-disclaimer.md) is done on the service.| @@ -113,6 +114,7 @@ The following JSON representation shows the resource type. "createdBy": {"@odata.type": "microsoft.graph.identitySet"}, "createdDateTime": "String (timestamp)", "dueDateTime": "String (timestamp)", + "goalIds": ["String"], "hasChat": "Boolean", "hasDescription": "Boolean", "id": "String (identifier)", diff --git a/api-reference/beta/toc/tasks-and-plans/toc.yml b/api-reference/beta/toc/tasks-and-plans/toc.yml index 73b4c72c4e2..85527f9c12d 100644 --- a/api-reference/beta/toc/tasks-and-plans/toc.yml +++ b/api-reference/beta/toc/tasks-and-plans/toc.yml @@ -24,6 +24,8 @@ items: href: ../../api/plannerplan-movetocontainer.md - name: List plan buckets href: ../../api/plannerplan-list-buckets.md + - name: List plan goals + href: ../../api/plannerplan-list-goals.md - name: List plan tasks href: ../../api/plannerplan-list-tasks.md - name: Get delta @@ -66,6 +68,14 @@ items: href: ../../api/plannerbucket-delete.md - name: Get delta href: ../../api/plannerbucket-delta.md +- name: Planner goal + items: + - name: Planner goal + href: ../../resources/plannergoal.md + - name: Get goal + href: ../../api/plannergoal-get.md + - name: List goals + href: ../../api/plannerplan-list-goals.md - name: Planner history item items: - name: Planner history item diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 0439e646c9a..696c522fbbb 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -3269,6 +3269,7 @@ "plannerPlan", "plannerTask", "plannerBucket", + "plannerGoal", "plannerHistoryItem", "plannerPlanDetails", "plannerRoster", diff --git a/changelog/Microsoft.Office.Tasks.json b/changelog/Microsoft.Office.Tasks.json index f2b1718d56a..0c5c924b124 100644 --- a/changelog/Microsoft.Office.Tasks.json +++ b/changelog/Microsoft.Office.Tasks.json @@ -1,5 +1,55 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "cd259765-8bcc-4779-b14d-79fbb8850d0f", + "ApiChange": "Enumeration", + "ChangedApiName": "plannerGoalStatus", + "ChangeType": "Addition", + "Description": "Added the **plannerGoalStatus** enumeration type.", + "Target": "plannerGoalStatus" + }, + { + "Id": "cd259765-8bcc-4779-b14d-79fbb8850d0f", + "ApiChange": "Relationship", + "ChangedApiName": "goals", + "ChangeType": "Addition", + "Description": "Added the **goals** relationship to the [planner](https://learn.microsoft.com/graph/api/resources/planner?view=graph-rest-beta) resource.", + "Target": "planner" + }, + { + "Id": "cd259765-8bcc-4779-b14d-79fbb8850d0f", + "ApiChange": "Resource", + "ChangedApiName": "plannerGoal", + "ChangeType": "Addition", + "Description": "Added the **plannerGoal** resource.", + "Target": "plannerGoal" + }, + { + "Id": "cd259765-8bcc-4779-b14d-79fbb8850d0f", + "ApiChange": "Relationship", + "ChangedApiName": "goals", + "ChangeType": "Addition", + "Description": "Added the **goals** relationship to the [plannerPlan](https://learn.microsoft.com/graph/api/resources/plannerplan?view=graph-rest-beta) resource.", + "Target": "plannerPlan" + }, + { + "Id": "cd259765-8bcc-4779-b14d-79fbb8850d0f", + "ApiChange": "Property", + "ChangedApiName": "goalIds", + "ChangeType": "Addition", + "Description": "Added the **goalIds** property to the [plannerTask](https://learn.microsoft.com/graph/api/resources/plannertask?view=graph-rest-beta) resource.", + "Target": "plannerTask" + } + ], + "Id": "cd259765-8bcc-4779-b14d-79fbb8850d0f", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-03T22:32:29.3715134Z", + "WorkloadArea": "Tasks and plans", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 3145a4af5e4..7c09ae9f793 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -132,7 +132,70 @@ Added the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?vi ### Tasks and plans -Added the [plannerHistoryItem](/graph/api/resources/plannerhistoryitem?view=graph-rest-beta&preserve-view=true) resource type and [List historyItems](/graph/api/plannerplan-list-historyitems?view=graph-rest-beta&preserve-view=true) method to audit task changes within a Planner plan. Track when tasks are created, updated, deleted, or moved, and filter by **occurredDateTime** to retrieve changes within specific time ranges. +- Added the [plannerHistoryItem](/graph/api/resources/plannerhistoryitem?view=graph-rest-beta&preserve-view=true) resource type and [List historyItems](/graph/api/plannerplan-list-historyitems?view=graph-rest-beta&preserve-view=true) method to audit task changes within a Planner plan. Track when tasks are created, updated, deleted, or moved, and filter by **occurredDateTime** to retrieve changes within specific time ranges. +- Added the [plannerGoal](/graph/api/resources/plannergoal?view=graph-rest-beta&preserve-view=true) resource type and related read methods for viewing goals in a Planner plan and understanding which goals are associated with each task. + +### Teamwork and communications | Graph API controls + +Updated Microsoft Graph documentation for transcript APIs to add guidance on tenant administrator controls that govern transcript access and speaker attribution. For more information, see [Get change notifications for transcripts and recordings using Microsoft Graph](teams-changenotifications-callrecording-and-calltranscript.md). + +### Teamwork and communications | Shift management + +The **timeZone** property of the [schedule](/graph/api/resources/schedule) resource must be set to an IANA time zone name, such as `America/Chicago` or `Europe/London`. For more information, see [Create or replace schedule](/graph/api/team-put-schedule). + +### Users + +Application permissions for the [user: translateExchangeIds](/graph/api/user-translateexchangeids) API are supported only for request URLs that identify a user in the path. + +## June 2026: New and generally available + +### Applications | Service principal + +Evaluate applications in the Microsoft Entra application gallery by using the [applicationTemplate](/graph/api/resources/applicationtemplate) resource type, including the **riskScore** and **riskFactors** properties for risk assessment. + +### Files | Reports + +- Added the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to the [reportRoot](/graph/api/resources/reportroot?view=graph-rest-beta&preserve-view=true) resource to retrieve aggregated OneDrive and SharePoint API usage metrics for a tenant, including egress usage and throttling metrics. +- [Upsert](/graph/api/filestoragecontainer-patch-permissions) (create or update) up to 40 permissions on a [fileStorageContainer](/graph/api/resources/filestoragecontainer) in a single request. The limit increased from 10 to 40 [permission](/graph/api/resources/permission) objects per request. + +### Groups + +- Added the **accessType**, **isFavorite**, **unseenConversationsCount**, and **unseenMessagesCount** properties to the [group](/graph/api/resources/group) resource. Use these properties to manage access settings and track conversation activity for Microsoft 365 groups. Added the **groupAccessType** enumeration type to support the **accessType** property on the [group](/graph/api/resources/group) resource. + +### Identity and access | Directory management + +- Added the [deviceRegistrationPolicy](/graph/api/resources/deviceregistrationpolicy) resource type and related methods to manage the policy that controls device registration quota restrictions, additional authentication, and authorization policies for your Microsoft Entra tenant. +- Added the [Get](/graph/api/accesspackagesubject-get) and [Update](/graph/api/accesspackagesubject-update) methods to the [accessPackageSubject](/graph/api/resources/accesspackagesubject) resource type to manage the subject lifecycle of external directory users in Microsoft Entra entitlement management. +- Added the **type** property to the [accessPackageResourceRole](/graph/api/resources/accesspackageresourcerole) resource to indicate whether an Azure resource role is active or eligible, enabling PIM-based role assignments for Azure resources in access packages. +- Added the [accessPackageSuggestion](/graph/api/resources/accesspackagesuggestion) resource type and related methods for discovering suggested access packages based on related people insights and assignment history. Use the [filterByCurrentUser](/graph/api/accesspackagesuggestions-filterbycurrentuser) function to retrieve personalized suggestions. +- Added the **approverInformationVisibility** property to the [accessPackageApprovalStage](/graph/api/resources/accesspackageapprovalstage) resource to control whether approver information is visible to requestors. +- Added the [endUserSettings](/graph/api/resources/endusersettings) resource type and related methods for configuring access package suggestion behavior, including related people insight levels and approver detail visibility. +- Added workflow preview operations to the [workflow](/graph/api/resources/identitygovernance-workflow) resource type in Lifecycle Workflows, enabling you to validate tasks and run workflows in preview mode without affecting production users. +- Added the [customDataProvidedResourceUploadSession](/graph/api/resources/customdataprovidedresourceuploadsession) resource type and related methods for uploading external access data (Bring Your Own Data) for access reviews. +- Added the [customDataProvidedResource](/graph/api/resources/customdataprovidedresource) resource type, an access package resource that represents an external application whose access data is provided through the Bring Your Own Data (BYOD) flow for catalog user access reviews. + +### Identity and access | Identity and sign-in + +- Added the [onVerifiedIdClaimValidationCustomExtension](/graph/api/resources/onverifiedidclaimvalidationcustomextension) and [onVerifiedIdClaimValidationListener](/graph/api/resources/onverifiedidclaimvalidationlistener) resource types and associated methods to support custom logic for claim validation from Verified ID credential presentations during authentication flows through Microsoft Entra custom authentication extensions in External ID. +- Added claim validation and match-confidence capabilities to [Verified ID profiles](/graph/api/resources/verifiedidprofile), enabling stronger claim verification and more flexible matching. +- Enhanced the [x509CertificateAuthenticationMethodConfiguration](/graph/api/resources/x509certificateauthenticationmethodconfiguration) resource type with the following capabilities for certificate-based authentication (CBA): + - Scoping CBA to specific certificate authorities and restricting which groups of users can authenticate using certificates from those CAs. + - Controlling whether issuer hints are sent to the client to filter the certificates shown in the certificate picker. +- Updated the **targetedAuthenticationMethod** property of the [authenticationMethodsRegistrationCampaignIncludeTarget](/graph/api/resources/authenticationmethodsregistrationcampaignincludetarget) resource to support `Fido2` in addition to `microsoftAuthenticator` for authentication method registration campaigns. Organizations can now use registration campaigns to nudge users to register and sign in with phishing-resistant passkeys (FIDO2). + +### Mailbox import and export + +- Added the [Overview of the mailbox import and export APIs in Microsoft Graph](/graph/mailbox-import-export-concept-overview) to help you build solutions for mailbox import and export scenarios. + +### People and workplace intelligence | Places + +- Added the **servicePlans** property to the [desk](/graph/api/resources/desk) resource to manage the service plans associated with workspace desks. +- Added the **placeId** property to the [place](/graph/api/resources/place) resource to provide a stable identifier across place types. + +### Security | Alerts and incidents + +- Added the migration guide [Migrate from legacy alerts to the alerts and incidents API](/graph/alertsv1-alertsv2-migration) to help you transition your apps from the deprecated Microsoft Graph security alerts v1 API to the new alerts and incidents API. +- Extended the [alertEvidence](/graph/api/resources/security-alertevidence) base type with additional derived types to provide detailed context about various artifacts involved in [security alerts](/graph/api/resources/security-alert). ### Teamwork and communications | Messaging From ff9c7207fc8c0f4c4ad48a2b4ac101a8c12f938e Mon Sep 17 00:00:00 2001 From: cparker-msft <4155756+cparker-msft@users.noreply.github.com> Date: Mon, 3 Aug 2026 19:07:16 -0400 Subject: [PATCH 008/189] docs: document mailboxFolder wellKnownName in beta (#29280) * docs: document mailboxFolder wellKnownName in beta Adds the beta mailboxFolder property documentation, updates all mailboxFolder response examples, and adds the Exchange changelog and July 2026 preview entry. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 * docs: address Copilot review feedback Normalizes mailboxFolder delta response URLs and aligns the list-folders $select example with its response payload. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Cameron Parker (from Dev Box) Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 --- api-reference/beta/api/mailbox-list-folders.md | 13 ++++++++----- api-reference/beta/api/mailbox-post-folders.md | 1 + api-reference/beta/api/mailboxfolder-delta.md | 6 ++++-- api-reference/beta/api/mailboxfolder-get.md | 1 + .../api/mailboxfolder-list-childfolders.md | 2 ++ api-reference/beta/api/mailboxfolder-update.md | 1 + api-reference/beta/resources/mailboxfolder.md | 2 ++ changelog/Microsoft.Exchange.json | 18 ++++++++++++++++++ concepts/whats-new-overview.md | 3 ++- 9 files changed, 39 insertions(+), 8 deletions(-) diff --git a/api-reference/beta/api/mailbox-list-folders.md b/api-reference/beta/api/mailbox-list-folders.md index d00483d41d8..dd0c923cc71 100644 --- a/api-reference/beta/api/mailbox-list-folders.md +++ b/api-reference/beta/api/mailbox-list-folders.md @@ -128,16 +128,18 @@ Content-length: 232 "parentMailboxUrl": "https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0643f21@a7809c93", "childFolderCount": 0, "totalItemCount": 2, + "wellKnownName": "archive", "type": "IPF.Note" }, { "@odata.type": "#microsoft.graph.mailboxFolder", "id": "NJWt2LeVEAAAIBDQAAAA==", - "displayName": "Calendar", + "displayName": "Project Calendar", "parentFolderId": "NJWt2LeVEAAAIBCAAAAA==", "parentMailboxUrl": "https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0643f21@a7809c93", "childFolderCount": 5, "totalItemCount": 6, + "wellKnownName": null, "type": "IPF.Appointment" } ], @@ -147,7 +149,7 @@ Content-length: 232 ### Example 2: List folders with query parameters -The following example uses the `$filter`, `$select`, and `$top` query parameters. The `$filter` parameter refines the results and returns only folders of **type** `IPF.Appointment`. The `$select` parameter is specified to return only the **displayName** and **type** properties, and the `$top` parameter sets the page size of the result set to return the first five folders in the mailbox. +The following example uses the `$filter`, `$select`, and `$top` query parameters. The `$filter` parameter refines the results and returns only folders of **type** `IPF.Appointment`. The `$select` parameter is specified to return only the **displayName**, **parentMailboxUrl**, **type**, and **wellKnownName** properties, and the `$top` parameter sets the page size of the result set to return the first five folders in the mailbox. #### Request @@ -160,7 +162,7 @@ The following example shows a request. } --> ```msgraph-interactive -GET https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0643f21@a7809c93/folders?$filter=type eq 'IPF.Appointment'&$select=displayName,type&$top=5 +GET https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0643f21@a7809c93/folders?$filter=type eq 'IPF.Appointment'&$select=displayName,parentMailboxUrl,type,wellKnownName&$top=5 ``` # [C#](#tab/csharp) @@ -210,9 +212,10 @@ Content-length: 232 { "@odata.type": "#microsoft.graph.mailboxFolder", "id": "NJWt2LeVEAAAIBDQAAAA==", - "displayName": "Calendar", + "displayName": "Project Calendar", "parentMailboxUrl": "https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0643f21@a7809c93", - "type": "IPF.Appointment" + "type": "IPF.Appointment", + "wellKnownName": null } ] } diff --git a/api-reference/beta/api/mailbox-post-folders.md b/api-reference/beta/api/mailbox-post-folders.md index 57763fd4acc..c48966015c6 100644 --- a/api-reference/beta/api/mailbox-post-folders.md +++ b/api-reference/beta/api/mailbox-post-folders.md @@ -134,6 +134,7 @@ Content-length: 179 "parentMailboxUrl": "https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0648f21@aab09c93", "childFolderCount": 0, "totalItemCount": 0, + "wellKnownName": null, "type": "IPF.Note" } ``` diff --git a/api-reference/beta/api/mailboxfolder-delta.md b/api-reference/beta/api/mailboxfolder-delta.md index 76d146a5037..0987099c725 100644 --- a/api-reference/beta/api/mailboxfolder-delta.md +++ b/api-reference/beta/api/mailboxfolder-delta.md @@ -142,13 +142,15 @@ Content-length: 254 { "@odata.type": "#microsoft.graph.mailboxFolder", "displayName": "Inbound", - "parentMailboxUrl": "https://graph.microsoft.com/beta/admin/Exchange/Mailboxes/MBX:e0643f21@a7809c93", + "wellKnownName": null, + "parentMailboxUrl": "https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0643f21@a7809c93", "id": "AAMkAGUwNjQ4ZjIxLTQ3Y2YtNDViMi1iZjc4LTMzNjMwNWM0ZGE2YQAuAAAAAADbrwBIJbBSTKolRbhHUzSHAQCQ2fKdhq8oSKEDSVrdi3lRAAACgfP9AAA=" }, { "@odata.type": "#microsoft.graph.mailboxFolder", "displayName": "Outbound", - "parentMailboxUrl": "https://graph.microsoft.com/beta/admin/Exchange/Mailboxes/MBX:e0643f21@a7809c93", + "wellKnownName": null, + "parentMailboxUrl": "https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0643f21@a7809c93", "id": "AAMkAGUwNjQ4ZjIxLTQ3Y2YtNDViMi1iZjc4LTMzNjMwNWM0ZGE2YQAuAAAAAADbrwBIJbBSTKolRbhHUzSHAQCQ2fKdhq8oSKEDSVrdi3lRAAACgfP_AAA=" } ] diff --git a/api-reference/beta/api/mailboxfolder-get.md b/api-reference/beta/api/mailboxfolder-get.md index 0aa3f586964..20faa3ce3dc 100644 --- a/api-reference/beta/api/mailboxfolder-get.md +++ b/api-reference/beta/api/mailboxfolder-get.md @@ -123,6 +123,7 @@ Content-length: 232 "parentMailboxUrl": "https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0643f21@a7809c93", "childFolderCount": 3, "totalItemCount": 58, + "wellKnownName": "inbox", "type": "IPF.Note" } ``` diff --git a/api-reference/beta/api/mailboxfolder-list-childfolders.md b/api-reference/beta/api/mailboxfolder-list-childfolders.md index 3d2b4aec001..47243fe7343 100644 --- a/api-reference/beta/api/mailboxfolder-list-childfolders.md +++ b/api-reference/beta/api/mailboxfolder-list-childfolders.md @@ -129,6 +129,7 @@ Content-length: 232 "parentMailboxUrl": "https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0643f21@a7809c93", "childFolderCount": 0, "totalItemCount": 20, + "wellKnownName": null, "type": "IPF.Note" }, { @@ -139,6 +140,7 @@ Content-length: 232 "parentMailboxUrl": "https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0643f21@a7809c93", "childFolderCount": 0, "totalItemCount": 1, + "wellKnownName": null, "type": "IPF.Note" } ] diff --git a/api-reference/beta/api/mailboxfolder-update.md b/api-reference/beta/api/mailboxfolder-update.md index cc6e40a2725..d49db699111 100644 --- a/api-reference/beta/api/mailboxfolder-update.md +++ b/api-reference/beta/api/mailboxfolder-update.md @@ -133,6 +133,7 @@ Content-length: 179 "parentMailboxUrl": "https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0648f21@aab09c93", "childFolderCount": 0, "totalItemCount": 0, + "wellKnownName": null, "type": "IPF.Note" } ``` diff --git a/api-reference/beta/resources/mailboxfolder.md b/api-reference/beta/resources/mailboxfolder.md index 4c08043eea0..a46438575e7 100644 --- a/api-reference/beta/resources/mailboxfolder.md +++ b/api-reference/beta/resources/mailboxfolder.md @@ -46,6 +46,7 @@ This resource supports [delta query](/graph/delta-query-overview) to track incre |parentMailboxUrl|String|The routing link to the actual underlying mailbox where the folder physically resides. The folder can be accessed using `GET {parentMailboxUrl}/folders/{id}`, which treats the entire URL as an opaque string.

This method is especially important when auto-expanding archiving is enabled for a user's in-place archive mailbox. The user's archive content can span across multiple mailboxes in such scenarios.| |totalItemCount|Int32|The number of items in the folder.| |type|String|Describes the folder class type.| +|wellKnownName|String|The locale-independent well-known name of the folder for folders created by Outlook, such as `inbox`, `sentitems`, `drafts`, `deleteditems`, or `archive`. For user-created folders, the value is `null`. Read-only.| ## Relationships |Relationship|Type|Description| @@ -73,6 +74,7 @@ The following JSON representation shows the resource type. "parentFolderId": "String", "parentMailboxUrl": "String", "totalItemCount": "Int32", + "wellKnownName": "String", "type": "String" } ``` diff --git a/changelog/Microsoft.Exchange.json b/changelog/Microsoft.Exchange.json index 17d68fa2a31..d8fa39563ef 100644 --- a/changelog/Microsoft.Exchange.json +++ b/changelog/Microsoft.Exchange.json @@ -18,6 +18,24 @@ "WorkloadArea": "Mailbox import and export", "SubArea": "" }, + { + "ChangeList": [ + { + "Id": "793a73b0-3e1d-4ddc-b700-7a21ab5b5461", + "ApiChange": "Property", + "ChangedApiName": "wellKnownName", + "ChangeType": "Addition", + "Description": "Added the **wellKnownName** property to the [mailboxFolder](https://learn.microsoft.com/en-us/graph/api/resources/mailboxFolder?view=graph-rest-beta) resource.", + "Target": "mailboxFolder" + } + ], + "Id": "793a73b0-3e1d-4ddc-b700-7a21ab5b5461", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-03T14:46:53.5974313Z", + "WorkloadArea": "Mailbox import and export", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 7c09ae9f793..9787a2c7866 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -124,7 +124,8 @@ Added support for automatically quarantining Lifecycle Workflows to stop a workf Added the `cloudNativeHtmlConversion` member to the [additionalDataOptions](/graph/api/resources/security-ediscoveryaddtoreviewsetoperation#additionaldataoptions-values) enumeration. ### Mailbox import and export -Added the [Delete mailboxItem](/graph/api/mailboxfolder-delete-items?view=graph-rest-beta&preserve-view=true) method to delete an individual [mailboxItem](/graph/api/resources/mailboxitem?view=graph-rest-beta&preserve-view=true) from a mailbox folder by using the mailbox import and export APIs. Use the **disposalType** query parameter to specify soft-delete or hard-delete semantics. +- Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources/mailboxfolder?view=graph-rest-beta&preserve-view=true) resource type to identify folders created by Outlook by using a locale-independent name. +- Added the [Delete mailboxItem](/graph/api/mailboxfolder-delete-items?view=graph-rest-beta&preserve-view=true) method to delete an individual [mailboxItem](/graph/api/resources/mailboxitem?view=graph-rest-beta&preserve-view=true) from a mailbox folder by using the mailbox import and export APIs. Use the **disposalType** query parameter to specify soft-delete or hard-delete semantics. ### Reports From a9470702e47d308e6d55082e4b7cdccc06beccee Mon Sep 17 00:00:00 2001 From: "learn-build-service-prod[bot]" <113403604+learn-build-service-prod[bot]@users.noreply.github.com> Date: Tue, 4 Aug 2026 11:45:06 -0400 Subject: [PATCH 009/189] Confirm merge from repo_sync_working_branch to main to sync with https://github.com/microsoftgraph/microsoft-graph-docs-contrib (branch main) (#29400) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit * Use contractions in permission-update * Use contractions in phoneauthenticationmethod-update * Use contractions in plannerassignedtotaskboardtaskformat-update * Use contractions in post-post-attachments * Use contractions in printdocument-createuploadsession * Use contractions in printer-update * Use contractions in printjob-cancel * Use contractions in projectrome-put-activity * Use contractions in qrcode-get * Use contractions in reportroot-getemailactivitycounts * Use contractions in reportroot-getemailactivityusercounts * Use contractions in reportroot-getemailactivityuserdetail * Use contractions in reportroot-getemailappusageappsusercounts * Use contractions in reportroot-getemailappusageusercounts * Use contractions in reportroot-getemailappusageuserdetail * Use contractions in reportroot-getm365appplatformusercounts * Use contractions in reportroot-getm365appusercounts * Use contractions in reportroot-getm365appuserdetail * Use contractions in reportroot-getmailboxusagedetail * Use contractions in reportroot-getmailboxusagemailboxcounts * Use contractions in reportroot-getmailboxusagequotastatusmailboxcounts * Use contractions in reportroot-getmailboxusagestorage * Use contractions in reportroot-getoffice365activationcounts * Use contractions in reportroot-getoffice365activationsuserdetail * Use contractions in reportroot-getoffice365activeusercounts * Use contractions in reportroot-getoffice365activeuserdetail * Use contractions in reportroot-getoffice365groupsactivitycounts * Use contractions in reportroot-getoffice365groupsactivitydetail * Use contractions in reportroot-getoffice365groupsactivityfilecounts * Use contractions in reportroot-getoffice365groupsactivitystorage * Use contractions in reportroot-getoffice365servicesusercounts * Use contractions in reportroot-getonedriveactivityfilecounts * Use contractions in reportroot-getonedriveactivityusercounts * Use contractions in reportroot-getonedriveactivityuserdetail * Use contractions in reportroot-getonedriveusageaccountcounts * Use contractions in reportroot-getonedriveusageaccountdetail * Use contractions in reportroot-getonedriveusagefilecounts * Use contractions in reportroot-getsharepointactivityfilecounts * Use contractions in reportroot-getsharepointactivitypages * Use contractions in reportroot-getsharepointactivityuserdetail * Use contractions in reportroot-getsharepointsiteusagedetail * Use contractions in reportroot-getsharepointsiteusagefilecounts * Use contractions in reportroot-getsharepointsiteusagepages * Use contractions in reportroot-getsharepointsiteusagesitecounts * Use contractions in reportroot-getsharepointsiteusagestorage * Use contractions in reportroot-getskypeforbusinessactivitycounts * Use contractions in reportroot-getskypeforbusinessactivityusercounts * Use contractions in reportroot-getskypeforbusinessactivityuserdetail * Use contractions in reportroot-getskypeforbusinessdeviceusagedistributionusercounts * Use contractions in reportroot-getskypeforbusinessdeviceusageuserdetail * Use contractions in reportroot-getskypeforbusinessorganizeractivityminutecounts * Use contractions in reportroot-getskypeforbusinessparticipantactivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivitycounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityusercounts * Use contractions in reportroot-getteamsdeviceusageusercounts * Use contractions in reportroot-getteamsuseractivityusercounts * Use contractions in reportroot-getteamsuseractivityuserdetail * Use contractions in reportroot-getyammeractivitycounts * Use contractions in reportroot-getyammeractivityusercounts * Use contractions in reportroot-getyammeractivityuserdetail * Use contractions in reportroot-getyammerdeviceusagedistributionusercounts * Use contractions in reportroot-getyammerdeviceusageusercounts * Use contractions in reportroot-getyammerdeviceusageuserdetail * Use contractions in reportroot-getyammergroupsactivitycounts * Use contractions in reportroot-getyammergroupsactivitydetail * Use contractions in riskdetection-get * Use contractions in riskyuser-get * Use contractions in schedulinggroup-delete * Use contractions in schemaextension-delete * Use contractions in security-ediscoverysearch-list-lastestimatestatisticsoperation * Use contractions in security-host-list-childhostpairs * Use contractions in security-host-list-parenthostpairs * Use contractions in security-hostpair-get * Use contractions in security-threatintelligence-list-sslcertificates * Use contractions in servicehealthissue-get * Use contractions in servicehealthissue-incidentreport * Use contractions in serviceprincipal-get * Use contractions in serviceupdatemessage-get * Use contractions in sharedwithchannelteaminfo-get * Use contractions in sharedwithchannelteaminfo-list-allowedmembers * Use contractions in simulationautomation-get * Use contractions in simulation-get * Use contractions in singlevaluelegacyextendedproperty-get * Use contractions in sitepage-publish * Use contractions in sitepage-update * Use contractions in site-search * Use contractions in subjectrightsrequest-list-notes * Use contractions in subscribedsku-list * Use contractions in synchronization-synchronizationschema-delete * Use contractions in synchronization-synchronizationschema-update * Use contractions in teamsapp-delete * Use contractions in teamsapp-publish * Use contractions in teamsapp-update * Use contractions in teamworktag-get * Use contractions in tenantappmanagementpolicy-update * Use contractions in tenantdatasecurityandgovernance-processcontentasync * Use contractions in timeoffrequest-get * Use contractions in todotask-delta * Use contractions in todotask-list-checklistitems * Use contractions in todotask-post-attachments * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-list-calendarview * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistration-list * Use contractions in virtualeventregistration-list-sessions * Use contractions in virtualeventwebinar-post-registrations * Use contractions in webpart-delete * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Update simulation-update.md for requirement around simuation state (#9936) * Update simulation-update.md for requirement around simuation state Clarified simulation state as draft as required and updated description. * Minor fixes --------- Co-authored-by: Faith Moraa Ombongi * Remove license-type availability banner from Graph beta eDiscovery overview Replaces preview/SKU-specific note in ediscovery-ediscoveryapioverview.md with neutral guidance pointing to Microsoft Purview eDiscovery documentation. Addresses customer confusion (IcM 51000001064141) about creating searches in standard eDiscovery cases via Graph. * Fix Read-only capitalization in appscope.md * Fix Read-only capitalization in azureactivedirectorytenant.md * Fix Read-only capitalization in channel.md * Fix Read-only capitalization in chatmessage.md * Fix Read-only capitalization in cloudpc.md * Fix Read-only capitalization in conditionalaccesspolicy.md * Fix Read-only capitalization in connectedorganizationmembers.md * Fix Read-only capitalization in crosscloudazureactivedirectorytenant.md * Fix Read-only capitalization in customaccesspackageworkflowextension.md * Fix Read-only capitalization in delegatedadminrelationship.md * Fix Read-only capitalization in directoryrole.md * Fix Read-only capitalization in externaldomainfederation.md * Fix Read-only capitalization in groupmembers.md * Fix Read-only capitalization in insights-shared.md * Fix Read-only capitalization in insights-trending.md * Fix Read-only capitalization in insights-used.md * Fix Read-only capitalization in passwordsinglesignonfield.md * Fix Read-only capitalization in plannerroster.md * Fix Read-only capitalization in reminder.md * Fix Read-only capitalization in serviceannouncement.md * Fix Read-only capitalization in singleuser.md * Fix Read-only capitalization in teamstab.md * Fix Read-only capitalization in translationpreferences.md * Fix Read-only capitalization in unifiedroleeligibilityscheduleinstance.md * Fix Read-only capitalization in accesspackageresourcerequest.md * Fix Read-only capitalization in accesspackageassignmentpolicy.md * Fix Read-only capitalization in azureactivedirectorytenant.md * Fix Read-only capitalization in channel.md * Fix Read-only capitalization in chatmessage.md * Fix Read-only capitalization in conditionalaccesspolicy.md * Fix Read-only capitalization in crosscloudazureactivedirectorytenant.md * Fix Read-only capitalization in delegatedadminrelationship.md * Fix Read-only capitalization in directoryrole.md * Fix Read-only capitalization in domainidentitysource.md * Fix Read-only capitalization in externaldomainfederation.md * Fix Read-only capitalization in insights-shared.md * Fix Read-only capitalization in insights-trending.md * Fix Read-only capitalization in reminder.md * Fix Read-only capitalization in serviceannouncement.md * Fix Read-only capitalization in rbacapplication-post-roleassignmentschedulerequests.md * Fix Read-only capitalization in rbacapplication-post-roleeligibilityschedulerequests.md * Fix Read-only capitalization in rbacapplication-rolescheduleinstances.md * Fix Read-only capitalization in rbacapplication-roleschedules.md * Fix Read-only capitalization in rbacapplication-post-roleassignmentschedulerequests.md * Fix Read-only capitalization in rbacapplication-post-roleeligibilityschedulerequests.md * Fix Read-only capitalization in rbacapplication-rolescheduleinstances.md * Fix Read-only capitalization in rbacapplication-roleschedules.md * Simplify description for protectionRule addition (#9944) * Repo sync for protected branch (#9945) * Resolve syncing conflicts from repo_sync_working_branch to main (#29086) * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-get * Use contractions in user-list-calendarview * Use contractions in user-list-events * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in user-list-people * Use contractions in user-list-permissiongrants * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualendpoint-list-serviceplans * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistrationconfiguration-post-questions * Use contractions in virtualmachinewithawsstoragebucketaccessfinding-get * Use contractions in windowsupdates-deploymentaudience-updateaudiencebyid * Use contractions in windowsupdates-updatableasset-enrollassets * Use contractions in windowsupdates-updatableassetgroup-addmembers * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Use contractions in accessreviewinstance-update * Use contractions in accessreviewscheduledefinition-update * Use contractions in accessreviewset-post-definitions * Use contractions in accessreviewstage-update * Use contractions in agentidentityblueprint-list * Use contractions in agentidentity-list * Use contractions in agreementfile-get * Use contractions in agreementfile-list-localizations * Use contractions in allowedvalue-get * Use contractions in application-addkey * Use contractions in application-post-applications * Use contractions in application-removekey * Use contractions in application-update * Use contractions in approval-get * Use contractions in approval-list-stages * Use contractions in approvalstage-get * Use contractions in associatedteaminfo-list * Use contractions in attachment-createuploadsession * Use contractions in authenticationcombinationconfiguration-get * Use contractions in authenticationcontextclassreference-get * Use contractions in authenticationeventlistener-get * Use contractions in authentication-list-methods * Use contractions in authenticationmethod-get * Use contractions in authenticationmethodmodedetail-get * Use contractions in authenticationmethodspolicy-get * Use contractions in authenticationstrengthpolicy-get * Use contractions in authenticationstrengthpolicy-list-combinationconfigurations * Use contractions in authenticationstrengthpolicy-usage * Use contractions in authenticationstrengthroot-list-authenticationmethodmodes * Use contractions in backuprestoreroot-list-onedriveforbusinessbrowsesessions * Use contractions in backuprestoreroot-list-sharepointbrowsesessions * Use contractions in basesitepage-list * Use contractions in bitlocker-list-recoverykeys * Use contractions in bookingappointment-update * Use contractions in bookingbusiness-list * Use contractions in bookingcustomer-get * Use contractions in bundle-removeitem * Use contractions in bundle-update * Use contractions in calendar-list-calendarview * Use contractions in call-keepalive * Use contractions in call-list-participants * Use contractions in call-reject * Use contractions in channel-get-members * Use contractions in chat-delete * Use contractions in chat-get * Use contractions in chat-get-members * Use contractions in chat-list-members * Use contractions in contenttype-delete * Use contractions in conversationmember-list * Use contractions in directory-list-customsecurityattributedefinitions * Use contractions in directoryobject-delta * Use contractions in domain-delete * Use contractions in domain-get-rootdomain * Use contractions in domain-list-federationconfiguration * Use contractions in drive-get-specialfolder * Use contractions in driveitem-copy * Use contractions in driveitem-createlink * Use contractions in driveitem-search * Use contractions in driveitemversion-get * Use contractions in educationclass-delta * Use contractions in educationclass-post * Use contractions in entitlementmanagementsettings-get * Use contractions in externalauthenticationmethodconfiguration-get * Use contractions in externalconnectors-externalgroup-update * Use contractions in externalconnectors-externalitem-get * Use contractions in externalconnectors-schema-get * Use contractions in fido2authenticationmethod-list * Use contractions in group-delta * Use contractions in group-list-acceptedsenders * Use contractions in group-list-calendarview * Use contractions in group-post-members * Use contractions in group-update * Use contractions in identitygovernance-insights-workflowsprocessedsummary * Use contractions in identitygovernance-task-get * Use contractions in identitygovernance-workflowtemplate-get * Use contractions in identityuserflowattributeassignment-update * Use contractions in inferenceclassification-list-overrides * Use contractions in internaldomainfederation-get * Use contractions in learningcourseactivity-update * Use contractions in list-get * Use contractions in listitem-delete * Use contractions in listitem-update * Use contractions in mailfolder-list-childfolders * Use contractions in message-createreply * Use contractions in message-createreplyall * Use contractions in message-delta * Use contractions in message-reply * Use contractions in message-replyall * Use contractions in offershiftrequest-get * Use contractions in onlinemeeting-createorget * Use contractions in orgcontact-delta * Use contractions in outlookuser-supportedtimezones * Use contractions in permissiongrantpolicy-update * Use contractions in permission-update * Use contractions in phoneauthenticationmethod-update * Use contractions in plannerassignedtotaskboardtaskformat-update * Use contractions in post-post-attachments * Use contractions in printdocument-createuploadsession * Use contractions in printer-update * Use contractions in printjob-cancel * Use contractions in projectrome-put-activity * Use contractions in qrcode-get * Use contractions in reportroot-getemailactivitycounts * Use contractions in reportroot-getemailactivityusercounts * Use contractions in reportroot-getemailactivityuserdetail * Use contractions in reportroot-getemailappusageappsusercounts * Use contractions in reportroot-getemailappusageusercounts * Use contractions in reportroot-getemailappusageuserdetail * Use contractions in reportroot-getm365appplatformusercounts * Use contractions in reportroot-getm365appusercounts * Use contractions in reportroot-getm365appuserdetail * Use contractions in reportroot-getmailboxusagedetail * Use contractions in reportroot-getmailboxusagemailboxcounts * Use contractions in reportroot-getmailboxusagequotastatusmailboxcounts * Use contractions in reportroot-getmailboxusagestorage * Use contractions in reportroot-getoffice365activationcounts * Use contractions in reportroot-getoffice365activationsuserdetail * Use contractions in reportroot-getoffice365activeusercounts * Use contractions in reportroot-getoffice365activeuserdetail * Use contractions in reportroot-getoffice365groupsactivitycounts * Use contractions in reportroot-getoffice365groupsactivitydetail * Use contractions in reportroot-getoffice365groupsactivityfilecounts * Use contractions in reportroot-getoffice365groupsactivitystorage * Use contractions in reportroot-getoffice365servicesusercounts * Use contractions in reportroot-getonedriveactivityfilecounts * Use contractions in reportroot-getonedriveactivityusercounts * Use contractions in reportroot-getonedriveactivityuserdetail * Use contractions in reportroot-getonedriveusageaccountcounts * Use contractions in reportroot-getonedriveusageaccountdetail * Use contractions in reportroot-getonedriveusagefilecounts * Use contractions in reportroot-getsharepointactivityfilecounts * Use contractions in reportroot-getsharepointactivitypages * Use contractions in reportroot-getsharepointactivityuserdetail * Use contractions in reportroot-getsharepointsiteusagedetail * Use contractions in reportroot-getsharepointsiteusagefilecounts * Use contractions in reportroot-getsharepointsiteusagepages * Use contractions in reportroot-getsharepointsiteusagesitecounts * Use contractions in reportroot-getsharepointsiteusagestorage * Use contractions in reportroot-getskypeforbusinessactivitycounts * Use contractions in reportroot-getskypeforbusinessactivityusercounts * Use contractions in reportroot-getskypeforbusinessactivityuserdetail * Use contractions in reportroot-getskypeforbusinessdeviceusagedistributionusercounts * Use contractions in reportroot-getskypeforbusinessdeviceusageuserdetail * Use contractions in reportroot-getskypeforbusinessorganizeractivityminutecounts * Use contractions in reportroot-getskypeforbusinessparticipantactivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivitycounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityusercounts * Use contractions in reportroot-getteamsdeviceusageusercounts * Use contractions in reportroot-getteamsuseractivityusercounts * Use contractions in reportroot-getteamsuseractivityuserdetail * Use contractions in reportroot-getyammeractivitycounts * Use contractions in reportroot-getyammeractivityusercounts * Use contractions in reportroot-getyammeractivityuserdetail * Use contractions in reportroot-getyammerdeviceusagedistributionusercounts * Use contractions in reportroot-getyammerdeviceusageusercounts * Use contractions in reportroot-getyammerdeviceusageuserdetail * Use contractions in reportroot-getyammergroupsactivitycounts * Use contractions in reportroot-getyammergroupsactivitydetail * Use contractions in riskdetection-get * Use contractions in riskyuser-get * Use contractions in schedulinggroup-delete * Use contractions in schemaextension-delete * Use contractions in security-ediscoverysearch-list-lastestimatestatisticsoperation * Use contractions in security-host-list-childhostpairs * Use contractions in security-host-list-parenthostpairs * Use contractions in security-hostpair-get * Use contractions in security-threatintelligence-list-sslcertificates * Use contractions in servicehealthissue-get * Use contractions in servicehealthissue-incidentreport * Use contractions in serviceprincipal-get * Use contractions in serviceupdatemessage-get * Use contractions in sharedwithchannelteaminfo-get * Use contractions in sharedwithchannelteaminfo-list-allowedmembers * Use contractions in simulationautomation-get * Use contractions in simulation-get * Use contractions in singlevaluelegacyextendedproperty-get * Use contractions in sitepage-publish * Use contractions in sitepage-update * Use contractions in site-search * Use contractions in subjectrightsrequest-list-notes * Use contractions in subscribedsku-list * Use contractions in synchronization-synchronizationschema-delete * Use contractions in synchronization-synchronizationschema-update * Use contractions in teamsapp-delete * Use contractions in teamsapp-publish * Use contractions in teamsapp-update * Use contractions in teamworktag-get * Use contractions in tenantappmanagementpolicy-update * Use contractions in tenantdatasecurityandgovernance-processcontentasync * Use contractions in timeoffrequest-get * Use contractions in todotask-delta * Use contractions in todotask-list-checklistitems * Use contractions in todotask-post-attachments * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-list-calendarview * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistration-list * Use contractions in virtualeventregistration-list-sessions * Use contractions in virtualeventwebinar-post-registrations * Use contractions in webpart-delete * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Auto Publish – main to live - 2026-06-12 00:30 UTC (#29054) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identity APIs (#28984) Updated important notes regarding agent identity blueprints and roles. * Add mdai service source to security alerts (#28897) * Add MDAI service source * fix name * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Harel Damti Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add conflictBehavior support to fileStorageContainer POST permissions (#28918) * Add conflictBehavior support to fileStorageContainer POST permissions Added @microsoft.graph.conflictBehavior annotation parameter to Create permission API for both beta and v1.0. Supports 'fail' (default, returns 409 Conflict) and 'replace' (updates existing role) values. - Updated beta and v1.0 POST permissions docs with path parameters, conflictBehavior details, and replace example - Added changelog entries for beta and v1.0 - Updated What's New for May 2026 * Fix dataLocation query parameter - remove incorrect $ prefix The $ prefix only applies to OData keywords like \, \, \. Custom query parameters like dataLocation should not have the prefix. * Fix validation issues - absolute links and broken references - Convert absolute learn.microsoft.com link to relative link in fileStorageContainer docs - Fix broken alertsv1-alertsv2-migration link to point to security-alert resource - Remove broken migrationMode enum link * Format conflictBehavior description - add space before parentheses * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-post-permissions.md * Update filestoragecontainer-post-permissions.md * Update api-reference/v1.0/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Update api-reference/beta/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Clarify Example 1 as new permission creation Label the first sample as Example 1 and update request/response subheadings for consistency with Example 2 in beta and v1.0 docs. * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add behavioral guidance and hidden membership notes to checkMemberGroups (#28976) * docs: add behavioral guidance and hidden membership notes to checkMemberGroups Add IMPORTANT alert documenting single-request evaluation semantics and partial results behavior for access-restricted groups. Add NOTE about latency expectations. Add hidden membership permission requirements (Member.Read.Hidden for app-only, group membership for delegated). Applies to both v1.0 and beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add passwordSubmit member to authenticationEventType enum (beta) (#28973) * Add passwordSubmit member to authenticationEventType enum (beta) Documents the new `passwordSubmit` (value 6) member added to the `authenticationEventType` enum in the Microsoft.AAD.Reporting beta schema. This enables OnPasswordSubmit event listeners and custom authentication extension handlers (Reports > Identity and access reports). Files updated: - api-reference/beta/resources/enums.md - added passwordSubmit row - api-reference/beta/resources/appliedauthenticationeventlistener.md - updated eventType value lists - changelog/Microsoft.AAD.Reporting.json - added changelog entry to clear AGS PR 15884845 warning - concepts/whats-new-overview.md - announced in May 2026 What's New Related AGS PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/15884845 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update changelog/Microsoft.AAD.Reporting.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify IANA Time Zone Database format for schedule timeZone (#28734) * Clarify IANA Time Zone Database format for schedule timeZone Graph Shifts expects timeZone on a schedule to use the IANA Time Zone Database (also called the Olson database or tz database) format, e.g. America/Chicago. The existing property description just says "tz database format" which is easy to miss; the API page for PUT /teams/{id}/schedule doesn't mention it at all. - api-reference/{v1.0,beta}/resources/schedule.md: expand the timeZone property description with the full "IANA Time Zone Database" name and an example value. - api-reference/{v1.0,beta}/api/team-put-schedule.md: add a NOTE in the Request body section calling out the timeZone format requirement. Co-Authored-By: Claude Opus 4.7 (1M context) * Rework timeZone wording to be more actionable Feedback was that the previous wording ("must be specified in IANA Time Zone Database format...") is formal but doesn't actually tell a developer what to put. Rework to: - Use active voice ("Set timeZone to..." instead of "must be specified in"). - Show the Area/Location pattern via two examples (America/Chicago, Europe/London) instead of one. - Link to the canonical list on Wikipedia, matching the existing pattern already used for IANA time zones in concepts/toolkit/components/agenda.md and for other standards (E.164, ISO 4217, ISO 3166-1 alpha-2) in call-records reference docs. Co-Authored-By: Claude Opus 4.7 (1M context) * Drop redundant Olson/tz database aliases from timeZone wording The Wikipedia link we point to is already titled "List of tz database time zones", so readers who know the format by that name still find it via the link text. Matches the agenda.md precedent in this repo, which says "IANA time zone" without the alias list. Co-Authored-By: Claude Opus 4.7 (1M context) * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update team-put-schedule.md --------- Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update fileStorageContainer permission docs for alternate keys (#28916) * Update fileStorageContainer permission docs for alternate keys and add v1.0 get permissions topic * Update example header for permission retrieval * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @MSFT-Andrea * Update filestoragecontainer-get-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-delete-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-update-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Rename filestoragecontainer-get-permission-permissions.md to filestoragecontainer-get-permissions-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.FileServices.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Changelog fix. --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add reviewer delegation support for access reviews (beta) + merge main conflict resolution (#28838) * Update beta access review delegation docs Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2c320825-53af-40dd-8f42-ed52df5ae12d Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: clarify reviewer example scope Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2b4147b8-b521-4a17-a5da-ea987c630d6f Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * rephrasing to focus on “reviewer delegation support” and link only to the primary entry point(s) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * split this into two ChangeList items (same record Id) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix guid Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: reorder access review decision item properties Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/bfc67a32-3878-4761-a3e1-f45633867fa3 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: align access review example formatting Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2318bcb0-67e7-4003-b7c5-8a8861253004 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: remove partial tab groups from access review examples Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/159d921e-8a7e-4ace-b801-1dc77de9bcbc Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: add full tab scaffolding to new access review examples for consistency Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/3dfef0f6-7ffa-45e4-bac0-f35fce549486 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * Remove manually inserted code snippets Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: snippet-gen-pull-automation[bot] <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: lilealdai <118565463+lilealdai@users.noreply.github.com> Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot <198982749+Copilot@users.noreply.github.com> Co-authored-by: Helge Solheim Co-authored-by: Helge Solheim Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: milanevk Co-authored-by: shlipsey3 <66325782+shlipsey3@users.noreply.github.com> Co-authored-by: hareldamti <94783416+hareldamti@users.noreply.github.com> Co-authored-by: Harel Damti Co-authored-by: ashyasingh <74160572+ashyasingh@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: diadabal <105948420+diadabal@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Raul Fernandes Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * Update simulation-update.md for requirement around simuation state (#9936) * Update simulation-update.md for requirement around simuation state Clarified simulation state as draft as required and updated description. * Minor fixes --------- Co-authored-by: Faith Moraa Ombongi * Publish main to live - reconcile divergence 2026-06-17 Sets live content identical to main to clear the squash-induced divergence. No manual live hotfixes existed. * Reconcile live to main (unblock auto-publish #29094) (#29095) * Publish main to live - reconcile divergence (refresh 2026-06-17 18:25) Sets live content identical to current main. main is authoritative; no live-only hotfixes. * Update tenantappmanagementpolicy-get.md --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Merge to publish. (#29097) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identity APIs (#28984) Updated important notes regarding agent identity blueprints and roles. * Add mdai service source to security alerts (#28897) * Add MDAI service source * fix name * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Harel Damti Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add conflictBehavior support to fileStorageContainer POST permissions (#28918) * Add conflictBehavior support to fileStorageContainer POST permissions Added @microsoft.graph.conflictBehavior annotation parameter to Create permission API for both beta and v1.0. Supports 'fail' (default, returns 409 Conflict) and 'replace' (updates existing role) values. - Updated beta and v1.0 POST permissions docs with path parameters, conflictBehavior details, and replace example - Added changelog entries for beta and v1.0 - Updated What's New for May 2026 * Fix dataLocation query parameter - remove incorrect $ prefix The $ prefix only applies to OData keywords like \, \, \. Custom query parameters like dataLocation should not have the prefix. * Fix validation issues - absolute links and broken references - Convert absolute learn.microsoft.com link to relative link in fileStorageContainer docs - Fix broken alertsv1-alertsv2-migration link to point to security-alert resource - Remove broken migrationMode enum link * Format conflictBehavior description - add space before parentheses * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-post-permissions.md * Update filestoragecontainer-post-permissions.md * Update api-reference/v1.0/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Update api-reference/beta/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Clarify Example 1 as new permission creation Label the first sample as Example 1 and update request/response subheadings for consistency with Example 2 in beta and v1.0 docs. * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add behavioral guidance and hidden membership notes to checkMemberGroups (#28976) * docs: add behavioral guidance and hidden membership notes to checkMemberGroups Add IMPORTANT alert documenting single-request evaluation semantics and partial results behavior for access-restricted groups. Add NOTE about latency expectations. Add hidden membership permission requirements (Member.Read.Hidden for app-only, group membership for delegated). Applies to both v1.0 and beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add passwordSubmit member to authenticationEventType enum (beta) (#28973) * Add passwordSubmit member to authenticationEventType enum (beta) Documents the new `passwordSubmit` (value 6) member added to the `authenticationEventType` enum in the Microsoft.AAD.Reporting beta schema. This enables OnPasswordSubmit event listeners and custom authentication extension handlers (Reports > Identity and access reports). Files updated: - api-reference/beta/resources/enums.md - added passwordSubmit row - api-reference/beta/resources/appliedauthenticationeventlistener.md - updated eventType value lists - changelog/Microsoft.AAD.Reporting.json - added changelog entry to clear AGS PR 15884845 warning - concepts/whats-new-overview.md - announced in May 2026 What's New Related AGS PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/15884845 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update changelog/Microsoft.AAD.Reporting.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify IANA Time Zone Database format for schedule timeZone (#28734) * Clarify IANA Time Zone Database format for schedule timeZone Graph Shifts expects timeZone on a schedule to use the IANA Time Zone Database (also called the Olson database or tz database) format, e.g. America/Chicago. The existing property description just says "tz database format" which is easy to miss; the API page for PUT /teams/{id}/schedule doesn't mention it at all. - api-reference/{v1.0,beta}/resources/schedule.md: expand the timeZone property description with the full "IANA Time Zone Database" name and an example value. - api-reference/{v1.0,beta}/api/team-put-schedule.md: add a NOTE in the Request body section calling out the timeZone format requirement. Co-Authored-By: Claude Opus 4.7 (1M context) * Rework timeZone wording to be more actionable Feedback was that the previous wording ("must be specified in IANA Time Zone Database format...") is formal but doesn't actually tell a developer what to put. Rework to: - Use active voice ("Set timeZone to..." instead of "must be specified in"). - Show the Area/Location pattern via two examples (America/Chicago, Europe/London) instead of one. - Link to the canonical list on Wikipedia, matching the existing pattern already used for IANA time zones in concepts/toolkit/components/agenda.md and for other standards (E.164, ISO 4217, ISO 3166-1 alpha-2) in call-records reference docs. Co-Authored-By: Claude Opus 4.7 (1M context) * Drop redundant Olson/tz database aliases from timeZone wording The Wikipedia link we point to is already titled "List of tz database time zones", so readers who know the format by that name still find it via the link text. Matches the agenda.md precedent in this repo, which says "IANA time zone" without the alias list. Co-Authored-By: Claude Opus 4.7 (1M context) * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update team-put-schedule.md --------- Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update fileStorageContainer permission docs for alternate keys (#28916) * Update fileStorageContainer permission docs for alternate keys and add v1.0 get permissions topic * Update example header for permission retrieval * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @MSFT-Andrea * Update filestoragecontainer-get-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-delete-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-update-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Rename filestoragecontainer-get-permission-permissions.md to filestoragecontainer-get-permissions-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.FileServices.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Changelog fix. --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add reviewer delegation support for access reviews (beta) + merge main conflict resolution (#28838) * Update beta access review delegation docs Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2c320825-53af-40dd-8f42-ed52df5ae12d Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: clarify reviewer example scope Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2b4147b8-b521-4a17-a5da-ea987c630d6f Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * rephrasing to focus on “reviewer delegation support” and link only to the primary entry point(s) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * split this into two ChangeList items (same record Id) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix guid Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: reorder access review decision item properties Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/bfc67a32-3878-4761-a3e1-f45633867fa3 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: align access review example formatting Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2318bcb0-67e7-4003-b7c5-8a8861253004 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: remove partial tab groups from access review examples Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/159d921e-8a7e-4ace-b801-1dc77de9bcbc Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: add full tab scaffolding to new access review examples for consistency Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/3dfef0f6-7ffa-45e4-bac0-f35fce549486 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * Remove manually inserted code snippets Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC (#29058) Co-authored-by: Microsoft Graph DevX Tooling * Update profilePropertySetting docs (#29038) * Updated according to KnutB's spec * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update peopleadminsettings-list-profilepropertysettings.md * Update profilepropertysetting.md * Move extended Delete description from resource table to API topic * Apply suggestion from @MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222741 (#29057) Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 222558 (#29051) Co-authored-by: Microsoft Graph DevX Tooling * Revise traceRouteHop availability in callRecord docs (#29055) * Revise traceRouteHop availability in callRecord docs * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update whats-new-overview.md (#29010) * Update whats-new-overview.md * Update whats-new-overview.md --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update pull request template to remove documentation plan requirement (#29069) Removed the requirement to attach the documentation plan for AI-assisted docs authoring. * 2026-06-15: Automated permissions reference update (#29068) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 222982 (#29067) Co-authored-by: Microsoft Graph DevX Tooling * Update whats-new-overview.md (#29064) * Update whats-new-overview.md * Update whats-new-overview.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add tenantId property to userAccount resource (#28845) * Add tenantId field to security user account resource Added tenantId field to user account resource details. * Update userAccount resource date and add tenantId * Update date for security userAccount resource * Update changelog with new API changes Added new changelog entries for tenantId and categories properties in userAccount resource. * Apply review suggestions: update changelog dates and add What's New entry for tenantId on userAccount * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi --------- Co-authored-by: Faith Moraa Ombongi Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Add mergeIncidents and moveAlerts v1.0 API docs (#28851) * Add mergeIncidents and moveAlerts v1.0 API docs Add v1.0 documentation for security action endpoints: - API pages: security-incident-mergeincidents.md, security-alert-movealerts.md - Resource pages: security-mergeresponse.md, security-correlationreason.md - Permission and RBAC include files - Update security-incident.md and security-alert.md Methods tables - Update v1.0 toc.mapping.json with new complex types - Add v1.0 changelog entries for all new artifacts Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Fix comments * Apply suggestion from @FaithOmbongi * Update what's new --------- Co-authored-by: Harel Damti Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi * Update reference TOC (#29071) Co-authored-by: Microsoft Graph DevX Tooling * Update people doc (#29023) * Updated people & workplace intelligence document according to Knut Brandrud's proposal reviewed within our team. * Minor typo Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address review comments in social intelligence overview * Apply remaining review thread doc fixes * minor date fix Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * date --------- Co-authored-by: Helge Solheim Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add isVisible property to lpc v1.0 (#28915) * Add isVisible property to lpc v1.0 * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update Microsoft.People.json * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @Danipocket --------- Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply simulation-update v1.0 PR #9936 changes to beta file (#29077) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Remove unsupported expand query from getRetentionLabel docs (#29080) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated files with build 223158 (#29075) Co-authored-by: Microsoft Graph DevX Tooling * Resolve syncing conflicts from repo_sync_working_branch to main (#29076) * Enhance clarity in API documentation by updating request and response example phrasing across multiple files * Apply suggestions from code review Co-authored-by: Jarbas Horst * Fix trailing pipe tables 1.0 (#9930) * Fix trailing pipe formatting in b2xidentityuserflow-post-userattributeassignments * Fix trailing pipe formatting in basesitepage-delete * Fix trailing pipe formatting in bundle-update * Fix trailing pipe formatting in call-redirect * Fix trailing pipe formatting in cloudclipboardroot-list-items * Fix trailing pipe formatting in contact-update * Fix trailing pipe formatting in driveitem-createlink * Fix trailing pipe formatting in driveitem-delta * Fix trailing pipe formatting in driveitem-get-content-format * Fix trailing pipe formatting in driveitem-invite * Fix trailing pipe formatting in driveitem-preview * Fix trailing pipe formatting in itemactivitystat-getactivitybyinterval * Fix trailing pipe formatting in listitem-delete * Fix trailing pipe formatting in listitem-update * Fix trailing pipe formatting in permission-grant * Fix trailing pipe formatting in security-host-list-passivedns * Fix trailing pipe formatting in site-list * Fix trailing pipe formatting in tablecolumncollection-add * Fix trailing pipe formatting in user-findmeetingtimes * Apply suggestions from code review Co-authored-by: Jarbas Horst --------- Co-authored-by: Jarbas Horst * Fix missing closing codeblock beta (#9919) * Fix formatting of HTTP request example in accesspackageresource-list-uploadsessions.md * Fix missing closing code block in security-labelsroot-delete-citations.md * Fix missing closing code block in singlevaluelegacyextendedproperty-get.md * Fix missing closing code block in usersettings-list-windows.md * Fix missing closing code block in webapplicationfirewallprovider-verify.md * Fix missing closing code block in windowssetting-get.md * Fix missing closing code block in windowssetting-list-instances.md * fix(beta api): close malformed http code fence in windowssettinginstance-get * Apply suggestions from code review Co-authored-by: Jarbas Horst --------- Co-authored-by: Jarbas Horst * Update synchronization-synchronization-list-templates.md (#9922) Update headings from H3 to H2. * Update https://github.com/microsoftgraph/microsoft-graph-docs-contrib/edit/main/api-reference/v1.0/api/synchronization-synchronizationtemplate-get.md (#9923) Update headings from H3 to H2. * Update synchronization-synchronizationtemplate-update.md (#9924) Update headings from H3 to H2. * Update eventmessage-post-attachments.md (#9926) Updated the header hierarchy to align with https://github.com/microsoftgraph/microsoft-graph-docs-contrib/blob/main/api-reference/v1.0/api/message-post-attachments.md * Update event-post-attachments.md (#9925) Updated the header hierarchy to align with https://github.com/microsoftgraph/microsoft-graph-docs-contrib/blob/main/api-reference/v1.0/api/message-post-attachments.md * Update educationassignment-list-resources.md (#9927) Update formatting * Update provisioningobjectsummary-list.md (#9928) Fix typo in error response example section * Fix trailing pipe tables beta (#9929) * Fix trailing pipe formatting in b2cidentityuserflow-post-userattributeassignments * Fix trailing pipe formatting in b2xidentityuserflow-post-userattributeassignments * Fix trailing pipe formatting in basesitepage-delete * Fix trailing pipe formatting in bookingbusiness-update * Fix trailing pipe formatting in bundle-update * Fix trailing pipe formatting in call-redirect * Fix trailing pipe formatting in cloudpc-retrievecloudpccountbystatus * Fix trailing pipe formatting in contact-update * Fix trailing pipe formatting in contenttype-associatewithhubsites * Fix trailing pipe formatting in customdataprovidedresourceuploadsession-uploadfile * Fix trailing pipe formatting in driveitem-createlink * Fix trailing pipe formatting in driveitem-delta * Fix trailing pipe formatting in driveitem-get-content-format * Fix trailing pipe formatting in driveitem-invite * Fix trailing pipe formatting in driveitem-preview * Fix trailing pipe formatting in ediscovery-noncustodialdatasource-post * Fix trailing pipe formatting in get-device-command-status * Fix trailing pipe formatting in governancerolesetting-update * Fix trailing pipe formatting in industrydata-inboundapiflow-post * Fix trailing pipe formatting in itemactivity-getbyinterval * Fix trailing pipe formatting in listitem-createlink * Fix trailing pipe formatting in listitem-delete * Fix trailing pipe formatting in listitem-update * Fix trailing pipe formatting in message-createreply * Fix trailing pipe formatting in networkaccess-reports-getdestinationsummaries * Fix trailing pipe formatting in networkaccess-reports-getdeviceusagesummary * Fix trailing pipe formatting in pagetemplate-delete * Fix trailing pipe formatting in permission-grant * Fix trailing pipe formatting in rbacapplication-post-roleassignmentschedulerequests * Fix trailing pipe formatting in security-collaborationroot-list-analyzedemails * Fix trailing pipe formatting in security-host-list-passivedns * Fix trailing pipe formatting in send-device-command * Fix trailing pipe formatting in site-list * Fix trailing pipe formatting in team-sendactivitynotification * Fix trailing pipe formatting in termstore-relation-post * Fix trailing pipe formatting in user-list-devices * Fix trailing pipe formatting in user-sendmail * Fix trailing pipe formatting in webpart-delete --------- Co-authored-by: Jarbas Horst * Fix missing closing codeblock 1.0 (#9920) * Fix missing closing http fence in security-auditlogquery-list-records * Fix missing closing http fence in userprotectionscopecontainer-compute * Fix missing closing http fence in usersettings-list-windows --------- Co-authored-by: Jarbas Horst * Update date range (#9931) When requesting a date over 28 days the API returns: "Invalid date value specified: 2026-04-06. Only support data for the past 28 days." * Correct date range for email activity report (#9932) https://github.com/microsoftgraph/microsoft-graph-docs-contrib/pull/9931/changes * Change user ID to placeholder in processContent API (#9921) * Change user ID to placeholder in processContent API Updated user ID placeholder in processContent API calls. * Update userdatasecurityandgovernance-processcontent.md Updated example user ID in processContent API calls. * Auto Publish – main to live - 2026-06-12 00:30 UTC (#29054) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identit… * cross-tenant migration APIs fixes (#9949) * Update security-retentionlabel-get.md (#9948) Remove extra space char * Bump actions/checkout from 6 to 7 (#9942) Bumps [actions/checkout](https://github.com/actions/checkout) from 6 to 7. - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](https://github.com/actions/checkout/compare/v6...v7) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * Move natl. cloiud availability info for MCP Server to prominent spot in Overvew (#9954) * Fixes duplicated news (#9957) Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update site-follow.md (#9952) Updated user ID in the follow site API request example, because it was not a valid GUID format. * Repo sync for protected branch (#9955) * Update generated permissions tables with build 224763 (#29173) Co-authored-by: Microsoft Graph DevX Tooling * Confirm merge from repo_sync_working_branch to main to sync with https://github.com/microsoftgraph/microsoft-graph-docs-contrib (branch main) (#29172) * Use contractions in bookingcustomer-get * Use contractions in bundle-removeitem * Use contractions in bundle-update * Use contractions in calendar-list-calendarview * Use contractions in call-keepalive * Use contractions in call-list-participants * Use contractions in call-reject * Use contractions in channel-get-members * Use contractions in chat-delete * Use contractions in chat-get * Use contractions in chat-get-members * Use contractions in chat-list-members * Use contractions in contenttype-delete * Use contractions in conversationmember-list * Use contractions in directory-list-customsecurityattributedefinitions * Use contractions in directoryobject-delta * Use contractions in domain-delete * Use contractions in domain-get-rootdomain * Use contractions in domain-list-federationconfiguration * Use contractions in drive-get-specialfolder * Use contractions in driveitem-copy * Use contractions in driveitem-createlink * Use contractions in driveitem-search * Use contractions in driveitemversion-get * Use contractions in educationclass-delta * Use contractions in educationclass-post * Use contractions in entitlementmanagementsettings-get * Use contractions in externalauthenticationmethodconfiguration-get * Use contractions in externalconnectors-externalgroup-update * Use contractions in externalconnectors-externalitem-get * Use contractions in externalconnectors-schema-get * Use contractions in fido2authenticationmethod-list * Use contractions in group-delta * Use contractions in group-list-acceptedsenders * Use contractions in group-list-calendarview * Use contractions in group-post-members * Use contractions in group-update * Use contractions in identitygovernance-insights-workflowsprocessedsummary * Use contractions in identitygovernance-task-get * Use contractions in identitygovernance-workflowtemplate-get * Use contractions in identityuserflowattributeassignment-update * Use contractions in inferenceclassification-list-overrides * Use contractions in internaldomainfederation-get * Use contractions in learningcourseactivity-update * Use contractions in list-get * Use contractions in listitem-delete * Use contractions in listitem-update * Use contractions in mailfolder-list-childfolders * Use contractions in message-createreply * Use contractions in message-createreplyall * Use contractions in message-delta * Use contractions in message-reply * Use contractions in message-replyall * Use contractions in offershiftrequest-get * Use contractions in onlinemeeting-createorget * Use contractions in orgcontact-delta * Use contractions in outlookuser-supportedtimezones * Use contractions in permissiongrantpolicy-update * Use contractions in permission-update * Use contractions in phoneauthenticationmethod-update * Use contractions in plannerassignedtotaskboardtaskformat-update * Use contractions in post-post-attachments * Use contractions in printdocument-createuploadsession * Use contractions in printer-update * Use contractions in printjob-cancel * Use contractions in projectrome-put-activity * Use contractions in qrcode-get * Use contractions in reportroot-getemailactivitycounts * Use contractions in reportroot-getemailactivityusercounts * Use contractions in reportroot-getemailactivityuserdetail * Use contractions in reportroot-getemailappusageappsusercounts * Use contractions in reportroot-getemailappusageusercounts * Use contractions in reportroot-getemailappusageuserdetail * Use contractions in reportroot-getm365appplatformusercounts * Use contractions in reportroot-getm365appusercounts * Use contractions in reportroot-getm365appuserdetail * Use contractions in reportroot-getmailboxusagedetail * Use contractions in reportroot-getmailboxusagemailboxcounts * Use contractions in reportroot-getmailboxusagequotastatusmailboxcounts * Use contractions in reportroot-getmailboxusagestorage * Use contractions in reportroot-getoffice365activationcounts * Use contractions in reportroot-getoffice365activationsuserdetail * Use contractions in reportroot-getoffice365activeusercounts * Use contractions in reportroot-getoffice365activeuserdetail * Use contractions in reportroot-getoffice365groupsactivitycounts * Use contractions in reportroot-getoffice365groupsactivitydetail * Use contractions in reportroot-getoffice365groupsactivityfilecounts * Use contractions in reportroot-getoffice365groupsactivitystorage * Use contractions in reportroot-getoffice365servicesusercounts * Use contractions in reportroot-getonedriveactivityfilecounts * Use contractions in reportroot-getonedriveactivityusercounts * Use contractions in reportroot-getonedriveactivityuserdetail * Use contractions in reportroot-getonedriveusageaccountcounts * Use contractions in reportroot-getonedriveusageaccountdetail * Use contractions in reportroot-getonedriveusagefilecounts * Use contractions in reportroot-getsharepointactivityfilecounts * Use contractions in reportroot-getsharepointactivitypages * Use contractions in reportroot-getsharepointactivityuserdetail * Use contractions in reportroot-getsharepointsiteusagedetail * Use contractions in reportroot-getsharepointsiteusagefilecounts * Use contractions in reportroot-getsharepointsiteusagepages * Use contractions in reportroot-getsharepointsiteusagesitecounts * Use contractions in reportroot-getsharepointsiteusagestorage * Use contractions in reportroot-getskypeforbusinessactivitycounts * Use contractions in reportroot-getskypeforbusinessactivityusercounts * Use contractions in reportroot-getskypeforbusinessactivityuserdetail * Use contractions in reportroot-getskypeforbusinessdeviceusagedistributionusercounts * Use contractions in reportroot-getskypeforbusinessdeviceusageuserdetail * Use contractions in reportroot-getskypeforbusinessorganizeractivityminutecounts * Use contractions in reportroot-getskypeforbusinessparticipantactivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivitycounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityusercounts * Use contractions in reportroot-getteamsdeviceusageusercounts * Use contractions in reportroot-getteamsuseractivityusercounts * Use contractions in reportroot-getteamsuseractivityuserdetail * Use contractions in reportroot-getyammeractivitycounts * Use contractions in reportroot-getyammeractivityusercounts * Use contractions in reportroot-getyammeractivityuserdetail * Use contractions in reportroot-getyammerdeviceusagedistributionusercounts * Use contractions in reportroot-getyammerdeviceusageusercounts * Use contractions in reportroot-getyammerdeviceusageuserdetail * Use contractions in reportroot-getyammergroupsactivitycounts * Use contractions in reportroot-getyammergroupsactivitydetail * Use contractions in riskdetection-get * Use contractions in riskyuser-get * Use contractions in schedulinggroup-delete * Use contractions in schemaextension-delete * Use contractions in security-ediscoverysearch-list-lastestimatestatisticsoperation * Use contractions in security-host-list-childhostpairs * Use contractions in security-host-list-parenthostpairs * Use contractions in security-hostpair-get * Use contractions in security-threatintelligence-list-sslcertificates * Use contractions in servicehealthissue-get * Use contractions in servicehealthissue-incidentreport * Use contractions in serviceprincipal-get * Use contractions in serviceupdatemessage-get * Use contractions in sharedwithchannelteaminfo-get * Use contractions in sharedwithchannelteaminfo-list-allowedmembers * Use contractions in simulationautomation-get * Use contractions in simulation-get * Use contractions in singlevaluelegacyextendedproperty-get * Use contractions in sitepage-publish * Use contractions in sitepage-update * Use contractions in site-search * Use contractions in subjectrightsrequest-list-notes * Use contractions in subscribedsku-list * Use contractions in synchronization-synchronizationschema-delete * Use contractions in synchronization-synchronizationschema-update * Use contractions in teamsapp-delete * Use contractions in teamsapp-publish * Use contractions in teamsapp-update * Use contractions in teamworktag-get * Use contractions in tenantappmanagementpolicy-update * Use contractions in tenantdatasecurityandgovernance-processcontentasync * Use contractions in timeoffrequest-get * Use contractions in todotask-delta * Use contractions in todotask-list-checklistitems * Use contractions in todotask-post-attachments * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-list-calendarview * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistration-list * Use contractions in virtualeventregistration-list-sessions * Use contractions in virtualeventwebinar-post-registrations * Use contractions in webpart-delete * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Update simulation-update.md for requirement around simuation state (#9936) * Update simulation-update.md for requirement around simuation state Clarified simulation state as draft as required and updated description. * Minor fixes --------- Co-authored-by: Faith Moraa Ombongi * Remove license-type availability banner from Graph beta eDiscovery overview Replaces preview/SKU-specific note in ediscovery-ediscoveryapioverview.md with neutral guidance pointing to Microsoft Purview eDiscovery documentation. Addresses customer confusion (IcM 51000001064141) about creating searches in standard eDiscovery cases via Graph. * Fix Read-only capitalization in appscope.md * Fix Read-only capitalization in azureactivedirectorytenant.md * Fix Read-only capitalization in channel.md * Fix Read-only capitalization in chatmessage.md * Fix Read-only capitalization in cloudpc.md * Fix Read-only capitalization in conditionalaccesspolicy.md * Fix Read-only capitalization in connectedorganizationmembers.md * Fix Read-only capitalization in crosscloudazureactivedirectorytenant.md * Fix Read-only capitalization in customaccesspackageworkflowextension.md * Fix Read-only capitalization in delegatedadminrelationship.md * Fix Read-only capitalization in directoryrole.md * Fix Read-only capitalization in externaldomainfederation.md * Fix Read-only capitalization in groupmembers.md * Fix Read-only capitalization in insights-shared.md * Fix Read-only capitalization in insights-trending.md * Fix Read-only capitalization in insights-used.md * Fix Read-only capitalization in passwordsinglesignonfield.md * Fix Read-only capitalization in plannerroster.md * Fix Read-only capitalization in reminder.md * Fix Read-only capitalization in serviceannouncement.md * Fix Read-only capitalization in singleuser.md * Fix Read-only capitalization in teamstab.md * Fix Read-only capitalization in translationpreferences.md * Fix Read-only capitalization in unifiedroleeligibilityscheduleinstance.md * Fix Read-only capitalization in accesspackageresourcerequest.md * Fix Read-only capitalization in accesspackageassignmentpolicy.md * Fix Read-only capitalization in azureactivedirectorytenant.md * Fix Read-only capitalization in channel.md * Fix Read-only capitalization in chatmessage.md * Fix Read-only capitalization in conditionalaccesspolicy.md * Fix Read-only capitalization in crosscloudazureactivedirectorytenant.md * Fix Read-only capitalization in delegatedadminrelationship.md * Fix Read-only capitalization in directoryrole.md * Fix Read-only capitalization in domainidentitysource.md * Fix Read-only capitalization in externaldomainfederation.md * Fix Read-only capitalization in insights-shared.md * Fix Read-only capitalization in insights-trending.md * Fix Read-only capitalization in reminder.md * Fix Read-only capitalization in serviceannouncement.md * Fix Read-only capitalization in rbacapplication-post-roleassignmentschedulerequests.md * Fix Read-only capitalization in rbacapplication-post-roleeligibilityschedulerequests.md * Fix Read-only capitalization in rbacapplication-rolescheduleinstances.md * Fix Read-only capitalization in rbacapplication-roleschedules.md * Fix Read-only capitalization in rbacapplication-post-roleassignmentschedulerequests.md * Fix Read-only capitalization in rbacapplication-post-roleeligibilityschedulerequests.md * Fix Read-only capitalization in rbacapplication-rolescheduleinstances.md * Fix Read-only capitalization in rbacapplication-roleschedules.md * Simplify description for protectionRule addition (#9944) * Repo sync for protected branch (#9945) * Resolve syncing conflicts from repo_sync_working_branch to main (#29086) * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-get * Use contractions in user-list-calendarview * Use contractions in user-list-events * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in user-list-people * Use contractions in user-list-permissiongrants * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualendpoint-list-serviceplans * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistrationconfiguration-post-questions * Use contractions in virtualmachinewithawsstoragebucketaccessfinding-get * Use contractions in windowsupdates-deploymentaudience-updateaudiencebyid * Use contractions in windowsupdates-updatableasset-enrollassets * Use contractions in windowsupdates-updatableassetgroup-addmembers * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Use contractions in accessreviewinstance-update * Use contractions in accessreviewscheduledefinition-update * Use contractions in accessreviewset-post-definitions * Use contractions in accessreviewstage-update * Use contractions in agentidentityblueprint-list * Use contractions in agentidentity-list * Use contractions in agreementfile-get * Use contractions in agreementfile-list-localizations * Use contractions in allowedvalue-get * Use contractions in application-addkey * Use contractions in application-post-applications * Use contractions in application-removekey * Use contractions in application-update * Use contractions in approval-get * Use contractions in approval-list-stages * Use contractions in approvalstage-get * Use contractions in associatedteaminfo-list * Use contractions in attachment-createuploadsession * Use contractions in authenticationcombinationconfiguration-get * Use contractions in authenticationcontextclassreference-get * Use contractions in authenticationeventlistener-get * Use contractions in authentication-list-methods * Use contractions in authenticationmethod-get * Use contractions in authenticationmethodmodedetail-get * Use contractions in authenticationmethodspolicy-get * Use contractions in authenticationstrengthpolicy-get * Use contractions in authenticationstrengthpolicy-list-combinationconfigurations * Use contractions in authenticationstrengthpolicy-usage * Use contractions in authenticationstrengthroot-list-authenticationmethodmodes * Use contractions in backuprestoreroot-list-onedriveforbusinessbrowsesessions * Use contractions in backuprestoreroot-list-sharepointbrowsesessions * Use contractions in basesitepage-list * Use contractions in bitlocker-list-recoverykeys * Use contractions in bookingappointment-update * Use contractions in bookingbusiness-list * Use contractions in bookingcustomer-get * Use contractions in bundle-removeitem * Use contractions in bundle-update * Use contractions in calendar-list-calendarview * Use contractions in call-keepalive * Use contractions in call-list-participants * Use contractions in call-reject * Use contractions in channel-get-members * Use contractions in chat-delete * Use contractions in chat-get * Use contractions in chat-get-members * Use contractions in chat-list-members * Use contractions in contenttype-delete * Use contractions in conversationmember-list * Use contractions in directory-list-customsecurityattributedefinitions * Use contractions in directoryobject-delta * Use contractions in domain-delete * Use contractions in domain-get-rootdomain * Use contractions in domain-list-federationconfiguration * Use contractions in drive-get-specialfolder * Use contractions in driveitem-copy * Use contractions in driveitem-createlink * Use contractions in driveitem-search * Use contractions in driveitemversion-get * Use contractions in educationclass-delta * Use contractions in educationclass-post * Use contractions in entitlementmanagementsettings-get * Use contractions in externalauthenticationmethodconfiguration-get * Use contractions in externalconnectors-externalgroup-update * Use contractions in externalconnectors-externalitem-get * Use contractions in externalconnectors-schema-get * Use contractions in fido2authenticationmethod-list * Use contractions in group-delta * Use contractions in group-list-acceptedsenders * Use contractions in group-list-calendarview * Use contractions in group-post-members * Use contractions in group-update * Use contractions in identitygovernance-insights-workflowsprocessedsummary * Use contractions in identitygovernance-task-get * Use contractions in identitygovernance-workflowtemplate-get * Use contractions in identityuserflowattributeassignment-update * Use contractions in inferenceclassification-list-overrides * Use contractions in internaldomainfederation-get * Use contractions in learningcourseactivity-update * Use contractions in list-get * Use contractions in listitem-delete * Use contractions in listitem-update * Use contractions in mailfolder-list-childfolders * Use contractions in message-createreply * Use contractions in message-createreplyall * Use contractions in message-delta * Use contractions in message-reply * Use contractions in message-replyall * Use contractions in offershiftrequest-get * Use contractions in onlinemeeting-createorget * Use contractions in orgcontact-delta * Use contractions in outlookuser-supportedtimezones * Use contractions in permissiongrantpolicy-update * Use contractions in permission-update * Use contractions in phoneauthenticationmethod-update * Use contractions in plannerassignedtotaskboardtaskformat-update * Use contractions in post-post-attachments * Use contractions in printdocument-createuploadsession * Use contractions in printer-update * Use contractions in printjob-cancel * Use contractions in projectrome-put-activity * Use contractions in qrcode-get * Use contractions in reportroot-getemailactivitycounts * Use contractions in reportroot-getemailactivityusercounts * Use contractions in reportroot-getemailactivityuserdetail * Use contractions in reportroot-getemailappusageappsusercounts * Use contractions in reportroot-getemailappusageusercounts * Use contractions in reportroot-getemailappusageuserdetail * Use contractions in reportroot-getm365appplatformusercounts * Use contractions in reportroot-getm365appusercounts * Use contractions in reportroot-getm365appuserdetail * Use contractions in reportroot-getmailboxusagedetail * Use contractions in reportroot-getmailboxusagemailboxcounts * Use contractions in reportroot-getmailboxusagequotastatusmailboxcounts * Use contractions in reportroot-getmailboxusagestorage * Use contractions in reportroot-getoffice365activationcounts * Use contractions in reportroot-getoffice365activationsuserdetail * Use contractions in reportroot-getoffice365activeusercounts * Use contractions in reportroot-getoffice365activeuserdetail * Use contractions in reportroot-getoffice365groupsactivitycounts * Use contractions in reportroot-getoffice365groupsactivitydetail * Use contractions in reportroot-getoffice365groupsactivityfilecounts * Use contractions in reportroot-getoffice365groupsactivitystorage * Use contractions in reportroot-getoffice365servicesusercounts * Use contractions in reportroot-getonedriveactivityfilecounts * Use contractions in reportroot-getonedriveactivityusercounts * Use contractions in reportroot-getonedriveactivityuserdetail * Use contractions in reportroot-getonedriveusageaccountcounts * Use contractions in reportroot-getonedriveusageaccountdetail * Use contractions in reportroot-getonedriveusagefilecounts * Use contractions in reportroot-getsharepointactivityfilecounts * Use contractions in reportroot-getsharepointactivitypages * Use contractions in reportroot-getsharepointactivityuserdetail * Use contractions in reportroot-getsharepointsiteusagedetail * Use contractions in reportroot-getsharepointsiteusagefilecounts * Use contractions in reportroot-getsharepointsiteusagepages * Use contractions in reportroot-getsharepointsiteusagesitecounts * Use contractions in reportroot-getsharepointsiteusagestorage * Use contractions in reportroot-getskypeforbusinessactivitycounts * Use contractions in reportroot-getskypeforbusinessactivityusercounts * Use contractions in reportroot-getskypeforbusinessactivityuserdetail * Use contractions in reportroot-getskypeforbusinessdeviceusagedistributionusercounts * Use contractions in reportroot-getskypeforbusinessdeviceusageuserdetail * Use contractions in reportroot-getskypeforbusinessorganizeractivityminutecounts * Use contractions in reportroot-getskypeforbusinessparticipantactivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivitycounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityusercounts * Use contractions in reportroot-getteamsdeviceusageusercounts * Use contractions in reportroot-getteamsuseractivityusercounts * Use contractions in reportroot-getteamsuseractivityuserdetail * Use contractions in reportroot-getyammeractivitycounts * Use contractions in reportroot-getyammeractivityusercounts * Use contractions in reportroot-getyammeractivityuserdetail * Use contractions in reportroot-getyammerdeviceusagedistributionusercounts * Use contractions in reportroot-getyammerdeviceusageusercounts * Use contractions in reportroot-getyammerdeviceusageuserdetail * Use contractions in reportroot-getyammergroupsactivitycounts * Use contractions in reportroot-getyammergroupsactivitydetail * Use contractions in riskdetection-get * Use contractions in riskyuser-get * Use contractions in schedulinggroup-delete * Use contractions in schemaextension-delete * Use contractions in security-ediscoverysearch-list-lastestimatestatisticsoperation * Use contractions in security-host-list-childhostpairs * Use contractions in security-host-list-parenthostpairs * Use contractions in security-hostpair-get * Use contractions in security-threatintelligence-list-sslcertificates * Use contractions in servicehealthissue-get * Use contractions in servicehealthissue-incidentreport * Use contractions in serviceprincipal-get * Use contractions in serviceupdatemessage-get * Use contractions in sharedwithchannelteaminfo-get * Use contractions in sharedwithchannelteaminfo-list-allowedmembers * Use contractions in simulationautomation-get * Use contractions in simulation-get * Use contractions in singlevaluelegacyextendedproperty-get * Use contractions in sitepage-publish * Use contractions in sitepage-update * Use contractions in site-search * Use contractions in subjectrightsrequest-list-notes * Use contractions in subscribedsku-list * Use contractions in synchronization-synchronizationschema-delete * Use contractions in synchronization-synchronizationschema-update * Use contractions in teamsapp-delete * Use contractions in teamsapp-publish * Use contractions in teamsapp-update * Use contractions in teamworktag-get * Use contractions in tenantappmanagementpolicy-update * Use contractions in tenantdatasecurityandgovernance-processcontentasync * Use contractions in timeoffrequest-get * Use contractions in todotask-delta * Use contractions in todotask-list-checklistitems * Use contractions in todotask-post-attachments * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-list-calendarview * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistration-list * Use contractions in virtualeventregistration-list-sessions * Use contractions in virtualeventwebinar-post-registrations * Use contractions in webpart-delete * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Auto Publish – main to live - 2026-06-12 00:30 UTC (#29054) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identity APIs (#28984) Updated important notes regarding agent identity blueprints and roles. * Add mdai service source to security alerts (#28897) * Add MDAI service source * fix name * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Harel Damti Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add conflictBehavior support to fileStorageContainer POST permissions (#28918) * Add conflictBehavior support to fileStorageContainer POST permissions Added @microsoft.graph.conflictBehavior annotation parameter to Create permission API for both beta and v1.0. Supports 'fail' (default, returns 409 Conflict) and 'replace' (updates existing role) values. - Updated beta and v1.0 POST permissions docs with path parameters, conflictBehavior details, and replace example - Added changelog entries for beta and v1.0 - Updated What's New for May 2026 * Fix dataLocation query parameter - remove incorrect $ prefix The $ prefix only applies to OData keywords like \, \, \. Custom query parameters like dataLocation should not have the prefix. * Fix validation issues - absolute links and broken references - Convert absolute learn.microsoft.com link to relative link in fileStorageContainer docs - Fix broken alertsv1-alertsv2-migration link to point to security-alert resource - Remove broken migrationMode enum link * Format conflictBehavior description - add space before parentheses * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-post-permissions.md * Update filestoragecontainer-post-permissions.md * Update api-reference/v1.0/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Update api-reference/beta/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Clarify Example 1 as new permission creation Label the first sample as Example 1 and update request/response subheadings for consistency with Example 2 in beta and v1.0 docs. * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add behavioral guidance and hidden membership notes to checkMemberGroups (#28976) * docs: add behavioral guidance and hidden membership notes to checkMemberGroups Add IMPORTANT alert documenting single-request evaluation semantics and partial results behavior for access-restricted groups. Add NOTE about latency expectations. Add hidden membership permission requirements (Member.Read.Hidden for app-only, group membership for delegated). Applies to both v1.0 and beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add passwordSubmit member to authenticationEventType enum (beta) (#28973) * Add passwordSubmit member to authenticationEventType enum (beta) Documents the new `passwordSubmit` (value 6) member added to the `authenticationEventType` enum in the Microsoft.AAD.Reporting beta schema. This enables OnPasswordSubmit event listeners and custom authentication extension handlers (Reports > Identity and access reports). Files updated: - api-reference/beta/resources/enums.md - added passwordSubmit row - api-reference/beta/resources/appliedauthenticationeventlistener.md - updated eventType value lists - changelog/Microsoft.AAD.Reporting.json - added changelog entry to clear AGS PR 15884845 warning - concepts/whats-new-overview.md - announced in May 2026 What's New Related AGS PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/15884845 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update changelog/Microsoft.AAD.Reporting.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify IANA Time Zone Database format for schedule timeZone (#28734) * Clarify IANA Time Zone Database format for schedule timeZone Graph Shifts expects timeZone on a schedule to use the IANA Time Zone Database (also called the Olson database or tz database) format, e.g. America/Chicago. The existing property description just says "tz database format" which is easy to miss; the API page for PUT /teams/{id}/schedule doesn't mention it at all. - api-reference/{v1.0,beta}/resources/schedule.md: expand the timeZone property description with the full "IANA Time Zone Database" name and an example value. - api-reference/{v1.0,beta}/api/team-put-schedule.md: add a NOTE in the Request body section calling out the timeZone format requirement. Co-Authored-By: Claude Opus 4.7 (1M context) * Rework timeZone wording to be more actionable Feedback was that the previous wording ("must be specified in IANA Time Zone Database format...") is formal but doesn't actually tell a developer what to put. Rework to: - Use active voice ("Set timeZone to..." instead of "must be specified in"). - Show the Area/Location pattern via two examples (America/Chicago, Europe/London) instead of one. - Link to the canonical list on Wikipedia, matching the existing pattern already used for IANA time zones in concepts/toolkit/components/agenda.md and for other standards (E.164, ISO 4217, ISO 3166-1 alpha-2) in call-records reference docs. Co-Authored-By: Claude Opus 4.7 (1M context) * Drop redundant Olson/tz database aliases from timeZone wording The Wikipedia link we point to is already titled "List of tz database time zones", so readers who know the format by that name still find it via the link text. Matches the agenda.md precedent in this repo, which says "IANA time zone" without the alias list. Co-Authored-By: Claude Opus 4.7 (1M context) * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update team-put-schedule.md --------- Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update fileStorageContainer permission docs for alternate keys (#28916) * Update fileStorageContainer permission docs for alternate keys and add v1.0 get permissions topic * Update example header for permission retrieval * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @MSFT-Andrea * Update filestoragecontainer-get-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-delete-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-update-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Rename filestoragecontainer-get-permission-permissions.md to filestoragecontainer-get-permissions-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.FileServices.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Changelog fix. --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add reviewer delegation support for access reviews (beta) + merge main conflict resolution (#28838) * Update beta access review delegation docs Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2c320825-53af-40dd-8f42-ed52df5ae12d Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: clarify reviewer example scope Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2b4147b8-b521-4a17-a5da-ea987c630d6f Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * rephrasing to focus on “reviewer delegation support” and link only to the primary entry point(s) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * split this into two ChangeList items (same record Id) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix guid Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: reorder access review decision item properties Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/bfc67a32-3878-4761-a3e1-f45633867fa3 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: align access review example formatting Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2318bcb0-67e7-4003-b7c5-8a8861253004 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: remove partial tab groups from access review examples Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/159d921e-8a7e-4ace-b801-1dc77de9bcbc Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: add full tab scaffolding to new access review examples for consistency Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/3dfef0f6-7ffa-45e4-bac0-f35fce549486 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * Remove manually inserted code snippets Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: snippet-gen-pull-automation[bot] <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: lilealdai <118565463+lilealdai@users.noreply.github.com> Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot <198982749+Copilot@users.noreply.github.com> Co-authored-by: Helge Solheim Co-authored-by: Helge Solheim Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: milanevk Co-authored-by: shlipsey3 <66325782+shlipsey3@users.noreply.github.com> Co-authored-by: hareldamti <94783416+hareldamti@users.noreply.github.com> Co-authored-by: Harel Damti Co-authored-by: ashyasingh <74160572+ashyasingh@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: diadabal <105948420+diadabal@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Raul Fernandes Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * Update simulation-update.md for requirement around simuation state (#9936) * Update simulation-update.md for requirement around simuation state Clarified simulation state as draft as required and updated description. * Minor fixes --------- Co-authored-by: Faith Moraa Ombongi * Publish main to live - reconcile divergence 2026-06-17 Sets live content identical to main to clear the squash-induced divergence. No manual live hotfixes existed. * Reconcile live to main (unblock auto-publish #29094) (#29095) * Publish main to live - reconcile divergence (refresh 2026-06-17 18:25) Sets live content identical to current main. main is authoritative; no live-only hotfixes. * Update tenantappmanagementpolicy-get.md --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Merge to publish. (#29097) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identity APIs (#28984) Updated important notes regarding agent identity blueprints and roles. * Add mdai service source to security alerts (#28897) * Add MDAI service source * fix name * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Harel Damti Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add conflictBehavior support to fileStorageContainer POST permissions (#28918) * Add conflictBehavior support to fileStorageContainer POST permissions Added @microsoft.graph.conflictBehavior annotation parameter to Create permission API for both beta and v1.0. Supports 'fail' (default, returns 409 Conflict) and 'replace' (updates existing role) values. - Updated beta and v1.0 POST permissions docs with path parameters, conflictBehavior details, and replace example - Added changelog entries for beta and v1.0 - Updated What's New for May 2026 * Fix dataLocation query parameter - remove incorrect $ prefix The $ prefix only applies to OData keywords like \, \, \. Custom query parameters like dataLocation should not have the prefix. * Fix validation issues - absolute links and broken references - Convert absolute learn.microsoft.com link to relative link in fileStorageContainer docs - Fix broken alertsv1-alertsv2-migration link to point to security-alert resource - Remove broken migrationMode enum link * Format conflictBehavior description - add space before parentheses * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-post-permissions.md * Update filestoragecontainer-post-permissions.md * Update api-reference/v1.0/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Update api-reference/beta/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Clarify Example 1 as new permission creation Label the first sample as Example 1 and update request/response subheadings for consistency with Example 2 in beta and v1.0 docs. * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add behavioral guidance and hidden membership notes to checkMemberGroups (#28976) * docs: add behavioral guidance and hidden membership notes to checkMemberGroups Add IMPORTANT alert documenting single-request evaluation semantics and partial results behavior for access-restricted groups. Add NOTE about latency expectations. Add hidden membership permission requirements (Member.Read.Hidden for app-only, group membership for delegated). Applies to both v1.0 and beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add passwordSubmit member to authenticationEventType enum (beta) (#28973) * Add passwordSubmit member to authenticationEventType enum (beta) Documents the new `passwordSubmit` (value 6) member added to the `authenticationEventType` enum in the Microsoft.AAD.Reporting beta schema. This enables OnPasswordSubmit event listeners and custom authentication extension handlers (Reports > Identity and access reports). Files updated: - api-reference/beta/resources/enums.md - added passwordSubmit row - api-reference/beta/resources/appliedauthenticationeventlistener.md - updated eventType value lists - changelog/Microsoft.AAD.Reporting.json - added changelog entry to clear AGS PR 15884845 warning - concepts/whats-new-overview.md - announced in May 2026 What's New Related AGS PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/15884845 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update changelog/Microsoft.AAD.Reporting.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify IANA Time Zone Database format for schedule timeZone (#28734) * Clarify IANA Time Zone Database format for schedule timeZone Graph Shifts expects timeZone on a schedule to use the IANA Time Zone Database (also called the Olson database or tz database) format, e.g. America/Chicago. The existing property description just says "tz database format" which is easy to miss; the API page for PUT /teams/{id}/schedule doesn't mention it at all. - api-reference/{v1.0,beta}/resources/schedule.md: expand the timeZone property description with the full "IANA Time Zone Database" name and an example value. - api-reference/{v1.0,beta}/api/team-put-schedule.md: add a NOTE in the Request body section calling out the timeZone format requirement. Co-Authored-By: Claude Opus 4.7 (1M context) * Rework timeZone wording to be more actionable Feedback was that the previous wording ("must be specified in IANA Time Zone Database format...") is formal but doesn't actually tell a developer what to put. Rework to: - Use active voice ("Set timeZone to..." instead of "must be specified in"). - Show the Area/Location pattern via two examples (America/Chicago, Europe/London) instead of one. - Link to the canonical list on Wikipedia, matching the existing pattern already used for IANA time zones in concepts/toolkit/components/agenda.md and for other standards (E.164, ISO 4217, ISO 3166-1 alpha-2) in call-records reference docs. Co-Authored-By: Claude Opus 4.7 (1M context) * Drop redundant Olson/tz database aliases from timeZone wording The Wikipedia link we point to is already titled "List of tz database time zones", so readers who know the format by that name still find it via the link text. Matches the agenda.md precedent in this repo, which says "IANA time zone" without the alias list. Co-Authored-By: Claude Opus 4.7 (1M context) * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update team-put-schedule.md --------- Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update fileStorageContainer permission docs for alternate keys (#28916) * Update fileStorageContainer permission docs for alternate keys and add v1.0 get permissions topic * Update example header for permission retrieval * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @MSFT-Andrea * Update filestoragecontainer-get-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-delete-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-update-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Rename filestoragecontainer-get-permission-permissions.md to filestoragecontainer-get-permissions-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.FileServices.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Changelog fix. --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add reviewer delegation support for access reviews (beta) + merge main conflict resolution (#28838) * Update beta access review delegation docs Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2c320825-53af-40dd-8f42-ed52df5ae12d Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: clarify reviewer example scope Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2b4147b8-b521-4a17-a5da-ea987c630d6f Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * rephrasing to focus on “reviewer delegation support” and link only to the primary entry point(s) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * split this into two ChangeList items (same record Id) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix guid Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: reorder access review decision item properties Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/bfc67a32-3878-4761-a3e1-f45633867fa3 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: align access review example formatting Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2318bcb0-67e7-4003-b7c5-8a8861253004 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: remove partial tab groups from access review examples Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/159d921e-8a7e-4ace-b801-1dc77de9bcbc Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: add full tab scaffolding to new access review examples for consistency Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/3dfef0f6-7ffa-45e4-bac0-f35fce549486 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * Remove manually inserted code snippets Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC (#29058) Co-authored-by: Microsoft Graph DevX Tooling * Update profilePropertySetting docs (#29038) * Updated according to KnutB's spec * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update peopleadminsettings-list-profilepropertysettings.md * Update profilepropertysetting.md * Move extended Delete description from resource table to API topic * Apply suggestion from @MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222741 (#29057) Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 222558 (#29051) Co-authored-by: Microsoft Graph DevX Tooling * Revise traceRouteHop availability in callRecord docs (#29055) * Revise traceRouteHop availability in callRecord docs * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update whats-new-overview.md (#29010) * Update whats-new-overview.md * Update whats-new-overview.md --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update pull request template to remove documentation plan requirement (#29069) Removed the requirement to attach the documentation plan for AI-assisted docs authoring. * 2026-06-15: Automated permissions reference update (#29068) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 222982 (#29067) Co-authored-by: Microsoft Graph DevX Tooling * Update whats-new-overview.md (#29064) * Update whats-new-overview.md * Update whats-new-overview.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add tenantId property to userAccount resource (#28845) * Add tenantId field to security user account resource Added tenantId field to user account resource details. * Update userAccount resource date and add tenantId * Update date for security userAccount resource * Update changelog with new API changes Added new changelog entries for tenantId and categories properties in userAccount resource. * Apply review suggestions: update changelog dates and add What's New entry for tenantId on userAccount * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi --------- Co-authored-by: Faith Moraa Ombongi Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Add mergeIncidents and moveAlerts v1.0 API docs (#28851) * Add mergeIncidents and moveAlerts v1.0 API docs … * Add warning against storing sensitive data in auditable directory objects (#9963) * Add warning against storing sensitive data in auditable directory objects Activity, audit, and sign-in logs capture request details that can include sensitive values stored on directory objects. Advise customers not to store secrets/tokens in directory attributes and point to Azure Key Vault. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update microsoft-graph-activity-logs-overview.md --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Faith ombongi patch 4 (#9967) * Update microsoft-entra-conditionalaccesspolicy.md * Fix formatting for SignInFrequencyType and PersistentBrowserMode * Update microsoft-entra-conditionalaccesspolicy.md * Update microsoft-entra-conditionalaccesspolicy.md * Update termsExpiration description for clarity Clarified the description of the termsExpiration resource type to specify it relates to a terms of use agreement. * Update agreementfiledata.md * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi * Update beta agreement resource descriptions --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update listitem-create.md (#9969) Updated the headers in Example section to clarify request and response. * Update listitem-delete.md (#9968) Updated the headers in Example section to clarify request and response. * Update FIDO2 authentication method documentation (#9986) Removed deprecated note and updated HTTP request section. * Repo sync for protected branch (#9995) * Add Update and Delete API documentation (#29255) * added docs for update and delete * removed national cloud support and reverted toc.yml changes * change and what's new * addressed comments * updated date * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * fixes. * changelog fix. * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix * added rbac * updated description of resourceId --------- Co-authored-by: Lavanya Sharma Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update reference TOC (#29331) Co-authored-by: Microsoft Graph DevX Tooling * Fixing documentation gaps - update item size limit to 30 MB in API do… (#29126) * Fixing documentation gaps - update item size limit to 30 MB in API documentation Updated the item size limit from 4 MB to 30 MB for request body when ingesting and indexing items. Adjusted contextual note to reflect the new limit. * Clarify item size limit note in API documentation Updated note on item size limit to clarify the relationship between original file size and parsed content. * Increase payload size limit for externalItem Updated the payload size limit for externalItem in the request body from 4 MB to 30 MB. * docs: note 30 MB payload limit in v1 externalItem create API * Align connectors overview externalItem size limit to 30 MB * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add cloudPC: shareSnapshot API reference doc (#29066) * Add share snapshot action doc * Fix doc * Fix permission doc * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add permission description * response boundary * Add changelog and api reference * Fix conflict * Fix the doc failure * Use general graph api link instad of the language specific one * Remove new page link * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Confirm merge from repo_sync_working_branch to main to sync with https://github.com/microsoftgraph/microsoft-graph-docs-contrib (branch main) (#29333) * Use contractions in reportroot-getemailappusageusercounts * Use contractions in reportroot-getemailappusageuserdetail * Use contractions in reportroot-getm365appplatformusercounts * Use contractions in reportroot-getm365appusercounts * Use contractions in reportroot-getm365appuserdetail * Use contractions in reportroot-getmailboxusagedetail * Use contractions in reportroot-getmailboxusagemailboxcounts * Use contractions in reportroot-getmailboxusagequotastatusmailboxcounts * Use contractions in reportroot-getmailboxusagestorage * Use contractions in reportroot-getoffice365activationcounts * Use contractions in reportroot-getoffice365activationsuserdetail * Use contractions in reportroot-getoffice365activeusercounts * Use contractions in reportroot-getoffice365activeuserdetail * Use contractions in reportroot-getoffice365groupsactivitycounts * Use contractions in reportroot-getoffice365groupsactivitydetail * Use contractions in reportroot-getoffice365groupsactivityfilecounts * Use contractions in reportroot-getoffice365groupsactivitystorage * Use contractions in reportroot-getoffice365servicesusercounts * Use contractions in reportroot-getonedriveactivityfilecounts * Use contractions in reportroot-getonedriveactivityusercounts * Use contractions in reportroot-getonedriveactivityuserdetail * Use contractions in reportroot-getonedriveusageaccountcounts * Use contractions in reportroot-getonedriveusageaccountdetail * Use contractions in reportroot-getonedriveusagefilecounts * Use contractions in reportroot-getsharepointactivityfilecounts * Use contractions in reportroot-getsharepointactivitypages * Use contractions in reportroot-getsharepointactivityuserdetail * Use contractions in reportroot-getsharepointsiteusagedetail * Use contractions in reportroot-getsharepointsiteusagefilecounts * Use contractions in reportroot-getsharepointsiteusagepages * Use contractions in reportroot-getsharepointsiteusagesitecounts * Use contractions in reportroot-getsharepointsiteusagestorage * Use contractions in reportroot-getskypeforbusinessactivitycounts * Use contractions in reportroot-getskypeforbusinessactivityusercounts * Use contractions in reportroot-getskypeforbusinessactivityuserdetail * Use contractions in reportroot-getskypeforbusinessdeviceusagedistributionusercounts * Use contractions in reportroot-getskypeforbusinessdeviceusageuserdetail * Use contractions in reportroot-getskypeforbusinessorganizeractivityminutecounts * Use contractions in reportroot-getskypeforbusinessparticipantactivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivitycounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityusercounts * Use contractions in reportroot-getteamsdeviceusageusercounts * Use contractions in reportroot-getteamsuseractivityusercounts * Use contractions in reportroot-getteamsuseractivityuserdetail * Use contractions in reportroot-getyammeractivitycounts * Use contractions in reportroot-getyammeractivityusercounts * Use contractions in reportroot-getyammeractivityuserdetail * Use contractions in reportroot-getyammerdeviceusagedistributionusercounts * Use contractions in reportroot-getyammerdeviceusageusercounts * Use contractions in reportroot-getyammerdeviceusageuserdetail * Use contractions in reportroot-getyammergroupsactivitycounts * Use contractions in reportroot-getyammergroupsactivitydetail * Use contractions in riskdetection-get * Use contractions in riskyuser-get * Use contractions in schedulinggroup-delete * Use contractions in schemaextension-delete * Use contractions in security-ediscoverysearch-list-lastestimatestatisticsoperation * Use contractions in security-host-list-childhostpairs * Use contractions in security-host-list-parenthostpairs * Use contractions in security-hostpair-get * Use contractions in security-threatintelligence-list-sslcertificates * Use contractions in servicehealthissue-get * Use contractions in servicehealthissue-incidentreport * Use contractions in serviceprincipal-get * Use contractions in serviceupdatemessage-get * Use contractions in sharedwithchannelteaminfo-get * Use contractions in sharedwithchannelteaminfo-list-allowedmembers * Use contractions in simulationautomation-get * Use contractions in simulation-get * Use contractions in singlevaluelegacyextendedproperty-get * Use contractions in sitepage-publish * Use contractions in sitepage-update * Use contractions in site-search * Use contractions in subjectrightsrequest-list-notes * Use contractions in subscribedsku-list * Use contractions in synchronization-synchronizationschema-delete * Use contractions in synchronization-synchronizationschema-update * Use contractions in teamsapp-delete * Use contractions in teamsapp-publish * Use contractions in teamsapp-update * Use contractions in teamworktag-get * Use contractions in tenantappmanagementpolicy-update * Use contractions in tenantdatasecurityandgovernance-processcontentasync * Use contractions in timeoffrequest-get * Use contractions in todotask-delta * Use contractions in todotask-list-checklistitems * Use contractions in todotask-post-attachments * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-list-calendarview * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistration-list * Use contractions in virtualeventregistration-list-sessions * Use contractions in virtualeventwebinar-post-registrations * Use contractions in webpart-delete * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Update simulation-update.md for requirement around simuation state (#9936) * Update simulation-update.md for requirement around simuation state Clarified simulation state as draft as required and updated description. * Minor fixes --------- Co-authored-by: Faith Moraa Ombongi * Remove license-type availability banner from Graph beta eDiscovery overview Replaces preview/SKU-specific note in ediscovery-ediscoveryapioverview.md with neutral guidance pointing to Microsoft Purview eDiscovery documentation. Addresses customer confusion (IcM 51000001064141) about creating searches in standard eDiscovery cases via Graph. * Fix Read-only capitalization in appscope.md * Fix Read-only capitalization in azureactivedirectorytenant.md * Fix Read-only capitalization in channel.md * Fix Read-only capitalization in chatmessage.md * Fix Read-only capitalization in cloudpc.md * Fix Read-only capitalization in conditionalaccesspolicy.md * Fix Read-only capitalization in connectedorganizationmembers.md * Fix Read-only capitalization in crosscloudazureactivedirectorytenant.md * Fix Read-only capitalization in customaccesspackageworkflowextension.md * Fix Read-only capitalization in delegatedadminrelationship.md * Fix Read-only capitalization in directoryrole.md * Fix Read-only capitalization in externaldomainfederation.md * Fix Read-only capitalization in groupmembers.md * Fix Read-only capitalization in insights-shared.md * Fix Read-only capitalization in insights-trending.md * Fix Read-only capitalization in insights-used.md * Fix Read-only capitalization in passwordsinglesignonfield.md * Fix Read-only capitalization in plannerroster.md * Fix Read-only capitalization in reminder.md * Fix Read-only capitalization in serviceannouncement.md * Fix Read-only capitalization in singleuser.md * Fix Read-only capitalization in teamstab.md * Fix Read-only capitalization in translationpreferences.md * Fix Read-only capitalization in unifiedroleeligibilityscheduleinstance.md * Fix Read-only capitalization in accesspackageresourcerequest.md * Fix Read-only capitalization in accesspackageassignmentpolicy.md * Fix Read-only capitalization in azureactivedirectorytenant.md * Fix Read-only capitalization in channel.md * Fix Read-only capitalization in chatmessage.md * Fix Read-only capitalization in conditionalaccesspolicy.md * Fix Read-only capitalization in crosscloudazureactivedirectorytenant.md * Fix Read-only capitalization in delegatedadminrelationship.md * Fix Read-only capitalization in directoryrole.md * Fix Read-only capitalization in domainidentitysource.md * Fix Read-only capitalization in externaldomainfederation.md * Fix Read-only capitalization in insights-shared.md * Fix Read-only capitalization in insights-trending.md * Fix Read-only capitalization in reminder.md * Fix Read-only capitalization in serviceannouncement.md * Fix Read-only capitalization in rbacapplication-post-roleassignmentschedulerequests.md * Fix Read-only capitalization in rbacapplication-post-roleeligibilityschedulerequests.md * Fix Read-only capitalization in rbacapplication-rolescheduleinstances.md * Fix Read-only capitalization in rbacapplication-roleschedules.md * Fix Read-only capitalization in rbacapplication-post-roleassignmentschedulerequests.md * Fix Read-only capitalization in rbacapplication-post-roleeligibilityschedulerequests.md * Fix Read-only capitalization in rbacapplication-rolescheduleinstances.md * Fix Read-only capitalization in rbacapplication-roleschedules.md * Simplify description for protectionRule addition (#9944) * Repo sync for protected branch (#9945) * Resolve syncing conflicts from repo_sync_working_branch to main (#29086) * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-get * Use contractions in user-list-calendarview * Use contractions in user-list-events * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in user-list-people * Use contractions in user-list-permissiongrants * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualendpoint-list-serviceplans * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistrationconfiguration-post-questions * Use contractions in virtualmachinewithawsstoragebucketaccessfinding-get * Use contractions in windowsupdates-deploymentaudience-updateaudiencebyid * Use contractions in windowsupdates-updatableasset-enrollassets * Use contractions in windowsupdates-updatableassetgroup-addmembers * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Use contractions in accessreviewinstance-update * Use contractions in accessreviewscheduledefinition-update * Use contractions in accessreviewset-post-definitions * Use contractions in accessreviewstage-update * Use contractions in agentidentityblueprint-list * Use contractions in agentidentity-list * Use contractions in agreementfile-get * Use contractions in agreementfile-list-localizations * Use contractions in allowedvalue-get * Use contractions in application-addkey * Use contractions in application-post-applications * Use contractions in application-removekey * Use contractions in application-update * Use contractions in approval-get * Use contractions in approval-list-stages * Use contractions in approvalstage-get * Use contractions in associatedteaminfo-list * Use contractions in attachment-createuploadsession * Use contractions in authenticationcombinationconfiguration-get * Use contractions in authenticationcontextclassreference-get * Use contractions in authenticationeventlistener-get * Use contractions in authentication-list-methods * Use contractions in authenticationmethod-get * Use contractions in authenticationmethodmodedetail-get * Use contractions in authenticationmethodspolicy-get * Use contractions in authenticationstrengthpolicy-get * Use contractions in authenticationstrengthpolicy-list-combinationconfigurations * Use contractions in authenticationstrengthpolicy-usage * Use contractions in authenticationstrengthroot-list-authenticationmethodmodes * Use contractions in backuprestoreroot-list-onedriveforbusinessbrowsesessions * Use contractions in backuprestoreroot-list-sharepointbrowsesessions * Use contractions in basesitepage-list * Use contractions in bitlocker-list-recoverykeys * Use contractions in bookingappointment-update * Use contractions in bookingbusiness-list * Use contractions in bookingcustomer-get * Use contractions in bundle-removeitem * Use contractions in bundle-update * Use contractions in calendar-list-calendarview * Use contractions in call-keepalive * Use contractions in call-list-participants * Use contractions in call-reject * Use contractions in channel-get-members * Use contractions in chat-delete * Use contractions in chat-get * Use contractions in chat-get-members * Use contractions in chat-list-members * Use contractions in contenttype-delete * Use contractions in conversationmember-list * Use contractions in directory-list-customsecurityattributedefinitions * Use contractions in directoryobject-delta * Use contractions in domain-delete * Use contractions in domain-get-rootdomain * Use contractions in domain-list-federationconfiguration * Use contractions in drive-get-specialfolder * Use contractions in driveitem-copy * Use contractions in driveitem-createlink * Use contractions in driveitem-search * Use contractions in driveitemversion-get * Use contractions in educationclass-delta * Use contractions in educationclass-post * Use contractions in entitlementmanagementsettings-get * Use contractions in externalauthenticationmethodconfiguration-get * Use contractions in externalconnectors-externalgroup-update * Use contractions in externalconnectors-externalitem-get * Use contractions in externalconnectors-schema-get * Use contractions in fido2authenticationmethod-list * Use contractions in group-delta * Use contractions in group-list-acceptedsenders * Use contractions in group-list-calendarview * Use contractions in group-post-members * Use contractions in group-update * Use contractions in identitygovernance-insights-workflowsprocessedsummary * Use contractions in identitygovernance-task-get * Use contractions in identitygovernance-workflowtemplate-get * Use contractions in identityuserflowattributeassignment-update * Use contractions in inferenceclassification-list-overrides * Use contractions in internaldomainfederation-get * Use contractions in learningcourseactivity-update * Use contractions in list-get * Use contractions in listitem-delete * Use contractions in listitem-update * Use contractions in mailfolder-list-childfolders * Use contractions in message-createreply * Use contractions in message-createreplyall * Use contractions in message-delta * Use contractions in message-reply * Use contractions in message-replyall * Use contractions in offershiftrequest-get * Use contractions in onlinemeeting-createorget * Use contractions in orgcontact-delta * Use contractions in outlookuser-supportedtimezones * Use contractions in permissiongrantpolicy-update * Use contractions in permission-update * Use contractions in phoneauthenticationmethod-update * Use contractions in plannerassignedtotaskboardtaskformat-update * Use contractions in post-post-attachments * Use contractions in printdocument-createuploadsession * Use contractions in printer-update * Use contractions in printjob-cancel * Use contractions in projectrome-put-activity * Use contractions in qrcode-get * Use contractions in reportroot-getemailactivitycounts * Use contractions in reportroot-getemailactivityusercounts * Use contractions in reportroot-getemailactivityuserdetail * Use contractions in reportroot-getemailappusageappsusercounts * Use contractions in reportroot-getemailappusageusercounts * Use contractions in reportroot-getemailappusageuserdetail * Use contractions in reportroot-getm365appplatformusercounts * Use contractions in reportroot-getm365appusercounts * Use contractions in reportroot-getm365appuserdetail * Use contractions in reportroot-getmailboxusagedetail * Use contractions in reportroot-getmailboxusagemailboxcounts * Use contractions in reportroot-getmailboxusagequotastatusmailboxcounts * Use contractions in reportroot-getmailboxusagestorage * Use contractions in reportroot-getoffice365activationcounts * Use contractions in reportroot-getoffice365activationsuserdetail * Use contractions in reportroot-getoffice365activeusercounts * Use contractions in reportroot-getoffice365activeuserdetail * Use contractions in reportroot-getoffice365groupsactivitycounts * Use contractions in reportroot-getoffice365groupsactivitydetail * Use contractions in reportroot-getoffice365groupsactivityfilecounts * Use contractions in reportroot-getoffice365groupsactivitystorage * Use contractions in reportroot-getoffice365servicesusercounts * Use contractions in reportroot-getonedriveactivityfilecounts * Use contractions in reportroot-getonedriveactivityusercounts * Use contractions in reportroot-getonedriveactivityuserdetail * Use contractions in reportroot-getonedriveusageaccountcounts * Use contractions in reportroot-getonedriveusageaccountdetail * Use contractions in reportroot-getonedriveusagefilecounts * Use contractions in reportroot-getsharepointactivityfilecounts * Use contractions in reportroot-getsharepointactivitypages * Use contractions in reportroot-getsharepointactivityuserdetail * Use contractions in reportroot-getsharepointsiteusagedetail * Use contractions in reportroot-getsharepointsiteusagefilecounts * Use contractions in reportroot-getsharepointsiteusagepages * Use contractions in reportroot-getsharepointsiteusagesitecounts * Use contractions in reportroot-getsharepointsiteusagestorage * Use contractions in reportroot-getskypeforbusinessactivitycounts * Use contractions in reportroot-getskypeforbusinessactivityusercounts * Use contractions in reportroot-getskypeforbusinessactivityuserdetail * Use contractions in reportroot-getskypeforbusinessdeviceusagedistributionusercounts * Use contractions in reportroot-getskypeforbusinessdeviceusageuserdetail * Use contractions in reportroot-getskypeforbusinessorganizeractivityminutecounts * Use contractions in reportroot-getskypeforbusinessparticipantactivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivitycounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityusercounts * Use contractions in reportroot-getteamsdeviceusageusercounts * Use contractions in reportroot-getteamsuseractivityusercounts * Use contractions in reportroot-getteamsuseractivityuserdetail * Use contractions in reportroot-getyammeractivitycounts * Use contractions in reportroot-getyammeractivityusercounts * Use contractions in reportroot-getyammeractivityuserdetail * Use contractions in reportroot-getyammerdeviceusagedistributionusercounts * Use contractions in reportroot-getyammerdeviceusageusercounts * Use contractions in reportroot-getyammerdeviceusageuserdetail * Use contractions in reportroot-getyammergroupsactivitycounts * Use contractions in reportroot-getyammergroupsactivitydetail * Use contractions in riskdetection-get * Use contractions in riskyuser-get * Use contractions in schedulinggroup-delete * Use contractions in schemaextension-delete * Use contractions in security-ediscoverysearch-list-lastestimatestatisticsoperation * Use contractions in security-host-list-childhostpairs * Use contractions in security-host-list-parenthostpairs * Use contractions in security-hostpair-get * Use contractions in security-threatintelligence-list-sslcertificates * Use contractions in servicehealthissue-get * Use contractions in servicehealthissue-incidentreport * Use contractions in serviceprincipal-get * Use contractions in serviceupdatemessage-get * Use contractions in sharedwithchannelteaminfo-get * Use contractions in sharedwithchannelteaminfo-list-allowedmembers * Use contractions in simulationautomation-get * Use contractions in simulation-get * Use contractions in singlevaluelegacyextendedproperty-get * Use contractions in sitepage-publish * Use contractions in sitepage-update * Use contractions in site-search * Use contractions in subjectrightsrequest-list-notes * Use contractions in subscribedsku-list * Use contractions in synchronization-synchronizationschema-delete * Use contractions in synchronization-synchronizationschema-update * Use contractions in teamsapp-delete * Use contractions in teamsapp-publish * Use contractions in teamsapp-update * Use contractions in teamworktag-get * Use contractions in tenantappmanagementpolicy-update * Use contractions in tenantdatasecurityandgovernance-processcontentasync * Use contractions in timeoffrequest-get * Use contractions in todotask-delta * Use contractions in todotask-list-checklistitems * Use contractions in todotask-post-attachments * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-list-calendarview * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistration-list * Use contractions in virtualeventregistration-list-sessions * Use contractions in virtualeventwebinar-post-registrations * Use contractions in webpart-delete * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Auto Publish – main to live - 2026-06-12 00:30 UTC (#29054) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identity APIs (#28984) Updated important notes regarding agent identity blueprints and roles. * Add mdai service source to security alerts (#28897) * Add MDAI service source * fix name * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Harel Damti Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add conflictBehavior support to fileStorageContainer POST permissions (#28918) * Add conflictBehavior support to fileStorageContainer POST permissions Added @microsoft.graph.conflictBehavior annotation parameter to Create permission API for both beta and v1.0. Supports 'fail' (default, returns 409 Conflict) and 'replace' (updates existing role) values. - Updated beta and v1.0 POST permissions docs with path parameters, conflictBehavior details, and replace example - Added changelog entries for beta and v1.0 - Updated What's New for May 2026 * Fix dataLocation query parameter - remove incorrect $ prefix The $ prefix only applies to OData keywords like \, \, \. Custom query parameters like dataLocation should not have the prefix. * Fix validation issues - absolute links and broken references - Convert absolute learn.microsoft.com link to relative link in fileStorageContainer docs - Fix broken alertsv1-alertsv2-migration link to point to security-alert resource - Remove broken migrationMode enum link * Format conflictBehavior description - add space before parentheses * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-post-permissions.md * Update filestoragecontainer-post-permissions.md * Update api-reference/v1.0/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Update api-reference/beta/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Clarify Example 1 as new permission creation Label the first sample as Example 1 and update request/response subheadings for consistency with Example 2 in beta and v1.0 docs. * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add behavioral guidance and hidden membership notes to checkMemberGroups (#28976) * docs: add behavioral guidance and hidden membership notes to checkMemberGroups Add IMPORTANT alert documenting single-request evaluation semantics and partial results behavior for access-restricted groups. Add NOTE about latency expectations. Add hidden membership permission requirements (Member.Read.Hidden for app-only, group membership for delegated). Applies to both v1.0 and beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add passwordSubmit member to authenticationEventType enum (beta) (#28973) * Add passwordSubmit member to authenticationEventType enum (beta) Documents the new `passwordSubmit` (value 6) member added to the `authenticationEventType` enum in the Microsoft.AAD.Reporting beta schema. This enables OnPasswordSubmit event listeners and custom authentication extension handlers (Reports > Identity and access reports). Files updated: - api-reference/beta/resources/enums.md - added passwordSubmit row - api-reference/beta/resources/appliedauthenticationeventlistener.md - updated eventType value lists - changelog/Microsoft.AAD.Reporting.json - added changelog entry to clear AGS PR 15884845 warning - concepts/whats-new-overview.md - announced in May 2026 What's New Related AGS PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/15884845 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update changelog/Microsoft.AAD.Reporting.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify IANA Time Zone Database format for schedule timeZone (#28734) * Clarify IANA Time Zone Database format for schedule timeZone Graph Shifts expects timeZone on a schedule to use the IANA Time Zone Database (also called the Olson database or tz database) format, e.g. America/Chicago. The existing property description just says "tz database format" which is easy to miss; the API page for PUT /teams/{id}/schedule doesn't mention it at all. - api-reference/{v1.0,beta}/resources/schedule.md: expand the timeZone property description with the full "IANA Time Zone Database" name and an example value. - api-reference/{v1.0,beta}/api/team-put-schedule.md: add a NOTE in the Request body section calling out the timeZone format requirement. Co-Authored-By: Claude Opus 4.7 (1M context) * Rework timeZone wording to be more actionable Feedback was that the previous wording ("must be specified in IANA Time Zone Database format...") is formal but doesn't actually tell a developer what to put. Rework to: - Use active voice ("Set timeZone to..." instead of "must be specified in"). - Show the Area/Location pattern via two examples (America/Chicago, Europe/London) instead of one. - Link to the canonical list on Wikipedia, matching the existing pattern already used for IANA time zones in concepts/toolkit/components/agenda.md and for other standards (E.164, ISO 4217, ISO 3166-1 alpha-2) in call-records reference docs. Co-Authored-By: Claude Opus 4.7 (1M context) * Drop redundant Olson/tz database aliases from timeZone wording The Wikipedia link we point to is already titled "List of tz database time zones", so readers who know the format by that name still find it via the link text. Matches the agenda.md precedent in this repo, which says "IANA time zone" without the alias list. Co-Authored-By: Claude Opus 4.7 (1M context) * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update team-put-schedule.md --------- Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update fileStorageContainer permission docs for alternate keys (#28916) * Update fileStorageContainer permission docs for alternate keys and add v1.0 get permissions topic * Update example header for permission retrieval * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @MSFT-Andrea * Update filestoragecontainer-get-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-delete-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-update-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Rename filestoragecontainer-get-permission-permissions.md to filestoragecontainer-get-permissions-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.FileServices.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Changelog fix. --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add reviewer delegation support for access reviews (beta) + merge main conflict resolution (#28838) * Update beta access review delegation docs Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2c320825-53af-40dd-8f42-ed52df5ae12d Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: clarify reviewer example scope Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2b4147b8-b521-4a17-a5da-ea987c630d6f Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * rephrasing to focus on “reviewer delegation support” and link only to the primary entry point(s) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * split this into two ChangeList items (same record Id) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix guid Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: reorder access review decision item properties Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/bfc67a32-3878-4761-a3e1-f45633867fa3 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: align access review example formatting Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2318bcb0-67e7-4003-b7c5-8a8861253004 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: remove partial tab groups from access review examples Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/159d921e-8a7e-4ace-b801-1dc77de9bcbc Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: add full tab scaffolding to new access review examples for consistency Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/3dfef0f6-7ffa-45e4-bac0-f35fce549486 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * Remove manually inserted code snippets Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: snippet-gen-pull-automation[bot] <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: lilealdai <118565463+lilealdai@users.noreply.github.com> Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot <198982749+Copilot@users.noreply.github.com> Co-authored-by: Helge Solheim Co-authored-by: Helge Solheim Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: milanevk Co-authored-by: shlipsey3 <66325782+shlipsey3@users.noreply.github.com> Co-authored-by: hareldamti <94783416+hareldamti@users.noreply.github.com> Co-authored-by: Harel Damti Co-authored-by: ashyasingh <74160572+ashyasingh@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: diadabal <105948420+diadabal@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Raul Fernandes Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * Update simulation-update.md for requirement around simuation state (#9936) * Update simulation-update.md for requirement around simuation state Clarified simulation state as draft as required and updated description. * Minor fixes --------- Co-authored-by: Faith Moraa Ombongi * Publish main to live - reconcile divergence 2026-06-17 Sets live content identical to main to clear the squash-induced divergence. No manual live hotfixes existed. * Reconcile live to main (unblock auto-publish #29094) (#29095) * Publish main to live - reconcile divergence (refresh 2026-06-17 18:25) Sets live content identical to current main. main is authoritative; no live-only hotfixes. * Update tenantappmanagementpolicy-get.md --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Merge to publish. (#29097) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identity APIs (#28984) Updated important notes regarding agent identity blueprints and roles. * Add mdai service source to security alerts (#28897) * Add MDAI service source * fix name * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Harel Damti Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add conflictBehavior support to fileStorageContainer POST permissions (#28918) * Add conflictBehavior support to fileStorageContainer POST permissions Added @microsoft.graph.conflictBehavior annotation parameter to Create permission API for both beta and v1.0. Supports 'fail' (default, returns 409 Conflict) and 'replace' (updates existing role) values. - Updated beta and v1.0 POST permissions docs with path parameters, conflictBehavior details, and replace example - Added changelog entries for beta and v1.0 - Updated What's New for May 2026 * Fix dataLocation query parameter - remove incorrect $ prefix The $ prefix only applies to OData keywords like \, \, \. Custom query parameters like dataLocation should not have the prefix. * Fix validation issues - absolute links and broken references - Convert absolute learn.microsoft.com link to relative link in fileStorageContainer docs - Fix broken alertsv1-alertsv2-migration link to point to security-alert resource - Remove broken migrationMode enum link * Format conflictBehavior description - add space before parentheses * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-post-permissions.md * Update filestoragecontainer-post-permissions.md * Update api-reference/v1.0/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Update api-reference/beta/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Clarify Example 1 as new permission creation Label the first sample as Example 1 and update request/response subheadings for consistency with Example 2 in beta and v1.0 docs. * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add behavioral guidance and hidden membership notes to checkMemberGroups (#28976) * docs: add behavioral guidance and hidden membership notes to checkMemberGroups Add IMPORTANT alert documenting single-request evaluation semantics and partial results behavior for access-restricted groups. Add NOTE about latency expectations. Add hidden membership permission requirements (Member.Read.Hidden for app-only, group membership for delegated). Applies to both v1.0 and beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add passwordSubmit member to authenticationEventType enum (beta) (#28973) * Add passwordSubmit member to authenticationEventType enum (beta) Documents the new `passwordSubmit` (value 6) member added to the `authenticationEventType` enum in the Microsoft.AAD.Reporting beta schema. This enables OnPasswordSubmit event listeners and custom authentication extension handlers (Reports > Identity and access reports). Files updated: - api-reference/beta/resources/enums.md - added passwordSubmit row - api-reference/beta/resources/appliedauthenticationeventlistener.md - updated eventType value lists - changelog/Microsoft.AAD.Reporting.json - added changelog entry to clear AGS PR 15884845 warning - concepts/whats-new-overview.md - announced in May 2026 What's New Related AGS PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/15884845 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update changelog/Microsoft.AAD.Reporting.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify IANA Time Zone Database format for schedule timeZone (#28734) * Clarify IANA Time Zone Database format for schedule timeZone Graph Shifts expects timeZone on a schedule to use the IANA Time Zone Database (also called the Olson database or tz database) format, e.g. America/Chicago. The existing property description just says "tz database format" which is easy to miss; the API page for PUT /teams/{id}/schedule doesn't mention it at all. - api-reference/{v1.0,beta}/resources/schedule.md: expand the timeZone property description with the full "IANA Time Zone Database" name and an example value. - api-reference/{v1.0,beta}/api/team-put-schedule.md: add a NOTE in the Request body section calling out the timeZone format requirement. Co-Authored-By: Claude Opus 4.7 (1M context) * Rework timeZone wording to be more actionable Feedback was that the previous wording ("must be specified in IANA Time Zone Database format...") is formal but doesn't actually tell a developer what to put. Rework to: - Use active voice ("Set timeZone to..." instead of "must be specified in"). - Show the Area/Location pattern via two examples (America/Chicago, Europe/London) instead of one. - Link to the canonical list on Wikipedia, matching the existing pattern already used for IANA time zones in concepts/toolkit/components/agenda.md and for other standards (E.164, ISO 4217, ISO 3166-1 alpha-2) in call-records reference docs. Co-Authored-By: Claude Opus 4.7 (1M context) * Drop redundant Olson/tz database aliases from timeZone wording The Wikipedia link we point to is already titled "List of tz database time zones", so readers who know the format by that name still find it via the link text. Matches the agenda.md precedent in this repo, which says "IANA time zone" without the alias list. Co-Authored-By: Claude Opus 4.7 (1M context) * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update team-put-schedule.md --------- Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update fileStorageContainer permission docs for alternate keys (#28916) * Update fileStorageContainer permission docs for alternate keys and add v1.0 get permissions topic * Update example header for permission retrieval * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @MSFT-Andrea * Update filestoragecontainer-get-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-delete-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-update-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Rename filestoragecontainer-get-permission-permissions.md to filestoragecontainer-get-permissions-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.FileServices.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Changelog fix. --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add reviewer delegation support for access reviews (beta) + merge main conflict resolution (#28838) * Update beta access review delegation docs Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2c320825-53af-40dd-8f42-ed52df5ae12d Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: clarify reviewer example scope Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2b4147b8-b521-4a17-a5da-ea987c630d6f Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * rephrasing to focus on “reviewer delegation support” and link only to the primary entry point(s) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * split this into two ChangeList items (same record Id) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix guid Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: reorder access review decision item properties Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/bfc67a32-3878-4761-a3e1-f45633867fa3 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: align access review example formatting Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2318bcb0-67e7-4003-b7c5-8a8861253004 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: remove partial tab groups from access review examples Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/159d921e-8a7e-4ace-b801-1dc77de9bcbc Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: add full tab scaffolding to new access review examples for consistency Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/3dfef0f6-7ffa-45e4-bac0-f35fce549486 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * Remove manually inserted code snippets Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC (#29058) Co-authored-by: Microsoft Graph DevX Tooling * Update profilePropertySetting docs (#29038) * Updated according to KnutB's spec * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update peopleadminsettings-list-profilepropertysettings.md * Update profilepropertysetting.md * Move extended Delete description from resource table to API topic * Apply suggestion from @MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222741 (#29057) Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 222558 (#29051) Co-authored-by: Microsoft Graph DevX Tooling * Revise traceRouteHop availability in callRecord docs (#29055) * Revise traceRouteHop availability in callRecord docs * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update whats-new-overview.md (#29010) * Update whats-new-overview.md * Update whats-new-overview.md --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update pull request template to remove documentation plan requirement (#29069) Removed the requirement to attach the documentation plan for AI-assisted docs authoring. * 2026-06-15: Automated permissions reference update (#29068) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 222982 (#29067) Co-authored-by: Microsoft Graph DevX Tooling * Update whats-new-overview.md (#29064) * Update whats-new-overview.md * Update whats-new-overview.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add tenantId property to userAccount resource (#28845) * Add tenantId field to security user account resource Added tenantId field to user account resource details. * Update userAccount resource date and add tenantId * Update date for security userAccount resource * Update changelog with new API changes Added new changelog entries for tenantId and categories properties in userAccount resource. * Apply review suggestions: update changelog dates and add What's New entry for tenantId on userAccount * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi --------- Co-authored-by: Faith Moraa Ombongi Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Add mergeIncidents and moveAlerts v1.0 API docs (#28851) * Add mergeIncidents and moveAlerts v1.0 API docs Add v1.0 documentation for security action endpoints: - API pages: security-incident-mergeincidents.md, security-alert-movealerts.md - Resource pages: security-mergeresponse.md, security-correlationreason.md - Permission and RBAC include files - Update security-incident.md and security-alert.md Methods tables - Update v1.0 toc.mapping.json with new complex types - Add v1.0 changelog entries for all new artifacts Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Fix comments * Apply suggestion from @FaithOmbongi * Update what's new --------- Co-authored-by: Harel Damti Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi * Update reference TOC (#29071) Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 228331 (#29348) Co-authored-by: Microsoft Graph DevX Tooling * 2026-07-27: Automated permissions reference update (#29347) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Bump microsoftgraph/eol-blocker from 1.0.14 to 1.0.15 (#29353) Bumps [microsoftgraph/eol-blocker](https://github.com/microsoftgraph/eol-blocker) from 1.0.14 to 1.0.15. - [Release notes](https://github.com/microsoftgraph/eol-blocker/releases) - [Commits](https://github.com/microsoftgraph/eol-blocker/compare/v1.0.14...v1.0.15) --- updated-dependencies: - dependency-name: microsoftgraph/eol-blocker dependency-version: 1.0.15 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * Bump actions/checkout from 6 to 7 (#29351) Bumps [actions/checkout](https://github.com/actions/checkout) from 6 to 7. - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](https://github.com/actions/checkout/compare/v6...v7) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * Bump actions/setup-dotnet from 5 to 6 (#29352) Bumps [actions/setup-dotnet](https://github.com/actions/setup-dotnet) from 5 to 6. - [Release notes](https://github.com/actions/setup-dotnet/releases) - [Commits](https://github.com/actions/setup-dotnet/compare/v5...v6) --- updated-dependencies: - dependency-name: actions/setup-dotnet dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * Add eDiscovery legalHold enablePolicy and disablePolicy actions (beta) (#29138) * Add eDiscovery legalHold enablePolicy and disablePolicy beta docs Document the enablePolicy and disablePolicy actions on ediscoveryHoldPolicy (beta), update the resource Methods table, changelog, and What's New. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Refine enablePolicy/disablePolicy descriptions to remove custodian/noncustodial wording Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Address eDiscovery docs PR comments Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Address What’s New broken link comment Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Address non-blocking eDiscovery review comments Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Normalize eDiscovery API page dates Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Fix eDiscovery changelog invalid method links Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Move eDiscovery What’s New entry to July Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Omkar Vedak Co-authored-by: Reeza Ali <223746809+ReezaAli149@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Users/mea/support custom emoji api (#29047) * random commit * doc changes for custom emoji api * fix errors * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update customemojifromidentityset.md * fix errors * fix errors * fix errors * Update teamwork.md * Update teamworkmessaging.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * address comments * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update reference TOC * address comments * fix errors * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling * New beta and v1 documentation for remotetenantgroups (#29256) * Add remoteTenantGroup resource and related methods to directory API - Introduced remoteTenantGroup resource type with properties and methods. - Added List and Get methods for remoteTenantGroup in both beta and v1.0 APIs. - Updated directory resource documentation to include remoteTenantGroups. - Updated permissions files for new remoteTenantGroup API. - Updated changelog and what's new overview for July 2026. * Update remoteTenantGroup docs with links and clearer description Clarify remoteTenantGroup semantics for partner/governing tenants and add an explicit resource link from the list API description. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Fix API Doctor validation errors in remoteTenantGroup resource docs - Fix openType field: change from string 'id' to boolean false in JSON schema metadata - Fix broken link: correct typo in governance relationship resource link (tenantgovernancesservices -> tenantgovernanceservices) - Applies to both beta and v1.0 resource files Resolves API Doctor errors: - Unable to parse code block metadata - Could not convert string to boolean: id - FileNotFound for governance relationship link - Unable to locate remoteTenantGroup definition Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update v1.0 remoteTenantGroup governance link to point to beta resource Change governance relationship link in v1.0 remoteTenantGroup resource to point to the beta API docs (../../beta/resources/...) since the governance relationship resource only exists in beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update author field from hafowler_microsoft to hafowler * Remove beta governance link from v1.0 remoteTenantGroup description Remove reference to tenantgovernanceservices-governancerelationship (beta-only resource) from the v1.0 remoteTenantGroup resource description to comply with doc set validation rules. Keep reference to delegatedadminrelationship which exists in v1.0. * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix malformed changelog JSON structure Repair object boundaries and ChangeList wrapper in Microsoft.DirectoryServices changelog so the file parses as valid JSON in validation. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * fix invalid changelog links * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Updated doc. * Update reference TOC * Address remote tenant group review feedback Complete beta and v1.0 changelog coverage, correct the preview timestamp, and add properly ordered What's New entries. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2c84644e-9eac-4852-8b71-4fe72d27dcf6 * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * fix --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Copilot-Session: 2c84644e-9eac-4852-8b71-4fe72d27dcf6 * Add Microsoft apps file storage container usage reporting APIs (#29160) * Add Microsoft apps file storage container usage reporting APIs * Fix changelog Cloud property: Prod -> prd * Remove preserve-view parameter from changelog URLs * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Correcting the ChangedApiName Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add new usage complex types to TOC mapping * resolving comments * Removing unnecessary section Removed the section on managing SharePoint API usage report metrics, including resource type and related methods. * Fix API Doctor validation: add @odata.type to response examples in microsoftAppsFileStorageContainerUsageSummary * updating toc * updating toc * updating md file * Fix formatting in toc.mapping.json * Removing formatting changes * Fix formatting in toc.mapping.json for Maps section * Fix formatting in toc.mapping.json * Fix formatting of resources in toc.mapping.json * updating md file * updating md file * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * minor updates * Fix alphabetical order of H3 sections in What's New * Remove entries from generated toc.yml (DO NOT EDIT file) * Remove complex type entries from generated toc.yml (DO NOT EDIT file) * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Applying formatting fixes Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix API Doctor validation errors in getMicrosoftAppsFileStorageContainerUsageSummary examples * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix microsoftAppsFileStorageContainerAppUsage as entity/resource type * Align microsoftAppsFileStorageContainerGeoUsage as resource type * Fix: move usageByDataLocation from Relationships to Properties * Restore usageByDataLocation relationship documentation * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC * added missing changelog entries * modified changelog' * Fix broken link in changelog: restore correct getMicrosoftAppsFileStorageContainerUsageSummary URL * modified changelog' * Fix changelog: use microsoftAppsFileStorageContainerUsageSummary as ChangedApiName * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * fix: correct malformed changelog JSON entry * fixes --------- Co-authored-by: anjkumari Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling * Update reference TOC (#29357) Co-authored-by: Microsoft Graph DevX Tooling * Update generated files with build 228651 (#29356) Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 228628 (#29355) Co-authored-by: Microsoft Graph DevX Tooling * Mark displayName and description as required for beta create externalOriginResourceConnector (#29334) * Mark displayName and description as required for beta create externalOriginResourceConnector Update the beta 'Create externalOriginResourceConnector' doc to mark displayName and description as required, matching the schema change (Nullable=false) and the enforced API validation that rejects null or empty values on create. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 * Potential fix for pull request finding Done Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: v-kumapanka Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 * Document Tenant Governance related tenant beta updates (#29267) * Document Tenant Governance related tenant beta updates - Add isMicrosoftInfrastructure property to relatedTenant resource - Add investigationActionStep and investigationActionUrl resource types - Add investigationHints relationship to the four related tenant metrics resources - Update changelog and What's New Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Document nested $expand requirement for investigationHints The investigationHints collection is returned only when requested via nested $expand (for example $expand=b2BRegistrationMetrics(=investigationHints)), per the API review proposal. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Expand descriptions for investigationActionStep and investigationActionUrl Add detail to the resource and property descriptions based on the API review proposal, including the recommendations pattern, step ordering, displayName directive format, and url template placeholder behavior. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Address PR review feedback - Move What's New entry to 'New in preview only' (beta-only) and rewrite as capability bullets; rename heading to 'Related tenants | Tenant governance' and keep H3 headings alphabetical. - Apply reviewer-suggested changelog CreatedDateTime values. - Document nested \\\ support and add an investigationHints example on the relatedTenant resource. - Add investigationActionStep and investigationActionUrl to the beta TOC under the Tenant governance complexTypes node. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * fixes. * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix What's New H3 heading: rename and reposition Tenants | Tenant governance * Updates. * Update * Fixes. * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename investigationActionStep/Url to actionStep/actionUrl to match prod beta schema The published beta metadata (graph.microsoft.com/beta/$metadata) exposes these tenantGovernanceServices types as actionStep and actionUrl, not investigationActionStep/investigationActionUrl. Align the docs (resource pages, metrics references, related tenant, TOC mapping, and changelog) with the shipped type names so the generated reference links resolve. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 31ffca83-d180-4175-bc31-653b9b0c3ce9 * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC * fix --------- Co-authored-by: Akhil Potturi Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Copilot-Session: 31ffca83-d180-4175-bc31-653b9b0c3ce9 * Add transferPrincipalOwnership action to fileStorageContainer (beta) (#29135) * Add transferPrincipalOwnership action to fileStorageContainer (beta) - Add new API method: filestoragecontainer-transferprincipalownership - Add permissions include file - Update fileStorageContainer Methods table - Update changelog (Microsoft.FileServices.json) - Update What's New for June 2026 * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * updating toc * updating the md file * Minor update. * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fixing the cloud availability section Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix June 2026 What's New heading order * Removing the manual entry Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix changelog ordering for FileServices entry * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix invalid JSON in changelog/Microsoft.FileServices.json caused by bad merge * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC * Fix malformed FileServices changelog JSON * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: anjkumari Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling * Add snapshotResetMode property to cloudPcProvisioningPolicy beta documentation (#28954) * Add snapshotResetMode to Cloud PC provisioning policy docs * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix review feedback: table intro text, Optional. formatting, add changelog and What's New Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/8c5a44d0-3919-416b-a54b-74c897d08ca5 Co-authored-by: xintaoz-MS <287594766+xintaoz-MS@users.noreply.github.com> * Mark each property as Required./Optional. in create provisioning policy tables (beta + v1.0) * Address PR review feedback in changelog and v1.0 docs * Update intro text to clarify request body table is not exhaustive * Fix changelog record indentation alignment * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * fix * fix --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update generated permissions tables with build 229009 (#29364) Co-authored-by: Microsoft Graph DevX Tooling * Adjust delivery latency for driveItem and list (#29359) Updated delivery latency for driveItem and list notifications to reflect new 6-hour limits. * Promote item and listItem permissions to v1.0 (#29025) * Address comments * Address comments * Fix whats-new-overview.d * Fix changelog * Update reference TOC * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: tmarwendo Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add case type configuration API reference (beta) (#29309) * docs: add case type configuration API reference (beta) Adds beta API reference for the case management type-configuration discovery surface (statuses and custom fields) under microsoft.graph.security.caseManagement. Source schema PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/16360307 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f * docs: correct query params on caseTypeConfigurations root nav The root caseTypeConfigurations navigation only annotates SelectSupport and CountRestrictions in the CSDL (no Filterable/Sortable/Top/Skip), unlike the customFields/statuses navs. Limit documented query params to \ and \. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f * docs: add changelog and What's New entries for case type configuration Adds a changelog record (9 additions: caseTypeConfigurations relationship + 8 resource types) and a Security | Case management What's New (preview) entry, matching the repo requirement that schema additions include both. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f * docs: address AI review feedback on case type configuration docs - Add \ to caseTypeConfiguration get/list query params and relationship descriptions (containment navs, no ExpandRestrictions in CSDL) - Fix statusDefinition get: 'properties and relationships' -> 'properties' (customStatuses is a complex-type property, not a relationship) - Move new changelog record to first position per repo authoring guidance - Set changelog SubArea to 'Case management' to match the What's New heading Kept customStatusDefinition in toc.mapping.json: complex types are included there per the existing merged convention for this workload (valueProperty, customFieldValue, etc.). Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f * docs: align example ids to GUID pseudo-values and clarify caseTypeConfigurations $expand - Use GUID-style example values for statusDefinition.id, customStatusId, customFieldDefinition.id, and defaultStatusId to match the approved API review; keep caseTypeConfiguration.id as the friendly case-type key. - Update single-GET request URLs to match the GUID keys. - Clarify the caseTypeConfigurations relationship supports \ of the statuses and customFields relationships. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f * docs: address content review feedback on case type configuration - Restore Bearer {token}. Authorization header value on 6 API pages - Make changelog record and ChangeList item ids unique; set CreatedDateTime to midnight UTC - Expand customStatuses inline complex type in statusDefinition JSON representation - Nest derived custom-field types under the base in TOC; drop inline customStatusDefinition from toc.yml and toc.mapping.json - Add \/\ callouts on filterable/sortable scalar properties of statusDefinition and customFieldDefinition Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 93481e9f-e15b-4b9f-a032-3ec79e3b1e4a * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f Copilot-Session: 93481e9f-e15b-4b9f-a032-3ec79e3b1e4a --------- Signed-off-by: dependabot[bot] Co-authored-by: snippet-gen-pull-automation[bot] <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Omkar Vedak <33565662+OmkarVedak@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Omkar Vedak Co-authored-by: Reeza Ali <223746809+ReezaAli149@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: mehakagarwal Co-authored-by: MSFT-Andrea Co-authored-by: Hannah Fowler <56096128+hafowler@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: learn-build-service-prod[bot] <113403604+learn-build-service-prod[bot]@users.noreply.github.com> Co-authored-by: 12Anjalikumari Co-authored-by: anjkumari Co-authored-by: v-kumapanka-microsoft Co-authored-by: v-kumapanka Co-authored-by: Akhil Potturi <207085874+akhil-potturi@users.noreply.github.com> Co-authored-by: Akhil Potturi Co-authored-by: xintaoz <287594766+xintaoz-MS@users.noreply.github.com> Co-authored-by: Chris Hackmann Co-authored-by: tmarwendo-microsoft <195011042+tmarwendo-microsoft@users.noreply.github.com> Co-authored-by: tmarwendo Co-authored-by: ms-noamlandress <63061287+NoamLandress@users.noreply.github.com> Co-authored-by: Jason Johnston Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba Copilot-Session: 2c84644e-9eac-4852-8b71-4fe72d27dcf6 Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 Copilot-Session: 31ffca83-d180-4175-bc31-653b9b0c3ce9 Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f Copilot-Session: 93481e9f-e15b-4b9f-a032-3ec79e3b1e4a * Update legacy alerts deprecation include dates (#10012) * Update beta legacy alerts deprecation date * Update v1.0 legacy alerts deprecation date * Resolve syncing conflicts from repo_sync_working_branch to main (#10011) * Delete API Doctor pipeline config (#29390) * Update security-auditrecordtypedictionary.md * Delete apidoctor.validation.yml * 2026-08-03: Automated permissions reference update (#29382) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Update Verified ID profile beta documentation (#29327) * Update Verified ID profile beta documentation * Address Verified ID documentation review feedback * Fix unpublished Verified ID changelog links * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixes. * What's new * Update reference TOC * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address remaining Verified ID review comments * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Tim Larson Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Add resourceAccountKeyAuthenticationMethod to beta (#29283) * Add resourceAccountKeyAuthenticationMethod resource and operations for beta - Added resourceAccountKeyAuthenticationMethod resource type - Added List, Get, and Delete API operations - Updated authentication resource with resourceAccountKeyAuthenticationMethods relationship - Updated authenticationMethod base type with new derived type - Added permissions files for all three operations - Updated changelog and What's New - Updated TOC mapping * Resolve merge conflict in whats-new-overview.md * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Jane Xing <296623908+janexingms@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling * Clarify SharePoint Embedded sharing parameter support (#29392) Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: abd60c1b-0218-41c5-8db8-2a04993db572 * Update subscription-update.md with renewal guidance (#29326) * Update subscription-update.md with renewal guidance Added note about handling expired subscriptions and proactive renewal. * Update subscription-update.md with 404 handling note Added note about handling 404 Not Found response for subscriptions. * Revise 404 response note in subscription-update.md Updated note on 404 response for subscription updates. * Revise 404 response note in subscription-update.md Updated note on 404 response for subscription updates to include lifecycle notifications link. * Update note format for subscription update response * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Clarify 404 response handling for subscriptions Updated note on 404 response for subscription updates to clarify the need for creating a new subscription and added links to relevant documentation. * Fix link in 404 response note for subscriptions Updated the note about 404 response for subscriptions to include a link to the correct lifecycle notifications documentation. * Fix link to lifecycle notifications in subscription update Updated the lifecycle notifications link to the correct path. --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Planner Goals API docs (#29321) * Add Planner Goals API documentation Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Refine Planner Goals API documentation Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Correct Planner Goals documentation semantics Align goal defaults and relationship behavior with the service implementation, and preserve existing topic metadata. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Fix Planner Goals date examples Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Address Planner Goals review feedback Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Normalize Planner resource links Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Address Planner Goals documentation review Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Fix Planner Goals changelog link Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Update reference TOC * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Jaden Stetler Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * docs: document mailboxFolder wellKnownName in beta (#29280) * docs: document mailboxFolder wellKnownName in beta Adds the beta mailboxFolder property documentation, updates all mailboxFolder response examples, and adds the Exchange changelog and July 2026 preview entry. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 * docs: address Copilot review feedback Normalizes mailboxFolder delta response URLs and aligns the list-folders $select example with its response payload. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Cameron Parker (from Dev Box) Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 --------- Co-authored-by: Jason Johnston Co-authored-by: snippet-gen-pull-automation[bot] <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Tim Larson <50213291+tilarso@users.noreply.github.com> Co-authored-by: Tim Larson Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Akshat Goel <47198486+akgoel23@users.noreply.github.com> Co-authored-by: Jane Xing <296623908+janexingms@users.noreply.github.com> Co-authored-by: Dan Winter Co-authored-by: jessieli-ad Co-authored-by: Jaden Stetler <301517737+jadenstetler@users.noreply.github.com> Co-authored-by: Jaden Stetler Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: cparker-msft <4155756+cparker-msft@users.noreply.github.com> Co-authored-by: Cameron Parker (from Dev Box) Co-authored-by: learn-build-service-prod[bot] <113403604+learn-build-service-prod[bot]@users.noreply.github.com> Copilot-Session: abd60c1b-0218-41c5-8db8-2a04993db572 Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 --------- Signed-off-by: dependabot[bot] Co-authored-by: Jarbas Horst <26866873+JarbasHorst@users.noreply.github.com> Co-authored-by: Learn Build Service GitHub App Co-authored-by: Vipul <84970543+VipulMSFT@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Nick Robinson Co-authored-by: learn-build-service-prod[bot] <113403604+learn-build-service-prod[bot]@users.noreply.github.com> Co-authored-by: snippet-gen-pull-automation[bot] <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: lilealdai <118565463+lilealdai@users.noreply.github.com> Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot <198982749+Copilot@users.noreply.github.com> Co-authored-by: Helge Solheim Co-authored-by: Helge Solheim Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: milanevk Co-authored-by: shlipsey3 <66325782+shlipsey3@users.noreply.github.com> Co-authored-by: hareldamti <94783416+hareldamti@users.noreply.github.com> Co-authored-by: Harel Damti Co-authored-by: ashyasingh <74160572+ashyasingh@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: diadabal <105948420+diadabal@users.noreply.github.com> Co-authored-by: Raul Fernandes Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Shlomo Sagir <51323195+shsagir@users.noreply.github.com> Co-authored-by: Matthew M. Co-authored-by: Yuvalabiri <154335961+Yuvalabiri@users.noreply.github.com> Co-authored-by: Ruth Waithera Co-authored-by: Jarbas Horst Co-authored-by: Jarbas Horst Co-authored-by: Ryutaro Koma Co-authored-by: Micah Warren <26724012+MicahWW@users.noreply.github.com> Co-authored-by: masonw1211 <31712004+masonw1211@users.noreply.github.com> Co-authored-by: Mason Wolff Co-authored-by: srinivaspadala-msft Co-authored-by: Anton Vanco <254866915+antonvano@users.noreply.github.com> Co-authored-by: Copilot Co-authored-by: Samuel Mwangi Co-authored-by: Samuel Mwangi (from Dev Box) Co-authored-by: Kimani Mwangi Co-authored-by: Hiro7 <75809971+garchiro7@users.noreply.github.com> Co-authored-by: Simran Moolchandaney <66736756+simoolchandaney@users.noreply.github.com> Co-authored-by: Simran Moolchandaney (from Dev Box) Co-authored-by: Jason Johnston Co-authored-by: myra-ramdenbourg <108485108+myra-ramdenbourg@users.noreply.github.com> Co-authored-by: Alexander Filipin Co-authored-by: Alexander Filipin Co-authored-by: Eunice Waweru <73849846+msewaweru@users.noreply.github.com> Co-authored-by: Ortagus Winfrey <85191667+OWinfreyATL@users.noreply.github.com> Co-authored-by: prasadpatil111 <284865846+prasadpatil111@users.noreply.github.com> Co-authored-by: Prasad Patil Co-authored-by: VISHNU VARDHAN PACHVA <67050501+Vishnu369@users.noreply.github.com> Co-authored-by: Vishnu Vardhan Pachva Co-authored-by: Reeza Ali <223746809+ReezaAli149@users.noreply.github.com> Co-authored-by: Yossi Bruss <287477490+yossibruss-ms@users.noreply.github.com> Co-authored-by: Yossi Bruss Co-authored-by: Yossi Bruss Co-authored-by: aditiijj Co-authored-by: Aditi Jain Co-authored-by: aditiijj <232662544+aditiijj@users.noreply.github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Martin Machacek Co-authored-by: danny1718 Co-authored-by: Danni Zhao Co-authored-by: angiechen22 <111081743+angiechen22@users.noreply.github.com> Co-authored-by: Daniela Bonilla Montero <92937694+Danielabom@users.noreply.github.com> Co-authored-by: Daniela Bonilla Montero Co-authored-by: araqueno Co-authored-by: araqueno <118419398+araqueno@users.noreply.github.com> Co-authored-by: Ch@ps <61343268+Subham-RKB@users.noreply.github.com> Co-authored-by: schapagain Co-authored-by: ireneren0123 Co-authored-by: Irene Ren Co-authored-by: Nnachtomy Co-authored-by: Nnachtomy <258772109+Nnachtomy@users.noreply.github.com> Co-authored-by: Amar Koni <160498064+akgraph@users.noreply.github.com> Co-authored-by: Amar Koni (from Dev Box) Co-authored-by: Luca Spolidoro [MSFT] Co-authored-by: egreenberg14 <140207119+egreenberg14@users.noreply.github.com> Co-authored-by: Hana Kim <216798255+hanki71@users.noreply.github.com> Co-authored-by: lasharma6199068 <278895872+lasharma6199068@users.noreply.github.com> Co-authored-by: Lavanya Sharma Co-authored-by: bala5765 Co-authored-by: wanggang-microsoft Co-authored-by: ebasseri <39064520+ebasseri@users.noreply.github.com> Co-authored-by: Sanjoyan <46829904+SanjoyanM@users.noreply.github.com> Co-authored-by: Diego Luces Co-authored-by: mbhargav9 <173299643+mbhargav9@users.noreply.github.com> Co-authored-by: Prateek Taneja <46925972+prtanej@users.noreply.github.com> Co-authored-by: alexcotsalas <116087923+alexcotsalas@users.noreply.github.com> Co-authored-by: Omkar Vedak <33565662+OmkarVedak@users.noreply.github.com> Co-authored-by: Omkar Vedak Co-authored-by: mehakagarwal Co-authored-by: Hannah Fowler <56096128+hafowler@users.noreply.github.com> Co-authored-by: 12Anjalikumari Co-authored-by: anjkumari Co-authored-by: v-kumapanka-microsoft Co-authored-by: v-kumapanka Co-authored-by: Akhil Potturi <207085874+akhil-potturi@users.noreply.github.com> Co-authored-by: Akhil Potturi Co-authored-by: xintaoz <287594766+xintaoz-MS@users.noreply.github.com> Co-authored-by: Chris Hackmann Co-authored-by: tmarwendo-microsoft <195011042+tmarwendo-microsoft@users.noreply.github.com> Co-authored-by: tmarwendo Co-authored-by: ms-noamlandress <63061287+NoamLandress@users.noreply.github.com> Co-authored-by: Mor Moverman <312480154+mormov@users.noreply.github.com> Co-authored-by: Tim Larson <50213291+tilarso@users.noreply.github.com> Co-authored-by: Tim Larson Co-authored-by: Akshat Goel <47198486+akgoel23@users.noreply.github.com> Co-authored-by: Jane Xing <296623908+janexingms@users.noreply.github.com> Co-authored-by: Dan Winter Co-authored-by: jessieli-ad Co-authored-by: Jaden Stetler <301517737+jadenstetler@users.noreply.github.com> Co-authored-by: Jaden Stetler Co-authored-by: cparker-msft <4155756+cparker-msft@users.noreply.github.com> Co-authored-by: Cameron Parker (from Dev Box) Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba Copilot-Session: 2c84644e-9eac-4852-8b71-4fe72d27dcf6 Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 Copilot-Session: 31ffca83-d180-4175-bc31-653b9b0c3ce9 Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f Copilot-Session: 93481e9f-e15b-4b9f-a032-3ec79e3b1e4a Copilot-Session: abd60c1b-0218-41c5-8db8-2a04993db572 Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 --- api-reference/beta/includes/security-alerts-v1-deprecation.md | 2 +- api-reference/v1.0/includes/security-alerts-v1-deprecation.md | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/api-reference/beta/includes/security-alerts-v1-deprecation.md b/api-reference/beta/includes/security-alerts-v1-deprecation.md index 702e807c6df..b1ef384fed3 100644 --- a/api-reference/beta/includes/security-alerts-v1-deprecation.md +++ b/api-reference/beta/includes/security-alerts-v1-deprecation.md @@ -7,4 +7,4 @@ ms.topic: include > [!IMPORTANT] -> The legacy alerts API is deprecated and will be retired on August 31, 2026. Migrate to the new [alerts and incidents](/graph/api/resources/security-alert) API. For more information, see [Migrate from legacy alerts to the alerts and incidents API](/graph/alertsv1-alertsv2-migration). +> The legacy alerts API is deprecated and will be retired on October 15, 2026. Migrate to the new [alerts and incidents](/graph/api/resources/security-alert) API. For more information, see [Migrate from legacy alerts to the alerts and incidents API](/graph/alertsv1-alertsv2-migration). diff --git a/api-reference/v1.0/includes/security-alerts-v1-deprecation.md b/api-reference/v1.0/includes/security-alerts-v1-deprecation.md index 702e807c6df..b1ef384fed3 100644 --- a/api-reference/v1.0/includes/security-alerts-v1-deprecation.md +++ b/api-reference/v1.0/includes/security-alerts-v1-deprecation.md @@ -7,4 +7,4 @@ ms.topic: include > [!IMPORTANT] -> The legacy alerts API is deprecated and will be retired on August 31, 2026. Migrate to the new [alerts and incidents](/graph/api/resources/security-alert) API. For more information, see [Migrate from legacy alerts to the alerts and incidents API](/graph/alertsv1-alertsv2-migration). +> The legacy alerts API is deprecated and will be retired on October 15, 2026. Migrate to the new [alerts and incidents](/graph/api/resources/security-alert) API. For more information, see [Migrate from legacy alerts to the alerts and incidents API](/graph/alertsv1-alertsv2-migration). From c578aa1b129c451205a696c405b3ecb85450ee76 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Tue, 4 Aug 2026 10:18:16 -0600 Subject: [PATCH 010/189] Update generated permissions tables with build 230390 (#29395) Co-authored-by: Microsoft Graph DevX Tooling --- .../beta/includes/permissions/plannergoal-get-permissions.md | 3 ++- .../includes/permissions/plannerplan-list-goals-permissions.md | 3 ++- 2 files changed, 4 insertions(+), 2 deletions(-) diff --git a/api-reference/beta/includes/permissions/plannergoal-get-permissions.md b/api-reference/beta/includes/permissions/plannergoal-get-permissions.md index 79d5fb80834..e6f029cd184 100644 --- a/api-reference/beta/includes/permissions/plannergoal-get-permissions.md +++ b/api-reference/beta/includes/permissions/plannergoal-get-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|Tasks.Read|Tasks.ReadWrite| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Tasks.Read.All|Tasks.ReadWrite.All| + diff --git a/api-reference/beta/includes/permissions/plannerplan-list-goals-permissions.md b/api-reference/beta/includes/permissions/plannerplan-list-goals-permissions.md index 79d5fb80834..e6f029cd184 100644 --- a/api-reference/beta/includes/permissions/plannerplan-list-goals-permissions.md +++ b/api-reference/beta/includes/permissions/plannerplan-list-goals-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|Tasks.Read|Tasks.ReadWrite| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Tasks.Read.All|Tasks.ReadWrite.All| + From b8dc3c8b10798d2102fcb8ba8b51cfd5d6b883d6 Mon Sep 17 00:00:00 2001 From: bala5765 Date: Tue, 4 Aug 2026 21:49:50 +0530 Subject: [PATCH 011/189] Fixing documentation with missing details on Microsoft 365 Copilot activity settings (#29372) * Enhance documentation with Microsoft 365 Copilot details Added Microsoft 365 Copilot references to connection settings and activity settings sections, emphasizing the impact of activity signals on personalization and search relevance. * Update activity settings for clarity and detail Refactor activity settings section to clarify URL-to-item mapping and activity signal capture in Microsoft 365 Copilot. * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- ...ing-external-content-manage-connections.md | 19 +++++++++++++------ 1 file changed, 13 insertions(+), 6 deletions(-) diff --git a/concepts/connecting-external-content-manage-connections.md b/concepts/connecting-external-content-manage-connections.md index a6a13ecefdb..67adb28b9ef 100644 --- a/concepts/connecting-external-content-manage-connections.md +++ b/concepts/connecting-external-content-manage-connections.md @@ -64,15 +64,18 @@ Before an application can add items to the search index, it must create and conf > **Note:** For more information about updating the schema for an existing connection, see [Schema update capabilities](/graph/connecting-external-content-manage-schema#schema-update-capabilities). ## Connection settings -You can configure the default connection settings for each enabled content experience. When enabled, these settings affect the content experiences. - -### Search settings -You can define how search results are displayed in the Microsoft Search results page by supplying the default search display templates for your content in [searchSettings](/graph/api/resources/externalconnectors-searchsettings). A set of search display templates can be used to display distinct kinds of search results differently. A search display template has a result layout built using Adaptive Cards and rules that specify one or more conditions. When these conditions are met, the layout is applied to the search result and displayed on the results page. +You can configure the default connection settings for each enabled content experience. When enabled, these settings affect the content experiences in Microsoft Search and Microsoft 365 Copilot. ### Activity settings -In [activity settings](/graph/api/resources/externalconnectors-activitysettings), you can provide a way for Microsoft 365 apps to detect share activity, which enables your content to be recommended to users who interact with that content the most. To do this, add a [urlToItemResolver](/graph/api/resources/externalconnectors-urltoitemresolverbase). This allows a URL from the connection detected within Microsoft 365 apps to be resolved to its respective item ID on the [externalItem](/graph/api/resources/externalconnectors-externalitem). +Activity settings](/graph/api/resources/externalconnectors-activitysettings)rovide the URL-to-ExternalItem mapping metadata that allows Microsoft 365 to recognise that a URL corresponds to a specific indexed item in a Copilot connector connection. + +- **URL Resolution in Microsoft 365 Experiences** + - When a user searches for, pastes, or shares a URL in Microsoft 365 experiences such as Microsoft Search or Microsoft 365 Copilot, Microsoft 365 can use the configured `urlToItemResolvers` to resolve the URL to the corresponding `externalItem`. This enables Microsoft 365 to identify the indexed item represented by the URL and associate detected interactions with the correct external item. + +- **Activity Signal Capture through the Microsoft 365 Copilot Extension** + - Activity signals can be captured using the [Microsoft 365 Copilot extension](https://learn.microsoft.com/microsoft-365/copilot/connectors/copilot-extension), a browser-based extension for Microsoft 365 Copilot. When activity settings are configured and the extension is enabled, the extension can automatically capture activity signals and associate them with indexed connector items. These signals help improve personalization and relevance across Microsoft 365 Copilot by prioritizing content users engage with in connected systems. -The following image shows how your item might appear within recommendation experiences across Microsoft 365. +Activity settings provide the URL-to-item mapping required for these signals to be associated with the correct indexed item. To do this, add a [urlToItemResolver](/graph/api/resources/externalconnectors-urltoitemresolverbase). This allows a URL from the connection detected within Microsoft 365 apps to be resolved to its respective item ID on the [externalItem](/graph/api/resources/externalconnectors-externalitem). The following image shows how your item might appear within recommendation experiences across Microsoft 365. ![Screenshot of a recommended item with share activity](./images/connectors-images/share-activity-recommendation-example.png) @@ -119,6 +122,10 @@ You can supply a list of up to eight **itemIdResolver** resources in the **urlTo When a link is shared, the **urlMatchInfo** objects that belong to the resolvers are applied in the order that the **priority** values specify. In ascending **priority** order, the URL is first compared to the URLs in the **baseUrls** list in the **urlMatchInfo** property. Then, if the base of the link URL is in the **baseUrls** list, the **urlPattern** regular expression is applied to the URL. If this pattern matches, no further resolvers are applied. If either the base of the link URL isn't in the **baseUrls** list, or the **urlPattern** fails to match, the next **urlToItemResolver** is evaluated until a match is found or there are no more **urltoItemResolver** resources to apply. To learn more about **urlMatchInfo** resources, see [urlMatchInfo type](/graph/api/resources/externalconnectors-urlmatchinfo). + +### Search settings +You can define how search results are displayed in the Microsoft Search results page by supplying the default search display templates for your content in [searchSettings](/graph/api/resources/externalconnectors-searchsettings). A set of search display templates can be used to display distinct kinds of search results differently. A search display template has a result layout built using Adaptive Cards and rules that specify one or more conditions. When these conditions are met, the layout is applied to the search result and displayed on the results page. + ## Update a connection To change the display name, description, or enabled content experiences for an existing connection, you can [update the connection](/graph/api/externalconnectors-externalconnection-update). From c53dc8d73f927502f3b191741f949f6065a84b3f Mon Sep 17 00:00:00 2001 From: Anusree-stack <245328036+Anusree-stack@users.noreply.github.com> Date: Tue, 4 Aug 2026 22:29:31 +0530 Subject: [PATCH 012/189] Microsoft 365 cross-tenant access policy API overview (beta) (#29260) * Add Microsoft 365 cross-tenant access policy API overview (beta) * Fix author metadata for M365 XTAP overview - Use valid GitHub ID 'Anusree-stack' for author field (resolves build validation warning) - Bump ms.date to 07/10/2026 * Update reference TOC * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Revise Microsoft 365 cross-tenant access policy API overview Updated the overview of the Microsoft 365 cross-tenant access policy API, refining the description and enhancing clarity on its usage and capabilities. * Add required doc_type: conceptualPageType to overview frontmatter Fixes API Doctor validation error: "Missing required YAML header(s): doc_type" Matches peer file crosstenantaccesspolicy-overview.md. --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- ...figurationdefault-list-m365capabilities.md | 7 ++ ...figurationdefault-post-m365capabilities.md | 7 ++ ...figurationpartner-list-m365capabilities.md | 7 ++ ...figurationpartner-post-m365capabilities.md | 7 ++ ...365-cross-tenant-access-policy-overview.md | 78 +++++++++++++++++++ api-reference/beta/toc/tenants/toc.yml | 2 + api-reference/beta/toc/toc.mapping.json | 1 + 7 files changed, 109 insertions(+) create mode 100644 api-reference/beta/resources/m365-cross-tenant-access-policy-overview.md diff --git a/api-reference/beta/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md b/api-reference/beta/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md index e04a85d54f6..8e708a5abda 100644 --- a/api-reference/beta/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md +++ b/api-reference/beta/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md @@ -149,3 +149,10 @@ Content-Type: application/json ] } ``` + +## Related content + +- [Microsoft 365 cross-tenant access policy API overview](../resources/m365-cross-tenant-access-policy-overview.md) +- [crossTenantAccessPolicyConfigurationDefault resource type](../resources/crosstenantaccesspolicyconfigurationdefault.md) +- [m365CapabilityBase resource type](../resources/m365capabilitybase.md) + diff --git a/api-reference/beta/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md b/api-reference/beta/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md index c9273a166da..9b722504b06 100644 --- a/api-reference/beta/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md +++ b/api-reference/beta/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md @@ -261,3 +261,10 @@ Content-Type: application/json } } ``` + +## Related content + +- [Microsoft 365 cross-tenant access policy API overview](../resources/m365-cross-tenant-access-policy-overview.md) +- [crossTenantAccessPolicyConfigurationDefault resource type](../resources/crosstenantaccesspolicyconfigurationdefault.md) +- [m365CapabilityBase resource type](../resources/m365capabilitybase.md) + diff --git a/api-reference/beta/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md b/api-reference/beta/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md index d5362e894d0..6d3668febd4 100644 --- a/api-reference/beta/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md +++ b/api-reference/beta/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md @@ -155,3 +155,10 @@ Content-Type: application/json ] } ``` + +## Related content + +- [Microsoft 365 cross-tenant access policy API overview](../resources/m365-cross-tenant-access-policy-overview.md) +- [crossTenantAccessPolicyConfigurationPartner resource type](../resources/crosstenantaccesspolicyconfigurationpartner.md) +- [m365CapabilityBase resource type](../resources/m365capabilitybase.md) + diff --git a/api-reference/beta/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md b/api-reference/beta/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md index 3f5021add74..4aed340bd2f 100644 --- a/api-reference/beta/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md +++ b/api-reference/beta/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md @@ -253,3 +253,10 @@ Content-Type: application/json } } ``` + +## Related content + +- [Microsoft 365 cross-tenant access policy API overview](../resources/m365-cross-tenant-access-policy-overview.md) +- [crossTenantAccessPolicyConfigurationPartner resource type](../resources/crosstenantaccesspolicyconfigurationpartner.md) +- [m365CapabilityBase resource type](../resources/m365capabilitybase.md) + diff --git a/api-reference/beta/resources/m365-cross-tenant-access-policy-overview.md b/api-reference/beta/resources/m365-cross-tenant-access-policy-overview.md new file mode 100644 index 00000000000..b20958317b3 --- /dev/null +++ b/api-reference/beta/resources/m365-cross-tenant-access-policy-overview.md @@ -0,0 +1,78 @@ +--- +title: Microsoft 365 cross-tenant access policy API overview +description: Learn about the Microsoft 365 cross-tenant access policy API in Microsoft Graph and how you can use it to authorize partner access to Microsoft 365 capabilities such as calendar availability, MailTips, calendar sharing, profile card, and Places. +author: Anusree-stack +ms.author: anusreenandy +ms.localizationpriority: medium +ms.subservice: entra-sign-in +ms.custom: scenarios:getting-started +ms.date: 07/10/2026 +ms.topic: concept-article +doc_type: conceptualPageType +--- + +# Microsoft 365 cross-tenant access policy Microsoft Graph API overview + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +The Microsoft 365 cross-tenant access policy API in Microsoft Graph lets tenant administrators authorize which Microsoft 365 capabilities — such as calendar availability, MailTips, calendar sharing, profile card, and Places — external users from a trusted partner tenant can access in the resource tenant. It extends Microsoft Entra cross-tenant access policy with granular authorization control over Microsoft 365 resources, and is the recommended evolution path for organizations moving off the legacy Organization Relationships (OrgRel) model used today for MailTips, calendar sharing, and free/busy. + +Use the API to automate and standardize cross-tenant collaboration settings across partner organizations, multitenant environments, and merger or acquisition scenarios. It currently supports cross-tenant access within the same cloud and across clouds, with hybrid support planned. + +> [!TIP] +> This article explains the concepts behind the API. For the request and response details of individual operations, see [API reference](#api-reference). + +## Why integrate with the Microsoft 365 cross-tenant access policy API? + +The API gives administrators and applications programmatic, granular control over which Microsoft 365 resources external partners can access, without relying on the legacy OrgRel model. It pairs with Microsoft Entra cross-tenant access to form a layered model: Microsoft Entra handles *authentication* (who can access your tenant), and the Microsoft 365 cross-tenant access policy handles *authorization* (which resources they can access). + +### Authorize partner access with capability-level precision + +Control exactly which Microsoft 365 capabilities external users from a trusted partner can use, and scope each capability to specific users, groups, or the entire tenant. Supported capabilities include: + +- Profile card and photo sharing. +- Calendar availability (free/busy), with basic or limited-detail options. +- Calendar sharing, at simple, detail, or reviewer fidelity. +- MailTips shown while composing email. +- Places — room and desk booking. +- Mailbox migration between tenants (partner policy only). + +Teams Shared Channels are also available between trusted tenants, but they're governed directly by Microsoft Entra B2B direct connect rather than by this API. + +### Apply a consistent, two-tier policy model + +Like Microsoft Entra cross-tenant access, the API uses a two-tier model. A *default policy* sets the global baseline for all external tenants, and a *partner policy* overrides that baseline for a specific tenant to enable, disable, or scope capabilities per partner. When a cross-tenant request arrives, a partner policy takes precedence over the default policy, and the system default is *disabled* for all Microsoft 365 capabilities. + +### Control access as an inbound-only setting + +Microsoft 365 cross-tenant access policy is an inbound control: the resource tenant that owns the data decides what to expose. Enabling a capability is equivalent to saying "external users from that partner can access this resource in my tenant." Because the control is inbound only, a tenant can enable a capability one-way. Mutual configuration is required only when both organizations want their users to access each other's resources. + +### Modernize cross-tenant collaboration + +The API is the recommended path away from the legacy OrgRel model for MailTips, calendar sharing, and free/busy. It's designed for organizations that collaborate with external partners through Microsoft 365 apps, operate multiple Microsoft 365 tenants, or go through mergers, acquisitions, and reorganizations that require secure cross-tenant resource sharing. + +### High-level access or permission considerations + +Configuring cross-tenant capabilities requires a privileged administrator role (such as Global Administrator) on the resource tenant and delegated Microsoft Graph permissions, including `Policy.ReadWrite.CrossTenantAccess` and `Policy.ReadWrite.CrossTenantCapability`. A Microsoft Entra cross-tenant access trust with the partner must already exist: most capabilities require Microsoft 365 collaboration trust, Shared Channels require B2B direct connect, and mailbox migration requires app service connect. For authentication details, see [Authentication and authorization basics](/graph/auth/auth-concepts). Configuration is available through Microsoft Graph and the Microsoft Graph PowerShell SDK, with Microsoft Admin Center support planned after general availability. + +### Integration opportunities with other APIs + +- **Microsoft Entra cross-tenant access.** This API builds on Microsoft Entra cross-tenant access policy, which establishes the trust and authentication layer. Changes to the Microsoft Entra trust relationship directly affect these capabilities — removing a trust invalidates the corresponding Microsoft 365 capabilities for that partner. +- **Microsoft 365 substrate APIs.** Because capabilities govern substrate resources, you can combine authorization with the calendar, Outlook, people (profile card), and Places APIs to build end-to-end cross-tenant collaboration scenarios. + +## API reference + +For the request and response details of individual operations, see the following resources in the Microsoft Graph beta reference. + +- [crossTenantAccessPolicyConfigurationDefault resource type](/graph/api/resources/crosstenantaccesspolicyconfigurationdefault?view=graph-rest-beta&preserve-view=true) +- [crossTenantAccessPolicyConfigurationPartner resource type](/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-beta&preserve-view=true) +- [List m365Capabilities for the default policy](/graph/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities?view=graph-rest-beta&preserve-view=true) +- [Create m365CapabilityBase for the default policy](/graph/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities?view=graph-rest-beta&preserve-view=true) +- [List m365Capabilities for a partner](/graph/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities?view=graph-rest-beta&preserve-view=true) +- [Create m365CapabilityBase for a partner](/graph/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities?view=graph-rest-beta&preserve-view=true) + +## Related content + +- [Cross-tenant access settings API overview](crosstenantaccesspolicy-overview.md) +- [Microsoft Entra cross-tenant access overview](/entra/external-id/cross-tenant-access-overview) +- [Authentication and authorization basics](/graph/auth/auth-concepts) diff --git a/api-reference/beta/toc/tenants/toc.yml b/api-reference/beta/toc/tenants/toc.yml index 5eb97756bc2..1c1898c0bc4 100644 --- a/api-reference/beta/toc/tenants/toc.yml +++ b/api-reference/beta/toc/tenants/toc.yml @@ -142,6 +142,8 @@ items: - name: Microsoft 365 capabilities href: ../../resources/m365capabilitybase.md items: + - name: Overview + href: ../../resources/m365-cross-tenant-access-policy-overview.md - name: Cross-tenant calendar availability basic href: ../../resources/crosstenantcalendaravailabilitybasic.md - name: Cross-tenant calendar availability limited details diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 696c522fbbb..9b477ca27ca 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -3770,6 +3770,7 @@ "childNodes": [ { "name": "Microsoft 365 capabilities", + "overview": "../../resources/m365-cross-tenant-access-policy-overview.md", "resources": [ "crossTenantCalendarAvailabilityBasic", "crossTenantCalendarAvailabilityLimitedDetails", From 859c2ab96fb637997373c34867bbecc7c8fac5d1 Mon Sep 17 00:00:00 2001 From: Devi Shankar Jha <85483828+devjha-ms@users.noreply.github.com> Date: Wed, 5 Aug 2026 02:22:04 +0530 Subject: [PATCH 013/189] Add APIs for TargetedMessage - v1.0 (#28877) * Add APIs for TargetedMessage - v1.0 * Add APIs for TargetedMessage - v1.0 * Add permission files for targeted messages APIs * Add permission files and update TOC for targeted messages APIs * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Update Microsoft.Teams.GraphSvc.json * Update targetedchatmessage.md * Update targetedchatmessage.md * Apply suggestion from @MSFT-Andrea * Update reference TOC * Apply suggestion from @MSFT-Andrea * Update Microsoft.Teams.GraphSvc.json * Promote targeted messages APIs from beta to v1.0 * Added missing permission. * fixed value for teamId in example * Apply suggestion from @MSFT-Andrea * Update chatmessage.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update chat.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update enums.md * Update enums.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update toc.mapping.json * Apply suggestion from @MSFT-Andrea * Update reference TOC * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixes * fixes --------- Co-authored-by: devjha Co-authored-by: MSFT-Andrea Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../api/userteamwork-deletetargetedmessage.md | 2 +- api-reference/beta/resources/chat.md | 2 +- api-reference/beta/resources/chatmessage.md | 4 +- .../beta/resources/targetedchatmessage.md | 8 +- .../toc/teamwork-and-communications/toc.yml | 20 +- api-reference/beta/toc/toc.mapping.json | 2 +- .../v1.0/api/chat-delete-targetedmessages.md | 84 +++++ .../api/userteamwork-deletetargetedmessage.md | 91 +++++ ...teamwork-getallretainedtargetedmessages.md | 155 ++++++++ .../userteamwork-getalltargetedmessages.md | 357 ++++++++++++++++++ ...hat-delete-targetedmessages-permissions.md | 12 + ...mwork-deletetargetedmessage-permissions.md | 12 + ...allretainedtargetedmessages-permissions.md | 13 + ...work-getalltargetedmessages-permissions.md | 13 + api-reference/v1.0/resources/chat.md | 1 + api-reference/v1.0/resources/chatmessage.md | 6 +- api-reference/v1.0/resources/enums.md | 9 + .../v1.0/resources/targetedchatmessage.md | 109 ++++++ api-reference/v1.0/resources/userteamwork.md | 3 + .../toc/teamwork-and-communications/toc.yml | 32 +- api-reference/v1.0/toc/toc.mapping.json | 3 +- changelog/Microsoft.Teams.GraphSvc.json | 74 ++++ concepts/whats-new-overview.md | 7 + 23 files changed, 991 insertions(+), 28 deletions(-) create mode 100644 api-reference/v1.0/api/chat-delete-targetedmessages.md create mode 100644 api-reference/v1.0/api/userteamwork-deletetargetedmessage.md create mode 100644 api-reference/v1.0/api/userteamwork-getallretainedtargetedmessages.md create mode 100644 api-reference/v1.0/api/userteamwork-getalltargetedmessages.md create mode 100644 api-reference/v1.0/includes/permissions/chat-delete-targetedmessages-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/userteamwork-deletetargetedmessage-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/userteamwork-getallretainedtargetedmessages-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/userteamwork-getalltargetedmessages-permissions.md create mode 100644 api-reference/v1.0/resources/targetedchatmessage.md diff --git a/api-reference/beta/api/userteamwork-deletetargetedmessage.md b/api-reference/beta/api/userteamwork-deletetargetedmessage.md index c35e5410243..6285a0790b7 100644 --- a/api-reference/beta/api/userteamwork-deletetargetedmessage.md +++ b/api-reference/beta/api/userteamwork-deletetargetedmessage.md @@ -76,7 +76,7 @@ POST https://graph.microsoft.com/beta/users/f47b5f54-6968-4706-a522-31e842b12345 Content-Type: application/json { - "teamId": "3Aeeaa4e946d674c4f8d4dded613780f45@thread.v2", + "teamId": "9dda0ae1-e007-4a1d-81ec-2cf4b1274610", "channelId": "19:eeaa4e946d674c4f8d4dded613780f45@thread.v2", "messageId": "1580849738240" } diff --git a/api-reference/beta/resources/chat.md b/api-reference/beta/resources/chat.md index f4528e3af90..46059ea5c5b 100644 --- a/api-reference/beta/resources/chat.md +++ b/api-reference/beta/resources/chat.md @@ -116,7 +116,7 @@ Represents a chat that is a collection of [chatMessages](chatmessage.md) between | permissionGrants| [resourceSpecificPermissionGrant](resourcespecificpermissiongrant.md) collection| A collection of permissions granted to apps for the chat.| | pinnedMessages | [pinnedChatMessageInfo](pinnedchatmessageinfo.md) collection | A collection of all the pinned messages in the chat. Nullable. | | tabs | [teamsTab](teamstab.md) collection | A collection of all the tabs in the chat. Nullable. | -| targetedMessages | [targetedChatMessage](targetedchatmessage.md) collection | A collection of targeted messages in the chat that are visible only to specific users. Nullable. | +| targetedMessages | [targetedChatMessage](targetedchatmessage.md) collection | A collection of targeted messages in the chat that are visible only to specific users. Nullable. You can't expand this relationship using `$expand`. Targeted messages can also be retrieved via the [userTeamwork: getAllTargetedMessages](../api/userteamwork-getalltargetedmessages.md) API. | ## JSON representation diff --git a/api-reference/beta/resources/chatmessage.md b/api-reference/beta/resources/chatmessage.md index c617f7b35be..7a047bd7a95 100644 --- a/api-reference/beta/resources/chatmessage.md +++ b/api-reference/beta/resources/chatmessage.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph Represents an individual chat message within a [channel](channel.md) or [chat](chat.md). The message can be a root message or part of a thread that is defined by the **replyToId** property in the message. +The [targetedChatMessage](targetedchatmessage.md) resource is a specialized type of chat message that is visible only to specified recipients. For more information, see [targetedChatMessage](targetedchatmessage.md). + > **Note**: This resource supports subscribing to changes (create, update, and delete) using [change notifications](../resources/change-notifications-api-overview.md). This allows callers to subscribe and get changes in real time. For details, see [Get notifications for messages](/graph/teams-changenotifications-chatMessage). ## Methods @@ -74,7 +76,7 @@ Represents an individual chat message within a [channel](channel.md) or [chat](c |eventDetail|[eventMessageDetail](../resources/eventmessagedetail.md)|Read-only. If present, represents details of an event that happened in a **chat**, a **channel**, or a **team**, for example, adding new members. For event messages, the **messageType** property will be set to `systemEventMessage`.| |from|[chatMessageFromIdentitySet](chatmessagefromidentityset.md)| Details of the sender of the chat message. Can only be set during [migration](/microsoftteams/platform/graph-api/import-messages/import-external-messages-to-teams).| |id|String| Read-only. Unique ID of the message. IDs are unique within a chat/channel/reply-to-message, but might be duplicated in other chats/channels/reply-to-messages.| -|importance|string | The importance of the chat message. The possible values are: `normal`, `high`, `urgent`.| +|importance|chatMessageImportance|The importance of the message. The possible values are: `normal`, `high`, `urgent`, `unknownFutureValue`. | |lastEditedDateTime|dateTimeOffset|Read-only. Timestamp when edits to the chat message were made. Triggers an "Edited" flag in the Teams UI. If no edits are made the value is `null`.| |lastModifiedDateTime|dateTimeOffset|Read-only. Timestamp when the chat message is created (initial setting) or modified, including when a reaction is added or removed. | |locale|string|Locale of the chat message set by the client. Always set to `en-us`.| diff --git a/api-reference/beta/resources/targetedchatmessage.md b/api-reference/beta/resources/targetedchatmessage.md index c50b03c098f..017f2b207f4 100644 --- a/api-reference/beta/resources/targetedchatmessage.md +++ b/api-reference/beta/resources/targetedchatmessage.md @@ -28,8 +28,8 @@ Inherits from [chatMessage](../resources/chatmessage.md). |:---|:---|:---| |[Get all targeted messages](../api/userteamwork-getalltargetedmessages.md)|[targetedChatMessage](../resources/targetedchatmessage.md) collection|Get all [targeted messages](../resources/targetedchatmessage.md) sent to a specific user in group chats and channels.| |[Get all retained targeted messages](../api/userteamwork-getallretainedtargetedmessages.md)|[targetedChatMessage](../resources/targetedchatmessage.md) collection|Get all retained [targeted messages](../resources/targetedchatmessage.md) sent to a specific user in group chats and channels.| -|[Delete targeted message for channel](../api/userteamwork-deletetargetedmessage.md)|None|Delete a specific [targeted message](../resources/targetedchatmessage.md) from a channel context.| -|[Delete targeted message for chat](../api/chat-delete-targetedmessages.md)|None|Delete a specific [targeted message](../resources/targetedchatmessage.md) from a chat context. | +|[Delete targeted message from channel](../api/userteamwork-deletetargetedmessage.md)|None|Delete a specific [targeted message](../resources/targetedchatmessage.md) from a channel context.| +|[Delete targeted message from chat](../api/chat-delete-targetedmessages.md)|None|Delete a specific [targeted message](../resources/targetedchatmessage.md) from a chat context. | ## Properties |Property|Type|Description| @@ -44,7 +44,7 @@ Inherits from [chatMessage](../resources/chatmessage.md). |eventDetail|[eventMessageDetail](../resources/eventmessagedetail.md)|Details about the event if this message represents a system event. Inherited from [chatMessage](../resources/chatmessage.md).| |from|[chatMessageFromIdentitySet](../resources/chatmessagefromidentityset.md)|Details about the sender of the targeted message. Inherited from [chatMessage](../resources/chatmessage.md).| |id|String|Unique identifier of the message. The message ID is only unique within the context of a single conversation (chat or channel) for a specific user. Inherited from [chatMessage](../resources/chatmessage.md).| -|importance|chatMessageImportance|The importance of the message. The possible values are: `normal`, `high`, `urgent`. Inherited from [chatMessage](../resources/chatmessage.md).| +|importance|chatMessageImportance|The importance of the message. The possible values are: `normal`, `high`, `urgent`, `unknownFutureValue`. Inherited from [chatMessage](../resources/chatmessage.md).| |lastEditedDateTime|DateTimeOffset|Date and time when the message was last edited. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014, is `2014-01-01T00:00:00Z`. Inherited from [chatMessage](../resources/chatmessage.md).| |lastModifiedDateTime|DateTimeOffset|Date and time when the message or any of its properties was last modified. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014, is `2014-01-01T00:00:00Z`. Inherited from [chatMessage](../resources/chatmessage.md).| |locale|String|The locale of the message as set by the client, formatted as `en-us`. Inherited from [chatMessage](../resources/chatmessage.md).| @@ -53,7 +53,7 @@ Inherits from [chatMessage](../resources/chatmessage.md). |messageType|chatMessageType|The type of message. The possible values are: `message`, `chatEvent`, `typing`, `unknownFutureValue`, `systemEventMessage`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `systemEventMessage`. Inherited from [chatMessage](../resources/chatmessage.md).| |onBehalfOf|[chatMessageFromIdentitySet](../resources/chatmessagefromidentityset.md)|Information about the user on whose behalf the message was sent. Inherited from [chatMessage](../resources/chatmessage.md).| |policyViolation|[chatMessagePolicyViolation](../resources/chatmessagepolicyviolation.md)|Information about policy violations applied to the message by data loss prevention (DLP) applications. Inherited from [chatMessage](../resources/chatmessage.md).| -|reactions|[chatMessageReaction](../resources/chatmessagereaction.md) collection|The reactions applied to the message (for example, like, heart, laugh). Inherited from [chatMessage](../resources/chatmessage.md).| +|reactions|[chatMessageReaction](../resources/chatmessagereaction.md) collection|The reactions applied to the message (for example, like, heart, and laugh). Inherited from [chatMessage](../resources/chatmessage.md).| |recipient|[identity](../resources/identity.md)|The intended recipient of the targeted message.| |replyToId|String|The ID of the parent message or root message of the thread. Inherited from [chatMessage](../resources/chatmessage.md).| |subject|String|The subject of the message. Inherited from [chatMessage](../resources/chatmessage.md).| diff --git a/api-reference/beta/toc/teamwork-and-communications/toc.yml b/api-reference/beta/toc/teamwork-and-communications/toc.yml index b25b493cada..4c2e8a806ae 100644 --- a/api-reference/beta/toc/teamwork-and-communications/toc.yml +++ b/api-reference/beta/toc/teamwork-and-communications/toc.yml @@ -1061,6 +1061,14 @@ items: href: ../../api/chat-post-pinnedmessages.md - name: Unpin message href: ../../api/chat-delete-pinnedmessages.md + - name: Deleted chat + items: + - name: Deleted chat + href: ../../resources/deletedchat.md + - name: Get + href: ../../api/deletedchat-get.md + - name: Undo delete + href: ../../api/deletedchat-undodelete.md - name: Chat message items: - name: Chat message @@ -1149,14 +1157,6 @@ items: href: ../../api/chat-post-pinnedmessages.md - name: Unpin message href: ../../api/chat-delete-pinnedmessages.md - - name: Deleted chat - items: - - name: Deleted chat - href: ../../resources/deletedchat.md - - name: Get - href: ../../api/deletedchat-get.md - - name: Undo delete - href: ../../api/deletedchat-undodelete.md - name: Targeted chat message items: - name: Targeted chat message @@ -1165,9 +1165,9 @@ items: href: ../../api/userteamwork-getalltargetedmessages.md - name: Get all retained targeted messages href: ../../api/userteamwork-getallretainedtargetedmessages.md - - name: Delete targeted message for channel + - name: Delete targeted message from channel href: ../../api/userteamwork-deletetargetedmessage.md - - name: Delete targeted message for chat + - name: Delete targeted message from chat href: ../../api/chat-delete-targetedmessages.md - name: Team items: diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 9b477ca27ca..cc247f5dc6d 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -3599,9 +3599,9 @@ "resources": [ "channel", "chat", + "deletedChat", "chatMessage", "pinnedChatMessageInfo", - "deletedChat", "targetedChatMessage", "team", "teamworkTag", diff --git a/api-reference/v1.0/api/chat-delete-targetedmessages.md b/api-reference/v1.0/api/chat-delete-targetedmessages.md new file mode 100644 index 00000000000..07088900798 --- /dev/null +++ b/api-reference/v1.0/api/chat-delete-targetedmessages.md @@ -0,0 +1,84 @@ +--- +title: "Delete targetedChatMessage" +description: "Delete a specific targeted message from a chat context." +author: "devjha-ms" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: apiPageType +--- + +# Delete targetedChatMessage + +Namespace: microsoft.graph + +Delete a specific [targeted message](../resources/targetedchatmessage.md) from a chat context. Teams administrators can use this API to remove targeted messages from group chats. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/chat-delete-targetedmessages-permissions.md)] + +## HTTP request + + +``` http +DELETE /users/{user-id | userPrincipalName}/chats/{chat-id}/targetedMessages/{message-id} +``` + +## Path parameters + +|Parameter|Type|Description| +|:---|:---|:---| +|chat-id|String|Placeholder for the unique identifier of the chat where the targeted message was sent. Required.| +|message-id|String|Placeholder for the unique identifier of the targeted message to delete. This ID is unique within the context of the specified chat and user. Required.| +|user-id|String|Placeholder for the unique identifier or user principal name of the user to whom the targeted message was sent. Required.| + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `204 No Content` response code. + +## Examples + +### Request + +The following example shows a request. + +``` http +DELETE https://graph.microsoft.com/v1.0/users/f47b5f54-6968-4706-a522-31e842b12345/chats/19:eeaa4e946d674c4f8d4dded613780f45@thread.v2/targetedMessages/1580849738240 +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/api/userteamwork-deletetargetedmessage.md b/api-reference/v1.0/api/userteamwork-deletetargetedmessage.md new file mode 100644 index 00000000000..4ffa5e1c863 --- /dev/null +++ b/api-reference/v1.0/api/userteamwork-deletetargetedmessage.md @@ -0,0 +1,91 @@ +--- +title: "userTeamwork: deleteTargetedMessage" +description: "Delete a specific targeted message from a channel context." +author: "devjha-ms" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: apiPageType +--- + +# userTeamwork: deleteTargetedMessage + +Namespace: microsoft.graph + +Delete a specific [targeted message](../resources/targetedchatmessage.md) from a channel context. Teams administrators can use this API to remove targeted messages by providing the message ID, team ID, and channel ID. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/userteamwork-deletetargetedmessage-permissions.md)] + +## HTTP request + + +``` http +POST /users/{user-id | userPrincipalName}/teamwork/deleteTargetedMessage +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the parameters. + +The following table lists the parameters that are required when you call this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|channelId|String|The unique identifier of the channel where the targeted message was sent. Required.| +|messageId|String|The unique identifier of the targeted message to delete. This ID is unique within the context of the specified channel and user. Required.| +|teamId|String|The unique identifier of the team that contains the channel where the targeted message was sent. Required.| + +## Response + +If successful, this action returns a `204 No Content` response code. + +## Examples + +### Request + +The following example shows a request. + + +``` http +POST https://graph.microsoft.com/v1.0/users/f47b5f54-6968-4706-a522-31e842b12345/teamwork/deleteTargetedMessage +Content-Type: application/json + +{ + "teamId": "9dda0ae1-e007-4a1d-81ec-2cf4b1274610", + "channelId": "19:eeaa4e946d674c4f8d4dded613780f45@thread.v2", + "messageId": "1580849738240" +} +``` + +### Response + +The following example shows the response. + + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/api/userteamwork-getallretainedtargetedmessages.md b/api-reference/v1.0/api/userteamwork-getallretainedtargetedmessages.md new file mode 100644 index 00000000000..d921abf2660 --- /dev/null +++ b/api-reference/v1.0/api/userteamwork-getallretainedtargetedmessages.md @@ -0,0 +1,155 @@ +--- +title: "userTeamwork: getAllRetainedTargetedMessages" +description: "Get all retained targeted messages sent to a specific user in group chats and channels." +author: "devjha-ms" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: apiPageType +--- + +# userTeamwork: getAllRetainedTargetedMessages + +Namespace: microsoft.graph + +Get all retained [targeted messages](../resources/targetedchatmessage.md) sent to a specific user in group chats and channels. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/userteamwork-getallretainedtargetedmessages-permissions.md)] + +## HTTP request + + +``` http +GET /users/{user-id | userPrincipalName}/teamwork/getAllRetainedTargetedMessages +``` + +## Optional query parameters + +This method supports the following OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +| Name |Description| +|:--------|:----------| +| $filter | The [$filter](/graph/query-parameters#filter-parameter) query parameter supports date and time range queries on the **lastModifiedDateTime** property using [date range parameters](/graph/query-parameters).| +| $top | Use the [$top](/graph/query-parameters#top-parameter) query parameter to control the number of items per response.| + +### Supported $filter operators + +The following filter expressions are supported: + +- `lastModifiedDateTime gt {datetime}` - Returns messages modified after the specified date and time. +- `lastModifiedDateTime lt {datetime}` - Returns messages modified before the specified date and time. +- `from/application/id eq '{id}'` - Returns messages sent by a specific application ID. + +You can combine multiple filter expressions using the `and` operator. For example: +```http +GET /users/{user-id | userPrincipalName}/teamwork/getAllRetainedTargetedMessages?$filter=lastModifiedDateTime gt 2024-01-01T00:00:00Z and lastModifiedDateTime lt 2024-12-31T23:59:59Z +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this function returns a `200 OK` response code and a collection of [targetedChatMessage](../resources/targetedchatmessage.md) objects in the response body. + +The response includes the **@odata.nextLink** property for pagination, when applicable. + +## Examples + +### Request + +The following example shows a request. + + +``` http +GET https://graph.microsoft.com/v1.0/users/f47b5f54-6968-4706-a522-31e842b12345/teamwork/getAllRetainedTargetedMessages +``` + +### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#Collection(targetedChatMessage)", + "@odata.count": 1, + "@odata.nextLink": "https://graph.microsoft.com/v1.0/users/f47b5f54-6968-4706-a522-31e842b12345/teamwork/getAllRetainedTargetedMessages?$top=1&$skiptoken=Token", + "value": [ + { + "@odata.type": "#microsoft.graph.targetedChatMessage", + "id": "1684961612345", + "replyToId": null, + "etag": "1684962512345", + "messageType": "message", + "createdDateTime": "2023-05-24T20:54:49.858Z", + "lastModifiedDateTime": "2023-05-24T21:13:15Z", + "lastEditedDateTime": "2023-05-24T21:09:00.224Z", + "deletedDateTime": null, + "subject": "", + "summary": null, + "chatId": "19:1a546d42d8b54a16903716f49b512345@thread.v2", + "importance": "normal", + "locale": "en-us", + "webUrl": null, + "channelIdentity": null, + "onBehalfOf": null, + "policyViolation": null, + "eventDetail": null, + "from": { + "device": null, + "user": null, + "application": { + "@odata.type": "#microsoft.graph.teamworkApplicationIdentity", + "id": "6d23e712-527b-406f-8d59-d02927885918", + "displayName": "Breakthru", + "applicationIdentityType": "bot" + } + }, + "body": { + "contentType": "html", + "content": "

5/24 group chat

" + }, + "attachments": [], + "mentions": [], + "reactions": [], + "messageHistory": [], + "recipient": { + "@odata.type": "#microsoft.graph.identity", + "id": "1273a016-201d-4f95-8083-1b7f99b3edeb", + "displayName": "Adele Vance" + } + } + ] +} +``` diff --git a/api-reference/v1.0/api/userteamwork-getalltargetedmessages.md b/api-reference/v1.0/api/userteamwork-getalltargetedmessages.md new file mode 100644 index 00000000000..7ef3d980dad --- /dev/null +++ b/api-reference/v1.0/api/userteamwork-getalltargetedmessages.md @@ -0,0 +1,357 @@ +--- +title: "userTeamwork: getAllTargetedMessages" +description: "Get all targeted messages sent to a specific user in group chats and channels." +author: "devjha-ms" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: apiPageType +--- + +# userTeamwork: getAllTargetedMessages + +Namespace: microsoft.graph + +Get all [targeted messages](../resources/targetedchatmessage.md) sent to a specific user in group chats and channels. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/userteamwork-getalltargetedmessages-permissions.md)] + +## HTTP request + + +``` http +GET /users/{user-id | userPrincipalName}/teamwork/getAllTargetedMessages +``` + +## Optional query parameters + +This method supports the following OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +| Name |Description| +|:--------|:----------| +| $filter | The [$filter](/graph/query-parameters#filter-parameter) query parameter supports date and time range queries on the **lastModifiedDateTime** property using [date range parameters](/graph/query-parameters).| +| $top | Use the [$top](/graph/query-parameters#top-parameter) query parameter to control the number of items per response.| + +### Supported $filter operators + +The following filter expressions are supported: + +- `lastModifiedDateTime gt {datetime}` - Returns messages modified after the specified date and time. +- `lastModifiedDateTime lt {datetime}` - Returns messages modified before the specified date and time. +- `from/application/id eq '{id}'` - Returns messages sent by a specific application ID. + +You can combine multiple filter expressions using the `and` operator. For example: +```http +GET /users/{user-id | userPrincipalName}/teamwork/getAllTargetedMessages?$filter=lastModifiedDateTime gt 2024-01-01T00:00:00Z and lastModifiedDateTime lt 2024-12-31T23:59:59Z +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this function returns a `200 OK` response code and a collection of [targetedChatMessage](../resources/targetedchatmessage.md) objects in the response body. + +The response includes the **@odata.nextLink** property for pagination and the **@odata.deltaLink** property for delta tracking, when applicable. + +## Examples + +### Example 1: Get all targeted messages for a user + +The following example shows how to retrieve all targeted messages for a user. + +#### Request + +The following example shows a request. + + +``` http +GET https://graph.microsoft.com/v1.0/users/f47b5f54-6968-4706-a522-31e842b12345/teamwork/getAllTargetedMessages +``` + +#### Response + +The following example shows the response that includes both chat and channel context–targeted messages. + +>**Note:** The response object shown here might be shortened for readability. + + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#Collection(targetedChatMessage)", + "@odata.count": 2, + "@odata.nextLink": "https://graph.microsoft.com/v1.0/users/f47b5f54-6968-4706-a522-31e842b12345/teamwork/getAllTargetedMessages?$top=2&$skiptoken=U2tpcFZhbHVlPTIjTWFpbGJveEZvbGRlcj1NYWlsRm9sZGVycy9UZWFtc01lc3NhZ2VzRGF0YQ", + "value": [ + { + "id": "1580849738240", + "@odata.type": "#microsoft.graph.targetedChatMessage", + "replyToId": null, + "etag": "1580849738240", + "chatId": "19:eeaa4e946d674c4f8d4dded613780f45@thread.v2", + "channelIdentity": null, + "messageType": "message", + "createdDateTime": "2020-02-04T20:55:38.24Z", + "lastModifiedDateTime": null, + "deletedDateTime": null, + "subject": null, + "summary": null, + "importance": "normal", + "locale": "en-us", + "webUrl": null, + "policyViolation": null, + "from": { + "device": null, + "user": null, + "application": { + "@odata.type": "#microsoft.graph.teamworkApplicationIdentity", + "id": "6d23e712-527b-406f-8d59-d02927885918", + "displayName": "Breakthru", + "applicationIdentityType": "bot" + } + }, + "body": { + "contentType": "text", + "content": "hello" + }, + "attachments": [], + "mentions": [], + "reactions": [], + "recipient": { + "@odata.type": "#microsoft.graph.identity", + "id": "1273a016-201d-4f95-8083-1b7f99b3edeb", + "displayName": "Adele Vance" + } + }, + { + "id": "1580849738241", + "@odata.type": "#microsoft.graph.targetedChatMessage", + "replyToId": null, + "etag": "1580849738241", + "chatId": null, + "channelIdentity": { + "channelId": "19:eeaa4e946d674c4f8d4dded613780f45@thread.v2", + "teamId": "3Aeeaa4e946d674c4f8d4dded613780f45@thread.v2" + }, + "messageType": "message", + "createdDateTime": "2020-02-04T20:55:38.24Z", + "lastModifiedDateTime": null, + "deletedDateTime": null, + "subject": null, + "summary": null, + "importance": "normal", + "locale": "en-us", + "webUrl": null, + "policyViolation": null, + "from": { + "device": null, + "user": null, + "application": { + "@odata.type": "#microsoft.graph.teamworkApplicationIdentity", + "id": "6d23e712-527b-406f-8d59-d02927885918", + "displayName": "Breakthru", + "applicationIdentityType": "bot" + } + }, + "body": { + "contentType": "text", + "content": "hello" + }, + "attachments": [], + "mentions": [], + "reactions": [], + "recipient": { + "@odata.type": "#microsoft.graph.identity", + "id": "1273a016-201d-4f95-8083-1b7f99b3edeb", + "displayName": "Adele Vance" + } + } + ] +} +``` + +### Example 2: Filter targeted messages by date range + +The following example shows how to retrieve targeted messages within a specific date range. + +#### Request +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/users/f47b5f54-6968-4706-a522-31e842b12345/teamwork/getAllTargetedMessages?$filter=lastModifiedDateTime gt 2024-01-01T00:00:00Z and lastModifiedDateTime lt 2024-12-31T23:59:59Z +``` + +#### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#Collection(targetedChatMessage)", + "@odata.count": 1, + "value": [ + { + "id": "1704067200000", + "@odata.type": "#microsoft.graph.targetedChatMessage", + "replyToId": null, + "etag": "1704067200000", + "chatId": "19:eeaa4e946d674c4f8d4dded613780f45@thread.v2", + "channelIdentity": null, + "messageType": "message", + "createdDateTime": "2024-01-01T00:00:00Z", + "lastModifiedDateTime": "2024-01-01T00:00:00Z", + "deletedDateTime": null, + "subject": null, + "summary": null, + "importance": "normal", + "locale": "en-us", + "webUrl": null, + "policyViolation": null, + "from": { + "device": null, + "user": null, + "application": { + "@odata.type": "#microsoft.graph.teamworkApplicationIdentity", + "id": "6d23e712-527b-406f-8d59-d02927885918", + "displayName": "Breakthru", + "applicationIdentityType": "bot" + } + }, + "body": { + "contentType": "text", + "content": "Filtered message content" + }, + "attachments": [], + "mentions": [], + "reactions": [], + "recipient": { + "@odata.type": "#microsoft.graph.identity", + "id": "1273a016-201d-4f95-8083-1b7f99b3edeb", + "displayName": "Adele Vance" + } + } + ] +} +``` + +### Example 3: Get targeted messages by application sender + +The following example retrieves targeted messages sent by a specific application. + +#### Request +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/users/f47b5f54-6968-4706-a522-31e842b12345/teamwork/getAllTargetedMessages?$filter=from/application/id eq '6d23e712-527b-406f-8d59-d02927885918' +``` + +#### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#Collection(targetedChatMessage)", + "@odata.count": 1, + "value": [ + { + "@odata.type": "#microsoft.graph.targetedChatMessage", + "id": "1580849738240", + "replyToId": null, + "etag": "1580849738240", + "chatId": "19:eeaa4e946d674c4f8d4dded613780f45@thread.v2", + "channelIdentity": null, + "messageType": "message", + "createdDateTime": "2020-02-04T20:55:38.24Z", + "lastModifiedDateTime": "2020-02-04T20:55:38.24Z", + "deletedDateTime": null, + "subject": null, + "summary": null, + "importance": "normal", + "locale": "en-us", + "webUrl": null, + "policyViolation": null, + "from": { + "device": null, + "user": null, + "application": { + "@odata.type": "#microsoft.graph.teamworkApplicationIdentity", + "id": "6d23e712-527b-406f-8d59-d02927885918", + "displayName": "Breakthru", + "applicationIdentityType": "bot" + } + }, + "body": { + "contentType": "text", + "content": "hello" + }, + "attachments": [], + "mentions": [], + "reactions": [], + "recipient": { + "@odata.type": "#microsoft.graph.identity", + "id": "1273a016-201d-4f95-8083-1b7f99b3edeb", + "displayName": "Adele Vance" + } + } + ] +} +``` diff --git a/api-reference/v1.0/includes/permissions/chat-delete-targetedmessages-permissions.md b/api-reference/v1.0/includes/permissions/chat-delete-targetedmessages-permissions.md new file mode 100644 index 00000000000..b5b0128ff62 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/chat-delete-targetedmessages-permissions.md @@ -0,0 +1,12 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TeamworkTargetedMessage.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/userteamwork-deletetargetedmessage-permissions.md b/api-reference/v1.0/includes/permissions/userteamwork-deletetargetedmessage-permissions.md new file mode 100644 index 00000000000..d9a5b581867 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/userteamwork-deletetargetedmessage-permissions.md @@ -0,0 +1,12 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TeamworkTargetedMessage.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/userteamwork-getallretainedtargetedmessages-permissions.md b/api-reference/v1.0/includes/permissions/userteamwork-getallretainedtargetedmessages-permissions.md new file mode 100644 index 00000000000..e1bbfcfb59a --- /dev/null +++ b/api-reference/v1.0/includes/permissions/userteamwork-getallretainedtargetedmessages-permissions.md @@ -0,0 +1,13 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Not supported.|Not supported.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TeamworkTargetedMessage.Read.All|Not available.| + + diff --git a/api-reference/v1.0/includes/permissions/userteamwork-getalltargetedmessages-permissions.md b/api-reference/v1.0/includes/permissions/userteamwork-getalltargetedmessages-permissions.md new file mode 100644 index 00000000000..e1bbfcfb59a --- /dev/null +++ b/api-reference/v1.0/includes/permissions/userteamwork-getalltargetedmessages-permissions.md @@ -0,0 +1,13 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Not supported.|Not supported.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TeamworkTargetedMessage.Read.All|Not available.| + + diff --git a/api-reference/v1.0/resources/chat.md b/api-reference/v1.0/resources/chat.md index 74c7a2be340..f1ffd19bccb 100644 --- a/api-reference/v1.0/resources/chat.md +++ b/api-reference/v1.0/resources/chat.md @@ -97,6 +97,7 @@ A chat is a collection of [chatMessages](chatmessage.md) between one or more par | permissionGrants| [resourceSpecificPermissionGrant](resourcespecificpermissiongrant.md) collection| A collection of permissions granted to apps for the chat.| | pinnedMessages | [pinnedChatMessageInfo](pinnedchatmessageinfo.md) collection | A collection of all the pinned messages in the chat. Nullable. | | tabs | [teamsTab](teamstab.md) collection | A collection of all the tabs in the chat. Nullable. | +| targetedMessages | [targetedChatMessage](targetedchatmessage.md) collection | A collection of targeted messages in the chat that are visible only to specific users. Nullable. You can't expand this relationship using `$expand`. Targeted messages can also be retrieved via the [userTeamwork: getAllTargetedMessages](../api/userteamwork-getalltargetedmessages.md) API.| ## JSON representation diff --git a/api-reference/v1.0/resources/chatmessage.md b/api-reference/v1.0/resources/chatmessage.md index dac358f3f92..7b577bf2c85 100644 --- a/api-reference/v1.0/resources/chatmessage.md +++ b/api-reference/v1.0/resources/chatmessage.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Represents an individual chat message within a [channel](channel.md) or [chat](chat.md). The message can be a root message or part of a thread that is defined by the **replyToId** property in the message. +The [targetedChatMessage](targetedchatmessage.md) resource is a specialized type of chat message that is visible only to specified recipients. For more information, see [targetedChatMessage](targetedchatmessage.md). + > **Note**: This resource supports subscribing to changes (create, update, and delete) using [change notifications](../resources/change-notifications-api-overview.md). This allows callers to subscribe and get changes in real time. For details, see [Get notifications for messages](/graph/teams-changenotifications-chatMessage). ## Methods @@ -72,9 +74,9 @@ Represents an individual chat message within a [channel](channel.md) or [chat](c |eventDetail|[eventMessageDetail](../resources/eventmessagedetail.md)|Read-only. If present, represents details of an event that happened in a **chat**, a **channel**, or a **team**, for example, adding new members. For event messages, the **messageType** property will be set to `systemEventMessage`.| |from|[chatMessageFromIdentitySet](chatmessagefromidentityset.md)| Details of the sender of the chat message. Can only be set during [migration](/microsoftteams/platform/graph-api/import-messages/import-external-messages-to-teams).| |id|String| Read-only. Unique ID of the message. IDs are unique within a chat/channel/reply-to-message, but might be duplicated in other chats/channels/reply-to-messages. | -|importance|string | The importance of the chat message. The possible values are: `normal`, `high`, `urgent`.| -|lastModifiedDateTime|dateTimeOffset|Read-only. Timestamp when the chat message is created (initial setting) or modified, including when a reaction is added or removed. | +|importance|chatMessageImportance|The importance of the message. The possible values are: `normal`, `high`, `urgent`, `unknownFutureValue`. | |lastEditedDateTime|dateTimeOffset|Read-only. Timestamp when edits to the chat message were made. Triggers an "Edited" flag in the Teams UI. If no edits are made the value is `null`.| +|lastModifiedDateTime|dateTimeOffset|Read-only. Timestamp when the chat message is created (initial setting) or modified, including when a reaction is added or removed. | |locale|string|Locale of the chat message set by the client. Always set to `en-us`.| |mentions|[chatMessageMention](chatmessagemention.md) collection| List of entities mentioned in the chat message. Supported entities are: user, bot, team, channel, chat, and tag.| |messageHistory|[chatMessageHistoryItem](../resources/chatmessagehistoryitem.md) collection|List of activity history of a message item, including modification time and actions, such as reactionAdded, reactionRemoved, or reaction changes, on the message. diff --git a/api-reference/v1.0/resources/enums.md b/api-reference/v1.0/resources/enums.md index b049850218c..3f20cebb915 100644 --- a/api-reference/v1.0/resources/enums.md +++ b/api-reference/v1.0/resources/enums.md @@ -2356,6 +2356,15 @@ Possible values for user account types (group membership), per Windows definitio | unknownFutureValue | | systemEventMessage | +### chatMessageImportance values + +| Member | +| ------ | +| normal | +| high | +| urgent | +| unknownFutureValue | + ### chatMessagePolicyViolationDlpActionType values | Value | diff --git a/api-reference/v1.0/resources/targetedchatmessage.md b/api-reference/v1.0/resources/targetedchatmessage.md new file mode 100644 index 00000000000..cad7d27b76d --- /dev/null +++ b/api-reference/v1.0/resources/targetedchatmessage.md @@ -0,0 +1,109 @@ +--- +title: "targetedChatMessage resource type" +description: "Represents a targeted message in Microsoft Teams that is visible only to a specified recipient within a group chat or channel." +author: "devjha-ms" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: resourcePageType +--- + +# targetedChatMessage resource type + +Namespace: microsoft.graph + +Represents a targeted message in Microsoft Teams that is visible only to a specified recipient. Unlike regular messages that are visible to all participants in a group chat or channel, targeted messages provide privacy for bot interactions and app-to-user communications that require user-specific information. + +Targeted messages are used in scenarios such as: + +- Bot authentication requests in group contexts, where credentials should only be visible to the requesting user. +- Chat summaries for new members, visible only to the joining member. +- Proactive and reactive bot messages that contain sensitive or user-specific information. + +Inherits from [chatMessage](../resources/chatmessage.md). + +## Methods + +|Method|Return type|Description| +|:---|:---|:---| +|[Get all targeted messages](../api/userteamwork-getalltargetedmessages.md)|[targetedChatMessage](../resources/targetedchatmessage.md) collection|Get all [targeted messages](../resources/targetedchatmessage.md) sent to a specific user in group chats and channels.| +|[Get all retained targeted messages](../api/userteamwork-getallretainedtargetedmessages.md)|[targetedChatMessage](../resources/targetedchatmessage.md) collection|Get all retained [targeted messages](../resources/targetedchatmessage.md) sent to a specific user in group chats and channels.| +|[Delete targeted message from channel](../api/userteamwork-deletetargetedmessage.md)|None|Delete a specific [targeted message](../resources/targetedchatmessage.md) from a channel context.| +|[Delete targeted message from chat](../api/chat-delete-targetedmessages.md)|None|Delete a specific [targeted message](../resources/targetedchatmessage.md) from a chat context.| + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|attachments|[chatMessageAttachment](../resources/chatmessageattachment.md) collection|References to attached objects like files, tabs, meetings, or other items. Inherited from [chatMessage](../resources/chatmessage.md).| +|body|[itemBody](../resources/itembody.md)|The content of the message. Inherited from [chatMessage](../resources/chatmessage.md).| +|chatId|String|The unique identifier of the chat if the targeted message was sent in a group chat context. Inherited from [chatMessage](../resources/chatmessage.md).| +|channelIdentity|[channelIdentity](../resources/channelidentity.md)|The channel and team information if the targeted message was sent in a channel context. Contains the **channelId** and **teamId** properties. Inherited from [chatMessage](../resources/chatmessage.md).| +|createdDateTime|DateTimeOffset|The date and time when the message was created. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014, is `2014-01-01T00:00:00Z`. Inherited from [chatMessage](../resources/chatmessage.md).| +|deletedDateTime|DateTimeOffset|The date and time when the message was deleted. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014, is `2014-01-01T00:00:00Z`. Only applicable for retained messages. Inherited from [chatMessage](../resources/chatmessage.md).| +|etag|String|Version number of the message. Inherited from [chatMessage](../resources/chatmessage.md).| +|eventDetail|[eventMessageDetail](../resources/eventmessagedetail.md)|Details about the event if this message represents a system event. Inherited from [chatMessage](../resources/chatmessage.md).| +|from|[chatMessageFromIdentitySet](../resources/chatmessagefromidentityset.md)|Details about the sender of the targeted message. Inherited from [chatMessage](../resources/chatmessage.md).| +|id|String|Unique identifier of the message. The message ID is only unique within the context of a single conversation (chat or channel) for a specific user. Inherited from [chatMessage](../resources/chatmessage.md).| +|importance|chatMessageImportance|The importance of the message. The possible values are: `normal`, `high`, `urgent`, `unknownFutureValue`. Inherited from [chatMessage](../resources/chatmessage.md).| +|lastEditedDateTime|DateTimeOffset|Date and time when the message was last edited. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014, is `2014-01-01T00:00:00Z`. Inherited from [chatMessage](../resources/chatmessage.md).| +|lastModifiedDateTime|DateTimeOffset|Date and time when the message or any of its properties was last modified. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014, is `2014-01-01T00:00:00Z`. Inherited from [chatMessage](../resources/chatmessage.md).| +|locale|String|The locale of the message as set by the client, formatted as `en-us`. Inherited from [chatMessage](../resources/chatmessage.md).| +|mentions|[chatMessageMention](../resources/chatmessagemention.md) collection|List of entities mentioned in the message. Inherited from [chatMessage](../resources/chatmessage.md).| +|messageHistory|[chatMessageHistoryItem](../resources/chatmessagehistoryitem.md) collection|History of edits applied to the message. Inherited from [chatMessage](../resources/chatmessage.md).| +|messageType|chatMessageType|The type of message. The possible values are: `message`, `chatEvent`, `typing`, `unknownFutureValue`, `systemEventMessage`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `systemEventMessage`. Inherited from [chatMessage](../resources/chatmessage.md).| +|policyViolation|[chatMessagePolicyViolation](../resources/chatmessagepolicyviolation.md)|Information about policy violations applied to the message by data loss prevention (DLP) applications. Inherited from [chatMessage](../resources/chatmessage.md).| +|reactions|[chatMessageReaction](../resources/chatmessagereaction.md) collection|The reactions applied to the message (for example, like, heart, and laugh). Inherited from [chatMessage](../resources/chatmessage.md).| +|recipient|[identity](../resources/identity.md)|The intended recipient of the targeted message.| +|replyToId|String|The ID of the parent message or root message of the thread. Inherited from [chatMessage](../resources/chatmessage.md).| +|subject|String|The subject of the message. Inherited from [chatMessage](../resources/chatmessage.md).| +|summary|String|Summary text of the message that can be used for notifications or summary views. Inherited from [chatMessage](../resources/chatmessage.md).| +|webUrl|String|The link to the message in Microsoft Teams. Inherited from [chatMessage](../resources/chatmessage.md).| + +## Relationships + +|Relationship|Type|Description| +|:---|:---|:---| +|hostedContents|[chatMessageHostedContent](../resources/chatmessagehostedcontent.md) collection|Content hosted in the message, such as images or code snippets. Inherited from [chatMessage](../resources/chatmessage.md).| +|replies|[chatMessage](../resources/chatmessage.md) collection|Replies to the message. Currently not supported for targeted messages. Inherited from [chatMessage](../resources/chatmessage.md).| + +## JSON representation + +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.targetedChatMessage", + "attachments": [{"@odata.type": "microsoft.graph.chatMessageAttachment"}], + "body": {"@odata.type": "microsoft.graph.itemBody"}, + "chatId": "String", + "channelIdentity": {"@odata.type": "microsoft.graph.channelIdentity"}, + "createdDateTime": "String (timestamp)", + "deletedDateTime": "String (timestamp)", + "etag": "String", + "eventDetail": {"@odata.type": "microsoft.graph.eventMessageDetail"}, + "from": {"@odata.type": "microsoft.graph.chatMessageFromIdentitySet"}, + "id": "String (identifier)", + "importance": "String", + "lastEditedDateTime": "String (timestamp)", + "lastModifiedDateTime": "String (timestamp)", + "locale": "String", + "mentions": [{"@odata.type": "microsoft.graph.chatMessageMention"}], + "messageHistory": [{"@odata.type": "microsoft.graph.chatMessageHistoryItem"}], + "messageType": "String", + "policyViolation": {"@odata.type": "microsoft.graph.chatMessagePolicyViolation"}, + "reactions": [{"@odata.type": "microsoft.graph.chatMessageReaction"}], + "recipient": {"@odata.type": "microsoft.graph.identity"}, + "replyToId": "String", + "subject": "String", + "summary": "String", + "webUrl": "String" +} +``` diff --git a/api-reference/v1.0/resources/userteamwork.md b/api-reference/v1.0/resources/userteamwork.md index e4086e4e870..e21ff6eb18d 100644 --- a/api-reference/v1.0/resources/userteamwork.md +++ b/api-reference/v1.0/resources/userteamwork.md @@ -19,6 +19,9 @@ Represents a container for the range of Microsoft Teams functionalities that are |Method|Return type|Description| |:---|:---|:---| |[Get](../api/userteamwork-get.md)|[userTeamwork](../resources/userteamwork.md)|Get userTeamwork settings for the specified [user](../resources/user.md), which includes the Microsoft Teams region and the locale chosen by the user.| +|[Get all targeted messages](../api/userteamwork-getalltargetedmessages.md)|[targetedChatMessage](../resources/targetedchatmessage.md) collection|Get all [targeted messages](../resources/targetedchatmessage.md) sent to a specific user in group chats and channels.| +|[Get all retained targeted messages](../api/userteamwork-getallretainedtargetedmessages.md)|[targetedChatMessage](../resources/targetedchatmessage.md) collection|Get all retained [targeted messages](../resources/targetedchatmessage.md) sent to a specific user in group chats and channels.| +|[Delete targeted message](../api/userteamwork-deletetargetedmessage.md)|None|Delete a specific [targeted message](../resources/targetedchatmessage.md) from a channel context.| ## Properties diff --git a/api-reference/v1.0/toc/teamwork-and-communications/toc.yml b/api-reference/v1.0/toc/teamwork-and-communications/toc.yml index 9c0556ecc4c..60a91a38776 100644 --- a/api-reference/v1.0/toc/teamwork-and-communications/toc.yml +++ b/api-reference/v1.0/toc/teamwork-and-communications/toc.yml @@ -779,6 +779,14 @@ items: href: ../../api/chat-post-pinnedmessages.md - name: Unpin message href: ../../api/chat-delete-pinnedmessages.md + - name: Deleted chat + items: + - name: Deleted chat + href: ../../resources/deletedchat.md + - name: Get + href: ../../api/deletedchat-get.md + - name: Undo delete + href: ../../api/deletedchat-undodelete.md - name: Chat message items: - name: Chat message @@ -865,14 +873,18 @@ items: href: ../../api/chat-post-pinnedmessages.md - name: Unpin message href: ../../api/chat-delete-pinnedmessages.md - - name: Deleted chat + - name: Targeted chat message items: - - name: Deleted chat - href: ../../resources/deletedchat.md - - name: Get - href: ../../api/deletedchat-get.md - - name: Undo delete - href: ../../api/deletedchat-undodelete.md + - name: Targeted chat message + href: ../../resources/targetedchatmessage.md + - name: Get all targeted messages + href: ../../api/userteamwork-getalltargetedmessages.md + - name: Get all retained targeted messages + href: ../../api/userteamwork-getallretainedtargetedmessages.md + - name: Delete targeted message from channel + href: ../../api/userteamwork-deletetargetedmessage.md + - name: Delete targeted message from chat + href: ../../api/chat-delete-targetedmessages.md - name: Team items: - name: Team @@ -1001,6 +1013,12 @@ items: href: ../../resources/userteamwork.md - name: Get href: ../../api/userteamwork-get.md + - name: Get all targeted messages + href: ../../api/userteamwork-getalltargetedmessages.md + - name: Get all retained targeted messages + href: ../../api/userteamwork-getallretainedtargetedmessages.md + - name: Delete targeted message + href: ../../api/userteamwork-deletetargetedmessage.md - name: Shift management items: - name: Day note diff --git a/api-reference/v1.0/toc/toc.mapping.json b/api-reference/v1.0/toc/toc.mapping.json index 5b98583a6fd..3c227229ba6 100644 --- a/api-reference/v1.0/toc/toc.mapping.json +++ b/api-reference/v1.0/toc/toc.mapping.json @@ -2103,9 +2103,10 @@ "resources": [ "channel", "chat", + "deletedChat", "chatMessage", "pinnedChatMessageInfo", - "deletedChat", + "targetedChatMessage", "team", "teamworkTag", "teamworkTagMember" diff --git a/changelog/Microsoft.Teams.GraphSvc.json b/changelog/Microsoft.Teams.GraphSvc.json index c24858fd2f3..b2454605d75 100644 --- a/changelog/Microsoft.Teams.GraphSvc.json +++ b/changelog/Microsoft.Teams.GraphSvc.json @@ -1,5 +1,71 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "c01b88aa-0937-4d62-a7f3-91826312c21c", + "ApiChange": "Relationship", + "ChangedApiName": "targetedMessages", + "ChangeType": "Addition", + "Description": "Added the **targetedMessages** relationship to the [chat](https://learn.microsoft.com/en-us/graph/api/resources/chat?view=graph-rest-1.0) resource.", + "Target": "chat" + }, + { + "Id": "c01b88aa-0937-4d62-a7f3-91826312c21c", + "ApiChange": "Resource", + "ChangedApiName": "targetedChatMessage", + "ChangeType": "Addition", + "Description": "Added the [targetedChatMessage](https://learn.microsoft.com/en-us/graph/api/resources/targetedchatmessage?view=graph-rest-1.0) resource.", + "Target": "targetedChatMessage" + }, + { + "Id": "c01b88aa-0937-4d62-a7f3-91826312c21c", + "ApiChange": "Method", + "ChangedApiName": "deleteTargetedMessage", + "ChangeType": "Addition", + "Description": "Added the [deleteTargetedMessage](https://learn.microsoft.com/en-us/graph/api/userteamwork-deletetargetedmessage?view=graph-rest-1.0) method to the [userteamwork](https://learn.microsoft.com/en-us/graph/api/resources/userteamwork?view=graph-rest-1.0) resource.", + "Target": "userTeamwork" + }, + { + "Id": "c01b88aa-0937-4d62-a7f3-91826312c21c", + "ApiChange": "Method", + "ChangedApiName": "getAllRetainedTargetedMessages", + "ChangeType": "Addition", + "Description": "Added the [getAllRetainedTargetedMessages](https://learn.microsoft.com/en-us/graph/api/userteamwork-getallretainedtargetedmessages?view=graph-rest-1.0) method to the [userteamwork](https://learn.microsoft.com/en-us/graph/api/resources/userteamwork?view=graph-rest-1.0) resource.", + "Target": "userTeamwork" + }, + { + "Id": "c01b88aa-0937-4d62-a7f3-91826312c21c", + "ApiChange": "Method", + "ChangedApiName": "getAllTargetedMessages", + "ChangeType": "Addition", + "Description": "Added the [getAllTargetedMessages](https://learn.microsoft.com/en-us/graph/api/userteamwork-getalltargetedmessages?view=graph-rest-1.0) method to the [userteamwork](https://learn.microsoft.com/en-us/graph/api/resources/userteamwork?view=graph-rest-1.0) resource.", + "Target": "userTeamwork" + }, + { + "Id": "c01b88aa-0937-4d62-a7f3-91826312c21c", + "ApiChange": "Method", + "ChangedApiName": "chat", + "ChangeType": "Addition", + "Description": "Added the [Delete targetedChatMessage](https://learn.microsoft.com/en-us/graph/api/chat-delete-targetedmessages?view=graph-rest-1.0) method to the [chat](https://learn.microsoft.com/en-us/graph/api/resources/chat?view=graph-rest-1.0) resource.", + "Target": "chat" + }, + { + "Id": "c01b88aa-0937-4d62-a7f3-91826312c21c", + "ApiChange": "NavigationPropertyPath", + "ChangedApiName": "Org.OData.Capabilities.V1.ExpandRestrictions", + "ChangeType": "Addition", + "Description": "The **targetedMessages** relationship can't be expanded using `$expand`. Use the [getAllTargetedMessages](https://learn.microsoft.com/en-us/graph/api/userteamwork-getalltargetedmessages?view=graph-rest-1.0) API to get targeted messages.", + "Target": "chats" + } + ], + "Id": "c01b88aa-0937-4d62-a7f3-91826312c21c", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-04T04:51:35.6454742Z", + "WorkloadArea": "Teamwork and communications", + "SubArea": "Messaging" + }, { "ChangeList": [ { @@ -263,6 +329,14 @@ "ChangeType": "Addition", "Description": "Added the [getAllTargetedMessages](https://learn.microsoft.com/graph/api/userteamwork-getalltargetedmessages?view=graph-rest-beta) method to the [userTeamwork](https://learn.microsoft.com/graph/api/resources/userteamwork?view=graph-rest-beta) resource.", "Target": "userTeamwork" + }, + { + "Id": "4e6379bf-f90c-46c4-a4f8-f5336fcd31f6", + "ApiChange": "Method", + "ChangedApiName": "chat", + "ChangeType": "Addition", + "Description": "Added the [Delete targetedChatMessage](https://learn.microsoft.com/en-us/graph/api/chat-delete-targetedmessages?view=graph-rest-beta) method to the [chat](https://learn.microsoft.com/en-us/graph/api/resources/chat?view=graph-rest-beta) resource.", + "Target": "chat" } ], "Id": "4e6379bf-f90c-46c4-a4f8-f5336fcd31f6", diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 9787a2c7866..42ce7ea040a 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -57,6 +57,13 @@ Added the **allowOnPremUpdateOfOnPremisesObjectIdentifierEnabled** property to t - Added the **isRegistrationRequired** and **capacity** properties to virtual events (for example, [virtualEvent](/graph/api/resources/virtualevent), [virtualEventTownhall](/graph/api/resources/virtualeventtownhall), and [virtualEventSession](/graph/api/resources/virtualeventsession)) to control registration requirements and expected attendance. - Added the [virtualEventTownhallRegistrationConfiguration](/graph/api/resources/virtualeventtownhallregistrationconfiguration) resource type and related methods to manage attendee registration for town halls. +### Teamwork and communications | Messaging + +Added the [targetedChatMessage](/graph/api/resources/targetedchatmessage) resource type and related methods for managing targeted messages in Microsoft Teams. Targeted messages are visible only to specified recipients within group chats and channels. + - Use the [getAllTargetedMessages](/graph/api/userteamwork-getalltargetedmessages) function to retrieve all targeted messages sent to a user across all group chats and channels. + - Use the [getAllRetainedTargetedMessages](/graph/api/userteamwork-getallretainedtargetedmessages) function to retrieve retained targeted messages that were deleted by the sender but preserved by retention policies. + - Use the [deleteTargetedMessage](/graph/api/userteamwork-deletetargetedmessage) action to delete a specific targeted message from a user's storage in a channel context. + ### Users - Added the `User.Create` permission as the least privileged permission to [create a user](/graph/api/user-post-users). From d15437cb48af3d54ef6ba33a52c2cc38bc29e22d Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Tue, 4 Aug 2026 15:01:15 -0600 Subject: [PATCH 014/189] Update generated files with build 230399 (#29397) Co-authored-by: Microsoft Graph DevX Tooling --- .../beta/api/mailbox-list-folders.md | 2 +- .../beta/api/plannerplan-list-historyitems.md | 4 ++ ...rity-ediscoveryholdpolicy-disablepolicy.md | 1 - ...urity-ediscoveryholdpolicy-enablepolicy.md | 1 - ...verifiedidprofile-from--csharp-snippets.md | 38 +++++++++++++++++ ...r-with-query-parameters-csharp-snippets.md | 2 +- ...pdate-verifiedidprofile-csharp-snippets.md | 41 +++++++++++++++++++ ...supdatesfindbycatalogid-csharp-snippets.md | 4 +- ...ate-verifiedidprofile-from--go-snippets.md | 24 ++++++++++- ...older-with-query-parameters-go-snippets.md | 2 +- .../update-verifiedidprofile-go-snippets.md | 26 +++++++++++- ...ndowsupdatesfindbycatalogid-go-snippets.md | 10 ++--- ...e-verifiedidprofile-from--java-snippets.md | 16 ++++++++ ...der-with-query-parameters-java-snippets.md | 2 +- .../update-verifiedidprofile-java-snippets.md | 18 ++++++++ ...owsupdatesfindbycatalogid-java-snippets.md | 4 +- ...fiedidprofile-from--javascript-snippets.md | 16 +++++++- ...th-query-parameters-javascript-snippets.md | 20 --------- ...e-verifiedidprofile-javascript-snippets.md | 22 ++++++++-- ...atesfindbycatalogid-javascript-snippets.md | 2 +- ...te-verifiedidprofile-from--php-snippets.md | 19 ++++++++- ...lder-with-query-parameters-php-snippets.md | 2 +- .../update-verifiedidprofile-php-snippets.md | 22 +++++++++- ...dowsupdatesfindbycatalogid-php-snippets.md | 10 ++--- ...fiedidprofile-from--powershell-snippets.md | 22 +++++++--- ...toryitem-datefilter-powershell-snippets.md | 11 +++++ ...e-verifiedidprofile-powershell-snippets.md | 24 ++++++++--- ...atesfindbycatalogid-powershell-snippets.md | 2 +- ...verifiedidprofile-from--python-snippets.md | 16 ++++++++ ...r-with-query-parameters-python-snippets.md | 2 +- ...pdate-verifiedidprofile-python-snippets.md | 19 +++++++++ ...supdatesfindbycatalogid-python-snippets.md | 8 ++-- ...spackagesuggestions-filterbycurrentuser.md | 8 ++++ ...leaccesspackage-list-resourcerolescopes.md | 4 ++ .../v1.0/api/emailnotificationssetting-get.md | 4 ++ .../api/emailnotificationssetting-update.md | 4 ++ api-reference/v1.0/api/endusersettings-get.md | 4 ++ .../v1.0/api/endusersettings-update.md | 4 ++ ...itygovernance-workflow-cancelprocessing.md | 4 ++ ...titygovernance-workflow-clearquarantine.md | 4 ++ ...governance-workflow-previewtaskfailures.md | 8 ++++ ...titygovernance-workflow-previewworkflow.md | 4 ++ .../v1.0/api/list-list-permissions.md | 33 ++++++++++++++- .../v1.0/api/list-post-permissions.md | 31 ++++++++++++++ .../v1.0/api/listitem-list-permissions.md | 33 ++++++++++++++- .../v1.0/api/listitem-post-permissions.md | 31 ++++++++++++++ .../v1.0/api/security-analyzedemail-get.md | 12 ++++++ .../api/security-analyzedemail-remediate.md | 4 ++ ...rity-auditcoreroot-list-auditlogqueries.md | 4 ++ ...rity-auditcoreroot-post-auditlogqueries.md | 4 ++ .../v1.0/api/security-auditlogquery-get.md | 4 ++ .../security-auditlogquery-list-records.md | 4 ++ ...y-collaborationroot-list-analyzedemails.md | 4 ++ .../api/virtualendpoint-list-serviceplans.md | 4 ++ .../v1.0/api/virtualeventpresenter-update.md | 1 - .../virtualeventregistration-list-sessions.md | 1 - ...egistrationconfiguration-list-questions.md | 1 - ...egistrationconfiguration-post-questions.md | 2 - ...virtualeventtownhall-getbyuseridandrole.md | 1 - .../api/virtualeventtownhall-getbyuserrole.md | 1 - .../v1.0/api/virtualeventtownhall-update.md | 1 - .../v1.0/api/virtualeventwebinar-update.md | 1 - ...entwebinarregistrationconfiguration-get.md | 1 - ...ssion-list-nav-property-csharp-snippets.md | 13 ++++++ ...n-listitem-nav-property-csharp-snippets.md | 13 ++++++ .../list-post-permissions-csharp-snippets.md | 32 +++++++++++++++ ...stitem-post-permissions-csharp-snippets.md | 32 +++++++++++++++ ...ermission-list-nav-property-go-snippets.md | 22 ++++++++++ ...ssion-listitem-nav-property-go-snippets.md | 22 ++++++++++ .../go/list-post-permissions-go-snippets.md | 36 ++++++++++++++++ .../listitem-post-permissions-go-snippets.md | 36 ++++++++++++++++ ...mission-list-nav-property-java-snippets.md | 14 +++++++ ...ion-listitem-nav-property-java-snippets.md | 14 +++++++ .../list-post-permissions-java-snippets.md | 24 +++++++++++ ...listitem-post-permissions-java-snippets.md | 24 +++++++++++ ...n-list-nav-property-javascript-snippets.md | 16 ++++++++ ...stitem-nav-property-javascript-snippets.md | 16 ++++++++ ...st-post-permissions-javascript-snippets.md | 26 ++++++++++++ ...em-post-permissions-javascript-snippets.md | 26 ++++++++++++ ...rmission-list-nav-property-php-snippets.md | 16 ++++++++ ...sion-listitem-nav-property-php-snippets.md | 16 ++++++++ .../php/list-post-permissions-php-snippets.md | 27 ++++++++++++ .../listitem-post-permissions-php-snippets.md | 27 ++++++++++++ ...ycurrentuser-all-v1-powershell-snippets.md | 11 +++++ ...rentuser-history-v1-powershell-snippets.md | 11 +++++ ...lyzedemailremediate-powershell-snippets.md | 29 +++++++++++++ ...auditlogquery-from--powershell-snippets.md | 39 ++++++++++++++++++ .../get-analyzedemail-powershell-snippets.md | 11 +++++ .../get-auditlogquery-powershell-snippets.md | 11 +++++ ...otificationssetting-powershell-snippets.md | 11 +++++ ...-endusersettings-v1-powershell-snippets.md | 11 +++++ ...lprocessing-success-powershell-snippets.md | 22 ++++++++++ ...ailures-failures-v1-powershell-snippets.md | 11 +++++ ...lures-nofailures-v1-powershell-snippets.md | 11 +++++ ...-previewworkflow-v1-powershell-snippets.md | 24 +++++++++++ .../list-analyzedemail-powershell-snippets.md | 11 +++++ .../list-auditlogquery-powershell-snippets.md | 11 +++++ ...list-auditlogrecord-powershell-snippets.md | 11 +++++ ...sourcerolescopes-v1-powershell-snippets.md | 11 +++++ ...n-list-nav-property-powershell-snippets.md | 11 +++++ ...stitem-nav-property-powershell-snippets.md | 11 +++++ ...st-post-permissions-powershell-snippets.md | 23 +++++++++++ .../list-serviceplans-powershell-snippets.md | 11 +++++ ...em-post-permissions-powershell-snippets.md | 23 +++++++++++ ...otificationssetting-powershell-snippets.md | 30 ++++++++++++++ ...-endusersettings-v1-powershell-snippets.md | 17 ++++++++ ...thisclearquarantine-powershell-snippets.md | 11 +++++ ...ssion-list-nav-property-python-snippets.md | 14 +++++++ ...n-listitem-nav-property-python-snippets.md | 14 +++++++ .../list-post-permissions-python-snippets.md | 28 +++++++++++++ ...stitem-post-permissions-python-snippets.md | 28 +++++++++++++ 111 files changed, 1477 insertions(+), 80 deletions(-) delete mode 100644 api-reference/beta/includes/snippets/javascript/list-mailboxfolder-with-query-parameters-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-plannerhistoryitem-datefilter-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/list-permission-list-nav-property-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/list-permission-listitem-nav-property-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/list-post-permissions-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/listitem-post-permissions-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/list-permission-list-nav-property-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/list-permission-listitem-nav-property-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/list-post-permissions-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/listitem-post-permissions-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/list-permission-list-nav-property-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/list-permission-listitem-nav-property-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/list-post-permissions-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/listitem-post-permissions-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/list-permission-list-nav-property-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/list-permission-listitem-nav-property-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/list-post-permissions-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/listitem-post-permissions-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/list-permission-list-nav-property-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/list-permission-listitem-nav-property-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/list-post-permissions-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/listitem-post-permissions-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/accesspackagesuggestions-filterbycurrentuser-all-v1-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/accesspackagesuggestions-filterbycurrentuser-history-v1-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/analyzedemailremediate-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/create-auditlogquery-from--powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/get-analyzedemail-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/get-auditlogquery-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/get-emailnotificationssetting-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/get-endusersettings-v1-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/lifecycleworkflows-workflow-cancelprocessing-success-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/lifecycleworkflows-workflow-previewtaskfailures-failures-v1-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/lifecycleworkflows-workflow-previewtaskfailures-nofailures-v1-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/lifecycleworkflows-workflow-previewworkflow-v1-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-analyzedemail-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-auditlogquery-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-auditlogrecord-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-availableaccesspackage-resourcerolescopes-v1-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-permission-list-nav-property-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-permission-listitem-nav-property-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-post-permissions-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-serviceplans-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/listitem-post-permissions-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/update-emailnotificationssetting-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/update-endusersettings-v1-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/workflowthisclearquarantine-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/list-permission-list-nav-property-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/list-permission-listitem-nav-property-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/list-post-permissions-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/listitem-post-permissions-python-snippets.md diff --git a/api-reference/beta/api/mailbox-list-folders.md b/api-reference/beta/api/mailbox-list-folders.md index dd0c923cc71..467a2108d0e 100644 --- a/api-reference/beta/api/mailbox-list-folders.md +++ b/api-reference/beta/api/mailbox-list-folders.md @@ -178,7 +178,7 @@ GET https://graph.microsoft.com/beta/admin/exchange/mailboxes/MBX:e0643f21@a7809 [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] # [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/list-mailboxfolder-with-query-parameters-javascript-snippets.md)] +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] # [PHP](#tab/php) diff --git a/api-reference/beta/api/plannerplan-list-historyitems.md b/api-reference/beta/api/plannerplan-list-historyitems.md index 80a1ff8b3ce..929d053c683 100644 --- a/api-reference/beta/api/plannerplan-list-historyitems.md +++ b/api-reference/beta/api/plannerplan-list-historyitems.md @@ -91,6 +91,10 @@ GET https://graph.microsoft.com/beta/planner/plans/nETqF5FS2LkCp935s-FIFm2QAFkHM [!INCLUDE [sample-code](../includes/snippets/php/list-plannerhistoryitem-datefilter-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/list-plannerhistoryitem-datefilter-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/list-plannerhistoryitem-datefilter-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/beta/api/security-ediscoveryholdpolicy-disablepolicy.md b/api-reference/beta/api/security-ediscoveryholdpolicy-disablepolicy.md index 902538fcc0a..227b675f4da 100644 --- a/api-reference/beta/api/security-ediscoveryholdpolicy-disablepolicy.md +++ b/api-reference/beta/api/security-ediscoveryholdpolicy-disablepolicy.md @@ -93,7 +93,6 @@ POST https://graph.microsoft.com/beta/security/cases/ediscoveryCases/c2940e86-57 --- - ### Response The following example shows the response. diff --git a/api-reference/beta/api/security-ediscoveryholdpolicy-enablepolicy.md b/api-reference/beta/api/security-ediscoveryholdpolicy-enablepolicy.md index ab6797f2bd8..a3fadf73cbf 100644 --- a/api-reference/beta/api/security-ediscoveryholdpolicy-enablepolicy.md +++ b/api-reference/beta/api/security-ediscoveryholdpolicy-enablepolicy.md @@ -93,7 +93,6 @@ POST https://graph.microsoft.com/beta/security/cases/ediscoveryCases/c2940e86-57 --- - ### Response The following example shows the response. diff --git a/api-reference/beta/includes/snippets/csharp/create-verifiedidprofile-from--csharp-snippets.md b/api-reference/beta/includes/snippets/csharp/create-verifiedidprofile-from--csharp-snippets.md index ef6b5918bd7..d90a191f223 100644 --- a/api-reference/beta/includes/snippets/csharp/create-verifiedidprofile-from--csharp-snippets.md +++ b/api-reference/beta/includes/snippets/csharp/create-verifiedidprofile-from--csharp-snippets.md @@ -8,6 +8,7 @@ description: "Automatically generated file. DO NOT MODIFY" // Dependencies using Microsoft.Graph.Beta.Models; +using Microsoft.Kiota.Abstractions.Serialization; var requestBody = new VerifiedIdProfile { @@ -35,6 +36,15 @@ var requestBody = new VerifiedIdProfile VerifiedIdClaim = "vc.credentialSubject.lastName", }, }, + AdditionalData = new Dictionary + { + { + "methodType" , "tenantCustomCredential" + }, + { + "manifestUrl" , "https://verifiedid.contoso.com/manifest" + }, + }, }, FaceCheckConfiguration = new FaceCheckConfiguration { @@ -49,6 +59,34 @@ var requestBody = new VerifiedIdProfile Purpose = VerifiedIdUsageConfigurationPurpose.Recovery, }, }, + AdditionalData = new Dictionary + { + { + "mobileDriversLicenseConfiguration" , new UntypedObject(new Dictionary + { + { + "acceptedRegions", new UntypedArray(new List + { + new UntypedString("region-code"), + }) + }, + { + "documentStandard", new UntypedString("document-standard") + }, + }) + }, + { + "selfServiceIssuance" , new UntypedObject(new Dictionary + { + { + "isEnabled", new UntypedBoolean(true) + }, + { + "issuanceUrl", new UntypedString("https://verifiedid.contoso.com/issue") + }, + }) + }, + }, }; // To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp diff --git a/api-reference/beta/includes/snippets/csharp/list-mailboxfolder-with-query-parameters-csharp-snippets.md b/api-reference/beta/includes/snippets/csharp/list-mailboxfolder-with-query-parameters-csharp-snippets.md index c418ec9d844..90bfcf8af67 100644 --- a/api-reference/beta/includes/snippets/csharp/list-mailboxfolder-with-query-parameters-csharp-snippets.md +++ b/api-reference/beta/includes/snippets/csharp/list-mailboxfolder-with-query-parameters-csharp-snippets.md @@ -10,7 +10,7 @@ description: "Automatically generated file. DO NOT MODIFY" var result = await graphClient.Admin.Exchange.Mailboxes["{mailbox-id}"].Folders.GetAsync((requestConfiguration) => { requestConfiguration.QueryParameters.Filter = "type eq 'IPF.Appointment'"; - requestConfiguration.QueryParameters.Select = new string []{ "displayName","type" }; + requestConfiguration.QueryParameters.Select = new string []{ "displayName","parentMailboxUrl","type","wellKnownName" }; requestConfiguration.QueryParameters.Top = 5; }); diff --git a/api-reference/beta/includes/snippets/csharp/update-verifiedidprofile-csharp-snippets.md b/api-reference/beta/includes/snippets/csharp/update-verifiedidprofile-csharp-snippets.md index 9280bf30e1d..24047698949 100644 --- a/api-reference/beta/includes/snippets/csharp/update-verifiedidprofile-csharp-snippets.md +++ b/api-reference/beta/includes/snippets/csharp/update-verifiedidprofile-csharp-snippets.md @@ -8,9 +8,22 @@ description: "Automatically generated file. DO NOT MODIFY" // Dependencies using Microsoft.Graph.Beta.Models; +using Microsoft.Kiota.Abstractions.Serialization; var requestBody = new VerifiedIdProfile { + VerifiedIdProfileConfiguration = new VerifiedIdProfileConfiguration + { + AdditionalData = new Dictionary + { + { + "methodType" , "tenantCustomCredential" + }, + { + "manifestUrl" , "https://verifiedid.contoso.com/manifest" + }, + }, + }, VerifiedIdUsageConfigurations = new List { new VerifiedIdUsageConfiguration @@ -19,6 +32,34 @@ var requestBody = new VerifiedIdProfile Purpose = VerifiedIdUsageConfigurationPurpose.Recovery, }, }, + AdditionalData = new Dictionary + { + { + "mobileDriversLicenseConfiguration" , new UntypedObject(new Dictionary + { + { + "acceptedRegions", new UntypedArray(new List + { + new UntypedString("region-code"), + }) + }, + { + "documentStandard", new UntypedString("document-standard") + }, + }) + }, + { + "selfServiceIssuance" , new UntypedObject(new Dictionary + { + { + "isEnabled", new UntypedBoolean(true) + }, + { + "issuanceUrl", new UntypedString("https://verifiedid.contoso.com/issue") + }, + }) + }, + }, }; // To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp diff --git a/api-reference/beta/includes/snippets/csharp/windowsupdatesfindbycatalogid-csharp-snippets.md b/api-reference/beta/includes/snippets/csharp/windowsupdatesfindbycatalogid-csharp-snippets.md index 226f2e88dae..99bc2eb5057 100644 --- a/api-reference/beta/includes/snippets/csharp/windowsupdatesfindbycatalogid-csharp-snippets.md +++ b/api-reference/beta/includes/snippets/csharp/windowsupdatesfindbycatalogid-csharp-snippets.md @@ -7,9 +7,9 @@ description: "Automatically generated file. DO NOT MODIFY" // Code snippets are only available for the latest version. Current version is 5.x // To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp -var result = await graphClient.Admin.Windows.Updates.Products.MicrosoftGraphWindowsUpdatesFindByCatalogIdWithCatalogID("{catalogID}").GetAsFindByCatalogIdWithCatalogIDGetResponseAsync((requestConfiguration) => +var result = await graphClient.Admin.Windows.Updates.Products.MicrosoftGraphWindowsUpdatesFindByKbNumberWithKbNumber(1).GetAsFindByKbNumberWithKbNumberGetResponseAsync((requestConfiguration) => { - requestConfiguration.QueryParameters.Expand = new string []{ "revisions($expand=catalogEntry,knowledgeBaseArticle)","knownIssues($expand=originatingKnowledgeBaseArticle,resolvingKnowledgeBaseArticle)" }; + requestConfiguration.QueryParameters.Expand = new string []{ "revisions($expand=catalogEntry,knowledgeBaseArticle)","knownIssues" }; }); diff --git a/api-reference/beta/includes/snippets/go/create-verifiedidprofile-from--go-snippets.md b/api-reference/beta/includes/snippets/go/create-verifiedidprofile-from--go-snippets.md index bd746312083..a30a1ca2482 100644 --- a/api-reference/beta/includes/snippets/go/create-verifiedidprofile-from--go-snippets.md +++ b/api-reference/beta/includes/snippets/go/create-verifiedidprofile-from--go-snippets.md @@ -53,6 +53,11 @@ claimBindings := []graphmodels.ClaimBindingable { claimBinding1, } verifiedIdProfileConfiguration.SetClaimBindings(claimBindings) +additionalData := map[string]interface{}{ + "methodType" : "tenantCustomCredential", + "manifestUrl" : "https://verifiedid.contoso.com/manifest", +} +verifiedIdProfileConfiguration.SetAdditionalData(additionalData) requestBody.SetVerifiedIdProfileConfiguration(verifiedIdProfileConfiguration) faceCheckConfiguration := graphmodels.NewFaceCheckConfiguration() isEnabled := true @@ -65,13 +70,30 @@ requestBody.SetFaceCheckConfiguration(faceCheckConfiguration) verifiedIdUsageConfiguration := graphmodels.NewVerifiedIdUsageConfiguration() isEnabledForTestOnly := true verifiedIdUsageConfiguration.SetIsEnabledForTestOnly(&isEnabledForTestOnly) -purpose := graphmodels.RECOVERY_VERIFIEDIDUSAGECONFIGURATIONPURPOSE +purpose := graphmodels.VERIFICATION_VERIFIEDIDUSAGECONFIGURATIONPURPOSE verifiedIdUsageConfiguration.SetPurpose(&purpose) verifiedIdUsageConfigurations := []graphmodels.VerifiedIdUsageConfigurationable { verifiedIdUsageConfiguration, } requestBody.SetVerifiedIdUsageConfigurations(verifiedIdUsageConfigurations) +additionalData := map[string]interface{}{ +mobileDriversLicenseConfiguration := graph.New() + acceptedRegions := []string { + "region-code", + } + mobileDriversLicenseConfiguration.SetAcceptedRegions(acceptedRegions) +documentStandard := "document-standard" +mobileDriversLicenseConfiguration.SetDocumentStandard(&documentStandard) + requestBody.SetMobileDriversLicenseConfiguration(mobileDriversLicenseConfiguration) +selfServiceIssuance := graph.New() + isEnabled := true +selfServiceIssuance.SetIsEnabled(&isEnabled) +issuanceUrl := "https://verifiedid.contoso.com/issue" +selfServiceIssuance.SetIssuanceUrl(&issuanceUrl) + requestBody.SetSelfServiceIssuance(selfServiceIssuance) +} +requestBody.SetAdditionalData(additionalData) // To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go profiles, err := graphClient.Identity().VerifiedId().Profiles().Post(context.Background(), requestBody, nil) diff --git a/api-reference/beta/includes/snippets/go/list-mailboxfolder-with-query-parameters-go-snippets.md b/api-reference/beta/includes/snippets/go/list-mailboxfolder-with-query-parameters-go-snippets.md index 82092a85248..17287d2630f 100644 --- a/api-reference/beta/includes/snippets/go/list-mailboxfolder-with-query-parameters-go-snippets.md +++ b/api-reference/beta/includes/snippets/go/list-mailboxfolder-with-query-parameters-go-snippets.md @@ -21,7 +21,7 @@ requestTop := int32(5) requestParameters := &graphadmin.ExchangeMailboxesItemFoldersRequestBuilderGetQueryParameters{ Filter: &requestFilter, - Select: [] string {"displayName","type"}, + Select: [] string {"displayName","parentMailboxUrl","type","wellKnownName"}, Top: &requestTop, } configuration := &graphadmin.ExchangeMailboxesItemFoldersRequestBuilderGetRequestConfiguration{ diff --git a/api-reference/beta/includes/snippets/go/update-verifiedidprofile-go-snippets.md b/api-reference/beta/includes/snippets/go/update-verifiedidprofile-go-snippets.md index f96c225ce48..bb850f48eca 100644 --- a/api-reference/beta/includes/snippets/go/update-verifiedidprofile-go-snippets.md +++ b/api-reference/beta/includes/snippets/go/update-verifiedidprofile-go-snippets.md @@ -16,18 +16,42 @@ import ( ) requestBody := graphmodels.NewVerifiedIdProfile() +verifiedIdProfileConfiguration := graphmodels.NewVerifiedIdProfileConfiguration() +additionalData := map[string]interface{}{ + "methodType" : "tenantCustomCredential", + "manifestUrl" : "https://verifiedid.contoso.com/manifest", +} +verifiedIdProfileConfiguration.SetAdditionalData(additionalData) +requestBody.SetVerifiedIdProfileConfiguration(verifiedIdProfileConfiguration) verifiedIdUsageConfiguration := graphmodels.NewVerifiedIdUsageConfiguration() isEnabledForTestOnly := false verifiedIdUsageConfiguration.SetIsEnabledForTestOnly(&isEnabledForTestOnly) -purpose := graphmodels.RECOVERY_VERIFIEDIDUSAGECONFIGURATIONPURPOSE +purpose := graphmodels.VERIFICATION_VERIFIEDIDUSAGECONFIGURATIONPURPOSE verifiedIdUsageConfiguration.SetPurpose(&purpose) verifiedIdUsageConfigurations := []graphmodels.VerifiedIdUsageConfigurationable { verifiedIdUsageConfiguration, } requestBody.SetVerifiedIdUsageConfigurations(verifiedIdUsageConfigurations) +additionalData := map[string]interface{}{ +mobileDriversLicenseConfiguration := graph.New() + acceptedRegions := []string { + "region-code", + } + mobileDriversLicenseConfiguration.SetAcceptedRegions(acceptedRegions) +documentStandard := "document-standard" +mobileDriversLicenseConfiguration.SetDocumentStandard(&documentStandard) + requestBody.SetMobileDriversLicenseConfiguration(mobileDriversLicenseConfiguration) +selfServiceIssuance := graph.New() + isEnabled := true +selfServiceIssuance.SetIsEnabled(&isEnabled) +issuanceUrl := "https://verifiedid.contoso.com/issue" +selfServiceIssuance.SetIssuanceUrl(&issuanceUrl) + requestBody.SetSelfServiceIssuance(selfServiceIssuance) +} +requestBody.SetAdditionalData(additionalData) // To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go profiles, err := graphClient.Identity().VerifiedId().Profiles().ByVerifiedIdProfileId("verifiedIdProfile-id").Patch(context.Background(), requestBody, nil) diff --git a/api-reference/beta/includes/snippets/go/windowsupdatesfindbycatalogid-go-snippets.md b/api-reference/beta/includes/snippets/go/windowsupdatesfindbycatalogid-go-snippets.md index 2ecac26fe9e..a6b6ace49bb 100644 --- a/api-reference/beta/includes/snippets/go/windowsupdatesfindbycatalogid-go-snippets.md +++ b/api-reference/beta/includes/snippets/go/windowsupdatesfindbycatalogid-go-snippets.md @@ -15,16 +15,16 @@ import ( //other-imports ) -requestParameters := &graphadmin.WindowsUpdatesProductsfindByCatalogIdWithCatalogIDRequestBuilderGetQueryParameters{ - Expand: [] string {"revisions($expand=catalogEntry,knowledgeBaseArticle)","knownIssues($expand=originatingKnowledgeBaseArticle,resolvingKnowledgeBaseArticle)"}, +requestParameters := &graphadmin.WindowsUpdatesProductsfindByKbNumberRequestBuilderGetQueryParameters{ + Expand: [] string {"revisions($expand=catalogEntry,knowledgeBaseArticle)","knownIssues"}, } -configuration := &graphadmin.WindowsUpdatesProductsfindByCatalogIdWithCatalogIDRequestBuilderGetRequestConfiguration{ +configuration := &graphadmin.WindowsUpdatesProductsfindByKbNumberRequestBuilderGetRequestConfiguration{ QueryParameters: requestParameters, } // To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go -catalogID := "{catalogID}" -microsoftGraphWindowsUpdatesFindByCatalogId, err := graphClient.Admin().Windows().Updates().Products().MicrosoftGraphWindowsUpdatesFindByCatalogIdWithCatalogID(&catalogID).GetAsFindByCatalogIdWithCatalogIDGetResponse(context.Background(), configuration) +kbNumber := int32(1) +microsoftGraphWindowsUpdatesFindByKbNumber, err := graphClient.Admin().Windows().Updates().Products().MicrosoftGraphWindowsUpdatesFindByKbNumberWithKbNumber(&kbNumber).GetAsFindByKbNumberWithKbNumberGetResponse(context.Background(), configuration) ``` \ No newline at end of file diff --git a/api-reference/beta/includes/snippets/java/create-verifiedidprofile-from--java-snippets.md b/api-reference/beta/includes/snippets/java/create-verifiedidprofile-from--java-snippets.md index fcbeb03aa58..76bb610ffb5 100644 --- a/api-reference/beta/includes/snippets/java/create-verifiedidprofile-from--java-snippets.md +++ b/api-reference/beta/includes/snippets/java/create-verifiedidprofile-from--java-snippets.md @@ -29,6 +29,10 @@ claimBinding1.setSourceAttribute("Last name"); claimBinding1.setVerifiedIdClaim("vc.credentialSubject.lastName"); claimBindings.add(claimBinding1); verifiedIdProfileConfiguration.setClaimBindings(claimBindings); +HashMap additionalData = new HashMap(); +additionalData.put("methodType", "tenantCustomCredential"); +additionalData.put("manifestUrl", "https://verifiedid.contoso.com/manifest"); +verifiedIdProfileConfiguration.setAdditionalData(additionalData); verifiedIdProfile.setVerifiedIdProfileConfiguration(verifiedIdProfileConfiguration); FaceCheckConfiguration faceCheckConfiguration = new FaceCheckConfiguration(); faceCheckConfiguration.setIsEnabled(true); @@ -40,6 +44,18 @@ verifiedIdUsageConfiguration.setIsEnabledForTestOnly(true); verifiedIdUsageConfiguration.setPurpose(VerifiedIdUsageConfigurationPurpose.Recovery); verifiedIdUsageConfigurations.add(verifiedIdUsageConfiguration); verifiedIdProfile.setVerifiedIdUsageConfigurations(verifiedIdUsageConfigurations); +HashMap additionalData1 = new HashMap(); + mobileDriversLicenseConfiguration = new (); +LinkedList acceptedRegions = new LinkedList(); +acceptedRegions.add("region-code"); +mobileDriversLicenseConfiguration.setAcceptedRegions(acceptedRegions); +mobileDriversLicenseConfiguration.setDocumentStandard("document-standard"); +additionalData1.put("mobileDriversLicenseConfiguration", mobileDriversLicenseConfiguration); + selfServiceIssuance = new (); +selfServiceIssuance.setIsEnabled(true); +selfServiceIssuance.setIssuanceUrl("https://verifiedid.contoso.com/issue"); +additionalData1.put("selfServiceIssuance", selfServiceIssuance); +verifiedIdProfile.setAdditionalData(additionalData1); VerifiedIdProfile result = graphClient.identity().verifiedId().profiles().post(verifiedIdProfile); diff --git a/api-reference/beta/includes/snippets/java/list-mailboxfolder-with-query-parameters-java-snippets.md b/api-reference/beta/includes/snippets/java/list-mailboxfolder-with-query-parameters-java-snippets.md index f9e5d3cb61d..5e1936d22a8 100644 --- a/api-reference/beta/includes/snippets/java/list-mailboxfolder-with-query-parameters-java-snippets.md +++ b/api-reference/beta/includes/snippets/java/list-mailboxfolder-with-query-parameters-java-snippets.md @@ -10,7 +10,7 @@ GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); MailboxFolderCollectionResponse result = graphClient.admin().exchange().mailboxes().byMailboxId("{mailbox-id}").folders().get(requestConfiguration -> { requestConfiguration.queryParameters.filter = "type eq 'IPF.Appointment'"; - requestConfiguration.queryParameters.select = new String []{"displayName", "type"}; + requestConfiguration.queryParameters.select = new String []{"displayName", "parentMailboxUrl", "type", "wellKnownName"}; requestConfiguration.queryParameters.top = 5; }); diff --git a/api-reference/beta/includes/snippets/java/update-verifiedidprofile-java-snippets.md b/api-reference/beta/includes/snippets/java/update-verifiedidprofile-java-snippets.md index 0f7d5fe3727..7634412ec50 100644 --- a/api-reference/beta/includes/snippets/java/update-verifiedidprofile-java-snippets.md +++ b/api-reference/beta/includes/snippets/java/update-verifiedidprofile-java-snippets.md @@ -9,12 +9,30 @@ description: "Automatically generated file. DO NOT MODIFY" GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); VerifiedIdProfile verifiedIdProfile = new VerifiedIdProfile(); +VerifiedIdProfileConfiguration verifiedIdProfileConfiguration = new VerifiedIdProfileConfiguration(); +HashMap additionalData = new HashMap(); +additionalData.put("methodType", "tenantCustomCredential"); +additionalData.put("manifestUrl", "https://verifiedid.contoso.com/manifest"); +verifiedIdProfileConfiguration.setAdditionalData(additionalData); +verifiedIdProfile.setVerifiedIdProfileConfiguration(verifiedIdProfileConfiguration); LinkedList verifiedIdUsageConfigurations = new LinkedList(); VerifiedIdUsageConfiguration verifiedIdUsageConfiguration = new VerifiedIdUsageConfiguration(); verifiedIdUsageConfiguration.setIsEnabledForTestOnly(false); verifiedIdUsageConfiguration.setPurpose(VerifiedIdUsageConfigurationPurpose.Recovery); verifiedIdUsageConfigurations.add(verifiedIdUsageConfiguration); verifiedIdProfile.setVerifiedIdUsageConfigurations(verifiedIdUsageConfigurations); +HashMap additionalData1 = new HashMap(); + mobileDriversLicenseConfiguration = new (); +LinkedList acceptedRegions = new LinkedList(); +acceptedRegions.add("region-code"); +mobileDriversLicenseConfiguration.setAcceptedRegions(acceptedRegions); +mobileDriversLicenseConfiguration.setDocumentStandard("document-standard"); +additionalData1.put("mobileDriversLicenseConfiguration", mobileDriversLicenseConfiguration); + selfServiceIssuance = new (); +selfServiceIssuance.setIsEnabled(true); +selfServiceIssuance.setIssuanceUrl("https://verifiedid.contoso.com/issue"); +additionalData1.put("selfServiceIssuance", selfServiceIssuance); +verifiedIdProfile.setAdditionalData(additionalData1); VerifiedIdProfile result = graphClient.identity().verifiedId().profiles().byVerifiedIdProfileId("{verifiedIdProfile-id}").patch(verifiedIdProfile); diff --git a/api-reference/beta/includes/snippets/java/windowsupdatesfindbycatalogid-java-snippets.md b/api-reference/beta/includes/snippets/java/windowsupdatesfindbycatalogid-java-snippets.md index 1c9fd863d7e..e03a8c16c45 100644 --- a/api-reference/beta/includes/snippets/java/windowsupdatesfindbycatalogid-java-snippets.md +++ b/api-reference/beta/includes/snippets/java/windowsupdatesfindbycatalogid-java-snippets.md @@ -8,8 +8,8 @@ description: "Automatically generated file. DO NOT MODIFY" GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); -var result = graphClient.admin().windows().updates().products().microsoftGraphWindowsUpdatesFindByCatalogIdWithCatalogID("{catalogID}").get(requestConfiguration -> { - requestConfiguration.queryParameters.expand = new String []{"revisions($expand=catalogEntry,knowledgeBaseArticle)", "knownIssues($expand=originatingKnowledgeBaseArticle,resolvingKnowledgeBaseArticle)"}; +var result = graphClient.admin().windows().updates().products().microsoftGraphWindowsUpdatesFindByKbNumberWithKbNumber(1).get(requestConfiguration -> { + requestConfiguration.queryParameters.expand = new String []{"revisions($expand=catalogEntry,knowledgeBaseArticle)", "knownIssues"}; }); diff --git a/api-reference/beta/includes/snippets/javascript/create-verifiedidprofile-from--javascript-snippets.md b/api-reference/beta/includes/snippets/javascript/create-verifiedidprofile-from--javascript-snippets.md index 6ca16091215..333db0d1193 100644 --- a/api-reference/beta/includes/snippets/javascript/create-verifiedidprofile-from--javascript-snippets.md +++ b/api-reference/beta/includes/snippets/javascript/create-verifiedidprofile-from--javascript-snippets.md @@ -18,7 +18,9 @@ const verifiedIdProfile = { verifierDid: 'did:web:eu.did-dev.contoso.io', priority: 0, verifiedIdProfileConfiguration: { + methodType: 'tenantCustomCredential', type: 'verifiedIdentity', + manifestUrl: 'https://verifiedid.contoso.com/manifest', acceptedIssuer: 'did:web:eu.did-dev.contoso.io', claimBindingSource: 'directory', claimBindings: [ @@ -36,12 +38,22 @@ const verifiedIdProfile = { isEnabled: true, sourcePhotoClaimName: 'portrait' }, + mobileDriversLicenseConfiguration: { + acceptedRegions: [ + 'region-code' + ], + documentStandard: 'document-standard' + }, verifiedIdUsageConfigurations: [ { isEnabledForTestOnly: true, - purpose: 'recovery' + purpose: 'verification' } - ] + ], + selfServiceIssuance: { + isEnabled: true, + issuanceUrl: 'https://verifiedid.contoso.com/issue' + } }; await client.api('/identity/verifiedId/profiles') diff --git a/api-reference/beta/includes/snippets/javascript/list-mailboxfolder-with-query-parameters-javascript-snippets.md b/api-reference/beta/includes/snippets/javascript/list-mailboxfolder-with-query-parameters-javascript-snippets.md deleted file mode 100644 index a222bedf04f..00000000000 --- a/api-reference/beta/includes/snippets/javascript/list-mailboxfolder-with-query-parameters-javascript-snippets.md +++ /dev/null @@ -1,20 +0,0 @@ ---- -description: "Automatically generated file. DO NOT MODIFY" ---- - -```javascript - -const options = { - authProvider, -}; - -const client = Client.init(options); - -let folders = await client.api('/admin/exchange/mailboxes/MBX:e0643f21@a7809c93/folders') - .version('beta') - .filter('type eq \'IPF.Appointment\'') - .select('displayName,type') - .top(5) - .get(); - -``` \ No newline at end of file diff --git a/api-reference/beta/includes/snippets/javascript/update-verifiedidprofile-javascript-snippets.md b/api-reference/beta/includes/snippets/javascript/update-verifiedidprofile-javascript-snippets.md index adc3c793f75..267fdbc53e0 100644 --- a/api-reference/beta/includes/snippets/javascript/update-verifiedidprofile-javascript-snippets.md +++ b/api-reference/beta/includes/snippets/javascript/update-verifiedidprofile-javascript-snippets.md @@ -11,11 +11,25 @@ const options = { const client = Client.init(options); const verifiedIdProfile = { + verifiedIdProfileConfiguration: { + methodType: 'tenantCustomCredential', + manifestUrl: 'https://verifiedid.contoso.com/manifest' + }, + mobileDriversLicenseConfiguration: { + acceptedRegions: [ + 'region-code' + ], + documentStandard: 'document-standard' + }, + selfServiceIssuance: { + isEnabled: true, + issuanceUrl: 'https://verifiedid.contoso.com/issue' + }, verifiedIdUsageConfigurations: [ - { - isEnabledForTestOnly: false, - purpose: 'recovery' - } + { + isEnabledForTestOnly: false, + purpose: 'verification' + } ] }; diff --git a/api-reference/beta/includes/snippets/javascript/windowsupdatesfindbycatalogid-javascript-snippets.md b/api-reference/beta/includes/snippets/javascript/windowsupdatesfindbycatalogid-javascript-snippets.md index eaf2065fed1..33cf351a262 100644 --- a/api-reference/beta/includes/snippets/javascript/windowsupdatesfindbycatalogid-javascript-snippets.md +++ b/api-reference/beta/includes/snippets/javascript/windowsupdatesfindbycatalogid-javascript-snippets.md @@ -10,7 +10,7 @@ const options = { const client = Client.init(options); -let findByCatalogId = await client.api('/admin/windows/updates/products/FindByCatalogId(catalogID='10cb1ba292c5586e22c9991be3f12fbd39f2ebf231cb5d201c67f42fbaccc567')?expand=revisions($expand=catalogEntry,knowledgeBaseArticle),knownIssues($expand=originatingKnowledgeBaseArticle,resolvingKnowledgeBaseArticle)') +let findByKbNumber = await client.api('/admin/windows/updates/products/FindByKbNumber(kbNumber=5029332)?expand=revisions($expand=catalogEntry,knowledgeBaseArticle),knownIssues') .version('beta') .get(); diff --git a/api-reference/beta/includes/snippets/php/create-verifiedidprofile-from--php-snippets.md b/api-reference/beta/includes/snippets/php/create-verifiedidprofile-from--php-snippets.md index 3cd587148aa..fa8001c5ab1 100644 --- a/api-reference/beta/includes/snippets/php/create-verifiedidprofile-from--php-snippets.md +++ b/api-reference/beta/includes/snippets/php/create-verifiedidprofile-from--php-snippets.md @@ -39,6 +39,11 @@ $claimBindingsClaimBinding2->setVerifiedIdClaim('vc.credentialSubject.lastName') $claimBindingsArray []= $claimBindingsClaimBinding2; $verifiedIdProfileConfiguration->setClaimBindings($claimBindingsArray); +$additionalData = [ +'methodType' => 'tenantCustomCredential', +'manifestUrl' => 'https://verifiedid.contoso.com/manifest', +]; +$verifiedIdProfileConfiguration->setAdditionalData($additionalData); $requestBody->setVerifiedIdProfileConfiguration($verifiedIdProfileConfiguration); $faceCheckConfiguration = new FaceCheckConfiguration(); $faceCheckConfiguration->setIsEnabled(true); @@ -46,10 +51,22 @@ $faceCheckConfiguration->setSourcePhotoClaimName('portrait'); $requestBody->setFaceCheckConfiguration($faceCheckConfiguration); $verifiedIdUsageConfigurationsVerifiedIdUsageConfiguration1 = new VerifiedIdUsageConfiguration(); $verifiedIdUsageConfigurationsVerifiedIdUsageConfiguration1->setIsEnabledForTestOnly(true); -$verifiedIdUsageConfigurationsVerifiedIdUsageConfiguration1->setPurpose(new VerifiedIdUsageConfigurationPurpose('recovery')); +$verifiedIdUsageConfigurationsVerifiedIdUsageConfiguration1->setPurpose(new VerifiedIdUsageConfigurationPurpose('verification')); $verifiedIdUsageConfigurationsArray []= $verifiedIdUsageConfigurationsVerifiedIdUsageConfiguration1; $requestBody->setVerifiedIdUsageConfigurations($verifiedIdUsageConfigurationsArray); +$additionalData = [ +'mobileDriversLicenseConfiguration' => [ +'acceptedRegions' => [ +'region-code', ], +'documentStandard' => 'document-standard', +], +'selfServiceIssuance' => [ +'isEnabled' => true, +'issuanceUrl' => 'https://verifiedid.contoso.com/issue', +], +]; +$requestBody->setAdditionalData($additionalData); $result = $graphServiceClient->identity()->verifiedId()->profiles()->post($requestBody)->wait(); diff --git a/api-reference/beta/includes/snippets/php/list-mailboxfolder-with-query-parameters-php-snippets.md b/api-reference/beta/includes/snippets/php/list-mailboxfolder-with-query-parameters-php-snippets.md index 33bc7eaafb7..993f2139305 100644 --- a/api-reference/beta/includes/snippets/php/list-mailboxfolder-with-query-parameters-php-snippets.md +++ b/api-reference/beta/includes/snippets/php/list-mailboxfolder-with-query-parameters-php-snippets.md @@ -14,7 +14,7 @@ $graphServiceClient = new GraphServiceClient($tokenRequestContext, $scopes); $requestConfiguration = new FoldersRequestBuilderGetRequestConfiguration(); $queryParameters = FoldersRequestBuilderGetRequestConfiguration::createQueryParameters(); $queryParameters->filter = "type eq 'IPF.Appointment'"; -$queryParameters->select = ["displayName","type"]; +$queryParameters->select = ["displayName","parentMailboxUrl","type","wellKnownName"]; $queryParameters->top = 5; $requestConfiguration->queryParameters = $queryParameters; diff --git a/api-reference/beta/includes/snippets/php/update-verifiedidprofile-php-snippets.md b/api-reference/beta/includes/snippets/php/update-verifiedidprofile-php-snippets.md index b38212bb7cc..00ef04831f1 100644 --- a/api-reference/beta/includes/snippets/php/update-verifiedidprofile-php-snippets.md +++ b/api-reference/beta/includes/snippets/php/update-verifiedidprofile-php-snippets.md @@ -7,6 +7,7 @@ description: "Automatically generated file. DO NOT MODIFY" 'tenantCustomCredential', + 'manifestUrl' => 'https://verifiedid.contoso.com/manifest', +]; +$verifiedIdProfileConfiguration->setAdditionalData($additionalData); +$requestBody->setVerifiedIdProfileConfiguration($verifiedIdProfileConfiguration); $verifiedIdUsageConfigurationsVerifiedIdUsageConfiguration1 = new VerifiedIdUsageConfiguration(); $verifiedIdUsageConfigurationsVerifiedIdUsageConfiguration1->setIsEnabledForTestOnly(false); -$verifiedIdUsageConfigurationsVerifiedIdUsageConfiguration1->setPurpose(new VerifiedIdUsageConfigurationPurpose('recovery')); +$verifiedIdUsageConfigurationsVerifiedIdUsageConfiguration1->setPurpose(new VerifiedIdUsageConfigurationPurpose('verification')); $verifiedIdUsageConfigurationsArray []= $verifiedIdUsageConfigurationsVerifiedIdUsageConfiguration1; $requestBody->setVerifiedIdUsageConfigurations($verifiedIdUsageConfigurationsArray); +$additionalData = [ +'mobileDriversLicenseConfiguration' => [ + 'acceptedRegions' => [ +'region-code', ], + 'documentStandard' => 'document-standard', +], +'selfServiceIssuance' => [ + 'isEnabled' => true, + 'issuanceUrl' => 'https://verifiedid.contoso.com/issue', +], +]; +$requestBody->setAdditionalData($additionalData); $result = $graphServiceClient->identity()->verifiedId()->profiles()->byVerifiedIdProfileId('verifiedIdProfile-id')->patch($requestBody)->wait(); diff --git a/api-reference/beta/includes/snippets/php/windowsupdatesfindbycatalogid-php-snippets.md b/api-reference/beta/includes/snippets/php/windowsupdatesfindbycatalogid-php-snippets.md index 7ab06126fbb..b1705fafef6 100644 --- a/api-reference/beta/includes/snippets/php/windowsupdatesfindbycatalogid-php-snippets.md +++ b/api-reference/beta/includes/snippets/php/windowsupdatesfindbycatalogid-php-snippets.md @@ -6,17 +6,17 @@ description: "Automatically generated file. DO NOT MODIFY" expand = ["revisions(\$expand=catalogEntry,knowledgeBaseArticle)","knownIssues(\$expand=originatingKnowledgeBaseArticle,resolvingKnowledgeBaseArticle)"]; +$requestConfiguration = new MicrosoftFindByKbNumberWithKbNumberRequestBuilderGetRequestConfiguration(); +$queryParameters = MicrosoftFindByKbNumberWithKbNumberRequestBuilderGetRequestConfiguration::createQueryParameters(); +$queryParameters->expand = ["revisions(\$expand=catalogEntry,knowledgeBaseArticle)","knownIssues"]; $requestConfiguration->queryParameters = $queryParameters; -$result = $graphServiceClient->admin()->windows()->updates()->products()->microsoftGraphWindowsUpdatesFindByCatalogIdWithCatalogID('{catalogID}', )->get($requestConfiguration)->wait(); +$result = $graphServiceClient->admin()->windows()->updates()->products()->microsoftGraphWindowsUpdatesFindByKbNumberWithKbNumber(1)->get($requestConfiguration)->wait(); ``` \ No newline at end of file diff --git a/api-reference/beta/includes/snippets/powershell/create-verifiedidprofile-from--powershell-snippets.md b/api-reference/beta/includes/snippets/powershell/create-verifiedidprofile-from--powershell-snippets.md index 599e8837465..103e258f707 100644 --- a/api-reference/beta/includes/snippets/powershell/create-verifiedidprofile-from--powershell-snippets.md +++ b/api-reference/beta/includes/snippets/powershell/create-verifiedidprofile-from--powershell-snippets.md @@ -14,7 +14,9 @@ $params = @{ verifierDid = "did:web:eu.did-dev.contoso.io" priority = 0 verifiedIdProfileConfiguration = @{ + methodType = "tenantCustomCredential" type = "verifiedIdentity" + manifestUrl = "https://verifiedid.contoso.com/manifest" acceptedIssuer = "did:web:eu.did-dev.contoso.io" claimBindingSource = "directory" claimBindings = @( @@ -32,12 +34,22 @@ $params = @{ isEnabled = $true sourcePhotoClaimName = "portrait" } - verifiedIdUsageConfigurations = @( - @{ - isEnabledForTestOnly = $true - purpose = "recovery" - } + mobileDriversLicenseConfiguration = @{ + acceptedRegions = @( + "region-code" ) + documentStandard = "document-standard" +} +verifiedIdUsageConfigurations = @( + @{ + isEnabledForTestOnly = $true + purpose = "verification" + } +) +selfServiceIssuance = @{ + isEnabled = $true + issuanceUrl = "https://verifiedid.contoso.com/issue" +} } New-MgBetaIdentityVerifiedIdProfile -BodyParameter $params diff --git a/api-reference/beta/includes/snippets/powershell/list-plannerhistoryitem-datefilter-powershell-snippets.md b/api-reference/beta/includes/snippets/powershell/list-plannerhistoryitem-datefilter-powershell-snippets.md new file mode 100644 index 00000000000..6144a3ab8ef --- /dev/null +++ b/api-reference/beta/includes/snippets/powershell/list-plannerhistoryitem-datefilter-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Beta.Planner + +Get-MgBetaPlannerPlanHistoryItem -PlannerPlanId $plannerPlanId -Filter "occurredDateTime gt 2025-11-01T00:00:00Z and occurredDateTime lt 2025-12-01T00:00:00Z" + +``` \ No newline at end of file diff --git a/api-reference/beta/includes/snippets/powershell/update-verifiedidprofile-powershell-snippets.md b/api-reference/beta/includes/snippets/powershell/update-verifiedidprofile-powershell-snippets.md index b9b7ab7dfe6..414b265f096 100644 --- a/api-reference/beta/includes/snippets/powershell/update-verifiedidprofile-powershell-snippets.md +++ b/api-reference/beta/includes/snippets/powershell/update-verifiedidprofile-powershell-snippets.md @@ -7,12 +7,26 @@ description: "Automatically generated file. DO NOT MODIFY" Import-Module Microsoft.Graph.Beta.Identity.SignIns $params = @{ - verifiedIdUsageConfigurations = @( - @{ - isEnabledForTestOnly = $false - purpose = "recovery" - } + verifiedIdProfileConfiguration = @{ + methodType = "tenantCustomCredential" + manifestUrl = "https://verifiedid.contoso.com/manifest" + } + mobileDriversLicenseConfiguration = @{ + acceptedRegions = @( + "region-code" ) + documentStandard = "document-standard" +} +selfServiceIssuance = @{ + isEnabled = $true + issuanceUrl = "https://verifiedid.contoso.com/issue" +} +verifiedIdUsageConfigurations = @( + @{ + isEnabledForTestOnly = $false + purpose = "verification" + } +) } Update-MgBetaIdentityVerifiedIdProfile -VerifiedIdProfileId $verifiedIdProfileId -BodyParameter $params diff --git a/api-reference/beta/includes/snippets/powershell/windowsupdatesfindbycatalogid-powershell-snippets.md b/api-reference/beta/includes/snippets/powershell/windowsupdatesfindbycatalogid-powershell-snippets.md index f88d8981381..95dae1e631c 100644 --- a/api-reference/beta/includes/snippets/powershell/windowsupdatesfindbycatalogid-powershell-snippets.md +++ b/api-reference/beta/includes/snippets/powershell/windowsupdatesfindbycatalogid-powershell-snippets.md @@ -6,6 +6,6 @@ description: "Automatically generated file. DO NOT MODIFY" Import-Module Microsoft.Graph.Beta.WindowsUpdates -Find-MgBetaWindowsUpdatesProductByCatalogId -ExpandProperty "revisions(`$expand=catalogEntry,knowledgeBaseArticle),knownIssues(`$expand=originatingKnowledgeBaseArticle,resolvingKnowledgeBaseArticle)" -CatalogID $catalogIDId +Find-MgBetaWindowsUpdatesProductByKbNumber -ExpandProperty "revisions(`$expand=catalogEntry,knowledgeBaseArticle),knownIssues" -KbNumber $kbNumberId ``` \ No newline at end of file diff --git a/api-reference/beta/includes/snippets/python/create-verifiedidprofile-from--python-snippets.md b/api-reference/beta/includes/snippets/python/create-verifiedidprofile-from--python-snippets.md index 10f5e77db90..da0a234e175 100644 --- a/api-reference/beta/includes/snippets/python/create-verifiedidprofile-from--python-snippets.md +++ b/api-reference/beta/includes/snippets/python/create-verifiedidprofile-from--python-snippets.md @@ -36,6 +36,10 @@ request_body = VerifiedIdProfile( verified_id_claim = "vc.credentialSubject.lastName", ), ], + additional_data = { + "method_type" : "tenantCustomCredential", + "manifest_url" : "https://verifiedid.contoso.com/manifest", + } ), face_check_configuration = FaceCheckConfiguration( is_enabled = True, @@ -47,6 +51,18 @@ request_body = VerifiedIdProfile( purpose = VerifiedIdUsageConfigurationPurpose.Recovery, ), ], + additional_data = { + "mobile_drivers_license_configuration" : { + "accepted_regions" : [ + "region-code", + ], + "document_standard" : "document-standard", + }, + "self_service_issuance" : { + "is_enabled" : True, + "issuance_url" : "https://verifiedid.contoso.com/issue", + }, + } ) result = await graph_client.identity.verified_id.profiles.post(request_body) diff --git a/api-reference/beta/includes/snippets/python/list-mailboxfolder-with-query-parameters-python-snippets.md b/api-reference/beta/includes/snippets/python/list-mailboxfolder-with-query-parameters-python-snippets.md index fefcfd4666d..6c6d1140b1b 100644 --- a/api-reference/beta/includes/snippets/python/list-mailboxfolder-with-query-parameters-python-snippets.md +++ b/api-reference/beta/includes/snippets/python/list-mailboxfolder-with-query-parameters-python-snippets.md @@ -11,7 +11,7 @@ from kiota_abstractions.base_request_configuration import RequestConfiguration # To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python query_params = FoldersRequestBuilder.FoldersRequestBuilderGetQueryParameters( filter = "type eq 'IPF.Appointment'", - select = ["displayName","type"], + select = ["displayName","parentMailboxUrl","type","wellKnownName"], top = 5, ) diff --git a/api-reference/beta/includes/snippets/python/update-verifiedidprofile-python-snippets.md b/api-reference/beta/includes/snippets/python/update-verifiedidprofile-python-snippets.md index 139f83229d3..0a8bf02f64e 100644 --- a/api-reference/beta/includes/snippets/python/update-verifiedidprofile-python-snippets.md +++ b/api-reference/beta/includes/snippets/python/update-verifiedidprofile-python-snippets.md @@ -7,16 +7,35 @@ description: "Automatically generated file. DO NOT MODIFY" # Code snippets are only available for the latest version. Current version is 1.x from msgraph_beta import GraphServiceClient from msgraph_beta.generated.models.verified_id_profile import VerifiedIdProfile +from msgraph_beta.generated.models.verified_id_profile_configuration import VerifiedIdProfileConfiguration from msgraph_beta.generated.models.verified_id_usage_configuration import VerifiedIdUsageConfiguration from msgraph_beta.generated.models.verified_id_usage_configuration_purpose import VerifiedIdUsageConfigurationPurpose # To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python request_body = VerifiedIdProfile( + verified_id_profile_configuration = VerifiedIdProfileConfiguration( + additional_data = { + "method_type" : "tenantCustomCredential", + "manifest_url" : "https://verifiedid.contoso.com/manifest", + } + ), verified_id_usage_configurations = [ VerifiedIdUsageConfiguration( is_enabled_for_test_only = False, purpose = VerifiedIdUsageConfigurationPurpose.Recovery, ), ], + additional_data = { + "mobile_drivers_license_configuration" : { + "accepted_regions" : [ + "region-code", + ], + "document_standard" : "document-standard", + }, + "self_service_issuance" : { + "is_enabled" : True, + "issuance_url" : "https://verifiedid.contoso.com/issue", + }, + } ) result = await graph_client.identity.verified_id.profiles.by_verified_id_profile_id('verifiedIdProfile-id').patch(request_body) diff --git a/api-reference/beta/includes/snippets/python/windowsupdatesfindbycatalogid-python-snippets.md b/api-reference/beta/includes/snippets/python/windowsupdatesfindbycatalogid-python-snippets.md index 199676f277f..4a732703d93 100644 --- a/api-reference/beta/includes/snippets/python/windowsupdatesfindbycatalogid-python-snippets.md +++ b/api-reference/beta/includes/snippets/python/windowsupdatesfindbycatalogid-python-snippets.md @@ -6,18 +6,18 @@ description: "Automatically generated file. DO NOT MODIFY" # Code snippets are only available for the latest version. Current version is 1.x from msgraph_beta import GraphServiceClient -from msgraph_beta.generated.admin.windows.updates.products.microsoft.graph.windows_updates.find_by_catalog_id(catalog_i_d='{catalog_i_d}').find_by_catalog_id_with_catalog_i_d_request_builder import FindByCatalogIdWithCatalogIDRequestBuilder +from msgraph_beta.generated.admin.windows.updates.products.microsoft.graph.windows_updates.find_by_kb_number(kb_number={kb_number}).find_by_kb_number_with_kb_number_request_builder import FindByKbNumberWithKbNumberRequestBuilder from kiota_abstractions.base_request_configuration import RequestConfiguration # To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python -query_params = FindByCatalogIdWithCatalogIDRequestBuilder.FindByCatalogIdWithCatalogIDRequestBuilderGetQueryParameters( - expand = ["revisions($expand=catalogEntry,knowledgeBaseArticle)","knownIssues($expand=originatingKnowledgeBaseArticle,resolvingKnowledgeBaseArticle)"], +query_params = FindByKbNumberWithKbNumberRequestBuilder.FindByKbNumberWithKbNumberRequestBuilderGetQueryParameters( + expand = ["revisions($expand=catalogEntry,knowledgeBaseArticle)","knownIssues"], ) request_configuration = RequestConfiguration( query_parameters = query_params, ) -result = await graph_client.admin.windows.updates.products.microsoft_graph_windows_updates_find_by_catalog_id_with_catalog_i_d("{catalogID}").get(request_configuration = request_configuration) +result = await graph_client.admin.windows.updates.products.microsoft_graph_windows_updates_find_by_kb_number_with_kb_number(1).get(request_configuration = request_configuration) ``` \ No newline at end of file diff --git a/api-reference/v1.0/api/accesspackagesuggestions-filterbycurrentuser.md b/api-reference/v1.0/api/accesspackagesuggestions-filterbycurrentuser.md index 5bbe501b6d0..051466f7b07 100644 --- a/api-reference/v1.0/api/accesspackagesuggestions-filterbycurrentuser.md +++ b/api-reference/v1.0/api/accesspackagesuggestions-filterbycurrentuser.md @@ -93,6 +93,10 @@ GET https://graph.microsoft.com/v1.0/identityGovernance/entitlementManagement/ac [!INCLUDE [sample-code](../includes/snippets/php/accesspackagesuggestions-filterbycurrentuser-all-v1-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/accesspackagesuggestions-filterbycurrentuser-all-v1-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/accesspackagesuggestions-filterbycurrentuser-all-v1-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] @@ -191,6 +195,10 @@ GET https://graph.microsoft.com/v1.0/identityGovernance/entitlementManagement/ac [!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/accesspackagesuggestions-filterbycurrentuser-history-v1-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/v1.0/api/availableaccesspackage-list-resourcerolescopes.md b/api-reference/v1.0/api/availableaccesspackage-list-resourcerolescopes.md index fb8e6a7437b..d267dff17cf 100644 --- a/api-reference/v1.0/api/availableaccesspackage-list-resourcerolescopes.md +++ b/api-reference/v1.0/api/availableaccesspackage-list-resourcerolescopes.md @@ -88,6 +88,10 @@ GET https://graph.microsoft.com/v1.0/identityGovernance/entitlementManagement/av [!INCLUDE [sample-code](../includes/snippets/php/list-availableaccesspackage-resourcerolescopes-v1-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/list-availableaccesspackage-resourcerolescopes-v1-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/list-availableaccesspackage-resourcerolescopes-v1-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/v1.0/api/emailnotificationssetting-get.md b/api-reference/v1.0/api/emailnotificationssetting-get.md index 5bb52cd33b7..1f1f659d7b7 100644 --- a/api-reference/v1.0/api/emailnotificationssetting-get.md +++ b/api-reference/v1.0/api/emailnotificationssetting-get.md @@ -90,6 +90,10 @@ GET https://graph.microsoft.com/v1.0/solutions/backupRestore/emailNotificationsS [!INCLUDE [sample-code](../includes/snippets/php/get-emailnotificationssetting-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/get-emailnotificationssetting-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/get-emailnotificationssetting-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/v1.0/api/emailnotificationssetting-update.md b/api-reference/v1.0/api/emailnotificationssetting-update.md index 22f5c2b27ac..cf255a31e88 100644 --- a/api-reference/v1.0/api/emailnotificationssetting-update.md +++ b/api-reference/v1.0/api/emailnotificationssetting-update.md @@ -113,6 +113,10 @@ Content-Type: application/json [!INCLUDE [sample-code](../includes/snippets/php/update-emailnotificationssetting-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/update-emailnotificationssetting-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/update-emailnotificationssetting-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/v1.0/api/endusersettings-get.md b/api-reference/v1.0/api/endusersettings-get.md index 89e9d423f01..46dc96415fe 100644 --- a/api-reference/v1.0/api/endusersettings-get.md +++ b/api-reference/v1.0/api/endusersettings-get.md @@ -85,6 +85,10 @@ GET https://graph.microsoft.com/v1.0/identityGovernance/entitlementManagement/co [!INCLUDE [sample-code](../includes/snippets/php/get-endusersettings-v1-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/get-endusersettings-v1-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/get-endusersettings-v1-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/v1.0/api/endusersettings-update.md b/api-reference/v1.0/api/endusersettings-update.md index 39e9dc3980b..f5be953930a 100644 --- a/api-reference/v1.0/api/endusersettings-update.md +++ b/api-reference/v1.0/api/endusersettings-update.md @@ -96,6 +96,10 @@ Content-type: application/json [!INCLUDE [sample-code](../includes/snippets/php/update-endusersettings-v1-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/update-endusersettings-v1-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/update-endusersettings-v1-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/v1.0/api/identitygovernance-workflow-cancelprocessing.md b/api-reference/v1.0/api/identitygovernance-workflow-cancelprocessing.md index 0d85586d805..ff85f5601df 100644 --- a/api-reference/v1.0/api/identitygovernance-workflow-cancelprocessing.md +++ b/api-reference/v1.0/api/identitygovernance-workflow-cancelprocessing.md @@ -118,6 +118,10 @@ Content-Type: application/json [!INCLUDE [sample-code](../includes/snippets/php/lifecycleworkflows-workflow-cancelprocessing-success-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/lifecycleworkflows-workflow-cancelprocessing-success-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/lifecycleworkflows-workflow-cancelprocessing-success-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/v1.0/api/identitygovernance-workflow-clearquarantine.md b/api-reference/v1.0/api/identitygovernance-workflow-clearquarantine.md index bab8bafbe61..9dd8282d59c 100644 --- a/api-reference/v1.0/api/identitygovernance-workflow-clearquarantine.md +++ b/api-reference/v1.0/api/identitygovernance-workflow-clearquarantine.md @@ -88,6 +88,10 @@ POST https://graph.microsoft.com/v1.0/identityGovernance/lifecycleWorkflows/work [!INCLUDE [sample-code](../includes/snippets/php/workflowthisclearquarantine-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/workflowthisclearquarantine-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/workflowthisclearquarantine-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/v1.0/api/identitygovernance-workflow-previewtaskfailures.md b/api-reference/v1.0/api/identitygovernance-workflow-previewtaskfailures.md index d5db4998996..ea16aeec751 100644 --- a/api-reference/v1.0/api/identitygovernance-workflow-previewtaskfailures.md +++ b/api-reference/v1.0/api/identitygovernance-workflow-previewtaskfailures.md @@ -90,6 +90,10 @@ POST https://graph.microsoft.com/v1.0/identityGovernance/lifecycleWorkflows/work [!INCLUDE [sample-code](../includes/snippets/php/lifecycleworkflows-workflow-previewtaskfailures-failures-v1-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/lifecycleworkflows-workflow-previewtaskfailures-failures-v1-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/lifecycleworkflows-workflow-previewtaskfailures-failures-v1-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] @@ -160,6 +164,10 @@ POST https://graph.microsoft.com/v1.0/identityGovernance/lifecycleWorkflows/work [!INCLUDE [sample-code](../includes/snippets/php/lifecycleworkflows-workflow-previewtaskfailures-nofailures-v1-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/lifecycleworkflows-workflow-previewtaskfailures-nofailures-v1-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/lifecycleworkflows-workflow-previewtaskfailures-nofailures-v1-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/v1.0/api/identitygovernance-workflow-previewworkflow.md b/api-reference/v1.0/api/identitygovernance-workflow-previewworkflow.md index 54c3dba3c31..2886c8b8eef 100644 --- a/api-reference/v1.0/api/identitygovernance-workflow-previewworkflow.md +++ b/api-reference/v1.0/api/identitygovernance-workflow-previewworkflow.md @@ -109,6 +109,10 @@ Content-Type: application/json [!INCLUDE [sample-code](../includes/snippets/php/lifecycleworkflows-workflow-previewworkflow-v1-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/lifecycleworkflows-workflow-previewworkflow-v1-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/lifecycleworkflows-workflow-previewworkflow-v1-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/v1.0/api/list-list-permissions.md b/api-reference/v1.0/api/list-list-permissions.md index 77202eab858..ce96ef2e599 100644 --- a/api-reference/v1.0/api/list-list-permissions.md +++ b/api-reference/v1.0/api/list-list-permissions.md @@ -52,15 +52,46 @@ If successful, this method returns a `200 OK` response code and a collection of The following example shows a request. +# [HTTP](#tab/http) -```http +```msgraph-interactive GET https://graph.microsoft.com/v1.0/sites/60a53b69-1342-4e9a-9d66-d2288f214b68/lists/b5dabb84-f89f-4317-a884-99b3d2067c2c/permissions ``` +# [C#](#tab/csharp) +[!INCLUDE [sample-code](../includes/snippets/csharp/list-permission-list-nav-property-csharp-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [sample-code](../includes/snippets/go/list-permission-list-nav-property-go-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [sample-code](../includes/snippets/java/list-permission-list-nav-property-java-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [sample-code](../includes/snippets/javascript/list-permission-list-nav-property-javascript-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [sample-code](../includes/snippets/php/list-permission-list-nav-property-php-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/list-permission-list-nav-property-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [sample-code](../includes/snippets/python/list-permission-list-nav-property-python-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + ### Response The following example shows the response. diff --git a/api-reference/v1.0/api/list-post-permissions.md b/api-reference/v1.0/api/list-post-permissions.md index 503852cbb0b..a0f68cce638 100644 --- a/api-reference/v1.0/api/list-post-permissions.md +++ b/api-reference/v1.0/api/list-post-permissions.md @@ -52,6 +52,7 @@ If successful, this method returns a `201 Created` response code and a [permissi The following example shows a request. +# [HTTP](#tab/http) -```http +```msgraph-interactive GET https://graph.microsoft.com/v1.0/sites/60a53b69-1342-4e9a-9d66-d2288f214b68/lists/b5dabb84-f89f-4317-a884-99b3d2067c2c/items/bdaa01cd-7ed2-4cd2-8292-2771e6f43148/permissions ``` +# [C#](#tab/csharp) +[!INCLUDE [sample-code](../includes/snippets/csharp/list-permission-listitem-nav-property-csharp-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [sample-code](../includes/snippets/go/list-permission-listitem-nav-property-go-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [sample-code](../includes/snippets/java/list-permission-listitem-nav-property-java-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [sample-code](../includes/snippets/javascript/list-permission-listitem-nav-property-javascript-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [sample-code](../includes/snippets/php/list-permission-listitem-nav-property-php-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/list-permission-listitem-nav-property-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [sample-code](../includes/snippets/python/list-permission-listitem-nav-property-python-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + ### Response The following example shows the response. diff --git a/api-reference/v1.0/api/listitem-post-permissions.md b/api-reference/v1.0/api/listitem-post-permissions.md index 0052a43eed5..445366d68ea 100644 --- a/api-reference/v1.0/api/listitem-post-permissions.md +++ b/api-reference/v1.0/api/listitem-post-permissions.md @@ -52,6 +52,7 @@ If successful, this method returns a `201 Created` response code and a [permissi The following example shows a request. +# [HTTP](#tab/http) - diff --git a/api-reference/v1.0/api/chatmessagehostedcontent-get.md b/api-reference/v1.0/api/chatmessagehostedcontent-get.md index 883139c240b..dda4225d03c 100644 --- a/api-reference/v1.0/api/chatmessagehostedcontent-get.md +++ b/api-reference/v1.0/api/chatmessagehostedcontent-get.md @@ -64,6 +64,7 @@ This operation doesn't support the [OData query parameters](/graph/query-paramet | Name |Description| |:----------|:----------| | Authorization | Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +| ConsistencyLevel | Optional. Set to `eventual` to retrieve hosted content for edited or deleted messages. Hosted content retrieval isn't supported for messages in deleted threads. | ## Request body @@ -216,4 +217,3 @@ content-type: image/png ] }--> - diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 42ce7ea040a..ef3e7d6722e 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -59,7 +59,8 @@ Added the **allowOnPremUpdateOfOnPremisesObjectIdentifierEnabled** property to t ### Teamwork and communications | Messaging -Added the [targetedChatMessage](/graph/api/resources/targetedchatmessage) resource type and related methods for managing targeted messages in Microsoft Teams. Targeted messages are visible only to specified recipients within group chats and channels. +- Documented support for the optional **ConsistencyLevel** request header when [getting hosted content for a chat message](/graph/api/chatmessagehostedcontent-get). Use `ConsistencyLevel: eventual` to retrieve hosted content for edited or deleted messages. Hosted content retrieval isn't supported for messages in deleted threads. +- Added the [targetedChatMessage](/graph/api/resources/targetedchatmessage) resource type and related methods for managing targeted messages in Microsoft Teams. Targeted messages are visible only to specified recipients within group chats and channels. - Use the [getAllTargetedMessages](/graph/api/userteamwork-getalltargetedmessages) function to retrieve all targeted messages sent to a user across all group chats and channels. - Use the [getAllRetainedTargetedMessages](/graph/api/userteamwork-getallretainedtargetedmessages) function to retrieve retained targeted messages that were deleted by the sender but preserved by retention policies. - Use the [deleteTargetedMessage](/graph/api/userteamwork-deletetargetedmessage) action to delete a specific targeted message from a user's storage in a channel context. From edfe5c0fbf0677ece5e52f801f8540d705f41530 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Wed, 5 Aug 2026 09:30:06 -0600 Subject: [PATCH 016/189] Update generated permissions tables with build 230638 (#29403) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/v1.0/api/chat-delete-targetedmessages.md | 6 +----- .../permissions/chat-delete-targetedmessages-permissions.md | 2 +- ...erteamwork-getallretainedtargetedmessages-permissions.md | 3 +-- .../userteamwork-getalltargetedmessages-permissions.md | 3 +-- 4 files changed, 4 insertions(+), 10 deletions(-) diff --git a/api-reference/v1.0/api/chat-delete-targetedmessages.md b/api-reference/v1.0/api/chat-delete-targetedmessages.md index 07088900798..044e7b04bb3 100644 --- a/api-reference/v1.0/api/chat-delete-targetedmessages.md +++ b/api-reference/v1.0/api/chat-delete-targetedmessages.md @@ -18,11 +18,7 @@ Delete a specific [targeted message](../resources/targetedchatmessage.md) from a Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/chat-delete-targetedmessages-permissions.md)] ## HTTP request diff --git a/api-reference/v1.0/includes/permissions/chat-delete-targetedmessages-permissions.md b/api-reference/v1.0/includes/permissions/chat-delete-targetedmessages-permissions.md index b5b0128ff62..d9a5b581867 100644 --- a/api-reference/v1.0/includes/permissions/chat-delete-targetedmessages-permissions.md +++ b/api-reference/v1.0/includes/permissions/chat-delete-targetedmessages-permissions.md @@ -3,7 +3,7 @@ description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- - + |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| |Delegated (work or school account)|TeamworkTargetedMessage.ReadWrite|Not available.| diff --git a/api-reference/v1.0/includes/permissions/userteamwork-getallretainedtargetedmessages-permissions.md b/api-reference/v1.0/includes/permissions/userteamwork-getallretainedtargetedmessages-permissions.md index e1bbfcfb59a..ff21672845d 100644 --- a/api-reference/v1.0/includes/permissions/userteamwork-getallretainedtargetedmessages-permissions.md +++ b/api-reference/v1.0/includes/permissions/userteamwork-getallretainedtargetedmessages-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -10,4 +10,3 @@ ms.localizationpriority: medium |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TeamworkTargetedMessage.Read.All|Not available.| - diff --git a/api-reference/v1.0/includes/permissions/userteamwork-getalltargetedmessages-permissions.md b/api-reference/v1.0/includes/permissions/userteamwork-getalltargetedmessages-permissions.md index e1bbfcfb59a..ff21672845d 100644 --- a/api-reference/v1.0/includes/permissions/userteamwork-getalltargetedmessages-permissions.md +++ b/api-reference/v1.0/includes/permissions/userteamwork-getalltargetedmessages-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -10,4 +10,3 @@ ms.localizationpriority: medium |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TeamworkTargetedMessage.Read.All|Not available.| - From 7d187e16f8827c4061423f6eb07672d12f084533 Mon Sep 17 00:00:00 2001 From: Danipocket <88507770+Danipocket@users.noreply.github.com> Date: Fri, 7 Aug 2026 21:34:46 -0600 Subject: [PATCH 017/189] =?UTF-8?q?Rename=20graph-api-orchestrator.agent.m?= =?UTF-8?q?d=20to=20graph-api-orchestrator.agen=E2=80=A6=20(#29405)?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit * Rename graph-api-orchestrator.agent.md to graph-api-orchestrator.agent.md * Rename graph-service-overview-writer.agent.md to graph-service-overview-writer.agent.md * Update reviewer-api-docs.prompt.md --- .../graph-api-orchestrator.agent.md | 0 .../graph-service-overview-writer.agent.md | 0 .github/prompts/reviewer-api-docs.prompt.md | 629 +++++++++++------- 3 files changed, 380 insertions(+), 249 deletions(-) rename .github/{prompts => agents}/graph-api-orchestrator.agent.md (100%) rename .github/{prompts => agents}/graph-service-overview-writer.agent.md (100%) diff --git a/.github/prompts/graph-api-orchestrator.agent.md b/.github/agents/graph-api-orchestrator.agent.md similarity index 100% rename from .github/prompts/graph-api-orchestrator.agent.md rename to .github/agents/graph-api-orchestrator.agent.md diff --git a/.github/prompts/graph-service-overview-writer.agent.md b/.github/agents/graph-service-overview-writer.agent.md similarity index 100% rename from .github/prompts/graph-service-overview-writer.agent.md rename to .github/agents/graph-service-overview-writer.agent.md diff --git a/.github/prompts/reviewer-api-docs.prompt.md b/.github/prompts/reviewer-api-docs.prompt.md index ee10f1e591e..8dc7944d0cb 100644 --- a/.github/prompts/reviewer-api-docs.prompt.md +++ b/.github/prompts/reviewer-api-docs.prompt.md @@ -1,124 +1,128 @@ --- agent: agent model: Claude Sonnet 4.5 (copilot) -tools: ['usages', 'problems', 'fetch', 'githubRepo', 'runCommands', 'edit/createFile', 'edit/createDirectory', 'edit/editFiles', 'search'] -description: Review and validate Microsoft Graph reference documentation changes for correctness, completeness, and template/style conformance (non-creative). Gate readiness for human review. +tools: ['usages', 'problems', 'fetch', 'githubRepo', 'runCommands', 'edit/createFile', 'edit/editFiles', 'search', 'github/*'] +description: Strict, non-creative validation agent for Microsoft Graph API reference documentation. Validates writer-agent output against source of truth, structure, links, and Graph conventions, then gates readiness for human review. +name: reviewAPIdocs --- - + # Microsoft Graph documentation review agent -You are a **strict, non-creative validation agent** for Microsoft Graph documentation. +You are a **strict, non-creative validation agent** for Microsoft Graph API reference documentation. -Your role is to **validate, enforce, and gate** documentation produced by: -- Planning agent (NuruCode) -- Writer agent +You are the third stage of an orchestrated pipeline: -You do **NOT** generate content. +**Planning agent → Writer agent → YOU (Reviewer) → Human review** + +Your role is to **validate, enforce, gate, and (only where mechanically safe) correct** the documentation produced upstream. You do **NOT** generate content, invent scenarios, or expand scope. --- -## Core rules (Non-negotiable) +## 0. Operating constraints (NON-NEGOTIABLE — read before anything else) -- Do NOT add new content unless explicitly required by source-of-truth. -- Do NOT expand scope beyond what is defined in metadata or API.md. -- Do NOT invent examples or scenarios. -- Do NOT rewrite for style unless it violates Microsoft or Graph guidelines. -- Prefer **mechanical, safe corrections only**. +These constraints override every other instruction in this file. ---- +### 0.1 Repository actions — hard prohibitions + +| Action | Allowed? | +|---|---| +| Run commands (build, lint, validation scripts, `git status`, `git diff`, file search, filesystem listing) | ✅ Yes | +| Read/edit files **on the branch already checked out** | ✅ Yes | +| Commit and push to **the branch provided** | ✅ Yes | +| Post review comments on **the PR provided** | ✅ Yes | +| **Create a new branch** (`git checkout -b`, `git branch`, `git switch -c`, UI/API branch creation) | ❌ **NEVER — under any circumstance** | +| **Create a new pull request** (`gh pr create`, `create_pull_request`, UI/API PR creation) | ❌ **NEVER — under any circumstance** | + +If you believe a change requires a new branch or PR, **STOP** and report it as a finding for the human. Do not create one. Do not "helpfully" open one to hold your suggestions. There is no exception, no user phrasing, and no error condition that unlocks this. + +### 0.2 TOC files — do not update -## Mission +**Never edit, add to, reorder, or delete entries in `toc.yml` files.** TOC.yml is out of scope for this agent. -You must: +- If a `toc.yml` file appears in the PR diff → flag it as a **finding** ("toc.yml changed; this pipeline does not update toc.yml — confirm this is intentional") and move on. Do not fix it yourself. +- `toc.mapping.json` is the mapping file the Graph pipeline uses; you may **validate** it (entries exist, names match files, deleted files removed) and report findings, but prefer reporting over editing. -1. Validate against sources of truth -2. Enforce structural integrity -3. Verify completeness (not creativity) -4. Validate examples and usage claims -5. Enforce Microsoft style and Graph conventions -6. Provide precise, actionable feedback -7. Gate readiness for human review +### 0.3 Scope + +Validate **only** what is inside the PR diff / provided branch. Do not review unrelated pre-existing files, and do not "fix while you're in there." --- -# PR Context initialization (REQUIRED) +## 1. Core rules + +- Do NOT add new content unless explicitly required by source-of-truth (CSDL/TypeSpec, API.md, PLAN.md). +- Do NOT expand scope beyond what is defined in the plan, metadata, or API.md. +- Do NOT invent examples, values, permissions, or scenarios. +- Do NOT rewrite for style unless it violates Microsoft or Graph guidelines. +- Prefer **mechanical, safe corrections only** (lint, spacing, heading level, alphabetical ordering, casing fixes verified against the filesystem). +- **Verify, never assume.** Every claim in your report must be backed by something you actually read: a file you opened, a command output, a diff hunk, or a schema line. If you did not verify it, say "unverified" — do not assert it. +- Be deterministic and strict. Fail fast on missing inputs. Do not speculate or generalize. -This agent operates **ONLY on a GitHub Pull Request**. +--- -## Required first step +## 2. PR context initialization (REQUIRED) -Ask for ONE: +This agent operates **only on a GitHub pull request or an already-provided branch**. -- GitHub Pull Request URL -- OR PR ID + repository name +**Required first step** — ask for ONE of: -## Do not proceed until provided +- GitHub pull request URL, or +- PR ID + repository name, or +- The branch name already checked out for this work Once received: -- Fetch PR metadata -- Enumerate changed files -- Use PR diff as review scope -- Validate ONLY within PR scope - -## If missing PR +1. Fetch PR metadata (`get`) — description, labels, linked work items, change type (new API / GA promotion / deprecation / retirement / update). +2. Enumerate changed files (`get_files`). +3. Read diffs (`get_diff`) — focus on added/modified lines. +4. Use the PR diff as the review scope. -Respond with: +**If no PR/branch is provided**, respond with: -> To review these changes, please provide the GitHub Pull Request URL or PR ID. -> This agent validates documentation **only in the context of a PR**. +> To review these changes, please provide the GitHub pull request URL, PR ID, or the branch name. This agent validates documentation only in the context of an existing PR or branch — it will not create one. Do NOT infer or assume PR context. --- -# Required Inputs (Block if Missing) +## 3. Required and optional inputs + +### Required -From PR or user: +- PR (URL or ID) **or** the working branch +- `documentation-plan.md` / PLAN.md (planning agent output) +- Source of truth: CSDL or TypeSpec, and/or `API.md` +- Changed documentation files (from the diff) +- Templates: `api-resource-reference.md`, `api-method-reference.md` -### REQUIRED -- PR (URL or ID) -- PLAN.md (or Planning Agent output) -- Source of truth: - - CSDL or TypeSpec - - API.md -- Changed documentation files (from PR) -- Templates: - - api-resource-reference.md - - api-method-reference.md +### Conditionally required -### OPTIONAL (CONDITIONAL) -- changelog JSON (REQUIRED for new APIs / GA promotions / deprecations) -- What's new update (REQUIRED for GA promotions / notable additions) -- staging output / rendered docs +- Changelog JSON — required for new APIs, GA promotions, deprecations, deletions +- What's New update — required for GA promotions, notable additions, deletions +- Redirect file — required for renames, moves, deletions -If PLAN.md is missing: -- Derive expected coverage from API.md + metadata -- Explicitly state reduced confidence in completeness validation +### Degraded mode + +If PLAN.md is missing: derive expected coverage from API.md + metadata and **explicitly state reduced confidence** in completeness validation. Without PLAN.md/API.md the review is limited to guideline compliance — say so in the report; do not imply completeness was verified. --- -# Validation Workflow +# Validation workflow -Execute in strict order. +Execute in order. Phases A–D and the two validation gates (Phase M) are blocking. --- ## Phase A — Traceability map (REQUIRED) -Map: - -- PLAN.md → expected files -- CSDL/TypeSpec → entities and structure -- API.md → operations and constraints -- Docs → implemented content +Map: PLAN.md → expected files · CSDL/TypeSpec → entities and structure · API.md → operations and constraints · Docs → implemented content. -Output a table: +Output: | Expected file | Found | Source reference | Status | -|--------------|------|------------------|--------| +|---|---|---|---| Missing or mismatched items → flag. @@ -126,24 +130,39 @@ Missing or mismatched items → flag. ## Phase B — Structural integrity (BLOCKER if failing) -For EACH file: +For each file: -- Correct template type -- Required sections present and ordered -- Correct heading hierarchy +- Correct template type for its location +- Required sections present, correctly ordered, correct heading hierarchy +- No custom H2 sections — only predefined headings - Tables formatted correctly - Required includes present - Valid relative paths ### File rules -- lowercase filenames -- `/resources` → resource files -- `/api` → method files -- enums → `/resources/enums.md` -- TOC → `/toc/toc.mapping.json` - -Any violation = **BLOCKER** +- **All filenames lowercase** (see Phase M.2 — verify on the filesystem, don't assume) +- `/resources` → resource files · `/api` → method files +- Enums → `/resources/enums.md` +- `toc.mapping.json` may be validated; `toc.yml` is **never edited** (§0.2) + +### Top rules to check first (most commonly violated) + +1. All filenames lowercase +2. `Namespace: microsoft.graph*` immediately after the H1 title +3. Properties and Relationships tables in **alphabetical order** +4. Beta disclaimer present in beta files; **absent** in v1.0 files +5. No TODO placeholders anywhere in changed files +6. No custom H2 sections +7. Examples use **pseudo-values** (`contoso.com`, plausible GUIDs) — never type names like `"String"` +8. Examples use full URLs (`https://graph.microsoft.com/v1.0/...` or `/beta/...`) +9. HTTP request block uses relative URL + method (`GET /users`) +10. Resource name identical in: YAML title, H1, HTML comment `@odata.type`, JSON `@odata.type` +11. JSON representation matches the Properties table (same properties, same types) +12. Examples use **production versions only** — flag `ppeprod`, `stagingbeta`, `stagingv1.0`, or any test-environment version +13. Both validation gates pass (Phase M) + +Any violation of 1–4 or 13 = **BLOCKER**. --- @@ -151,28 +170,14 @@ Any violation = **BLOCKER** Validate against PLAN.md (or fallback): -- All required resources/types exist -- All required methods exist -- No unsupported methods included +- All required resources/types and methods exist; no unsupported methods included - Resources list only valid operations -- Properties/relationships: - - present - - alphabetized -- Enums included and referenced -- TOC mapping updated correctly - -### Graph-specific completeness checks (additions) -- **Changelog / What's new coverage**: - - If PR introduces **new APIs**, **GA promotions**, or **deprecations**: - - Validate changelog updates exist and match the scope - - Validate What's new updates exist when required by the change type -- **Derived types / inheritance coverage**: - - If schema introduces derived types or changes inheritance: - - Validate docs reflect inheritance and the correct type relationships - -Severity: -- Missing required content → BLOCKER -- Partial gaps → MAJOR +- Properties/relationships present and alphabetized +- Enums included and referenced (see Phase N) +- Changelog / What's New coverage for new APIs, GA promotions, deprecations, deletions (see Phase O) +- Derived types / inheritance coverage reflected in docs + +Severity: missing required content → **BLOCKER**; partial gaps → **MAJOR**. --- @@ -180,243 +185,369 @@ Severity: Cross-check against CSDL/TypeSpec + API.md: -- Names and casing (types, properties, relationships) +- Names and **casing** of types, properties, relationships - Operation support (GET, POST, PATCH, DELETE) -- Request/response structure -- Required fields, collections, nullability -- Permissions/scopes (see Phase H for strict Graph permission rules) +- Request/response structure; required fields, collections, nullability +- Permissions/scopes (Phase H) +- All documented components exist in metadata; no hidden/internal-only components documented +- Correct API version (v1.0 vs beta) used consistently +- No duplicate files for the same resource/method; no "new" file that already exists in the repo + +### v1.0 GA promotion safety net -### Metadata validation +For v1.0 resource files that inherit from a base type, cross-reference inherited properties against the **existing v1.0 base type file** in `api-reference/v1.0/resources/`. Any inherited property present in the derived type's v1.0 doc but absent from the v1.0 base type's Properties table is very likely a beta-only property copied over by mistake → **BLOCKER**. -- All documented components exist in metadata -- No hidden/internal-only components documented -- Correct API version (v1.0 vs beta) is used consistently +If PLAN.md contains a "Beta-only content to remove" table, verify every listed property/relationship is absent from the v1.0 Properties table, JSON representation, and example payloads. -### Repo validation +Severity: incorrect behavior/shape → **BLOCKER**; minor mismatches → **MAJOR**. -- No duplicate files for same resource/method -- No “new” files already existing in repo +--- -Severity: -- Incorrect behavior/shape → BLOCKER -- Minor mismatches → MAJOR +## Phase E — Examples validation (no hallucinations) + +For each example: URL path valid · HTTP method matches the operation · JSON properties exist and are correctly cased · values match types · response aligns with schema · no undocumented properties introduced · pseudo-values not type names · long-running-operation status codes match source of truth. + +Unverifiable example → **MAJOR (recommend removal)**. --- -## Phase E — Examples validation (No hallucinations) +## Phase F — Style and Graph conventions (minimal enforcement) -For each example: +Microsoft Writing Style Guide compliance, with these **Graph exceptions**: -- URL path is valid -- HTTP method matches operation -- JSON properties exist and are correctly cased -- Values match types -- Response aligns with schema -- No undocumented properties introduced +- Titles follow schema nomenclature (camelCase): `user` resource, `assignLicense` — not "User resource" / "Assign license" +- Property names match the API schema exactly +- Technical accuracy beats general style guidance -### Graph-specific example checks (additions) -- Use **pseudo-values** (plausible IDs, tenant names, object IDs), not placeholder type names -- For long-running operations (if applicable): - - Validate status codes and any documented pattern match source-of-truth +Also check: consistent terminology · correct linking patterns · meaningful headings · no "click here" · valid alt text. -Unverifiable example → **MAJOR (recommend removal)** +Only suggest **minimal edits**. Policy-breaking → MAJOR; wording → MINOR. --- -## Phase F — Style & Graph Guidelines (Minimal Enforcement) +## Phase G — Lint and repo quality -Validate: +Markdown lint (fix only if safe) · no stray blank lines · code fences specify a language · relative paths valid. +Build-breaking → MAJOR; cosmetic → MINOR. -- Microsoft Writing Style Guide compliance -- Graph conventions: - - beta disclaimer usage (see Phase I for lifecycle rules) - - consistent terminology - - correct linking patterns -- Accessibility: - - meaningful headings - - no “click here” - - valid alt text (if applicable) +--- -Only suggest **minimal edits**. +## Phase H — Permissions integrity (GRAPH-CRITICAL) -Severity: -- Policy-breaking issues → MAJOR -- Minor wording → MINOR +1. **Include-based permissions** — API topics reference permissions via include files. If a permissions table exists, confirm it is sourced from includes and the includes are present in the PR when expected. +2. **No manual "fixing" that contradicts the model** — flag hand-edited permissions content, especially blanket "Not supported" with no matching context. +3. **Scope alignment** — permissions entries correspond to the endpoints/operations in PR scope. + +Missing required permissions includes for new APIs/operations → **BLOCKER**. Misleading/inconsistent content → **MAJOR**. Cosmetic → **MINOR**. --- -## Phase G — Lint & repo quality +## Phase I — Lifecycle (beta vs v1.0) and publishing hygiene -- Fix markdown lint issues (if safe) -- Remove extra blank lines -- Validate links (relative paths) -- Ensure code fences specify language +1. Beta disclaimer present in all beta reference topics → missing = **BLOCKER**. +2. v1.0 topics retain no beta-only language or disclaimers; GA promotion PRs reflect GA state. +3. Changelog (and What's New where required) present for GA promotion, deprecation, deletion, notable additions. -Severity: -- Build-breaking → MAJOR -- Cosmetic → MINOR +Lifecycle marker mismatch → **BLOCKER**. Missing publish artifacts → **MAJOR/BLOCKER** by scope. --- -## Phase H — Permissions integrity (GRAPH-CRITICAL) (NEW) +## Phase J — Redirects, renames, retirements + +Detect renames, moves, and deletions in the diff. If any occurred: + +- Each deleted/renamed entity type resource file **and** API operation file needs a redirect entry in the latest `.openpublishing.redirection.yyyy-mm.json` in `redirects/` +- All API operation files, permission includes, and RBAC includes tied to a deleted entity type are also deleted +- Complex/entity types referenced by the deleted resource are **not** deleted unless explicitly called out — they may be used elsewhere +- Deleted resources removed from Methods, Relationships, and Properties tables in parent/related files +- Deleted entries removed from `toc.mapping.json` (report; do not touch `toc.yml`) +- Changelog and What's New contain "Deletion" entries + +Missing redirects → **BLOCKER**. Incomplete coverage → **MAJOR**. + +--- + +## Phase K — Inheritance and derived-type correctness + +If the schema introduces or changes inheritance: + +- Resource docs state the base/derived relationship +- Derived type resources do **NOT** duplicate the base type's Methods table — they carry only the polymorphic note under `## Methods` +- Operation files use **base type names**, not derived type names +- POST/PATCH/PUT request bodies include `@odata.type` guidance when targeting a polymorphic collection +- Method docs reflect correct return types; examples don't contradict derived shapes + +Incorrect inheritance semantics → **BLOCKER**. Missing/unclear → **MAJOR**. + +--- + +## Phase L — Single source of truth for properties (anti-drift) + +The resource file is authoritative for property descriptions. Method files should not duplicate verbose property descriptions where a condensed request-body format is expected. Flag duplication likely to drift. + +Excess duplication → **MAJOR**. Minor → **MINOR**. + +--- + +# Phase M — The two validation gates (BOTH REQUIRED — this is where reviews fail) + +> **Critical:** JSON schema validation and link validation are **two separate, independent gates**. Passing one tells you **nothing** about the other. A changelog file can be perfectly schema-valid and still ship a link that 404s in production. **Never report "validation passed" after running only one.** Both must pass before you emit ✅ READY FOR HUMAN REVIEW. + +## Gate 1 — Schema / script validation + +Run, and report the actual output of: + +```powershell +.\scripts\validate-changelog-json.ps1 # if changelog/*.json changed +.\scripts\validate-temp-docstubs.ps1 # if temp-docstubs/ is present +``` + +Gate 1 validates: complete record structure (ChangeList array + Id, Cloud, Version, CreatedDateTime, WorkloadArea, SubArea) · GUID consistency between ChangeList items and the record-level Id · `Cloud` = "prd"/"Prod" · `Version` = "v1.0" or "beta" · `CreatedDateTime` in ISO 8601/RFC 3339 with fractional seconds and `Z` · WorkloadArea/SubArea match CDK taxonomy · only `temp-docstubs-instructions.md` remains in `temp-docstubs/`. + +**Gate 1 does NOT check a single link.** Do not let a green script lull you into skipping Gate 2. -Purpose: prevent **misleading permissions documentation** and enforce Graph’s permissions model approach. 【1-2ec296】【2-2223c2】 +## Gate 2 — Link validation -Validate: +Run the repo's link validator over every changed file, and additionally perform the manual checks below, because **the link validator has blind spots you must cover by hand**. -1. **Include-based permissions** - - API topics must reference permissions using include files when applicable. - - If a permissions table exists, confirm it is sourced via include files and the include files are present in the PR (when expected). 【1-2ec296】 +### M.1 — The link validator CANNOT verify fragment anchors ⚠️ -2. **No manual “fixing” that contradicts the model** - - Flag hand-edited or suspicious permissions content that appears inconsistent with the permissions model workflow (especially “Not supported” everywhere without matching context). 【1-2ec296】【2-2223c2】 +**This is the single highest-frequency escape in this pipeline.** -3. **Scope alignment** - - Permissions entries must correspond to the documented endpoints/operations in the PR scope. - - Missing permissions include files when required for new endpoints → **BLOCKER**. +The link validator resolves the **file path portion of a URL only**. It has **no ability to verify the `#fragment` portion.** A link like: -Severity: -- Missing required permissions includes for new APIs/operations → **BLOCKER** -- Permissions content present but likely misleading / inconsistent with the model → **MAJOR** -- Cosmetic formatting issues in permissions includes → **MINOR** +``` +/graph/api/resources/deviceconfiguration?view=graph-rest-beta#somepropertythatdoesnotexist +``` + +**passes the validator** while being broken for every customer who clicks it. + +Therefore, for **every** link containing a `#`: + +1. Open the target file yourself. +2. Locate the heading that generates that anchor. +3. Derive the anchor the way the docs platform does: lowercase the heading text, strip punctuation, replace spaces with hyphens (`## Assign a license` → `#assign-a-license`). +4. Confirm an exact match. Casing and punctuation matter. +5. If the heading does not exist → **BLOCKER**. Fix by pointing at a real heading, or drop the fragment and link the page. + +**Never write, approve, or "fix into" a fragment anchor you have not confirmed by opening the target file.** If you cannot open the target file, the link is **unverified** — report it as such rather than passing it. + +### M.2 — URL casing: verify against the filesystem, never against habit ⚠️ + +**Microsoft Graph reference filenames are all lowercase.** They do **not** follow the PascalCase or camelCase convention used elsewhere in Microsoft Learn, and they do **not** follow the casing of the schema type name. + +- Schema type `deviceConfiguration` → file `deviceconfiguration.md` → URL `/graph/api/resources/deviceconfiguration` +- Schema type `unifiedRoleAssignment` → file `unifiedroleassignment.md` +- **Never** infer a filename from a type name's casing. **Never** pattern-match from another Microsoft docset. + +**Mandatory procedure for every link and every new file:** + +1. Confirm the actual file on disk with a filesystem search (`search` / `ls` / `git ls-files`) before asserting the path is correct. +2. Confirm the **case-exact** filename from that output — do not retype it from memory. +3. Confirm any new file the writer added is lowercase. +4. On a case-insensitive filesystem (Windows/macOS) a wrong-case link resolves locally and **breaks in production**. Treat "it opened on my machine" as **no evidence at all**; verify with `git ls-files` (which reports the committed case) rather than by opening the file. + +Wrong-case link or filename → **BLOCKER**. + +### M.3 — Gate reporting + +Report both gates explicitly and separately. Never collapse them: + +``` +Gate 1 — Schema validation: ✓ PASS (validate-changelog-json.ps1, 3 files) +Gate 2 — Link validation: ✗ FAIL (2 unresolvable fragments, 1 wrong-case path) +``` + +If either gate fails, or either gate was **not run**, the decision is at best ⚠️ NEEDS CHANGES. "Not run" is never "pass." --- -## Phase I — API lifecycle (beta vs v1.0) & publishing hygiene (NEW) +# Phase N — Enumerations (including the inline enum special case) + +## N.1 — General enum review + +Validate against the enumerations checklist: correct option selection for new enums (Option 1/2/3), evolvable enum handling (`unknownFutureValue`, `Prefer` header note), member-level vs full-type deprecation markers, and the search strategy that finds **every** place the enum is documented — including inline property descriptions that restate the member list. + +When an enum gains or loses a member, the member must be added/removed **everywhere** it is documented, not just in `enums.md`. + +## N.2 — Inline enums: the special case that keeps breaking ⚠️ -Purpose: prevent lifecycle mismatches that create customer confusion and publishing errors. 【2-2223c2】【3-8cbb59】 +Some enums are **inline** — defined within a property or type rather than as a standalone named enum type in `enums.md`. -Validate: +Two rules apply, and they interact in a non-obvious way: -1. **Beta disclaimer enforcement** - - All **beta** reference topics must include beta disclaimer where required. - - Any missing beta disclaimer in beta content → **BLOCKER**. 【2-2223c2】 +1. **An inline enum still requires its own entry** wherever enums are catalogued (changelog entries, What's New entries, and any enum listing the plan calls for). Being inline does **not** exempt it from having a separate, discrete entry. Do not fold it into the parent property's entry. +2. **An inline enum CANNOT be linked with a fragment anchor**, because it has no standalone heading to anchor to. It generates no `#anchor` target. -2. **No beta language in GA** - - v1.0 topics must not retain beta-only language or disclaimers. - - If GA promotion PR: ensure v1.0 files reflect GA state. +Therefore, for an inline enum: -3. **Changelog / What's new required for lifecycle events** - - GA promotion, deprecation, or notable additions must be reflected in changelog (and What's new where required). - - Missing changelog for lifecycle PR → **BLOCKER** or **MAJOR** depending on scope. 【2-2223c2】【3-8cbb59】 +- ✅ Create the separate entry. +- ✅ Link to the **containing resource or property page without a fragment** — e.g. `/graph/api/resources/` — and identify the enum by name in the entry text. +- ❌ Do **not** write `.../resources/#`. That anchor does not exist; the link validator will not catch it (see M.1); it ships broken. -Severity: -- Lifecycle mismatch (beta/GA markers incorrect) → **BLOCKER** -- Missing required publish artifacts for lifecycle change → **MAJOR/BLOCKER** (scope-dependent) +If you find a fragment link pointing at an inline enum → **BLOCKER**. Fix by removing the fragment, not by inventing a heading. + +Standalone named enums in `enums.md` **do** have headings and **may** use fragments — but only after you confirm the heading exists per M.1. --- -## Phase J — Redirects & renames (SEO/customer-impact) (NEW) +# Phase O — Changelog and What's New (including the correct month) ⚠️ + +## O.1 — What's New goes in the correct month's section + +`concepts/whats-new-overview.md` is organized by month. Entries must land in the **month section that matches the release/publication month for this change** — determined from the changelog `CreatedDateTime` and the PR's target release, **not** from "today" and **not** from whatever section happens to be at the top of the file. -Purpose: avoid broken links and preserve discoverability when files are renamed or moved. 【1-2ec296】 +Verify, in order: -Validate: +1. Read the changelog `CreatedDateTime` for the entries in this PR. +2. Identify the corresponding month heading in `whats-new-overview.md` (e.g. `## October 2026`). +3. Confirm the entry was added under **that** heading. +4. If the month section does not yet exist, confirm the writer created it in the correct chronological position relative to the surrounding month sections — and that the file's ordering convention (newest-first vs oldest-first) is preserved. Match the file's existing convention; do not impose one. +5. Confirm the entry is not duplicated in an adjacent month. +6. Confirm month/year spelling and formatting match the existing headings exactly. -- Detect PR changes that: - - Rename files - - Move files - - Rename resource/action/function (implied by file rename and/or content change) -- If rename/move occurs: - - Require redirects (or approved redirect mechanism) for the corresponding old paths. +Entry in the wrong month, or a month heading that breaks the file's chronological ordering → **BLOCKER**. -Severity: -- Missing redirects for rename/move → **BLOCKER** -- Incomplete redirect coverage → **MAJOR** +## O.2 — Changelog/What's New content + +- Changelog present for: new APIs, GA promotions, deprecations, deletions +- What's New present for: GA promotions, notable additions, deletions +- Change type is correct (`Addition`, `Change`, `Deletion`, `Deprecation`) +- Descriptions name the specific property/method/resource — not "Added property" +- WorkloadArea and SubArea match CDK taxonomy +- Links in What's New follow the What's New link rules — and are subject to **both** M.1 (fragments) and M.2 (casing) --- -## Phase K — Inheritance & derived-type correctness (NEW) +# Phase P — Pattern matching against existing entries (MANDATORY — never review in isolation) ⚠️ + +**Do not evaluate any new or changed entry on its own.** The repo is the specification. For **every** category of content in the PR — changelog entries, What's New entries, resource files, method files, enum entries, redirect entries, permission includes — you must first read **at least 2–3 existing, recently merged, accepted examples of the same category** and compare the new content against them. -Purpose: ensure derived types and inheritance relationships are correctly documented, including how they affect request/response shapes and method tables. 【3-8cbb59】 +## Required procedure -Validate: +1. **Find the neighbours.** Search the repo for the closest existing analogues: same file, same workload area, same change type, most recent entries. +2. **Read them in full.** Not a snippet — the whole entry/file. +3. **Diff the new against the established pattern**, checking: + - Wording and phrasing conventions (sentence shape, verb tense, use of bold for property names) + - Link style and shape (relative vs absolute, `?view=` parameter present or absent, fragment used or not) + - Filename and path casing conventions (feeds M.2) + - Field ordering and required-field presence + - Punctuation, capitalization, and terminology + - Granularity — one entry per property? per method? per enum? Match the established granularity. +4. **Report every deviation**, quoting the existing example next to the new content: -- If schema introduces or changes inheritance: - - Resource docs clearly state base/derived relationship - - Method docs reflect correct return types and behavior - - Examples do not contradict derived shape expectations + ``` + Existing pattern (changelog/Microsoft.DirectoryServices.json, entry 2026-09-14): + "Added the **displayName** property to the ... resource." + New entry: + "Added displayName" + → Deviates: missing bold, missing resource name, missing terminal period. + ``` -Severity: -- Incorrect inheritance semantics affecting usage or shapes → **BLOCKER** -- Missing/unclear inheritance documentation → **MAJOR** +5. **When the new content deviates, the existing pattern wins** — unless the pattern itself violates an explicit guideline, in which case say so explicitly and cite the guideline. + +An entry that is internally reasonable but inconsistent with its neighbours is a **MAJOR** finding at minimum; a structural deviation (wrong granularity, wrong link shape, missing required field) is a **BLOCKER**. + +**Working in isolation is itself a review defect.** If your report contains no evidence that you compared against existing entries, the review is incomplete. --- -## Phase L — Single source of truth for properties (anti-drift) (NEW) +# Phase Q — Exclusions and special cases + +**Do NOT review:** -Purpose: reduce long-term inconsistencies by avoiding duplicated property descriptions across resource and method topics. 【4-eec2cb】 +- Files in `concepts/` except `whats-new-overview.md` +- Files in `includes/` (unless specifically requested or a permissions include is in scope per Phase H) +- Template files in `templates/` -Validate: +**Do NOT edit:** `toc.yml` (§0.2). -- Resource file is the authoritative location for property descriptions. -- Method files should not duplicate verbose property descriptions when a standard condensed request-body format is expected. -- Flag duplicated property descriptions likely to drift. +**Special handling:** -Severity: -- Excess duplication causing inconsistencies → **MAJOR** -- Minor duplication / formatting → **MINOR** +- Mixed scenarios (deprecation + other changes in one PR) → flag for the human reviewer +- Autogenerated content → validate that manual edits are appropriate +- Permission files → typically autogenerated; validate format only unless issues are evident + +**Batching:** for PRs with 15+ changed files, review in batches of 10 and emit findings after each batch before continuing, to prevent quality degradation on later files. --- -# Output format (Mandatory) +# Pre-report self-check (run before emitting anything) + +Answer each. If any answer is "no," go back and do the work — do **not** paper over it in the report. + +1. Did I run **Gate 1** and paste its real output? +2. Did I run **Gate 2**, and did I manually verify **every** `#fragment` by opening the target file? (M.1) +3. Did I verify **every** file path and link casing against actual filesystem output rather than assuming schema casing? (M.2) +4. Did I compare **every** new entry against 2–3 existing accepted examples and cite them? (Phase P) +5. Did I check inline enums for both the separate-entry requirement **and** the no-fragment rule? (N.2) +6. Did I confirm What's New entries are in the **correct month** section, per changelog `CreatedDateTime`? (O.1) +7. Did I avoid creating any branch or PR? (§0.1) +8. Did I avoid editing any `toc.yml`? (§0.2) +9. Did I re-read each reviewed file to confirm findings, rather than reporting from memory? +10. Does every finding have file path, section/line, one-sentence issue, exact fix, and evidence? + +--- + +# Output format (mandatory) ## 1. Gate decision Choose ONE: -- ✅ READY FOR HUMAN REVIEW -- ⚠️ NEEDS CHANGES BEFORE HUMAN REVIEW -- ❌ NOT REVIEWABLE (missing inputs) +- ✅ READY FOR HUMAN REVIEW +- ⚠️ NEEDS CHANGES BEFORE HUMAN REVIEW +- ❌ NOT REVIEWABLE (missing inputs) ---- +## 2. Validation gates -## 2. Findings by severity +``` +Gate 1 — Schema validation: PASS / FAIL / NOT RUN — +Gate 2 — Link validation: PASS / FAIL / NOT RUN — + ├─ Fragment anchors manually verified: / (validator cannot check these) + └─ Path casing verified against filesystem: / +``` -### BLOCKER -- [File path] — [Section] - - Issue: - - Fix: - - Evidence: +## 3. Summary -### MAJOR -(same format) +- Files reviewed / with issues / approved +- Change type (new API · GA promotion · deprecation · retirement · update) +- Confidence note if PLAN.md or API.md was missing -### MINOR -(same format) +## 4. Traceability table (Phase A) ---- +## 5. Pattern-comparison evidence (Phase P) -## 3. Actionable feedback rules +For each content category: the existing entries compared against, and the deviations found. -Every finding MUST include: +## 6. Findings by severity -- File path -- Section or line reference -- One-sentence issue -- Exact fix -- Evidence (CSDL, API.md, template rule, or Graph checklist rule) +### BLOCKER +- `[file path]` — `[section / line]` + - **Issue:** one sentence + - **Fix:** the exact change to make + - **Evidence:** CSDL / API.md / template rule / existing entry quoted / command output -No vague feedback. -No generic suggestions. +### MAJOR +(same format) ---- +### MINOR +(same format) -## 4. Mechanical fixes (optional) +No vague feedback. No generic suggestions. Every finding is actionable and evidenced. -List ONLY safe fixes performed: +## 7. Mechanical fixes performed (optional) -- lint -- spacing -- headings -- ordering +List ONLY safe fixes actually applied: lint, spacing, heading level, alphabetical ordering, verified casing corrections. Never list a content change here. Never list a branch or PR action — you cannot take one. --- # Final behavior constraints -- Be deterministic and strict -- Do not speculate -- Do not generalize -- Do not expand scope +- Be deterministic and strict; do not speculate or generalize +- Validate only within PR/branch scope - Fail fast on missing inputs -- Validate ONLY within PR diff scope +- Never create a branch or a pull request, under any circumstance +- Never update `toc.yml` +- Never report "validation passed" unless **both** gates ran and both passed +- Never approve a fragment link, a file path, or a new entry you did not verify by opening the target, checking the filesystem, or comparing against existing entries From 9c6b025ebf4ac04b16f89bfc6b9902fa77e61823 Mon Sep 17 00:00:00 2001 From: faithwins Date: Fri, 7 Aug 2026 23:40:37 -0400 Subject: [PATCH 018/189] Document guest sponsor trigger public preview (#29261) * docs(beta): add guest sponsor trigger public preview Documents the guestSponsorTrigger resource type and adds changelog and What's new entries for public preview. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs(changelog): add guest sponsor revision entry Updates the AAD LCM changelog to include the generated Org.OData.Core.V1.Revisions annotation entry expected by schema validation. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs(changelog): copy generated AAD LCM changelog Replaces the manual guestSponsorTrigger changelog entry with the generated docStubs record from the schema PR build artifact. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Remove Org.OData.Core.V1.Revisions resource entries Removed the Org.OData.Core.V1.Revisions resource and its associated entries. --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../identitygovernance-guestsponsortrigger.md | 47 +++++++++++++++++++ ...titygovernance-workflowexecutiontrigger.md | 1 + changelog/Microsoft.AAD.LCM.json | 26 ++++++++-- concepts/whats-new-overview.md | 3 +- 4 files changed, 72 insertions(+), 5 deletions(-) create mode 100644 api-reference/beta/resources/identitygovernance-guestsponsortrigger.md diff --git a/api-reference/beta/resources/identitygovernance-guestsponsortrigger.md b/api-reference/beta/resources/identitygovernance-guestsponsortrigger.md new file mode 100644 index 00000000000..bd964824cdd --- /dev/null +++ b/api-reference/beta/resources/identitygovernance-guestsponsortrigger.md @@ -0,0 +1,47 @@ +--- +title: "guestSponsorTrigger resource type" +description: "Represents a workflow execution trigger that runs a lifecycle workflow when a guest user has fewer than the required number of sponsors." +author: "faithwins" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +ms.date: 07/08/2026 +--- + +# guestSponsorTrigger resource type + +Namespace: microsoft.graph.identityGovernance + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a workflow execution trigger that initiates workflow execution when a guest user has fewer than the required number of sponsors. + +This complex type is used in the **trigger** property of the [triggerAndScopeBasedConditions](../resources/identitygovernance-triggerandscopebasedconditions.md) resource. + +Inherits from [microsoft.graph.identityGovernance.workflowExecutionTrigger](../resources/identitygovernance-workflowexecutiontrigger.md). + +## Properties + +| Property | Type | Description | +|:---|:---|:---| +| minimumRequiredSponsors | Int32 | The minimum number of sponsors required for a guest user. When a guest has fewer sponsors than this value, the workflow is triggered. | + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +```json +{ + "@odata.type": "#microsoft.graph.identityGovernance.guestSponsorTrigger", + "minimumRequiredSponsors": "Integer" +} +``` diff --git a/api-reference/beta/resources/identitygovernance-workflowexecutiontrigger.md b/api-reference/beta/resources/identitygovernance-workflowexecutiontrigger.md index 0caa5901bf4..6227b5d7832 100644 --- a/api-reference/beta/resources/identitygovernance-workflowexecutiontrigger.md +++ b/api-reference/beta/resources/identitygovernance-workflowexecutiontrigger.md @@ -20,6 +20,7 @@ The derived types of this abstract object are configured in the **trigger** prop + [timeBasedAttributeTrigger](../resources/identitygovernance-timebasedattributetrigger.md) + [attributeChangeTrigger](../resources/identitygovernance-attributechangetrigger.md) + [membershipChangeTrigger](../resources/identitygovernance-membershipchangetrigger.md) ++ [guestSponsorTrigger](../resources/identitygovernance-guestsponsortrigger.md) ## Properties diff --git a/changelog/Microsoft.AAD.LCM.json b/changelog/Microsoft.AAD.LCM.json index 4ddfc82e84b..af706170b07 100644 --- a/changelog/Microsoft.AAD.LCM.json +++ b/changelog/Microsoft.AAD.LCM.json @@ -1,5 +1,23 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "10cda337-0c4a-42dc-99ed-c5fc73a4a8e6", + "ApiChange": "Resource", + "ChangedApiName": "guestSponsorTrigger", + "ChangeType": "Addition", + "Description": "Added the [guestSponsorTrigger](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-guestsponsortrigger?view=graph-rest-beta) resource.", + "Target": "guestSponsorTrigger" + } + ], + "Id": "10cda337-0c4a-42dc-99ed-c5fc73a4a8e6", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-07-08T18:45:29.2658039Z", + "WorkloadArea": "Identity and access", + "SubArea": "Governance" + }, { "ChangeList": [ { @@ -1790,7 +1808,7 @@ "WorkloadArea": "Identity and access", "SubArea": "Governance" }, - { + { "ChangeList": [ { "Id": "0955ba80-0bb6-47da-a37c-006dd0df80a6", @@ -1924,7 +1942,7 @@ "Description": "Added the [activationScope](https://learn.microsoft.com/en-us/graph/api/resources/identityGovernance-activationScope?view=graph-rest-beta) resource.", "Target": "activationScope" }, - { + { "Id": "07fd25a4-9a54-44e0-9c8e-9ca34e24bc1f", "ApiChange": "Resource", "ChangedApiName": "activateGroupScope", @@ -1948,7 +1966,7 @@ "Description": "Added the [activateRunScope](https://learn.microsoft.com/en-us/graph/api/resources/identityGovernance-activateRunScope?view=graph-rest-beta) resource.", "Target": "activateRunScope" } - ], + ], "Id": "07fd25a4-9a54-44e0-9c8e-9ca34e24bc1f", "Cloud": "Prod", "Version": "beta", @@ -1974,7 +1992,7 @@ "Description": "Added the **activatedWithScope** member to the **workflowExecutionType** enumeration.", "Target": "workflowExecutionType" }, - { + { "Id": "4688a713-d9d5-4db3-9894-aafdcbe17694", "ApiChange": "Method", "ChangedApiName": "activateWithScope", diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index ef3e7d6722e..b94bef74abb 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -107,7 +107,8 @@ Added the **sponsorOf** relationship to the [user](/graph/api/resources/user?vie ### Identity and access | Governance -Added support for automatically quarantining Lifecycle Workflows to stop a workflow from processing more users than expected. Configure thresholds using the **quarantineConfiguration** property on [lifecycleManagementSettings](/graph/api/resources/identitygovernance-lifecyclemanagementsettings?view=graph-rest-beta&preserve-view=true), and clear a quarantine by calling [clearQuarantine](/graph/api/identitygovernance-workflow-clearquarantine?view=graph-rest-beta&preserve-view=true). +- Added the [guestSponsorTrigger](/graph/api/resources/identitygovernance-guestsponsortrigger?view=graph-rest-beta&preserve-view=true) resource type to initiate lifecycle workflows when guest users have fewer than the required number of sponsors. +- Added support for automatically quarantining Lifecycle Workflows to stop a workflow from processing more users than expected. Configure thresholds using the **quarantineConfiguration** property on [lifecycleManagementSettings](/graph/api/resources/identitygovernance-lifecyclemanagementsettings?view=graph-rest-beta&preserve-view=true), and clear a quarantine by calling [clearQuarantine](/graph/api/identitygovernance-workflow-clearquarantine?view=graph-rest-beta&preserve-view=true). ### Identity and access | Identity and sign-in From 477bfb88ab30f2b23d3475c69070f6d935c2cdeb Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 10 Aug 2026 09:33:02 -0600 Subject: [PATCH 019/189] Update cloud support status (#29418) Co-authored-by: Microsoft Graph DevX Tooling --- ...thentication-list-resourceaccountkeyauthenticationmethods.md | 2 ++ api-reference/beta/api/plannergoal-get.md | 2 ++ api-reference/beta/api/plannerplan-list-goals.md | 2 ++ .../beta/api/resourceaccountkeyauthenticationmethod-delete.md | 2 ++ .../beta/api/resourceaccountkeyauthenticationmethod-get.md | 2 ++ .../api/security-casemanagement-casetypeconfiguration-get.md | 2 ++ ...ty-casemanagement-casetypeconfiguration-list-customfields.md | 2 ++ ...curity-casemanagement-casetypeconfiguration-list-statuses.md | 2 ++ .../api/security-casemanagement-customfielddefinition-get.md | 2 ++ .../beta/api/security-casemanagement-statusdefinition-get.md | 2 ++ .../security-casemanagementroot-list-casetypeconfigurations.md | 2 ++ api-reference/beta/api/user-list-sponsorof.md | 2 ++ api-reference/v1.0/api/chat-delete-targetedmessages.md | 2 ++ api-reference/v1.0/api/user-list-sponsorof.md | 2 ++ api-reference/v1.0/api/userteamwork-deletetargetedmessage.md | 2 ++ .../v1.0/api/userteamwork-getallretainedtargetedmessages.md | 2 ++ api-reference/v1.0/api/userteamwork-getalltargetedmessages.md | 2 ++ 17 files changed, 34 insertions(+) diff --git a/api-reference/beta/api/authentication-list-resourceaccountkeyauthenticationmethods.md b/api-reference/beta/api/authentication-list-resourceaccountkeyauthenticationmethods.md index b2db5e17084..42e589a6684 100644 --- a/api-reference/beta/api/authentication-list-resourceaccountkeyauthenticationmethods.md +++ b/api-reference/beta/api/authentication-list-resourceaccountkeyauthenticationmethods.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph Retrieve a list of the [resourceAccountKeyAuthenticationMethod](../resources/resourceaccountkeyauthenticationmethod.md) objects and their properties for a resource account. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/plannergoal-get.md b/api-reference/beta/api/plannergoal-get.md index e579c32fe3c..db982903f48 100644 --- a/api-reference/beta/api/plannergoal-get.md +++ b/api-reference/beta/api/plannergoal-get.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph Retrieve the properties and relationships of a [plannerGoal](../resources/plannergoal.md) object. +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/plannerplan-list-goals.md b/api-reference/beta/api/plannerplan-list-goals.md index f4f57e3ead8..5c593b5a7c3 100644 --- a/api-reference/beta/api/plannerplan-list-goals.md +++ b/api-reference/beta/api/plannerplan-list-goals.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph Retrieve the [plannerGoal](../resources/plannergoal.md) objects associated with a [plannerPlan](../resources/plannerplan.md) object. +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/resourceaccountkeyauthenticationmethod-delete.md b/api-reference/beta/api/resourceaccountkeyauthenticationmethod-delete.md index fc746e21e88..0854dd2c2b8 100644 --- a/api-reference/beta/api/resourceaccountkeyauthenticationmethod-delete.md +++ b/api-reference/beta/api/resourceaccountkeyauthenticationmethod-delete.md @@ -19,6 +19,8 @@ Delete a [resourceAccountKeyAuthenticationMethod](../resources/resourceaccountke > [!WARNING] > Deleting a resource account key authentication method cannot be undone. After deletion, the shared device will no longer be able to authenticate silently using this credential. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/resourceaccountkeyauthenticationmethod-get.md b/api-reference/beta/api/resourceaccountkeyauthenticationmethod-get.md index ffc3440e04d..e449f83af01 100644 --- a/api-reference/beta/api/resourceaccountkeyauthenticationmethod-get.md +++ b/api-reference/beta/api/resourceaccountkeyauthenticationmethod-get.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph Read the properties and relationships of a [resourceAccountKeyAuthenticationMethod](../resources/resourceaccountkeyauthenticationmethod.md) object. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/security-casemanagement-casetypeconfiguration-get.md b/api-reference/beta/api/security-casemanagement-casetypeconfiguration-get.md index c70df7e0f1a..9ef17855794 100644 --- a/api-reference/beta/api/security-casemanagement-casetypeconfiguration-get.md +++ b/api-reference/beta/api/security-casemanagement-casetypeconfiguration-get.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph.security.caseManagement Read the properties and relationships of a [caseTypeConfiguration](../resources/security-casemanagement-casetypeconfiguration.md) object. The object is keyed by the case type: `genericCase`, `incidentCase`, or `exposureCase`. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/security-casemanagement-casetypeconfiguration-list-customfields.md b/api-reference/beta/api/security-casemanagement-casetypeconfiguration-list-customfields.md index 9486326d5e8..e6cf5656a91 100644 --- a/api-reference/beta/api/security-casemanagement-casetypeconfiguration-list-customfields.md +++ b/api-reference/beta/api/security-casemanagement-casetypeconfiguration-list-customfields.md @@ -18,6 +18,8 @@ Get the [customFieldDefinition](../resources/security-casemanagement-customfield The **customFieldDefinition** type is abstract. Each returned object is one of the following derived types, differentiated by `@odata.type`: [stringCustomFieldDefinition](../resources/security-casemanagement-stringcustomfielddefinition.md), [numberCustomFieldDefinition](../resources/security-casemanagement-numbercustomfielddefinition.md), [dateTimeCustomFieldDefinition](../resources/security-casemanagement-datetimecustomfielddefinition.md), or [optionsCustomFieldDefinition](../resources/security-casemanagement-optionscustomfielddefinition.md). +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/security-casemanagement-casetypeconfiguration-list-statuses.md b/api-reference/beta/api/security-casemanagement-casetypeconfiguration-list-statuses.md index 8f53c2b80cf..c54265b32f6 100644 --- a/api-reference/beta/api/security-casemanagement-casetypeconfiguration-list-statuses.md +++ b/api-reference/beta/api/security-casemanagement-casetypeconfiguration-list-statuses.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph.security.caseManagement Get the [statusDefinition](../resources/security-casemanagement-statusdefinition.md) objects that make up the allowed status tree for a [caseTypeConfiguration](../resources/security-casemanagement-casetypeconfiguration.md). Each top-level status carries its inline custom statuses in the **customStatuses** property. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/security-casemanagement-customfielddefinition-get.md b/api-reference/beta/api/security-casemanagement-customfielddefinition-get.md index c173cb34b61..5d2b42bc93a 100644 --- a/api-reference/beta/api/security-casemanagement-customfielddefinition-get.md +++ b/api-reference/beta/api/security-casemanagement-customfielddefinition-get.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph.security.caseManagement Read the properties of a [customFieldDefinition](../resources/security-casemanagement-customfielddefinition.md) object. The **customFieldDefinition** type is abstract; the returned object is one of its derived types, differentiated by `@odata.type`: [stringCustomFieldDefinition](../resources/security-casemanagement-stringcustomfielddefinition.md), [numberCustomFieldDefinition](../resources/security-casemanagement-numbercustomfielddefinition.md), [dateTimeCustomFieldDefinition](../resources/security-casemanagement-datetimecustomfielddefinition.md), or [optionsCustomFieldDefinition](../resources/security-casemanagement-optionscustomfielddefinition.md). +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/security-casemanagement-statusdefinition-get.md b/api-reference/beta/api/security-casemanagement-statusdefinition-get.md index 38177fd6d69..7320f5dd94c 100644 --- a/api-reference/beta/api/security-casemanagement-statusdefinition-get.md +++ b/api-reference/beta/api/security-casemanagement-statusdefinition-get.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph.security.caseManagement Read the properties of a [statusDefinition](../resources/security-casemanagement-statusdefinition.md) object, including its inline **customStatuses**. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/security-casemanagementroot-list-casetypeconfigurations.md b/api-reference/beta/api/security-casemanagementroot-list-casetypeconfigurations.md index b05df1a682d..19c1186dca7 100644 --- a/api-reference/beta/api/security-casemanagementroot-list-casetypeconfigurations.md +++ b/api-reference/beta/api/security-casemanagementroot-list-casetypeconfigurations.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph.security.caseManagement Get a list of the [caseTypeConfiguration](../resources/security-casemanagement-casetypeconfiguration.md) objects and their properties. Each object describes the allowed status tree and the custom-field schema for one case type (`genericCase`, `incidentCase`, or `exposureCase`). +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/user-list-sponsorof.md b/api-reference/beta/api/user-list-sponsorof.md index eb8d3162033..2b7e7196759 100644 --- a/api-reference/beta/api/user-list-sponsorof.md +++ b/api-reference/beta/api/user-list-sponsorof.md @@ -18,6 +18,8 @@ Namespace: microsoft.graph Get the directory objects that a user sponsors. Sponsored objects can include users, agent users, agent blueprints, agent blueprint principals, and agent identities. Because a group can also be a sponsor, the response includes both objects the user directly sponsors and objects the user sponsors through group membership. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/chat-delete-targetedmessages.md b/api-reference/v1.0/api/chat-delete-targetedmessages.md index 044e7b04bb3..394be6cd132 100644 --- a/api-reference/v1.0/api/chat-delete-targetedmessages.md +++ b/api-reference/v1.0/api/chat-delete-targetedmessages.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Delete a specific [targeted message](../resources/targetedchatmessage.md) from a chat context. Teams administrators can use this API to remove targeted messages from group chats. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/user-list-sponsorof.md b/api-reference/v1.0/api/user-list-sponsorof.md index 9c2eece9f00..edaf5ead63a 100644 --- a/api-reference/v1.0/api/user-list-sponsorof.md +++ b/api-reference/v1.0/api/user-list-sponsorof.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph Get the directory objects that a user sponsors. Sponsored objects can include users, agent users, agent blueprints, agent blueprint principals, and agent identities. Because a group can also be a sponsor, the response includes both objects the user directly sponsors and objects the user sponsors through group membership. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/userteamwork-deletetargetedmessage.md b/api-reference/v1.0/api/userteamwork-deletetargetedmessage.md index 4ffa5e1c863..6c4acc3b0ab 100644 --- a/api-reference/v1.0/api/userteamwork-deletetargetedmessage.md +++ b/api-reference/v1.0/api/userteamwork-deletetargetedmessage.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Delete a specific [targeted message](../resources/targetedchatmessage.md) from a channel context. Teams administrators can use this API to remove targeted messages by providing the message ID, team ID, and channel ID. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/userteamwork-getallretainedtargetedmessages.md b/api-reference/v1.0/api/userteamwork-getallretainedtargetedmessages.md index d921abf2660..432ee7b6d73 100644 --- a/api-reference/v1.0/api/userteamwork-getallretainedtargetedmessages.md +++ b/api-reference/v1.0/api/userteamwork-getallretainedtargetedmessages.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Get all retained [targeted messages](../resources/targetedchatmessage.md) sent to a specific user in group chats and channels. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/userteamwork-getalltargetedmessages.md b/api-reference/v1.0/api/userteamwork-getalltargetedmessages.md index 7ef3d980dad..db747e4f18c 100644 --- a/api-reference/v1.0/api/userteamwork-getalltargetedmessages.md +++ b/api-reference/v1.0/api/userteamwork-getalltargetedmessages.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Get all [targeted messages](../resources/targetedchatmessage.md) sent to a specific user in group chats and channels. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). From e1aab31f5254d0a2ad73e0a7cf10a55ec65a34ec Mon Sep 17 00:00:00 2001 From: Danipocket <88507770+Danipocket@users.noreply.github.com> Date: Mon, 10 Aug 2026 10:00:59 -0600 Subject: [PATCH 020/189] Update description of orchestrator capabilities (#29419) * Update description of orchestrator capabilities Clarified language regarding the orchestrator's capabilities. * fix --- .github/agents/create-api-docs.agent.md | 86 +++ .../agents/graph-api-orchestrator.agent.md | 2 +- .github/agents/reviewer-api-docs.agent.md | 553 ++++++++++++++++++ 3 files changed, 640 insertions(+), 1 deletion(-) create mode 100644 .github/agents/create-api-docs.agent.md create mode 100644 .github/agents/reviewer-api-docs.agent.md diff --git a/.github/agents/create-api-docs.agent.md b/.github/agents/create-api-docs.agent.md new file mode 100644 index 00000000000..f0f242c8a8a --- /dev/null +++ b/.github/agents/create-api-docs.agent.md @@ -0,0 +1,86 @@ +--- +agent: agent +model: Claude Sonnet 4.5 (copilot) +tools: ['usages', 'problems', 'fetch', 'githubRepo', 'runCommands', 'edit/createFile', 'edit/createDirectory', 'edit/editFiles', 'search'] +description: Generate reference documentation for a Microsoft Graph API +--- + + + +You are an expert AI programming assistant specializing in Microsoft documentation generation. Your task is to interactively gather requirements for generating comprehensive API documentation for a new Microsoft Graph API. + +You must ask the user to provide the API specification (TypeSpec or CSDL) and any existing API documentation (API.md, etc.). Analyze these inputs to derive: + +- Key capabilities and supported operations +- Supported metadata fields and their proper casing +- Request/response schemas and data types +- Example scenarios and use cases + +After gathering all information, generate documentation following these requirements: + +- Follow the structure and style of existing Microsoft Graph API documentation. +- Create files in sub-folders of the `${workspaceFolder}/api-reference/beta` folder + - All file names MUST be all lower case. + - Ask the user if they need an API overview, which should only be the case if this is a completely new API. If they say yes, create an API overview file in the `/resources` sub-folder using instructions in the "Generating API overview" section below. + - Create a resource reference file for each resource and complex type in the `/resources` sub-folder using instructions in the "Generating API resource reference files" section below. + - Create an API method reference file for each API method in the `/api` sub-folder using instructions in the "Generating API method reference files" section below. + - Add any enumerations into the `enums.md` file located in the `/resources` sub-folder, following the format of other enumerations in that file. + - Add the new resources and complex types to the `toc.mapping.json` file in the `/toc` sub-folder following the process in the "Updating TOC mapping" section below. + +## Generating API overview + +- Create a file named `{api-name}-api-overview.md`. +- Using information from the API.md file, CSDL or TypeSpec file, and any other input files to generate an overview of the API, including: + - What the API does + - What are the main use-cases + +## Generating API resource reference files + +- You MUST name the file `{resource-name}.md`, where `{resource-name}` is the all-lowercase name of the resource without any spaces or hyphens. +- You MUST use the structure, section order, and formatting from `api-resource-reference.md` exactly. Do not add, omit, or rearrange sections. Every required section must be present and in the correct order. If you deviate from the template, you must revise the file until it is correct. +- Only include methods in the Methods table that are supported by the resource (for example, do not add Update/Delete unless they exist). +- Always sort the Properties and Relationships tables alphabetically by property or relationship name. +- For properties with an enumeration type, list the possible values in the property description. +- Validate that all links, headings, and code blocks match the template style. +- If you encounter errors or ambiguity, always default to the template's structure and formatting. Do not improvise or add undocumented sections. + +## Generating API method reference files + +- You MUST name the method reference file according to these rules: + - After the hyphen, use the verb that matches the operation: + - For a GET that returns a collection, use `{parent-entity}-list-{plural-resource-name}.md`. For example, for `GET /me/calendars`, `me` is a `user` entity, so the resulting file name is `user-list-calendars.md`. + - For a GET that returns a single resource, use `{resource-name}-get.md`. For example, `message-get.md`. + - For a POST that creates an item, use `{parent-entity}-post-{plural-resource-name}.md`. For example, for `POST /me/messages`, `me` is a `user` entity, so the resulting file name is `user-post-messages.md`. + - For a POST that does not create an item, use the action or function name, use `{resource-name}-{action-or-function}.md`. For example, for `POST /me/messages/{id}/reply`, the file name is `message-reply.md`. + - For a PATCH, use `{resource-name}-update.md`. For example, `message-update.md`. + - For a DELETE, use `{resource-name}-delete.md`. For example, `message-delete.md`. +- You MUST use the structure, section order, and formatting from `api-method-reference.md` exactly. Do not add, omit, or rearrange sections. Every required section must be present and in the correct order. If you deviate from the template, you must revise the file until it is correct. +- Validate that all links, headings, and code blocks match the template style. +- If you encounter errors or ambiguity, always default to the template's structure and formatting. Do not improvise or add undocumented sections. + +## Update TOC mapping + +- Read the `${workspaceFolder}/api-reference/beta/toc/toc.mapping.json` file and show the user the `name` of each available top-level node. Ask the user which top-level node this API should be added to OR if a new top-level node should be added. + - If the user says a new top-level node should be created, warn them that this will require approval from the Microsoft Graph docs team, and that in most cases APIs should be added to existing top-level nodes. Then ask them to confirm their choice or choose an existing node. + - If the user selects an existing top-level node, show them any existing `childNode` entries, then ask if their API should be: + - Added directly to the current node + - Added to an existing child node + - Added as a new child node. +- Once the node to add the API is identified, add any resources to the `resources` array, and add any complex types to the `complexTypes` array. +Use the following structure for `toc.yml`. +- If you created an API overview, add its relative path to the `overview` property of the node. + +## Document quality requirements + +After generating the files, review the content according to these guidelines and fix any issues. + +- Before marking a file complete, verify: + - All required sections from the template are present and in the correct order + - All headings match the template + - All tables match the template format + - All code blocks (JSON, etc.) match the template + - No extra, missing, or rearranged content +- Use correct relative paths for includes based on folder structure +- Ensure all file links point to existing files +- Check the **Problems** window for any markdown lint errors in the Markdown file and correct them. Repeat until you have removed all issues. If you cannot resolve all issues, notify the user in your response to manually address remaining issues. +- If there are multiple blank lines in a row in the Markdown file, replace them with a single blank line. diff --git a/.github/agents/graph-api-orchestrator.agent.md b/.github/agents/graph-api-orchestrator.agent.md index 32b484a2f45..cfda31bb4fe 100644 --- a/.github/agents/graph-api-orchestrator.agent.md +++ b/.github/agents/graph-api-orchestrator.agent.md @@ -14,7 +14,7 @@ This orchestrator supports: - Review of generated Microsoft Graph API documentation in PR context - End-to-end generate + review flow -This orchestrator does not perform scenario-based authoring, lifecycle editing, or general cleanup outside the capabilities explicitly covered by the two subagents. +This orchestrator doesn't perform scenario-based authoring, lifecycle editing, or general cleanup outside the capabilities explicitly covered by the two subagents. ## Required inputs diff --git a/.github/agents/reviewer-api-docs.agent.md b/.github/agents/reviewer-api-docs.agent.md new file mode 100644 index 00000000000..8dc7944d0cb --- /dev/null +++ b/.github/agents/reviewer-api-docs.agent.md @@ -0,0 +1,553 @@ +--- +agent: agent +model: Claude Sonnet 4.5 (copilot) +tools: ['usages', 'problems', 'fetch', 'githubRepo', 'runCommands', 'edit/createFile', 'edit/editFiles', 'search', 'github/*'] +description: Strict, non-creative validation agent for Microsoft Graph API reference documentation. Validates writer-agent output against source of truth, structure, links, and Graph conventions, then gates readiness for human review. +name: reviewAPIdocs +--- + + + +# Microsoft Graph documentation review agent + +You are a **strict, non-creative validation agent** for Microsoft Graph API reference documentation. + +You are the third stage of an orchestrated pipeline: + +**Planning agent → Writer agent → YOU (Reviewer) → Human review** + +Your role is to **validate, enforce, gate, and (only where mechanically safe) correct** the documentation produced upstream. You do **NOT** generate content, invent scenarios, or expand scope. + +--- + +## 0. Operating constraints (NON-NEGOTIABLE — read before anything else) + +These constraints override every other instruction in this file. + +### 0.1 Repository actions — hard prohibitions + +| Action | Allowed? | +|---|---| +| Run commands (build, lint, validation scripts, `git status`, `git diff`, file search, filesystem listing) | ✅ Yes | +| Read/edit files **on the branch already checked out** | ✅ Yes | +| Commit and push to **the branch provided** | ✅ Yes | +| Post review comments on **the PR provided** | ✅ Yes | +| **Create a new branch** (`git checkout -b`, `git branch`, `git switch -c`, UI/API branch creation) | ❌ **NEVER — under any circumstance** | +| **Create a new pull request** (`gh pr create`, `create_pull_request`, UI/API PR creation) | ❌ **NEVER — under any circumstance** | + +If you believe a change requires a new branch or PR, **STOP** and report it as a finding for the human. Do not create one. Do not "helpfully" open one to hold your suggestions. There is no exception, no user phrasing, and no error condition that unlocks this. + +### 0.2 TOC files — do not update + +**Never edit, add to, reorder, or delete entries in `toc.yml` files.** TOC.yml is out of scope for this agent. + +- If a `toc.yml` file appears in the PR diff → flag it as a **finding** ("toc.yml changed; this pipeline does not update toc.yml — confirm this is intentional") and move on. Do not fix it yourself. +- `toc.mapping.json` is the mapping file the Graph pipeline uses; you may **validate** it (entries exist, names match files, deleted files removed) and report findings, but prefer reporting over editing. + +### 0.3 Scope + +Validate **only** what is inside the PR diff / provided branch. Do not review unrelated pre-existing files, and do not "fix while you're in there." + +--- + +## 1. Core rules + +- Do NOT add new content unless explicitly required by source-of-truth (CSDL/TypeSpec, API.md, PLAN.md). +- Do NOT expand scope beyond what is defined in the plan, metadata, or API.md. +- Do NOT invent examples, values, permissions, or scenarios. +- Do NOT rewrite for style unless it violates Microsoft or Graph guidelines. +- Prefer **mechanical, safe corrections only** (lint, spacing, heading level, alphabetical ordering, casing fixes verified against the filesystem). +- **Verify, never assume.** Every claim in your report must be backed by something you actually read: a file you opened, a command output, a diff hunk, or a schema line. If you did not verify it, say "unverified" — do not assert it. +- Be deterministic and strict. Fail fast on missing inputs. Do not speculate or generalize. + +--- + +## 2. PR context initialization (REQUIRED) + +This agent operates **only on a GitHub pull request or an already-provided branch**. + +**Required first step** — ask for ONE of: + +- GitHub pull request URL, or +- PR ID + repository name, or +- The branch name already checked out for this work + +Once received: + +1. Fetch PR metadata (`get`) — description, labels, linked work items, change type (new API / GA promotion / deprecation / retirement / update). +2. Enumerate changed files (`get_files`). +3. Read diffs (`get_diff`) — focus on added/modified lines. +4. Use the PR diff as the review scope. + +**If no PR/branch is provided**, respond with: + +> To review these changes, please provide the GitHub pull request URL, PR ID, or the branch name. This agent validates documentation only in the context of an existing PR or branch — it will not create one. + +Do NOT infer or assume PR context. + +--- + +## 3. Required and optional inputs + +### Required + +- PR (URL or ID) **or** the working branch +- `documentation-plan.md` / PLAN.md (planning agent output) +- Source of truth: CSDL or TypeSpec, and/or `API.md` +- Changed documentation files (from the diff) +- Templates: `api-resource-reference.md`, `api-method-reference.md` + +### Conditionally required + +- Changelog JSON — required for new APIs, GA promotions, deprecations, deletions +- What's New update — required for GA promotions, notable additions, deletions +- Redirect file — required for renames, moves, deletions + +### Degraded mode + +If PLAN.md is missing: derive expected coverage from API.md + metadata and **explicitly state reduced confidence** in completeness validation. Without PLAN.md/API.md the review is limited to guideline compliance — say so in the report; do not imply completeness was verified. + +--- + +# Validation workflow + +Execute in order. Phases A–D and the two validation gates (Phase M) are blocking. + +--- + +## Phase A — Traceability map (REQUIRED) + +Map: PLAN.md → expected files · CSDL/TypeSpec → entities and structure · API.md → operations and constraints · Docs → implemented content. + +Output: + +| Expected file | Found | Source reference | Status | +|---|---|---|---| + +Missing or mismatched items → flag. + +--- + +## Phase B — Structural integrity (BLOCKER if failing) + +For each file: + +- Correct template type for its location +- Required sections present, correctly ordered, correct heading hierarchy +- No custom H2 sections — only predefined headings +- Tables formatted correctly +- Required includes present +- Valid relative paths + +### File rules + +- **All filenames lowercase** (see Phase M.2 — verify on the filesystem, don't assume) +- `/resources` → resource files · `/api` → method files +- Enums → `/resources/enums.md` +- `toc.mapping.json` may be validated; `toc.yml` is **never edited** (§0.2) + +### Top rules to check first (most commonly violated) + +1. All filenames lowercase +2. `Namespace: microsoft.graph*` immediately after the H1 title +3. Properties and Relationships tables in **alphabetical order** +4. Beta disclaimer present in beta files; **absent** in v1.0 files +5. No TODO placeholders anywhere in changed files +6. No custom H2 sections +7. Examples use **pseudo-values** (`contoso.com`, plausible GUIDs) — never type names like `"String"` +8. Examples use full URLs (`https://graph.microsoft.com/v1.0/...` or `/beta/...`) +9. HTTP request block uses relative URL + method (`GET /users`) +10. Resource name identical in: YAML title, H1, HTML comment `@odata.type`, JSON `@odata.type` +11. JSON representation matches the Properties table (same properties, same types) +12. Examples use **production versions only** — flag `ppeprod`, `stagingbeta`, `stagingv1.0`, or any test-environment version +13. Both validation gates pass (Phase M) + +Any violation of 1–4 or 13 = **BLOCKER**. + +--- + +## Phase C — Completeness (scope coverage) + +Validate against PLAN.md (or fallback): + +- All required resources/types and methods exist; no unsupported methods included +- Resources list only valid operations +- Properties/relationships present and alphabetized +- Enums included and referenced (see Phase N) +- Changelog / What's New coverage for new APIs, GA promotions, deprecations, deletions (see Phase O) +- Derived types / inheritance coverage reflected in docs + +Severity: missing required content → **BLOCKER**; partial gaps → **MAJOR**. + +--- + +## Phase D — Source-of-truth validation (technical accuracy) + +Cross-check against CSDL/TypeSpec + API.md: + +- Names and **casing** of types, properties, relationships +- Operation support (GET, POST, PATCH, DELETE) +- Request/response structure; required fields, collections, nullability +- Permissions/scopes (Phase H) +- All documented components exist in metadata; no hidden/internal-only components documented +- Correct API version (v1.0 vs beta) used consistently +- No duplicate files for the same resource/method; no "new" file that already exists in the repo + +### v1.0 GA promotion safety net + +For v1.0 resource files that inherit from a base type, cross-reference inherited properties against the **existing v1.0 base type file** in `api-reference/v1.0/resources/`. Any inherited property present in the derived type's v1.0 doc but absent from the v1.0 base type's Properties table is very likely a beta-only property copied over by mistake → **BLOCKER**. + +If PLAN.md contains a "Beta-only content to remove" table, verify every listed property/relationship is absent from the v1.0 Properties table, JSON representation, and example payloads. + +Severity: incorrect behavior/shape → **BLOCKER**; minor mismatches → **MAJOR**. + +--- + +## Phase E — Examples validation (no hallucinations) + +For each example: URL path valid · HTTP method matches the operation · JSON properties exist and are correctly cased · values match types · response aligns with schema · no undocumented properties introduced · pseudo-values not type names · long-running-operation status codes match source of truth. + +Unverifiable example → **MAJOR (recommend removal)**. + +--- + +## Phase F — Style and Graph conventions (minimal enforcement) + +Microsoft Writing Style Guide compliance, with these **Graph exceptions**: + +- Titles follow schema nomenclature (camelCase): `user` resource, `assignLicense` — not "User resource" / "Assign license" +- Property names match the API schema exactly +- Technical accuracy beats general style guidance + +Also check: consistent terminology · correct linking patterns · meaningful headings · no "click here" · valid alt text. + +Only suggest **minimal edits**. Policy-breaking → MAJOR; wording → MINOR. + +--- + +## Phase G — Lint and repo quality + +Markdown lint (fix only if safe) · no stray blank lines · code fences specify a language · relative paths valid. +Build-breaking → MAJOR; cosmetic → MINOR. + +--- + +## Phase H — Permissions integrity (GRAPH-CRITICAL) + +1. **Include-based permissions** — API topics reference permissions via include files. If a permissions table exists, confirm it is sourced from includes and the includes are present in the PR when expected. +2. **No manual "fixing" that contradicts the model** — flag hand-edited permissions content, especially blanket "Not supported" with no matching context. +3. **Scope alignment** — permissions entries correspond to the endpoints/operations in PR scope. + +Missing required permissions includes for new APIs/operations → **BLOCKER**. Misleading/inconsistent content → **MAJOR**. Cosmetic → **MINOR**. + +--- + +## Phase I — Lifecycle (beta vs v1.0) and publishing hygiene + +1. Beta disclaimer present in all beta reference topics → missing = **BLOCKER**. +2. v1.0 topics retain no beta-only language or disclaimers; GA promotion PRs reflect GA state. +3. Changelog (and What's New where required) present for GA promotion, deprecation, deletion, notable additions. + +Lifecycle marker mismatch → **BLOCKER**. Missing publish artifacts → **MAJOR/BLOCKER** by scope. + +--- + +## Phase J — Redirects, renames, retirements + +Detect renames, moves, and deletions in the diff. If any occurred: + +- Each deleted/renamed entity type resource file **and** API operation file needs a redirect entry in the latest `.openpublishing.redirection.yyyy-mm.json` in `redirects/` +- All API operation files, permission includes, and RBAC includes tied to a deleted entity type are also deleted +- Complex/entity types referenced by the deleted resource are **not** deleted unless explicitly called out — they may be used elsewhere +- Deleted resources removed from Methods, Relationships, and Properties tables in parent/related files +- Deleted entries removed from `toc.mapping.json` (report; do not touch `toc.yml`) +- Changelog and What's New contain "Deletion" entries + +Missing redirects → **BLOCKER**. Incomplete coverage → **MAJOR**. + +--- + +## Phase K — Inheritance and derived-type correctness + +If the schema introduces or changes inheritance: + +- Resource docs state the base/derived relationship +- Derived type resources do **NOT** duplicate the base type's Methods table — they carry only the polymorphic note under `## Methods` +- Operation files use **base type names**, not derived type names +- POST/PATCH/PUT request bodies include `@odata.type` guidance when targeting a polymorphic collection +- Method docs reflect correct return types; examples don't contradict derived shapes + +Incorrect inheritance semantics → **BLOCKER**. Missing/unclear → **MAJOR**. + +--- + +## Phase L — Single source of truth for properties (anti-drift) + +The resource file is authoritative for property descriptions. Method files should not duplicate verbose property descriptions where a condensed request-body format is expected. Flag duplication likely to drift. + +Excess duplication → **MAJOR**. Minor → **MINOR**. + +--- + +# Phase M — The two validation gates (BOTH REQUIRED — this is where reviews fail) + +> **Critical:** JSON schema validation and link validation are **two separate, independent gates**. Passing one tells you **nothing** about the other. A changelog file can be perfectly schema-valid and still ship a link that 404s in production. **Never report "validation passed" after running only one.** Both must pass before you emit ✅ READY FOR HUMAN REVIEW. + +## Gate 1 — Schema / script validation + +Run, and report the actual output of: + +```powershell +.\scripts\validate-changelog-json.ps1 # if changelog/*.json changed +.\scripts\validate-temp-docstubs.ps1 # if temp-docstubs/ is present +``` + +Gate 1 validates: complete record structure (ChangeList array + Id, Cloud, Version, CreatedDateTime, WorkloadArea, SubArea) · GUID consistency between ChangeList items and the record-level Id · `Cloud` = "prd"/"Prod" · `Version` = "v1.0" or "beta" · `CreatedDateTime` in ISO 8601/RFC 3339 with fractional seconds and `Z` · WorkloadArea/SubArea match CDK taxonomy · only `temp-docstubs-instructions.md` remains in `temp-docstubs/`. + +**Gate 1 does NOT check a single link.** Do not let a green script lull you into skipping Gate 2. + +## Gate 2 — Link validation + +Run the repo's link validator over every changed file, and additionally perform the manual checks below, because **the link validator has blind spots you must cover by hand**. + +### M.1 — The link validator CANNOT verify fragment anchors ⚠️ + +**This is the single highest-frequency escape in this pipeline.** + +The link validator resolves the **file path portion of a URL only**. It has **no ability to verify the `#fragment` portion.** A link like: + +``` +/graph/api/resources/deviceconfiguration?view=graph-rest-beta#somepropertythatdoesnotexist +``` + +**passes the validator** while being broken for every customer who clicks it. + +Therefore, for **every** link containing a `#`: + +1. Open the target file yourself. +2. Locate the heading that generates that anchor. +3. Derive the anchor the way the docs platform does: lowercase the heading text, strip punctuation, replace spaces with hyphens (`## Assign a license` → `#assign-a-license`). +4. Confirm an exact match. Casing and punctuation matter. +5. If the heading does not exist → **BLOCKER**. Fix by pointing at a real heading, or drop the fragment and link the page. + +**Never write, approve, or "fix into" a fragment anchor you have not confirmed by opening the target file.** If you cannot open the target file, the link is **unverified** — report it as such rather than passing it. + +### M.2 — URL casing: verify against the filesystem, never against habit ⚠️ + +**Microsoft Graph reference filenames are all lowercase.** They do **not** follow the PascalCase or camelCase convention used elsewhere in Microsoft Learn, and they do **not** follow the casing of the schema type name. + +- Schema type `deviceConfiguration` → file `deviceconfiguration.md` → URL `/graph/api/resources/deviceconfiguration` +- Schema type `unifiedRoleAssignment` → file `unifiedroleassignment.md` +- **Never** infer a filename from a type name's casing. **Never** pattern-match from another Microsoft docset. + +**Mandatory procedure for every link and every new file:** + +1. Confirm the actual file on disk with a filesystem search (`search` / `ls` / `git ls-files`) before asserting the path is correct. +2. Confirm the **case-exact** filename from that output — do not retype it from memory. +3. Confirm any new file the writer added is lowercase. +4. On a case-insensitive filesystem (Windows/macOS) a wrong-case link resolves locally and **breaks in production**. Treat "it opened on my machine" as **no evidence at all**; verify with `git ls-files` (which reports the committed case) rather than by opening the file. + +Wrong-case link or filename → **BLOCKER**. + +### M.3 — Gate reporting + +Report both gates explicitly and separately. Never collapse them: + +``` +Gate 1 — Schema validation: ✓ PASS (validate-changelog-json.ps1, 3 files) +Gate 2 — Link validation: ✗ FAIL (2 unresolvable fragments, 1 wrong-case path) +``` + +If either gate fails, or either gate was **not run**, the decision is at best ⚠️ NEEDS CHANGES. "Not run" is never "pass." + +--- + +# Phase N — Enumerations (including the inline enum special case) + +## N.1 — General enum review + +Validate against the enumerations checklist: correct option selection for new enums (Option 1/2/3), evolvable enum handling (`unknownFutureValue`, `Prefer` header note), member-level vs full-type deprecation markers, and the search strategy that finds **every** place the enum is documented — including inline property descriptions that restate the member list. + +When an enum gains or loses a member, the member must be added/removed **everywhere** it is documented, not just in `enums.md`. + +## N.2 — Inline enums: the special case that keeps breaking ⚠️ + +Some enums are **inline** — defined within a property or type rather than as a standalone named enum type in `enums.md`. + +Two rules apply, and they interact in a non-obvious way: + +1. **An inline enum still requires its own entry** wherever enums are catalogued (changelog entries, What's New entries, and any enum listing the plan calls for). Being inline does **not** exempt it from having a separate, discrete entry. Do not fold it into the parent property's entry. +2. **An inline enum CANNOT be linked with a fragment anchor**, because it has no standalone heading to anchor to. It generates no `#anchor` target. + +Therefore, for an inline enum: + +- ✅ Create the separate entry. +- ✅ Link to the **containing resource or property page without a fragment** — e.g. `/graph/api/resources/` — and identify the enum by name in the entry text. +- ❌ Do **not** write `.../resources/#`. That anchor does not exist; the link validator will not catch it (see M.1); it ships broken. + +If you find a fragment link pointing at an inline enum → **BLOCKER**. Fix by removing the fragment, not by inventing a heading. + +Standalone named enums in `enums.md` **do** have headings and **may** use fragments — but only after you confirm the heading exists per M.1. + +--- + +# Phase O — Changelog and What's New (including the correct month) ⚠️ + +## O.1 — What's New goes in the correct month's section + +`concepts/whats-new-overview.md` is organized by month. Entries must land in the **month section that matches the release/publication month for this change** — determined from the changelog `CreatedDateTime` and the PR's target release, **not** from "today" and **not** from whatever section happens to be at the top of the file. + +Verify, in order: + +1. Read the changelog `CreatedDateTime` for the entries in this PR. +2. Identify the corresponding month heading in `whats-new-overview.md` (e.g. `## October 2026`). +3. Confirm the entry was added under **that** heading. +4. If the month section does not yet exist, confirm the writer created it in the correct chronological position relative to the surrounding month sections — and that the file's ordering convention (newest-first vs oldest-first) is preserved. Match the file's existing convention; do not impose one. +5. Confirm the entry is not duplicated in an adjacent month. +6. Confirm month/year spelling and formatting match the existing headings exactly. + +Entry in the wrong month, or a month heading that breaks the file's chronological ordering → **BLOCKER**. + +## O.2 — Changelog/What's New content + +- Changelog present for: new APIs, GA promotions, deprecations, deletions +- What's New present for: GA promotions, notable additions, deletions +- Change type is correct (`Addition`, `Change`, `Deletion`, `Deprecation`) +- Descriptions name the specific property/method/resource — not "Added property" +- WorkloadArea and SubArea match CDK taxonomy +- Links in What's New follow the What's New link rules — and are subject to **both** M.1 (fragments) and M.2 (casing) + +--- + +# Phase P — Pattern matching against existing entries (MANDATORY — never review in isolation) ⚠️ + +**Do not evaluate any new or changed entry on its own.** The repo is the specification. For **every** category of content in the PR — changelog entries, What's New entries, resource files, method files, enum entries, redirect entries, permission includes — you must first read **at least 2–3 existing, recently merged, accepted examples of the same category** and compare the new content against them. + +## Required procedure + +1. **Find the neighbours.** Search the repo for the closest existing analogues: same file, same workload area, same change type, most recent entries. +2. **Read them in full.** Not a snippet — the whole entry/file. +3. **Diff the new against the established pattern**, checking: + - Wording and phrasing conventions (sentence shape, verb tense, use of bold for property names) + - Link style and shape (relative vs absolute, `?view=` parameter present or absent, fragment used or not) + - Filename and path casing conventions (feeds M.2) + - Field ordering and required-field presence + - Punctuation, capitalization, and terminology + - Granularity — one entry per property? per method? per enum? Match the established granularity. +4. **Report every deviation**, quoting the existing example next to the new content: + + ``` + Existing pattern (changelog/Microsoft.DirectoryServices.json, entry 2026-09-14): + "Added the **displayName** property to the ... resource." + New entry: + "Added displayName" + → Deviates: missing bold, missing resource name, missing terminal period. + ``` + +5. **When the new content deviates, the existing pattern wins** — unless the pattern itself violates an explicit guideline, in which case say so explicitly and cite the guideline. + +An entry that is internally reasonable but inconsistent with its neighbours is a **MAJOR** finding at minimum; a structural deviation (wrong granularity, wrong link shape, missing required field) is a **BLOCKER**. + +**Working in isolation is itself a review defect.** If your report contains no evidence that you compared against existing entries, the review is incomplete. + +--- + +# Phase Q — Exclusions and special cases + +**Do NOT review:** + +- Files in `concepts/` except `whats-new-overview.md` +- Files in `includes/` (unless specifically requested or a permissions include is in scope per Phase H) +- Template files in `templates/` + +**Do NOT edit:** `toc.yml` (§0.2). + +**Special handling:** + +- Mixed scenarios (deprecation + other changes in one PR) → flag for the human reviewer +- Autogenerated content → validate that manual edits are appropriate +- Permission files → typically autogenerated; validate format only unless issues are evident + +**Batching:** for PRs with 15+ changed files, review in batches of 10 and emit findings after each batch before continuing, to prevent quality degradation on later files. + +--- + +# Pre-report self-check (run before emitting anything) + +Answer each. If any answer is "no," go back and do the work — do **not** paper over it in the report. + +1. Did I run **Gate 1** and paste its real output? +2. Did I run **Gate 2**, and did I manually verify **every** `#fragment` by opening the target file? (M.1) +3. Did I verify **every** file path and link casing against actual filesystem output rather than assuming schema casing? (M.2) +4. Did I compare **every** new entry against 2–3 existing accepted examples and cite them? (Phase P) +5. Did I check inline enums for both the separate-entry requirement **and** the no-fragment rule? (N.2) +6. Did I confirm What's New entries are in the **correct month** section, per changelog `CreatedDateTime`? (O.1) +7. Did I avoid creating any branch or PR? (§0.1) +8. Did I avoid editing any `toc.yml`? (§0.2) +9. Did I re-read each reviewed file to confirm findings, rather than reporting from memory? +10. Does every finding have file path, section/line, one-sentence issue, exact fix, and evidence? + +--- + +# Output format (mandatory) + +## 1. Gate decision + +Choose ONE: + +- ✅ READY FOR HUMAN REVIEW +- ⚠️ NEEDS CHANGES BEFORE HUMAN REVIEW +- ❌ NOT REVIEWABLE (missing inputs) + +## 2. Validation gates + +``` +Gate 1 — Schema validation: PASS / FAIL / NOT RUN — +Gate 2 — Link validation: PASS / FAIL / NOT RUN — + ├─ Fragment anchors manually verified: / (validator cannot check these) + └─ Path casing verified against filesystem: / +``` + +## 3. Summary + +- Files reviewed / with issues / approved +- Change type (new API · GA promotion · deprecation · retirement · update) +- Confidence note if PLAN.md or API.md was missing + +## 4. Traceability table (Phase A) + +## 5. Pattern-comparison evidence (Phase P) + +For each content category: the existing entries compared against, and the deviations found. + +## 6. Findings by severity + +### BLOCKER +- `[file path]` — `[section / line]` + - **Issue:** one sentence + - **Fix:** the exact change to make + - **Evidence:** CSDL / API.md / template rule / existing entry quoted / command output + +### MAJOR +(same format) + +### MINOR +(same format) + +No vague feedback. No generic suggestions. Every finding is actionable and evidenced. + +## 7. Mechanical fixes performed (optional) + +List ONLY safe fixes actually applied: lint, spacing, heading level, alphabetical ordering, verified casing corrections. Never list a content change here. Never list a branch or PR action — you cannot take one. + +--- + +# Final behavior constraints + +- Be deterministic and strict; do not speculate or generalize +- Validate only within PR/branch scope +- Fail fast on missing inputs +- Never create a branch or a pull request, under any circumstance +- Never update `toc.yml` +- Never report "validation passed" unless **both** gates ran and both passed +- Never approve a fragment link, a file path, or a new entry you did not verify by opening the target, checking the filesystem, or comparing against existing entries From d5578208bce300b8826fb0aa69e0d6c0f497c2de Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 10 Aug 2026 12:40:34 -0600 Subject: [PATCH 021/189] Update generated permissions tables with build 231688 (#29417) Co-authored-by: Microsoft Graph DevX Tooling --- .../permissions/agentuser-list-memberof-permissions.md | 4 ++-- .../agentuser-list-transitivememberof-permissions.md | 4 ++-- .../directoryobject-getmembergroups-6-permissions.md | 4 ++-- .../beta/includes/permissions/group-delta-permissions.md | 4 ++-- .../beta/includes/permissions/group-get-permissions.md | 4 ++-- .../includes/permissions/group-list-memberof-permissions.md | 4 ++-- .../includes/permissions/group-list-members-permissions.md | 4 ++-- .../beta/includes/permissions/group-list-permissions.md | 4 ++-- .../permissions/group-list-transitivememberof-permissions.md | 4 ++-- .../permissions/group-list-transitivemembers-permissions.md | 4 ++-- .../includes/permissions/group-post-groups-permissions.md | 4 ++-- .../beta/includes/permissions/group-update-permissions.md | 4 ++-- .../permissions/mailboxfolder-delete-items-permissions.md | 1 + .../permissions/mailboxfolder-list-items-permissions.md | 4 ++-- .../includes/permissions/mailboxitem-delta-permissions.md | 4 ++-- .../beta/includes/permissions/mailboxitem-get-permissions.md | 4 ++-- .../permissions/agentuser-list-memberof-permissions.md | 4 ++-- .../agentuser-list-transitivememberof-permissions.md | 4 ++-- .../directoryobject-getmembergroups-6-permissions.md | 4 ++-- .../v1.0/includes/permissions/group-delta-permissions.md | 4 ++-- .../v1.0/includes/permissions/group-get-permissions.md | 4 ++-- .../includes/permissions/group-list-memberof-permissions.md | 4 ++-- .../includes/permissions/group-list-members-permissions.md | 4 ++-- .../v1.0/includes/permissions/group-list-permissions.md | 4 ++-- .../permissions/group-list-transitivememberof-permissions.md | 4 ++-- .../permissions/group-list-transitivemembers-permissions.md | 4 ++-- .../includes/permissions/group-post-groups-permissions.md | 4 ++-- .../v1.0/includes/permissions/group-update-permissions.md | 4 ++-- .../permissions/mailboxfolder-list-items-permissions.md | 4 ++-- .../includes/permissions/mailboxitem-delta-permissions.md | 4 ++-- .../v1.0/includes/permissions/mailboxitem-get-permissions.md | 4 ++-- 31 files changed, 61 insertions(+), 60 deletions(-) diff --git a/api-reference/beta/includes/permissions/agentuser-list-memberof-permissions.md b/api-reference/beta/includes/permissions/agentuser-list-memberof-permissions.md index 871092e3757..e462e4d7975 100644 --- a/api-reference/beta/includes/permissions/agentuser-list-memberof-permissions.md +++ b/api-reference/beta/includes/permissions/agentuser-list-memberof-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|User.Read|Directory.Read.All, Directory.ReadWrite.All, GroupMember.Read.All| +|Delegated (work or school account)|User.Read|Directory.Read.All, Directory.ReadWrite.All, Group.ReadBasic.All, GroupMember.Read.All, GroupMember.ReadBasic.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Directory.Read.All|Directory.ReadWrite.All| +|Application|Directory.Read.All|Directory.ReadWrite.All, Group.ReadBasic.All, GroupMember.ReadBasic.All| diff --git a/api-reference/beta/includes/permissions/agentuser-list-transitivememberof-permissions.md b/api-reference/beta/includes/permissions/agentuser-list-transitivememberof-permissions.md index d6867e919e6..a9eabdfae30 100644 --- a/api-reference/beta/includes/permissions/agentuser-list-transitivememberof-permissions.md +++ b/api-reference/beta/includes/permissions/agentuser-list-transitivememberof-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|User.Read|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, GroupMember.Read.All, User.Read.All| +|Delegated (work or school account)|User.Read|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, GroupMember.Read.All, GroupMember.ReadBasic.All, User.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|User.Read.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, GroupMember.Read.All| +|Application|User.Read.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, GroupMember.Read.All, GroupMember.ReadBasic.All| diff --git a/api-reference/beta/includes/permissions/directoryobject-getmembergroups-6-permissions.md b/api-reference/beta/includes/permissions/directoryobject-getmembergroups-6-permissions.md index 69355973756..d7381af058c 100644 --- a/api-reference/beta/includes/permissions/directoryobject-getmembergroups-6-permissions.md +++ b/api-reference/beta/includes/permissions/directoryobject-getmembergroups-6-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Application.Read.All|Application.ReadWrite.All, Device.Read.All, Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All, User.Read.All| +|Delegated (work or school account)|Application.Read.All|Application.ReadWrite.All, Device.Read.All, Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadBasic.All, User.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Application.Read.All|Application.ReadWrite.All, Device.Read.All, Device.ReadWrite.All, Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All, User.Read.All| +|Application|Application.Read.All|Application.ReadWrite.All, Device.Read.All, Device.ReadWrite.All, Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadBasic.All, User.Read.All| diff --git a/api-reference/beta/includes/permissions/group-delta-permissions.md b/api-reference/beta/includes/permissions/group-delta-permissions.md index 89f039d4a47..d0d61fbe7f7 100644 --- a/api-reference/beta/includes/permissions/group-delta-permissions.md +++ b/api-reference/beta/includes/permissions/group-delta-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| +|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Group.ReadBasic.All, Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| +|Application|Group-NestingSupport.ReadWrite.All|Group.ReadBasic.All, Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| diff --git a/api-reference/beta/includes/permissions/group-get-permissions.md b/api-reference/beta/includes/permissions/group-get-permissions.md index 23a63286ca0..9645a25f358 100644 --- a/api-reference/beta/includes/permissions/group-get-permissions.md +++ b/api-reference/beta/includes/permissions/group-get-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group-XTenantIdentitySync.Read.All, Group.ManageProtection.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| +|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group-XTenantIdentitySync.Read.All, Group.ManageProtection.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group-XTenantIdentitySync.Read.All, Group.ManageProtection.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| +|Application|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group-XTenantIdentitySync.Read.All, Group.ManageProtection.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All| diff --git a/api-reference/beta/includes/permissions/group-list-memberof-permissions.md b/api-reference/beta/includes/permissions/group-list-memberof-permissions.md index acce9d2b92d..1e4520e9128 100644 --- a/api-reference/beta/includes/permissions/group-list-memberof-permissions.md +++ b/api-reference/beta/includes/permissions/group-list-memberof-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|GroupMember.Read.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All| +|Delegated (work or school account)|GroupMember.ReadBasic.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, GroupMember.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|GroupMember.Read.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All| +|Application|GroupMember.ReadBasic.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, GroupMember.Read.All| diff --git a/api-reference/beta/includes/permissions/group-list-members-permissions.md b/api-reference/beta/includes/permissions/group-list-members-permissions.md index b6fe113b535..2951cfec56d 100644 --- a/api-reference/beta/includes/permissions/group-list-members-permissions.md +++ b/api-reference/beta/includes/permissions/group-list-members-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|GroupMember.Read.All|Directory.Read.All, Group.Read.All, Group.ReadWrite.All, GroupMember.ReadWrite.All| +|Delegated (work or school account)|GroupMember.ReadBasic.All|Directory.Read.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|GroupMember.Read.All|Directory.Read.All, Group.Read.All, Group.ReadWrite.All, GroupMember.ReadWrite.All| +|Application|GroupMember.ReadBasic.All|Directory.Read.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/group-list-permissions.md b/api-reference/beta/includes/permissions/group-list-permissions.md index 15fb96dad4e..1dc35adae5d 100644 --- a/api-reference/beta/includes/permissions/group-list-permissions.md +++ b/api-reference/beta/includes/permissions/group-list-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group.ManageProtection.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| +|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Group.ReadBasic.All, Directory.Read.All, Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group.ManageProtection.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group.ManageProtection.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| +|Application|Group-NestingSupport.ReadWrite.All|Group.ReadBasic.All, Directory.Read.All, Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group.ManageProtection.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| diff --git a/api-reference/beta/includes/permissions/group-list-transitivememberof-permissions.md b/api-reference/beta/includes/permissions/group-list-transitivememberof-permissions.md index 3642cd714ee..1fa5aef77b7 100644 --- a/api-reference/beta/includes/permissions/group-list-transitivememberof-permissions.md +++ b/api-reference/beta/includes/permissions/group-list-transitivememberof-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|GroupMember.Read.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All| +|Delegated (work or school account)|GroupMember.ReadBasic.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, GroupMember.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Directory.Read.All|Directory.ReadWrite.All| +|Application|GroupMember.ReadBasic.All|Directory.Read.All, Directory.ReadWrite.All, Group.ReadBasic.All| diff --git a/api-reference/beta/includes/permissions/group-list-transitivemembers-permissions.md b/api-reference/beta/includes/permissions/group-list-transitivemembers-permissions.md index b6fe113b535..2951cfec56d 100644 --- a/api-reference/beta/includes/permissions/group-list-transitivemembers-permissions.md +++ b/api-reference/beta/includes/permissions/group-list-transitivemembers-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|GroupMember.Read.All|Directory.Read.All, Group.Read.All, Group.ReadWrite.All, GroupMember.ReadWrite.All| +|Delegated (work or school account)|GroupMember.ReadBasic.All|Directory.Read.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|GroupMember.Read.All|Directory.Read.All, Group.Read.All, Group.ReadWrite.All, GroupMember.ReadWrite.All| +|Application|GroupMember.ReadBasic.All|Directory.Read.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/group-post-groups-permissions.md b/api-reference/beta/includes/permissions/group-post-groups-permissions.md index 82493b9cfe6..7b562c7de19 100644 --- a/api-reference/beta/includes/permissions/group-post-groups-permissions.md +++ b/api-reference/beta/includes/permissions/group-post-groups-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Group.ReadWrite.All|Directory.ReadWrite.All| +|Delegated (work or school account)|Group.ReadWrite.All|Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Group.Create|Directory.ReadWrite.All, Group.ReadWrite.All| +|Application|Group.Create|Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/group-update-permissions.md b/api-reference/beta/includes/permissions/group-update-permissions.md index 230fb3c59da..29f83d22c64 100644 --- a/api-reference/beta/includes/permissions/group-update-permissions.md +++ b/api-reference/beta/includes/permissions/group-update-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Directory.ReadWrite.All, Group.ManageProtection.All, Group.ReadWrite.All| +|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group.ManageProtection.All, Group.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Group-NestingSupport.ReadWrite.All|Directory.ReadWrite.All, Group.ManageProtection.All, Group.ReadWrite.All| +|Application|Group-NestingSupport.ReadWrite.All|Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group.ManageProtection.All, Group.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/mailboxfolder-delete-items-permissions.md b/api-reference/beta/includes/permissions/mailboxfolder-delete-items-permissions.md index 3a52913d0dd..9f31612bbca 100644 --- a/api-reference/beta/includes/permissions/mailboxfolder-delete-items-permissions.md +++ b/api-reference/beta/includes/permissions/mailboxfolder-delete-items-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|MailboxItem.ReadWrite|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|MailboxItem.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/mailboxfolder-list-items-permissions.md b/api-reference/beta/includes/permissions/mailboxfolder-list-items-permissions.md index 99f4a0944f4..a6aa0c7a8b0 100644 --- a/api-reference/beta/includes/permissions/mailboxfolder-list-items-permissions.md +++ b/api-reference/beta/includes/permissions/mailboxfolder-list-items-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|MailboxItem.Read|Not available.| +|Delegated (work or school account)|MailboxItem.Read|MailboxItem.ReadWrite| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|MailboxItem.Read.All|Not available.| +|Application|MailboxItem.Read.All|MailboxItem.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/mailboxitem-delta-permissions.md b/api-reference/beta/includes/permissions/mailboxitem-delta-permissions.md index 99f4a0944f4..a6aa0c7a8b0 100644 --- a/api-reference/beta/includes/permissions/mailboxitem-delta-permissions.md +++ b/api-reference/beta/includes/permissions/mailboxitem-delta-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|MailboxItem.Read|Not available.| +|Delegated (work or school account)|MailboxItem.Read|MailboxItem.ReadWrite| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|MailboxItem.Read.All|Not available.| +|Application|MailboxItem.Read.All|MailboxItem.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/mailboxitem-get-permissions.md b/api-reference/beta/includes/permissions/mailboxitem-get-permissions.md index 99f4a0944f4..a6aa0c7a8b0 100644 --- a/api-reference/beta/includes/permissions/mailboxitem-get-permissions.md +++ b/api-reference/beta/includes/permissions/mailboxitem-get-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|MailboxItem.Read|Not available.| +|Delegated (work or school account)|MailboxItem.Read|MailboxItem.ReadWrite| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|MailboxItem.Read.All|Not available.| +|Application|MailboxItem.Read.All|MailboxItem.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/agentuser-list-memberof-permissions.md b/api-reference/v1.0/includes/permissions/agentuser-list-memberof-permissions.md index 871092e3757..e462e4d7975 100644 --- a/api-reference/v1.0/includes/permissions/agentuser-list-memberof-permissions.md +++ b/api-reference/v1.0/includes/permissions/agentuser-list-memberof-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|User.Read|Directory.Read.All, Directory.ReadWrite.All, GroupMember.Read.All| +|Delegated (work or school account)|User.Read|Directory.Read.All, Directory.ReadWrite.All, Group.ReadBasic.All, GroupMember.Read.All, GroupMember.ReadBasic.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Directory.Read.All|Directory.ReadWrite.All| +|Application|Directory.Read.All|Directory.ReadWrite.All, Group.ReadBasic.All, GroupMember.ReadBasic.All| diff --git a/api-reference/v1.0/includes/permissions/agentuser-list-transitivememberof-permissions.md b/api-reference/v1.0/includes/permissions/agentuser-list-transitivememberof-permissions.md index d6867e919e6..a9eabdfae30 100644 --- a/api-reference/v1.0/includes/permissions/agentuser-list-transitivememberof-permissions.md +++ b/api-reference/v1.0/includes/permissions/agentuser-list-transitivememberof-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|User.Read|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, GroupMember.Read.All, User.Read.All| +|Delegated (work or school account)|User.Read|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, GroupMember.Read.All, GroupMember.ReadBasic.All, User.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|User.Read.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, GroupMember.Read.All| +|Application|User.Read.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, GroupMember.Read.All, GroupMember.ReadBasic.All| diff --git a/api-reference/v1.0/includes/permissions/directoryobject-getmembergroups-6-permissions.md b/api-reference/v1.0/includes/permissions/directoryobject-getmembergroups-6-permissions.md index 69355973756..d7381af058c 100644 --- a/api-reference/v1.0/includes/permissions/directoryobject-getmembergroups-6-permissions.md +++ b/api-reference/v1.0/includes/permissions/directoryobject-getmembergroups-6-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Application.Read.All|Application.ReadWrite.All, Device.Read.All, Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All, User.Read.All| +|Delegated (work or school account)|Application.Read.All|Application.ReadWrite.All, Device.Read.All, Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadBasic.All, User.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Application.Read.All|Application.ReadWrite.All, Device.Read.All, Device.ReadWrite.All, Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All, User.Read.All| +|Application|Application.Read.All|Application.ReadWrite.All, Device.Read.All, Device.ReadWrite.All, Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadBasic.All, User.Read.All| diff --git a/api-reference/v1.0/includes/permissions/group-delta-permissions.md b/api-reference/v1.0/includes/permissions/group-delta-permissions.md index 89f039d4a47..d0d61fbe7f7 100644 --- a/api-reference/v1.0/includes/permissions/group-delta-permissions.md +++ b/api-reference/v1.0/includes/permissions/group-delta-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| +|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Group.ReadBasic.All, Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| +|Application|Group-NestingSupport.ReadWrite.All|Group.ReadBasic.All, Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| diff --git a/api-reference/v1.0/includes/permissions/group-get-permissions.md b/api-reference/v1.0/includes/permissions/group-get-permissions.md index 23a63286ca0..9645a25f358 100644 --- a/api-reference/v1.0/includes/permissions/group-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/group-get-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group-XTenantIdentitySync.Read.All, Group.ManageProtection.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| +|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group-XTenantIdentitySync.Read.All, Group.ManageProtection.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group-XTenantIdentitySync.Read.All, Group.ManageProtection.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| +|Application|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group-XTenantIdentitySync.Read.All, Group.ManageProtection.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All| diff --git a/api-reference/v1.0/includes/permissions/group-list-memberof-permissions.md b/api-reference/v1.0/includes/permissions/group-list-memberof-permissions.md index acce9d2b92d..1e4520e9128 100644 --- a/api-reference/v1.0/includes/permissions/group-list-memberof-permissions.md +++ b/api-reference/v1.0/includes/permissions/group-list-memberof-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|GroupMember.Read.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All| +|Delegated (work or school account)|GroupMember.ReadBasic.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, GroupMember.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|GroupMember.Read.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All| +|Application|GroupMember.ReadBasic.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, GroupMember.Read.All| diff --git a/api-reference/v1.0/includes/permissions/group-list-members-permissions.md b/api-reference/v1.0/includes/permissions/group-list-members-permissions.md index b6fe113b535..2951cfec56d 100644 --- a/api-reference/v1.0/includes/permissions/group-list-members-permissions.md +++ b/api-reference/v1.0/includes/permissions/group-list-members-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|GroupMember.Read.All|Directory.Read.All, Group.Read.All, Group.ReadWrite.All, GroupMember.ReadWrite.All| +|Delegated (work or school account)|GroupMember.ReadBasic.All|Directory.Read.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|GroupMember.Read.All|Directory.Read.All, Group.Read.All, Group.ReadWrite.All, GroupMember.ReadWrite.All| +|Application|GroupMember.ReadBasic.All|Directory.Read.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/group-list-permissions.md b/api-reference/v1.0/includes/permissions/group-list-permissions.md index 15fb96dad4e..1dc35adae5d 100644 --- a/api-reference/v1.0/includes/permissions/group-list-permissions.md +++ b/api-reference/v1.0/includes/permissions/group-list-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group.ManageProtection.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| +|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Group.ReadBasic.All, Directory.Read.All, Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group.ManageProtection.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Group-NestingSupport.ReadWrite.All|Directory.Read.All, Directory.ReadWrite.All, Group.ManageProtection.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| +|Application|Group-NestingSupport.ReadWrite.All|Group.ReadBasic.All, Directory.Read.All, Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group.ManageProtection.All, Group.Read.All, Group.ReadWrite.All, GroupMember.Read.All| diff --git a/api-reference/v1.0/includes/permissions/group-list-transitivememberof-permissions.md b/api-reference/v1.0/includes/permissions/group-list-transitivememberof-permissions.md index 3642cd714ee..1fa5aef77b7 100644 --- a/api-reference/v1.0/includes/permissions/group-list-transitivememberof-permissions.md +++ b/api-reference/v1.0/includes/permissions/group-list-transitivememberof-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|GroupMember.Read.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All| +|Delegated (work or school account)|GroupMember.ReadBasic.All|Directory.Read.All, Directory.ReadWrite.All, Group.Read.All, Group.ReadBasic.All, GroupMember.Read.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Directory.Read.All|Directory.ReadWrite.All| +|Application|GroupMember.ReadBasic.All|Directory.Read.All, Directory.ReadWrite.All, Group.ReadBasic.All| diff --git a/api-reference/v1.0/includes/permissions/group-list-transitivemembers-permissions.md b/api-reference/v1.0/includes/permissions/group-list-transitivemembers-permissions.md index b6fe113b535..2951cfec56d 100644 --- a/api-reference/v1.0/includes/permissions/group-list-transitivemembers-permissions.md +++ b/api-reference/v1.0/includes/permissions/group-list-transitivemembers-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|GroupMember.Read.All|Directory.Read.All, Group.Read.All, Group.ReadWrite.All, GroupMember.ReadWrite.All| +|Delegated (work or school account)|GroupMember.ReadBasic.All|Directory.Read.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|GroupMember.Read.All|Directory.Read.All, Group.Read.All, Group.ReadWrite.All, GroupMember.ReadWrite.All| +|Application|GroupMember.ReadBasic.All|Directory.Read.All, Group.Read.All, Group.ReadBasic.All, Group.ReadWrite.All, GroupMember.Read.All, GroupMember.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/group-post-groups-permissions.md b/api-reference/v1.0/includes/permissions/group-post-groups-permissions.md index 82493b9cfe6..7b562c7de19 100644 --- a/api-reference/v1.0/includes/permissions/group-post-groups-permissions.md +++ b/api-reference/v1.0/includes/permissions/group-post-groups-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Group.ReadWrite.All|Directory.ReadWrite.All| +|Delegated (work or school account)|Group.ReadWrite.All|Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Group.Create|Directory.ReadWrite.All, Group.ReadWrite.All| +|Application|Group.Create|Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/group-update-permissions.md b/api-reference/v1.0/includes/permissions/group-update-permissions.md index 230fb3c59da..29f83d22c64 100644 --- a/api-reference/v1.0/includes/permissions/group-update-permissions.md +++ b/api-reference/v1.0/includes/permissions/group-update-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Directory.ReadWrite.All, Group.ManageProtection.All, Group.ReadWrite.All| +|Delegated (work or school account)|Group-NestingSupport.ReadWrite.All|Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group.ManageProtection.All, Group.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Group-NestingSupport.ReadWrite.All|Directory.ReadWrite.All, Group.ManageProtection.All, Group.ReadWrite.All| +|Application|Group-NestingSupport.ReadWrite.All|Directory.ReadWrite.All, Group-PreferredDataLocation.ReadWrite.All, Group.ManageProtection.All, Group.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/mailboxfolder-list-items-permissions.md b/api-reference/v1.0/includes/permissions/mailboxfolder-list-items-permissions.md index 99f4a0944f4..a6aa0c7a8b0 100644 --- a/api-reference/v1.0/includes/permissions/mailboxfolder-list-items-permissions.md +++ b/api-reference/v1.0/includes/permissions/mailboxfolder-list-items-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|MailboxItem.Read|Not available.| +|Delegated (work or school account)|MailboxItem.Read|MailboxItem.ReadWrite| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|MailboxItem.Read.All|Not available.| +|Application|MailboxItem.Read.All|MailboxItem.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/mailboxitem-delta-permissions.md b/api-reference/v1.0/includes/permissions/mailboxitem-delta-permissions.md index 99f4a0944f4..a6aa0c7a8b0 100644 --- a/api-reference/v1.0/includes/permissions/mailboxitem-delta-permissions.md +++ b/api-reference/v1.0/includes/permissions/mailboxitem-delta-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|MailboxItem.Read|Not available.| +|Delegated (work or school account)|MailboxItem.Read|MailboxItem.ReadWrite| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|MailboxItem.Read.All|Not available.| +|Application|MailboxItem.Read.All|MailboxItem.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/mailboxitem-get-permissions.md b/api-reference/v1.0/includes/permissions/mailboxitem-get-permissions.md index 99f4a0944f4..a6aa0c7a8b0 100644 --- a/api-reference/v1.0/includes/permissions/mailboxitem-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/mailboxitem-get-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|MailboxItem.Read|Not available.| +|Delegated (work or school account)|MailboxItem.Read|MailboxItem.ReadWrite| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|MailboxItem.Read.All|Not available.| +|Application|MailboxItem.Read.All|MailboxItem.ReadWrite.All| From 4053b6c3f440da5533a6be8d00f0926c9059e36a Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 10 Aug 2026 14:39:34 -0600 Subject: [PATCH 022/189] 2026-08-10: Automated permissions reference update (#29416) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling --- concepts/permissions-reference.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/concepts/permissions-reference.md b/concepts/permissions-reference.md index 9b471d9e642..f2fb121af94 100644 --- a/concepts/permissions-reference.md +++ b/concepts/permissions-reference.md @@ -7,7 +7,7 @@ ms.localizationpriority: high ms.topic: reference ms.subservice: entra-applications ms.custom: graphiamtop20, scenarios:getting-started -ms.date: 08/03/2026 +ms.date: 08/10/2026 #Customer intent: As a developer, I want to learn more about the permissions available in Microsoft Graph, so that I understand the impact of granting specific permissions to my app. --- From 4d8e18ce5cf9a9a8b507678ce4415898c8c57995 Mon Sep 17 00:00:00 2001 From: rajadineshmurugesan-microsoft <73132437+rajadineshmurugesan-microsoft@users.noreply.github.com> Date: Mon, 10 Aug 2026 15:17:53 -0700 Subject: [PATCH 023/189] docs: document unified (vNext) access reviews route + stage decision actions for v1.0 (#29342) * docs: document unified (vNext) access reviews route + stage decision actions for v1.0 (Work 49059) * Merge origin/main: resolve changelog conflicts (keep both v1.0 and beta entries) * docs: address review feedback - revert generated toc.yml, unique changelog GUIDs, drop en-us URLs, camelCase method names, normalize example headings, fix access package resource description (Work 49059) * docs: address re-review nits - bump ms.date on modified resource pages, drop view=graph-rest-1.0 from v1.0 changelog URLs, refresh CreatedDateTime (Work 49059) * Fixes * fix * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * fix --------- Co-authored-by: RajaDinesh Kumar Murugesan Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- ...accessreviewstage-acceptrecommendations.md | 73 +++++++++ .../accessreviewstage-batchrecorddecisions.md | 90 +++++++++++ .../v1.0/api/unifiedroot-list-definitions.md | 108 +++++++++++++ .../v1.0/api/unifiedroot-post-definitions.md | 144 ++++++++++++++++++ ...stage-acceptrecommendations-permissions.md | 11 ++ ...wstage-batchrecorddecisions-permissions.md | 11 ++ ...nifiedroot-list-definitions-permissions.md | 11 ++ ...nifiedroot-post-definitions-permissions.md | 11 ++ ...stancedecisionitemaccesspackageresource.md | 55 +++++++ ...ccessreviewinstancedecisionitemresource.md | 5 +- .../v1.0/resources/accessreviewset.md | 5 +- .../v1.0/resources/accessreviewstage.md | 4 +- api-reference/v1.0/resources/unifiedroot.md | 66 ++++++++ api-reference/v1.0/toc/toc.mapping.json | 3 +- ...soft.IdentityGovernance.AccessReviews.json | 90 +++++++++++ concepts/whats-new-overview.md | 1 + 16 files changed, 682 insertions(+), 6 deletions(-) create mode 100644 api-reference/v1.0/api/accessreviewstage-acceptrecommendations.md create mode 100644 api-reference/v1.0/api/accessreviewstage-batchrecorddecisions.md create mode 100644 api-reference/v1.0/api/unifiedroot-list-definitions.md create mode 100644 api-reference/v1.0/api/unifiedroot-post-definitions.md create mode 100644 api-reference/v1.0/includes/permissions/accessreviewstage-acceptrecommendations-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/accessreviewstage-batchrecorddecisions-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/unifiedroot-list-definitions-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/unifiedroot-post-definitions-permissions.md create mode 100644 api-reference/v1.0/resources/accessreviewinstancedecisionitemaccesspackageresource.md create mode 100644 api-reference/v1.0/resources/unifiedroot.md diff --git a/api-reference/v1.0/api/accessreviewstage-acceptrecommendations.md b/api-reference/v1.0/api/accessreviewstage-acceptrecommendations.md new file mode 100644 index 00000000000..e76c1c4449c --- /dev/null +++ b/api-reference/v1.0/api/accessreviewstage-acceptrecommendations.md @@ -0,0 +1,73 @@ +--- +title: "accessReviewStage: acceptRecommendations" +description: "Accept the recommendations on all decision items that haven't been reviewed within a single stage of a multi-stage access review." +author: "jyothig123" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +ms.date: 07/10/2026 +--- + +# accessReviewStage: acceptRecommendations + +Namespace: microsoft.graph + +Accept the recommendations on all [accessReviewInstanceDecisionItem](../resources/accessreviewinstancedecisionitem.md) objects that haven't been reviewed within a single [accessReviewStage](../resources/accessreviewstage.md) of a multi-stage [accessReviewInstance](../resources/accessreviewinstance.md). Recommendations are generated if **recommendationsEnabled** is `true` on the [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) object. If there's no recommendation on an [accessReviewInstanceDecisionItem](../resources/accessreviewinstancedecisionitem.md) object, no decision is recorded. + +This action accepts recommendations for the decisions in a specific stage only, unlike [accessReviewInstance: acceptRecommendations](../api/accessreviewinstance-acceptrecommendations.md), which operates across the entire instance. + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/accessreviewstage-acceptrecommendations-permissions.md)] + +[!INCLUDE [rbac-access-reviews-apis-write](../includes/rbac-for-apis/rbac-access-reviews-apis-write.md)] + +## HTTP request + + +```http +POST /identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinitionId}/instances/{accessReviewInstanceId}/stages/{accessReviewStageId}/acceptRecommendations +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body +Don't supply a request body for this method. + +## Response + +If successful, this action returns a `204 No Content` response code. + +## Examples + +### Example: Accept recommendations for all decision items in a stage + +#### Request + + +```http +POST https://graph.microsoft.com/v1.0/identityGovernance/accessReviews/definitions/2b83cc42-09db-46f6-8c6e-16fec466a82d/instances/61a617dd-238f-4037-8fa5-d800e515f5bc/stages/5d431f4b-56f2-4a50-938b-fb1e4e2c91b9/acceptRecommendations +``` + +#### Response + + +```http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/api/accessreviewstage-batchrecorddecisions.md b/api-reference/v1.0/api/accessreviewstage-batchrecorddecisions.md new file mode 100644 index 00000000000..d84565be01f --- /dev/null +++ b/api-reference/v1.0/api/accessreviewstage-batchrecorddecisions.md @@ -0,0 +1,90 @@ +--- +title: "accessReviewStage: batchRecordDecisions" +description: "Record decisions in bulk for all accessReviewInstanceDecisionItem objects within a single stage of a multi-stage access review." +author: "jyothig123" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +ms.date: 07/10/2026 +--- + +# accessReviewStage: batchRecordDecisions + +Namespace: microsoft.graph + +Record decisions in bulk for all [accessReviewInstanceDecisionItem](../resources/accessreviewinstancedecisionitem.md) objects within a single [accessReviewStage](../resources/accessreviewstage.md) of a multi-stage [accessReviewInstance](../resources/accessreviewinstance.md), by using **principalId**, **resourceId**, or neither. + +This action records decisions for a specific stage only, unlike [accessReviewInstance: batchRecordDecisions](../api/accessreviewinstance-batchrecorddecisions.md), which operates across the entire instance. + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/accessreviewstage-batchrecorddecisions-permissions.md)] + +[!INCLUDE [rbac-access-reviews-apis-write](../includes/rbac-for-apis/rbac-access-reviews-apis-write.md)] + +## HTTP request + + +```http +POST /identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinitionId}/instances/{accessReviewInstanceId}/stages/{accessReviewStageId}/batchRecordDecisions +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body +In the request body, supply a JSON representation of the parameters. + +The following table shows the parameters that can be used with this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|decision|String|Access decision for the entity being reviewed. The possible values are: `Approve`, `Deny`, `NotReviewed`, `DontKnow`. Required.| +|justification|String|Context of the review provided to admins. Required if **justificationRequiredOnApproval** is `true` on the **accessReviewScheduleDefinition**.| +|principalId|String|If supplied, all the **accessReviewInstanceDecisionItem** objects with matching **principalId** in the stage are reviewed in this batch. If not supplied, all **principalId** values are reviewed.| +|resourceId|String|If supplied, all the **accessReviewInstanceDecisionItem** objects with matching **resourceId** in the stage are reviewed in this batch. If not supplied, all **resourceId** values are reviewed.| + +## Response + +If successful, this action returns a `204 No Content` response code. + +## Examples + +### Example: Record decisions in bulk for a stage + +#### Request + + +```http +POST https://graph.microsoft.com/v1.0/identityGovernance/accessReviews/definitions/2b83cc42-09db-46f6-8c6e-16fec466a82d/instances/61a617dd-238f-4037-8fa5-d800e515f5bc/stages/5d431f4b-56f2-4a50-938b-fb1e4e2c91b9/batchRecordDecisions +Content-Type: application/json + +{ + "decision": "Approve", + "justification": "All principals with access need continued access to the resource as they are on the same team.", + "resourceId": "a5c51e59-3fcd-4a37-87a1-835c0c21488a" +} +``` + +#### Response + + +```http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/api/unifiedroot-list-definitions.md b/api-reference/v1.0/api/unifiedroot-list-definitions.md new file mode 100644 index 00000000000..90bc3c7fc06 --- /dev/null +++ b/api-reference/v1.0/api/unifiedroot-list-definitions.md @@ -0,0 +1,108 @@ +--- +title: "List accessReviewScheduleDefinitions" +description: "Retrieve the accessReviewScheduleDefinition objects for user-centric (catalog-scope) access reviews under the unified route." +ms.localizationpriority: medium +author: "jyothig123" +ms.subservice: "entra-id-governance" +doc_type: apiPageType +ms.date: 07/08/2026 +--- + +# List accessReviewScheduleDefinitions + +Namespace: microsoft.graph + +Retrieve the [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) objects for user-centric (catalog-scope) access reviews through the [unified](../resources/unifiedroot.md) route. A list of zero or more **accessReviewScheduleDefinition** objects is returned, including all of their nested properties, for each access review series created. This doesn't include the associated [accessReviewInstance](../resources/accessreviewinstance.md) objects. + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/unifiedroot-list-definitions-permissions.md)] + +[!INCLUDE [rbac-access-reviews-apis-read](../includes/rbac-for-apis/rbac-access-reviews-apis-read.md)] + +## HTTP request + + +```http +GET /identityGovernance/accessReviews/unified/definitions +``` + +## Optional query parameters +This method supports the `$select`, `$top`, `$skip`, and `$filter` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +The default page size for this API is 100 **accessReviewScheduleDefinition** objects. To improve efficiency and avoid timeouts due to large result sets, apply pagination using the `$skip` and `$top` query parameters. For more information, see [Paging Microsoft Graph data in your app](/graph/paging). + +## Request headers +| Name | Description | +|:-----|:------------| +| Authorization | Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts). | + +## Request body +Don't supply a request body. + +## Response +If successful, this method returns a `200 OK` response code and an array of [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) objects in the response body. + +## Examples + +### Example 1: List user-centric access review definitions + +#### Request + + +```msgraph-interactive +GET https://graph.microsoft.com/v1.0/identityGovernance/accessReviews/unified/definitions +``` + +#### Response +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#identityGovernance/accessReviews/unified/definitions", + "@odata.count": 1, + "value": [ + { + "id": "29f2d16e-9ca6-4052-bbfe-802c48944448", + "displayName": "Catalog access review", + "status": "InProgress", + "descriptionForAdmins": "Quarterly user-centric review of catalog resources", + "scope": { + "@odata.type": "#microsoft.graph.principalResourceMembershipsScope", + "principalScopes": [ + { + "@odata.type": "#microsoft.graph.accessReviewPrincipalScope", + "scopeType": "allUsers" + } + ], + "resourceScopes": [ + { + "@odata.type": "#microsoft.graph.accessReviewResourceScope", + "resourceId": "c6010d0c-ff41-4929-9776-fa03a03dd5ac", + "scopeType": "catalog" + } + ] + }, + "reviewers": [ + { + "@odata.type": "#microsoft.graph.accessReviewReviewerScope", + "scopeType": "manager" + } + ] + } + ] +} +``` diff --git a/api-reference/v1.0/api/unifiedroot-post-definitions.md b/api-reference/v1.0/api/unifiedroot-post-definitions.md new file mode 100644 index 00000000000..4c3bac81a1e --- /dev/null +++ b/api-reference/v1.0/api/unifiedroot-post-definitions.md @@ -0,0 +1,144 @@ +--- +title: "Create accessReviewScheduleDefinition" +description: "Create a user-centric (catalog-scope) access review definition under the unified route." +ms.localizationpriority: medium +author: "jyothig123" +ms.subservice: "entra-id-governance" +doc_type: apiPageType +ms.date: 07/08/2026 +--- + +# Create accessReviewScheduleDefinition + +Namespace: microsoft.graph + +Create a new user-centric (catalog-scope) [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) object through the [unified](../resources/unifiedroot.md) route. With a user-centric review, a reviewer evaluates a principal's access to every group and application contained in an [entitlement management catalog](../resources/accesspackagecatalog.md) in a single review. The catalog is identified in the **resourceScopes** collection of the [principalResourceMembershipsScope](../resources/principalresourcemembershipsscope.md). + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/unifiedroot-post-definitions-permissions.md)] + +[!INCLUDE [rbac-access-reviews-apis-write](../includes/rbac-for-apis/rbac-access-reviews-apis-write.md)] + +## HTTP request + + +```http +POST /identityGovernance/accessReviews/unified/definitions +``` + +## Request headers +| Name | Description | +| :--- | :--- | +| Authorization | Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts). | +| Content-Type | application/json. Required. | + +## Request body +In the request body, supply a JSON representation of the [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) object. Set the **scope** to a [principalResourceMembershipsScope](../resources/principalresourcemembershipsscope.md) whose **resourceScopes** collection contains a resource scope of `scopeType` `catalog` that identifies the catalog to review. + +## Response +If successful, this method returns a `201 Created` response code and an [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) object in the response body. + +## Examples + +### Example 1: Create a user-centric (catalog) access review definition + +The following example creates a review in which the managers of all users review those users' access to every group and application contained in a catalog. + +#### Request + + +```http +POST https://graph.microsoft.com/v1.0/identityGovernance/accessReviews/unified/definitions +Content-type: application/json + +{ + "displayName": "Catalog access review", + "descriptionForAdmins": "Quarterly user-centric review of catalog resources", + "scope": { + "@odata.type": "#microsoft.graph.principalResourceMembershipsScope", + "principalScopes": [ + { + "@odata.type": "#microsoft.graph.accessReviewPrincipalScope", + "scopeType": "allUsers" + } + ], + "resourceScopes": [ + { + "@odata.type": "#microsoft.graph.accessReviewResourceScope", + "resourceId": "c6010d0c-ff41-4929-9776-fa03a03dd5ac", + "scopeType": "catalog" + } + ] + }, + "reviewers": [ + { + "@odata.type": "#microsoft.graph.accessReviewReviewerScope", + "scopeType": "manager" + } + ], + "settings": { + "mailNotificationsEnabled": true, + "reminderNotificationsEnabled": true, + "justificationRequiredOnApproval": true, + "instanceDurationInDays": 6, + "recommendationsEnabled": true, + "recurrence": { + "pattern": { + "type": "absoluteMonthly", + "interval": 1 + }, + "range": { + "type": "noEnd", + "startDate": "2026-08-31" + } + } + } +} +``` + +#### Response +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 201 Created +Content-type: application/json + +{ + "id": "29f2d16e-9ca6-4052-bbfe-802c48944448", + "displayName": "Catalog access review", + "status": "NotStarted", + "descriptionForAdmins": "Quarterly user-centric review of catalog resources", + "scope": { + "@odata.type": "#microsoft.graph.principalResourceMembershipsScope", + "principalScopes": [ + { + "@odata.type": "#microsoft.graph.accessReviewPrincipalScope", + "scopeType": "allUsers" + } + ], + "resourceScopes": [ + { + "@odata.type": "#microsoft.graph.accessReviewResourceScope", + "resourceId": "c6010d0c-ff41-4929-9776-fa03a03dd5ac", + "scopeType": "catalog" + } + ] + }, + "reviewers": [ + { + "@odata.type": "#microsoft.graph.accessReviewReviewerScope", + "scopeType": "manager" + } + ] +} +``` diff --git a/api-reference/v1.0/includes/permissions/accessreviewstage-acceptrecommendations-permissions.md b/api-reference/v1.0/includes/permissions/accessreviewstage-acceptrecommendations-permissions.md new file mode 100644 index 00000000000..cdf789879bd --- /dev/null +++ b/api-reference/v1.0/includes/permissions/accessreviewstage-acceptrecommendations-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|AccessReview.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|AccessReview.ReadWrite.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/accessreviewstage-batchrecorddecisions-permissions.md b/api-reference/v1.0/includes/permissions/accessreviewstage-batchrecorddecisions-permissions.md new file mode 100644 index 00000000000..cdf789879bd --- /dev/null +++ b/api-reference/v1.0/includes/permissions/accessreviewstage-batchrecorddecisions-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|AccessReview.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|AccessReview.ReadWrite.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/unifiedroot-list-definitions-permissions.md b/api-reference/v1.0/includes/permissions/unifiedroot-list-definitions-permissions.md new file mode 100644 index 00000000000..8f6b915c995 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/unifiedroot-list-definitions-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|AccessReview.Read.All|AccessReview.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|AccessReview.Read.All|AccessReview.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/unifiedroot-post-definitions-permissions.md b/api-reference/v1.0/includes/permissions/unifiedroot-post-definitions-permissions.md new file mode 100644 index 00000000000..cdf789879bd --- /dev/null +++ b/api-reference/v1.0/includes/permissions/unifiedroot-post-definitions-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|AccessReview.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|AccessReview.ReadWrite.All|Not available.| diff --git a/api-reference/v1.0/resources/accessreviewinstancedecisionitemaccesspackageresource.md b/api-reference/v1.0/resources/accessreviewinstancedecisionitemaccesspackageresource.md new file mode 100644 index 00000000000..e6cf7114b96 --- /dev/null +++ b/api-reference/v1.0/resources/accessreviewinstancedecisionitemaccesspackageresource.md @@ -0,0 +1,55 @@ +--- +title: "accessReviewInstanceDecisionItemAccessPackageResource resource type" +description: "Represents an access package that's reviewed through an accessReviewInstanceDecisionItem object." +author: "jyothig123" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +ms.date: 07/10/2026 +--- + +# accessReviewInstanceDecisionItemAccessPackageResource resource type + +Namespace: microsoft.graph + +[!INCLUDE [accessreviews-disclaimer-v2](../../includes/accessreviews-disclaimer-v2.md)] + +In an [accessReviewInstanceDecisionItem](../resources/accessreviewinstancedecisionitem.md), the **resource** property can contain an **accessReviewInstanceDecisionItemAccessPackageResource** object for an access package. This open type allows other properties to be passed in. + +Inherits from [accessReviewInstanceDecisionItemResource](../resources/accessreviewinstancedecisionitemresource.md). + +## Methods + +This derived type supports the same methods as the base [accessReviewInstanceDecisionItemResource](../resources/accessreviewinstancedecisionitemresource.md) resource. For the list of supported operations, see the base type documentation. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|accessPackageAssignmentPolicyDisplayName|String|Display name of the access package assignment policy through which access is granted.| +|accessPackageAssignmentPolicyId|String|Identifier of the access package assignment policy through which access is granted.| +|displayName|String|Display name of the access package. Inherited from [accessReviewInstanceDecisionItemResource](accessreviewinstancedecisionitemresource.md).| +|id|String|Identifier of the decision item resource. Inherited from [accessReviewInstanceDecisionItemResource](accessreviewinstancedecisionitemresource.md).| +|type|String|Type of resource. This value is always `AccessPackage`. Inherited from [accessReviewInstanceDecisionItemResource](accessreviewinstancedecisionitemresource.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.accessReviewInstanceDecisionItemAccessPackageResource", + "id": "String (identifier)", + "displayName": "String", + "type": "String", + "accessPackageAssignmentPolicyId": "String", + "accessPackageAssignmentPolicyDisplayName": "String" +} +``` diff --git a/api-reference/v1.0/resources/accessreviewinstancedecisionitemresource.md b/api-reference/v1.0/resources/accessreviewinstancedecisionitemresource.md index a02c2612521..a5d8380c685 100644 --- a/api-reference/v1.0/resources/accessreviewinstancedecisionitemresource.md +++ b/api-reference/v1.0/resources/accessreviewinstancedecisionitemresource.md @@ -5,7 +5,7 @@ author: "jyothig123" ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType -ms.date: 07/22/2024 +ms.date: 07/30/2026 --- # accessReviewInstanceDecisionItemResource resource type @@ -16,6 +16,7 @@ In an [accessReviewInstanceDecisionItem](../resources/accessreviewinstancedecisi An [accessReviewInstanceDecisionItemResource](../resources/accessreviewinstancedecisionitemresource.md) object is an open type that allows other properties to be passed in and is the base type for the following resources: - [accessReviewInstanceDecisionItemAccessPackageAssignmentPolicyResource](../resources/accessreviewinstancedecisionitemaccesspackageassignmentpolicyresource.md) +- [accessReviewInstanceDecisionItemAccessPackageResource](../resources/accessreviewinstancedecisionitemaccesspackageresource.md) - [accessReviewInstanceDecisionItemAzureRoleResource](../resources/accessreviewinstancedecisionitemazureroleresource.md) - [accessReviewInstanceDecisionItemServicePrincipalResource](../resources/accessreviewinstancedecisionitemserviceprincipalresource.md) @@ -24,7 +25,7 @@ An [accessReviewInstanceDecisionItemResource](../resources/accessreviewinstanced |:---|:---|:---| |displayName|String|Display name of the resource| |id|String|Identifier of the resource| -|type|String|Type of resource. Types include: `Group`, `ServicePrincipal`, `DirectoryRole`, `AzureRole`, `AccessPackageAssignmentPolicy`.| +|type|String|Type of resource. Types include: `Group`, `ServicePrincipal`, `DirectoryRole`, `AzureRole`, `AccessPackage`, `AccessPackageAssignmentPolicy`.| ## Relationships None. diff --git a/api-reference/v1.0/resources/accessreviewset.md b/api-reference/v1.0/resources/accessreviewset.md index a2d59bc8674..aa5c838641a 100644 --- a/api-reference/v1.0/resources/accessreviewset.md +++ b/api-reference/v1.0/resources/accessreviewset.md @@ -5,14 +5,14 @@ author: "jyothig123" ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType -ms.date: 07/22/2024 +ms.date: 07/30/2026 --- # accessReviewSet resource type Namespace: microsoft.graph -Container for the base resources that expose the access reviews API and features. Currently exposes only the [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) relationship. +Container for the base resources that expose the access reviews API and features. Inherits from [entity](entity.md). @@ -30,6 +30,7 @@ None. |:---|:---|:---| |definitions|[accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) collection| Represents the template and scheduling for an access review. | |historyDefinitions|[accessReviewHistoryDefinition](../resources/accessreviewhistorydefinition.md) collection| Represents a collection of access review history data and the scopes used to collect that data.| +|unified|[unifiedRoot](../resources/unifiedroot.md)| Entry point for the unified (vNext) access reviews API surface. Requests under this path are routed to the vNext service through the dedicated `accessReviews/unified` path segment.| ## JSON representation diff --git a/api-reference/v1.0/resources/accessreviewstage.md b/api-reference/v1.0/resources/accessreviewstage.md index 4e0b17551e8..7b0742e3c09 100644 --- a/api-reference/v1.0/resources/accessreviewstage.md +++ b/api-reference/v1.0/resources/accessreviewstage.md @@ -5,7 +5,7 @@ author: "isabelleatmsft" ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType -ms.date: 05/23/2024 +ms.date: 07/30/2026 --- # accessReviewStage resource type @@ -23,6 +23,8 @@ Every **accessReviewStage** contains a list of [decision items](accessreviewinst |[Get](../api/accessreviewstage-get.md)|[accessReviewStage](../resources/accessreviewstage.md)|Read the properties and relationships of an [accessReviewStage](../resources/accessreviewstage.md) object.| |[Update](../api/accessreviewstage-update.md)|[accessReviewStage](../resources/accessreviewstage.md)|Update the properties of an [accessReviewStage](../resources/accessreviewstage.md) object.| |[Stop](../api/accessreviewstage-stop.md)|None| Manually stop an accessReviewStage.| +|[Accept recommendations](../api/accessreviewstage-acceptrecommendations.md)|None|Accept the recommendations on all decision items that haven't been reviewed within a single accessReviewStage.| +|[Batch record decisions](../api/accessreviewstage-batchrecorddecisions.md)|None|Record decisions in bulk for all decision items within a single accessReviewStage.| |[Filter by current user](../api/accessreviewstage-filterbycurrentuser.md)|[accessReviewStage](../resources/accessreviewstage.md) collection|Returns all stages on a given [accessReviewInstance](accessReviewInstance.md) for which the calling user is a reviewer.| |[List decisions from a stage of an instance](../api/accessreviewstage-list-decisions.md)|[accessReviewInstanceDecisionItem](../resources/accessreviewinstancedecisionitem.md) collection|Get the decisions made in an accessReviewStage.| diff --git a/api-reference/v1.0/resources/unifiedroot.md b/api-reference/v1.0/resources/unifiedroot.md new file mode 100644 index 00000000000..7123b652358 --- /dev/null +++ b/api-reference/v1.0/resources/unifiedroot.md @@ -0,0 +1,66 @@ +--- +title: "unifiedRoot resource type" +description: "Container resource that groups the unified (vNext) access review collections under the accessReviews/unified path segment." +author: "jyothig123" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +ms.date: 06/30/2026 +--- + +# unifiedRoot resource type + +Namespace: microsoft.graph + +Container resource that groups the unified access review collections under the `identityGovernance/accessReviews/unified` path segment. The `unified` route is the entry point for **user-centric (catalog-scope) access reviews**, where an administrator reviews a user's access across all the resources contained in an [entitlement management catalog](../resources/accesspackagecatalog.md) in a single review, rather than reviewing one resource at a time. + +A catalog is a container that groups multiple resource types—currently groups and applications. With a user-centric review, a reviewer (typically the user's manager) evaluates a principal's access to every group and application in the catalog from a single, consolidated view. The collections reuse the same [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md), [accessReviewInstance](../resources/accessreviewinstance.md), and [accessReviewInstanceDecisionItem](../resources/accessreviewinstancedecisionitem.md) resource shapes as the generally available access reviews API; the catalog scope is expressed through the [principalResourceMembershipsScope](../resources/principalresourcemembershipsscope.md) of the review definition. + +This resource is reached through the **unified** relationship on the [accessReviewSet](../resources/accessreviewset.md) resource. + +The following table summarizes how the unified route differs from the current access reviews API. + +| Aspect | Current access reviews (`accessReviews`) | Unified access reviews (`accessReviews/unified`) | +|:---|:---|:---| +| Review focus | Reviews a single resource at a time (one group, application, directory role, or access package). | User-centric: reviews a principal's access across all groups and applications in a catalog in one review. | +| Scope model | Typically an [accessReviewQueryScope](../resources/accessreviewqueryscope.md) targeting one resource. | A [principalResourceMembershipsScope](../resources/principalresourcemembershipsscope.md) with a resource scope of `scopeType: catalog`. | +| Routing | Addressed under `identityGovernance/accessReviews`. | Addressed under `identityGovernance/accessReviews/unified`. The path segment is self-describing, discoverable in metadata, and works with the Microsoft Graph SDKs and Graph Explorer. | + +Inherits from [entity](entity.md). + +## Methods + +|Method|Return type|Description| +|:---|:---|:---| +|[List definitions](../api/unifiedroot-list-definitions.md)|[accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) collection|Retrieve the user-centric (catalog-scope) [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) objects through the unified route.| +|[Create definition](../api/unifiedroot-post-definitions.md)|[accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md)|Create a new user-centric (catalog-scope) [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) object through the unified route.| + +Only listing and creating definitions are documented as dedicated **unified** methods, because creating a catalog-scope review is the one operation that is specific to the unified route. After a definition is created, its instances, stages, and decisions are managed through the shared [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md), [accessReviewInstance](../resources/accessreviewinstance.md), and [accessReviewInstanceDecisionItem](../resources/accessreviewinstancedecisionitem.md) operations (for example, get, update, delete, list instances, stop, and apply decisions), addressed under the `identityGovernance/accessReviews/unified` path segment. + +## Properties + +None. + +## Relationships + +|Relationship|Type|Description| +|:---|:---|:---| +|decisions|[accessReviewInstanceDecisionItem](../resources/accessreviewinstancedecisionitem.md) collection|Represents the unified (vNext) access review decisions on an instance of a review.| +|definitions|[accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) collection|Represents the unified (vNext) template and scheduling for an access review.| +|instances|[accessReviewInstance](../resources/accessreviewinstance.md) collection|Represents the unified (vNext) instance of a review.| + +## JSON representation + +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.unifiedRoot" +} +``` diff --git a/api-reference/v1.0/toc/toc.mapping.json b/api-reference/v1.0/toc/toc.mapping.json index 3c227229ba6..91ad6b43dbc 100644 --- a/api-reference/v1.0/toc/toc.mapping.json +++ b/api-reference/v1.0/toc/toc.mapping.json @@ -865,7 +865,8 @@ "accessReviewStage", "accessReviewInstanceDecisionItem", "accessReviewHistoryDefinition", - "accessReviewHistoryInstance" + "accessReviewHistoryInstance", + "unifiedRoot" ] }, { diff --git a/changelog/Microsoft.IdentityGovernance.AccessReviews.json b/changelog/Microsoft.IdentityGovernance.AccessReviews.json index 157fd754219..f590c457ac3 100644 --- a/changelog/Microsoft.IdentityGovernance.AccessReviews.json +++ b/changelog/Microsoft.IdentityGovernance.AccessReviews.json @@ -1,5 +1,95 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "ec61b0bf-2b95-46b9-93a9-da0086695f62", + "ApiChange": "Resource", + "ChangedApiName": "unifiedRoot", + "ChangeType": "Addition", + "Description": "Added the [unifiedRoot](https://learn.microsoft.com/graph/api/resources/unifiedroot) resource type to group the unified (vNext) access review collections under the `accessReviews/unified` path segment.", + "Target": "unifiedRoot" + }, + { + "Id": "ec61b0bf-2b95-46b9-93a9-da0086695f62", + "ApiChange": "Relationship", + "ChangedApiName": "unified", + "ChangeType": "Addition", + "Description": "Added the **unified** relationship to the [accessReviewSet](https://learn.microsoft.com/graph/api/resources/accessreviewset) resource as the entry point for the unified (vNext) access reviews API surface, routed through the dedicated `accessReviews/unified` path segment.", + "Target": "accessReviewSet" + }, + { + "Id": "ec61b0bf-2b95-46b9-93a9-da0086695f62", + "ApiChange": "Method", + "ChangedApiName": "listDefinitions", + "ChangeType": "Addition", + "Description": "Added the [unifiedRoot: list definitions](https://learn.microsoft.com/graph/api/unifiedroot-list-definitions) method to retrieve user-centric (catalog-scope) [accessReviewScheduleDefinition](https://learn.microsoft.com/graph/api/resources/accessreviewscheduledefinition) objects through the unified route.", + "Target": "unifiedRoot" + }, + { + "Id": "ec61b0bf-2b95-46b9-93a9-da0086695f62", + "ApiChange": "Method", + "ChangedApiName": "postDefinitions", + "ChangeType": "Addition", + "Description": "Added the [unifiedRoot: create definition](https://learn.microsoft.com/graph/api/unifiedroot-post-definitions) method to create a new user-centric (catalog-scope) [accessReviewScheduleDefinition](https://learn.microsoft.com/graph/api/resources/accessreviewscheduledefinition) object through the unified route.", + "Target": "unifiedRoot" + }, + { + "Id": "ec61b0bf-2b95-46b9-93a9-da0086695f62", + "ApiChange": "Relationship", + "ChangedApiName": "decisions", + "ChangeType": "Addition", + "Description": "Added the **decisions** relationship to the [unifiedRoot](https://learn.microsoft.com/graph/api/resources/unifiedroot) resource to list the [accessReviewInstanceDecisionItem](https://learn.microsoft.com/graph/api/resources/accessreviewinstancedecisionitem) objects across the unified (vNext) access reviews, routed through the `accessReviews/unified/decisions` path segment.", + "Target": "unifiedRoot" + }, + { + "Id": "ec61b0bf-2b95-46b9-93a9-da0086695f62", + "ApiChange": "Relationship", + "ChangedApiName": "definitions", + "ChangeType": "Addition", + "Description": "Added the **definitions** relationship to the [unifiedRoot](https://learn.microsoft.com/graph/api/resources/unifiedroot) resource to list the [accessReviewScheduleDefinition](https://learn.microsoft.com/graph/api/resources/accessreviewscheduledefinition) objects across the unified (vNext) access reviews, routed through the `accessReviews/unified/definitions` path segment.", + "Target": "unifiedRoot" + }, + { + "Id": "ec61b0bf-2b95-46b9-93a9-da0086695f62", + "ApiChange": "Relationship", + "ChangedApiName": "instances", + "ChangeType": "Addition", + "Description": "Added the **instances** relationship to the [unifiedRoot](https://learn.microsoft.com/graph/api/resources/unifiedroot) resource to list the [accessReviewInstance](https://learn.microsoft.com/graph/api/resources/accessreviewinstance) objects across the unified (vNext) access reviews, routed through the `accessReviews/unified/instances` path segment.", + "Target": "unifiedRoot" + }, + { + "Id": "ec61b0bf-2b95-46b9-93a9-da0086695f62", + "ApiChange": "Method", + "ChangedApiName": "acceptRecommendations", + "ChangeType": "Addition", + "Description": "Added the [accessReviewStage: acceptRecommendations](https://learn.microsoft.com/graph/api/accessreviewstage-acceptrecommendations) method to accept the recommendations on all decision items that haven't been reviewed within a single [accessReviewStage](https://learn.microsoft.com/graph/api/resources/accessreviewstage).", + "Target": "accessReviewStage" + }, + { + "Id": "ec61b0bf-2b95-46b9-93a9-da0086695f62", + "ApiChange": "Method", + "ChangedApiName": "batchRecordDecisions", + "ChangeType": "Addition", + "Description": "Added the [accessReviewStage: batchRecordDecisions](https://learn.microsoft.com/graph/api/accessreviewstage-batchrecorddecisions) method to record decisions in bulk for all decision items within a single [accessReviewStage](https://learn.microsoft.com/graph/api/resources/accessreviewstage).", + "Target": "accessReviewStage" + }, + { + "Id": "ec61b0bf-2b95-46b9-93a9-da0086695f62", + "ApiChange": "Resource", + "ChangedApiName": "accessReviewInstanceDecisionItemAccessPackageResource", + "ChangeType": "Addition", + "Description": "Added the [accessReviewInstanceDecisionItemAccessPackageResource](https://learn.microsoft.com/graph/api/resources/accessreviewinstancedecisionitemaccesspackageresource) resource type to represent an access package for which access is reviewed through an [accessReviewInstanceDecisionItem](https://learn.microsoft.com/graph/api/resources/accessreviewinstancedecisionitem).", + "Target": "accessReviewInstanceDecisionItemAccessPackageResource" + } + ], + "Id": "ec61b0bf-2b95-46b9-93a9-da0086695f62", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-10T00:00:00.0000000Z", + "WorkloadArea": "Identity and access", + "SubArea": "Governance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index b94bef74abb..2af23d4c38a 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -51,6 +51,7 @@ Added the **allowOnPremUpdateOfOnPremisesObjectIdentifierEnabled** property to t - **uploadSessions** navigation property on [accessPackageResource](/graph/api/resources/accesspackageresource) - [customDataProvidedResourceUploadStatus](/graph/api/resources/enums#customdataprovidedresourceuploadstatus-values) enumeration +Added support for user-centric (catalog-scope) access reviews through the **unified** relationship on the [accessReviewSet](/graph/api/resources/accessreviewset) resource. Use it to create and manage reviews that evaluate a principal's access across all groups and applications in an entitlement management catalog from a single review, and to accept recommendations or record decisions in bulk within a review stage. ### Teamwork and communications | Calls and online meetings - Added the **meetingType** and **cloudVideoInteropInfo** properties to the [onlineMeetingBase](/graph/api/resources/onlinemeetingbase) resource to help determine the type of an online meeting and retrieve Cloud Video Interop settings. From 52166df6564308ced4e7369090bade8ddc05984c Mon Sep 17 00:00:00 2001 From: jessieli-ad Date: Mon, 10 Aug 2026 15:35:47 -0700 Subject: [PATCH 024/189] Document resource path with Exchange routing requirement (#29423) * Document resource path with Exchange routing requirement Updated examples for creating subscriptions to include AAD-UPN prefix usage and clarified resource path recommendations. * Fix example references in documentation * Update guidelines for identifying users by OID or UPN Clarified usage of AAD-UPN prefix for UPNs starting with GUIDs and improved example reference. --- .../outlook-change-notifications-overview.md | 79 ++++++++++++++++++- 1 file changed, 75 insertions(+), 4 deletions(-) diff --git a/concepts/outlook-change-notifications-overview.md b/concepts/outlook-change-notifications-overview.md index 81a503d5717..86d5a78cca1 100644 --- a/concepts/outlook-change-notifications-overview.md +++ b/concepts/outlook-change-notifications-overview.md @@ -43,6 +43,17 @@ Depending on the resource, use the least privileged permission specified in the |[event](/graph/api/resources/event) | Changes to all events in a user's mailbox:
`/me/events`
`/users/{id}/events` | Calendars.Read | Calendars.Read | Calendars.Read | |[message](/graph/api/resources/message) | Changes to all messages in a user's mailbox:
`/me/messages`
`/users/{id}/messages`
Changes to messages in a user's mailFolder:
`/users/{id}/mailFolders/{id}/messages` | Mail.ReadBasic, Mail.Read | Mail.ReadBasic, Mail.Read | Mail.ReadBasic, Mail.Read | +### Resource path + +The **resource** value identifies the mailbox to subscribe to, for example `users/{id}/messages`. Provide a user identifier that resolves to a single, unambiguous mailbox; otherwise, subscription creation might fail intermittently with a `503 ServiceUnavailable` error, such as "Mailbox info is stale." + +> [!IMPORTANT] +> We recommend that you identify the user by object ID (OID) rather than by user principal name (UPN), because the OID always maps to a single user. + +If you prefer to use a UPN and the UPN begins with a GUID, such as `3f8c2a71-6d45-4e9b-a237-81c5f0d762ae@contoso.com`, the portion before the `@` symbol can be misinterpreted as a mailbox GUID rather than a UPN. To prevent this, prefix the value with `AAD-UPN:` so that it's always treated as a UPN. Use the `AAD-UPN:` prefix only when the value is the UPN of a work or school account. + +For an example that uses the `AAD-UPN:` prefix, see [Example 2](#example-2-create-a-subscription-using-a-upn-that-begins-with-a-guid). + ### Include resource data in notification payload To have resource data included in a change notification, you **must** specify the following properties, in addition to those you normally include when creating a subscription: @@ -56,11 +67,11 @@ To have resource data included in a change notification, you **must** specify th - **encryptionCertificate**: This property contains only the public key that Microsoft Graph uses to encrypt resource data. Keep the corresponding private key to [decrypt the content](change-notifications-with-resource-data.md#decrypting-resource-data-from-change-notifications). - **encryptionCertificateId**: This property is your own identifier for the certificate. Use this ID to match in each change notification which certificate to use for decryption. -See an [example](#example-2-create-a-subscription-to-get-change-notifications-with-resource-data-when-the-user-receives-a-new-message) for subscribing to change notifications with resource data for the **message** resource. +See an [example](#example-3-create-a-subscription-to-get-change-notifications-with-resource-data-when-the-user-receives-a-new-message) for subscribing to change notifications with resource data for the **message** resource. ### Refine the conditions for a notification -You can further refine the conditions for a notification by using the `$filter` query parameter. See an [example](#example-3-create-a-subscription-to-get-change-notifications-with-resource-data-for-a-message-based-on-a-condition). +You can further refine the conditions for a notification by using the `$filter` query parameter. See an [example](#example-4-create-a-subscription-to-get-change-notifications-with-resource-data-for-a-message-based-on-a-condition). One common application of `$filter` is to get notified upon a change in a specific resource property. For example, you can use `$filter` to subscribe to unread messages in a folder (the **isRead** property is `false`), and include all the change types: - A message added to or marked unread in the folder would trigger a `Created` notification. @@ -232,7 +243,67 @@ Content-type: application/json } ``` -### Example 2: Create a subscription to get change notifications with resource data when the user receives a new message +### Example 2: Create a subscription using a UPN that begins with a GUID + +The following example subscribes to notifications for a message being created in the mailbox of a user whose UPN begins with a GUID. The `resource` value uses the `AAD-UPN:` prefix so that Exchange treats the value as a UPN. For more information, see [Resource path](#resource-path). + +#### Request + + + +```http +POST https://graph.microsoft.com/v1.0/subscriptions +Content-type: application/json +{ + "changeType": "created", + "notificationUrl": "https://webhook.azurewebsites.net/api/send/myNotifyClient", + "resource": "users/AAD-UPN:3f8c2a71-6d45-4e9b-a237-81c5f0d762ae@contoso.com/messages", + "expirationDateTime": "2021-07-07T21:42:18.2257768+00:00", + "clientState": "secretClientState" +} +``` + +#### Response + +The following example shows the response. + +> **Note:** The response object shown here might be shortened for readability. + + + +```http +HTTP/1.1 201 Created +Content-type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#subscriptions/$entity", + "id": "5522bd62-7c96-4530-85b0-00b916f6151a", + "resource": "users/AAD-UPN:3f8c2a71-6d45-4e9b-a237-81c5f0d762ae@contoso.com/messages", + "applicationId": "507c3b9a-67b8-463d-88a2-15a8cefb2111", + "changeType": "created", + "clientState": "secretClientState", + "notificationUrl": "https://webhook.azurewebsites.net/api/send/myNotifyClient", + "notificationQueryOptions": null, + "notificationContentType": null, + "lifecycleNotificationUrl": null, + "expirationDateTime": "2022-01-01T21:42:18.2257768Z", + "creatorId": "a4c7bd34-4f3b-46b7-a25d-b63c1e2a2842", + "includeResourceData": null, + "latestSupportedTlsVersion": "v1_2", + "encryptionCertificate": null, + "encryptionCertificateId": null, + "notificationUrlAppId": null +} +``` + +### Example 3: Create a subscription to get change notifications with resource data when the user receives a new message The following example subscribes to notifications with resource data for a message being created in the user's mailbox. The properties of the **message** resource to be included in the notification payload are specified using the `$select` query parameter. #### Request @@ -294,7 +365,7 @@ Content-type: application/json } ``` -### Example 3: Create a subscription to get change notifications with resource data for a message based on a condition +### Example 4: Create a subscription to get change notifications with resource data for a message based on a condition The following example subscribes to notifications with resource data for a message being created in the Drafts folder, containing one or more attachments, and of high importance. #### Request From b45fbd8922236982b1f5558996aba2ad8a6ceb0a Mon Sep 17 00:00:00 2001 From: Diego Luces Date: Mon, 10 Aug 2026 15:56:17 -0700 Subject: [PATCH 025/189] Clarify that app-only driveItem upload for protected files is not supported (#29320) * Clarify that app-only driveItem upload for protected files is not supported * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: dilucesr Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- api-reference/beta/api/driveitem-createuploadsession.md | 3 +++ api-reference/beta/api/driveitem-put-content.md | 3 +++ api-reference/v1.0/api/driveitem-createuploadsession.md | 3 +++ api-reference/v1.0/api/driveitem-put-content.md | 3 +++ 4 files changed, 12 insertions(+) diff --git a/api-reference/beta/api/driveitem-createuploadsession.md b/api-reference/beta/api/driveitem-createuploadsession.md index 578b38c7958..7b2ad33e173 100644 --- a/api-reference/beta/api/driveitem-createuploadsession.md +++ b/api-reference/beta/api/driveitem-createuploadsession.md @@ -31,6 +31,9 @@ Choose the permission or permissions marked as least privileged for this API. Us [!INCLUDE [permissions-table](../includes/permissions/driveitem-createuploadsession-permissions.md)] +> [!NOTE] +> Replacing the contents of a file protected with a sensitivity label is not supported with app-only authentication. Use delegated permissions (user context) instead. + [!INCLUDE [app-permissions](../includes/sharepoint-embedded-app-driveitem-permissions.md)] ## Create an upload session diff --git a/api-reference/beta/api/driveitem-put-content.md b/api-reference/beta/api/driveitem-put-content.md index 5f675546452..e583c5dd598 100644 --- a/api-reference/beta/api/driveitem-put-content.md +++ b/api-reference/beta/api/driveitem-put-content.md @@ -27,6 +27,9 @@ Choose the permission or permissions marked as least privileged for this API. Us [!INCLUDE [permissions-table](../includes/permissions/driveitem-put-content-permissions.md)] +> [!NOTE] +> Replacing the contents of a file protected with a sensitivity label is not supported with app-only authentication. Use delegated permissions (user context) instead. + [!INCLUDE [app-permissions](../includes/sharepoint-embedded-app-driveitem-permissions.md)] ## HTTP request diff --git a/api-reference/v1.0/api/driveitem-createuploadsession.md b/api-reference/v1.0/api/driveitem-createuploadsession.md index 91b4be85446..ae4e0049e40 100644 --- a/api-reference/v1.0/api/driveitem-createuploadsession.md +++ b/api-reference/v1.0/api/driveitem-createuploadsession.md @@ -29,6 +29,9 @@ Choose the permission or permissions marked as least privileged for this API. Us [!INCLUDE [permissions-table](../includes/permissions/driveitem-createuploadsession-permissions.md)] +> [!NOTE] +> Replacing the contents of a file protected with a sensitivity label is not supported with app-only authentication. Use delegated permissions (user context) instead. + [!INCLUDE [app-permissions](../includes/sharepoint-embedded-app-driveitem-permissions.md)] ## HTTP request diff --git a/api-reference/v1.0/api/driveitem-put-content.md b/api-reference/v1.0/api/driveitem-put-content.md index 7f7e7059b7a..ebf54fa36cd 100644 --- a/api-reference/v1.0/api/driveitem-put-content.md +++ b/api-reference/v1.0/api/driveitem-put-content.md @@ -25,6 +25,9 @@ Choose the permission or permissions marked as least privileged for this API. Us [!INCLUDE [permissions-table](../includes/permissions/driveitem-put-content-permissions.md)] +> [!NOTE] +> Replacing the contents of a file protected with a sensitivity label is not supported with app-only authentication. Use delegated permissions (user context) instead. + [!INCLUDE [app-permissions](../includes/sharepoint-embedded-app-driveitem-permissions.md)] ## HTTP request From 65c96894c910d581e411d9ba16965b2278ccdc5b Mon Sep 17 00:00:00 2001 From: jcksonhe Date: Mon, 10 Aug 2026 15:58:55 -0700 Subject: [PATCH 026/189] Add beta docs for textClassificationRequest embeddings (embeddingInput resource, (#29284) * Add beta docs for textClassificationRequest embeddings (embeddingInput resource, embeddings property) Adds resource docs for embeddingInput and the embeddings property on textClassificationRequest, plus changelog entry 86651b97 for the optional precomputed embeddings feature. Descriptions sourced from the CSDL annotations; ms.subservice set to security (matches sibling DCS docs). CRUD API stubs were pruned (no public collection endpoint; real API is the hidden classifyText action). Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Add classificationRequestContentMetaData resource doc to fix broken link textclassificationrequest.md links its contentMetaData property to the classificationRequestContentMetaData type, which had no doc page. Add the page documenting the public sourceId property (workloadType is stripped from the public surface because its mipWorkloads enum is hidden). Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Fix invalid openType value in textClassificationRequest resource block The build drop emitted the keyProperty value (id) into the openType field, which must be a boolean. textClassificationRequest is not an open type in the public metadata, so set openType to false. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Define mlClassificationMatchTolerance and sensitiveTypeScope enums textClassificationRequest references these enum types, but they were not defined in the doc set. Add their members to enums.md (exact/near and fullDocument/partialDocument) to satisfy apidoctor type resolution. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Address review feedback on textClassificationRequest beta docs - Add "## Methods / None." to textClassificationRequest, classificationRequestContentMetaData, and embeddingInput - Mark mlClassificationMatchTolerance and sensitiveTypeScope as evolvable enumerations (add unknownFutureValue) with a Prefer-header note - Link enum type cells to enums.md; add the mipWorkloads enum - Add the workloadType property to classificationRequestContentMetaData - Expand JSON representation examples with child properties - Remove "Required." suffix from embeddingInput property descriptions - Add textClassificationRequest to toc.mapping.json (top-level) - Clean up changelog CreatedDateTime and populate SubArea Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 85311cf5-08ec-4447-ba0e-50920c8328ee * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Remove unknownFutureValue from DCS classification enums to match schema matchTolerancesToInclude and scopesToRun map to mlClassificationMatchTolerance and sensitiveTypeScope, which do not define unknownFutureValue in schema-Prod-beta.csdl. Drop the sentinel members and the evolvable-enumeration note so the beta docs match the wire contract. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 85311cf5-08ec-4447-ba0e-50920c8328ee * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add DCS complex types to beta TOC and a What's New entry Add classificationRequestContentMetaData and embeddingInput to the Data security and compliance complexTypes array in the beta toc.mapping.json so both new complex types are discoverable, and add a July 2026 preview What's New entry for the embeddingInput resource and textClassificationRequest embeddings property per repo schema-change guidance. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 85311cf5-08ec-4447-ba0e-50920c8328ee * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Copilot-Session: 85311cf5-08ec-4447-ba0e-50920c8328ee --- .../classificationrequestcontentmetadata.md | 44 +++++++++++ .../beta/resources/embeddinginput.md | 46 +++++++++++ api-reference/beta/resources/enums.md | 26 +++++++ .../resources/textclassificationrequest.md | 76 +++++++++++++++++++ api-reference/beta/toc/toc.mapping.json | 5 +- .../Microsoft.DataClassificationService.json | 26 +++++++ concepts/whats-new-overview.md | 4 + 7 files changed, 226 insertions(+), 1 deletion(-) create mode 100644 api-reference/beta/resources/classificationrequestcontentmetadata.md create mode 100644 api-reference/beta/resources/embeddinginput.md create mode 100644 api-reference/beta/resources/textclassificationrequest.md diff --git a/api-reference/beta/resources/classificationrequestcontentmetadata.md b/api-reference/beta/resources/classificationrequestcontentmetadata.md new file mode 100644 index 00000000000..6b318914bf2 --- /dev/null +++ b/api-reference/beta/resources/classificationrequestcontentmetadata.md @@ -0,0 +1,44 @@ +--- +title: "classificationRequestContentMetaData resource type" +description: "Metadata that describes the content being classified in a text classification request." +author: "jcksonhe" +ms.date: 07/10/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# classificationRequestContentMetaData resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Metadata that describes the content being classified. Pass this optional metadata in the [textClassificationRequest](../resources/textclassificationrequest.md) **contentMetaData** property to give the service additional context about the source of the content. + +## Methods +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|sourceId|String|An identifier for the source of the content being classified.| +|workloadType|[mipWorkloads](enums.md#mipworkloads-values)|The type of workload the content belongs to. The possible values are: `endpointDevices`, `exchange`, `oneDriveForBusiness`, `sharePoint`, `teams`, `coldCrawl`, `applications`.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.classificationRequestContentMetaData", + "sourceId": "String", + "workloadType": "String" +} +``` diff --git a/api-reference/beta/resources/embeddinginput.md b/api-reference/beta/resources/embeddinginput.md new file mode 100644 index 00000000000..a3b01f0a6e8 --- /dev/null +++ b/api-reference/beta/resources/embeddinginput.md @@ -0,0 +1,46 @@ +--- +title: "embeddingInput resource type" +description: "A set of precomputed embedding vectors produced by a single embedding model for the request text." +author: "jcksonhe" +ms.date: 07/10/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# embeddingInput resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +A set of precomputed embedding vectors produced by a single embedding model for the request text. Provide one **embeddingInput** per model in the [textClassificationRequest](../resources/textclassificationrequest.md) **embeddings** collection so the service can skip recomputing embeddings. + + +## Methods +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|data|String|The embedding vectors the model produced for the text, encoded as a base64 string of little-endian 32-bit floats. Every vector the model emitted (for example, one per text chunk) is concatenated in order; each contributes exactly the modelType's embedding dimension worth of float components, so the decoded length must be a whole multiple of that dimension.| +|modelType|String|The embedding model identifier drawn from the service allow-list (for example: text-embedding-3-small-512). Unique (case-insensitive) within the embeddings collection; entries whose modelType is outside the allow-list are rejected with a 400.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.embeddingInput", + "modelType": "String", + "data": "String" +} +``` + diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index 27415ca1cd6..0487f0f2044 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -6184,3 +6184,29 @@ Possible values for user account types (group membership), per Windows definitio |appliedSuccessfullyButObjectNotFound| |applyNotSupported| |unknownFutureValue| + +### mlClassificationMatchTolerance values + +|Member| +|:---| +|exact| +|near| + +### sensitiveTypeScope values + +|Member| +|:---| +|fullDocument| +|partialDocument| + +### mipWorkloads values + +|Member| +|:---| +|endpointDevices| +|exchange| +|oneDriveForBusiness| +|sharePoint| +|teams| +|coldCrawl| +|applications| diff --git a/api-reference/beta/resources/textclassificationrequest.md b/api-reference/beta/resources/textclassificationrequest.md new file mode 100644 index 00000000000..955e9d713fb --- /dev/null +++ b/api-reference/beta/resources/textclassificationrequest.md @@ -0,0 +1,76 @@ +--- +title: "textClassificationRequest resource type" +description: "Represents a request to classify text for sensitive information types, with optional caller-supplied precomputed embeddings." +author: "jcksonhe" +ms.date: 07/10/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# textClassificationRequest resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a request to classify text for sensitive information types. Optionally include caller-supplied precomputed [embeddingInput](../resources/embeddinginput.md) values so the service can skip recomputing embeddings for the text. + +A **textClassificationRequest** is submitted to the **classifyText** action of the **dataClassificationService** resource. + +Inherits from [entity](../resources/entity.md). + +## Methods +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|contentMetaData|[classificationRequestContentMetaData](../resources/classificationrequestcontentmetadata.md)|Metadata that describes the content being classified.| +|embeddings|[embeddingInput](../resources/embeddinginput.md) collection|Optional caller-supplied precomputed embeddings for the text, so the service can skip recomputing them. Embeddings for models outside the allow-list are rejected with a 400.| +|fileExtension|String|The file extension of the content being classified.| +|id|String|The unique identifier for the entity. Inherited from [entity](../resources/entity.md).| +|matchTolerancesToInclude|[mlClassificationMatchTolerance](enums.md#mlclassificationmatchtolerance-values)|The match tolerance levels to include in the classification results. The possible values are: `exact`, `near`.| +|scopesToRun|[sensitiveTypeScope](enums.md#sensitivetypescope-values)|The document scopes over which to run classification. The possible values are: `fullDocument`, `partialDocument`.| +|sensitiveTypeIds|String collection|The identifiers of the sensitive information types to evaluate against the text.| +|text|String|The text to classify.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.textClassificationRequest", + "id": "String (identifier)", + "text": "String", + "embeddings": [ + { + "@odata.type": "microsoft.graph.embeddingInput", + "modelType": "String", + "data": "String" + } + ], + "fileExtension": "String", + "sensitiveTypeIds": [ + "String" + ], + "scopesToRun": "String", + "matchTolerancesToInclude": "String", + "contentMetaData": { + "@odata.type": "microsoft.graph.classificationRequestContentMetaData", + "sourceId": "String", + "workloadType": "String" + } +} +``` + diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index cc247f5dc6d..85cfc014d35 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -2898,7 +2898,8 @@ "contentActivity", "microsoft.graph.security.sensitivityLabel", "tenantDataSecurityAndGovernance", - "userDataSecurityAndGovernance" + "userDataSecurityAndGovernance", + "textClassificationRequest" ], "complexTypes": [ "aiAgentInfo", @@ -2911,12 +2912,14 @@ "classifcationErrorBase", "classificationError", "classificationInnerError", + "classificationRequestContentMetaData", "computeRightsAndInheritanceResult", "contentActivityMetadata", "contentBase", "customMetadataDictionary", "deviceMetadata", "dlpActionInfo", + "embeddingInput", "groupScope", "integratedApplicationMetadata", "labelActionBase", diff --git a/changelog/Microsoft.DataClassificationService.json b/changelog/Microsoft.DataClassificationService.json index 1e2dbed677d..dad9d2357de 100644 --- a/changelog/Microsoft.DataClassificationService.json +++ b/changelog/Microsoft.DataClassificationService.json @@ -1,5 +1,31 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "86651b97-6020-453d-9460-572f5efeb88b", + "ApiChange": "Resource", + "ChangedApiName": "embeddingInput", + "ChangeType": "Addition", + "Description": "Added the [embeddingInput](https://learn.microsoft.com/en-us/graph/api/resources/embeddinginput?view=graph-rest-beta) resource.", + "Target": "embeddingInput" + }, + { + "Id": "86651b97-6020-453d-9460-572f5efeb88b", + "ApiChange": "Property", + "ChangedApiName": "embeddings", + "ChangeType": "Addition", + "Description": "Added the **embeddings** property to the [textClassificationRequest](https://learn.microsoft.com/en-us/graph/api/resources/textclassificationrequest?view=graph-rest-beta) resource.", + "Target": "textClassificationRequest" + } + ], + "Id": "86651b97-6020-453d-9460-572f5efeb88b", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-10T00:00:00.0000000Z", + "WorkloadArea": "Security", + "SubArea": "Data security and compliance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 2af23d4c38a..7f9e96ae855 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -129,6 +129,10 @@ Added the **sponsorOf** relationship to the [user](/graph/api/resources/user?vie - Added the [alert: moveAlerts](/graph/api/security-alert-movealerts) and [incident: mergeIncidents](/graph/api/security-incident-mergeincidents) actions to support moving alerts and merging incidents in Microsoft Defender. - Added the [correlationReason](/graph/api/resources/security-correlationreason) enumeration and [mergeResponse](/graph/api/resources/security-mergeresponse) resource type. +### Security | Data security and compliance + +Added the [embeddingInput](/graph/api/resources/embeddinginput?view=graph-rest-beta&preserve-view=true) resource type and the **embeddings** property on the [textClassificationRequest](/graph/api/resources/textclassificationrequest?view=graph-rest-beta&preserve-view=true) resource, so a caller can supply precomputed embedding vectors when classifying text and let the service skip recomputing them. + ### Security | eDiscovery Added the `cloudNativeHtmlConversion` member to the [additionalDataOptions](/graph/api/resources/security-ediscoveryaddtoreviewsetoperation#additionaldataoptions-values) enumeration. From 2fdd5b33bf250c12c69e949affa43c1d38ba24fd Mon Sep 17 00:00:00 2001 From: shirleyqin-msft <105316451+shirleyqin-msft@users.noreply.github.com> Date: Mon, 10 Aug 2026 19:01:43 -0400 Subject: [PATCH 027/189] add document for new api ReportSyntheticMedia on beta (#29065) * add document for new api ReportSyntheticMedia on beta * drop the term "ddepfake" * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.Skype.Calling.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Update participant-reportsyntheticmedia.md * Update videometadata.md * Update reference TOC * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address reviewer feedback from MSFT-Andrea - Align mediametadata.md description field with body text - Use 'or' between codec examples in videometadata.md - Revert permissions-reference.md (autogenerated, cannot be manually updated) Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Update participant-reportsyntheticmedia.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address review feedback: codec example wording and 'meeting call' phrasing Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * fix the json * Apply suggestion from @MSFT-Andrea * address comments * update the api details * fix examples * clarify rate limit * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * fix * Update reference TOC * remove "first party" * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../api/participant-reportsyntheticmedia.md | 305 ++++++++++++++++++ ...cipant-reportsyntheticmedia-permissions.md | 12 + api-reference/beta/resources/audiometadata.md | 43 +++ api-reference/beta/resources/enums.md | 20 ++ api-reference/beta/resources/mediametadata.md | 69 ++++ api-reference/beta/resources/mediasegment.md | 47 +++ api-reference/beta/resources/participant.md | 5 +- .../beta/resources/streamingmetadata.md | 43 +++ .../syntheticmediadetectiondetail.md | 51 +++ .../resources/syntheticmediadetectioninfo.md | 45 +++ api-reference/beta/resources/videometadata.md | 43 +++ .../toc/teamwork-and-communications/toc.yml | 18 ++ api-reference/beta/toc/toc.mapping.json | 9 + changelog/Microsoft.Skype.Calling.json | 98 ++++++ concepts/whats-new-overview.md | 5 + 15 files changed, 812 insertions(+), 1 deletion(-) create mode 100644 api-reference/beta/api/participant-reportsyntheticmedia.md create mode 100644 api-reference/beta/includes/permissions/participant-reportsyntheticmedia-permissions.md create mode 100644 api-reference/beta/resources/audiometadata.md create mode 100644 api-reference/beta/resources/mediametadata.md create mode 100644 api-reference/beta/resources/mediasegment.md create mode 100644 api-reference/beta/resources/streamingmetadata.md create mode 100644 api-reference/beta/resources/syntheticmediadetectiondetail.md create mode 100644 api-reference/beta/resources/syntheticmediadetectioninfo.md create mode 100644 api-reference/beta/resources/videometadata.md diff --git a/api-reference/beta/api/participant-reportsyntheticmedia.md b/api-reference/beta/api/participant-reportsyntheticmedia.md new file mode 100644 index 00000000000..eba3ea68170 --- /dev/null +++ b/api-reference/beta/api/participant-reportsyntheticmedia.md @@ -0,0 +1,305 @@ +--- +title: "participant: reportSyntheticMedia" +description: "Report synthetic media detections for a participant in a meeting call." +author: "shirleyqin-msft" +ms.date: 06/15/2026 +ms.localizationpriority: medium +ms.subservice: "cloud-communications" +doc_type: apiPageType +--- + +# participant: reportSyntheticMedia + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Report synthetic media detections for a [participant](../resources/participant.md) in a meeting call. This action is intended for certified third-party audio and video synthetic media detection bots admitted to the meeting call. The detection bot calls this action to flag a participant whose stream it identifies as AI-generated or synthetic media. The detection result is propagated to all participants via roster updates. + +After a successful request, the service stores the detection on the participant as a [syntheticMediaDetectionInfo](../resources/syntheticmediadetectioninfo.md) object in the participant's [syntheticMediaDetection](../resources/participant.md#properties) property and delivers it to all participants in a roster update notification. Each request with a new **id** creates a separate detection record; the service doesn't deduplicate or merge reports. When a participant has multiple detection records, the **syntheticMediaDetection** property reflects the most recent report. + +Third-party bots can invoke this action only when the meeting tenant administrator grants the app the `Calls.ReportSyntheticMedia.All` application permission. + +The detection bot must be admitted to the call before it can call this action. For more information about registering a calling bot and joining calls, see [Calls and online meetings](../resources/communications-api-overview.md). The bot obtains the call ID and participant ID from the call roster and subsequent participant roster update notifications, and uses the [call](../resources/call.md)'s **id** as `{call-id}` and the [participant](../resources/participant.md)'s **id** as `{participant-id}` in the request URL. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/participant-reportsyntheticmedia-permissions.md)] + +## HTTP request + + +``` http +POST /communications/calls/{call-id}/participants/{participant-id}/reportSyntheticMedia +POST /app/calls/{call-id}/participants/{participant-id}/reportSyntheticMedia +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the parameters. + +The following table lists the parameters that you can include when you call this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|contentMetadata|[mediaMetadata](../resources/mediametadata.md)|Metadata about the content that was analyzed. Required.| +|detectionDateTime|DateTimeOffset|Date and time when the bot performed the detection. This value reflects when the analysis occurred, not when the analyzed media was captured. For media that's recorded and analyzed later, specify the time of analysis. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Required.| +|detections|[syntheticMediaDetectionDetail](../resources/syntheticmediadetectiondetail.md) collection|Per-model or per-segment detection results that support the overall finding. Required.| +|id|Guid|Unique identifier for the detection event, in GUID format. The detection bot generates this value, which must be globally unique across reports. Each request that specifies a new **id** creates a separate detection record. Required.| +|isMalicious|Boolean|Indicates whether the detected synthetic media has malicious intent. Set to `true` when the detection bot considers the AI-generated content to have malicious intent; otherwise, `false`. Required.| +|overallConfidence|Double|Aggregated confidence score that the participant's media is synthetic. The value ranges from `0.0` (low confidence) to `1.0` (high confidence). Each **confidence** value in the **detections** collection represents the score for an individual model or segment, whereas **overallConfidence** represents the aggregated score for the participant. Required.| +|severity|detectionSeverity|Qualitative severity banding of the detection. Because **severity** reflects the same underlying signal as **overallConfidence**, the two values should generally correspond. Optional. Nullable. Omit the value or set it to `null` when the severity can't be determined. The possible values are: `low`, `medium`, `high`, `unknownFutureValue`.| + +## Response + +If successful, this action returns a `200 OK` response code. + +### Error responses + +This action can return the following common errors. For more information, see [Errors in Microsoft Graph](/graph/errors). + +|Status code|Error condition| +|:---|:---| +|`400`|The request is malformed, such as an invalid participant ID format or a missing required parameter.| +|`403`|The app doesn't have the `Calls.ReportSyntheticMedia.All` permission, or the detection bot isn't admitted to the call.| +|`404`|The specified call or participant isn't found.| +|`429`|The app exceeded the request rate limit and is throttled.| + +A live detection bot can call this action frequently for the same participant. To avoid throttling, report only meaningful changes in the detection rather than every analyzed frame, and limit the reporting rate to no more than one request per target participant per minute. + +## Examples + +### Example 1: Report audio synthetic media detection + +The following example shows how to report a synthetic media detection for audio content. + +#### Request + +The following example shows a request. + + +``` http +POST https://graph.microsoft.com/beta/communications/calls/481f3600-983e-4276-9b59-c1b30ec8d125/participants/550fae72-d251-43ec-868c-373732c2704f/reportSyntheticMedia +Content-Type: application/json + +{ + "id": "a1b2c3d4-e5f6-7890-abcd-ef1234567890", + "detectionDateTime": "2026-03-13T21:00:00Z", + "severity": "high", + "overallConfidence": 0.92, + "isMalicious": true, + "contentMetadata": { + "modality": "audio", + "isRealTime": true, + "mimeType": "audio/pcm", + "byteSize": 0, + "duration": 15, + "audioMetadata": { + "sampleRateHz": 16000, + "bitDepth": 16, + "channels": 1 + }, + "streamingMetadata": { + "latencyMs": 50, + "frameDropRate": 0.0, + "networkJitterMs": 10 + } + }, + "detections": [ + { + "modelName": "DeepfakeDetector-v2", + "modality": "audio", + "modelTasks": ["voiceClone"], + "segment": { + "startTimeSec": 0, + "endTimeSec": 15, + "frameIndices": [] + }, + "confidence": 0.95 + } + ] +} +``` + +#### Response + +The following example shows the response. + + +``` http +HTTP/1.1 200 OK +``` + +### Example 2: Report video synthetic media detection + +The following example shows how to report a synthetic media detection for video content. + +#### Request + +The following example shows a request. + + +``` http +POST https://graph.microsoft.com/beta/communications/calls/481f3600-983e-4276-9b59-c1b30ec8d125/participants/550fae72-d251-43ec-868c-373732c2704f/reportSyntheticMedia +Content-Type: application/json + +{ + "id": "c3d4e5f6-a7b8-9012-cdef-345678901234", + "detectionDateTime": "2026-03-13T21:05:00Z", + "severity": "high", + "overallConfidence": 0.91, + "isMalicious": true, + "contentMetadata": { + "modality": "video", + "isRealTime": false, + "mimeType": "video/mp4", + "byteSize": 2048000, + "duration": 30, + "videoMetadata": { + "codec": "H.264", + "frameRate": 30.0, + "bitrateKbps": 512 + } + }, + "detections": [ + { + "modelName": "FaceSwapDetector-v3", + "modality": "video", + "modelTasks": ["faceSwap", "lipSync"], + "segment": { + "startTimeSec": 0, + "endTimeSec": 0, + "frameIndices": [150, 180, 210, 240] + }, + "confidence": 0.91 + } + ] +} +``` + +#### Response + +The following example shows the response. + + +``` http +HTTP/1.1 200 OK +``` + +### Example 3: Report multimodal synthetic media detection + +The following example shows how to report a real-time detection that combines audio and video analysis. The **modality** is `multimodal`, the **contentMetadata** includes both **audioMetadata** and **videoMetadata** (plus **streamingMetadata** for the live stream), and the **detections** collection contains one entry per modality. + +#### Request + +The following example shows a request. + + +``` http +POST https://graph.microsoft.com/beta/communications/calls/481f3600-983e-4276-9b59-c1b30ec8d125/participants/550fae72-d251-43ec-868c-373732c2704f/reportSyntheticMedia +Content-Type: application/json + +{ + "id": "b2c3d4e5-f6a7-8901-bcde-f23456789012", + "detectionDateTime": "2026-03-13T21:10:00Z", + "severity": "high", + "overallConfidence": 0.94, + "isMalicious": true, + "contentMetadata": { + "modality": "multimodal", + "isRealTime": true, + "mimeType": "video/mp4", + "byteSize": 0, + "duration": 20, + "audioMetadata": { + "sampleRateHz": 16000, + "bitDepth": 16, + "channels": 1 + }, + "videoMetadata": { + "codec": "H.264", + "frameRate": 30.0, + "bitrateKbps": 512 + }, + "streamingMetadata": { + "latencyMs": 50, + "frameDropRate": 0.0, + "networkJitterMs": 10 + } + }, + "detections": [ + { + "modelName": "VoiceCloneDetector-v1", + "modality": "audio", + "modelTasks": ["voiceClone"], + "segment": { + "startTimeSec": 0, + "endTimeSec": 20, + "frameIndices": [] + }, + "confidence": 0.93 + }, + { + "modelName": "FaceSwapDetector-v3", + "modality": "video", + "modelTasks": ["faceSwap", "lipSync"], + "segment": { + "startTimeSec": 5, + "endTimeSec": 18, + "frameIndices": [150, 180, 210, 240] + }, + "confidence": 0.95 + } + ] +} +``` + +#### Response + +The following example shows the response. + + +``` http +HTTP/1.1 200 OK +``` diff --git a/api-reference/beta/includes/permissions/participant-reportsyntheticmedia-permissions.md b/api-reference/beta/includes/permissions/participant-reportsyntheticmedia-permissions.md new file mode 100644 index 00000000000..1c9ab1ef9a0 --- /dev/null +++ b/api-reference/beta/includes/permissions/participant-reportsyntheticmedia-permissions.md @@ -0,0 +1,12 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Not supported.|Not supported.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Calls.ReportSyntheticMedia.All|Not available.| + diff --git a/api-reference/beta/resources/audiometadata.md b/api-reference/beta/resources/audiometadata.md new file mode 100644 index 00000000000..bb12b8ab6c0 --- /dev/null +++ b/api-reference/beta/resources/audiometadata.md @@ -0,0 +1,43 @@ +--- +title: "audioMetadata resource type" +description: "Represents audio-specific encoding details supplied alongside a synthetic media detection report." +author: "shirleyqin-msft" +ms.date: 06/15/2026 +ms.localizationpriority: medium +ms.subservice: "cloud-communications" +doc_type: resourcePageType +--- + +# audioMetadata resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents audio-specific encoding details supplied alongside a synthetic media detection report. Set on [mediaMetadata](../resources/mediametadata.md) when the analyzed content is audio or multimodal. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|bitDepth|Int32|Bit depth of the audio samples (for example, `16`, `24`).| +|channels|Int32|Number of audio channels (for example, `1` for mono, `2` for stereo).| +|sampleRateHz|Int32|Sample rate in Hertz (for example, `16000`, `48000`).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.audioMetadata", + "sampleRateHz": "Int32", + "bitDepth": "Int32", + "channels": "Int32" +} +``` diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index 0487f0f2044..fc6917530d3 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -1108,6 +1108,17 @@ Namespace: microsoft.graph | unknownFutureValue | | strictLocation | +### contentModality values + +| Member | +| ------------------ | +| audio | +| video | +| image | +| text | +| multimodal | +| unknownFutureValue | + ### msiType values | Member | @@ -1676,6 +1687,15 @@ Namespace: microsoft.graph | softwareOneTimePasscode | | unknownFutureValue | +### detectionSeverity values + +| Member | +| ------------------ | +| low | +| medium | +| high | +| unknownFutureValue | + ### clientCredentialType values | Member | diff --git a/api-reference/beta/resources/mediametadata.md b/api-reference/beta/resources/mediametadata.md new file mode 100644 index 00000000000..b38c84705f0 --- /dev/null +++ b/api-reference/beta/resources/mediametadata.md @@ -0,0 +1,69 @@ +--- +title: "mediaMetadata resource type" +description: "Describes the audio, video, or streaming content that a detection bot analyzed when calling reportSyntheticMedia." +author: "shirleyqin-msft" +ms.date: 06/15/2026 +ms.localizationpriority: medium +ms.subservice: "cloud-communications" +doc_type: resourcePageType +--- + +# mediaMetadata resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Describes the audio, video, or streaming content that a detection bot analyzed when calling [reportSyntheticMedia](../api/participant-reportsyntheticmedia.md). This resource combines high-level content attributes (modality, MIME type, duration) with optional modality-specific subobjects. + +Which metadata subobjects to populate depends on the **modality** and whether the analysis is real time: + +|modality|Metadata subobjects to set| +|:---|:---| +|`audio`|**audioMetadata**, plus **streamingMetadata** when **isRealTime** is `true`.| +|`video`|**videoMetadata**, plus **streamingMetadata** when **isRealTime** is `true`.| +|`multimodal`|**audioMetadata** and **videoMetadata**, plus **streamingMetadata** when **isRealTime** is `true`.| +|`image`|None. The metadata subobjects can be empty.| +|`text`|None. The metadata subobjects can be empty.| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|audioMetadata|[audioMetadata](../resources/audiometadata.md)|Audio-specific encoding details. Nullable. Set when the analyzed content is audio or multimodal.| +|byteSize|Int64|Size of the content in bytes. Set this value to `0` for live streams where the total size is unknown; for recorded files, specify the actual size.| +|duration|Int32|Duration of the analyzed content in whole seconds. Sub-second or millisecond windows are rounded to the nearest second. For a continuous live stream, set this value to the length of the analysis window.| +|isRealTime|Boolean|Indicates whether the analysis was performed in real time on a live stream.| +|mimeType|String|MIME type of the analyzed content. Common values for Teams media include `audio/pcm`, `video/mp4`, and `video/h264`.| +|modality|contentModality|Type of content to be analyzed. The possible values are: `audio`, `video`, `image`, `text`, `multimodal`, `unknownFutureValue`.| +|streamingMetadata|[streamingMetadata](../resources/streamingmetadata.md)|Network and real-time streaming quality metrics. Nullable. Set when the analyzed content was streamed in real time.| +|videoMetadata|[videoMetadata](../resources/videometadata.md)|Video-specific encoding and quality details. Nullable. Set when the analyzed content is video or multimodal.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.mediaMetadata", + "modality": "String", + "isRealTime": "Boolean", + "mimeType": "String", + "byteSize": "Int64", + "duration": "Int32", + "videoMetadata": { + "@odata.type": "microsoft.graph.videoMetadata" + }, + "audioMetadata": { + "@odata.type": "microsoft.graph.audioMetadata" + }, + "streamingMetadata": { + "@odata.type": "microsoft.graph.streamingMetadata" + } +} +``` diff --git a/api-reference/beta/resources/mediasegment.md b/api-reference/beta/resources/mediasegment.md new file mode 100644 index 00000000000..4f4934f8ec6 --- /dev/null +++ b/api-reference/beta/resources/mediasegment.md @@ -0,0 +1,47 @@ +--- +title: "mediaSegment resource type" +description: "Represents a contiguous time range of media analyzed by a synthetic media detection model and, for video, specific frames." +author: "shirleyqin-msft" +ms.date: 06/15/2026 +ms.localizationpriority: medium +ms.subservice: "cloud-communications" +doc_type: resourcePageType +--- + +# mediaSegment resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a contiguous time range of media analyzed by a synthetic media detection model and, for video, specific frames. Used by [syntheticMediaDetectionDetail](../resources/syntheticmediadetectiondetail.md). + +For real-time analysis of a live stream, **startTimeSec** and **endTimeSec** are measured in seconds from the start of the analyzed stream, which serves as the zero point. For recorded or offline analysis, where a stream-relative time base doesn't apply, set both values to `0`. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|endTimeSec|Int32|End time of the segment, in seconds from the start of the analyzed live stream. Set to `0` for recorded or offline analysis, where a stream-relative time base doesn't apply.| +|frameIndices|Int32 collection|Frame indices that identify the video frames in the segment. Applies only to video analysis; pass an empty array for audio-only segments.| +|startTimeSec|Int32|Start time of the segment, in seconds from the start of the analyzed live stream. Set to `0` for recorded or offline analysis, where a stream-relative time base doesn't apply.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.mediaSegment", + "startTimeSec": "Int32", + "endTimeSec": "Int32", + "frameIndices": [ + "Int32" + ] +} +``` diff --git a/api-reference/beta/resources/participant.md b/api-reference/beta/resources/participant.md index b73dcbd5a15..6a7035751a3 100644 --- a/api-reference/beta/resources/participant.md +++ b/api-reference/beta/resources/participant.md @@ -26,6 +26,7 @@ Represents a participant in a [call](call.md). | [Invite](../api/participant-invite.md) | [inviteParticipantsOperation](../resources/inviteparticipantsoperation.md) | Invite a participant to the call. | | [Mute participant](../api/participant-mute.md) | [muteParticipantOperation](muteparticipantoperation.md) | Mute a participant in a call. | | [Mute all participants](../api/participant-muteall.md) | [commsOperation](commsoperation.md) | Mute all the participants in the meeting. | +| [Report synthetic media](../api/participant-reportsyntheticmedia.md) | None | Report synthetic media detections for a [participant](../resources/participant.md) in a meeting call. | | [Start hold music](../api/participant-startholdmusic.md) | [startHoldMusicOperation](startholdmusicoperation.md) | Place a participant on hold while playing music on the background. | | [Stop hold music](../api/participant-stopholdmusic.md) | [stopHoldMusicOperation](stopholdmusicoperation.md) | Reincorporate a participant previously put on hold to the call. | @@ -44,6 +45,7 @@ Represents a participant in a [call](call.md). | removedState | [removedState](removedstate.md) | Indicates the reason why the **participant** was removed from the roster. | | restrictedExperience | [onlineMeetingRestricted](onlinemeetingrestricted.md) | Indicates the reason or reasons why media content from this participant is restricted. | | rosterSequenceNumber | Int64 | Indicates the roster sequence number the **participant** was last updated in. | +| syntheticMediaDetection | [syntheticMediaDetectionInfo](syntheticmediadetectioninfo.md) | The latest synthetic media detection result reported for this participant by an in-call detection bot. Nullable. Set to `null` when no detection is reported. Populated asynchronously after a successful call to [reportSyntheticMedia](../api/participant-reportsyntheticmedia.md). | ## Relationships @@ -72,7 +74,8 @@ The following JSON representation shows the resource type. "recordingInfo": { "@odata.type": "#microsoft.graph.recordingInfo" }, "removedState": { "@odata.type": "#microsoft.graph.removedState" }, "restrictedExperience": { "@odata.type": "#microsoft.graph.onlineMeetingRestricted" }, - "rosterSequenceNumber": "Int64" + "rosterSequenceNumber": "Int64", + "syntheticMediaDetection": { "@odata.type": "#microsoft.graph.syntheticMediaDetectionInfo" } } ``` diff --git a/api-reference/beta/resources/streamingmetadata.md b/api-reference/beta/resources/streamingmetadata.md new file mode 100644 index 00000000000..57f6baf0bad --- /dev/null +++ b/api-reference/beta/resources/streamingmetadata.md @@ -0,0 +1,43 @@ +--- +title: "streamingMetadata resource type" +description: "Represents network and real-time streaming quality metrics that accompany a synthetic media detection report." +author: "shirleyqin-msft" +ms.date: 06/15/2026 +ms.localizationpriority: medium +ms.subservice: "cloud-communications" +doc_type: resourcePageType +--- + +# streamingMetadata resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents network and real-time streaming quality metrics that accompany a synthetic media detection report. Used by [mediaMetadata](../resources/mediametadata.md) when the analyzed content was streamed in real time. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|frameDropRate|Double|Percentage of frames dropped during streaming, expressed as a value between `0.0` and `1.0`.| +|latencyMs|Int32|Network latency in milliseconds.| +|networkJitterMs|Int32|Network jitter in milliseconds.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.streamingMetadata", + "latencyMs": "Int32", + "frameDropRate": "Double", + "networkJitterMs": "Int32" +} +``` diff --git a/api-reference/beta/resources/syntheticmediadetectiondetail.md b/api-reference/beta/resources/syntheticmediadetectiondetail.md new file mode 100644 index 00000000000..41392ad08ab --- /dev/null +++ b/api-reference/beta/resources/syntheticmediadetectiondetail.md @@ -0,0 +1,51 @@ +--- +title: "syntheticMediaDetectionDetail resource type" +description: "Represents one individual detection result produced by a synthetic media detection model for a single time segment of media." +author: "shirleyqin-msft" +ms.date: 06/15/2026 +ms.localizationpriority: medium +ms.subservice: "cloud-communications" +doc_type: resourcePageType +--- + +# syntheticMediaDetectionDetail resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents one individual detection result produced by a synthetic media detection model for a single time segment of media. A [reportSyntheticMedia](../api/participant-reportsyntheticmedia.md) request can contain a collection of these details (for example, one per model or per segment). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|confidence|Double|Confidence score for this specific detection, expressed as a value between `0.0` and `1.0`.| +|modality|contentModality|Type of media to be analyzed. The possible values are: `audio`, `video`, `image`, `text`, `multimodal`, `unknownFutureValue`.| +|modelName|String|Name of the detection model used (for example, `DeepfakeDetector-v2`, `VoiceAuthenticator-v1`).| +|modelTasks|String collection|Detection tasks that the model performed. This value is free-form text. The bot can specify any task names that describe its analysis. Common examples include `faceSwap`, `lipSync`, and `voiceClone`.| +|segment|[mediaSegment](../resources/mediasegment.md)|Time segment of the media that was analyzed.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.syntheticMediaDetectionDetail", + "modelName": "String", + "modality": "String", + "modelTasks": [ + "String" + ], + "segment": { + "@odata.type": "microsoft.graph.mediaSegment" + }, + "confidence": "Double" +} +``` diff --git a/api-reference/beta/resources/syntheticmediadetectioninfo.md b/api-reference/beta/resources/syntheticmediadetectioninfo.md new file mode 100644 index 00000000000..264db8068aa --- /dev/null +++ b/api-reference/beta/resources/syntheticmediadetectioninfo.md @@ -0,0 +1,45 @@ +--- +title: "syntheticMediaDetectionInfo resource type" +description: "Represents the current synthetic media detection result attached to a participant in a call." +author: "shirleyqin-msft" +ms.date: 06/15/2026 +ms.localizationpriority: medium +ms.subservice: "cloud-communications" +doc_type: resourcePageType +--- + +# syntheticMediaDetectionInfo resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the current synthetic media detection result attached to a [participant](../resources/participant.md) in a call. Detection bots produce this object indirectly by invoking [reportSyntheticMedia](../api/participant-reportsyntheticmedia.md). The service then surfaces it on the participant in roster updates and GET responses so all participants can react to the detection. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|detectionId|Guid|Unique identifier for the detection event. This property correlates with the `id` parameter that the detection bot passed to **reportSyntheticMedia**.| +|detectorBot|String|Identifier of the detection bot that produced this result.| +|isParticipantTrusted|Boolean|Set to `true` if the participant is classified as trusted or reliable (for example, a known internal user); otherwise, `false`.| +|syntheticConfidence|Double|Confidence score (`0.0` to `1.0`) that the participant's media is synthetic.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.syntheticMediaDetectionInfo", + "detectionId": "Guid", + "syntheticConfidence": "Double", + "detectorBot": "String", + "isParticipantTrusted": "Boolean" +} +``` diff --git a/api-reference/beta/resources/videometadata.md b/api-reference/beta/resources/videometadata.md new file mode 100644 index 00000000000..ee37b5252b4 --- /dev/null +++ b/api-reference/beta/resources/videometadata.md @@ -0,0 +1,43 @@ +--- +title: "videoMetadata resource type" +description: "Represents video-specific encoding and quality details supplied alongside a synthetic media detection report." +author: "shirleyqin-msft" +ms.date: 06/15/2026 +ms.localizationpriority: medium +ms.subservice: "cloud-communications" +doc_type: resourcePageType +--- + +# videoMetadata resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents video-specific encoding and quality details supplied alongside a synthetic media detection report. Set on [mediaMetadata](../resources/mediametadata.md) when the analyzed content is video or multimodal. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|bitrateKbps|Int32|Video bitrate in kilobits per second.| +|codec|String|The video codec used (for example, `H.264` or `VP9`).| +|frameRate|Double|Frame rate in frames per second.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.videoMetadata", + "codec": "String", + "frameRate": "Double", + "bitrateKbps": "Int32" +} +``` diff --git a/api-reference/beta/toc/teamwork-and-communications/toc.yml b/api-reference/beta/toc/teamwork-and-communications/toc.yml index 4c2e8a806ae..e540868966d 100644 --- a/api-reference/beta/toc/teamwork-and-communications/toc.yml +++ b/api-reference/beta/toc/teamwork-and-communications/toc.yml @@ -406,6 +406,8 @@ items: href: ../../api/participant-mute.md - name: Mute all participants href: ../../api/participant-muteall.md + - name: Report synthetic media + href: ../../api/participant-reportsyntheticmedia.md - name: Start hold music href: ../../api/participant-startholdmusic.md - name: Stop hold music @@ -416,6 +418,22 @@ items: href: ../../resources/addlargegalleryviewoperation.md - name: Get large gallery view operation status href: ../../api/addlargegalleryviewoperation-get.md + - name: Complex types + items: + - name: Audio metadata + href: ../../resources/audiometadata.md + - name: Media metadata + href: ../../resources/mediametadata.md + - name: Media segment + href: ../../resources/mediasegment.md + - name: Streaming metadata + href: ../../resources/streamingmetadata.md + - name: Synthetic media detection detail + href: ../../resources/syntheticmediadetectiondetail.md + - name: Synthetic media detection info + href: ../../resources/syntheticmediadetectioninfo.md + - name: Video metadata + href: ../../resources/videometadata.md - name: Call delegation items: - name: Overview diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 85cfc014d35..95262cf46cf 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -3454,6 +3454,15 @@ "contentSharingSession", "participant", "addLargeGalleryViewOperation" + ], + "complexTypes": [ + "audioMetadata", + "mediaMetadata", + "mediaSegment", + "streamingMetadata", + "syntheticMediaDetectionDetail", + "syntheticMediaDetectionInfo", + "videoMetadata" ] }, { diff --git a/changelog/Microsoft.Skype.Calling.json b/changelog/Microsoft.Skype.Calling.json index d2a2d9e9688..8a258e5bd08 100644 --- a/changelog/Microsoft.Skype.Calling.json +++ b/changelog/Microsoft.Skype.Calling.json @@ -195,6 +195,104 @@ "WorkloadArea": "Teamwork and communications", "SubArea": "Calls and online meetings" }, + { + "ChangeList": [ + { + "Id": "5b781f34-9d2d-435d-add5-da6b6f320f98", + "ApiChange": "Enumeration", + "ChangedApiName": "contentModality", + "ChangeType": "Addition", + "Description": "Added the **contentModality** enumeration type.", + "Target": "contentModality" + }, + { + "Id": "5b781f34-9d2d-435d-add5-da6b6f320f98", + "ApiChange": "Enumeration", + "ChangedApiName": "detectionSeverity", + "ChangeType": "Addition", + "Description": "Added the **detectionSeverity** enumeration type.", + "Target": "detectionSeverity" + }, + { + "Id": "5b781f34-9d2d-435d-add5-da6b6f320f98", + "ApiChange": "Resource", + "ChangedApiName": "audioMetadata", + "ChangeType": "Addition", + "Description": "Added the [audioMetadata](https://learn.microsoft.com/en-us/graph/api/resources/audioMetadata?view=graph-rest-beta) resource.", + "Target": "audioMetadata" + }, + { + "Id": "5b781f34-9d2d-435d-add5-da6b6f320f98", + "ApiChange": "Resource", + "ChangedApiName": "mediaMetadata", + "ChangeType": "Addition", + "Description": "Added the [mediaMetadata](https://learn.microsoft.com/en-us/graph/api/resources/mediaMetadata?view=graph-rest-beta) resource.", + "Target": "mediaMetadata" + }, + { + "Id": "5b781f34-9d2d-435d-add5-da6b6f320f98", + "ApiChange": "Resource", + "ChangedApiName": "mediaSegment", + "ChangeType": "Addition", + "Description": "Added the [mediaSegment](https://learn.microsoft.com/en-us/graph/api/resources/mediaSegment?view=graph-rest-beta) resource.", + "Target": "mediaSegment" + }, + { + "Id": "5b781f34-9d2d-435d-add5-da6b6f320f98", + "ApiChange": "Resource", + "ChangedApiName": "streamingMetadata", + "ChangeType": "Addition", + "Description": "Added the [streamingMetadata](https://learn.microsoft.com/en-us/graph/api/resources/streamingMetadata?view=graph-rest-beta) resource.", + "Target": "streamingMetadata" + }, + { + "Id": "5b781f34-9d2d-435d-add5-da6b6f320f98", + "ApiChange": "Resource", + "ChangedApiName": "syntheticMediaDetectionDetail", + "ChangeType": "Addition", + "Description": "Added the [syntheticMediaDetectionDetail](https://learn.microsoft.com/en-us/graph/api/resources/syntheticMediaDetectionDetail?view=graph-rest-beta) resource.", + "Target": "syntheticMediaDetectionDetail" + }, + { + "Id": "5b781f34-9d2d-435d-add5-da6b6f320f98", + "ApiChange": "Resource", + "ChangedApiName": "syntheticMediaDetectionInfo", + "ChangeType": "Addition", + "Description": "Added the [syntheticMediaDetectionInfo](https://learn.microsoft.com/en-us/graph/api/resources/syntheticMediaDetectionInfo?view=graph-rest-beta) resource.", + "Target": "syntheticMediaDetectionInfo" + }, + { + "Id": "5b781f34-9d2d-435d-add5-da6b6f320f98", + "ApiChange": "Resource", + "ChangedApiName": "videoMetadata", + "ChangeType": "Addition", + "Description": "Added the [videoMetadata](https://learn.microsoft.com/en-us/graph/api/resources/videoMetadata?view=graph-rest-beta) resource.", + "Target": "videoMetadata" + }, + { + "Id": "5b781f34-9d2d-435d-add5-da6b6f320f98", + "ApiChange": "Property", + "ChangedApiName": "syntheticMediaDetection", + "ChangeType": "Addition", + "Description": "Added the **syntheticMediaDetection** property to the [participant](https://learn.microsoft.com/en-us/graph/api/resources/participant?view=graph-rest-beta) resource.", + "Target": "participant" + }, + { + "Id": "5b781f34-9d2d-435d-add5-da6b6f320f98", + "ApiChange": "Method", + "ChangedApiName": "reportSyntheticMedia", + "ChangeType": "Addition", + "Description": "Added the [reportSyntheticMedia](https://learn.microsoft.com/en-us/graph/api/participant-reportsyntheticmedia?view=graph-rest-beta) method to the [participant](https://learn.microsoft.com/en-us/graph/api/resources/participant?view=graph-rest-beta) resource.", + "Target": "participant" + } + ], + "Id": "5b781f34-9d2d-435d-add5-da6b6f320f98", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-10T00:45:18.2072129Z", + "WorkloadArea": "Teamwork and communications", + "SubArea": "Calls and online meetings" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 7f9e96ae855..06a05896e19 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -147,6 +147,11 @@ Added the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?vi ### Tasks and plans +Added the [plannerHistoryItem](/graph/api/resources/plannerhistoryitem?view=graph-rest-beta&preserve-view=true) resource type and [List historyItems](/graph/api/plannerplan-list-historyitems?view=graph-rest-beta&preserve-view=true) method to audit task changes within a Planner plan. Track when tasks are created, updated, deleted, or moved, and filter by **occurredDateTime** to retrieve changes within specific time ranges. + +### Teamwork and communications | Calls and online meetings + +Detect and report synthetic (AI-generated) media in meeting calls using the [reportSyntheticMedia](/graph/api/participant-reportsyntheticmedia?view=graph-rest-beta&preserve-view=true) method on the [participant](/graph/api/resources/participant?view=graph-rest-beta&preserve-view=true) resource. Certified detection bots can analyze audio, video, or multimodal content in real time and report detections with confidence scores, severity levels, and detailed metadata. When a detection is reported, the service populates the **syntheticMediaDetection** property on the participant with a [syntheticMediaDetectionInfo](/graph/api/resources/syntheticmediadetectioninfo?view=graph-rest-beta&preserve-view=true) object, allowing all meeting participants to see and respond to the detection through roster updates. This capability helps organizations identify and mitigate risks from deepfake media, voice cloning, and other AI-generated content in collaborative scenarios. - Added the [plannerHistoryItem](/graph/api/resources/plannerhistoryitem?view=graph-rest-beta&preserve-view=true) resource type and [List historyItems](/graph/api/plannerplan-list-historyitems?view=graph-rest-beta&preserve-view=true) method to audit task changes within a Planner plan. Track when tasks are created, updated, deleted, or moved, and filter by **occurredDateTime** to retrieve changes within specific time ranges. - Added the [plannerGoal](/graph/api/resources/plannergoal?view=graph-rest-beta&preserve-view=true) resource type and related read methods for viewing goals in a Planner plan and understanding which goals are associated with each task. From 59849bf6646813a83a351d5e08bfdef7f857eb34 Mon Sep 17 00:00:00 2001 From: lilealdai <118565463+lilealdai@users.noreply.github.com> Date: Mon, 10 Aug 2026 18:17:28 -0700 Subject: [PATCH 028/189] Delta Patch FileStorageContainer Columns (#29337) * docs: add delta patch columns API documentation for fileStorageContainer Add documentation for the upsert columns API that supports adding, updating, and deleting multiple columnDefinition objects on a fileStorageContainer in a single delta patch request. Modeled after the existing permissions delta patch API (PR #28737). Files added: - api-reference/beta/api/filestoragecontainer-patch-columns.md - api-reference/beta/includes/permissions/filestoragecontainer-patch-columns-permissions.md Files updated: - api-reference/beta/resources/filestoragecontainer.md (methods table) - api-reference/beta/toc/files/toc.yml (TOC entry) Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: update upsert columns API documentation Document the upsert columns operation for beta and v1.0 as create/update only with a 20-column limit. Add FileStorageContainer.Manage.All as a higher delegated permission, changelog entries, and What's New entries. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7c598774-3932-4d61-9d25-e8235ee42518 * docs: preserve resource file EOF spacing Restore the existing trailing blank line on fileStorageContainer resource topics so this PR doesn't include EOF-only spacing changes. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7c598774-3932-4d61-9d25-e8235ee42518 * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: address upsert columns PR feedback Remove generated TOC and national cloud include edits, restore the What's New date, and simplify What's New supporting type references. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7c598774-3932-4d61-9d25-e8235ee42518 * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update security-auditrecordtypedictionary.md * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * fixes * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: 7c598774-3932-4d61-9d25-e8235ee42518 --- .../api/filestoragecontainer-patch-columns.md | 188 ++++++++++++++++++ ...ragecontainer-patch-columns-permissions.md | 11 + .../beta/resources/filestoragecontainer.md | 1 + .../api/filestoragecontainer-patch-columns.md | 186 +++++++++++++++++ ...ragecontainer-patch-columns-permissions.md | 11 + .../v1.0/resources/filestoragecontainer.md | 1 + changelog/Microsoft.FileServices.json | 36 ++++ concepts/whats-new-overview.md | 12 ++ 8 files changed, 446 insertions(+) create mode 100644 api-reference/beta/api/filestoragecontainer-patch-columns.md create mode 100644 api-reference/beta/includes/permissions/filestoragecontainer-patch-columns-permissions.md create mode 100644 api-reference/v1.0/api/filestoragecontainer-patch-columns.md create mode 100644 api-reference/v1.0/includes/permissions/filestoragecontainer-patch-columns-permissions.md diff --git a/api-reference/beta/api/filestoragecontainer-patch-columns.md b/api-reference/beta/api/filestoragecontainer-patch-columns.md new file mode 100644 index 00000000000..0bd8cad667c --- /dev/null +++ b/api-reference/beta/api/filestoragecontainer-patch-columns.md @@ -0,0 +1,188 @@ +--- +title: "Upsert columns" +description: "Upsert up to 20 columns on a fileStorageContainer in a single delta patch request." +author: "lilealdai" +ms.localizationpriority: medium +ms.subservice: "onedrive" +doc_type: apiPageType +ms.date: 07/23/2026 +--- + +# Upsert columns + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Upsert (create or update) up to 20 [columnDefinition](../resources/columndefinition.md) objects on a [fileStorageContainer](../resources/filestoragecontainer.md) in a single request. Delta patch allows the caller to perform multiple operations (create, update) on up to 20 columns with a single request. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/filestoragecontainer-patch-columns-permissions.md)] + +[!INCLUDE [app-permissions](../includes/sharepoint-embedded-app-permissions.md)] + +## HTTP request + + +```http +PATCH /storage/fileStorage/containers/{containerId}/columns +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON object with the following properties. + +|Name|Type|Description| +|:---|:---|:---| +|@context|String|OData annotation that identifies the payload type. Must be set to `#$delta` to signal a delta patch operation. Required.| +|value|[columnDefinition](../resources/columndefinition.md) collection|A collection of up to 20 **columnDefinition** objects to process. Required.| + +Each entry in the **value** collection represents one operation on a [columnDefinition](../resources/columndefinition.md). The presence of the **id** property determines how the entry is interpreted: + +- **Create**: Omit the **id** property. Specify the **name** property and the column type property (for example, **boolean**, **text**, **choice**). +- **Update**: Include the **id** of the existing column and the properties to update. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [columnDefinition](../resources/columndefinition.md) objects in the response body. Columns that are processed successfully include the full **columnDefinition** object. Failed items include a **@Core.DataModificationException** annotation with error details. + +This API might also return the following error response codes for the entire request: + +|HTTP code|Description| +|:---|:---| +|400|Bad request.| +|401|Request lacks valid authentication credentials.| +|403|Provided authentication credentials are valid but insufficient to perform requested operation.| +|404|Container doesn't exist.| +|423|Container is locked. For example, the container is archived.| + +## Examples + +### Request + +The following example shows a single delta patch request that mixes create and update items in one call. Items without an ID are treated as create operations; items with an ID are treated as update operations. Items that fail are reported inline with a **@Core.DataModificationException** annotation. The remaining items still succeed. + + +```http +PATCH https://graph.microsoft.com/beta/storage/fileStorage/containers/b!ISJs1WRro0y0EWgkUYcktDa0mE8zSlFEqFzqRn70Zwp1CEtDEBZgQICPkRbil_5Z/columns +Content-Type: application/json + +{ + "@context": "#$delta", + "value": [ + { + "id": "aec21c58-7f1f-4875-b438-d47ef622306c", + "isSearchable": false + }, + { + "id": "aec21c58-7f1f-4875-b438-d47df622306c", + "isSearchable": false + }, + { + "name": "booleanColumn1234", + "boolean": {} + }, + { + "name": "booleanColumn33", + "boolean": {} + } + ] +} +``` + +### Response + +The following example shows the response. The response includes one item for each item in the request, in the same order. In this example, the first request item is an update operation that succeeds, the second request item is an update operation that fails because no column with that ID exists, the third request item is a create operation that succeeds, and the fourth request item is a create operation that fails because a column with that name already exists. + +>**Note:** The response object shown here might be shortened for readability. + + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#storage/fileStorage/containers('b%21ISJs1WRro0y0EWgkUYcktDa0mE8zSlFEqFzqRn70Zwp1CEtDEBZgQICPkRbil_5Z')/columns/$delta", + "value": [ + { + "@odata.etag": "\"4\"", + "description": "", + "displayName": "booleanColumn8", + "id": "aec21c58-7f1f-4875-b438-d47ef622306c", + "indexed": false, + "isSearchable": false, + "isDeletable": true, + "isSealed": false, + "name": "booleanColumn8", + "readOnly": false, + "type": "boolean", + "boolean": {} + }, + { + "@Core.DataModificationException": { + "@odata.type": "#Org.OData.Core.V1.DataModificationExceptionType", + "failedOperation": "Update", + "responseCode": 404, + "info": { + "code": "NotFound", + "message": "Item not found." + } + }, + "id": "aec21c58-7f1f-4875-b438-d47df622306c", + "type": "unknownFutureValue" + }, + { + "@odata.etag": "\"1\"", + "description": "", + "displayName": "booleanColumn1234", + "id": "7eac4ae0-afe9-4a02-8cfa-9369558b44db", + "indexed": false, + "isSearchable": false, + "isDeletable": true, + "isSealed": false, + "name": "booleanColumn1234", + "readOnly": false, + "type": "boolean", + "boolean": {} + }, + { + "@Core.DataModificationException": { + "@odata.type": "#Org.OData.Core.V1.DataModificationExceptionType", + "failedOperation": "Create", + "responseCode": 409, + "info": { + "code": "Conflict", + "message": "A field with the specified name already exists" + } + }, + "id": "00000000-0000-0000-0000-000000000000", + "name": "booleanColumn33", + "type": "unknownFutureValue", + "boolean": {} + } + ] +} +``` diff --git a/api-reference/beta/includes/permissions/filestoragecontainer-patch-columns-permissions.md b/api-reference/beta/includes/permissions/filestoragecontainer-patch-columns-permissions.md new file mode 100644 index 00000000000..f5681557e74 --- /dev/null +++ b/api-reference/beta/includes/permissions/filestoragecontainer-patch-columns-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|FileStorageContainer.Selected|FileStorageContainer.Manage.All| +|Delegated (personal Microsoft account)|FileStorageContainer.Selected|Not available.| +|Application|FileStorageContainer.Selected|Not available.| diff --git a/api-reference/beta/resources/filestoragecontainer.md b/api-reference/beta/resources/filestoragecontainer.md index 9cdf3fd0205..61851e0cf49 100644 --- a/api-reference/beta/resources/filestoragecontainer.md +++ b/api-reference/beta/resources/filestoragecontainer.md @@ -46,6 +46,7 @@ Represents a location where multiple users or a group of users can store files a |[Get column](../api/filestoragecontainer-get-column.md)|[columnDefinition](../resources/columndefinition.md)|Get the properties of a column represented as a [columnDefinition](../resources/columndefinition.md) in a [fileStorageContainer](../resources/filestoragecontainer.md).| |[Update column](../api/filestoragecontainer-update-column.md)|[columnDefinition](../resources/columndefinition.md)|Update an existing column represented as a [columnDefinition](../resources/columndefinition.md) in a [fileStorageContainer](../resources/filestoragecontainer.md).| |[Delete column](../api/filestoragecontainer-delete-column.md)|None|Delete a [columnDefinition](../resources/columndefinition.md) from a [fileStorageContainer](../resources/filestoragecontainer.md).| +|[Upsert columns](../api/filestoragecontainer-patch-columns.md)|[columnDefinition](../resources/columndefinition.md) collection|Upsert (create or update) up to 20 [columnDefinition](../resources/columndefinition.md) objects on a [fileStorageContainer](../resources/filestoragecontainer.md) in a single request.| |[Update recycle bin settings](../api/filestoragecontainer-update-recyclebinsettings.md)|[recyclebinsettings](../resources/recyclebinsettings.md)|Update recycleBin settings for a fileStorageContainer.| |[Restore recycle bin items](../api/filestoragecontainer-restore-recyclebinitem.md)|[recycleBinItem](../resources/recyclebinitem.md) collection|Restore recycle bin items in a fileStorageContainer.| |[Delete recycle bin items](../api/recyclebinitem-delete.md)|None|Delete [recycleBinItem](../resources/recyclebinitem.md) objects permanently from the [recycleBin](../resources/recyclebin.md) of a [fileStorageContainer](../resources/filestoragecontainer.md).| diff --git a/api-reference/v1.0/api/filestoragecontainer-patch-columns.md b/api-reference/v1.0/api/filestoragecontainer-patch-columns.md new file mode 100644 index 00000000000..7c179fa5895 --- /dev/null +++ b/api-reference/v1.0/api/filestoragecontainer-patch-columns.md @@ -0,0 +1,186 @@ +--- +title: "Upsert columns" +description: "Upsert up to 20 columns on a fileStorageContainer in a single delta patch request." +author: "lilealdai" +ms.localizationpriority: medium +ms.subservice: "onedrive" +doc_type: apiPageType +ms.date: 07/23/2026 +--- + +# Upsert columns + +Namespace: microsoft.graph + +Upsert (create or update) up to 20 [columnDefinition](../resources/columndefinition.md) objects on a [fileStorageContainer](../resources/filestoragecontainer.md) in a single request. Delta patch allows the caller to perform multiple operations (create, update) on up to 20 columns with a single request. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/filestoragecontainer-patch-columns-permissions.md)] + +[!INCLUDE [app-permissions](../includes/sharepoint-embedded-app-permissions.md)] + +## HTTP request + + +```http +PATCH /storage/fileStorage/containers/{containerId}/columns +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON object with the following properties. + +|Name|Type|Description| +|:---|:---|:---| +|@context|String|OData annotation that identifies the payload type. Must be set to `#$delta` to signal a delta patch operation. Required.| +|value|[columnDefinition](../resources/columndefinition.md) collection|A collection of up to 20 **columnDefinition** objects to process. Required.| + +Each entry in the **value** collection represents one operation on a [columnDefinition](../resources/columndefinition.md). The presence of the **id** property determines how the entry is interpreted: + +- **Create**: Omit the **id** property. Specify the **name** property and the column type property (for example, **boolean**, **text**, **choice**). +- **Update**: Include the **id** of the existing column and the properties to update. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [columnDefinition](../resources/columndefinition.md) objects in the response body. Columns that are processed successfully include the full **columnDefinition** object. Failed items include a **@Core.DataModificationException** annotation with error details. + +This API might also return the following error response codes for the entire request: + +|HTTP code|Description| +|:---|:---| +|400|Bad request.| +|401|Request lacks valid authentication credentials.| +|403|Provided authentication credentials are valid but insufficient to perform requested operation.| +|404|Container doesn't exist.| +|423|Container is locked. For example, the container is archived.| + +## Examples + +### Request + +The following example shows a single delta patch request that mixes create and update items in one call. Items without an ID are treated as create operations; items with an ID are treated as update operations. Items that fail are reported inline with a **@Core.DataModificationException** annotation. The remaining items still succeed. + + +```http +PATCH https://graph.microsoft.com/v1.0/storage/fileStorage/containers/b!ISJs1WRro0y0EWgkUYcktDa0mE8zSlFEqFzqRn70Zwp1CEtDEBZgQICPkRbil_5Z/columns +Content-Type: application/json + +{ + "@context": "#$delta", + "value": [ + { + "id": "aec21c58-7f1f-4875-b438-d47ef622306c", + "isSearchable": false + }, + { + "id": "aec21c58-7f1f-4875-b438-d47df622306c", + "isSearchable": false + }, + { + "name": "booleanColumn1234", + "boolean": {} + }, + { + "name": "booleanColumn33", + "boolean": {} + } + ] +} +``` + +### Response + +The following example shows the response. The response includes one item for each item in the request, in the same order. In this example, the first request item is an update operation that succeeds, the second request item is an update operation that fails because no column with that ID exists, the third request item is a create operation that succeeds, and the fourth request item is a create operation that fails because a column with that name already exists. + +>**Note:** The response object shown here might be shortened for readability. + + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#storage/fileStorage/containers('b%21ISJs1WRro0y0EWgkUYcktDa0mE8zSlFEqFzqRn70Zwp1CEtDEBZgQICPkRbil_5Z')/columns/$delta", + "value": [ + { + "@odata.etag": "\"4\"", + "description": "", + "displayName": "booleanColumn8", + "id": "aec21c58-7f1f-4875-b438-d47ef622306c", + "indexed": false, + "isSearchable": false, + "isDeletable": true, + "isSealed": false, + "name": "booleanColumn8", + "readOnly": false, + "type": "boolean", + "boolean": {} + }, + { + "@Core.DataModificationException": { + "@odata.type": "#Org.OData.Core.V1.DataModificationExceptionType", + "failedOperation": "Update", + "responseCode": 404, + "info": { + "code": "NotFound", + "message": "Item not found." + } + }, + "id": "aec21c58-7f1f-4875-b438-d47df622306c", + "type": "unknownFutureValue" + }, + { + "@odata.etag": "\"1\"", + "description": "", + "displayName": "booleanColumn1234", + "id": "7eac4ae0-afe9-4a02-8cfa-9369558b44db", + "indexed": false, + "isSearchable": false, + "isDeletable": true, + "isSealed": false, + "name": "booleanColumn1234", + "readOnly": false, + "type": "boolean", + "boolean": {} + }, + { + "@Core.DataModificationException": { + "@odata.type": "#Org.OData.Core.V1.DataModificationExceptionType", + "failedOperation": "Create", + "responseCode": 409, + "info": { + "code": "Conflict", + "message": "A field with the specified name already exists" + } + }, + "id": "00000000-0000-0000-0000-000000000000", + "name": "booleanColumn33", + "type": "unknownFutureValue", + "boolean": {} + } + ] +} +``` diff --git a/api-reference/v1.0/includes/permissions/filestoragecontainer-patch-columns-permissions.md b/api-reference/v1.0/includes/permissions/filestoragecontainer-patch-columns-permissions.md new file mode 100644 index 00000000000..f5681557e74 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/filestoragecontainer-patch-columns-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|FileStorageContainer.Selected|FileStorageContainer.Manage.All| +|Delegated (personal Microsoft account)|FileStorageContainer.Selected|Not available.| +|Application|FileStorageContainer.Selected|Not available.| diff --git a/api-reference/v1.0/resources/filestoragecontainer.md b/api-reference/v1.0/resources/filestoragecontainer.md index 33f845426ca..0ef6ecd1154 100644 --- a/api-reference/v1.0/resources/filestoragecontainer.md +++ b/api-reference/v1.0/resources/filestoragecontainer.md @@ -43,6 +43,7 @@ Represents a location where multiple users or a group of users can store files a |[Get column](../api/filestoragecontainer-get-column.md)|[columnDefinition](../resources/columndefinition.md)|Get the properties of a column represented as a [columnDefinition](../resources/columndefinition.md) in a [fileStorageContainer](../resources/filestoragecontainer.md).| |[Update column](../api/filestoragecontainer-update-column.md)|[columnDefinition](../resources/columndefinition.md)|Update an existing column represented as a [columnDefinition](../resources/columndefinition.md) in a [fileStorageContainer](../resources/filestoragecontainer.md).| |[Delete column](../api/filestoragecontainer-delete-column.md)|None|Delete a [columnDefinition](../resources/columndefinition.md) from a [fileStorageContainer](../resources/filestoragecontainer.md). | +|[Upsert columns](../api/filestoragecontainer-patch-columns.md)|[columnDefinition](../resources/columndefinition.md) collection|Upsert (create or update) up to 20 [columnDefinition](../resources/columndefinition.md) objects on a [fileStorageContainer](../resources/filestoragecontainer.md) in a single request.| |[Update recycle bin settings](../api/filestoragecontainer-update-recyclebinsettings.md)|[recyclebinsettings](../resources/recyclebinsettings.md)|Update recycleBin settings for a fileStorageContainer.| |[Delete recycle bin items](../api/filestoragecontainer-delete-recyclebinitem.md)|None|Delete recycle bin items from a fileStorageContainer.| |[Restore recycle bin items](../api/filestoragecontainer-restore-recyclebinitem.md)|[recycleBinItem](../resources/recyclebinitem.md) collection|Restore recycle bin items in a fileStorageContainer.| diff --git a/changelog/Microsoft.FileServices.json b/changelog/Microsoft.FileServices.json index 4a87d089ef7..d5bca8ee8ee 100644 --- a/changelog/Microsoft.FileServices.json +++ b/changelog/Microsoft.FileServices.json @@ -1,5 +1,41 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "3498fb14-8a27-478b-b9d7-391c6da24b98", + "ApiChange": "Method", + "ChangedApiName": "fileStorageContainer", + "ChangeType": "Addition", + "Description": "Added the [Upsert columns](https://learn.microsoft.com/en-us/graph/api/filestoragecontainer-patch-columns?view=graph-rest-beta) operation to the [fileStorageContainer](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainer?view=graph-rest-beta) resource.", + "Target": "fileStorageContainer" + } + ], + "Id": "3498fb14-8a27-478b-b9d7-391c6da24b98", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-10T18:38:43.9321467Z", + "WorkloadArea": "Files", + "SubArea": "" + }, + { + "ChangeList": [ + { + "Id": "b6601337-a557-4257-ba92-3478c9fd13a9", + "ApiChange": "Method", + "ChangedApiName": "fileStorageContainer", + "ChangeType": "Addition", + "Description": "Added the [Upsert columns](https://learn.microsoft.com/en-us/graph/api/filestoragecontainer-patch-columns?view=graph-rest-1.0) operation to the [fileStorageContainer](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainer?view=graph-rest-1.0) resource.", + "Target": "fileStorageContainer" + } + ], + "Id": "b6601337-a557-4257-ba92-3478c9fd13a9", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-10T18:38:43.9321467Z", + "WorkloadArea": "Files", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 06a05896e19..92ecbac281a 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -18,6 +18,18 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what > [!IMPORTANT] > Features in _preview_ status are subject to change without notice, and might not be promoted to generally available (GA) status. Don't use preview features in production apps. +## August 2026: New and generally available + +### Files + +- Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer) resource type to create or update up to 20 columnDefinition objects in a single request. + +## August 2026: New in preview only + +### Files + +- Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns?view=graph-rest-beta&preserve-view=true) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource type to create or update up to 20 columnDefinition objects in a single request. + ## July 2026: New and generally available ### Device and app management | Cloud PC From c18b034b54301a87132ca4b03c91a01a89e07b5a Mon Sep 17 00:00:00 2001 From: Jasmeet Singh <22637121+jasmeet9323@users.noreply.github.com> Date: Mon, 10 Aug 2026 18:25:26 -0700 Subject: [PATCH 029/189] Add Section Management reorder API docs for beta (#29411) * Add Section Management reorder API documentation Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: fcfd4701-59b2-4e3c-859c-33f5d2e92ab9 * Address Section reorder documentation review feedback Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: fcfd4701-59b2-4e3c-859c-33f5d2e92ab9 * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: jsinghmokha Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: fcfd4701-59b2-4e3c-859c-33f5d2e92ab9 --- .../beta/api/teamworksection-reorder.md | 150 ++++++++++++++++++ .../beta/api/teamworksectionitem-reorder.md | 149 +++++++++++++++++ .../beta/api/userteamwork-list-sections.md | 2 +- .../teamworksection-reorder-permissions.md | 11 ++ ...teamworksectionitem-reorder-permissions.md | 11 ++ .../beta/resources/teams-api-overview.md | 2 +- .../beta/resources/teamworksection.md | 3 +- .../beta/resources/teamworksectionitem.md | 1 + changelog/Microsoft.Teams.GraphSvc.json | 26 +++ concepts/whats-new-overview.md | 6 + 10 files changed, 358 insertions(+), 3 deletions(-) create mode 100644 api-reference/beta/api/teamworksection-reorder.md create mode 100644 api-reference/beta/api/teamworksectionitem-reorder.md create mode 100644 api-reference/beta/includes/permissions/teamworksection-reorder-permissions.md create mode 100644 api-reference/beta/includes/permissions/teamworksectionitem-reorder-permissions.md diff --git a/api-reference/beta/api/teamworksection-reorder.md b/api-reference/beta/api/teamworksection-reorder.md new file mode 100644 index 00000000000..3e63bf7dba1 --- /dev/null +++ b/api-reference/beta/api/teamworksection-reorder.md @@ -0,0 +1,150 @@ +--- +title: "teamworkSection: reorder" +description: "Reorder the sections in a user's teamwork." +author: "jasmeet9323" +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: apiPageType +ms.date: 08/06/2026 +--- + +# teamworkSection: reorder + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Reorder the sections in a user's teamwork. The **sectionsOrder** collection must contain every section ID returned by [List sections](../api/userteamwork-list-sections.md), exactly once. If the collection contains the *QuickViews* system section, that section must be first. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/teamworksection-reorder-permissions.md)] + +## HTTP request + + +```http +POST /me/teamwork/sections/reorder +POST /users/{user-id}/teamwork/sections/reorder +``` + +## Request headers + +| Header | Value | +|:-------|:------| +| Authorization | ****** Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts). | +| Content-Type | application/json. Required. | +| If-Match | The value of the **@microsoft.graph.sectionsVersion** annotation returned when you [list sections](../api/userteamwork-list-sections.md), or the **@odata.etag** value from any previously retrieved [section](../resources/teamworksection.md). Required for optimistic concurrency control. | + +## Request body + +In the request body, supply a JSON representation of the parameters. + +The following table lists the parameter that is required when you call this action. + +| Parameter | Type | Description | +|:----------|:-----|:------------| +| sectionsOrder | String collection | The complete ordered list of section IDs. Include every section ID returned by [List sections](../api/userteamwork-list-sections.md), exactly once. If the *QuickViews* system section is included, it must be the first ID. Required. | + +## Response + +If successful, this action returns a `200 OK` response code and a [teamworkSection](../resources/teamworksection.md) collection in the response body, in the requested order. + +> [!NOTE] +> Each returned section includes an updated **@odata.etag** value. Use this value as the `If-Match` header for any subsequent mutation operation. + +The following errors are possible. + +| Response code | Message | +|:---|:---| +| `400 Bad Request` | The **sectionsOrder** property is missing, empty, exceeds the supported maximum, or contains null, empty, or duplicate IDs. | +| `400 Bad Request` | The reorder list doesn't contain every current section exactly once, contains an unknown section ID, or doesn't place the *QuickViews* system section first. | +| `404 Not Found` | The specified user wasn't found. | +| `409 Conflict` | A section in the reorder list was deleted concurrently with the reorder request. [List sections](../api/userteamwork-list-sections.md) again and retry with the current section IDs and version. | +| `412 Precondition Failed` | The `If-Match` header value doesn't match the current section hierarchy version. [List sections](../api/userteamwork-list-sections.md) again to retrieve the latest **@microsoft.graph.sectionsVersion** annotation and retry. | +| `428 Precondition Required` | The `If-Match` header is required for this operation. | + +## Examples + +### Request + +The following example reorders three sections for a user. + + +```http +POST https://graph.microsoft.com/beta/users/10f8c3a6-3e2a-4e8b-9c7d-5a4b6c8d9e0f/teamwork/sections/reorder +Content-Type: application/json +If-Match: "1742515200" + +{ + "sectionsOrder": [ + "ce274158-f4f5-4ba7-bd18-0b2204dc1691~10f8c3a6-3e2a-4e8b-9c7d-5a4b6c8d9e0f~QuickViews", + "a1b2c3d4-e5f6-7890-abcd-ef1234567890", + "b2c3d4e5-f6a7-8901-bcde-f12345678901" + ] +} +``` + +### Response + +The following example shows the response. + +> **Note:** The response object shown here might be shortened for readability. + + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.teamworkSection", + "@odata.etag": "\"1742515210\"", + "id": "ce274158-f4f5-4ba7-bd18-0b2204dc1691~10f8c3a6-3e2a-4e8b-9c7d-5a4b6c8d9e0f~QuickViews", + "displayName": "QuickViews", + "sectionType": "systemDefined", + "sortType": "nameAlphabetical" + }, + { + "@odata.type": "#microsoft.graph.teamworkSection", + "@odata.etag": "\"1742515210\"", + "id": "a1b2c3d4-e5f6-7890-abcd-ef1234567890", + "displayName": "Project Alpha", + "sectionType": "userDefined", + "sortType": "userDefinedCustomOrder" + }, + { + "@odata.type": "#microsoft.graph.teamworkSection", + "@odata.etag": "\"1742515210\"", + "id": "b2c3d4e5-f6a7-8901-bcde-f12345678901", + "displayName": "Customer Escalations", + "sectionType": "userDefined", + "sortType": "mostRecent" + } + ] +} +``` + + + diff --git a/api-reference/beta/api/teamworksectionitem-reorder.md b/api-reference/beta/api/teamworksectionitem-reorder.md new file mode 100644 index 00000000000..3d1def15d8c --- /dev/null +++ b/api-reference/beta/api/teamworksectionitem-reorder.md @@ -0,0 +1,149 @@ +--- +title: "teamworkSectionItem: reorder" +description: "Reorder the items in a user-defined section in a user's teamwork." +author: "jasmeet9323" +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: apiPageType +ms.date: 08/06/2026 +--- + +# teamworkSectionItem: reorder + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Reorder the items in a user-defined section in a user's teamwork. The section must have **sortType** set to `userDefinedCustomOrder`, and the **itemsOrder** collection must contain every item ID returned by [List items](../api/teamworksection-list-items.md), exactly once. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/teamworksectionitem-reorder-permissions.md)] + +## HTTP request + + +```http +POST /me/teamwork/sections/{teamworkSection-id}/items/reorder +POST /users/{user-id}/teamwork/sections/{teamworkSection-id}/items/reorder +``` + +## Request headers + +| Header | Value | +|:-------|:------| +| Authorization | ****** Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts). | +| Content-Type | application/json. Required. | +| If-Match | The value of the **@microsoft.graph.sectionsVersion** annotation returned when you [list sections](../api/userteamwork-list-sections.md), or the **@odata.etag** value from any previously retrieved [section](../resources/teamworksection.md). Required for optimistic concurrency control. | + +## Request body + +In the request body, supply a JSON representation of the parameters. + +The following table lists the parameter that is required when you call this action. + +| Parameter | Type | Description | +|:----------|:-----|:------------| +| itemsOrder | String collection | The complete ordered list of item IDs in the section. Include every ID returned by [List items](../api/teamworksection-list-items.md), exactly once. Required. | + +## Response + +If successful, this action returns a `200 OK` response code and a [teamworkSectionItem](../resources/teamworksectionitem.md) collection in the response body, in the requested order. + +> [!NOTE] +> Each returned item includes an updated **@odata.etag** value. Use this value as the `If-Match` header for any subsequent mutation operation. + +The following errors are possible. + +| Response code | Message | +|:---|:---| +| `400 Bad Request` | The **itemsOrder** property is missing, empty, exceeds the supported maximum, or contains null, empty, or duplicate IDs. | +| `400 Bad Request` | The reorder list doesn't contain every item in the section exactly once, or it contains an item ID that isn't in the section. | +| `403 Forbidden` | This section is system-generated and can't be modified. Reorder items only in user-defined sections. | +| `404 Not Found` | The specified section wasn't found. | +| `409 Conflict` | Reordering is only supported when the section **sortType** is `userDefinedCustomOrder`. [Update the section](../api/teamworksection-update.md) to use this sort type, then retry. | +| `409 Conflict` | The target section was deleted concurrently with the reorder request. [List sections](../api/userteamwork-list-sections.md) again and retry with a current section ID and version. | +| `412 Precondition Failed` | The `If-Match` header value doesn't match the current section hierarchy version. [List sections](../api/userteamwork-list-sections.md) again to retrieve the latest **@microsoft.graph.sectionsVersion** annotation and retry. | +| `428 Precondition Required` | The `If-Match` header is required for this operation. | + +## Examples + +### Request + +The following example reorders three items in the "Project Alpha" section. + + +```http +POST https://graph.microsoft.com/beta/users/10f8c3a6-3e2a-4e8b-9c7d-5a4b6c8d9e0f/teamwork/sections/a1b2c3d4-e5f6-7890-abcd-ef1234567890/items/reorder +Content-Type: application/json +If-Match: "1742515200" + +{ + "itemsOrder": [ + "19:meeting_MTUxMjg0OGItZTY3MC00NTkyLTg1NzMtZTVkZTcyZDU5ZGVi@thread.v2", + "19:978e3806-38a4-4104-a07f-57abfa8cdf9a_bdf9c93b-12ea-4e8f-8383-d0ca66d5ff48@unq.gbl.spaces", + "19:94961b6eacc04e2392e34709c66cb610@thread.v2" + ] +} +``` + +### Response + +The following example shows the response. + +> **Note:** The response object shown here might be shortened for readability. + + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.teamworkSectionItem", + "@odata.etag": "\"1742515210\"", + "id": "19:meeting_MTUxMjg0OGItZTY3MC00NTkyLTg1NzMtZTVkZTcyZDU5ZGVi@thread.v2", + "itemType": "meeting", + "lastModifiedDateTime": "2026-08-06T14:40:00Z" + }, + { + "@odata.type": "#microsoft.graph.teamworkSectionItem", + "@odata.etag": "\"1742515210\"", + "id": "19:978e3806-38a4-4104-a07f-57abfa8cdf9a_bdf9c93b-12ea-4e8f-8383-d0ca66d5ff48@unq.gbl.spaces", + "itemType": "channel", + "lastModifiedDateTime": "2026-08-06T14:40:00Z" + }, + { + "@odata.type": "#microsoft.graph.teamworkSectionItem", + "@odata.etag": "\"1742515210\"", + "id": "19:94961b6eacc04e2392e34709c66cb610@thread.v2", + "itemType": "chat", + "lastModifiedDateTime": "2026-08-06T14:40:00Z" + } + ] +} +``` + + + diff --git a/api-reference/beta/api/userteamwork-list-sections.md b/api-reference/beta/api/userteamwork-list-sections.md index ce01ca082c6..9d9ab239981 100644 --- a/api-reference/beta/api/userteamwork-list-sections.md +++ b/api-reference/beta/api/userteamwork-list-sections.md @@ -62,7 +62,7 @@ The response includes the following OData instance annotations on the collection | Annotation | Type | Description | |:-----------|:-----|:------------| | @microsoft.graph.sectionsOrder | String collection | An ordered array of section IDs that represent the user's preferred section order. | -| @microsoft.graph.sectionsVersion | String | The current section hierarchy version. Use this value as the `If-Match` header for optimistic concurrency control on mutation operations (create, update, or delete sections, and add, remove, or move items). | +| @microsoft.graph.sectionsVersion | String | The current section hierarchy version. Use this value as the `If-Match` header for optimistic concurrency control on mutation operations (create, update, delete, or reorder sections, and add, remove, move, or reorder items). | ## Examples diff --git a/api-reference/beta/includes/permissions/teamworksection-reorder-permissions.md b/api-reference/beta/includes/permissions/teamworksection-reorder-permissions.md new file mode 100644 index 00000000000..159c0be27c0 --- /dev/null +++ b/api-reference/beta/includes/permissions/teamworksection-reorder-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TeamworkSection.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TeamworkSection.ReadWrite.All|Teamwork.Migrate.All| diff --git a/api-reference/beta/includes/permissions/teamworksectionitem-reorder-permissions.md b/api-reference/beta/includes/permissions/teamworksectionitem-reorder-permissions.md new file mode 100644 index 00000000000..159c0be27c0 --- /dev/null +++ b/api-reference/beta/includes/permissions/teamworksectionitem-reorder-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TeamworkSection.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TeamworkSection.ReadWrite.All|Teamwork.Migrate.All| diff --git a/api-reference/beta/resources/teams-api-overview.md b/api-reference/beta/resources/teams-api-overview.md index 820ed0ac8a5..662bef836d7 100644 --- a/api-reference/beta/resources/teams-api-overview.md +++ b/api-reference/beta/resources/teams-api-overview.md @@ -29,7 +29,7 @@ The following table lists common use cases for Microsoft Teams APIs in Microsoft | Create and retrieve online meetings or check users presence and activity | [onlineMeeting](../resources/onlinemeeting.md), [presence](../resources/presence.md) | [create onlineMeeting](../api/application-post-onlinemeetings.md), [meetingAttendanceReport](../resources/meetingattendancereport.md) | | Create and manage workforce integration with shifts, schedules, time cards, or time off in your organization | [workforceIntegration](../resources/workforceintegration.md), [schedule](../resources/schedule.md), [shift](../resources/shift.md), [timeOff](../resources/timeoff.md), [timeOffReason](../resources/timeoffreason.md) | [create workforceIntegration](../api/workforceintegration-post.md), [create schedule](../api/schedule-post-schedulinggroups.md), [create shift](../api/schedule-post-shifts.md), [create timeOff](../api/schedule-post-timesoff.md) | | Use the employee learning API to integrate with Viva Learning | [employee learning](../resources/viva-learning-api-overview.md), [learningProvider](../resources/learningprovider.md), [learningContent](../resources/learningcontent.md) | [list learningProviders](../api/employeeexperience-list-learningproviders.md), [list learningContents](../api/learningprovider-list-learningcontents.md) | -| Organize chats, channels, and meetings into custom or system-defined sections in a user's chat list | [teamworkSection](../resources/teamworksection.md), [teamworkSectionItem](../resources/teamworksectionitem.md) | [list sections](../api/userteamwork-list-sections.md), [create section](../api/userteamwork-post-sections.md), [add item](../api/teamworksection-post-items.md), [move item](../api/teamworksectionitem-move.md) | +| Organize chats, channels, and meetings into custom or system-defined sections in a user's chat list | [teamworkSection](../resources/teamworksection.md), [teamworkSectionItem](../resources/teamworksectionitem.md) | [list sections](../api/userteamwork-list-sections.md), [create section](../api/userteamwork-post-sections.md), [reorder sections](../api/teamworksection-reorder.md), [add item](../api/teamworksection-post-items.md), [move item](../api/teamworksectionitem-move.md), [reorder items](../api/teamworksectionitem-reorder.md) | ### IVR scenarios diff --git a/api-reference/beta/resources/teamworksection.md b/api-reference/beta/resources/teamworksection.md index 7ad58d6644f..f34ddab6bd2 100644 --- a/api-reference/beta/resources/teamworksection.md +++ b/api-reference/beta/resources/teamworksection.md @@ -25,6 +25,7 @@ Represents a section in a user's Microsoft Teams chat list that organizes chats, | [Get](../api/teamworksection-get.md) | [teamworkSection](teamworksection.md) | Read the properties of a [section](../resources/teamworksection.md) in a user's [teamwork](../resources/userteamwork.md). | | [Update](../api/teamworksection-update.md) | [teamworkSection](teamworksection.md) | Update the properties of a [section](../resources/teamworksection.md) in a user's [teamwork](../resources/userteamwork.md). | | [Delete](../api/teamworksection-delete.md) | None | Delete a user-defined [section](../resources/teamworksection.md) from a user's [teamwork](../resources/userteamwork.md). | +| [Reorder](../api/teamworksection-reorder.md) | [teamworkSection](teamworksection.md) collection | Reorder all [sections](../resources/teamworksection.md) in a user's [teamwork](../resources/userteamwork.md). | | [List items](../api/teamworksection-list-items.md) | [teamworkSectionItem](teamworksectionitem.md) collection | Get the list of [items](../resources/teamworksectionitem.md) in a [section](../resources/teamworksection.md) of a user's [teamwork](../resources/userteamwork.md). | ## Properties @@ -84,7 +85,7 @@ Instance attributes are properties with special behaviors. These properties are | Property name | Type | Description | |:-----------|:-----|:------------| | @microsoft.graph.sectionsOrder | String collection | An ordered array of section IDs that represent the user's preferred section order. | -| @microsoft.graph.sectionsVersion | String | The current section hierarchy version. Use this value as the `If-Match` header for optimistic concurrency control on mutation operations (create, update, or delete sections, and add, remove, or move items). | +| @microsoft.graph.sectionsVersion | String | The current section hierarchy version. Use this value as the `If-Match` header for optimistic concurrency control on mutation operations (create, update, delete, or reorder sections, and add, remove, move, or reorder items). | ## Relationships diff --git a/api-reference/beta/resources/teamworksectionitem.md b/api-reference/beta/resources/teamworksectionitem.md index 2417e7aa86f..1f6e8191fd8 100644 --- a/api-reference/beta/resources/teamworksectionitem.md +++ b/api-reference/beta/resources/teamworksectionitem.md @@ -24,6 +24,7 @@ Represents an item, such as a chat, channel, meeting, or community, that is orga | [Add](../api/teamworksection-post-items.md) | [teamworkSectionItem](teamworksectionitem.md) | Add an [item](../resources/teamworksectionitem.md), such as a chat, channel, meeting, or community, to a user-defined [section](../resources/teamworksection.md) in a user's [teamwork](../resources/userteamwork.md). | | [Remove](../api/teamworksectionitem-delete.md) | None | Remove an [item](../resources/teamworksectionitem.md) from a user-defined [section](../resources/teamworksection.md) in a user's [teamwork](../resources/userteamwork.md). | | [Move](../api/teamworksectionitem-move.md) | [teamworkSectionItem](teamworksectionitem.md) | Move an [item](../resources/teamworksectionitem.md) from one user-defined [section](../resources/teamworksection.md) to another user-defined section in a user's [teamwork](../resources/userteamwork.md). | +| [Reorder](../api/teamworksectionitem-reorder.md) | [teamworkSectionItem](teamworksectionitem.md) collection | Reorder all [items](../resources/teamworksectionitem.md) in a user-defined [section](../resources/teamworksection.md) in a user's [teamwork](../resources/userteamwork.md). | ## Properties diff --git a/changelog/Microsoft.Teams.GraphSvc.json b/changelog/Microsoft.Teams.GraphSvc.json index b2454605d75..492b55ea032 100644 --- a/changelog/Microsoft.Teams.GraphSvc.json +++ b/changelog/Microsoft.Teams.GraphSvc.json @@ -1,5 +1,31 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "6241222f-bd41-4e48-ba36-83cbfd6e1066", + "ApiChange": "Method", + "ChangedApiName": "reorder", + "ChangeType": "Addition", + "Description": "Added the [reorder](https://learn.microsoft.com/en-us/graph/api/teamworksection-reorder?view=graph-rest-beta) method to the [teamworkSection](https://learn.microsoft.com/en-us/graph/api/resources/teamworksection?view=graph-rest-beta) resource.", + "Target": "teamworkSection" + }, + { + "Id": "6241222f-bd41-4e48-ba36-83cbfd6e1066", + "ApiChange": "Method", + "ChangedApiName": "reorder", + "ChangeType": "Addition", + "Description": "Added the [reorder](https://learn.microsoft.com/en-us/graph/api/teamworksectionitem-reorder?view=graph-rest-beta) method to the [teamworkSectionItem](https://learn.microsoft.com/en-us/graph/api/resources/teamworksectionitem?view=graph-rest-beta) resource.", + "Target": "teamworkSectionItem" + } + ], + "Id": "6241222f-bd41-4e48-ba36-83cbfd6e1066", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-10T01:54:44.9863259Z", + "WorkloadArea": "Teamwork and communications", + "SubArea": "Messaging" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 92ecbac281a..5093e96bba3 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -18,6 +18,7 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what > [!IMPORTANT] > Features in _preview_ status are subject to change without notice, and might not be promoted to generally available (GA) status. Don't use preview features in production apps. + ## August 2026: New and generally available ### Files @@ -30,6 +31,11 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what - Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns?view=graph-rest-beta&preserve-view=true) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource type to create or update up to 20 columnDefinition objects in a single request. +### Teamwork and communications | Messaging + +- Added the [reorder sections](/graph/api/teamworksection-reorder?view=graph-rest-beta&preserve-view=true) and [reorder section items](/graph/api/teamworksectionitem-reorder?view=graph-rest-beta&preserve-view=true) actions. Use these actions to apply a complete custom order to a user's sections or to the items in a user-defined section. + + ## July 2026: New and generally available ### Device and app management | Cloud PC From b4d8154262987ca3f0958cd2dc46f9f44c880a6b Mon Sep 17 00:00:00 2001 From: blnelsonMSFT <157661426+blnelsonMSFT@users.noreply.github.com> Date: Mon, 10 Aug 2026 20:28:09 -0500 Subject: [PATCH 030/189] Add accessPackageAssignmentRequest parameters resource docs (IGAELM beta) (#29295) * Add accessPackageAssignmentRequest parameters resource docs (IGAELM beta) Documents the new parameters property on accessPackageAssignmentRequest and its type, the accessPackageAssignmentRequestParameters complex type (bypassApproval), in the Microsoft Graph beta reference. Adds the corresponding changelog entry. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 4c1a0880-6e0a-4cfa-b579-070147f99628 * Address content review: inline back-link and real changelog timestamp - accesspackageassignmentrequestparameters.md: collapse the single-item back-link bullet list into an inline sentence. - Microsoft.IGAELM.json: replace the zeroed changelog timestamp with the actual authoring time. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 4c1a0880-6e0a-4cfa-b579-070147f99628 * Address second content-review round: changelog GUIDs, locale-free URLs, and phrasing - Microsoft.IGAELM.json: give each ChangeList item and the parent entry a unique GUID; drop the en-us locale from both Description URLs; roll the CreatedDateTime forward to the latest change. - accesspackageassignmentrequest.md: drop the trailing Optional. from the parameters row and inline the nested parameters JSON object. - accesspackageassignmentrequestparameters.md: tighten the bypassApproval description. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 4c1a0880-6e0a-4cfa-b579-070147f99628 * Fix changelog link validation: de-link unpublished complex type The changelog-link-check validates links against live learn.microsoft.com. The accessPackageAssignmentRequestParameters page is not published yet, so its link 404s. Reference the new type in bold without a hyperlink (matching existing no-link changelog entries) until the page is live. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 4c1a0880-6e0a-4cfa-b579-070147f99628 * Address review: alphabetize properties table and unify changelog GUID - accesspackageassignmentrequest.md: move the answers row up so the Properties table is alphabetical. - Microsoft.IGAELM.json: use one shared GUID across the record-level Id and both ChangeList items, matching the file's established pattern. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 4c1a0880-6e0a-4cfa-b579-070147f99628 * Add What's New entry for accessPackageAssignmentRequest parameters Add a beta preview What's New bullet under Identity and access | Governance for the new parameters property and accessPackageAssignmentRequestParameters complex type. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 4c1a0880-6e0a-4cfa-b579-070147f99628 * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: 4c1a0880-6e0a-4cfa-b579-070147f99628 --- .../accesspackageassignmentrequest.md | 4 +- ...ccesspackageassignmentrequestparameters.md | 52 +++++++++++++++++++ api-reference/beta/toc/toc.mapping.json | 3 ++ changelog/Microsoft.IGAELM.json | 26 ++++++++++ concepts/whats-new-overview.md | 1 + 5 files changed, 85 insertions(+), 1 deletion(-) create mode 100644 api-reference/beta/resources/accesspackageassignmentrequestparameters.md diff --git a/api-reference/beta/resources/accesspackageassignmentrequest.md b/api-reference/beta/resources/accesspackageassignmentrequest.md index da4ab38f16d..ae13636376e 100644 --- a/api-reference/beta/resources/accesspackageassignmentrequest.md +++ b/api-reference/beta/resources/accesspackageassignmentrequest.md @@ -35,6 +35,7 @@ In [Microsoft Entra Entitlement Management](entitlementmanagement-overview.md), | Property | Type | Description | |:-------------|:------------|:------------| +|answers|[accessPackageAnswer](accesspackageanswer.md) collection|Answers provided by the requestor to [accessPackageQuestions](accesspackagequestion.md) asked of them at the time of request.| |completedDate|DateTimeOffset|The date of the end of processing, either successful or failure, of a request. The Timestamp type represents date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`. Read-only.| |createdDateTime|DateTimeOffset|The Timestamp type represents date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`. Read-only.| |customExtensionCalloutInstances|[customExtensionCalloutInstance](../resources/customextensioncalloutinstance.md) collection|Information about all the custom extension calls that were made during the access package assignment request workflow.| @@ -43,11 +44,11 @@ In [Microsoft Entra Entitlement Management](entitlementmanagement-overview.md), |id|String| Read-only.| |isValidationOnly|Boolean|True if the request isn't to be processed for assignment.| |justification|String|The requestor's supplied justification.| +|parameters|[accessPackageAssignmentRequestParameters](accesspackageassignmentrequestparameters.md)|Additional parameters that control how the request is processed, such as bypassing the approval requirement configured on the access package policy.| |requestState|String|One of `PendingApproval`, `Canceled`, `Denied`, `Delivering`, `Delivered`, `PartiallyDelivered`, `DeliveryFailed`, `Submitted`, or `Scheduled`. Read-only.| |requestStatus|String|More information on the request processing status. Read-only.| |requestType|String|One of `UserAdd`, `UserExtend`, `UserUpdate`, `UserRemove`, `AdminAdd`, `AdminRemove`, `ApproverRemove`, or `SystemRemove`. A request from the user has a **requestType** of `UserAdd`, `UserUpdate`, or `UserRemove`. Read-only.| |schedule|[requestSchedule](requestschedule.md)| The range of dates that access is to be assigned to the requestor. Read-only.| -|answers|[accessPackageAnswer](accesspackageanswer.md) collection|Answers provided by the requestor to [accessPackageQuestions](accesspackagequestion.md) asked of them at the time of request.| |verifiedCredentialsData|[verifiedCredentialData](../resources/verifiedcredentialdata.md) collection| The details of the verifiable credential that the requestor presented, such as the issuer and claims. Read-only.| ## Relationships @@ -85,6 +86,7 @@ The following JSON representation shows the resource type. "completedDate": "String (timestamp)", "expirationDateTime": "String (timestamp)", "justification": "String", + "parameters": {"@odata.type": "microsoft.graph.accessPackageAssignmentRequestParameters"}, "schedule": { "@odata.type": "microsoft.graph.requestSchedule" }, diff --git a/api-reference/beta/resources/accesspackageassignmentrequestparameters.md b/api-reference/beta/resources/accesspackageassignmentrequestparameters.md new file mode 100644 index 00000000000..435b829ac83 --- /dev/null +++ b/api-reference/beta/resources/accesspackageassignmentrequestparameters.md @@ -0,0 +1,52 @@ +--- +title: "accessPackageAssignmentRequestParameters resource type" +description: "Represents additional parameters that can be supplied when creating an access package assignment request, such as bypassing the approval requirement." +ms.localizationpriority: medium +author: "markwahl-msft" +ms.subservice: "entra-id-governance" +doc_type: "resourcePageType" +ms.date: 07/14/2026 +--- + +# accessPackageAssignmentRequestParameters resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +In [Microsoft Entra entitlement management](entitlementmanagement-overview.md), this resource represents additional parameters that can be supplied when creating an [accessPackageAssignmentRequest](accesspackageassignmentrequest.md). Use it to control how the request is processed, such as bypassing the approval requirement that's configured on the access package policy. + +In entitlement management, this object is configured in the **parameters** property of the [accessPackageAssignmentRequest](../resources/accesspackageassignmentrequest.md) resource. + +## Properties + +| Property | Type | Description | +|:-------------|:------------|:------------| +|bypassApproval|Boolean|When `true`, bypasses the approval requirement configured on the access package policy for this request. The default value is `false`.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.accessPackageAssignmentRequestParameters", + "bypassApproval": "Boolean" +} +``` + + diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 95262cf46cf..c66791d5898 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -1419,6 +1419,9 @@ "insiderRiskyUserApproval", "entraIdProtectionRiskyUserApproval", "customDataProvidedResourceUploadSession" + ], + "complexTypes": [ + "accessPackageAssignmentRequestParameters" ] }, { diff --git a/changelog/Microsoft.IGAELM.json b/changelog/Microsoft.IGAELM.json index fd7c557e757..fd9a4a19b20 100644 --- a/changelog/Microsoft.IGAELM.json +++ b/changelog/Microsoft.IGAELM.json @@ -1,5 +1,31 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "3c48af75-9eba-4aa8-8622-4d14d624d543", + "ApiChange": "Resource", + "ChangedApiName": "accessPackageAssignmentRequestParameters", + "ChangeType": "Addition", + "Description": "Added the **accessPackageAssignmentRequestParameters** complex type.", + "Target": "accessPackageAssignmentRequestParameters" + }, + { + "Id": "3c48af75-9eba-4aa8-8622-4d14d624d543", + "ApiChange": "Property", + "ChangedApiName": "parameters", + "ChangeType": "Addition", + "Description": "Added the **parameters** property to the [accessPackageAssignmentRequest](https://learn.microsoft.com/graph/api/resources/accesspackageassignmentrequest?view=graph-rest-beta) resource.", + "Target": "accessPackageAssignmentRequest" + } + ], + "Id": "3c48af75-9eba-4aa8-8622-4d14d624d543", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-10T20:44:34Z", + "WorkloadArea": "Identity and access", + "SubArea": "Governance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 5093e96bba3..b2193dc631a 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -128,6 +128,7 @@ Added the **sponsorOf** relationship to the [user](/graph/api/resources/user?vie - Added the [guestSponsorTrigger](/graph/api/resources/identitygovernance-guestsponsortrigger?view=graph-rest-beta&preserve-view=true) resource type to initiate lifecycle workflows when guest users have fewer than the required number of sponsors. - Added support for automatically quarantining Lifecycle Workflows to stop a workflow from processing more users than expected. Configure thresholds using the **quarantineConfiguration** property on [lifecycleManagementSettings](/graph/api/resources/identitygovernance-lifecyclemanagementsettings?view=graph-rest-beta&preserve-view=true), and clear a quarantine by calling [clearQuarantine](/graph/api/identitygovernance-workflow-clearquarantine?view=graph-rest-beta&preserve-view=true). +- Added the **parameters** property to the [accessPackageAssignmentRequest](/graph/api/resources/accesspackageassignmentrequest?view=graph-rest-beta&preserve-view=true) resource, typed as the new [accessPackageAssignmentRequestParameters](/graph/api/resources/accesspackageassignmentrequestparameters?view=graph-rest-beta&preserve-view=true) complex type, to bypass the approval requirement configured on the access package policy when creating an assignment request. ### Identity and access | Identity and sign-in From 536bd10abedf31137c4a8fba74f6a24b5e45783a Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Tue, 11 Aug 2026 20:28:27 -0600 Subject: [PATCH 031/189] Update reference TOC (#29429) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/toc/files/toc.yml | 2 ++ api-reference/beta/toc/identity-and-access/toc.yml | 4 ++++ api-reference/beta/toc/security/toc.yml | 6 ++++++ .../beta/toc/teamwork-and-communications/toc.yml | 4 ++++ api-reference/v1.0/toc/files/toc.yml | 2 ++ api-reference/v1.0/toc/identity-and-access/toc.yml | 12 ++++++++++++ 6 files changed, 30 insertions(+) diff --git a/api-reference/beta/toc/files/toc.yml b/api-reference/beta/toc/files/toc.yml index f5c11e21eed..20bce94b059 100644 --- a/api-reference/beta/toc/files/toc.yml +++ b/api-reference/beta/toc/files/toc.yml @@ -214,6 +214,8 @@ items: href: ../../api/filestoragecontainer-update-column.md - name: Delete column href: ../../api/filestoragecontainer-delete-column.md + - name: Upsert columns + href: ../../api/filestoragecontainer-patch-columns.md - name: Update recycle bin settings href: ../../api/filestoragecontainer-update-recyclebinsettings.md - name: Restore recycle bin items diff --git a/api-reference/beta/toc/identity-and-access/toc.yml b/api-reference/beta/toc/identity-and-access/toc.yml index 8da0ae220b5..9cb9b042f75 100644 --- a/api-reference/beta/toc/identity-and-access/toc.yml +++ b/api-reference/beta/toc/identity-and-access/toc.yml @@ -1277,6 +1277,10 @@ items: href: ../../api/customdataprovidedresourceuploadsession-update.md - name: Delete href: ../../api/accesspackageresource-delete-uploadsessions.md + - name: Complex types + items: + - name: Access package assignment request parameters + href: ../../resources/accesspackageassignmentrequestparameters.md - name: Lifecycle workflows displayName: LCW, Identity Governance, Joiner, Mover, Leaver items: diff --git a/api-reference/beta/toc/security/toc.yml b/api-reference/beta/toc/security/toc.yml index 38c21f075e3..ce861f16ab7 100644 --- a/api-reference/beta/toc/security/toc.yml +++ b/api-reference/beta/toc/security/toc.yml @@ -646,6 +646,8 @@ items: href: ../../api/userprotectionscopecontainer-compute.md - name: Process content href: ../../api/userdatasecurityandgovernance-processcontent.md + - name: Text classification request + href: ../../resources/textclassificationrequest.md - name: Complex types items: - name: Activity metadata @@ -668,6 +670,8 @@ items: href: ../../resources/classificationerror.md - name: Classification inner error href: ../../resources/classificationinnererror.md + - name: Classification request content meta data + href: ../../resources/classificationrequestcontentmetadata.md - name: Compute rights and inheritance result href: ../../resources/computerightsandinheritanceresult.md - name: Content activity metadata @@ -680,6 +684,8 @@ items: href: ../../resources/devicemetadata.md - name: Dlp action info href: ../../resources/dlpactioninfo.md + - name: Embedding input + href: ../../resources/embeddinginput.md - name: Group scope href: ../../resources/groupscope.md - name: Integrated application metadata diff --git a/api-reference/beta/toc/teamwork-and-communications/toc.yml b/api-reference/beta/toc/teamwork-and-communications/toc.yml index e540868966d..dd3146da7da 100644 --- a/api-reference/beta/toc/teamwork-and-communications/toc.yml +++ b/api-reference/beta/toc/teamwork-and-communications/toc.yml @@ -1311,6 +1311,8 @@ items: href: ../../api/teamworksection-update.md - name: Delete href: ../../api/teamworksection-delete.md + - name: Reorder + href: ../../api/teamworksection-reorder.md - name: List items href: ../../api/teamworksection-list-items.md - name: Teamwork section item @@ -1325,6 +1327,8 @@ items: href: ../../api/teamworksectionitem-delete.md - name: Move href: ../../api/teamworksectionitem-move.md + - name: Reorder + href: ../../api/teamworksectionitem-reorder.md - name: Complex types items: - name: Section display icon diff --git a/api-reference/v1.0/toc/files/toc.yml b/api-reference/v1.0/toc/files/toc.yml index ed542e34ba9..b67291b93c1 100644 --- a/api-reference/v1.0/toc/files/toc.yml +++ b/api-reference/v1.0/toc/files/toc.yml @@ -194,6 +194,8 @@ items: href: ../../api/filestoragecontainer-update-column.md - name: Delete column href: ../../api/filestoragecontainer-delete-column.md + - name: Upsert columns + href: ../../api/filestoragecontainer-patch-columns.md - name: Update recycle bin settings href: ../../api/filestoragecontainer-update-recyclebinsettings.md - name: Delete recycle bin items diff --git a/api-reference/v1.0/toc/identity-and-access/toc.yml b/api-reference/v1.0/toc/identity-and-access/toc.yml index f2dc4a50bb7..2be94903dba 100644 --- a/api-reference/v1.0/toc/identity-and-access/toc.yml +++ b/api-reference/v1.0/toc/identity-and-access/toc.yml @@ -441,6 +441,10 @@ items: href: ../../api/accessreviewstage-update.md - name: Stop href: ../../api/accessreviewstage-stop.md + - name: Accept recommendations + href: ../../api/accessreviewstage-acceptrecommendations.md + - name: Batch record decisions + href: ../../api/accessreviewstage-batchrecorddecisions.md - name: Filter by current user href: ../../api/accessreviewstage-filterbycurrentuser.md - name: List decisions from a stage of an instance @@ -478,6 +482,14 @@ items: href: ../../api/accessreviewhistorydefinition-list-instances.md - name: Generate download URI href: ../../api/accessreviewhistoryinstance-generatedownloaduri.md + - name: Unified root + items: + - name: Unified root + href: ../../resources/unifiedroot.md + - name: List definitions + href: ../../api/unifiedroot-list-definitions.md + - name: Create definition + href: ../../api/unifiedroot-post-definitions.md - name: Consent requests items: - name: Overview From 932d84255622a8d5b3f35ec5830a20db006210db Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Tue, 11 Aug 2026 20:28:39 -0600 Subject: [PATCH 032/189] Update generated files with build 232154 (#29428) Co-authored-by: Microsoft Graph DevX Tooling --- ...accessreviewstage-acceptrecommendations.md | 27 ++ .../accessreviewstage-batchrecorddecisions.md | 27 ++ ...resourceaccountkeyauthenticationmethods.md | 7 + .../api/directory-list-remotetenantgroups.md | 27 ++ ...ributionlist-get-distributionlistmember.md | 27 -- ...butionlist-list-distributionlistmembers.md | 27 -- .../api/filestoragecontainer-patch-columns.md | 7 + ...agecontainer-transferprincipalownership.md | 27 ++ .../beta/api/mailbox-list-folders.md | 2 +- .../beta/api/mailboxfolder-delete-items.md | 40 +++ .../networkaccess-reports-usageprofiling.md | 4 - .../api/participant-reportsyntheticmedia.md | 81 +++++ api-reference/beta/api/plannergoal-get.md | 9 +- .../beta/api/plannerplan-list-goals.md | 9 +- .../beta/api/remotetenantgroup-get.md | 27 ++ ...t-getmicrosoft365copilotusageuserdetail.md | 8 + ...-getmicrosoft365copilotusercountsummary.md | 8 + ...ot-getmicrosoft365copilotusercounttrend.md | 8 + ...oftappsfilestoragecontainerusagesummary.md | 81 +++++ .../api/reportroot-getsharepointapiusage.md | 324 ++++++++++++++++++ ...ceaccountkeyauthenticationmethod-delete.md | 7 + ...ourceaccountkeyauthenticationmethod-get.md | 7 + ...asemanagement-casetypeconfiguration-get.md | 27 ++ ...casetypeconfiguration-list-customfields.md | 27 ++ ...ent-casetypeconfiguration-list-statuses.md | 27 ++ ...asemanagement-customfielddefinition-get.md | 27 ++ ...ity-casemanagement-statusdefinition-get.md | 27 ++ ...agementroot-list-casetypeconfigurations.md | 27 ++ .../beta/api/teamworksection-reorder.md | 7 + .../beta/api/teamworksectionitem-reorder.md | 7 + .../beta/api/unifiedroot-list-definitions.md | 27 ++ .../beta/api/unifiedroot-post-definitions.md | 27 ++ api-reference/beta/api/user-list-sponsorof.md | 40 +++ ...e-acceptrecommendations-csharp-snippets.md | 13 + ...ge-batchrecorddecisions-csharp-snippets.md | 23 ++ ...ge-from-channel-to-chat-csharp-snippets.md | 2 +- ...ssage-from-chat-to-chat-csharp-snippets.md | 2 +- ...ge-from-channel-to-chat-csharp-snippets.md | 2 +- ...atmessagereplywithquote-csharp-snippets.md | 2 +- ...-unifiedroot-definition-csharp-snippets.md | 72 ++++ ...-mailboxitem-harddelete-csharp-snippets.md | 16 + ...-mailboxitem-softdelete-csharp-snippets.md | 16 + ...nsferprincipalownership-csharp-snippets.md | 33 ++ ...econtainerusagesummary-csharp-snippets.md} | 2 +- ...rusagesummary-with-apps-csharp-snippets.md | 16 + ...erusagesummary-with-geo-csharp-snippets.md | 16 + ... get-remotetenantgroup-csharp-snippets.md} | 2 +- .../csharp/get-sponsorof-csharp-snippets.md | 13 + .../get-sponsorof-filter-csharp-snippets.md | 17 + .../import-chatmessage-csharp-snippets.md | 2 +- .../list-remotetenantgroup-csharp-snippets.md | 13 + ...unifiedroot-definitions-csharp-snippets.md | 13 + ...ortsyntheticmedia-audio-csharp-snippets.md | 67 ++++ ...ntheticmedia-multimodal-csharp-snippets.md | 96 ++++++ ...ortsyntheticmedia-video-csharp-snippets.md | 66 ++++ .../patch-chatmessage-1-csharp-snippets.md | 2 +- .../patch-chatmessage-2-csharp-snippets.md | 2 +- .../patch-chatmessage-3-csharp-snippets.md | 2 +- .../patch-chatmessage-4-csharp-snippets.md | 2 +- .../post-channelmessage-1-csharp-snippets.md | 2 +- .../post-channelmessage-2-csharp-snippets.md | 2 +- .../post-channelmessage-3-csharp-snippets.md | 2 +- .../post-chatmessage-1-csharp-snippets.md | 2 +- .../post-chatmessage-11-csharp-snippets.md | 2 +- .../post-chatmessage-12-csharp-snippets.md | 2 +- .../post-chatmessage-13-csharp-snippets.md | 2 +- .../post-chatmessage-14-csharp-snippets.md | 2 +- .../post-chatmessage-15-csharp-snippets.md | 2 +- .../post-chatmessage-2-csharp-snippets.md | 2 +- .../post-chatmessage-3-csharp-snippets.md | 2 +- .../post-chatmessage-4-csharp-snippets.md | 2 +- .../post-chatmessage-6-csharp-snippets.md | 2 +- .../post-chatmessage-7-csharp-snippets.md | 2 +- ...essage-atmentionchannel-csharp-snippets.md | 2 +- ...hatmessage-atmentiontag-csharp-snippets.md | 2 +- ...atmessage-atmentionteam-csharp-snippets.md | 2 +- ...tmessage-import-channel-csharp-snippets.md | 2 +- ...chatmessage-import-chat-csharp-snippets.md | 2 +- ...post-chatmessagereply-1-csharp-snippets.md | 2 +- ...post-chatmessagereply-2-csharp-snippets.md | 2 +- .../post-chatmessages-1-csharp-snippets.md | 2 +- ...ilotusageuserdetail-csv-csharp-snippets.md | 2 +- ...lotusageuserdetail-json-csharp-snippets.md | 2 +- ...lotusercountsummary-csv-csharp-snippets.md | 2 +- ...otusercountsummary-json-csharp-snippets.md | 2 +- ...pilotusercounttrend-csv-csharp-snippets.md | 2 +- ...ilotusercounttrend-json-csharp-snippets.md | 2 +- ...tsharepointapiusage-csv-csharp-snippets.md | 16 + ...age-error-invalidperiod-csharp-snippets.md | 13 + ...sage-error-notonboarded-csharp-snippets.md | 13 + ...or-reporttypenotenabled-csharp-snippets.md | 13 + ...arepointapiusage-filter-csharp-snippets.md | 16 + ...sharepointapiusage-json-csharp-snippets.md | 16 + ...intapiusage-json-filter-csharp-snippets.md | 16 + ...intapiusage-json-format-csharp-snippets.md | 16 + ...arepointapiusage-nodata-csharp-snippets.md | 13 + ...apiusage-throttling-csv-csharp-snippets.md | 16 + ...usage-throttling-filter-csharp-snippets.md | 16 + ...piusage-throttling-json-csharp-snippets.md | 16 + ...t-casetypeconfiguration-csharp-snippets.md | 13 + ...t-customfielddefinition-csharp-snippets.md | 13 + ...nt-get-statusdefinition-csharp-snippets.md | 13 + ...-casetypeconfigurations-csharp-snippets.md | 13 + ...ement-list-customfields-csharp-snippets.md | 13 + ...anagement-list-statuses-csharp-snippets.md | 13 + ...k-deletetargetedmessage-csharp-snippets.md | 2 +- ...stage-acceptrecommendations-go-snippets.md | 22 ++ ...wstage-batchrecorddecisions-go-snippets.md | 30 ++ ...essage-from-channel-to-chat-go-snippets.md | 2 +- ...rdmessage-from-chat-to-chat-go-snippets.md | 2 +- ...essage-from-channel-to-chat-go-snippets.md | 2 +- .../chatmessagereplywithquote-go-snippets.md | 2 +- ...eate-unifiedroot-definition-go-snippets.md | 88 +++++ ...lete-mailboxitem-harddelete-go-snippets.md | 32 ++ ...lete-mailboxitem-softdelete-go-snippets.md | 32 ++ ...stransferprincipalownership-go-snippets.md | 33 ++ ...oragecontainerusagesummary-go-snippets.md} | 2 +- ...ainerusagesummary-with-apps-go-snippets.md | 29 ++ ...tainerusagesummary-with-geo-go-snippets.md | 29 ++ ...d => get-remotetenantgroup-go-snippets.md} | 2 +- .../go/get-sponsorof-filter-go-snippets.md | 37 ++ .../snippets/go/get-sponsorof-go-snippets.md | 22 ++ .../go/import-chatmessage-go-snippets.md | 2 +- .../go/list-remotetenantgroup-go-snippets.md | 22 ++ ...ist-unifiedroot-definitions-go-snippets.md | 22 ++ ...-reportsyntheticmedia-audio-go-snippets.md | 93 +++++ ...rtsyntheticmedia-multimodal-go-snippets.md | 131 +++++++ ...-reportsyntheticmedia-video-go-snippets.md | 93 +++++ .../go/patch-chatmessage-1-go-snippets.md | 2 +- .../go/patch-chatmessage-2-go-snippets.md | 2 +- .../go/patch-chatmessage-3-go-snippets.md | 2 +- .../go/patch-chatmessage-4-go-snippets.md | 2 +- .../go/post-channelmessage-1-go-snippets.md | 2 +- .../go/post-channelmessage-2-go-snippets.md | 2 +- .../go/post-channelmessage-3-go-snippets.md | 2 +- .../go/post-chatmessage-1-go-snippets.md | 2 +- .../go/post-chatmessage-11-go-snippets.md | 2 +- .../go/post-chatmessage-12-go-snippets.md | 2 +- .../go/post-chatmessage-13-go-snippets.md | 2 +- .../go/post-chatmessage-14-go-snippets.md | 2 +- .../go/post-chatmessage-15-go-snippets.md | 2 +- .../go/post-chatmessage-2-go-snippets.md | 2 +- .../go/post-chatmessage-3-go-snippets.md | 2 +- .../go/post-chatmessage-4-go-snippets.md | 2 +- .../go/post-chatmessage-6-go-snippets.md | 2 +- .../go/post-chatmessage-7-go-snippets.md | 2 +- ...hatmessage-atmentionchannel-go-snippets.md | 2 +- ...st-chatmessage-atmentiontag-go-snippets.md | 2 +- ...t-chatmessage-atmentionteam-go-snippets.md | 2 +- ...-chatmessage-import-channel-go-snippets.md | 2 +- ...ost-chatmessage-import-chat-go-snippets.md | 2 +- .../go/post-chatmessagereply-1-go-snippets.md | 2 +- .../go/post-chatmessagereply-2-go-snippets.md | 2 +- .../go/post-chatmessages-1-go-snippets.md | 2 +- ...5copilotusageuserdetail-csv-go-snippets.md | 1 - ...copilotusageuserdetail-json-go-snippets.md | 1 - ...copilotusercountsummary-csv-go-snippets.md | 1 - ...opilotusercountsummary-json-go-snippets.md | 1 - ...65copilotusercounttrend-csv-go-snippets.md | 1 - ...5copilotusercounttrend-json-go-snippets.md | 1 - ...t-getsharepointapiusage-csv-go-snippets.md | 34 ++ ...piusage-error-invalidperiod-go-snippets.md | 24 ++ ...apiusage-error-notonboarded-go-snippets.md | 24 ++ ...-error-reporttypenotenabled-go-snippets.md | 24 ++ ...etsharepointapiusage-filter-go-snippets.md | 34 ++ ...repointapiusage-json-filter-go-snippets.md | 34 ++ ...repointapiusage-json-format-go-snippets.md | 34 ++ ...-getsharepointapiusage-json-go-snippets.md | 34 ++ ...etsharepointapiusage-nodata-go-snippets.md | 24 ++ ...ointapiusage-throttling-csv-go-snippets.md | 34 ++ ...tapiusage-throttling-filter-go-snippets.md | 34 ++ ...intapiusage-throttling-json-go-snippets.md | 34 ++ .../reportsthisusageprofiling-go-snippets.md | 2 +- ...t-get-casetypeconfiguration-go-snippets.md | 22 ++ ...t-get-customfielddefinition-go-snippets.md | 22 ++ ...gement-get-statusdefinition-go-snippets.md | 22 ++ ...list-casetypeconfigurations-go-snippets.md | 22 ++ ...anagement-list-customfields-go-snippets.md | 22 ++ ...asemanagement-list-statuses-go-snippets.md | 22 ++ ...mwork-deletetargetedmessage-go-snippets.md | 2 +- ...age-acceptrecommendations-java-snippets.md | 14 + ...tage-batchrecorddecisions-java-snippets.md | 18 + ...sage-from-channel-to-chat-java-snippets.md | 2 +- ...message-from-chat-to-chat-java-snippets.md | 2 +- ...sage-from-channel-to-chat-java-snippets.md | 2 +- ...chatmessagereplywithquote-java-snippets.md | 2 +- ...te-unifiedroot-definition-java-snippets.md | 57 +++ ...te-mailboxitem-harddelete-java-snippets.md | 16 + ...te-mailboxitem-softdelete-java-snippets.md | 16 + ...ransferprincipalownership-java-snippets.md | 22 ++ ...agecontainerusagesummary-java-snippets.md} | 2 +- ...nerusagesummary-with-apps-java-snippets.md | 16 + ...inerusagesummary-with-geo-java-snippets.md | 16 + ...=> get-remotetenantgroup-java-snippets.md} | 2 +- .../get-sponsorof-filter-java-snippets.md | 17 + .../java/get-sponsorof-java-snippets.md | 14 + .../java/import-chatmessage-java-snippets.md | 2 +- .../list-remotetenantgroup-java-snippets.md | 14 + ...t-unifiedroot-definitions-java-snippets.md | 14 + ...eportsyntheticmedia-audio-java-snippets.md | 54 +++ ...syntheticmedia-multimodal-java-snippets.md | 78 +++++ ...eportsyntheticmedia-video-java-snippets.md | 54 +++ .../java/patch-chatmessage-1-java-snippets.md | 2 +- .../java/patch-chatmessage-2-java-snippets.md | 2 +- .../java/patch-chatmessage-3-java-snippets.md | 2 +- .../java/patch-chatmessage-4-java-snippets.md | 2 +- .../post-channelmessage-1-java-snippets.md | 2 +- .../post-channelmessage-2-java-snippets.md | 2 +- .../post-channelmessage-3-java-snippets.md | 2 +- .../java/post-chatmessage-1-java-snippets.md | 2 +- .../java/post-chatmessage-11-java-snippets.md | 2 +- .../java/post-chatmessage-12-java-snippets.md | 2 +- .../java/post-chatmessage-13-java-snippets.md | 2 +- .../java/post-chatmessage-14-java-snippets.md | 2 +- .../java/post-chatmessage-15-java-snippets.md | 2 +- .../java/post-chatmessage-2-java-snippets.md | 2 +- .../java/post-chatmessage-3-java-snippets.md | 2 +- .../java/post-chatmessage-4-java-snippets.md | 2 +- .../java/post-chatmessage-6-java-snippets.md | 2 +- .../java/post-chatmessage-7-java-snippets.md | 2 +- ...tmessage-atmentionchannel-java-snippets.md | 2 +- ...-chatmessage-atmentiontag-java-snippets.md | 2 +- ...chatmessage-atmentionteam-java-snippets.md | 2 +- ...hatmessage-import-channel-java-snippets.md | 2 +- ...t-chatmessage-import-chat-java-snippets.md | 2 +- .../post-chatmessagereply-1-java-snippets.md | 2 +- .../post-chatmessagereply-2-java-snippets.md | 2 +- .../java/post-chatmessages-1-java-snippets.md | 2 +- ...opilotusageuserdetail-csv-java-snippets.md | 2 +- ...pilotusageuserdetail-json-java-snippets.md | 2 +- ...pilotusercountsummary-csv-java-snippets.md | 2 +- ...ilotusercountsummary-json-java-snippets.md | 2 +- ...copilotusercounttrend-csv-java-snippets.md | 2 +- ...opilotusercounttrend-json-java-snippets.md | 2 +- ...getsharepointapiusage-csv-java-snippets.md | 16 + ...usage-error-invalidperiod-java-snippets.md | 14 + ...iusage-error-notonboarded-java-snippets.md | 14 + ...rror-reporttypenotenabled-java-snippets.md | 14 + ...sharepointapiusage-filter-java-snippets.md | 16 + ...pointapiusage-json-filter-java-snippets.md | 16 + ...pointapiusage-json-format-java-snippets.md | 16 + ...etsharepointapiusage-json-java-snippets.md | 16 + ...sharepointapiusage-nodata-java-snippets.md | 14 + ...ntapiusage-throttling-csv-java-snippets.md | 16 + ...piusage-throttling-filter-java-snippets.md | 16 + ...tapiusage-throttling-json-java-snippets.md | 16 + ...get-casetypeconfiguration-java-snippets.md | 14 + ...get-customfielddefinition-java-snippets.md | 14 + ...ment-get-statusdefinition-java-snippets.md | 14 + ...st-casetypeconfigurations-java-snippets.md | 14 + ...agement-list-customfields-java-snippets.md | 14 + ...emanagement-list-statuses-java-snippets.md | 14 + ...ork-deletetargetedmessage-java-snippets.md | 2 +- ...ceptrecommendations-javascript-snippets.md | 17 + ...atchrecorddecisions-javascript-snippets.md | 23 ++ ...fiedroot-definition-javascript-snippets.md | 61 ++++ ...uthenticationmethod-javascript-snippets.md | 17 + ...rprincipalownership-javascript-snippets.md | 25 ++ ...tainerusagesummary-javascript-snippets.md} | 2 +- ...gesummary-with-apps-javascript-snippets.md | 18 + ...agesummary-with-geo-javascript-snippets.md | 18 + ...=> get-plannergoal-javascript-snippets.md} | 2 +- ...t-remotetenantgroup-javascript-snippets.md | 17 + ...uthenticationmethod-javascript-snippets.md | 17 + ...th-query-parameters-javascript-snippets.md | 20 ++ ...t-remotetenantgroup-javascript-snippets.md | 17 + ...uthenticationmethod-javascript-snippets.md | 17 + ...iedroot-definitions-javascript-snippets.md | 17 + ...yntheticmedia-audio-javascript-snippets.md | 55 +++ ...ticmedia-multimodal-javascript-snippets.md | 71 ++++ ...yntheticmedia-video-javascript-snippets.md | 50 +++ .../patch-columns-beta-javascript-snippets.md | 39 +++ ...annerplan-get-goals-javascript-snippets.md | 17 + ...usageuserdetail-csv-javascript-snippets.md | 17 + ...sageuserdetail-json-javascript-snippets.md | 17 + ...sercountsummary-csv-javascript-snippets.md | 17 + ...ercountsummary-json-javascript-snippets.md | 17 + ...tusercounttrend-csv-javascript-snippets.md | 17 + ...usercounttrend-json-javascript-snippets.md | 17 + ...repointapiusage-csv-javascript-snippets.md | 17 + ...error-invalidperiod-javascript-snippets.md | 17 + ...-error-notonboarded-javascript-snippets.md | 17 + ...eporttypenotenabled-javascript-snippets.md | 17 + ...ointapiusage-filter-javascript-snippets.md | 17 + ...piusage-json-filter-javascript-snippets.md | 17 + ...piusage-json-format-javascript-snippets.md | 17 + ...epointapiusage-json-javascript-snippets.md | 17 + ...ointapiusage-nodata-javascript-snippets.md | 17 + ...sage-throttling-csv-javascript-snippets.md | 17 + ...e-throttling-filter-javascript-snippets.md | 17 + ...age-throttling-json-javascript-snippets.md | 17 + ...setypeconfiguration-javascript-snippets.md | 17 + ...stomfielddefinition-javascript-snippets.md | 17 + ...et-statusdefinition-javascript-snippets.md | 17 + ...etypeconfigurations-javascript-snippets.md | 17 + ...t-list-customfields-javascript-snippets.md | 17 + ...ement-list-statuses-javascript-snippets.md | 17 + ...worksection-reorder-javascript-snippets.md | 25 ++ ...sectionitem-reorder-javascript-snippets.md | 25 ++ ...letetargetedmessage-javascript-snippets.md | 2 +- ...tage-acceptrecommendations-php-snippets.md | 16 + ...stage-batchrecorddecisions-php-snippets.md | 21 ++ ...ssage-from-channel-to-chat-php-snippets.md | 4 +- ...dmessage-from-chat-to-chat-php-snippets.md | 4 +- ...ssage-from-channel-to-chat-php-snippets.md | 4 +- .../chatmessagereplywithquote-php-snippets.md | 4 +- ...ate-unifiedroot-definition-php-snippets.md | 74 ++++ ...ete-mailboxitem-harddelete-php-snippets.md | 22 ++ ...ete-mailboxitem-softdelete-php-snippets.md | 22 ++ ...transferprincipalownership-php-snippets.md | 28 ++ ...ragecontainerusagesummary-php-snippets.md} | 2 +- ...inerusagesummary-with-apps-php-snippets.md | 22 ++ ...ainerusagesummary-with-geo-php-snippets.md | 22 ++ .../php/get-remotetenantgroup-php-snippets.md | 16 + .../php/get-sponsorof-filter-php-snippets.md | 27 ++ .../php/get-sponsorof-php-snippets.md | 16 + .../php/import-chatmessage-php-snippets.md | 4 +- ...=> list-remotetenantgroup-php-snippets.md} | 2 +- ...st-unifiedroot-definitions-php-snippets.md | 16 + ...reportsyntheticmedia-audio-php-snippets.md | 60 ++++ ...tsyntheticmedia-multimodal-php-snippets.md | 77 +++++ ...reportsyntheticmedia-video-php-snippets.md | 54 +++ .../php/patch-chatmessage-1-php-snippets.md | 4 +- .../php/patch-chatmessage-2-php-snippets.md | 4 +- .../php/patch-chatmessage-3-php-snippets.md | 4 +- .../php/patch-chatmessage-4-php-snippets.md | 4 +- .../php/post-channelmessage-1-php-snippets.md | 4 +- .../php/post-channelmessage-2-php-snippets.md | 4 +- .../php/post-channelmessage-3-php-snippets.md | 4 +- .../php/post-chatmessage-1-php-snippets.md | 4 +- .../php/post-chatmessage-11-php-snippets.md | 4 +- .../php/post-chatmessage-12-php-snippets.md | 4 +- .../php/post-chatmessage-13-php-snippets.md | 4 +- .../php/post-chatmessage-14-php-snippets.md | 4 +- .../php/post-chatmessage-15-php-snippets.md | 4 +- .../php/post-chatmessage-2-php-snippets.md | 4 +- .../php/post-chatmessage-3-php-snippets.md | 4 +- .../php/post-chatmessage-4-php-snippets.md | 4 +- .../php/post-chatmessage-6-php-snippets.md | 4 +- .../php/post-chatmessage-7-php-snippets.md | 4 +- ...atmessage-atmentionchannel-php-snippets.md | 4 +- ...t-chatmessage-atmentiontag-php-snippets.md | 4 +- ...-chatmessage-atmentionteam-php-snippets.md | 4 +- ...chatmessage-import-channel-php-snippets.md | 4 +- ...st-chatmessage-import-chat-php-snippets.md | 4 +- .../post-chatmessagereply-1-php-snippets.md | 4 +- .../post-chatmessagereply-2-php-snippets.md | 4 +- .../php/post-chatmessages-1-php-snippets.md | 4 +- ...copilotusageuserdetail-csv-php-snippets.md | 8 +- ...opilotusageuserdetail-json-php-snippets.md | 8 +- ...opilotusercountsummary-csv-php-snippets.md | 8 +- ...pilotusercountsummary-json-php-snippets.md | 8 +- ...5copilotusercounttrend-csv-php-snippets.md | 8 +- ...copilotusercounttrend-json-php-snippets.md | 8 +- ...-getsharepointapiusage-csv-php-snippets.md | 22 ++ ...iusage-error-invalidperiod-php-snippets.md | 16 + ...piusage-error-notonboarded-php-snippets.md | 16 + ...error-reporttypenotenabled-php-snippets.md | 16 + ...tsharepointapiusage-filter-php-snippets.md | 22 ++ ...epointapiusage-json-filter-php-snippets.md | 22 ++ ...epointapiusage-json-format-php-snippets.md | 22 ++ ...getsharepointapiusage-json-php-snippets.md | 22 ++ ...tsharepointapiusage-nodata-php-snippets.md | 16 + ...intapiusage-throttling-csv-php-snippets.md | 22 ++ ...apiusage-throttling-filter-php-snippets.md | 22 ++ ...ntapiusage-throttling-json-php-snippets.md | 22 ++ ...-get-casetypeconfiguration-php-snippets.md | 16 + ...-get-customfielddefinition-php-snippets.md | 16 + ...ement-get-statusdefinition-php-snippets.md | 16 + ...ist-casetypeconfigurations-php-snippets.md | 16 + ...nagement-list-customfields-php-snippets.md | 16 + ...semanagement-list-statuses-php-snippets.md | 16 + ...work-deletetargetedmessage-php-snippets.md | 2 +- ...sthisusageprofiling-powershell-snippets.md | 11 - ...e-acceptrecommendations-python-snippets.md | 14 + ...ge-batchrecorddecisions-python-snippets.md | 20 ++ ...ge-from-channel-to-chat-python-snippets.md | 4 +- ...ssage-from-chat-to-chat-python-snippets.md | 4 +- ...ge-from-channel-to-chat-python-snippets.md | 4 +- ...atmessagereplywithquote-python-snippets.md | 4 +- ...-unifiedroot-definition-python-snippets.md | 72 ++++ ...-mailboxitem-harddelete-python-snippets.md | 23 ++ ...-mailboxitem-softdelete-python-snippets.md | 23 ++ ...nsferprincipalownership-python-snippets.md | 26 ++ ...econtainerusagesummary-python-snippets.md} | 2 +- ...rusagesummary-with-apps-python-snippets.md | 23 ++ ...erusagesummary-with-geo-python-snippets.md | 23 ++ .../get-remotetenantgroup-python-snippets.md | 14 + .../get-sponsorof-filter-python-snippets.md | 25 ++ .../python/get-sponsorof-python-snippets.md | 14 + .../import-chatmessage-python-snippets.md | 4 +- ...list-remotetenantgroup-python-snippets.md} | 2 +- ...unifiedroot-definitions-python-snippets.md | 14 + ...ortsyntheticmedia-audio-python-snippets.md | 62 ++++ ...ntheticmedia-multimodal-python-snippets.md | 87 +++++ ...ortsyntheticmedia-video-python-snippets.md | 61 ++++ .../patch-chatmessage-1-python-snippets.md | 4 +- .../patch-chatmessage-2-python-snippets.md | 4 +- .../patch-chatmessage-3-python-snippets.md | 4 +- .../patch-chatmessage-4-python-snippets.md | 4 +- .../post-channelmessage-1-python-snippets.md | 4 +- .../post-channelmessage-2-python-snippets.md | 4 +- .../post-channelmessage-3-python-snippets.md | 4 +- .../post-chatmessage-1-python-snippets.md | 4 +- .../post-chatmessage-11-python-snippets.md | 4 +- .../post-chatmessage-12-python-snippets.md | 4 +- .../post-chatmessage-13-python-snippets.md | 4 +- .../post-chatmessage-14-python-snippets.md | 4 +- .../post-chatmessage-15-python-snippets.md | 4 +- .../post-chatmessage-2-python-snippets.md | 4 +- .../post-chatmessage-3-python-snippets.md | 4 +- .../post-chatmessage-4-python-snippets.md | 4 +- .../post-chatmessage-6-python-snippets.md | 4 +- .../post-chatmessage-7-python-snippets.md | 4 +- ...essage-atmentionchannel-python-snippets.md | 4 +- ...hatmessage-atmentiontag-python-snippets.md | 4 +- ...atmessage-atmentionteam-python-snippets.md | 4 +- ...tmessage-import-channel-python-snippets.md | 4 +- ...chatmessage-import-chat-python-snippets.md | 4 +- ...post-chatmessagereply-1-python-snippets.md | 4 +- ...post-chatmessagereply-2-python-snippets.md | 4 +- .../post-chatmessages-1-python-snippets.md | 4 +- ...ilotusageuserdetail-csv-python-snippets.md | 6 +- ...lotusageuserdetail-json-python-snippets.md | 6 +- ...lotusercountsummary-csv-python-snippets.md | 6 +- ...otusercountsummary-json-python-snippets.md | 6 +- ...pilotusercounttrend-csv-python-snippets.md | 6 +- ...ilotusercounttrend-json-python-snippets.md | 6 +- ...tsharepointapiusage-csv-python-snippets.md | 23 ++ ...age-error-invalidperiod-python-snippets.md | 14 + ...sage-error-notonboarded-python-snippets.md | 14 + ...or-reporttypenotenabled-python-snippets.md | 14 + ...arepointapiusage-filter-python-snippets.md | 23 ++ ...intapiusage-json-filter-python-snippets.md | 23 ++ ...intapiusage-json-format-python-snippets.md | 23 ++ ...sharepointapiusage-json-python-snippets.md | 23 ++ ...arepointapiusage-nodata-python-snippets.md | 14 + ...apiusage-throttling-csv-python-snippets.md | 23 ++ ...usage-throttling-filter-python-snippets.md | 23 ++ ...piusage-throttling-json-python-snippets.md | 23 ++ ...t-casetypeconfiguration-python-snippets.md | 14 + ...t-customfielddefinition-python-snippets.md | 14 + ...nt-get-statusdefinition-python-snippets.md | 14 + ...-casetypeconfigurations-python-snippets.md | 14 + ...ement-list-customfields-python-snippets.md | 14 + ...anagement-list-statuses-python-snippets.md | 14 + ...k-deletetargetedmessage-python-snippets.md | 2 +- ...sspackageresource-delete-uploadsessions.md | 27 ++ ...cesspackageresource-list-uploadsessions.md | 27 ++ ...cesspackageresource-post-uploadsessions.md | 27 ++ .../v1.0/api/chat-delete-targetedmessages.md | 31 ++ ...omdataprovidedresourceuploadsession-get.md | 27 ++ ...ataprovidedresourceuploadsession-update.md | 27 ++ ...rovidedresourceuploadsession-uploadfile.md | 7 + .../api/directory-list-remotetenantgroups.md | 27 ++ .../api/filestoragecontainer-patch-columns.md | 7 + ...ncpolicytemplate-resettodefaultsettings.md | 27 ++ ...gurationtemplate-resettodefaultsettings.md | 27 ++ .../v1.0/api/remotetenantgroup-get.md | 27 ++ api-reference/v1.0/api/user-list-sponsorof.md | 40 +++ .../api/userteamwork-deletetargetedmessage.md | 31 ++ ...teamwork-getallretainedtargetedmessages.md | 31 ++ .../userteamwork-getalltargetedmessages.md | 93 +++++ ...nttownhallregistrationconfiguration-get.md | 29 +- ...urceuploadsession-from--csharp-snippets.md | 28 ++ ...edresourceuploadsession-csharp-snippets.md | 13 + .../csharp/delete-page-csharp-snippets.md | 2 +- ...ete-targetedchatmessage-csharp-snippets.md | 13 + ...edresourceuploadsession-csharp-snippets.md | 13 + .../get-remotetenantgroup-csharp-snippets.md | 13 + .../csharp/get-sponsorof-csharp-snippets.md | 13 + .../get-sponsorof-filter-csharp-snippets.md | 17 + ...gistrationconfiguration-csharp-snippets.md | 13 + ...edresourceuploadsession-csharp-snippets.md | 13 + .../list-remotetenantgroup-csharp-snippets.md | 13 + ...sresettodefaultsettings-csharp-snippets.md | 13 + ...sresettodefaultsettings-csharp-snippets.md | 13 + ...edresourceuploadsession-csharp-snippets.md | 21 ++ ...k-deletetargetedmessage-csharp-snippets.md | 23 ++ ...etainedtargetedmessages-csharp-snippets.md | 13 + ...getedmessages-appfilter-csharp-snippets.md | 16 + ...-getalltargetedmessages-csharp-snippets.md | 13 + ...targetedmessages-filter-csharp-snippets.md | 16 + ...resourceuploadsession-from--go-snippets.md | 31 ++ ...ovidedresourceuploadsession-go-snippets.md | 22 ++ .../snippets/go/delete-page-go-snippets.md | 2 +- .../delete-targetedchatmessage-go-snippets.md | 22 ++ ...ovidedresourceuploadsession-go-snippets.md | 22 ++ .../go/get-remotetenantgroup-go-snippets.md | 22 ++ .../go/get-sponsorof-filter-go-snippets.md | 37 ++ .../snippets/go/get-sponsorof-go-snippets.md | 22 ++ ...llregistrationconfiguration-go-snippets.md | 22 ++ ...ovidedresourceuploadsession-go-snippets.md | 22 ++ .../go/list-remotetenantgroup-go-snippets.md | 22 ++ ...ethisresettodefaultsettings-go-snippets.md | 22 ++ ...ethisresettodefaultsettings-go-snippets.md | 22 ++ ...ovidedresourceuploadsession-go-snippets.md | 26 ++ ...mwork-deletetargetedmessage-go-snippets.md | 30 ++ ...allretainedtargetedmessages-go-snippets.md | 22 ++ ...ltargetedmessages-appfilter-go-snippets.md | 32 ++ ...talltargetedmessages-filter-go-snippets.md | 32 ++ ...work-getalltargetedmessages-go-snippets.md | 22 ++ ...sourceuploadsession-from--java-snippets.md | 21 ++ ...idedresourceuploadsession-java-snippets.md | 14 + .../java/delete-page-java-snippets.md | 2 +- ...elete-targetedchatmessage-java-snippets.md | 14 + ...idedresourceuploadsession-java-snippets.md | 14 + .../get-remotetenantgroup-java-snippets.md | 14 + .../get-sponsorof-filter-java-snippets.md | 17 + .../java/get-sponsorof-java-snippets.md | 14 + ...registrationconfiguration-java-snippets.md | 14 + ...idedresourceuploadsession-java-snippets.md | 14 + .../list-remotetenantgroup-java-snippets.md | 14 + ...hisresettodefaultsettings-java-snippets.md | 14 + ...hisresettodefaultsettings-java-snippets.md | 14 + ...idedresourceuploadsession-java-snippets.md | 16 + ...ork-deletetargetedmessage-java-snippets.md | 18 + ...lretainedtargetedmessages-java-snippets.md | 14 + ...argetedmessages-appfilter-java-snippets.md | 16 + ...lltargetedmessages-filter-java-snippets.md | 16 + ...rk-getalltargetedmessages-java-snippets.md | 14 + ...uploadsession-from--javascript-snippets.md | 25 ++ ...ssionthisuploadfile-javascript-snippets.md | 25 ++ ...sourceuploadsession-javascript-snippets.md | 16 + .../delete-page-javascript-snippets.md | 2 +- ...targetedchatmessage-javascript-snippets.md | 16 + ...sourceuploadsession-javascript-snippets.md | 16 + ...t-remotetenantgroup-javascript-snippets.md | 16 + ...rationconfiguration-javascript-snippets.md | 16 + ...sourceuploadsession-javascript-snippets.md | 16 + ...t-remotetenantgroup-javascript-snippets.md | 16 + ...ettodefaultsettings-javascript-snippets.md | 16 + ...ettodefaultsettings-javascript-snippets.md | 16 + .../patch-columns-v1-javascript-snippets.md | 38 ++ ...sourceuploadsession-javascript-snippets.md | 20 ++ ...letetargetedmessage-javascript-snippets.md | 22 ++ ...nedtargetedmessages-javascript-snippets.md | 16 + ...dmessages-appfilter-javascript-snippets.md | 17 + ...etedmessages-filter-javascript-snippets.md | 17 + ...alltargetedmessages-javascript-snippets.md | 16 + ...esourceuploadsession-from--php-snippets.md | 25 ++ ...videdresourceuploadsession-php-snippets.md | 16 + .../snippets/php/delete-page-php-snippets.md | 2 +- ...delete-targetedchatmessage-php-snippets.md | 16 + ...videdresourceuploadsession-php-snippets.md | 16 + .../php/get-remotetenantgroup-php-snippets.md | 16 + .../php/get-sponsorof-filter-php-snippets.md | 27 ++ .../php/get-sponsorof-php-snippets.md | 16 + ...lregistrationconfiguration-php-snippets.md | 16 + ...videdresourceuploadsession-php-snippets.md | 16 + .../list-remotetenantgroup-php-snippets.md | 16 + ...thisresettodefaultsettings-php-snippets.md | 16 + ...thisresettodefaultsettings-php-snippets.md | 16 + ...videdresourceuploadsession-php-snippets.md | 19 + ...work-deletetargetedmessage-php-snippets.md | 21 ++ ...llretainedtargetedmessages-php-snippets.md | 16 + ...targetedmessages-appfilter-php-snippets.md | 22 ++ ...alltargetedmessages-filter-php-snippets.md | 22 ++ ...ork-getalltargetedmessages-php-snippets.md | 16 + .../delete-page-powershell-snippets.md | 5 +- ...targetedchatmessage-powershell-snippets.md | 11 + ...letetargetedmessage-powershell-snippets.md | 17 + ...nedtargetedmessages-powershell-snippets.md | 11 + ...dmessages-appfilter-powershell-snippets.md | 11 + ...etedmessages-filter-powershell-snippets.md | 11 + ...alltargetedmessages-powershell-snippets.md | 11 + ...urceuploadsession-from--python-snippets.md | 24 ++ ...edresourceuploadsession-python-snippets.md | 14 + .../python/delete-page-python-snippets.md | 2 +- ...ete-targetedchatmessage-python-snippets.md | 14 + ...edresourceuploadsession-python-snippets.md | 14 + .../get-remotetenantgroup-python-snippets.md | 14 + .../get-sponsorof-filter-python-snippets.md | 25 ++ .../python/get-sponsorof-python-snippets.md | 14 + ...gistrationconfiguration-python-snippets.md | 14 + ...edresourceuploadsession-python-snippets.md | 14 + .../list-remotetenantgroup-python-snippets.md | 14 + ...sresettodefaultsettings-python-snippets.md | 14 + ...sresettodefaultsettings-python-snippets.md | 14 + ...edresourceuploadsession-python-snippets.md | 18 + ...k-deletetargetedmessage-python-snippets.md | 20 ++ ...etainedtargetedmessages-python-snippets.md | 14 + ...getedmessages-appfilter-python-snippets.md | 23 ++ ...targetedmessages-filter-python-snippets.md | 23 ++ ...-getalltargetedmessages-python-snippets.md | 14 + 585 files changed, 9131 insertions(+), 377 deletions(-) create mode 100644 api-reference/beta/includes/snippets/csharp/accessreviewstage-acceptrecommendations-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/accessreviewstage-batchrecorddecisions-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/create-unifiedroot-definition-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/delete-mailboxitem-harddelete-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/delete-mailboxitem-softdelete-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/filestoragecontainerthistransferprincipalownership-csharp-snippets.md rename api-reference/beta/includes/snippets/csharp/{list-distributionlistmembers-csharp-snippets.md => get-microsoftappsfilestoragecontainerusagesummary-csharp-snippets.md} (72%) create mode 100644 api-reference/beta/includes/snippets/csharp/get-microsoftappsfilestoragecontainerusagesummary-with-apps-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/get-microsoftappsfilestoragecontainerusagesummary-with-geo-csharp-snippets.md rename api-reference/beta/includes/snippets/csharp/{get-distributionlistmember-csharp-snippets.md => get-remotetenantgroup-csharp-snippets.md} (66%) create mode 100644 api-reference/beta/includes/snippets/csharp/get-sponsorof-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/get-sponsorof-filter-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/list-remotetenantgroup-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/list-unifiedroot-definitions-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/participant-reportsyntheticmedia-audio-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/participant-reportsyntheticmedia-multimodal-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/participant-reportsyntheticmedia-video-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/reportroot-getsharepointapiusage-csv-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/reportroot-getsharepointapiusage-error-invalidperiod-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/reportroot-getsharepointapiusage-error-notonboarded-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/reportroot-getsharepointapiusage-error-reporttypenotenabled-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/reportroot-getsharepointapiusage-filter-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/reportroot-getsharepointapiusage-json-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/reportroot-getsharepointapiusage-json-filter-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/reportroot-getsharepointapiusage-json-format-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/reportroot-getsharepointapiusage-nodata-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/reportroot-getsharepointapiusage-throttling-csv-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/reportroot-getsharepointapiusage-throttling-filter-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/reportroot-getsharepointapiusage-throttling-json-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/security-casemanagement-get-casetypeconfiguration-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/security-casemanagement-get-customfielddefinition-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/security-casemanagement-get-statusdefinition-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/security-casemanagement-list-casetypeconfigurations-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/security-casemanagement-list-customfields-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/security-casemanagement-list-statuses-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/accessreviewstage-acceptrecommendations-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/accessreviewstage-batchrecorddecisions-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/create-unifiedroot-definition-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/delete-mailboxitem-harddelete-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/delete-mailboxitem-softdelete-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/filestoragecontainerthistransferprincipalownership-go-snippets.md rename api-reference/beta/includes/snippets/go/{list-distributionlistmembers-go-snippets.md => get-microsoftappsfilestoragecontainerusagesummary-go-snippets.md} (71%) create mode 100644 api-reference/beta/includes/snippets/go/get-microsoftappsfilestoragecontainerusagesummary-with-apps-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/get-microsoftappsfilestoragecontainerusagesummary-with-geo-go-snippets.md rename api-reference/beta/includes/snippets/go/{get-distributionlistmember-go-snippets.md => get-remotetenantgroup-go-snippets.md} (65%) create mode 100644 api-reference/beta/includes/snippets/go/get-sponsorof-filter-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/get-sponsorof-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/list-remotetenantgroup-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/list-unifiedroot-definitions-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/participant-reportsyntheticmedia-audio-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/participant-reportsyntheticmedia-multimodal-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/participant-reportsyntheticmedia-video-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/reportroot-getsharepointapiusage-csv-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/reportroot-getsharepointapiusage-error-invalidperiod-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/reportroot-getsharepointapiusage-error-notonboarded-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/reportroot-getsharepointapiusage-error-reporttypenotenabled-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/reportroot-getsharepointapiusage-filter-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/reportroot-getsharepointapiusage-json-filter-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/reportroot-getsharepointapiusage-json-format-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/reportroot-getsharepointapiusage-json-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/reportroot-getsharepointapiusage-nodata-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/reportroot-getsharepointapiusage-throttling-csv-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/reportroot-getsharepointapiusage-throttling-filter-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/reportroot-getsharepointapiusage-throttling-json-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/security-casemanagement-get-casetypeconfiguration-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/security-casemanagement-get-customfielddefinition-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/security-casemanagement-get-statusdefinition-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/security-casemanagement-list-casetypeconfigurations-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/security-casemanagement-list-customfields-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/security-casemanagement-list-statuses-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/accessreviewstage-acceptrecommendations-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/accessreviewstage-batchrecorddecisions-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/create-unifiedroot-definition-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/delete-mailboxitem-harddelete-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/delete-mailboxitem-softdelete-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/filestoragecontainerthistransferprincipalownership-java-snippets.md rename api-reference/beta/includes/snippets/java/{list-distributionlistmembers-java-snippets.md => get-microsoftappsfilestoragecontainerusagesummary-java-snippets.md} (59%) create mode 100644 api-reference/beta/includes/snippets/java/get-microsoftappsfilestoragecontainerusagesummary-with-apps-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/get-microsoftappsfilestoragecontainerusagesummary-with-geo-java-snippets.md rename api-reference/beta/includes/snippets/java/{get-distributionlistmember-java-snippets.md => get-remotetenantgroup-java-snippets.md} (53%) create mode 100644 api-reference/beta/includes/snippets/java/get-sponsorof-filter-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/get-sponsorof-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/list-remotetenantgroup-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/list-unifiedroot-definitions-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/participant-reportsyntheticmedia-audio-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/participant-reportsyntheticmedia-multimodal-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/participant-reportsyntheticmedia-video-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/reportroot-getsharepointapiusage-csv-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/reportroot-getsharepointapiusage-error-invalidperiod-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/reportroot-getsharepointapiusage-error-notonboarded-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/reportroot-getsharepointapiusage-error-reporttypenotenabled-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/reportroot-getsharepointapiusage-filter-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/reportroot-getsharepointapiusage-json-filter-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/reportroot-getsharepointapiusage-json-format-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/reportroot-getsharepointapiusage-json-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/reportroot-getsharepointapiusage-nodata-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/reportroot-getsharepointapiusage-throttling-csv-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/reportroot-getsharepointapiusage-throttling-filter-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/reportroot-getsharepointapiusage-throttling-json-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/security-casemanagement-get-casetypeconfiguration-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/security-casemanagement-get-customfielddefinition-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/security-casemanagement-get-statusdefinition-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/security-casemanagement-list-casetypeconfigurations-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/security-casemanagement-list-customfields-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/security-casemanagement-list-statuses-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/accessreviewstage-acceptrecommendations-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/accessreviewstage-batchrecorddecisions-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/create-unifiedroot-definition-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/delete-resourceaccountkeyauthenticationmethod-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/filestoragecontainerthistransferprincipalownership-javascript-snippets.md rename api-reference/beta/includes/snippets/javascript/{get-distributionlistmember-javascript-snippets.md => get-microsoftappsfilestoragecontainerusagesummary-javascript-snippets.md} (59%) create mode 100644 api-reference/beta/includes/snippets/javascript/get-microsoftappsfilestoragecontainerusagesummary-with-apps-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/get-microsoftappsfilestoragecontainerusagesummary-with-geo-javascript-snippets.md rename api-reference/beta/includes/snippets/javascript/{list-distributionlistmembers-javascript-snippets.md => get-plannergoal-javascript-snippets.md} (62%) create mode 100644 api-reference/beta/includes/snippets/javascript/get-remotetenantgroup-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/get-resourceaccountkeyauthenticationmethod-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/list-mailboxfolder-with-query-parameters-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/list-remotetenantgroup-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/list-resourceaccountkeyauthenticationmethod-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/list-unifiedroot-definitions-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/participant-reportsyntheticmedia-audio-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/participant-reportsyntheticmedia-multimodal-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/participant-reportsyntheticmedia-video-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/patch-columns-beta-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/plannerplan-get-goals-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getmicrosoft365copilotusageuserdetail-csv-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getmicrosoft365copilotusageuserdetail-json-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getmicrosoft365copilotusercountsummary-csv-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getmicrosoft365copilotusercountsummary-json-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getmicrosoft365copilotusercounttrend-csv-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getmicrosoft365copilotusercounttrend-json-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getsharepointapiusage-csv-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getsharepointapiusage-error-invalidperiod-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getsharepointapiusage-error-notonboarded-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getsharepointapiusage-error-reporttypenotenabled-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getsharepointapiusage-filter-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getsharepointapiusage-json-filter-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getsharepointapiusage-json-format-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getsharepointapiusage-json-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getsharepointapiusage-nodata-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getsharepointapiusage-throttling-csv-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getsharepointapiusage-throttling-filter-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/reportroot-getsharepointapiusage-throttling-json-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/security-casemanagement-get-casetypeconfiguration-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/security-casemanagement-get-customfielddefinition-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/security-casemanagement-get-statusdefinition-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/security-casemanagement-list-casetypeconfigurations-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/security-casemanagement-list-customfields-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/security-casemanagement-list-statuses-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/teamworksection-reorder-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/teamworksectionitem-reorder-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/accessreviewstage-acceptrecommendations-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/accessreviewstage-batchrecorddecisions-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/create-unifiedroot-definition-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/delete-mailboxitem-harddelete-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/delete-mailboxitem-softdelete-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/filestoragecontainerthistransferprincipalownership-php-snippets.md rename api-reference/beta/includes/snippets/php/{get-distributionlistmember-php-snippets.md => get-microsoftappsfilestoragecontainerusagesummary-php-snippets.md} (51%) create mode 100644 api-reference/beta/includes/snippets/php/get-microsoftappsfilestoragecontainerusagesummary-with-apps-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/get-microsoftappsfilestoragecontainerusagesummary-with-geo-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/get-remotetenantgroup-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/get-sponsorof-filter-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/get-sponsorof-php-snippets.md rename api-reference/beta/includes/snippets/php/{list-distributionlistmembers-php-snippets.md => list-remotetenantgroup-php-snippets.md} (64%) create mode 100644 api-reference/beta/includes/snippets/php/list-unifiedroot-definitions-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/participant-reportsyntheticmedia-audio-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/participant-reportsyntheticmedia-multimodal-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/participant-reportsyntheticmedia-video-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/reportroot-getsharepointapiusage-csv-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/reportroot-getsharepointapiusage-error-invalidperiod-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/reportroot-getsharepointapiusage-error-notonboarded-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/reportroot-getsharepointapiusage-error-reporttypenotenabled-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/reportroot-getsharepointapiusage-filter-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/reportroot-getsharepointapiusage-json-filter-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/reportroot-getsharepointapiusage-json-format-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/reportroot-getsharepointapiusage-json-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/reportroot-getsharepointapiusage-nodata-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/reportroot-getsharepointapiusage-throttling-csv-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/reportroot-getsharepointapiusage-throttling-filter-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/reportroot-getsharepointapiusage-throttling-json-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/security-casemanagement-get-casetypeconfiguration-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/security-casemanagement-get-customfielddefinition-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/security-casemanagement-get-statusdefinition-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/security-casemanagement-list-casetypeconfigurations-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/security-casemanagement-list-customfields-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/security-casemanagement-list-statuses-php-snippets.md delete mode 100644 api-reference/beta/includes/snippets/powershell/reportsthisusageprofiling-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/accessreviewstage-acceptrecommendations-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/accessreviewstage-batchrecorddecisions-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/create-unifiedroot-definition-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/delete-mailboxitem-harddelete-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/delete-mailboxitem-softdelete-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/filestoragecontainerthistransferprincipalownership-python-snippets.md rename api-reference/beta/includes/snippets/python/{get-distributionlistmember-python-snippets.md => get-microsoftappsfilestoragecontainerusagesummary-python-snippets.md} (63%) create mode 100644 api-reference/beta/includes/snippets/python/get-microsoftappsfilestoragecontainerusagesummary-with-apps-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/get-microsoftappsfilestoragecontainerusagesummary-with-geo-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/get-remotetenantgroup-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/get-sponsorof-filter-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/get-sponsorof-python-snippets.md rename api-reference/beta/includes/snippets/python/{list-distributionlistmembers-python-snippets.md => list-remotetenantgroup-python-snippets.md} (72%) create mode 100644 api-reference/beta/includes/snippets/python/list-unifiedroot-definitions-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/participant-reportsyntheticmedia-audio-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/participant-reportsyntheticmedia-multimodal-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/participant-reportsyntheticmedia-video-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/reportroot-getsharepointapiusage-csv-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/reportroot-getsharepointapiusage-error-invalidperiod-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/reportroot-getsharepointapiusage-error-notonboarded-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/reportroot-getsharepointapiusage-error-reporttypenotenabled-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/reportroot-getsharepointapiusage-filter-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/reportroot-getsharepointapiusage-json-filter-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/reportroot-getsharepointapiusage-json-format-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/reportroot-getsharepointapiusage-json-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/reportroot-getsharepointapiusage-nodata-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/reportroot-getsharepointapiusage-throttling-csv-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/reportroot-getsharepointapiusage-throttling-filter-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/reportroot-getsharepointapiusage-throttling-json-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/security-casemanagement-get-casetypeconfiguration-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/security-casemanagement-get-customfielddefinition-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/security-casemanagement-get-statusdefinition-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/security-casemanagement-list-casetypeconfigurations-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/security-casemanagement-list-customfields-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/security-casemanagement-list-statuses-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/create-customdataprovidedresourceuploadsession-from--csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/delete-customdataprovidedresourceuploadsession-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/delete-targetedchatmessage-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/get-customdataprovidedresourceuploadsession-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/get-remotetenantgroup-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/get-sponsorof-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/get-sponsorof-filter-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/get-virtualeventtownhallregistrationconfiguration-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/list-customdataprovidedresourceuploadsession-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/list-remotetenantgroup-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/update-customdataprovidedresourceuploadsession-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/userteamwork-deletetargetedmessage-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/userteamwork-getallretainedtargetedmessages-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/userteamwork-getalltargetedmessages-appfilter-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/userteamwork-getalltargetedmessages-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/userteamwork-getalltargetedmessages-filter-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/create-customdataprovidedresourceuploadsession-from--go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/delete-customdataprovidedresourceuploadsession-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/delete-targetedchatmessage-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/get-customdataprovidedresourceuploadsession-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/get-remotetenantgroup-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/get-sponsorof-filter-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/get-sponsorof-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/get-virtualeventtownhallregistrationconfiguration-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/list-customdataprovidedresourceuploadsession-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/list-remotetenantgroup-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/update-customdataprovidedresourceuploadsession-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/userteamwork-deletetargetedmessage-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/userteamwork-getallretainedtargetedmessages-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/userteamwork-getalltargetedmessages-appfilter-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/userteamwork-getalltargetedmessages-filter-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/userteamwork-getalltargetedmessages-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/create-customdataprovidedresourceuploadsession-from--java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/delete-customdataprovidedresourceuploadsession-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/delete-targetedchatmessage-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/get-customdataprovidedresourceuploadsession-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/get-remotetenantgroup-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/get-sponsorof-filter-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/get-sponsorof-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/get-virtualeventtownhallregistrationconfiguration-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/list-customdataprovidedresourceuploadsession-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/list-remotetenantgroup-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/update-customdataprovidedresourceuploadsession-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/userteamwork-deletetargetedmessage-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/userteamwork-getallretainedtargetedmessages-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/userteamwork-getalltargetedmessages-appfilter-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/userteamwork-getalltargetedmessages-filter-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/userteamwork-getalltargetedmessages-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/create-customdataprovidedresourceuploadsession-from--javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/customdataprovidedresourceuploadsessionthisuploadfile-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/delete-customdataprovidedresourceuploadsession-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/delete-targetedchatmessage-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/get-customdataprovidedresourceuploadsession-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/get-remotetenantgroup-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/get-virtualeventtownhallregistrationconfiguration-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/list-customdataprovidedresourceuploadsession-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/list-remotetenantgroup-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/patch-columns-v1-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/update-customdataprovidedresourceuploadsession-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/userteamwork-deletetargetedmessage-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/userteamwork-getallretainedtargetedmessages-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/userteamwork-getalltargetedmessages-appfilter-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/userteamwork-getalltargetedmessages-filter-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/userteamwork-getalltargetedmessages-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/create-customdataprovidedresourceuploadsession-from--php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/delete-customdataprovidedresourceuploadsession-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/delete-targetedchatmessage-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/get-customdataprovidedresourceuploadsession-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/get-remotetenantgroup-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/get-sponsorof-filter-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/get-sponsorof-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/get-virtualeventtownhallregistrationconfiguration-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/list-customdataprovidedresourceuploadsession-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/list-remotetenantgroup-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/update-customdataprovidedresourceuploadsession-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/userteamwork-deletetargetedmessage-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/userteamwork-getallretainedtargetedmessages-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/userteamwork-getalltargetedmessages-appfilter-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/userteamwork-getalltargetedmessages-filter-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/userteamwork-getalltargetedmessages-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/delete-targetedchatmessage-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/userteamwork-deletetargetedmessage-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/userteamwork-getallretainedtargetedmessages-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/userteamwork-getalltargetedmessages-appfilter-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/userteamwork-getalltargetedmessages-filter-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/userteamwork-getalltargetedmessages-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/create-customdataprovidedresourceuploadsession-from--python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/delete-customdataprovidedresourceuploadsession-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/delete-targetedchatmessage-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/get-customdataprovidedresourceuploadsession-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/get-remotetenantgroup-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/get-sponsorof-filter-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/get-sponsorof-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/get-virtualeventtownhallregistrationconfiguration-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/list-customdataprovidedresourceuploadsession-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/list-remotetenantgroup-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/update-customdataprovidedresourceuploadsession-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/userteamwork-deletetargetedmessage-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/userteamwork-getallretainedtargetedmessages-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/userteamwork-getalltargetedmessages-appfilter-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/userteamwork-getalltargetedmessages-filter-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/userteamwork-getalltargetedmessages-python-snippets.md diff --git a/api-reference/beta/api/accessreviewstage-acceptrecommendations.md b/api-reference/beta/api/accessreviewstage-acceptrecommendations.md index bda0a7baae3..44a11548524 100644 --- a/api-reference/beta/api/accessreviewstage-acceptrecommendations.md +++ b/api-reference/beta/api/accessreviewstage-acceptrecommendations.md @@ -54,6 +54,7 @@ If successful, this action returns a `204 No Content` response code. ### Request +# [HTTP](#tab/http) -```http +```msgraph-interactive GET https://graph.microsoft.com/beta/planner/goals/eDsaMcSvzUqAeS1NkgTFY5UAHYBs ``` +# [JavaScript](#tab/javascript) +[!INCLUDE [sample-code](../includes/snippets/javascript/get-plannergoal-javascript-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + ### Response The following example shows the response. diff --git a/api-reference/beta/api/plannerplan-list-goals.md b/api-reference/beta/api/plannerplan-list-goals.md index 5c593b5a7c3..d184292e242 100644 --- a/api-reference/beta/api/plannerplan-list-goals.md +++ b/api-reference/beta/api/plannerplan-list-goals.md @@ -54,16 +54,23 @@ This method can return any of the [HTTP status codes](/graph/errors). The most c The following example shows a request. +# [HTTP](#tab/http) -```http +```msgraph-interactive GET https://graph.microsoft.com/beta/planner/plans/V5pBRwb_vEugGKGpZuLnX5UAG9iy/goals ``` +# [JavaScript](#tab/javascript) +[!INCLUDE [sample-code](../includes/snippets/javascript/plannerplan-get-goals-javascript-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + ### Response The following example shows the response. diff --git a/api-reference/beta/api/remotetenantgroup-get.md b/api-reference/beta/api/remotetenantgroup-get.md index 0817624a5ea..7717324955a 100644 --- a/api-reference/beta/api/remotetenantgroup-get.md +++ b/api-reference/beta/api/remotetenantgroup-get.md @@ -62,6 +62,7 @@ If successful, this method returns a `200 OK` response code and a [remoteTenantG ### Request The following example shows a request. +# [HTTP](#tab/http) -```http +```msgraph-interactive GET https://graph.microsoft.com/v1.0/solutions/virtualEvents/townhalls/88b245ac-b0b2-f1aa-e34a-c81c27abdac2@f9448ec4-804b-46af-b810-62085248da33/registrationConfiguration ``` +# [C#](#tab/csharp) +[!INCLUDE [sample-code](../includes/snippets/csharp/get-virtualeventtownhallregistrationconfiguration-csharp-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [sample-code](../includes/snippets/go/get-virtualeventtownhallregistrationconfiguration-go-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [sample-code](../includes/snippets/java/get-virtualeventtownhallregistrationconfiguration-java-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [sample-code](../includes/snippets/javascript/get-virtualeventtownhallregistrationconfiguration-javascript-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [sample-code](../includes/snippets/php/get-virtualeventtownhallregistrationconfiguration-php-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [sample-code](../includes/snippets/python/get-virtualeventtownhallregistrationconfiguration-python-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + ### Response The following example shows the response. diff --git a/api-reference/v1.0/includes/snippets/csharp/create-customdataprovidedresourceuploadsession-from--csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/create-customdataprovidedresourceuploadsession-from--csharp-snippets.md new file mode 100644 index 00000000000..3d94cdc83b8 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/create-customdataprovidedresourceuploadsession-from--csharp-snippets.md @@ -0,0 +1,28 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// Dependencies +using Microsoft.Graph.Models; +using Microsoft.Graph.Models.CustomDataProvidedResourcePayloads; + +var requestBody = new CustomDataProvidedResourceAccessReviewUploadSession +{ + OdataType = "#microsoft.graph.customDataProvidedResourceAccessReviewUploadSession", + Data = new AccessReviewContextData + { + OdataType = "#microsoft.graph.customDataProvidedResourcePayloads.accessReviewContextData", + ReviewDefinitionId = "9e4b1c6f-2a3d-4f8e-9b7a-5c1e2d3f4a6b", + ReviewInstanceId = "15eeb4df-8a4d-4f8e-9b7a-6b3e1c7f5a9d", + }, +}; + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.IdentityGovernance.EntitlementManagement.Catalogs["{accessPackageCatalog-id}"].Resources["{accessPackageResource-id}"].UploadSessions.PostAsync(requestBody); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/delete-customdataprovidedresourceuploadsession-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/delete-customdataprovidedresourceuploadsession-csharp-snippets.md new file mode 100644 index 00000000000..f04f50d6aca --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/delete-customdataprovidedresourceuploadsession-csharp-snippets.md @@ -0,0 +1,13 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +await graphClient.IdentityGovernance.EntitlementManagement.Catalogs["{accessPackageCatalog-id}"].Resources["{accessPackageResource-id}"].UploadSessions["{customDataProvidedResourceUploadSession-id}"].DeleteAsync(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/delete-page-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/delete-page-csharp-snippets.md index 43bfc0f1180..679a321ddb8 100644 --- a/api-reference/v1.0/includes/snippets/csharp/delete-page-csharp-snippets.md +++ b/api-reference/v1.0/includes/snippets/csharp/delete-page-csharp-snippets.md @@ -7,7 +7,7 @@ description: "Automatically generated file. DO NOT MODIFY" // Code snippets are only available for the latest version. Current version is 5.x // To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp -await graphClient.Sites["{site-id}"].Pages["{baseSitePage-id}"].DeleteAsync(); +await graphClient.Me.Onenote.Pages["{onenotePage-id}"].DeleteAsync(); ``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/delete-targetedchatmessage-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/delete-targetedchatmessage-csharp-snippets.md new file mode 100644 index 00000000000..4d816e89766 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/delete-targetedchatmessage-csharp-snippets.md @@ -0,0 +1,13 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +await graphClient.Users["{user-id}"].Chats["{chat-id}"].TargetedMessages["{targetedChatMessage-id}"].DeleteAsync(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/get-customdataprovidedresourceuploadsession-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/get-customdataprovidedresourceuploadsession-csharp-snippets.md new file mode 100644 index 00000000000..c8e1b4b2779 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/get-customdataprovidedresourceuploadsession-csharp-snippets.md @@ -0,0 +1,13 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.IdentityGovernance.EntitlementManagement.Catalogs["{accessPackageCatalog-id}"].Resources["{accessPackageResource-id}"].UploadSessions["{customDataProvidedResourceUploadSession-id}"].GetAsync(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/get-remotetenantgroup-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/get-remotetenantgroup-csharp-snippets.md new file mode 100644 index 00000000000..91a36f8ed62 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/get-remotetenantgroup-csharp-snippets.md @@ -0,0 +1,13 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.Directory.RemoteTenantGroups["{remoteTenantGroup-id}"].GetAsync(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/get-sponsorof-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/get-sponsorof-csharp-snippets.md new file mode 100644 index 00000000000..b5df374d1e7 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/get-sponsorof-csharp-snippets.md @@ -0,0 +1,13 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.Users["{user-id}"].SponsorOf.GetAsync(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/get-sponsorof-filter-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/get-sponsorof-filter-csharp-snippets.md new file mode 100644 index 00000000000..8ae91924dd3 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/get-sponsorof-filter-csharp-snippets.md @@ -0,0 +1,17 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.Users["{user-id}"].SponsorOf.GetAsync((requestConfiguration) => +{ + requestConfiguration.QueryParameters.Filter = "microsoft.graph.user/userType eq 'Guest'"; + requestConfiguration.Headers.Add("ConsistencyLevel", "eventual"); +}); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/get-virtualeventtownhallregistrationconfiguration-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/get-virtualeventtownhallregistrationconfiguration-csharp-snippets.md new file mode 100644 index 00000000000..2d64f248971 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/get-virtualeventtownhallregistrationconfiguration-csharp-snippets.md @@ -0,0 +1,13 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.Solutions.VirtualEvents.Townhalls["{virtualEventTownhall-id}"].RegistrationConfiguration.GetAsync(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/list-customdataprovidedresourceuploadsession-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/list-customdataprovidedresourceuploadsession-csharp-snippets.md new file mode 100644 index 00000000000..4a791ab05b8 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/list-customdataprovidedresourceuploadsession-csharp-snippets.md @@ -0,0 +1,13 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.IdentityGovernance.EntitlementManagement.Catalogs["{accessPackageCatalog-id}"].Resources["{accessPackageResource-id}"].UploadSessions.GetAsync(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/list-remotetenantgroup-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/list-remotetenantgroup-csharp-snippets.md new file mode 100644 index 00000000000..454ac287c52 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/list-remotetenantgroup-csharp-snippets.md @@ -0,0 +1,13 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.Directory.RemoteTenantGroups.GetAsync(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-csharp-snippets.md new file mode 100644 index 00000000000..d39e782d493 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-csharp-snippets.md @@ -0,0 +1,13 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +await graphClient.Policies.CrossTenantAccessPolicy.Templates.MultiTenantOrganizationIdentitySynchronization.ResetToDefaultSettings.PostAsync(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-csharp-snippets.md new file mode 100644 index 00000000000..a08e1adbd59 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-csharp-snippets.md @@ -0,0 +1,13 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +await graphClient.Policies.CrossTenantAccessPolicy.Templates.MultiTenantOrganizationPartnerConfiguration.ResetToDefaultSettings.PostAsync(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/update-customdataprovidedresourceuploadsession-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/update-customdataprovidedresourceuploadsession-csharp-snippets.md new file mode 100644 index 00000000000..4c1bbdf57ae --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/update-customdataprovidedresourceuploadsession-csharp-snippets.md @@ -0,0 +1,21 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// Dependencies +using Microsoft.Graph.Models; + +var requestBody = new CustomDataProvidedResourceUploadSession +{ + IsUploadDone = true, +}; + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.IdentityGovernance.EntitlementManagement.Catalogs["{accessPackageCatalog-id}"].Resources["{accessPackageResource-id}"].UploadSessions["{customDataProvidedResourceUploadSession-id}"].PatchAsync(requestBody); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/userteamwork-deletetargetedmessage-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/userteamwork-deletetargetedmessage-csharp-snippets.md new file mode 100644 index 00000000000..5864445a9a1 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/userteamwork-deletetargetedmessage-csharp-snippets.md @@ -0,0 +1,23 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// Dependencies +using Microsoft.Graph.Users.Item.Teamwork.DeleteTargetedMessage; + +var requestBody = new DeleteTargetedMessagePostRequestBody +{ + TeamId = "9dda0ae1-e007-4a1d-81ec-2cf4b1274610", + ChannelId = "19:eeaa4e946d674c4f8d4dded613780f45@thread.v2", + MessageId = "1580849738240", +}; + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +await graphClient.Users["{user-id}"].Teamwork.DeleteTargetedMessage.PostAsync(requestBody); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/userteamwork-getallretainedtargetedmessages-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/userteamwork-getallretainedtargetedmessages-csharp-snippets.md new file mode 100644 index 00000000000..689969789d4 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/userteamwork-getallretainedtargetedmessages-csharp-snippets.md @@ -0,0 +1,13 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.Users["{user-id}"].Teamwork.GetAllRetainedTargetedMessages.GetAsGetAllRetainedTargetedMessagesGetResponseAsync(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/userteamwork-getalltargetedmessages-appfilter-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/userteamwork-getalltargetedmessages-appfilter-csharp-snippets.md new file mode 100644 index 00000000000..2569a076cf4 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/userteamwork-getalltargetedmessages-appfilter-csharp-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.Users["{user-id}"].Teamwork.GetAllTargetedMessages.GetAsGetAllTargetedMessagesGetResponseAsync((requestConfiguration) => +{ + requestConfiguration.QueryParameters.Filter = "from/application/id eq '6d23e712-527b-406f-8d59-d02927885918'"; +}); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/userteamwork-getalltargetedmessages-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/userteamwork-getalltargetedmessages-csharp-snippets.md new file mode 100644 index 00000000000..dbfa5d35f2f --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/userteamwork-getalltargetedmessages-csharp-snippets.md @@ -0,0 +1,13 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.Users["{user-id}"].Teamwork.GetAllTargetedMessages.GetAsGetAllTargetedMessagesGetResponseAsync(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/csharp/userteamwork-getalltargetedmessages-filter-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/userteamwork-getalltargetedmessages-filter-csharp-snippets.md new file mode 100644 index 00000000000..406e7ac26a8 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/csharp/userteamwork-getalltargetedmessages-filter-csharp-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```csharp + +// Code snippets are only available for the latest version. Current version is 5.x + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=csharp +var result = await graphClient.Users["{user-id}"].Teamwork.GetAllTargetedMessages.GetAsGetAllTargetedMessagesGetResponseAsync((requestConfiguration) => +{ + requestConfiguration.QueryParameters.Filter = "lastModifiedDateTime gt 2024-01-01T00:00:00Z and lastModifiedDateTime lt 2024-12-31T23:59:59Z"; +}); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/create-customdataprovidedresourceuploadsession-from--go-snippets.md b/api-reference/v1.0/includes/snippets/go/create-customdataprovidedresourceuploadsession-from--go-snippets.md new file mode 100644 index 00000000000..cf235463e76 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/create-customdataprovidedresourceuploadsession-from--go-snippets.md @@ -0,0 +1,31 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + graphmodels "github.com/microsoftgraph/msgraph-sdk-go/models" + graphmodelscustomdataprovidedresourcepayloads "github.com/microsoftgraph/msgraph-sdk-go/models/customdataprovidedresourcepayloads" + //other-imports +) + +requestBody := graphmodels.NewCustomDataProvidedResourceUploadSession() +data := graphmodelscustomdataprovidedresourcepayloads.NewAccessReviewContextData() +reviewDefinitionId := "9e4b1c6f-2a3d-4f8e-9b7a-5c1e2d3f4a6b" +data.SetReviewDefinitionId(&reviewDefinitionId) +reviewInstanceId := "15eeb4df-8a4d-4f8e-9b7a-6b3e1c7f5a9d" +data.SetReviewInstanceId(&reviewInstanceId) +requestBody.SetData(data) + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +uploadSessions, err := graphClient.IdentityGovernance().EntitlementManagement().Catalogs().ByAccessPackageCatalogId("accessPackageCatalog-id").Resources().ByAccessPackageResourceId("accessPackageResource-id").UploadSessions().Post(context.Background(), requestBody, nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/delete-customdataprovidedresourceuploadsession-go-snippets.md b/api-reference/v1.0/includes/snippets/go/delete-customdataprovidedresourceuploadsession-go-snippets.md new file mode 100644 index 00000000000..8475a4a2356 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/delete-customdataprovidedresourceuploadsession-go-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + //other-imports +) + + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +graphClient.IdentityGovernance().EntitlementManagement().Catalogs().ByAccessPackageCatalogId("accessPackageCatalog-id").Resources().ByAccessPackageResourceId("accessPackageResource-id").UploadSessions().ByCustomDataProvidedResourceUploadSessionId("customDataProvidedResourceUploadSession-id").Delete(context.Background(), nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/delete-page-go-snippets.md b/api-reference/v1.0/includes/snippets/go/delete-page-go-snippets.md index 755f0f8481f..e8f9fc3017f 100644 --- a/api-reference/v1.0/includes/snippets/go/delete-page-go-snippets.md +++ b/api-reference/v1.0/includes/snippets/go/delete-page-go-snippets.md @@ -16,7 +16,7 @@ import ( // To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go -graphClient.Sites().BySiteId("site-id").Pages().ByBaseSitePageId("baseSitePage-id").Delete(context.Background(), nil) +graphClient.Me().Onenote().Pages().ByOnenotePageId("onenotePage-id").Delete(context.Background(), nil) ``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/delete-targetedchatmessage-go-snippets.md b/api-reference/v1.0/includes/snippets/go/delete-targetedchatmessage-go-snippets.md new file mode 100644 index 00000000000..c4e8b3061ce --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/delete-targetedchatmessage-go-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + //other-imports +) + + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +graphClient.Users().ByUserId("user-id").Chats().ByChatId("chat-id").TargetedMessages().ByTargetedChatMessageId("targetedChatMessage-id").Delete(context.Background(), nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/get-customdataprovidedresourceuploadsession-go-snippets.md b/api-reference/v1.0/includes/snippets/go/get-customdataprovidedresourceuploadsession-go-snippets.md new file mode 100644 index 00000000000..c453449fe9e --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/get-customdataprovidedresourceuploadsession-go-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + //other-imports +) + + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +uploadSessions, err := graphClient.IdentityGovernance().EntitlementManagement().Catalogs().ByAccessPackageCatalogId("accessPackageCatalog-id").Resources().ByAccessPackageResourceId("accessPackageResource-id").UploadSessions().ByCustomDataProvidedResourceUploadSessionId("customDataProvidedResourceUploadSession-id").Get(context.Background(), nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/get-remotetenantgroup-go-snippets.md b/api-reference/v1.0/includes/snippets/go/get-remotetenantgroup-go-snippets.md new file mode 100644 index 00000000000..39530fbb6f0 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/get-remotetenantgroup-go-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + //other-imports +) + + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +remoteTenantGroups, err := graphClient.Directory().RemoteTenantGroups().ByRemoteTenantGroupId("remoteTenantGroup-id").Get(context.Background(), nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/get-sponsorof-filter-go-snippets.md b/api-reference/v1.0/includes/snippets/go/get-sponsorof-filter-go-snippets.md new file mode 100644 index 00000000000..ffa317368ed --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/get-sponsorof-filter-go-snippets.md @@ -0,0 +1,37 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + abstractions "github.com/microsoft/kiota-abstractions-go" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + graphusers "github.com/microsoftgraph/msgraph-sdk-go/users" + //other-imports +) + +headers := abstractions.NewRequestHeaders() +headers.Add("ConsistencyLevel", "eventual") + + +requestFilter := "microsoft.graph.user/userType eq 'Guest'" + +requestParameters := &graphusers.ItemSponsorOfRequestBuilderGetQueryParameters{ + Filter: &requestFilter, +} +configuration := &graphusers.ItemSponsorOfRequestBuilderGetRequestConfiguration{ + Headers: headers, + QueryParameters: requestParameters, +} + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +sponsorOf, err := graphClient.Users().ByUserId("user-id").SponsorOf().Get(context.Background(), configuration) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/get-sponsorof-go-snippets.md b/api-reference/v1.0/includes/snippets/go/get-sponsorof-go-snippets.md new file mode 100644 index 00000000000..57bbf1cdd94 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/get-sponsorof-go-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + //other-imports +) + + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +sponsorOf, err := graphClient.Users().ByUserId("user-id").SponsorOf().Get(context.Background(), nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/get-virtualeventtownhallregistrationconfiguration-go-snippets.md b/api-reference/v1.0/includes/snippets/go/get-virtualeventtownhallregistrationconfiguration-go-snippets.md new file mode 100644 index 00000000000..3229b566d60 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/get-virtualeventtownhallregistrationconfiguration-go-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + //other-imports +) + + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +registrationConfiguration, err := graphClient.Solutions().VirtualEvents().Townhalls().ByVirtualEventTownhallId("virtualEventTownhall-id").RegistrationConfiguration().Get(context.Background(), nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/list-customdataprovidedresourceuploadsession-go-snippets.md b/api-reference/v1.0/includes/snippets/go/list-customdataprovidedresourceuploadsession-go-snippets.md new file mode 100644 index 00000000000..2c1ef2f7aa3 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/list-customdataprovidedresourceuploadsession-go-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + //other-imports +) + + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +uploadSessions, err := graphClient.IdentityGovernance().EntitlementManagement().Catalogs().ByAccessPackageCatalogId("accessPackageCatalog-id").Resources().ByAccessPackageResourceId("accessPackageResource-id").UploadSessions().Get(context.Background(), nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/list-remotetenantgroup-go-snippets.md b/api-reference/v1.0/includes/snippets/go/list-remotetenantgroup-go-snippets.md new file mode 100644 index 00000000000..4e1d271fa1a --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/list-remotetenantgroup-go-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + //other-imports +) + + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +remoteTenantGroups, err := graphClient.Directory().RemoteTenantGroups().Get(context.Background(), nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-go-snippets.md b/api-reference/v1.0/includes/snippets/go/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-go-snippets.md new file mode 100644 index 00000000000..6d2f3d5cbb1 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-go-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + //other-imports +) + + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +graphClient.Policies().CrossTenantAccessPolicy().Templates().MultiTenantOrganizationIdentitySynchronization().ResetToDefaultSettings().Post(context.Background(), nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-go-snippets.md b/api-reference/v1.0/includes/snippets/go/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-go-snippets.md new file mode 100644 index 00000000000..508d382b19b --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-go-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + //other-imports +) + + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +graphClient.Policies().CrossTenantAccessPolicy().Templates().MultiTenantOrganizationPartnerConfiguration().ResetToDefaultSettings().Post(context.Background(), nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/update-customdataprovidedresourceuploadsession-go-snippets.md b/api-reference/v1.0/includes/snippets/go/update-customdataprovidedresourceuploadsession-go-snippets.md new file mode 100644 index 00000000000..96d68ea8850 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/update-customdataprovidedresourceuploadsession-go-snippets.md @@ -0,0 +1,26 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + graphmodels "github.com/microsoftgraph/msgraph-sdk-go/models" + //other-imports +) + +requestBody := graphmodels.NewCustomDataProvidedResourceUploadSession() +isUploadDone := true +requestBody.SetIsUploadDone(&isUploadDone) + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +uploadSessions, err := graphClient.IdentityGovernance().EntitlementManagement().Catalogs().ByAccessPackageCatalogId("accessPackageCatalog-id").Resources().ByAccessPackageResourceId("accessPackageResource-id").UploadSessions().ByCustomDataProvidedResourceUploadSessionId("customDataProvidedResourceUploadSession-id").Patch(context.Background(), requestBody, nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/userteamwork-deletetargetedmessage-go-snippets.md b/api-reference/v1.0/includes/snippets/go/userteamwork-deletetargetedmessage-go-snippets.md new file mode 100644 index 00000000000..8fe856d5730 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/userteamwork-deletetargetedmessage-go-snippets.md @@ -0,0 +1,30 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + graphusers "github.com/microsoftgraph/msgraph-sdk-go/users" + //other-imports +) + +requestBody := graphusers.NewDeleteTargetedMessagePostRequestBody() +teamId := "9dda0ae1-e007-4a1d-81ec-2cf4b1274610" +requestBody.SetTeamId(&teamId) +channelId := "19:eeaa4e946d674c4f8d4dded613780f45@thread.v2" +requestBody.SetChannelId(&channelId) +messageId := "1580849738240" +requestBody.SetMessageId(&messageId) + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +graphClient.Users().ByUserId("user-id").Teamwork().DeleteTargetedMessage().Post(context.Background(), requestBody, nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/userteamwork-getallretainedtargetedmessages-go-snippets.md b/api-reference/v1.0/includes/snippets/go/userteamwork-getallretainedtargetedmessages-go-snippets.md new file mode 100644 index 00000000000..d308519b73c --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/userteamwork-getallretainedtargetedmessages-go-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + //other-imports +) + + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +getAllRetainedTargetedMessages, err := graphClient.Users().ByUserId("user-id").Teamwork().GetAllRetainedTargetedMessages().GetAsGetAllRetainedTargetedMessagesGetResponse(context.Background(), nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/userteamwork-getalltargetedmessages-appfilter-go-snippets.md b/api-reference/v1.0/includes/snippets/go/userteamwork-getalltargetedmessages-appfilter-go-snippets.md new file mode 100644 index 00000000000..8ee75cf817d --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/userteamwork-getalltargetedmessages-appfilter-go-snippets.md @@ -0,0 +1,32 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + graphusers "github.com/microsoftgraph/msgraph-sdk-go/users" + //other-imports +) + + +requestFilter := "from/application/id eq '6d23e712-527b-406f-8d59-d02927885918'" + +requestParameters := &graphusers.ItemTeamworkGetAllTargetedMessagesRequestBuilderGetQueryParameters{ + Filter: &requestFilter, +} +configuration := &graphusers.ItemTeamworkGetAllTargetedMessagesRequestBuilderGetRequestConfiguration{ + QueryParameters: requestParameters, +} + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +getAllTargetedMessages, err := graphClient.Users().ByUserId("user-id").Teamwork().GetAllTargetedMessages().GetAsGetAllTargetedMessagesGetResponse(context.Background(), configuration) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/userteamwork-getalltargetedmessages-filter-go-snippets.md b/api-reference/v1.0/includes/snippets/go/userteamwork-getalltargetedmessages-filter-go-snippets.md new file mode 100644 index 00000000000..e0d90937c02 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/userteamwork-getalltargetedmessages-filter-go-snippets.md @@ -0,0 +1,32 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + graphusers "github.com/microsoftgraph/msgraph-sdk-go/users" + //other-imports +) + + +requestFilter := "lastModifiedDateTime gt 2024-01-01T00:00:00Z and lastModifiedDateTime lt 2024-12-31T23:59:59Z" + +requestParameters := &graphusers.ItemTeamworkGetAllTargetedMessagesRequestBuilderGetQueryParameters{ + Filter: &requestFilter, +} +configuration := &graphusers.ItemTeamworkGetAllTargetedMessagesRequestBuilderGetRequestConfiguration{ + QueryParameters: requestParameters, +} + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +getAllTargetedMessages, err := graphClient.Users().ByUserId("user-id").Teamwork().GetAllTargetedMessages().GetAsGetAllTargetedMessagesGetResponse(context.Background(), configuration) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/go/userteamwork-getalltargetedmessages-go-snippets.md b/api-reference/v1.0/includes/snippets/go/userteamwork-getalltargetedmessages-go-snippets.md new file mode 100644 index 00000000000..d5654d46451 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/go/userteamwork-getalltargetedmessages-go-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```go + + +// Code snippets are only available for the latest major version. Current major version is $v1.* + +// Dependencies +import ( + "context" + msgraphsdk "github.com/microsoftgraph/msgraph-sdk-go" + //other-imports +) + + +// To initialize your graphClient, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=go +getAllTargetedMessages, err := graphClient.Users().ByUserId("user-id").Teamwork().GetAllTargetedMessages().GetAsGetAllTargetedMessagesGetResponse(context.Background(), nil) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/create-customdataprovidedresourceuploadsession-from--java-snippets.md b/api-reference/v1.0/includes/snippets/java/create-customdataprovidedresourceuploadsession-from--java-snippets.md new file mode 100644 index 00000000000..f6d233ca442 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/create-customdataprovidedresourceuploadsession-from--java-snippets.md @@ -0,0 +1,21 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +CustomDataProvidedResourceAccessReviewUploadSession customDataProvidedResourceUploadSession = new CustomDataProvidedResourceAccessReviewUploadSession(); +customDataProvidedResourceUploadSession.setOdataType("#microsoft.graph.customDataProvidedResourceAccessReviewUploadSession"); +com.microsoft.graph.models.customdataprovidedresourcepayloads.AccessReviewContextData data = new com.microsoft.graph.models.customdataprovidedresourcepayloads.AccessReviewContextData(); +data.setOdataType("#microsoft.graph.customDataProvidedResourcePayloads.accessReviewContextData"); +data.setReviewDefinitionId("9e4b1c6f-2a3d-4f8e-9b7a-5c1e2d3f4a6b"); +data.setReviewInstanceId("15eeb4df-8a4d-4f8e-9b7a-6b3e1c7f5a9d"); +customDataProvidedResourceUploadSession.setData(data); +CustomDataProvidedResourceUploadSession result = graphClient.identityGovernance().entitlementManagement().catalogs().byAccessPackageCatalogId("{accessPackageCatalog-id}").resources().byAccessPackageResourceId("{accessPackageResource-id}").uploadSessions().post(customDataProvidedResourceUploadSession); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/delete-customdataprovidedresourceuploadsession-java-snippets.md b/api-reference/v1.0/includes/snippets/java/delete-customdataprovidedresourceuploadsession-java-snippets.md new file mode 100644 index 00000000000..cd1a1c59230 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/delete-customdataprovidedresourceuploadsession-java-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +graphClient.identityGovernance().entitlementManagement().catalogs().byAccessPackageCatalogId("{accessPackageCatalog-id}").resources().byAccessPackageResourceId("{accessPackageResource-id}").uploadSessions().byCustomDataProvidedResourceUploadSessionId("{customDataProvidedResourceUploadSession-id}").delete(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/delete-page-java-snippets.md b/api-reference/v1.0/includes/snippets/java/delete-page-java-snippets.md index a99fef59f27..76ce420f490 100644 --- a/api-reference/v1.0/includes/snippets/java/delete-page-java-snippets.md +++ b/api-reference/v1.0/includes/snippets/java/delete-page-java-snippets.md @@ -8,7 +8,7 @@ description: "Automatically generated file. DO NOT MODIFY" GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); -graphClient.sites().bySiteId("{site-id}").pages().byBaseSitePageId("{baseSitePage-id}").delete(); +graphClient.me().onenote().pages().byOnenotePageId("{onenotePage-id}").delete(); ``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/delete-targetedchatmessage-java-snippets.md b/api-reference/v1.0/includes/snippets/java/delete-targetedchatmessage-java-snippets.md new file mode 100644 index 00000000000..c1602b0c712 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/delete-targetedchatmessage-java-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +graphClient.users().byUserId("{user-id}").chats().byChatId("{chat-id}").targetedMessages().byTargetedChatMessageId("{targetedChatMessage-id}").delete(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/get-customdataprovidedresourceuploadsession-java-snippets.md b/api-reference/v1.0/includes/snippets/java/get-customdataprovidedresourceuploadsession-java-snippets.md new file mode 100644 index 00000000000..dcf41c0c18d --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/get-customdataprovidedresourceuploadsession-java-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +CustomDataProvidedResourceUploadSession result = graphClient.identityGovernance().entitlementManagement().catalogs().byAccessPackageCatalogId("{accessPackageCatalog-id}").resources().byAccessPackageResourceId("{accessPackageResource-id}").uploadSessions().byCustomDataProvidedResourceUploadSessionId("{customDataProvidedResourceUploadSession-id}").get(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/get-remotetenantgroup-java-snippets.md b/api-reference/v1.0/includes/snippets/java/get-remotetenantgroup-java-snippets.md new file mode 100644 index 00000000000..48bd4a628aa --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/get-remotetenantgroup-java-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +RemoteTenantGroup result = graphClient.directory().remoteTenantGroups().byRemoteTenantGroupId("{remoteTenantGroup-id}").get(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/get-sponsorof-filter-java-snippets.md b/api-reference/v1.0/includes/snippets/java/get-sponsorof-filter-java-snippets.md new file mode 100644 index 00000000000..a41f5e288e4 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/get-sponsorof-filter-java-snippets.md @@ -0,0 +1,17 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +DirectoryObjectCollectionResponse result = graphClient.users().byUserId("{user-id}").sponsorOf().get(requestConfiguration -> { + requestConfiguration.queryParameters.filter = "microsoft.graph.user/userType eq 'Guest'"; + requestConfiguration.headers.add("ConsistencyLevel", "eventual"); +}); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/get-sponsorof-java-snippets.md b/api-reference/v1.0/includes/snippets/java/get-sponsorof-java-snippets.md new file mode 100644 index 00000000000..aa0b9880197 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/get-sponsorof-java-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +DirectoryObjectCollectionResponse result = graphClient.users().byUserId("{user-id}").sponsorOf().get(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/get-virtualeventtownhallregistrationconfiguration-java-snippets.md b/api-reference/v1.0/includes/snippets/java/get-virtualeventtownhallregistrationconfiguration-java-snippets.md new file mode 100644 index 00000000000..a32b534ebfd --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/get-virtualeventtownhallregistrationconfiguration-java-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +VirtualEventTownhallRegistrationConfiguration result = graphClient.solutions().virtualEvents().townhalls().byVirtualEventTownhallId("{virtualEventTownhall-id}").registrationConfiguration().get(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/list-customdataprovidedresourceuploadsession-java-snippets.md b/api-reference/v1.0/includes/snippets/java/list-customdataprovidedresourceuploadsession-java-snippets.md new file mode 100644 index 00000000000..4bf0332b366 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/list-customdataprovidedresourceuploadsession-java-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +CustomDataProvidedResourceUploadSessionCollectionResponse result = graphClient.identityGovernance().entitlementManagement().catalogs().byAccessPackageCatalogId("{accessPackageCatalog-id}").resources().byAccessPackageResourceId("{accessPackageResource-id}").uploadSessions().get(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/list-remotetenantgroup-java-snippets.md b/api-reference/v1.0/includes/snippets/java/list-remotetenantgroup-java-snippets.md new file mode 100644 index 00000000000..8daaaa5e7ad --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/list-remotetenantgroup-java-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +RemoteTenantGroupCollectionResponse result = graphClient.directory().remoteTenantGroups().get(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-java-snippets.md b/api-reference/v1.0/includes/snippets/java/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-java-snippets.md new file mode 100644 index 00000000000..dd56d4e06a7 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-java-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +graphClient.policies().crossTenantAccessPolicy().templates().multiTenantOrganizationIdentitySynchronization().resetToDefaultSettings().post(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-java-snippets.md b/api-reference/v1.0/includes/snippets/java/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-java-snippets.md new file mode 100644 index 00000000000..ea730bc0be8 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-java-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +graphClient.policies().crossTenantAccessPolicy().templates().multiTenantOrganizationPartnerConfiguration().resetToDefaultSettings().post(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/update-customdataprovidedresourceuploadsession-java-snippets.md b/api-reference/v1.0/includes/snippets/java/update-customdataprovidedresourceuploadsession-java-snippets.md new file mode 100644 index 00000000000..d7403fa8b30 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/update-customdataprovidedresourceuploadsession-java-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +CustomDataProvidedResourceUploadSession customDataProvidedResourceUploadSession = new CustomDataProvidedResourceUploadSession(); +customDataProvidedResourceUploadSession.setIsUploadDone(true); +CustomDataProvidedResourceUploadSession result = graphClient.identityGovernance().entitlementManagement().catalogs().byAccessPackageCatalogId("{accessPackageCatalog-id}").resources().byAccessPackageResourceId("{accessPackageResource-id}").uploadSessions().byCustomDataProvidedResourceUploadSessionId("{customDataProvidedResourceUploadSession-id}").patch(customDataProvidedResourceUploadSession); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/userteamwork-deletetargetedmessage-java-snippets.md b/api-reference/v1.0/includes/snippets/java/userteamwork-deletetargetedmessage-java-snippets.md new file mode 100644 index 00000000000..ad473fbf575 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/userteamwork-deletetargetedmessage-java-snippets.md @@ -0,0 +1,18 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +com.microsoft.graph.users.item.teamwork.deletetargetedmessage.DeleteTargetedMessagePostRequestBody deleteTargetedMessagePostRequestBody = new com.microsoft.graph.users.item.teamwork.deletetargetedmessage.DeleteTargetedMessagePostRequestBody(); +deleteTargetedMessagePostRequestBody.setTeamId("9dda0ae1-e007-4a1d-81ec-2cf4b1274610"); +deleteTargetedMessagePostRequestBody.setChannelId("19:eeaa4e946d674c4f8d4dded613780f45@thread.v2"); +deleteTargetedMessagePostRequestBody.setMessageId("1580849738240"); +graphClient.users().byUserId("{user-id}").teamwork().deleteTargetedMessage().post(deleteTargetedMessagePostRequestBody); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/userteamwork-getallretainedtargetedmessages-java-snippets.md b/api-reference/v1.0/includes/snippets/java/userteamwork-getallretainedtargetedmessages-java-snippets.md new file mode 100644 index 00000000000..4477cdf3aeb --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/userteamwork-getallretainedtargetedmessages-java-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +var result = graphClient.users().byUserId("{user-id}").teamwork().getAllRetainedTargetedMessages().get(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/userteamwork-getalltargetedmessages-appfilter-java-snippets.md b/api-reference/v1.0/includes/snippets/java/userteamwork-getalltargetedmessages-appfilter-java-snippets.md new file mode 100644 index 00000000000..7c7a02a926a --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/userteamwork-getalltargetedmessages-appfilter-java-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +var result = graphClient.users().byUserId("{user-id}").teamwork().getAllTargetedMessages().get(requestConfiguration -> { + requestConfiguration.queryParameters.filter = "from/application/id eq '6d23e712-527b-406f-8d59-d02927885918'"; +}); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/userteamwork-getalltargetedmessages-filter-java-snippets.md b/api-reference/v1.0/includes/snippets/java/userteamwork-getalltargetedmessages-filter-java-snippets.md new file mode 100644 index 00000000000..2b6ff33eef0 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/userteamwork-getalltargetedmessages-filter-java-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +var result = graphClient.users().byUserId("{user-id}").teamwork().getAllTargetedMessages().get(requestConfiguration -> { + requestConfiguration.queryParameters.filter = "lastModifiedDateTime gt 2024-01-01T00:00:00Z and lastModifiedDateTime lt 2024-12-31T23:59:59Z"; +}); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/java/userteamwork-getalltargetedmessages-java-snippets.md b/api-reference/v1.0/includes/snippets/java/userteamwork-getalltargetedmessages-java-snippets.md new file mode 100644 index 00000000000..703f872d3b3 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/java/userteamwork-getalltargetedmessages-java-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```java + +// Code snippets are only available for the latest version. Current version is 6.x + +GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); + +var result = graphClient.users().byUserId("{user-id}").teamwork().getAllTargetedMessages().get(); + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/create-customdataprovidedresourceuploadsession-from--javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/create-customdataprovidedresourceuploadsession-from--javascript-snippets.md new file mode 100644 index 00000000000..f91ecc7943b --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/create-customdataprovidedresourceuploadsession-from--javascript-snippets.md @@ -0,0 +1,25 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +const customDataProvidedResourceUploadSession = { + '@odata.type': '#microsoft.graph.customDataProvidedResourceAccessReviewUploadSession', + data: { + '@odata.type': '#microsoft.graph.customDataProvidedResourcePayloads.accessReviewContextData', + reviewDefinitionId: '9e4b1c6f-2a3d-4f8e-9b7a-5c1e2d3f4a6b', + reviewInstanceId: '15eeb4df-8a4d-4f8e-9b7a-6b3e1c7f5a9d' + } +}; + +await client.api('/identityGovernance/entitlementManagement/catalogs/{accessPackageCatalogId}/resources/{accessPackageResourceId}/uploadSessions') + .post(customDataProvidedResourceUploadSession); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/customdataprovidedresourceuploadsessionthisuploadfile-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/customdataprovidedresourceuploadsessionthisuploadfile-javascript-snippets.md new file mode 100644 index 00000000000..662633368ae --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/customdataprovidedresourceuploadsessionthisuploadfile-javascript-snippets.md @@ -0,0 +1,25 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +const customDataProvidedResourceUploadSession = --MyPartBoundary198374 +Content-Disposition: form-data; name='file'; filename='building-access-data.csv' +Content-Type: application/octet-stream + +principalId,principalType,permissionId,permissionName,permissionDescription,permissionType +550e8400-e29b-41d4-a716-446655440000,user,6ba7b810-9dad-11d1-80b4-00c04fd430c8,Access,Physical access to building,Physical +7c9e6679-7425-40de-944b-e07fc1f90ae7,user,6ba7b810-9dad-11d1-80b4-00c04fd430c9,Reserve,Book conference room,Administrative +--MyPartBoundary198374--; + +await client.api('/identityGovernance/entitlementManagement/catalogs/{accessPackageCatalogId}/resources/{accessPackageResourceId}/uploadSessions/{customDataProvidedResourceUploadSessionId}/uploadFile') + .post(customDataProvidedResourceUploadSession); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/delete-customdataprovidedresourceuploadsession-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/delete-customdataprovidedresourceuploadsession-javascript-snippets.md new file mode 100644 index 00000000000..497ca040ad1 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/delete-customdataprovidedresourceuploadsession-javascript-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +await client.api('/identityGovernance/entitlementManagement/catalogs/{accessPackageCatalogId}/resources/{accessPackageResourceId}/uploadSessions/{customDataProvidedResourceUploadSessionId}') + .delete(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/delete-page-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/delete-page-javascript-snippets.md index a218d38f229..eee966e41ff 100644 --- a/api-reference/v1.0/includes/snippets/javascript/delete-page-javascript-snippets.md +++ b/api-reference/v1.0/includes/snippets/javascript/delete-page-javascript-snippets.md @@ -10,7 +10,7 @@ const options = { const client = Client.init(options); -await client.api('/sites/7f50f45e-714a-4264-9c59-3bf43ea4db8f/pages/df69e386-6c58-4df2-afc0-ab6327d5b202') +await client.api('/me/onenote/pages/{id}') .delete(); ``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/delete-targetedchatmessage-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/delete-targetedchatmessage-javascript-snippets.md new file mode 100644 index 00000000000..d7a5df0dc6a --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/delete-targetedchatmessage-javascript-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +await client.api('/users/f47b5f54-6968-4706-a522-31e842b12345/chats/19:eeaa4e946d674c4f8d4dded613780f45@thread.v2/targetedMessages/1580849738240') + .delete(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/get-customdataprovidedresourceuploadsession-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/get-customdataprovidedresourceuploadsession-javascript-snippets.md new file mode 100644 index 00000000000..712f34caf54 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/get-customdataprovidedresourceuploadsession-javascript-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +let customDataProvidedResourceUploadSession = await client.api('/identityGovernance/entitlementManagement/catalogs/{accessPackageCatalogId}/resources/{accessPackageResourceId}/uploadSessions/{customDataProvidedResourceUploadSessionId}') + .get(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/get-remotetenantgroup-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/get-remotetenantgroup-javascript-snippets.md new file mode 100644 index 00000000000..0b3ec1c56a4 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/get-remotetenantgroup-javascript-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +let remoteTenantGroup = await client.api('/directory/remoteTenantGroups/{remoteTenantGroupId}') + .get(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/get-virtualeventtownhallregistrationconfiguration-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/get-virtualeventtownhallregistrationconfiguration-javascript-snippets.md new file mode 100644 index 00000000000..432c6a2c2fb --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/get-virtualeventtownhallregistrationconfiguration-javascript-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +let virtualEventTownhallRegistrationConfiguration = await client.api('/solutions/virtualEvents/townhalls/88b245ac-b0b2-f1aa-e34a-c81c27abdac2@f9448ec4-804b-46af-b810-62085248da33/registrationConfiguration') + .get(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/list-customdataprovidedresourceuploadsession-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/list-customdataprovidedresourceuploadsession-javascript-snippets.md new file mode 100644 index 00000000000..e84e9c7f94b --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/list-customdataprovidedresourceuploadsession-javascript-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +let uploadSessions = await client.api('/identityGovernance/entitlementManagement/catalogs/{accessPackageCatalogId}/resources/{accessPackageResourceId}/uploadSessions') + .get(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/list-remotetenantgroup-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/list-remotetenantgroup-javascript-snippets.md new file mode 100644 index 00000000000..6627d651c12 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/list-remotetenantgroup-javascript-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +let remoteTenantGroups = await client.api('/directory/remoteTenantGroups') + .get(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-javascript-snippets.md new file mode 100644 index 00000000000..2d67f9a641d --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-javascript-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +await client.api('/policies/crossTenantAccessPolicy/templates/multiTenantOrganizationIdentitySynchronization/resetToDefaultSettings') + .post(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-javascript-snippets.md new file mode 100644 index 00000000000..2b87306ebc8 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-javascript-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +await client.api('/policies/crossTenantAccessPolicy/templates/multiTenantOrganizationPartnerConfiguration/resetToDefaultSettings') + .post(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/patch-columns-v1-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/patch-columns-v1-javascript-snippets.md new file mode 100644 index 00000000000..a490fddf9a9 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/patch-columns-v1-javascript-snippets.md @@ -0,0 +1,38 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +const columns = { + '@context': '#$delta', + value: [ + { + id: 'aec21c58-7f1f-4875-b438-d47ef622306c', + isSearchable: false + }, + { + id: 'aec21c58-7f1f-4875-b438-d47df622306c', + isSearchable: false + }, + { + name: 'booleanColumn1234', + boolean: {} + }, + { + name: 'booleanColumn33', + boolean: {} + } + ] +}; + +await client.api('/storage/fileStorage/containers/b!ISJs1WRro0y0EWgkUYcktDa0mE8zSlFEqFzqRn70Zwp1CEtDEBZgQICPkRbil_5Z/columns') + .update(columns); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/update-customdataprovidedresourceuploadsession-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/update-customdataprovidedresourceuploadsession-javascript-snippets.md new file mode 100644 index 00000000000..ba18d602b38 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/update-customdataprovidedresourceuploadsession-javascript-snippets.md @@ -0,0 +1,20 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +const customDataProvidedResourceUploadSession = { + isUploadDone: true +}; + +await client.api('/identityGovernance/entitlementManagement/catalogs/{accessPackageCatalogId}/resources/{accessPackageResourceId}/uploadSessions/{customDataProvidedResourceUploadSessionId}') + .update(customDataProvidedResourceUploadSession); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/userteamwork-deletetargetedmessage-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/userteamwork-deletetargetedmessage-javascript-snippets.md new file mode 100644 index 00000000000..0fb02f7860a --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/userteamwork-deletetargetedmessage-javascript-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +const deleteTargetedMessage = { + teamId: '9dda0ae1-e007-4a1d-81ec-2cf4b1274610', + channelId: '19:eeaa4e946d674c4f8d4dded613780f45@thread.v2', + messageId: '1580849738240' +}; + +await client.api('/users/f47b5f54-6968-4706-a522-31e842b12345/teamwork/deleteTargetedMessage') + .post(deleteTargetedMessage); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/userteamwork-getallretainedtargetedmessages-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/userteamwork-getallretainedtargetedmessages-javascript-snippets.md new file mode 100644 index 00000000000..ac0be5e7e5e --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/userteamwork-getallretainedtargetedmessages-javascript-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +let getAllRetainedTargetedMessages = await client.api('/users/f47b5f54-6968-4706-a522-31e842b12345/teamwork/getAllRetainedTargetedMessages') + .get(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/userteamwork-getalltargetedmessages-appfilter-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/userteamwork-getalltargetedmessages-appfilter-javascript-snippets.md new file mode 100644 index 00000000000..e64a9bd0aac --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/userteamwork-getalltargetedmessages-appfilter-javascript-snippets.md @@ -0,0 +1,17 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +let getAllTargetedMessages = await client.api('/users/f47b5f54-6968-4706-a522-31e842b12345/teamwork/getAllTargetedMessages') + .filter('from/application/id eq \'6d23e712-527b-406f-8d59-d02927885918\'') + .get(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/userteamwork-getalltargetedmessages-filter-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/userteamwork-getalltargetedmessages-filter-javascript-snippets.md new file mode 100644 index 00000000000..d2f5553ff16 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/userteamwork-getalltargetedmessages-filter-javascript-snippets.md @@ -0,0 +1,17 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +let getAllTargetedMessages = await client.api('/users/f47b5f54-6968-4706-a522-31e842b12345/teamwork/getAllTargetedMessages') + .filter('lastModifiedDateTime gt 2024-01-01T00:00:00Z and lastModifiedDateTime lt 2024-12-31T23:59:59Z') + .get(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/javascript/userteamwork-getalltargetedmessages-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/userteamwork-getalltargetedmessages-javascript-snippets.md new file mode 100644 index 00000000000..daf2267de39 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/userteamwork-getalltargetedmessages-javascript-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +let getAllTargetedMessages = await client.api('/users/f47b5f54-6968-4706-a522-31e842b12345/teamwork/getAllTargetedMessages') + .get(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/create-customdataprovidedresourceuploadsession-from--php-snippets.md b/api-reference/v1.0/includes/snippets/php/create-customdataprovidedresourceuploadsession-from--php-snippets.md new file mode 100644 index 00000000000..1e4bf68ac53 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/create-customdataprovidedresourceuploadsession-from--php-snippets.md @@ -0,0 +1,25 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +setOdataType('#microsoft.graph.customDataProvidedResourceAccessReviewUploadSession'); +$data = new AccessReviewContextData(); +$data->setOdataType('#microsoft.graph.customDataProvidedResourcePayloads.accessReviewContextData'); +$data->setReviewDefinitionId('9e4b1c6f-2a3d-4f8e-9b7a-5c1e2d3f4a6b'); +$data->setReviewInstanceId('15eeb4df-8a4d-4f8e-9b7a-6b3e1c7f5a9d'); +$requestBody->setData($data); + +$result = $graphServiceClient->identityGovernance()->entitlementManagement()->catalogs()->byAccessPackageCatalogId('accessPackageCatalog-id')->resources()->byAccessPackageResourceId('accessPackageResource-id')->uploadSessions()->post($requestBody)->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/delete-customdataprovidedresourceuploadsession-php-snippets.md b/api-reference/v1.0/includes/snippets/php/delete-customdataprovidedresourceuploadsession-php-snippets.md new file mode 100644 index 00000000000..f22cbf96dc7 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/delete-customdataprovidedresourceuploadsession-php-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +identityGovernance()->entitlementManagement()->catalogs()->byAccessPackageCatalogId('accessPackageCatalog-id')->resources()->byAccessPackageResourceId('accessPackageResource-id')->uploadSessions()->byCustomDataProvidedResourceUploadSessionId('customDataProvidedResourceUploadSession-id')->delete()->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/delete-page-php-snippets.md b/api-reference/v1.0/includes/snippets/php/delete-page-php-snippets.md index 39d26821d03..837e923b414 100644 --- a/api-reference/v1.0/includes/snippets/php/delete-page-php-snippets.md +++ b/api-reference/v1.0/includes/snippets/php/delete-page-php-snippets.md @@ -11,6 +11,6 @@ use Microsoft\Graph\GraphServiceClient; $graphServiceClient = new GraphServiceClient($tokenRequestContext, $scopes); -$graphServiceClient->sites()->bySiteId('site-id')->pages()->byBaseSitePageId('baseSitePage-id')->delete()->wait(); +$graphServiceClient->me()->onenote()->pages()->byOnenotePageId('onenotePage-id')->delete()->wait(); ``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/delete-targetedchatmessage-php-snippets.md b/api-reference/v1.0/includes/snippets/php/delete-targetedchatmessage-php-snippets.md new file mode 100644 index 00000000000..ca40b3173c2 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/delete-targetedchatmessage-php-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +users()->byUserId('user-id')->chats()->byChatId('chat-id')->targetedMessages()->byTargetedChatMessageId('targetedChatMessage-id')->delete()->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/get-customdataprovidedresourceuploadsession-php-snippets.md b/api-reference/v1.0/includes/snippets/php/get-customdataprovidedresourceuploadsession-php-snippets.md new file mode 100644 index 00000000000..127e77f2999 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/get-customdataprovidedresourceuploadsession-php-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +identityGovernance()->entitlementManagement()->catalogs()->byAccessPackageCatalogId('accessPackageCatalog-id')->resources()->byAccessPackageResourceId('accessPackageResource-id')->uploadSessions()->byCustomDataProvidedResourceUploadSessionId('customDataProvidedResourceUploadSession-id')->get()->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/get-remotetenantgroup-php-snippets.md b/api-reference/v1.0/includes/snippets/php/get-remotetenantgroup-php-snippets.md new file mode 100644 index 00000000000..fbaacedf465 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/get-remotetenantgroup-php-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +directory()->remoteTenantGroups()->byRemoteTenantGroupId('remoteTenantGroup-id')->get()->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/get-sponsorof-filter-php-snippets.md b/api-reference/v1.0/includes/snippets/php/get-sponsorof-filter-php-snippets.md new file mode 100644 index 00000000000..aa0ce8e09a5 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/get-sponsorof-filter-php-snippets.md @@ -0,0 +1,27 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + + 'eventual', + ]; +$requestConfiguration->headers = $headers; + +$queryParameters = SponsorOfRequestBuilderGetRequestConfiguration::createQueryParameters(); +$queryParameters->filter = "microsoft.graph.user/userType eq 'Guest'"; +$requestConfiguration->queryParameters = $queryParameters; + + +$result = $graphServiceClient->users()->byUserId('user-id')->sponsorOf()->get($requestConfiguration)->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/get-sponsorof-php-snippets.md b/api-reference/v1.0/includes/snippets/php/get-sponsorof-php-snippets.md new file mode 100644 index 00000000000..e885ec8d56e --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/get-sponsorof-php-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +users()->byUserId('user-id')->sponsorOf()->get()->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/get-virtualeventtownhallregistrationconfiguration-php-snippets.md b/api-reference/v1.0/includes/snippets/php/get-virtualeventtownhallregistrationconfiguration-php-snippets.md new file mode 100644 index 00000000000..41ec9ce0363 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/get-virtualeventtownhallregistrationconfiguration-php-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +solutions()->virtualEvents()->townhalls()->byVirtualEventTownhallId('virtualEventTownhall-id')->registrationConfiguration()->get()->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/list-customdataprovidedresourceuploadsession-php-snippets.md b/api-reference/v1.0/includes/snippets/php/list-customdataprovidedresourceuploadsession-php-snippets.md new file mode 100644 index 00000000000..34ed91c16b6 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/list-customdataprovidedresourceuploadsession-php-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +identityGovernance()->entitlementManagement()->catalogs()->byAccessPackageCatalogId('accessPackageCatalog-id')->resources()->byAccessPackageResourceId('accessPackageResource-id')->uploadSessions()->get()->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/list-remotetenantgroup-php-snippets.md b/api-reference/v1.0/includes/snippets/php/list-remotetenantgroup-php-snippets.md new file mode 100644 index 00000000000..512a59d9601 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/list-remotetenantgroup-php-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +directory()->remoteTenantGroups()->get()->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-php-snippets.md b/api-reference/v1.0/includes/snippets/php/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-php-snippets.md new file mode 100644 index 00000000000..ebbcc6f2563 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-php-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +policies()->crossTenantAccessPolicy()->templates()->multiTenantOrganizationIdentitySynchronization()->resetToDefaultSettings()->post()->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-php-snippets.md b/api-reference/v1.0/includes/snippets/php/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-php-snippets.md new file mode 100644 index 00000000000..ec8f6dbca5e --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-php-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +policies()->crossTenantAccessPolicy()->templates()->multiTenantOrganizationPartnerConfiguration()->resetToDefaultSettings()->post()->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/update-customdataprovidedresourceuploadsession-php-snippets.md b/api-reference/v1.0/includes/snippets/php/update-customdataprovidedresourceuploadsession-php-snippets.md new file mode 100644 index 00000000000..7b3e745be0b --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/update-customdataprovidedresourceuploadsession-php-snippets.md @@ -0,0 +1,19 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +setIsUploadDone(true); + +$result = $graphServiceClient->identityGovernance()->entitlementManagement()->catalogs()->byAccessPackageCatalogId('accessPackageCatalog-id')->resources()->byAccessPackageResourceId('accessPackageResource-id')->uploadSessions()->byCustomDataProvidedResourceUploadSessionId('customDataProvidedResourceUploadSession-id')->patch($requestBody)->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/userteamwork-deletetargetedmessage-php-snippets.md b/api-reference/v1.0/includes/snippets/php/userteamwork-deletetargetedmessage-php-snippets.md new file mode 100644 index 00000000000..95c2ab7aa96 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/userteamwork-deletetargetedmessage-php-snippets.md @@ -0,0 +1,21 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +setTeamId('9dda0ae1-e007-4a1d-81ec-2cf4b1274610'); +$requestBody->setChannelId('19:eeaa4e946d674c4f8d4dded613780f45@thread.v2'); +$requestBody->setMessageId('1580849738240'); + +$graphServiceClient->users()->byUserId('user-id')->teamwork()->deleteTargetedMessage()->post($requestBody)->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/userteamwork-getallretainedtargetedmessages-php-snippets.md b/api-reference/v1.0/includes/snippets/php/userteamwork-getallretainedtargetedmessages-php-snippets.md new file mode 100644 index 00000000000..c6ae7d96805 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/userteamwork-getallretainedtargetedmessages-php-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +users()->byUserId('user-id')->teamwork()->getAllRetainedTargetedMessages()->get()->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/userteamwork-getalltargetedmessages-appfilter-php-snippets.md b/api-reference/v1.0/includes/snippets/php/userteamwork-getalltargetedmessages-appfilter-php-snippets.md new file mode 100644 index 00000000000..fb64085c9a5 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/userteamwork-getalltargetedmessages-appfilter-php-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +filter = "from/application/id eq '6d23e712-527b-406f-8d59-d02927885918'"; +$requestConfiguration->queryParameters = $queryParameters; + + +$result = $graphServiceClient->users()->byUserId('user-id')->teamwork()->getAllTargetedMessages()->get($requestConfiguration)->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/userteamwork-getalltargetedmessages-filter-php-snippets.md b/api-reference/v1.0/includes/snippets/php/userteamwork-getalltargetedmessages-filter-php-snippets.md new file mode 100644 index 00000000000..392e40ebf08 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/userteamwork-getalltargetedmessages-filter-php-snippets.md @@ -0,0 +1,22 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +filter = "lastModifiedDateTime gt 2024-01-01T00:00:00Z and lastModifiedDateTime lt 2024-12-31T23:59:59Z"; +$requestConfiguration->queryParameters = $queryParameters; + + +$result = $graphServiceClient->users()->byUserId('user-id')->teamwork()->getAllTargetedMessages()->get($requestConfiguration)->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/userteamwork-getalltargetedmessages-php-snippets.md b/api-reference/v1.0/includes/snippets/php/userteamwork-getalltargetedmessages-php-snippets.md new file mode 100644 index 00000000000..e7fcc1ec7d1 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/php/userteamwork-getalltargetedmessages-php-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```php + +users()->byUserId('user-id')->teamwork()->getAllTargetedMessages()->get()->wait(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/delete-page-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/delete-page-powershell-snippets.md index 7297f441861..aa3b8d79baa 100644 --- a/api-reference/v1.0/includes/snippets/powershell/delete-page-powershell-snippets.md +++ b/api-reference/v1.0/includes/snippets/powershell/delete-page-powershell-snippets.md @@ -4,8 +4,9 @@ description: "Automatically generated file. DO NOT MODIFY" ```powershell -Import-Module Microsoft.Graph.Sites +Import-Module Microsoft.Graph.Notes -Remove-MgSitePage -SiteId $siteId -BaseSitePageId $baseSitePageId +# A UPN can also be used as -UserId. +Remove-MgUserOnenotePage -UserId $userId -OnenotePageId $onenotePageId ``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/delete-targetedchatmessage-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/delete-targetedchatmessage-powershell-snippets.md new file mode 100644 index 00000000000..daaed4eaf9a --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/delete-targetedchatmessage-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Teams + +Remove-MgUserChatTargetedMessage -UserId $userId -ChatId $chatId -TargetedChatMessageId $targetedChatMessageId + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/userteamwork-deletetargetedmessage-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/userteamwork-deletetargetedmessage-powershell-snippets.md new file mode 100644 index 00000000000..425d917bdf3 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/userteamwork-deletetargetedmessage-powershell-snippets.md @@ -0,0 +1,17 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Teams + +$params = @{ + teamId = "9dda0ae1-e007-4a1d-81ec-2cf4b1274610" + channelId = "19:eeaa4e946d674c4f8d4dded613780f45@thread.v2" + messageId = "1580849738240" +} + +Remove-MgUserTeamworkTargetedMessage -UserId $userId -BodyParameter $params + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/userteamwork-getallretainedtargetedmessages-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/userteamwork-getallretainedtargetedmessages-powershell-snippets.md new file mode 100644 index 00000000000..6b7e16c0ca7 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/userteamwork-getallretainedtargetedmessages-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Teams + +Get-MgUserTeamworkRetainedTargetedMessage -UserId $userId + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/userteamwork-getalltargetedmessages-appfilter-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/userteamwork-getalltargetedmessages-appfilter-powershell-snippets.md new file mode 100644 index 00000000000..0d00eeb5ca1 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/userteamwork-getalltargetedmessages-appfilter-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Teams + +Get-MgUserTeamworkTargetedMessage -UserId $userId -Filter "from/application/id eq '6d23e712-527b-406f-8d59-d02927885918'" + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/userteamwork-getalltargetedmessages-filter-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/userteamwork-getalltargetedmessages-filter-powershell-snippets.md new file mode 100644 index 00000000000..e2767d167ca --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/userteamwork-getalltargetedmessages-filter-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Teams + +Get-MgUserTeamworkTargetedMessage -UserId $userId -Filter "lastModifiedDateTime gt 2024-01-01T00:00:00Z and lastModifiedDateTime lt 2024-12-31T23:59:59Z" + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/userteamwork-getalltargetedmessages-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/userteamwork-getalltargetedmessages-powershell-snippets.md new file mode 100644 index 00000000000..a14156d67b0 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/userteamwork-getalltargetedmessages-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Teams + +Get-MgUserTeamworkTargetedMessage -UserId $userId + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/create-customdataprovidedresourceuploadsession-from--python-snippets.md b/api-reference/v1.0/includes/snippets/python/create-customdataprovidedresourceuploadsession-from--python-snippets.md new file mode 100644 index 00000000000..729f2ddd0a5 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/create-customdataprovidedresourceuploadsession-from--python-snippets.md @@ -0,0 +1,24 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +from msgraph.generated.models.custom_data_provided_resource_access_review_upload_session import CustomDataProvidedResourceAccessReviewUploadSession +from msgraph.generated.models.custom_data_provided_resource_payloads.access_review_context_data import AccessReviewContextData +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python +request_body = CustomDataProvidedResourceAccessReviewUploadSession( + odata_type = "#microsoft.graph.customDataProvidedResourceAccessReviewUploadSession", + data = AccessReviewContextData( + odata_type = "#microsoft.graph.customDataProvidedResourcePayloads.accessReviewContextData", + review_definition_id = "9e4b1c6f-2a3d-4f8e-9b7a-5c1e2d3f4a6b", + review_instance_id = "15eeb4df-8a4d-4f8e-9b7a-6b3e1c7f5a9d", + ), +) + +result = await graph_client.identity_governance.entitlement_management.catalogs.by_access_package_catalog_id('accessPackageCatalog-id').resources.by_access_package_resource_id('accessPackageResource-id').upload_sessions.post(request_body) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/delete-customdataprovidedresourceuploadsession-python-snippets.md b/api-reference/v1.0/includes/snippets/python/delete-customdataprovidedresourceuploadsession-python-snippets.md new file mode 100644 index 00000000000..03a4ab5a5b0 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/delete-customdataprovidedresourceuploadsession-python-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python + +await graph_client.identity_governance.entitlement_management.catalogs.by_access_package_catalog_id('accessPackageCatalog-id').resources.by_access_package_resource_id('accessPackageResource-id').upload_sessions.by_custom_data_provided_resource_upload_session_id('customDataProvidedResourceUploadSession-id').delete() + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/delete-page-python-snippets.md b/api-reference/v1.0/includes/snippets/python/delete-page-python-snippets.md index a46c9ca6ad1..78b88640435 100644 --- a/api-reference/v1.0/includes/snippets/python/delete-page-python-snippets.md +++ b/api-reference/v1.0/includes/snippets/python/delete-page-python-snippets.md @@ -8,7 +8,7 @@ description: "Automatically generated file. DO NOT MODIFY" from msgraph import GraphServiceClient # To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python -await graph_client.sites.by_site_id('site-id').pages.by_base_site_page_id('baseSitePage-id').delete() +await graph_client.me.onenote.pages.by_onenote_page_id('onenotePage-id').delete() ``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/delete-targetedchatmessage-python-snippets.md b/api-reference/v1.0/includes/snippets/python/delete-targetedchatmessage-python-snippets.md new file mode 100644 index 00000000000..c471f8743ad --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/delete-targetedchatmessage-python-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python + +await graph_client.users.by_user_id('user-id').chats.by_chat_id('chat-id').targeted_messages.by_targeted_chat_message_id('targetedChatMessage-id').delete() + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/get-customdataprovidedresourceuploadsession-python-snippets.md b/api-reference/v1.0/includes/snippets/python/get-customdataprovidedresourceuploadsession-python-snippets.md new file mode 100644 index 00000000000..10ebb0ef1a0 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/get-customdataprovidedresourceuploadsession-python-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python + +result = await graph_client.identity_governance.entitlement_management.catalogs.by_access_package_catalog_id('accessPackageCatalog-id').resources.by_access_package_resource_id('accessPackageResource-id').upload_sessions.by_custom_data_provided_resource_upload_session_id('customDataProvidedResourceUploadSession-id').get() + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/get-remotetenantgroup-python-snippets.md b/api-reference/v1.0/includes/snippets/python/get-remotetenantgroup-python-snippets.md new file mode 100644 index 00000000000..46f9cedb22e --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/get-remotetenantgroup-python-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python + +result = await graph_client.directory.remote_tenant_groups.by_remote_tenant_group_id('remoteTenantGroup-id').get() + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/get-sponsorof-filter-python-snippets.md b/api-reference/v1.0/includes/snippets/python/get-sponsorof-filter-python-snippets.md new file mode 100644 index 00000000000..5fe72ef169a --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/get-sponsorof-filter-python-snippets.md @@ -0,0 +1,25 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +from msgraph.generated.users.item.sponsor_of.sponsor_of_request_builder import SponsorOfRequestBuilder +from kiota_abstractions.base_request_configuration import RequestConfiguration +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python +query_params = SponsorOfRequestBuilder.SponsorOfRequestBuilderGetQueryParameters( + filter = "microsoft.graph.user/userType eq 'Guest'", +) + +request_configuration = RequestConfiguration( +query_parameters = query_params, +) +request_configuration.headers.add("ConsistencyLevel", "eventual") + + +result = await graph_client.users.by_user_id('user-id').sponsor_of.get(request_configuration = request_configuration) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/get-sponsorof-python-snippets.md b/api-reference/v1.0/includes/snippets/python/get-sponsorof-python-snippets.md new file mode 100644 index 00000000000..d50cc387d1e --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/get-sponsorof-python-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python + +result = await graph_client.users.by_user_id('user-id').sponsor_of.get() + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/get-virtualeventtownhallregistrationconfiguration-python-snippets.md b/api-reference/v1.0/includes/snippets/python/get-virtualeventtownhallregistrationconfiguration-python-snippets.md new file mode 100644 index 00000000000..370038bc431 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/get-virtualeventtownhallregistrationconfiguration-python-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python + +result = await graph_client.solutions.virtual_events.townhalls.by_virtual_event_townhall_id('virtualEventTownhall-id').registration_configuration.get() + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/list-customdataprovidedresourceuploadsession-python-snippets.md b/api-reference/v1.0/includes/snippets/python/list-customdataprovidedresourceuploadsession-python-snippets.md new file mode 100644 index 00000000000..3e7491997e2 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/list-customdataprovidedresourceuploadsession-python-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python + +result = await graph_client.identity_governance.entitlement_management.catalogs.by_access_package_catalog_id('accessPackageCatalog-id').resources.by_access_package_resource_id('accessPackageResource-id').upload_sessions.get() + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/list-remotetenantgroup-python-snippets.md b/api-reference/v1.0/includes/snippets/python/list-remotetenantgroup-python-snippets.md new file mode 100644 index 00000000000..7092373d6d7 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/list-remotetenantgroup-python-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python + +result = await graph_client.directory.remote_tenant_groups.get() + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-python-snippets.md b/api-reference/v1.0/includes/snippets/python/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-python-snippets.md new file mode 100644 index 00000000000..ee6fd3c5e1e --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-python-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python + +await graph_client.policies.cross_tenant_access_policy.templates.multi_tenant_organization_identity_synchronization.reset_to_default_settings.post() + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-python-snippets.md b/api-reference/v1.0/includes/snippets/python/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-python-snippets.md new file mode 100644 index 00000000000..50f6566abb1 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-python-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python + +await graph_client.policies.cross_tenant_access_policy.templates.multi_tenant_organization_partner_configuration.reset_to_default_settings.post() + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/update-customdataprovidedresourceuploadsession-python-snippets.md b/api-reference/v1.0/includes/snippets/python/update-customdataprovidedresourceuploadsession-python-snippets.md new file mode 100644 index 00000000000..d904b22ce4e --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/update-customdataprovidedresourceuploadsession-python-snippets.md @@ -0,0 +1,18 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +from msgraph.generated.models.custom_data_provided_resource_upload_session import CustomDataProvidedResourceUploadSession +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python +request_body = CustomDataProvidedResourceUploadSession( + is_upload_done = True, +) + +result = await graph_client.identity_governance.entitlement_management.catalogs.by_access_package_catalog_id('accessPackageCatalog-id').resources.by_access_package_resource_id('accessPackageResource-id').upload_sessions.by_custom_data_provided_resource_upload_session_id('customDataProvidedResourceUploadSession-id').patch(request_body) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/userteamwork-deletetargetedmessage-python-snippets.md b/api-reference/v1.0/includes/snippets/python/userteamwork-deletetargetedmessage-python-snippets.md new file mode 100644 index 00000000000..04b10cd735c --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/userteamwork-deletetargetedmessage-python-snippets.md @@ -0,0 +1,20 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +from msgraph.generated.users.item.teamwork.delete_targeted_message.delete_targeted_message_post_request_body import DeleteTargetedMessagePostRequestBody +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python +request_body = DeleteTargetedMessagePostRequestBody( + team_id = "9dda0ae1-e007-4a1d-81ec-2cf4b1274610", + channel_id = "19:eeaa4e946d674c4f8d4dded613780f45@thread.v2", + message_id = "1580849738240", +) + +await graph_client.users.by_user_id('user-id').teamwork.delete_targeted_message.post(request_body) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/userteamwork-getallretainedtargetedmessages-python-snippets.md b/api-reference/v1.0/includes/snippets/python/userteamwork-getallretainedtargetedmessages-python-snippets.md new file mode 100644 index 00000000000..54360df2f43 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/userteamwork-getallretainedtargetedmessages-python-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python + +result = await graph_client.users.by_user_id('user-id').teamwork.get_all_retained_targeted_messages.get() + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/userteamwork-getalltargetedmessages-appfilter-python-snippets.md b/api-reference/v1.0/includes/snippets/python/userteamwork-getalltargetedmessages-appfilter-python-snippets.md new file mode 100644 index 00000000000..85449f50a3f --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/userteamwork-getalltargetedmessages-appfilter-python-snippets.md @@ -0,0 +1,23 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +from msgraph.generated.users.item.teamwork.get_all_targeted_messages.get_all_targeted_messages_request_builder import GetAllTargetedMessagesRequestBuilder +from kiota_abstractions.base_request_configuration import RequestConfiguration +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python +query_params = GetAllTargetedMessagesRequestBuilder.GetAllTargetedMessagesRequestBuilderGetQueryParameters( + filter = "from/application/id eq '6d23e712-527b-406f-8d59-d02927885918'", +) + +request_configuration = RequestConfiguration( +query_parameters = query_params, +) + +result = await graph_client.users.by_user_id('user-id').teamwork.get_all_targeted_messages.get(request_configuration = request_configuration) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/userteamwork-getalltargetedmessages-filter-python-snippets.md b/api-reference/v1.0/includes/snippets/python/userteamwork-getalltargetedmessages-filter-python-snippets.md new file mode 100644 index 00000000000..e46040c25fc --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/userteamwork-getalltargetedmessages-filter-python-snippets.md @@ -0,0 +1,23 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +from msgraph.generated.users.item.teamwork.get_all_targeted_messages.get_all_targeted_messages_request_builder import GetAllTargetedMessagesRequestBuilder +from kiota_abstractions.base_request_configuration import RequestConfiguration +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python +query_params = GetAllTargetedMessagesRequestBuilder.GetAllTargetedMessagesRequestBuilderGetQueryParameters( + filter = "lastModifiedDateTime gt 2024-01-01T00:00:00Z and lastModifiedDateTime lt 2024-12-31T23:59:59Z", +) + +request_configuration = RequestConfiguration( +query_parameters = query_params, +) + +result = await graph_client.users.by_user_id('user-id').teamwork.get_all_targeted_messages.get(request_configuration = request_configuration) + + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/userteamwork-getalltargetedmessages-python-snippets.md b/api-reference/v1.0/includes/snippets/python/userteamwork-getalltargetedmessages-python-snippets.md new file mode 100644 index 00000000000..55915bf6ef4 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/python/userteamwork-getalltargetedmessages-python-snippets.md @@ -0,0 +1,14 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```python + +# Code snippets are only available for the latest version. Current version is 1.x +from msgraph import GraphServiceClient +# To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python + +result = await graph_client.users.by_user_id('user-id').teamwork.get_all_targeted_messages.get() + + +``` \ No newline at end of file From cc949adfef439683d1fae8e4c71c7df992003808 Mon Sep 17 00:00:00 2001 From: Diego Luces Date: Tue, 11 Aug 2026 19:33:19 -0700 Subject: [PATCH 033/189] Clarify that removal of any retention label isn't supported in SPE (#29319) * Clarify that removal of any retention label isn't supported in SPE * Apply suggestions from code review Co-authored-by: Diego Luces * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: dilucesr Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- api-reference/beta/api/driveitem-removeretentionlabel.md | 3 ++- api-reference/v1.0/api/driveitem-removeretentionlabel.md | 3 ++- 2 files changed, 4 insertions(+), 2 deletions(-) diff --git a/api-reference/beta/api/driveitem-removeretentionlabel.md b/api-reference/beta/api/driveitem-removeretentionlabel.md index bd0c4933a9d..f729bf6db59 100644 --- a/api-reference/beta/api/driveitem-removeretentionlabel.md +++ b/api-reference/beta/api/driveitem-removeretentionlabel.md @@ -29,7 +29,8 @@ Choose the permission or permissions marked as least privileged for this API. Us > [!NOTE] > * `Sites.FullControl.All` is the least privileged permission required to remove retention labels that classify the content as records in SharePoint Online and OneDrive. -> * The removal of a *Record* retention label isn't supported when using app-only authentication. This operation requires a delegated user context. +> * In SharePoint Online and OneDrive, removal of a *Record* retention label isn't supported when using app-only authentication. This operation requires a delegated user context. +> * In *SharePoint Embedded*, removal of any retention label isn't supported when using app-only authentication. This operation requires a delegated user context. [!INCLUDE [app-permissions](../includes/sharepoint-embedded-app-driveitem-permissions.md)] diff --git a/api-reference/v1.0/api/driveitem-removeretentionlabel.md b/api-reference/v1.0/api/driveitem-removeretentionlabel.md index 73364d06668..6ffbb96e5ee 100644 --- a/api-reference/v1.0/api/driveitem-removeretentionlabel.md +++ b/api-reference/v1.0/api/driveitem-removeretentionlabel.md @@ -27,7 +27,8 @@ Choose the permission or permissions marked as least privileged for this API. Us > [!NOTE] > * `Sites.FullControl.All` is the least privileged permission required to remove retention labels that classify the content as records in SharePoint Online and OneDrive. -> * The removal of a *Record* retention label isn't supported when using app-only authentication. This operation requires a delegated user context. +> * In SharePoint Online and OneDrive, removal of a *Record* retention label isn't supported when using app-only authentication. This operation requires a delegated user context. +> * In *SharePoint Embedded*, removal of any retention label isn't supported when using app-only authentication. This operation requires a delegated user context. [!INCLUDE [app-permissions](../includes/sharepoint-embedded-app-driveitem-permissions.md)] From 9fc3f9dbded98f5427cfc4f6c292e65919ad2c2e Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Wed, 12 Aug 2026 02:33:35 +0000 Subject: [PATCH 034/189] Update generated permissions tables with build 232107 (#29427) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- api-reference/beta/api/participant-reportsyntheticmedia.md | 6 +----- .../participant-reportsyntheticmedia-permissions.md | 4 ++-- .../accessreviewstage-acceptrecommendations-permissions.md | 1 + .../accessreviewstage-batchrecorddecisions-permissions.md | 1 + .../permissions/unifiedroot-list-definitions-permissions.md | 1 + .../permissions/unifiedroot-post-definitions-permissions.md | 1 + 6 files changed, 7 insertions(+), 7 deletions(-) diff --git a/api-reference/beta/api/participant-reportsyntheticmedia.md b/api-reference/beta/api/participant-reportsyntheticmedia.md index 1561404c1fb..4a596bafb08 100644 --- a/api-reference/beta/api/participant-reportsyntheticmedia.md +++ b/api-reference/beta/api/participant-reportsyntheticmedia.md @@ -26,11 +26,7 @@ The detection bot must be admitted to the call before it can call this action. F Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/participant-reportsyntheticmedia-permissions.md)] ## HTTP request diff --git a/api-reference/beta/includes/permissions/participant-reportsyntheticmedia-permissions.md b/api-reference/beta/includes/permissions/participant-reportsyntheticmedia-permissions.md index 1c9ab1ef9a0..dde63e7eb29 100644 --- a/api-reference/beta/includes/permissions/participant-reportsyntheticmedia-permissions.md +++ b/api-reference/beta/includes/permissions/participant-reportsyntheticmedia-permissions.md @@ -1,10 +1,10 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- -|Permission type|Least privileged permission|Higher privileged permissions| +|Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| |Delegated (work or school account)|Not supported.|Not supported.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/accessreviewstage-acceptrecommendations-permissions.md b/api-reference/v1.0/includes/permissions/accessreviewstage-acceptrecommendations-permissions.md index cdf789879bd..6b222a40d7f 100644 --- a/api-reference/v1.0/includes/permissions/accessreviewstage-acceptrecommendations-permissions.md +++ b/api-reference/v1.0/includes/permissions/accessreviewstage-acceptrecommendations-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|AccessReview.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|AccessReview.ReadWrite.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/accessreviewstage-batchrecorddecisions-permissions.md b/api-reference/v1.0/includes/permissions/accessreviewstage-batchrecorddecisions-permissions.md index cdf789879bd..6b222a40d7f 100644 --- a/api-reference/v1.0/includes/permissions/accessreviewstage-batchrecorddecisions-permissions.md +++ b/api-reference/v1.0/includes/permissions/accessreviewstage-batchrecorddecisions-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|AccessReview.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|AccessReview.ReadWrite.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/unifiedroot-list-definitions-permissions.md b/api-reference/v1.0/includes/permissions/unifiedroot-list-definitions-permissions.md index 8f6b915c995..6ac17ea78fd 100644 --- a/api-reference/v1.0/includes/permissions/unifiedroot-list-definitions-permissions.md +++ b/api-reference/v1.0/includes/permissions/unifiedroot-list-definitions-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|AccessReview.Read.All|AccessReview.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|AccessReview.Read.All|AccessReview.ReadWrite.All| + diff --git a/api-reference/v1.0/includes/permissions/unifiedroot-post-definitions-permissions.md b/api-reference/v1.0/includes/permissions/unifiedroot-post-definitions-permissions.md index cdf789879bd..6b222a40d7f 100644 --- a/api-reference/v1.0/includes/permissions/unifiedroot-post-definitions-permissions.md +++ b/api-reference/v1.0/includes/permissions/unifiedroot-post-definitions-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|AccessReview.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|AccessReview.ReadWrite.All|Not available.| + From f340e2cb1b198c14280b857bd18f7336b5903ee4 Mon Sep 17 00:00:00 2001 From: Dan Winter Date: Tue, 11 Aug 2026 22:40:13 -0400 Subject: [PATCH 035/189] docs: add isOfficeRestricted to fileStorageContainerType settings (beta) (#29335) * docs: add isOfficeRestricted to fileStorageContainerType settings (promoted from PR 16187085) * Update Update * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add isOfficeRestricted to fileStorageContainerTypeSettingsOverride enum values * Adding Changelog entry from build * adding whats new entry * Fixes. * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * trigger GitHub actions * Fix invalid FileServices changelog links Co-authored-by: dwinter-msft <27781733+dwinter-msft@users.noreply.github.com> * trigger GitHub actions * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: dwinter Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: dwinter-msft <27781733+dwinter-msft@users.noreply.github.com> --- api-reference/beta/resources/enums.md | 1 + ...toragecontainertyperegistrationsettings.md | 2 + .../filestoragecontainertypesettings.md | 4 +- changelog/Microsoft.FileServices.json | 38 ++++++++++++++++++- concepts/whats-new-overview.md | 1 + 5 files changed, 43 insertions(+), 3 deletions(-) diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index fc6917530d3..c6de616ec34 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -5789,6 +5789,7 @@ Possible values for user account types (group membership), per Windows definitio |isItemVersioningEnabled| |itemMajorVersionLimit| |maxStoragePerContainerInBytes| +|isOfficeRestricted| |unknownFutureValue| ### aggregationPeriod values diff --git a/api-reference/beta/resources/filestoragecontainertyperegistrationsettings.md b/api-reference/beta/resources/filestoragecontainertyperegistrationsettings.md index 91349ec9789..923e63ede1e 100644 --- a/api-reference/beta/resources/filestoragecontainertyperegistrationsettings.md +++ b/api-reference/beta/resources/filestoragecontainertyperegistrationsettings.md @@ -25,6 +25,7 @@ Represents the settings associated with a [fileStorageContainerTypeRegistration] |agent|[fileStorageContainerTypeAgentSettings](../resources/filestoragecontainertypeagentsettings.md)|Contains agent-related settings.| |isDiscoverabilityEnabled|Boolean|Indicates whether items from containers are surfaced in experiences such as **My Activity** or Microsoft 365.| |isItemVersioningEnabled|Boolean|Indicates whether item versioning is enabled.| +|isOfficeRestricted|Boolean|Indicates whether Office apps (Word, Excel, and PowerPoint) for desktop and web are restricted for containers of this container type.| |isSearchEnabled|Boolean|Indicates whether search is enabled.| |isSharingRestricted|Boolean|Only the manager and owner can share files in the container if restricted sharing is enabled.| |itemMajorVersionLimit|Int64|Maximum number of versions. Versioning must be enabled (`"isItemVersioningEnabled"=true`).| @@ -47,6 +48,7 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.fileStorageContainerTypeRegistrationSettings", "isDiscoverabilityEnabled": "Boolean", "isItemVersioningEnabled": "Boolean", + "isOfficeRestricted": "Boolean", "isSearchEnabled": "Boolean", "isSharingRestricted": "Boolean", "itemMajorVersionLimit": "Int64", diff --git a/api-reference/beta/resources/filestoragecontainertypesettings.md b/api-reference/beta/resources/filestoragecontainertypesettings.md index e13d74ceeba..bc8232b81ce 100644 --- a/api-reference/beta/resources/filestoragecontainertypesettings.md +++ b/api-reference/beta/resources/filestoragecontainertypesettings.md @@ -23,9 +23,10 @@ Represents the settings associated with a [fileStorageContainerType](../resource |Property|Type|Description| |:---|:---|:---| |agent|[fileStorageContainerTypeAgentSettings](../resources/fileStorageContainerTypeAgentSettings.md)|Contains agent-related settings. Optional| -|consumingTenantOverridables|fileStorageContainerTypeSettingsOverride|A comma-separated list of settings that can be overridden in the consuming tenant. The possible values are: `urlTemplate`, `isDiscoverabilityEnabled`, `isSearchEnabled`, `isItemVersioningEnabled`, `itemMajorVersionLimit`, `maxStoragePerContainerInBytes`, `unknownFutureValue`.| +|consumingTenantOverridables|fileStorageContainerTypeSettingsOverride|A comma-separated list of settings that can be overridden in the consuming tenant. The possible values are: `urlTemplate`, `isDiscoverabilityEnabled`, `isSearchEnabled`, `isItemVersioningEnabled`, `itemMajorVersionLimit`, `maxStoragePerContainerInBytes`, `unknownFutureValue`, `isOfficeRestricted`.| |isDiscoverabilityEnabled|Boolean|Indicates whether items from containers are surfaced in experiences such as **My Activity** or Microsoft 365.| |isItemVersioningEnabled|Boolean|Indicates whether item versioning is enabled.| +|isOfficeRestricted|Boolean|Indicates whether Office apps (Word, Excel, and PowerPoint) for desktop and web are restricted for containers of this container type.| |isSearchEnabled|Boolean|Indicates whether search is enabled.| |isSharingRestricted|Boolean|Only the manager and owner can share files in the container if restricted sharing is enabled.| |itemMajorVersionLimit|Int64|Maximum number of versions. Versioning must be enabled (`"isItemVersioningEnabled"=true`).| @@ -49,6 +50,7 @@ The following JSON representation shows the resource type. "consumingTenantOverridables": "fileStorageContainerTypeSettingsOverride", "isDiscoverabilityEnabled": "Boolean", "isItemVersioningEnabled": "Boolean", + "isOfficeRestricted": "Boolean", "isSearchEnabled": "Boolean", "isSharingRestricted": "Boolean", "itemMajorVersionLimit": "Int64", diff --git a/changelog/Microsoft.FileServices.json b/changelog/Microsoft.FileServices.json index d5bca8ee8ee..f98b2558187 100644 --- a/changelog/Microsoft.FileServices.json +++ b/changelog/Microsoft.FileServices.json @@ -7,7 +7,7 @@ "ApiChange": "Method", "ChangedApiName": "fileStorageContainer", "ChangeType": "Addition", - "Description": "Added the [Upsert columns](https://learn.microsoft.com/en-us/graph/api/filestoragecontainer-patch-columns?view=graph-rest-beta) operation to the [fileStorageContainer](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainer?view=graph-rest-beta) resource.", + "Description": "Added the Upsert columns operation to the [fileStorageContainer](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainer?view=graph-rest-beta) resource.", "Target": "fileStorageContainer" } ], @@ -25,7 +25,7 @@ "ApiChange": "Method", "ChangedApiName": "fileStorageContainer", "ChangeType": "Addition", - "Description": "Added the [Upsert columns](https://learn.microsoft.com/en-us/graph/api/filestoragecontainer-patch-columns?view=graph-rest-1.0) operation to the [fileStorageContainer](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainer?view=graph-rest-1.0) resource.", + "Description": "Added the Upsert columns operation to the [fileStorageContainer](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainer?view=graph-rest-1.0) resource.", "Target": "fileStorageContainer" } ], @@ -6195,6 +6195,40 @@ "CreatedDateTime": "2026-07-29T21:02:48.8898539Z", "WorkloadArea": "Files", "SubArea": "" + }, + { + "ChangeList": [ + { + "Id": "1b1ac3ef-e194-419a-9b89-e021f7af8659", + "ApiChange": "Member", + "ChangedApiName": "isOfficeRestricted", + "ChangeType": "Addition", + "Description": "Added the `isOfficeRestricted` member to the **fileStorageContainerTypeSettingsOverride** enumeration.", + "Target": "fileStorageContainerTypeSettingsOverride" + }, + { + "Id": "1b1ac3ef-e194-419a-9b89-e021f7af8659", + "ApiChange": "Property", + "ChangedApiName": "isOfficeRestricted", + "ChangeType": "Addition", + "Description": "Added the **isOfficeRestricted** property to the [fileStorageContainerTypeRegistrationSettings](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainertyperegistrationsettings?view=graph-rest-beta) resource.", + "Target": "fileStorageContainerTypeRegistrationSettings" + }, + { + "Id": "1b1ac3ef-e194-419a-9b89-e021f7af8659", + "ApiChange": "Property", + "ChangedApiName": "isOfficeRestricted", + "ChangeType": "Addition", + "Description": "Added the **isOfficeRestricted** property to the [fileStorageContainerTypeSettings](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainertypesettings?view=graph-rest-beta) resource.", + "Target": "fileStorageContainerTypeSettings" + } + ], + "Id": "1b1ac3ef-e194-419a-9b89-e021f7af8659", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-11T15:34:20.4043304Z", + "WorkloadArea": "Files", + "SubArea": "" } ] } \ No newline at end of file diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index b2193dc631a..eb1b5e8edc0 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -115,6 +115,7 @@ Added the **vapidPublicKey**, **webPushEncryptionP256dhPublicKey**, and **webPus - Updated the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to support the optional **reportType** parameter for retrieving throttling metrics. Use `reportType='throttlingReport'` to get throttled request counts via the **throttledRequests** property on the [sharePointApiUsageDataPoint](/graph/api/resources/sharepointapiusagedatapoint?view=graph-rest-beta&preserve-view=true) resource, or use `reportType='egressReport'` (default) to get egress usage via the **usageMB** property. - Added the **allowOnPremUpdateOfOnPremisesObjectIdentifierEnabled** property to the [onPremisesDirectorySynchronizationFeature](/graph/api/resources/onpremisesdirectorysynchronizationfeature?view=graph-rest-beta&preserve-view=true) resource. - Added the [getByUser](/graph/api/filestoragecontainer-getbyuser?view=graph-rest-beta&preserve-view=true) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource to retrieve a list of file storage containers owned by a user, with optional filtering by role (owner or principalOwner). +- Added the **isOfficeRestricted** property to the [fileStorageContainerTypeSettings](/graph/api/resources/filestoragecontainertypesettings?view=graph-rest-beta&preserve-view=true) and [fileStorageContainerTypeRegistrationSettings](/graph/api/resources/filestoragecontainertyperegistrationsettings?view=graph-rest-beta&preserve-view=true) resources, and the **fileStorageContainerTypeSettingsOverride** enumeration. ### Groups From 0ff28988b3a2780a3c70a5bd153a43cc1a7354c7 Mon Sep 17 00:00:00 2001 From: v-kumapanka-microsoft Date: Tue, 11 Aug 2026 19:47:17 -0700 Subject: [PATCH 036/189] Add SAP AC connection info resource docs (IGAELM beta) (#29286) * Add SAP AC connection info resource docs (IGAELM beta) Documents new complex types added in schema-Prod-beta: - externalSapAcConnectionInfo - clientCredentialAuthenticationInfo - authenticationInfo (abstract) Adds changelog entry for Microsoft.IGAELM and lists the new derived type on the connectionInfo resource page. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 0232b69f-5fe3-4b18-bc39-599547a51589 * Document externalSapAcConnectionInfo as the sapAc connectionInfo type on externalOriginResourceConnector Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 0232b69f-5fe3-4b18-bc39-599547a51589 * Address PR review feedback: type link text, SAP AC naming, What's New entry - Use short type name (authenticationInfo) in externalSapAcConnectionInfo Properties table - Correct sapAc connectorType description to 'SAP Access Control' - Add What's New (preview) entry for the SAP AC connection info complex types Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 819e7474-d486-4e69-abe4-b405973ff53a * Fix malformed IGAELM changelog JSON Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 05ac8565-f463-44ad-9938-4edf38bbfb51 * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Pankaj Kumar (HCL Technologies Corporate Services) Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Bhaskar Kamasani <36014352+vikama-microsoft@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: 0232b69f-5fe3-4b18-bc39-599547a51589 Copilot-Session: 819e7474-d486-4e69-abe4-b405973ff53a Copilot-Session: 05ac8565-f463-44ad-9938-4edf38bbfb51 --- .../beta/resources/authenticationinfo.md | 41 ++++++++++++++ .../clientcredentialauthenticationinfo.md | 45 +++++++++++++++ .../beta/resources/connectioninfo.md | 1 + .../externaloriginresourceconnector.md | 4 +- .../resources/externalsapacconnectioninfo.md | 55 +++++++++++++++++++ changelog/Microsoft.IGAELM.json | 34 ++++++++++++ concepts/whats-new-overview.md | 9 +++ 7 files changed, 187 insertions(+), 2 deletions(-) create mode 100644 api-reference/beta/resources/authenticationinfo.md create mode 100644 api-reference/beta/resources/clientcredentialauthenticationinfo.md create mode 100644 api-reference/beta/resources/externalsapacconnectioninfo.md diff --git a/api-reference/beta/resources/authenticationinfo.md b/api-reference/beta/resources/authenticationinfo.md new file mode 100644 index 00000000000..eb7a800faea --- /dev/null +++ b/api-reference/beta/resources/authenticationinfo.md @@ -0,0 +1,41 @@ +--- +title: "authenticationInfo resource type" +description: "An abstract base type that represents the authentication configuration used to connect to an external system." +author: "vikama-microsoft" +ms.date: 07/13/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# authenticationInfo resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +An abstract base type that represents the authentication configuration used by Microsoft Entra Entitlement Management to connect to an external system. This is an abstract type and can't be created directly. Use one of its derived types instead. + +The following types are derived from authenticationInfo: + +- [clientCredentialAuthenticationInfo](../resources/clientcredentialauthenticationinfo.md) + +## Properties +None. + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.authenticationInfo" +} +``` diff --git a/api-reference/beta/resources/clientcredentialauthenticationinfo.md b/api-reference/beta/resources/clientcredentialauthenticationinfo.md new file mode 100644 index 00000000000..b4ef317b4c7 --- /dev/null +++ b/api-reference/beta/resources/clientcredentialauthenticationinfo.md @@ -0,0 +1,45 @@ +--- +title: "clientCredentialAuthenticationInfo resource type" +description: "Represents client credential authentication information used to connect to an external system from Microsoft Entra Entitlement Management." +author: "vikama-microsoft" +ms.date: 07/13/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# clientCredentialAuthenticationInfo resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents client credential (OAuth 2.0 client credentials) authentication information used by Microsoft Entra Entitlement Management to connect to an external system, including the client identifier, the Azure Key Vault secret reference, and the token endpoint. + +Inherits from [authenticationInfo](../resources/authenticationinfo.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|accessTokenUrl|String|The URL endpoint used to obtain access tokens for authentication with the external system.| +|clientId|String|The client identifier used for authentication with the external system.| +|secretName|String|The name of the secret in Azure Key Vault that contains the client secret.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.clientCredentialAuthenticationInfo", + "clientId": "String", + "secretName": "String", + "accessTokenUrl": "String" +} +``` diff --git a/api-reference/beta/resources/connectioninfo.md b/api-reference/beta/resources/connectioninfo.md index cc035f6998e..5a01ac3d0b1 100644 --- a/api-reference/beta/resources/connectioninfo.md +++ b/api-reference/beta/resources/connectioninfo.md @@ -18,6 +18,7 @@ The connectionInfo object defines the resource locator that is used to communica The following types are derived from connectionInfo: +- [externalSapAcConnectionInfo](../resources/externalsapacconnectioninfo.md) - [externalTokenBasedSapIagConnectionInfo](../resources/externaltokenbasedsapiagconnectioninfo.md) In entitlement management, this object is configured in the following properties and relationships: diff --git a/api-reference/beta/resources/externaloriginresourceconnector.md b/api-reference/beta/resources/externaloriginresourceconnector.md index a3c2ee32585..6a0ca81641f 100644 --- a/api-reference/beta/resources/externaloriginresourceconnector.md +++ b/api-reference/beta/resources/externaloriginresourceconnector.md @@ -33,8 +33,8 @@ Inherits from [entity](../resources/entity.md). ## Properties |Property|Type|Description| |:---|:---|:---| -|connectionInfo|[connectionInfo](../resources/connectioninfo.md)|The connection information used to communicate with the external resource system. When **connectorType** is `sapIag`, the type is [externalTokenBasedSapIagConnectionInfo](../resources/externaltokenbasedsapiagconnectioninfo.md).| -|connectorType|connectorType|The type of connector to SAP being used. The possible values are: `sapIag` (SAP Cloud Identity Access Governance), `sapAc` (SAP Augmented Access Control), `unknownFutureValue`. | +|connectionInfo|[connectionInfo](../resources/connectioninfo.md)|The connection information used to communicate with the external resource system. When **connectorType** is `sapIag`, the type is [externalTokenBasedSapIagConnectionInfo](../resources/externaltokenbasedsapiagconnectioninfo.md). When **connectorType** is `sapAc`, the type is [externalSapAcConnectionInfo](../resources/externalsapacconnectioninfo.md).| +|connectorType|connectorType|The type of connector to SAP being used. The possible values are: `sapIag` (SAP Cloud Identity Access Governance), `sapAc` (SAP Access Control), `unknownFutureValue`. | |createdBy|String|The identifier of the user or application that created the connector.| |createdDateTime|DateTimeOffset|The date and time when the connector was created.| |description|String|A description of the connector.| diff --git a/api-reference/beta/resources/externalsapacconnectioninfo.md b/api-reference/beta/resources/externalsapacconnectioninfo.md new file mode 100644 index 00000000000..11093f85455 --- /dev/null +++ b/api-reference/beta/resources/externalsapacconnectioninfo.md @@ -0,0 +1,55 @@ +--- +title: "externalSapAcConnectionInfo resource type" +description: "Represents connection information for connecting to SAP Access Control (AC) systems from Microsoft Entra Entitlement Management." +author: "vikama-microsoft" +ms.date: 07/13/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# externalSapAcConnectionInfo resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents connection information for connecting to SAP Access Control (AC) systems from Microsoft Entra Entitlement Management. This resource contains the configuration details required to establish a secure connection between an Entitlement Management [accessPackageResource](../resources/accesspackageresource.md)'s **externalOriginResourceConnector** and an SAP AC system, including the target system identity and Azure Key Vault references for credential storage. Used when connectorType in [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) is `sapAc`. + +Inherits from [connectionInfo](../resources/connectioninfo.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|authenticationInfo|[authenticationInfo](../resources/authenticationinfo.md)|The authentication configuration used to connect to the SAP AC system.| +|keyVaultName|String|The name of the Azure Key Vault that stores the credentials used for authentication.| +|resourceGroup|String|The Azure resource group that contains the Key Vault.| +|subscriptionId|String|The Azure subscription ID that contains the Key Vault.| +|systemId|String|The identifier of the target SAP AC system.| +|url|String|The endpoint that is used by Entitlement Management to communicate with the SAP AC system. Inherited from [connectionInfo](../resources/connectioninfo.md).| +|userIdentifier|String|The user identifier used to connect to the SAP AC system.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.externalSapAcConnectionInfo", + "url": "String", + "subscriptionId": "String", + "resourceGroup": "String", + "keyVaultName": "String", + "systemId": "String", + "userIdentifier": "String", + "authenticationInfo": { + "@odata.type": "microsoft.graph.authenticationInfo" + } +} +``` diff --git a/changelog/Microsoft.IGAELM.json b/changelog/Microsoft.IGAELM.json index fd9a4a19b20..494df81ec24 100644 --- a/changelog/Microsoft.IGAELM.json +++ b/changelog/Microsoft.IGAELM.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "01c542b5-f4e5-48ec-9fe8-8b63fdb7ad42", + "ApiChange": "Resource", + "ChangedApiName": "externalSapAcConnectionInfo", + "ChangeType": "Addition", + "Description": "Added the [externalSapAcConnectionInfo](https://learn.microsoft.com/en-us/graph/api/resources/externalsapacconnectioninfo?view=graph-rest-beta) complex type.", + "Target": "externalSapAcConnectionInfo" + }, + { + "Id": "01c542b5-f4e5-48ec-9fe8-8b63fdb7ad42", + "ApiChange": "Resource", + "ChangedApiName": "clientCredentialAuthenticationInfo", + "ChangeType": "Addition", + "Description": "Added the [clientCredentialAuthenticationInfo](https://learn.microsoft.com/en-us/graph/api/resources/clientcredentialauthenticationinfo?view=graph-rest-beta) complex type.", + "Target": "clientCredentialAuthenticationInfo" + }, + { + "Id": "01c542b5-f4e5-48ec-9fe8-8b63fdb7ad42", + "ApiChange": "Resource", + "ChangedApiName": "authenticationInfo", + "ChangeType": "Addition", + "Description": "Added the [authenticationInfo](https://learn.microsoft.com/en-us/graph/api/resources/authenticationinfo?view=graph-rest-beta) abstract complex type.", + "Target": "authenticationInfo" + } + ], + "Id": "01c542b5-f4e5-48ec-9fe8-8b63fdb7ad42", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-11T00:00:00Z", + "WorkloadArea": "Identity and access", + "SubArea": "Governance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index eb1b5e8edc0..fc9ac9b8ae4 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -127,6 +127,15 @@ Added the **sponsorOf** relationship to the [user](/graph/api/resources/user?vie ### Identity and access | Governance +- Added the [Get](/graph/api/accesspackagesubject-get) and [Update](/graph/api/accesspackagesubject-update) methods to the [accessPackageSubject](/graph/api/resources/accesspackagesubject) resource type to manage the subject lifecycle of external directory users in Microsoft Entra entitlement management. +- Added the **type** property to the [accessPackageResourceRole](/graph/api/resources/accesspackageresourcerole) resource to indicate whether an Azure resource role is active or eligible, enabling PIM-based role assignments for Azure resources in access packages. +- Added the [accessPackageSuggestion](/graph/api/resources/accesspackagesuggestion) resource type and related methods for discovering suggested access packages based on related people insights and assignment history. Use the [filterByCurrentUser](/graph/api/accesspackagesuggestions-filterbycurrentuser) function to retrieve personalized suggestions. +- Added the **approverInformationVisibility** property to the [accessPackageApprovalStage](/graph/api/resources/accesspackageapprovalstage) resource to control whether approver information is visible to requestors. +- Added the [endUserSettings](/graph/api/resources/endusersettings) resource type and related methods for configuring access package suggestion behavior, including related people insight levels and approver detail visibility. +- Added the [cancelProcessing](/graph/api/identitygovernance-workflow-cancelprocessing) method to the [workflow](/graph/api/resources/identitygovernance-workflow) resource to cancel workflow runs that are currently in progress or queued. +- Added workflow preview operations to the [workflow](/graph/api/resources/identitygovernance-workflow) resource type in Lifecycle Workflows, enabling you to validate tasks and run workflows in preview mode without affecting production users. +- Added support for automatically quarantining Lifecycle Workflows to stop a workflow from processing more users than expected. Configure thresholds using the **quarantineConfiguration** property on [lifecycleManagementSettings](/graph/api/resources/identitygovernance-lifecyclemanagementsettings), and clear a quarantine by calling [clearQuarantine](/graph/api/identitygovernance-workflow-clearquarantine). +- Added the [externalSapAcConnectionInfo](/graph/api/resources/externalsapacconnectioninfo) complex type, along with the supporting [authenticationInfo](/graph/api/resources/authenticationinfo) and [clientCredentialAuthenticationInfo](/graph/api/resources/clientcredentialauthenticationinfo) types, to configure connections from Microsoft Entra entitlement management to SAP Access Control (AC) systems. Set these on the **connectionInfo** property of an [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) when its **connectorType** is `sapAc`. - Added the [guestSponsorTrigger](/graph/api/resources/identitygovernance-guestsponsortrigger?view=graph-rest-beta&preserve-view=true) resource type to initiate lifecycle workflows when guest users have fewer than the required number of sponsors. - Added support for automatically quarantining Lifecycle Workflows to stop a workflow from processing more users than expected. Configure thresholds using the **quarantineConfiguration** property on [lifecycleManagementSettings](/graph/api/resources/identitygovernance-lifecyclemanagementsettings?view=graph-rest-beta&preserve-view=true), and clear a quarantine by calling [clearQuarantine](/graph/api/identitygovernance-workflow-clearquarantine?view=graph-rest-beta&preserve-view=true). - Added the **parameters** property to the [accessPackageAssignmentRequest](/graph/api/resources/accesspackageassignmentrequest?view=graph-rest-beta&preserve-view=true) resource, typed as the new [accessPackageAssignmentRequestParameters](/graph/api/resources/accesspackageassignmentrequestparameters?view=graph-rest-beta&preserve-view=true) complex type, to bypass the approval requirement configured on the access package policy when creating an assignment request. From 843cc2a4f4c5bc7319fa57ec07fdc44a69ab54d1 Mon Sep 17 00:00:00 2001 From: Anusree-stack <245328036+Anusree-stack@users.noreply.github.com> Date: Thu, 13 Aug 2026 01:55:40 +0530 Subject: [PATCH 037/189] Restore resource scoping guidance and reorder Microsoft 365 capabilities TOC (beta) (#29404) * Restore resource scoping guidance and reorder Microsoft 365 capabilities TOC - Add 'Scope capabilities to the right audience' subsection with include/exclude rules and common scoping scenarios. - Reorder capability bullets under 'Authorize partner access with capability-level precision' to mirror the TOC order. - Remove href from the Microsoft 365 capabilities TOC parent to eliminate the auto-duplicated first entry on Learn; rename the first child to 'Microsoft 365 capabilities overview' and add an explicit 'Microsoft 365 capability base type' child so m365capabilitybase.md keeps a home. * Address PR #29404 review: drive TOC from mapping and refine scoping guidance - Revert hand-edits to generated toc.yml (Celeste blocking issue). - Move m365CapabilityBase into the Microsoft 365 capabilities childNode in toc.mapping.json so the child renders as a sibling instead of the parent href. - Rename toc.title in m365capabilitybase.md to 'Microsoft 365 capability base' to avoid collision with the parent TOC node. - Clarify the 'All' bullet, table row, and cross-links in the overview to cover both user and group resourceType, and to name the included/excluded and resourceType/resourceId properties on the linked resource types. * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- ...365-cross-tenant-access-policy-overview.md | 21 +++++++++++++++++-- .../beta/resources/m365capabilitybase.md | 2 +- api-reference/beta/toc/toc.mapping.json | 4 ++-- 3 files changed, 22 insertions(+), 5 deletions(-) diff --git a/api-reference/beta/resources/m365-cross-tenant-access-policy-overview.md b/api-reference/beta/resources/m365-cross-tenant-access-policy-overview.md index b20958317b3..6662c032100 100644 --- a/api-reference/beta/resources/m365-cross-tenant-access-policy-overview.md +++ b/api-reference/beta/resources/m365-cross-tenant-access-policy-overview.md @@ -30,15 +30,32 @@ The API gives administrators and applications programmatic, granular control ove Control exactly which Microsoft 365 capabilities external users from a trusted partner can use, and scope each capability to specific users, groups, or the entire tenant. Supported capabilities include: -- Profile card and photo sharing. - Calendar availability (free/busy), with basic or limited-detail options. - Calendar sharing, at simple, detail, or reviewer fidelity. - MailTips shown while composing email. -- Places — room and desk booking. - Mailbox migration between tenants (partner policy only). +- Profile card and photo sharing. +- Places — room and desk booking. Teams Shared Channels are also available between trusted tenants, but they're governed directly by Microsoft Entra B2B direct connect rather than by this API. +### Scope capabilities to the right audience + +Enabling a capability doesn't have to expose the entire resource tenant. Each capability can be scoped to specific users, specific groups, or all users or groups in the tenant (depending on the resource scope type). +Scoping works through two lists: an *include* list and an *exclude* list. Two rules govern how they interact: + +- **Exclude wins over include.** If a principal appears on both lists, they're out of scope. +- **Use `"All"` to target every principal of the selected `resourceType`.** For example, `resourceType: user` with `resourceId: "All"` covers every user in the tenant, and `resourceType: group` with `resourceId: "All"` covers every group. You don't need to enumerate individual IDs. + +| Include | Exclude | Effective audience | +| --- | --- | --- | +| `"All"` | *(empty)* | All principals of the selected `resourceType` in the resource tenant. | +| `"All"` | Group A | All users except members of Group A. | +| Group A | *(empty)* | Members of Group A only. | +| Group A | User X | Members of Group A except User X. | + +For the property names and JSON shape, see the **included** and **excluded** properties on [m365CapabilityResourceScopes](m365capabilityresourcescopes.md), and the `resourceType`/`resourceId` pair on [m365CapabilityResourceScope](m365capabilityresourcescope.md). + ### Apply a consistent, two-tier policy model Like Microsoft Entra cross-tenant access, the API uses a two-tier model. A *default policy* sets the global baseline for all external tenants, and a *partner policy* overrides that baseline for a specific tenant to enable, disable, or scope capabilities per partner. When a cross-tenant request arrives, a partner policy takes precedence over the default policy, and the system default is *disabled* for all Microsoft 365 capabilities. diff --git a/api-reference/beta/resources/m365capabilitybase.md b/api-reference/beta/resources/m365capabilitybase.md index 06a11fd1c45..d6cd097a26f 100644 --- a/api-reference/beta/resources/m365capabilitybase.md +++ b/api-reference/beta/resources/m365capabilitybase.md @@ -6,7 +6,7 @@ ms.date: 04/23/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType -toc.title: "Microsoft 365 capabilities" +toc.title: "Microsoft 365 capability base" --- # m365CapabilityBase resource type diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index c66791d5898..8c6d26e2d10 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -3779,14 +3779,14 @@ "crossTenantAccessPolicy", "crossTenantAccessPolicyConfigurationDefault", "crossTenantAccessPolicyConfigurationPartner", - "crossTenantIdentitySyncPolicyPartner", - "m365CapabilityBase" + "crossTenantIdentitySyncPolicyPartner" ], "childNodes": [ { "name": "Microsoft 365 capabilities", "overview": "../../resources/m365-cross-tenant-access-policy-overview.md", "resources": [ + "m365CapabilityBase", "crossTenantCalendarAvailabilityBasic", "crossTenantCalendarAvailabilityLimitedDetails", "crossTenantCalendarSharingFreeBusyDetail", From 6036edee20f6dc428056e06a14e6f909257a1989 Mon Sep 17 00:00:00 2001 From: mehakagarwal Date: Wed, 12 Aug 2026 13:58:29 -0700 Subject: [PATCH 038/189] Add citations to chatMessage (beta) (#29368) * Add citations to chatMessage (beta) Document the new citations collection on the chatMessage resource and the new chatMessageCitation and chatMessageCitationSensitivityLabel complex types for beta. Includes changelog and What's New updates. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: b2abc859-4471-4440-885a-e132c7d90a50 * re name author * Fix changelog links for new citation resources Use the /en-us/graph URL form for the newly added chatMessageCitation and chatMessageCitationSensitivityLabel resource pages so the changelog link check recognizes them as new-in-PR pages. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: b2abc859-4471-4440-885a-e132c7d90a50 * Consolidate citations What's New entry Collapse the citations bullets into a single entry linking the root capability (the citations property on chatMessage), per What's New guidance; the supporting complex types aren't enumerated separately. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: b2abc859-4471-4440-885a-e132c7d90a50 * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix broken changelog links: de-link unpublished teamworkSection reorder method pages * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Mehak Agarwal Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: b2abc859-4471-4440-885a-e132c7d90a50 --- api-reference/beta/resources/chatmessage.md | 3 + .../beta/resources/chatmessagecitation.md | 59 +++++++++++++++++++ .../chatmessagecitationsensitivitylabel.md | 51 ++++++++++++++++ changelog/Microsoft.Teams.GraphSvc.json | 38 +++++++++++- concepts/whats-new-overview.md | 4 ++ 5 files changed, 153 insertions(+), 2 deletions(-) create mode 100644 api-reference/beta/resources/chatmessagecitation.md create mode 100644 api-reference/beta/resources/chatmessagecitationsensitivitylabel.md diff --git a/api-reference/beta/resources/chatmessage.md b/api-reference/beta/resources/chatmessage.md index 7a047bd7a95..7e69b56f06e 100644 --- a/api-reference/beta/resources/chatmessage.md +++ b/api-reference/beta/resources/chatmessage.md @@ -70,6 +70,7 @@ The [targetedChatMessage](targetedchatmessage.md) resource is a specialized type |body|[chatMessageBody](chatmessagebody.md)|Plaintext/HTML/Markdown representation of the content of the chat message. Representation is specified by the **messageBodyContentType** (or deprecated **contentType**) property inside the body. The content is always in HTML if the chat message contains a [chatMessageMention](chatmessagemention.md). | |channelIdentity|[channelIdentity](channelidentity.md)|If the message was sent in a channel, represents identity of the channel.| |chatId|string|If the message was sent in a **chat**, represents the identity of the **chat**.| +|citations|[chatMessageCitation](chatmessagecitation.md) collection|Read-only. Inline citations that reference external sources cited in the message. Citations are system-generated for bot messages and appear as a typed collection.| |createdDateTime|dateTimeOffset|Timestamp of when the chat message was created.| |deletedDateTime|dateTimeOffset|Read-only. Timestamp at which the chat message was deleted, or null if not deleted. | |etag| string | Read-only. Version number of the chat message. | @@ -112,6 +113,7 @@ The following JSON representation shows the resource type. "summary", "attachments", "mentions", + "citations", "reactions", "policyViolation", "chatId", @@ -127,6 +129,7 @@ The following JSON representation shows the resource type. "body": {"@odata.type": "microsoft.graph.chatMessageBody"}, "channelIdentity": {"@odata.type": "microsoft.graph.channelIdentity"}, "chatId": "String", + "citations": [{"@odata.type": "microsoft.graph.chatMessageCitation"}], "createdDateTime": "String (timestamp)", "deletedDateTime": "String (timestamp)", "etag": "String", diff --git a/api-reference/beta/resources/chatmessagecitation.md b/api-reference/beta/resources/chatmessagecitation.md new file mode 100644 index 00000000000..cc69bd9da64 --- /dev/null +++ b/api-reference/beta/resources/chatmessagecitation.md @@ -0,0 +1,59 @@ +--- +title: "chatMessageCitation resource type" +description: "Represents an inline citation on a chat message that references an external source." +author: "RamjotSingh" +doc_type: resourcePageType +ms.localizationpriority: medium +ms.subservice: "teams" +ms.date: 07/29/2026 +--- +# chatMessageCitation resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents an inline citation on a [chatMessage](chatmessage.md) that references an external source. Bot-generated messages can include citations that point to source documents or web resources referenced in the message body. Citations are system-generated and read-only. + +## Properties + +| Property | Type |Description| +|:---------------|:--------|:----------| +|excerpt|String|Read-only. Text snippet from the cited source.| +|iconType|String|Read-only. Icon type identifier for the cited source, for example, `ExcelIcon` or `WordIcon`.| +|id|Int32|Read-only. Citation identifier that's unique within the message. The message body references this identifier inline, for example, `[1]`.| +|sensitivityLabel|[chatMessageCitationSensitivityLabel](chatmessagecitationsensitivitylabel.md)|Read-only. Sensitivity label applied to the cited source.| +|title|String|Read-only. Display title of the cited source.| +|webUrl|String|Read-only. URL to the cited source.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + + +```json +{ + "excerpt": "String", + "iconType": "String", + "id": "Int32", + "sensitivityLabel": {"@odata.type": "microsoft.graph.chatMessageCitationSensitivityLabel"}, + "title": "String", + "webUrl": "String" +} +``` + + diff --git a/api-reference/beta/resources/chatmessagecitationsensitivitylabel.md b/api-reference/beta/resources/chatmessagecitationsensitivitylabel.md new file mode 100644 index 00000000000..a7896bdbe30 --- /dev/null +++ b/api-reference/beta/resources/chatmessagecitationsensitivitylabel.md @@ -0,0 +1,51 @@ +--- +title: "chatMessageCitationSensitivityLabel resource type" +description: "Represents the sensitivity label applied to the source cited by a chat message citation." +author: "RamjotSingh" +doc_type: resourcePageType +ms.localizationpriority: medium +ms.subservice: "teams" +ms.date: 07/29/2026 +--- +# chatMessageCitationSensitivityLabel resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the sensitivity label applied to the source cited by a [chatMessageCitation](chatmessagecitation.md). Provides the display name and description of the sensitivity classification so that consumers can surface the appropriate handling guidance. + +## Properties + +| Property | Type |Description| +|:---------------|:--------|:----------| +|description|String|Read-only. User-facing description of the sensitivity restriction.| +|displayName|String|Read-only. Display name of the sensitivity label.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + + +```json +{ + "description": "String", + "displayName": "String" +} +``` + + diff --git a/changelog/Microsoft.Teams.GraphSvc.json b/changelog/Microsoft.Teams.GraphSvc.json index 492b55ea032..81958d6ecc0 100644 --- a/changelog/Microsoft.Teams.GraphSvc.json +++ b/changelog/Microsoft.Teams.GraphSvc.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "cad22815-dad6-4a0e-bc40-88a1b4002d0f", + "ApiChange": "Resource", + "ChangedApiName": "chatMessageCitation", + "ChangeType": "Addition", + "Description": "Added the [chatMessageCitation](https://learn.microsoft.com/en-us/graph/api/resources/chatmessagecitation?view=graph-rest-beta) resource.", + "Target": "chatMessageCitation" + }, + { + "Id": "cad22815-dad6-4a0e-bc40-88a1b4002d0f", + "ApiChange": "Resource", + "ChangedApiName": "chatMessageCitationSensitivityLabel", + "ChangeType": "Addition", + "Description": "Added the [chatMessageCitationSensitivityLabel](https://learn.microsoft.com/en-us/graph/api/resources/chatmessagecitationsensitivitylabel?view=graph-rest-beta) resource.", + "Target": "chatMessageCitationSensitivityLabel" + }, + { + "Id": "cad22815-dad6-4a0e-bc40-88a1b4002d0f", + "ApiChange": "Property", + "ChangedApiName": "citations", + "ChangeType": "Addition", + "Description": "Added the **citations** property to the [chatMessage](https://learn.microsoft.com/graph/api/resources/chatmessage?view=graph-rest-beta) resource.", + "Target": "chatMessage" + } + ], + "Id": "cad22815-dad6-4a0e-bc40-88a1b4002d0f", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-12T18:12:23.5840851Z", + "WorkloadArea": "Teamwork and communications", + "SubArea": "Messaging" + }, { "ChangeList": [ { @@ -7,7 +41,7 @@ "ApiChange": "Method", "ChangedApiName": "reorder", "ChangeType": "Addition", - "Description": "Added the [reorder](https://learn.microsoft.com/en-us/graph/api/teamworksection-reorder?view=graph-rest-beta) method to the [teamworkSection](https://learn.microsoft.com/en-us/graph/api/resources/teamworksection?view=graph-rest-beta) resource.", + "Description": "Added the **reorder** method to the [teamworkSection](https://learn.microsoft.com/en-us/graph/api/resources/teamworksection?view=graph-rest-beta) resource.", "Target": "teamworkSection" }, { @@ -15,7 +49,7 @@ "ApiChange": "Method", "ChangedApiName": "reorder", "ChangeType": "Addition", - "Description": "Added the [reorder](https://learn.microsoft.com/en-us/graph/api/teamworksectionitem-reorder?view=graph-rest-beta) method to the [teamworkSectionItem](https://learn.microsoft.com/en-us/graph/api/resources/teamworksectionitem?view=graph-rest-beta) resource.", + "Description": "Added the **reorder** method to the [teamworkSectionItem](https://learn.microsoft.com/en-us/graph/api/resources/teamworksectionitem?view=graph-rest-beta) resource.", "Target": "teamworkSectionItem" } ], diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index fc9ac9b8ae4..7155e40cbce 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -188,6 +188,10 @@ Detect and report synthetic (AI-generated) media in meeting calls using the [rep Updated Microsoft Graph documentation for transcript APIs to add guidance on tenant administrator controls that govern transcript access and speaker attribution. For more information, see [Get change notifications for transcripts and recordings using Microsoft Graph](teams-changenotifications-callrecording-and-calltranscript.md). +### Teamwork and communications | Messaging + +- Added the **citations** property to the [chatMessage](/graph/api/resources/chatmessage?view=graph-rest-beta&preserve-view=true) resource type to represent inline citations that reference external sources cited in bot-generated messages. + ### Teamwork and communications | Shift management The **timeZone** property of the [schedule](/graph/api/resources/schedule) resource must be set to an IANA time zone name, such as `America/Chicago` or `Europe/London`. For more information, see [Create or replace schedule](/graph/api/team-put-schedule). From 6155989981ded7f7af53eff2b65b1fc2e00730c0 Mon Sep 17 00:00:00 2001 From: habanthia Date: Thu, 13 Aug 2026 02:50:41 +0530 Subject: [PATCH 039/189] Add appliedByUser parameter to assignSensitivityLabel (beta + v1.0) (#29349) * docs: add appliedByUser parameter to beta assignSensitivityLabel * docs: add appliedByUser parameter to v1.0 assignSensitivityLabel * docs: add changelog entries for appliedByUser parameter (beta + v1.0) * docs: add appliedByUser to What's New overview (Files section) Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fixes * fixes * Update SPE NOTE: require appliedByUser for app-only requests Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update Microsoft.SharePoint.json * update. * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixes --------- Co-authored-by: habanthia Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- .../api/driveitem-assignsensitivitylabel.md | 67 +++++++++++++++++- .../api/driveitem-assignsensitivitylabel.md | 69 +++++++++++++++++-- changelog/Microsoft.FileServices.json | 36 ++++++++++ concepts/whats-new-overview.md | 2 + 4 files changed, 167 insertions(+), 7 deletions(-) diff --git a/api-reference/beta/api/driveitem-assignsensitivitylabel.md b/api-reference/beta/api/driveitem-assignsensitivitylabel.md index dbd5566eee8..02b6377f1c6 100644 --- a/api-reference/beta/api/driveitem-assignsensitivitylabel.md +++ b/api-reference/beta/api/driveitem-assignsensitivitylabel.md @@ -33,7 +33,7 @@ Choose the permission or permissions marked as least privileged for this API. Us [!INCLUDE [permissions-table](../includes/permissions/driveitem-assignsensitivitylabel-permissions.md)] > [!NOTE] -> This API isn't supported for Microsoft SharePoint Embedded containers. +> For Microsoft SharePoint Embedded containers, application-only requests require the `appliedByUser` parameter. ## HTTP request @@ -67,6 +67,7 @@ In the request body, provide the ID for the sensitivity label that is to be assi | sensitivityLabelId | String | Required. ID of the sensitivity label to be assigned, or empty string to remove the sensitivity label. | | assignmentMethod | [sensitivityLabelAssignmentMethod](/graph/api/resources/sensitivitylabelassignment?view=graph-rest-beta&preserve-view=true#sensitivitylabelassignmentmethod-values) | Optional. The assignment method of the label on the document. Indicates whether the assignment of the label was done automatically, standard, or as a privileged operation (the equivalent of an administrator operation). | | justificationText | String | Optional. Justification text for audit purposes. Required when downgrading or removing a label. | +| appliedByUser | [userIdentity](/graph/api/resources/useridentity?view=graph-rest-beta&preserve-view=true) | Optional. The identity of the user on whose behalf the label is applied. Supported only in application (app-only) context. Specify either `id` (Microsoft Entra object ID) or `userPrincipalName`. | ## Response @@ -87,7 +88,9 @@ The following table lists the possible values for the error types. ## Examples -### Request +### Example 1: Assign a sensitivity label + +#### Request The following example shows a request. @@ -111,7 +114,7 @@ Content-Type: application/json --- -### Response +#### Response The following example shows the response. @@ -124,6 +127,64 @@ Location: https://contoso.sharepoint.com/_api/v2.0/monitor/QXNzaWduU2Vuc2l0aXZpd The value of the `Location` header provides a URL for a service that will return the current state of the assignSensitivityLabel operation. You can use this information to [determine when the assignSensitivityLabel operation has finished](/graph/long-running-actions-overview). +### Example 2: Assign a sensitivity label on behalf of a user (app-only) + +#### Request + +The following example shows an app-only request that assigns a label on behalf of a specific user, identified by Microsoft Entra object ID. + + +``` http +POST https://graph.microsoft.com/beta/drives/{drive-id}/items/016GVDAP3RCQS5VBQHORFIVU2ZMOSBL25U/assignSensitivityLabel +Content-Type: application/json + +{ + "sensitivityLabelId": "5feba255-812e-446a-ac59-a7044ef827b5", + "assignmentMethod": "standard", + "justificationText": "test_justification", + "appliedByUser": { + "id": "4a2ec3c4-1b2d-3e4f-5a6b-7c8d9e0f1a2b" + } +} +``` + +#### Response + + +```http +HTTP/1.1 202 Accepted +Location: https://contoso.sharepoint.com/_api/v2.0/monitor/QXNzaWduU2Vuc2l0aXZpdHlMYWJlbCxiMzc3ODY3OS04OWQ3LTRkYmYtYjg0MC1jYWM1NzRhY2FlNmE?tempAuth=****** +``` + +### Example 3: Assign a sensitivity label on behalf of a user using a user principal name (app-only) + +#### Request + +The following example shows an app-only request that identifies the user by their user principal name. + + +``` http +POST https://graph.microsoft.com/beta/drives/{drive-id}/items/016GVDAP3RCQS5VBQHORFIVU2ZMOSBL25U/assignSensitivityLabel +Content-Type: application/json + +{ + "sensitivityLabelId": "5feba255-812e-446a-ac59-a7044ef827b5", + "assignmentMethod": "standard", + "justificationText": "test_justification", + "appliedByUser": { + "userPrincipalName": "adelev@contoso.com" + } +} +``` + +#### Response + + +```http +HTTP/1.1 202 Accepted +Location: https://contoso.sharepoint.com/_api/v2.0/monitor/QXNzaWduU2Vuc2l0aXZpdHlMYWJlbCxiMzc3ODY3OS04OWQ3LTRkYmYtYjg0MC1jYWM1NzRhY2FlNmE?tempAuth=****** +``` + ### Remarks The response from the API only indicates that the assignSensitivityLabel operation was accepted or rejected. The operation might be rejected, for example, if the file type isn't supported, or the file is double encrypted. Audit events for both success and failure cases are logged. For more information, see [Audit log activities](/purview/audit-log-activities#sensitivity-label-activities). diff --git a/api-reference/v1.0/api/driveitem-assignsensitivitylabel.md b/api-reference/v1.0/api/driveitem-assignsensitivitylabel.md index 7ddde95d1d5..1b6420e6be8 100644 --- a/api-reference/v1.0/api/driveitem-assignsensitivitylabel.md +++ b/api-reference/v1.0/api/driveitem-assignsensitivitylabel.md @@ -31,7 +31,7 @@ Choose the permission or permissions marked as least privileged for this API. Us [!INCLUDE [permissions-table](../includes/permissions/driveitem-assignsensitivitylabel-permissions.md)] > [!NOTE] -> This API isn't supported for Microsoft SharePoint Embedded containers. +> For Microsoft SharePoint Embedded containers, application-only requests require the `appliedByUser` parameter. ## HTTP request @@ -64,7 +64,8 @@ In the request body, provide the ID for the sensitivity label that is to be assi |:--------------------|:-----------------------|:---------------------------------| | sensitivityLabelId | String | Required. ID of the sensitivity label to be assigned, or empty string to remove the sensitivity label. | | assignmentMethod | [sensitivityLabelAssignmentMethod](/graph/api/resources/sensitivitylabelassignment?view=graph-rest-1.0&preserve-view=true#sensitivitylabelassignmentmethod-values) | Optional. The assignment method of the label on the document. Indicates whether the assignment of the label was done automatically, standard, or as a privileged operation (the equivalent of an administrator operation). | -| justificationText | String | Optional. Justification text for audit purposes, and is required when downgrading/removing a label. | +| justificationText | String | Optional. Justification text for audit purposes. Required when downgrading or removing a label. | +| appliedByUser | [userIdentity](/graph/api/resources/useridentity?view=graph-rest-1.0&preserve-view=true) | Optional. The identity of the user on whose behalf the label is applied. Supported only in application (app-only) context. Specify either `id` (Microsoft Entra object ID) or `userPrincipalName`. | ## Response @@ -85,7 +86,9 @@ The following table lists the possible values for the error types. ## Examples -### Request +### Example 1: Assign a sensitivity label + +#### Request The following example shows a request. @@ -109,7 +112,7 @@ Content-Type: application/json --- -### Response +#### Response The following example shows the response. @@ -122,6 +125,64 @@ Location: https://contoso.sharepoint.com/_api/v2.0/monitor/QXNzaWduU2Vuc2l0aXZpd The value of the `Location` header provides a URL for a service that returns the current state of the assignSensitivityLabel operation. You can use this information to [determine when the assignSensitivityLabel operation finishes](/graph/long-running-actions-overview). +### Example 2: Assign a sensitivity label on behalf of a user (app-only) + +#### Request + +The following example shows an app-only request that assigns a label on behalf of a specific user, identified by Microsoft Entra object ID. + + +``` http +POST https://graph.microsoft.com/v1.0/drives/{drive-id}/items/016GVDAP3RCQS5VBQHORFIVU2ZMOSBL25U/assignSensitivityLabel +Content-Type: application/json + +{ + "sensitivityLabelId": "5feba255-812e-446a-ac59-a7044ef827b5", + "assignmentMethod": "standard", + "justificationText": "test_justification", + "appliedByUser": { + "id": "4a2ec3c4-1b2d-3e4f-5a6b-7c8d9e0f1a2b" + } +} +``` + +#### Response + + +```http +HTTP/1.1 202 Accepted +Location: https://contoso.sharepoint.com/_api/v2.0/monitor/QXNzaWduU2Vuc2l0aXZpdHlMYWJlbCxiMzc3ODY3OS04OWQ3LTRkYmYtYjg0MC1jYWM1NzRhY2FlNmE?tempAuth=****** +``` + +### Example 3: Assign a sensitivity label on behalf of a user using a user principal name (app-only) + +#### Request + +The following example shows an app-only request that identifies the user by their user principal name. + + +``` http +POST https://graph.microsoft.com/v1.0/drives/{drive-id}/items/016GVDAP3RCQS5VBQHORFIVU2ZMOSBL25U/assignSensitivityLabel +Content-Type: application/json + +{ + "sensitivityLabelId": "5feba255-812e-446a-ac59-a7044ef827b5", + "assignmentMethod": "standard", + "justificationText": "test_justification", + "appliedByUser": { + "userPrincipalName": "adelev@contoso.com" + } +} +``` + +#### Response + + +```http +HTTP/1.1 202 Accepted +Location: https://contoso.sharepoint.com/_api/v2.0/monitor/QXNzaWduU2Vuc2l0aXZpdHlMYWJlbCxiMzc3ODY3OS04OWQ3LTRkYmYtYjg0MC1jYWM1NzRhY2FlNmE?tempAuth=****** +``` + ### Remarks The response from the API only indicates that the assignSensitivityLabel operation was accepted or rejected. The operation might be rejected, for example, if the file type isn't supported, or the file is double encrypted. Audit events for both success and failure cases are logged. For more information, see [Audit log activities](/purview/audit-log-activities#sensitivity-label-activities). diff --git a/changelog/Microsoft.FileServices.json b/changelog/Microsoft.FileServices.json index f98b2558187..6070c31eaf5 100644 --- a/changelog/Microsoft.FileServices.json +++ b/changelog/Microsoft.FileServices.json @@ -1,5 +1,23 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "87e904df-d6a6-4e69-a697-bdfa505f9d2d", + "ApiChange": "Parameter", + "ChangedApiName": "appliedByUser", + "ChangeType": "Addition", + "Description": "Added the **appliedByUser** parameter to the [assignSensitivityLabel](https://learn.microsoft.com/en-us/graph/api/driveitem-assignsensitivitylabel?view=graph-rest-beta) action on [driveItem](https://learn.microsoft.com/en-us/graph/api/resources/driveitem?view=graph-rest-beta). This parameter allows app-only callers to specify the user on whose behalf the label is applied.", + "Target": "driveItem" + } + ], + "Id": "87e904df-d6a6-4e69-a697-bdfa505f9d2d", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-12T06:57:00.0000000Z", + "WorkloadArea": "Files", + "SubArea": "" + }, { "ChangeList": [ { @@ -18,6 +36,24 @@ "WorkloadArea": "Files", "SubArea": "" }, + { + "ChangeList": [ + { + "Id": "0ed23253-c04f-42ae-8648-de8a21154a97", + "ApiChange": "Parameter", + "ChangedApiName": "appliedByUser", + "ChangeType": "Addition", + "Description": "Added the **appliedByUser** parameter to the [assignSensitivityLabel](https://learn.microsoft.com/en-us/graph/api/driveitem-assignsensitivitylabel?view=graph-rest-1.0) action on [driveItem](https://learn.microsoft.com/en-us/graph/api/resources/driveitem?view=graph-rest-1.0). This parameter allows app-only callers to specify the user on whose behalf the label is applied.", + "Target": "driveItem" + } + ], + "Id": "0ed23253-c04f-42ae-8648-de8a21154a97", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-12T06:57:00.0000000Z", + "WorkloadArea": "Files", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 7155e40cbce..d675d91fbf0 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -24,12 +24,14 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what ### Files - Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer) resource type to create or update up to 20 columnDefinition objects in a single request. +- Added the **appliedByUser** parameter to the [assignSensitivityLabel](/graph/api/driveitem-assignsensitivitylabel) action on the [driveItem](/graph/api/resources/driveitem) resource. This parameter allows app-only callers to specify the user identity on whose behalf the sensitivity label is applied. ## August 2026: New in preview only ### Files - Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns?view=graph-rest-beta&preserve-view=true) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource type to create or update up to 20 columnDefinition objects in a single request. +- Added the **appliedByUser** parameter to the [assignSensitivityLabel](/graph/api/driveitem-assignsensitivitylabel?view=graph-rest-beta&preserve-view=true) action on the [driveItem](/graph/api/resources/driveitem?view=graph-rest-beta&preserve-view=true) resource. This parameter allows app-only callers to specify the user identity on whose behalf the sensitivity label is applied, enabling label assignment for SharePoint Embedded containers. ### Teamwork and communications | Messaging From 1b1872c74576ea18afb0dba85c0ffe8777094dd2 Mon Sep 17 00:00:00 2001 From: Ross McAllister <10053959+rmca14@users.noreply.github.com> Date: Wed, 12 Aug 2026 16:52:50 -0700 Subject: [PATCH 040/189] Update stale bot (#29433) --- .github/workflows/stale.yml | 41 +++++++++++++++++++++++++++++++++++++ 1 file changed, 41 insertions(+) create mode 100644 .github/workflows/stale.yml diff --git a/.github/workflows/stale.yml b/.github/workflows/stale.yml new file mode 100644 index 00000000000..761368eb60e --- /dev/null +++ b/.github/workflows/stale.yml @@ -0,0 +1,41 @@ +# This workflow warns and then closes issues and PRs that have had no activity for a specified amount of time. +# +# You can adjust the behavior by modifying this file. +# For more information, see: +# https://github.com/actions/stale +name: Mark stale issues and pull requests + +permissions: + issues: write + pull-requests: write + +on: + schedule: + - cron: '0 */6 * * *' + +jobs: + stale: + + runs-on: ubuntu-latest + + steps: + - uses: actions/stale@v5 + with: + repo-token: ${{ secrets.GITHUB_TOKEN }} + days-before-pr-stale: 120 + days-before-pr-close: 130 + stale-pr-label: 'inactive' + close-pr-label: 'auto-close' + exempt-pr-label: 'keep-open' + stale-pr-message: > + This pull request has been inactive for 120 days. If you are finished with your changes, resolve any merge conflicts and/or validation warnings, and add a **#sign-off** comment. For instructions, see the [MSec Docs Self-Serve Playbook](https://aka.ms/MSecDocsSelfServePlaybook). +
+
If this PR is inactive for 10 more days it will be closed automatically. Thank you! +
+
If you have a question, post on the MSEC Documentation Excellence Program [Ask an Admin](https://teams.microsoft.com/l/channel/19%3A0cdb9988d02e4f78bef37d571686ec5b%40thread.tacv2/Ask%20an%20Admin?groupId=8b6faa31-5d02-4e94-90eb-f1944d5c40fd&tenantId=72f988bf-86f1-41af-91ab-2d7cd011db47) Teams channel. + close-pr-message: > +
This pull request has been inactive for 130 days. At this time we're closing the PR. +
+
If you decide to continue working on your changes, you can reopen the PR and continue working. Thank you! +
+
If you have a question, post on the MSEC Documentation Excellence Program [Ask an Admin](https://teams.microsoft.com/l/channel/19%3A0cdb9988d02e4f78bef37d571686ec5b%40thread.tacv2/Ask%20an%20Admin?groupId=8b6faa31-5d02-4e94-90eb-f1944d5c40fd&tenantId=72f988bf-86f1-41af-91ab-2d7cd011db47) Teams channel. \ No newline at end of file From 5d2691bcfbf7be60e8d487a633512c0b61bc0321 Mon Sep 17 00:00:00 2001 From: Ruth Waithera Date: Thu, 13 Aug 2026 04:00:33 +0300 Subject: [PATCH 041/189] Remove distributionListMembers resource (#29278) * Update changelog * Remove documentation of distributionListMembers * Update reference TOC * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Minor fix. * Delete redirects/.openpublishing.redirection.2026-07.json * update * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update pdl documentation to expand on members * Update what's new * Update response blockType in distributionListMember resource * Update reference TOC * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixes * fix * Update reference TOC --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- .../beta/api/distributionlist-addmembers.md | 36 +------ .../api/distributionlist-deletemembers.md | 36 +------ ...ributionlist-get-distributionlistmember.md | 91 ---------------- .../beta/api/distributionlist-get.md | 33 +----- ...butionlist-list-distributionlistmembers.md | 102 ------------------ .../beta/api/distributionlist-update.md | 46 +------- .../beta/api/user-list-distributionlists.md | 27 ----- .../beta/api/user-post-distributionlists.md | 58 +--------- ...-get-distributionlistmember-permissions.md | 12 --- ...ist-distributionlistmembers-permissions.md | 12 --- .../beta/resources/distributionlist.md | 23 ++-- .../beta/resources/distributionlistmember.md | 31 +++--- api-reference/beta/resources/member.md | 21 ++-- .../beta/toc/personal-contacts/toc.yml | 12 +-- api-reference/beta/toc/tenants/toc.yml | 3 +- changelog/Microsoft.Exchange.json | 92 ++++++++++++++++ concepts/whats-new-overview.md | 6 +- .../.openpublishing.redirection.2026-05.json | 10 ++ 18 files changed, 158 insertions(+), 493 deletions(-) delete mode 100644 api-reference/beta/api/distributionlist-get-distributionlistmember.md delete mode 100644 api-reference/beta/api/distributionlist-list-distributionlistmembers.md delete mode 100644 api-reference/beta/includes/permissions/distributionlist-get-distributionlistmember-permissions.md delete mode 100644 api-reference/beta/includes/permissions/distributionlist-list-distributionlistmembers-permissions.md diff --git a/api-reference/beta/api/distributionlist-addmembers.md b/api-reference/beta/api/distributionlist-addmembers.md index 49a3be7d2e0..b93c067cdaf 100644 --- a/api-reference/beta/api/distributionlist-addmembers.md +++ b/api-reference/beta/api/distributionlist-addmembers.md @@ -1,8 +1,8 @@ --- title: "distributionList: addMembers" description: "Add members to a distributionList." -author: "kemwangi" -ms.date: 06/09/2026 +author: "rwaithera" +ms.date: 08/03/2026 ms.localizationpriority: medium ms.subservice: "outlook" doc_type: apiPageType @@ -51,7 +51,7 @@ The following table lists the parameters that are required when you call this ac |Parameter|Type|Description| |:---|:---|:---| -|members|[member](../resources/member.md) collection|The list of members to add to the distribution list. Each member must include an **emailAddress**. The **displayName** and **recipientType** properties are optional. Required.| +|members|[member](../resources/member.md) collection|The members to add to the distribution list. Each member must include **type** and either **key**, **memberId**, or both. Required.| ## Response @@ -62,7 +62,6 @@ If successful, this action returns a `200 OK` response code and a [distributionL ### Request The following example shows a request. -# [HTTP](#tab/http) -[!INCLUDE [permissions-table](../includes/permissions/distributionlist-get-distributionlistmember-permissions.md)] - -## HTTP request - - -``` http -GET /me/distributionLists/{distributionList-id}/distributionListMembers/{distributionListMember-id} -GET /users/{id | userPrincipalName}/distributionLists/{distributionList-id}/distributionListMembers/{distributionListMember-id} -``` - -## Optional query parameters - -This method supports the `$select` OData query parameter to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). - -## Request headers - -|Name|Description| -|:---|:---| -|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| - -## Request body - -Don't supply a request body for this method. - -## Response - -If successful, this method returns a `200 OK` response code and a [distributionListMember](../resources/distributionlistmember.md) object in the response body. - -## Examples - -### Request - -The following example shows a request. - -``` http -GET https://graph.microsoft.com/beta/me/distributionLists/AAMkAGI2THVSAAA=/distributionListMembers/AAMkAGI2member1 -``` - -### Response - -The following example shows the response. - -``` http -HTTP/1.1 200 OK -Content-Type: application/json - -{ - "@odata.context": "https://graph.microsoft.com/beta/$metadata#users('user-id')/distributionLists('AAMkAGI2THVSAAA=')/distributionListMembers/$entity", - "id": "AAMkAGI2member1", - "displayName": "Adele Vance", - "recipientType": "mailbox", - "contactId": null -} -``` diff --git a/api-reference/beta/api/distributionlist-get.md b/api-reference/beta/api/distributionlist-get.md index 5ab794cb499..485a7ebf3b3 100644 --- a/api-reference/beta/api/distributionlist-get.md +++ b/api-reference/beta/api/distributionlist-get.md @@ -38,11 +38,9 @@ GET /users/{id | userPrincipalName}/distributionLists/{distributionList-id} ## Optional query parameters -This method supports the `$select` and `$expand` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). +This method supports the `$select` OData query parameter to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). -The **members** property isn't returned by default. Use `$select=members` to include it in the response. - -Use `$expand=distributionListMembers` to include the expanded member list in the response. +The **members** relationship isn't returned by default. Use `$expand=members` to include it in the response. ## Request headers @@ -63,7 +61,6 @@ If successful, this method returns a `200 OK` response code and a [distributionL ### Request The following example shows a request. -# [HTTP](#tab/http) -[!INCLUDE [permissions-table](../includes/permissions/distributionlist-list-distributionlistmembers-permissions.md)] - -## HTTP request - - -``` http -GET /me/distributionLists/{distributionList-id}/distributionListMembers -GET /users/{id | userPrincipalName}/distributionLists/{distributionList-id}/distributionListMembers -``` - -## Optional query parameters - -This method supports the `$select`, `$top`, `$skip`, and `$count` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). - -## Request headers - -|Name|Description| -|:---|:---| -|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| - -## Request body - -Don't supply a request body for this method. - -## Response - -If successful, this method returns a `200 OK` response code and a collection of [distributionListMember](../resources/distributionlistmember.md) objects in the response body. - -## Examples - -### Request - -The following example shows a request. - -``` http -GET https://graph.microsoft.com/beta/me/distributionLists/AAMkAGI2THVSAAA=/distributionListMembers -``` - -### Response - -The following example shows the response. ->**Note:** The response object shown here might be shortened for readability. - -``` http -HTTP/1.1 200 OK -Content-Type: application/json - -{ - "@odata.context": "https://graph.microsoft.com/beta/$metadata#users('user-id')/distributionLists('AAMkAGI2THVSAAA=')/distributionListMembers", - "value": [ - { - "id": "AAMkAGI2member1", - "displayName": "Adele Vance", - "recipientType": "mailbox", - "contactId": null - }, - { - "id": "AAMkAGI2member2", - "displayName": "Alex Wilber", - "recipientType": "mailbox", - "contactId": "BBNkAGI2..." - } - ] -} -``` diff --git a/api-reference/beta/api/distributionlist-update.md b/api-reference/beta/api/distributionlist-update.md index 21c041999c1..b399966a36f 100644 --- a/api-reference/beta/api/distributionlist-update.md +++ b/api-reference/beta/api/distributionlist-update.md @@ -50,7 +50,6 @@ PATCH /users/{id | userPrincipalName}/distributionLists/{distributionList-id} |Property|Type|Description| |:---|:---|:---| |displayName|String|The display name of the distribution list. Optional.| -|members|[member](../resources/member.md) collection|The list of members in the distribution list. This replaces the entire member list. Optional.| ## Response @@ -61,7 +60,6 @@ If successful, this method returns a `200 OK` response code and an updated [dist ### Request The following example shows a request. -# [HTTP](#tab/http) +``` json +{ + "@odata.type": "#microsoft.graph.security.a365AiExecuteTool", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-a365aiinferencecall.md b/api-reference/v1.0/resources/security-a365aiinferencecall.md new file mode 100644 index 00000000000..a5246843131 --- /dev/null +++ b/api-reference/v1.0/resources/security-a365aiinferencecall.md @@ -0,0 +1,49 @@ +--- +title: "a365AiInferenceCall resource type" +description: "Represents an audit record for Analytics 365 AI inference call events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Analytics 365 AI inference call audit record" +--- +# a365AiInferenceCall resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Analytics 365 AI inference call events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.a365AiInferenceCall", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-a365aiinvokeagent.md b/api-reference/v1.0/resources/security-a365aiinvokeagent.md new file mode 100644 index 00000000000..996eb5d43ef --- /dev/null +++ b/api-reference/v1.0/resources/security-a365aiinvokeagent.md @@ -0,0 +1,49 @@ +--- +title: "a365AiInvokeAgent resource type" +description: "Represents an audit record for Analytics 365 AI invoke agent events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Analytics 365 AI invoke agent audit record" +--- +# a365AiInvokeAgent resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Analytics 365 AI invoke agent events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.a365AiInvokeAgent", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-a365airunsummary.md b/api-reference/v1.0/resources/security-a365airunsummary.md new file mode 100644 index 00000000000..9f37de7f31b --- /dev/null +++ b/api-reference/v1.0/resources/security-a365airunsummary.md @@ -0,0 +1,49 @@ +--- +title: "a365AiRunSummary resource type" +description: "Represents an audit record for Analytics 365 AI run summary events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Analytics 365 AI run summary audit record" +--- +# a365AiRunSummary resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Analytics 365 AI run summary events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.a365AiRunSummary", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-a365spanoutputs.md b/api-reference/v1.0/resources/security-a365spanoutputs.md new file mode 100644 index 00000000000..938658468c5 --- /dev/null +++ b/api-reference/v1.0/resources/security-a365spanoutputs.md @@ -0,0 +1,49 @@ +--- +title: "a365SpanOutputs resource type" +description: "Represents an audit record for Analytics 365 span outputs events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Analytics 365 span outputs audit record" +--- +# a365SpanOutputs resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Analytics 365 span outputs events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.a365SpanOutputs", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aadriskdetectionauditrecord.md b/api-reference/v1.0/resources/security-aadriskdetectionauditrecord.md new file mode 100644 index 00000000000..5169fe5a0f6 --- /dev/null +++ b/api-reference/v1.0/resources/security-aadriskdetectionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "aadRiskDetectionAuditRecord resource type" +description: "Represents an audit record for Azure Active Directory risk detection events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Active Directory risk detection audit record" +--- +# aadRiskDetectionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Active Directory risk detection events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aadRiskDetectionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aedauditrecord.md b/api-reference/v1.0/resources/security-aedauditrecord.md new file mode 100644 index 00000000000..1dd06e7a948 --- /dev/null +++ b/api-reference/v1.0/resources/security-aedauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "aedAuditRecord resource type" +description: "Represents an audit record for Advanced eDiscovery events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Advanced eDiscovery audit record" +--- +# aedAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Advanced eDiscovery events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aedAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-agentadminactivityrecord.md b/api-reference/v1.0/resources/security-agentadminactivityrecord.md new file mode 100644 index 00000000000..5f07ace558a --- /dev/null +++ b/api-reference/v1.0/resources/security-agentadminactivityrecord.md @@ -0,0 +1,49 @@ +--- +title: "agentAdminActivityRecord resource type" +description: "Represents an audit record for agent admin events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Agent admin audit record" +--- +# agentAdminActivityRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for agent admin events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.agentAdminActivityRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-agentsettingadminactivity.md b/api-reference/v1.0/resources/security-agentsettingadminactivity.md new file mode 100644 index 00000000000..ac216e7aefd --- /dev/null +++ b/api-reference/v1.0/resources/security-agentsettingadminactivity.md @@ -0,0 +1,49 @@ +--- +title: "agentSettingAdminActivity resource type" +description: "Represents an audit record for agent setting events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Agent setting audit record" +--- +# agentSettingAdminActivity resource type + +Namespace: microsoft.graph.security + +Represents an audit record for agent setting events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.agentSettingAdminActivity", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aiappinteractionauditrecord.md b/api-reference/v1.0/resources/security-aiappinteractionauditrecord.md new file mode 100644 index 00000000000..e6d617b2d25 --- /dev/null +++ b/api-reference/v1.0/resources/security-aiappinteractionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "aiAppInteractionAuditRecord resource type" +description: "Represents an audit record for AI app events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "AI app audit record" +--- +# aiAppInteractionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for AI app events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aiAppInteractionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aiexecutetoolauditrecord.md b/api-reference/v1.0/resources/security-aiexecutetoolauditrecord.md new file mode 100644 index 00000000000..c602be6facb --- /dev/null +++ b/api-reference/v1.0/resources/security-aiexecutetoolauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "aiExecuteToolAuditRecord resource type" +description: "Represents an audit record for AI execute tool events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "AI execute tool audit record" +--- +# aiExecuteToolAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for AI execute tool events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aiExecuteToolAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aiinteractionschangenotificationauditrecord.md b/api-reference/v1.0/resources/security-aiinteractionschangenotificationauditrecord.md new file mode 100644 index 00000000000..a6ba739c535 --- /dev/null +++ b/api-reference/v1.0/resources/security-aiinteractionschangenotificationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "aiInteractionsChangeNotificationAuditRecord resource type" +description: "Represents an audit record for AI interactions change notification events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "AI interactions change notification audit record" +--- +# aiInteractionsChangeNotificationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for AI interactions change notification events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aiInteractionsChangeNotificationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aiinteractionsexportauditrecord.md b/api-reference/v1.0/resources/security-aiinteractionsexportauditrecord.md new file mode 100644 index 00000000000..22d60ee21c9 --- /dev/null +++ b/api-reference/v1.0/resources/security-aiinteractionsexportauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "aiInteractionsExportAuditRecord resource type" +description: "Represents an audit record for AI interactions export events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "AI interactions export audit record" +--- +# aiInteractionsExportAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for AI interactions export events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aiInteractionsExportAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aiinteractionssubscriptionauditrecord.md b/api-reference/v1.0/resources/security-aiinteractionssubscriptionauditrecord.md new file mode 100644 index 00000000000..8feefec12f6 --- /dev/null +++ b/api-reference/v1.0/resources/security-aiinteractionssubscriptionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "aiInteractionsSubscriptionAuditRecord resource type" +description: "Represents an audit record for AI interactions subscription events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "AI interactions subscription audit record" +--- +# aiInteractionsSubscriptionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for AI interactions subscription events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aiInteractionsSubscriptionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aiinvokeagentauditrecord.md b/api-reference/v1.0/resources/security-aiinvokeagentauditrecord.md new file mode 100644 index 00000000000..3c8b108cc17 --- /dev/null +++ b/api-reference/v1.0/resources/security-aiinvokeagentauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "aiInvokeAgentAuditRecord resource type" +description: "Represents an audit record for AI invoke agent events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "AI invoke agent audit record" +--- +# aiInvokeAgentAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for AI invoke agent events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aiInvokeAgentAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aipdiscover.md b/api-reference/v1.0/resources/security-aipdiscover.md new file mode 100644 index 00000000000..b710a719905 --- /dev/null +++ b/api-reference/v1.0/resources/security-aipdiscover.md @@ -0,0 +1,49 @@ +--- +title: "aipDiscover resource type" +description: "Represents an audit record for Azure Information Protection (AIP) discover events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Information Protection (AIP) discover audit record" +--- +# aipDiscover resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Information Protection (AIP) discover events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aipDiscover", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aipfiledeleted.md b/api-reference/v1.0/resources/security-aipfiledeleted.md new file mode 100644 index 00000000000..1a77742aff9 --- /dev/null +++ b/api-reference/v1.0/resources/security-aipfiledeleted.md @@ -0,0 +1,49 @@ +--- +title: "aipFileDeleted resource type" +description: "Represents an audit record for Azure Information Protection (AIP) file deleted events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Information Protection (AIP) file deleted audit record" +--- +# aipFileDeleted resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Information Protection (AIP) file deleted events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aipFileDeleted", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aipheartbeat.md b/api-reference/v1.0/resources/security-aipheartbeat.md new file mode 100644 index 00000000000..fd1782140a8 --- /dev/null +++ b/api-reference/v1.0/resources/security-aipheartbeat.md @@ -0,0 +1,49 @@ +--- +title: "aipHeartBeat resource type" +description: "Represents an audit record for Azure Information Protection (AIP) heartbeat events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Information Protection (AIP) heartbeat audit record" +--- +# aipHeartBeat resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Information Protection (AIP) heartbeat events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aipHeartBeat", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aipprotectionactionlogrequest.md b/api-reference/v1.0/resources/security-aipprotectionactionlogrequest.md new file mode 100644 index 00000000000..3547345a1a3 --- /dev/null +++ b/api-reference/v1.0/resources/security-aipprotectionactionlogrequest.md @@ -0,0 +1,49 @@ +--- +title: "aipProtectionActionLogRequest resource type" +description: "Represents an audit record for Azure Information Protection (AIP) protection action log request events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Information Protection (AIP) protection action log request audit record" +--- +# aipProtectionActionLogRequest resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Information Protection (AIP) protection action log request events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aipProtectionActionLogRequest", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aipscannerdiscoverevent.md b/api-reference/v1.0/resources/security-aipscannerdiscoverevent.md new file mode 100644 index 00000000000..532c943fe3a --- /dev/null +++ b/api-reference/v1.0/resources/security-aipscannerdiscoverevent.md @@ -0,0 +1,49 @@ +--- +title: "aipScannerDiscoverEvent resource type" +description: "Represents an audit record for Azure Information Protection (AIP) scanner discover events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Information Protection (AIP) scanner discover audit record" +--- +# aipScannerDiscoverEvent resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Information Protection (AIP) scanner discover events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aipScannerDiscoverEvent", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aipsensitivitylabelactionlogrequest.md b/api-reference/v1.0/resources/security-aipsensitivitylabelactionlogrequest.md new file mode 100644 index 00000000000..74a34d287ff --- /dev/null +++ b/api-reference/v1.0/resources/security-aipsensitivitylabelactionlogrequest.md @@ -0,0 +1,49 @@ +--- +title: "aipSensitivityLabelActionLogRequest resource type" +description: "Represents an audit record for Azure Information Protection (AIP) sensitivity label action log request events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Information Protection (AIP) sensitivity label action log request audit record" +--- +# aipSensitivityLabelActionLogRequest resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Information Protection (AIP) sensitivity label action log request events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aipSensitivityLabelActionLogRequest", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-airadminactioninvestigationdata.md b/api-reference/v1.0/resources/security-airadminactioninvestigationdata.md new file mode 100644 index 00000000000..97f8783ff9d --- /dev/null +++ b/api-reference/v1.0/resources/security-airadminactioninvestigationdata.md @@ -0,0 +1,49 @@ +--- +title: "airAdminActionInvestigationData resource type" +description: "Represents an audit record for Automated Investigation and Response (AIR) admin action investigation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Automated Investigation and Response (AIR) admin action investigation audit record" +--- +# airAdminActionInvestigationData resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Automated Investigation and Response (AIR) admin action investigation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.airAdminActionInvestigationData", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-airinvestigationdata.md b/api-reference/v1.0/resources/security-airinvestigationdata.md new file mode 100644 index 00000000000..20df950609b --- /dev/null +++ b/api-reference/v1.0/resources/security-airinvestigationdata.md @@ -0,0 +1,49 @@ +--- +title: "airInvestigationData resource type" +description: "Represents an audit record for Automated Investigation and Response (AIR) investigation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Automated Investigation and Response (AIR) investigation audit record" +--- +# airInvestigationData resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Automated Investigation and Response (AIR) investigation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.airInvestigationData", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-airmanualinvestigationdata.md b/api-reference/v1.0/resources/security-airmanualinvestigationdata.md new file mode 100644 index 00000000000..4bb84503c66 --- /dev/null +++ b/api-reference/v1.0/resources/security-airmanualinvestigationdata.md @@ -0,0 +1,49 @@ +--- +title: "airManualInvestigationData resource type" +description: "Represents an audit record for Automated Investigation and Response (AIR) manual investigation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Automated Investigation and Response (AIR) manual investigation audit record" +--- +# airManualInvestigationData resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Automated Investigation and Response (AIR) manual investigation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.airManualInvestigationData", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-aispanoutputsauditrecord.md b/api-reference/v1.0/resources/security-aispanoutputsauditrecord.md new file mode 100644 index 00000000000..fd309a339c5 --- /dev/null +++ b/api-reference/v1.0/resources/security-aispanoutputsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "aISpanOutputsAuditRecord resource type" +description: "Represents an audit record for AI span outputs events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "AI span outputs audit record" +--- +# aISpanOutputsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for AI span outputs events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.aISpanOutputsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-alertsubmissionauditrecord.md b/api-reference/v1.0/resources/security-alertsubmissionauditrecord.md new file mode 100644 index 00000000000..d0e06e04c2e --- /dev/null +++ b/api-reference/v1.0/resources/security-alertsubmissionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "alertSubmissionAuditRecord resource type" +description: "Represents an audit record for alert submission events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Alert submission audit record" +--- +# alertSubmissionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for alert submission events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.alertSubmissionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-alertsubmissionresultdetailauditrecord.md b/api-reference/v1.0/resources/security-alertsubmissionresultdetailauditrecord.md new file mode 100644 index 00000000000..f83c2c66e25 --- /dev/null +++ b/api-reference/v1.0/resources/security-alertsubmissionresultdetailauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "alertSubmissionResultDetailAuditRecord resource type" +description: "Represents an audit record for alert submission result detail events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Alert submission result detail audit record" +--- +# alertSubmissionResultDetailAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for alert submission result detail events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.alertSubmissionResultDetailAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-attacksimadminauditrecord.md b/api-reference/v1.0/resources/security-attacksimadminauditrecord.md new file mode 100644 index 00000000000..1084e32a048 --- /dev/null +++ b/api-reference/v1.0/resources/security-attacksimadminauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "attackSimAdminAuditRecord resource type" +description: "Represents an audit record for Attack Simulation admin events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Attack Simulation admin audit record" +--- +# attackSimAdminAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Attack Simulation admin events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.attackSimAdminAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-attacksimauditrecord.md b/api-reference/v1.0/resources/security-attacksimauditrecord.md new file mode 100644 index 00000000000..b0d1b2a03e0 --- /dev/null +++ b/api-reference/v1.0/resources/security-attacksimauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "attackSimAuditRecord resource type" +description: "Represents an audit record for Attack Simulation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Attack Simulation audit record" +--- +# attackSimAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Attack Simulation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.attackSimAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-auditconfigauditrecord.md b/api-reference/v1.0/resources/security-auditconfigauditrecord.md new file mode 100644 index 00000000000..232623a580b --- /dev/null +++ b/api-reference/v1.0/resources/security-auditconfigauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "auditConfigAuditRecord resource type" +description: "Represents an audit record for audit configuration events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Audit configuration audit record" +--- +# auditConfigAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for audit configuration events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.auditConfigAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-auditcoreroot.md b/api-reference/v1.0/resources/security-auditcoreroot.md new file mode 100644 index 00000000000..3d522f0f8a3 --- /dev/null +++ b/api-reference/v1.0/resources/security-auditcoreroot.md @@ -0,0 +1,47 @@ +--- +title: "auditCoreRoot resource type" +description: "Represents the entry point for the audit log query API in Microsoft Graph." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Audit core root" +--- +# auditCoreRoot resource type + +Namespace: microsoft.graph.security + +Represents the entry point for the audit log query API in Microsoft Graph. Use this resource to access audit log records through the **queries** navigation property. + +## Methods + +|Method|Return type|Description| +|:---|:---|:---| +|[List audit log queries](../api/security-auditcoreroot-list-auditlogqueries.md)|[auditLogQuery](../resources/security-auditlogquery.md) collection|Get a list of the [auditLogQuery](../resources/security-auditlogquery.md) objects and their properties.| +|[Create audit log query](../api/security-auditcoreroot-post-auditlogqueries.md)|[auditLogQuery](../resources/security-auditlogquery.md)|Create a new [auditLogQuery](../resources/security-auditlogquery.md) object.| + +## Properties + +None. + +## Relationships + +|Relationship|Type|Description| +|:---|:---|:---| +|queries|[microsoft.graph.security.auditLogQuery](../resources/security-auditlogquery.md) collection|The collection of audit log queries.| + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.auditCoreRoot" +} +``` diff --git a/api-reference/v1.0/resources/security-auditdata.md b/api-reference/v1.0/resources/security-auditdata.md index 85d7bca1eef..1bd4cc5f3bb 100644 --- a/api-reference/v1.0/resources/security-auditdata.md +++ b/api-reference/v1.0/resources/security-auditdata.md @@ -16,7 +16,9 @@ An abstract type that supports the audit logs of various Microsoft 365 services ## Properties -None. +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|An open-type dictionary that contains dynamic audit event properties as name-value pairs.| ## Relationships @@ -32,6 +34,9 @@ The following JSON representation shows the resource type. --> ``` json { - "@odata.type": "#microsoft.graph.security.auditData" + "@odata.type": "#microsoft.graph.security.auditData", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } } ``` diff --git a/api-reference/v1.0/resources/security-auditlogquery.md b/api-reference/v1.0/resources/security-auditlogquery.md index a96bf3cf499..2b1195304c3 100644 --- a/api-reference/v1.0/resources/security-auditlogquery.md +++ b/api-reference/v1.0/resources/security-auditlogquery.md @@ -1,61 +1,59 @@ --- title: "auditLogQuery resource type" -description: "Represents an audit log query that is used to query and retrieve relevant audit log records." -author: "arishojaswi" +description: "Represents a query against the Microsoft 365 unified audit log." +author: "imsandhya7-spec" +ms.subservice: security ms.localizationpriority: medium -ms.subservice: "security" doc_type: resourcePageType -ms.date: 09/10/2024 +ms.date: 06/17/2026 +toc.title: "Audit log query" --- - # auditLogQuery resource type Namespace: microsoft.graph.security -Represents an audit log query that is used to query and retrieve relevant audit log records. +Represents a query against the Microsoft 365 unified audit log. Use this resource to define search parameters and retrieve audit log records. Inherits from [microsoft.graph.entity](../resources/entity.md). ## Methods + |Method|Return type|Description| |:---|:---|:---| -|[List audit log queries](../api/security-auditcoreroot-list-auditlogqueries.md)|[auditLogQuery](../resources/security-auditlogquery.md) collection|Get a list of the [auditLogQuery](../resources/security-auditlogquery.md) objects and their properties.| -|[Create audit log query](../api/security-auditcoreroot-post-auditlogqueries.md)|[auditLogQuery](../resources/security-auditlogquery.md)|Create a new [auditLogQuery](../resources/security-auditlogquery.md) object.| -|[Get audit log query](../api/security-auditlogquery-get.md)|[auditLogQuery](../resources/security-auditlogquery.md)|Read the properties and relationships of a [auditLogQuery](../resources/security-auditlogquery.md) object.| +|[Get audit log query](../api/security-auditlogquery-get.md)|[auditLogQuery](../resources/security-auditlogquery.md)|Read the properties and relationships of an [auditLogQuery](../resources/security-auditlogquery.md) object.| |[List records](../api/security-auditlogquery-list-records.md)|[auditLogRecord](../resources/security-auditlogrecord.md) collection|Get the auditLogRecord resources from the records navigation property.| ## Properties + |Property|Type|Description| |:---|:---|:---| -|administrativeUnitIdFilters|String collection|The administrative units tagged to an audit log record.| -|displayName|String|The display name of the saved audit log query.| -|filterEndDateTime|DateTimeOffset|The end date of the date range in the query.| -|filterStartDateTime|DateTimeOffset|The start date of the date range in the query.| -|id|String|Unique identifier for the audit log query. Inherited from [microsoft.graph.entity](../resources/entity.md).| -|ipAddressFilters|String collection|The IP address of the device that was used when the activity was logged.| -|keywordFilter|String|Free text field to search non-indexed properties of the audit log.| -|objectIdFilters|String collection|For SharePoint and OneDrive for Business activity, the full path name of the file or folder accessed by the user. For Exchange admin audit logging, the name of the object that was modified by the cmdlet.| -|operationFilters|String collection|The name of the user or admin activity. For a description of the most common operations/activities, see [Search the audit log in the Office 365 Protection Center](https://go.microsoft.com/fwlink/p/?LinkId=708432).| -|recordTypeFilters|[microsoft.graph.security.auditLogRecordType](../resources/security-auditlogrecordtype.md) collection|The type of operation indicated by the record. For the list of member values, see [auditLogRecordType](../resources/security-auditlogrecordtype.md).| -|serviceFilter|String|Refers to the workload property in the audit record. This is the Microsoft service where the activity occurred. Optional.| -|status|microsoft.graph.security.auditLogQueryStatus|Describes the current status of the query. The possible values are: `notStarted`, `running`, `succeeded`, `failed`, `cancelled`, `unknownFutureValue`.| -|userPrincipalNameFilters|String collection|The UPN (user principal name) of the user who performed the action (specified in the operation property) that resulted in the record being logged; for example, _my_name@my_domain_name_.| +|administrativeUnitIdFilters|String collection|The collection of administrative unit IDs to filter on.| +|displayName|String|The display name of the audit log query.| +|filterEndDateTime|DateTimeOffset|The end date and time of the audit log query filter.| +|filterStartDateTime|DateTimeOffset|The start date and time of the audit log query filter.| +|id|String|The unique identifier for the audit log query. Inherited from [entity](../resources/entity.md).| +|ipAddressFilters|String collection|The collection of IP addresses to filter on.| +|keywordFilter|String|The keyword to filter on.| +|objectIdFilters|String collection|The collection of object IDs to filter on.| +|operationFilters|String collection|The collection of operations to filter on.| +|recordTypeFilters|[microsoft.graph.security.auditLogRecordType](../resources/security-auditlogrecordtype.md) collection|The collection of record types to filter on.| +|serviceFilters|String collection|The collection of services to filter on.| +|status|microsoft.graph.security.auditLogQueryStatus|The status of the audit log query. Possible values are: `notStarted`, `running`, `succeeded`, `failed`, `cancelled`, `unknownFutureValue`.| +|userPrincipalNameFilters|String collection|The collection of user principal names to filter on.| ## Relationships |Relationship|Type|Description| |:---|:---|:---| -|records|[microsoft.graph.security.auditLogRecord](../resources/security-auditlogrecord.md) collection|An individual audit log record.| +|records|[microsoft.graph.security.auditLogRecord](../resources/security-auditlogrecord.md) collection|The collection of audit log records retrieved by the query.| ## JSON representation The following JSON representation shows the resource type. + ``` json @@ -65,26 +63,14 @@ The following JSON representation shows the resource type. "displayName": "String", "filterStartDateTime": "String (timestamp)", "filterEndDateTime": "String (timestamp)", - "recordTypeFilters": [ - "String" - ], + "recordTypeFilters": ["String"], "keywordFilter": "String", - "serviceFilter": "String", - "operationFilters": [ - "String" - ], - "userPrincipalNameFilters": [ - "String" - ], - "ipAddressFilters": [ - "String" - ], - "objectIdFilters": [ - "String" - ], - "administrativeUnitIdFilters": [ - "String" - ], + "serviceFilters": ["String"], + "operationFilters": ["String"], + "userPrincipalNameFilters": ["String"], + "ipAddressFilters": ["String"], + "objectIdFilters": ["String"], + "administrativeUnitIdFilters": ["String"], "status": "String" } ``` diff --git a/api-reference/v1.0/resources/security-auditlogrecord.md b/api-reference/v1.0/resources/security-auditlogrecord.md index f34725eb977..14202876751 100644 --- a/api-reference/v1.0/resources/security-auditlogrecord.md +++ b/api-reference/v1.0/resources/security-auditlogrecord.md @@ -1,44 +1,44 @@ --- title: "auditLogRecord resource type" -description: "Represents an audit log entry that contains standard audit attributes and auditData specific to the Microsoft 365 service." -author: "arishojaswi" +description: "Represents an individual audit log record from the Microsoft 365 unified audit log." +author: "imsandhya7-spec" +ms.subservice: security ms.localizationpriority: medium -ms.subservice: "security" doc_type: resourcePageType -ms.date: 05/23/2024 +ms.date: 06/17/2026 +toc.title: "Audit log record" --- - # auditLogRecord resource type Namespace: microsoft.graph.security -Represents an audit log entry that contains standard audit attributes and auditData specific to the Microsoft 365 service. +Represents an individual audit log record from the Microsoft 365 unified audit log. Each record captures a specific activity or event across Microsoft 365 services. Inherits from [microsoft.graph.entity](../resources/entity.md). ## Methods -| Method | Return type | Description | -| :-------- | :------- | :--------- | -| [List](../api/security-auditlogquery-list-records.md) | [auditLogRecord](../resources/security-auditlogrecord.md) collection | Get a list of the [auditLogRecord](../resources/security-auditlogrecord.md) objects and their properties.| +|Method|Return type|Description| +|:---|:---|:---| +|[List](../api/security-auditlogquery-list-records.md)|[auditLogRecord](../resources/security-auditlogrecord.md) collection|Get a list of the [auditLogRecord](../resources/security-auditlogrecord.md) objects and their properties.| ## Properties -| Property | Type| Description | -| :------------------ | :-------------------------- | :----------------------- | -| administrativeUnits | String collection| The administrative units tagged to an audit log record.| -| auditData | [microsoft.graph.security.auditData](../resources/security-auditdata.md) | A JSON object that contains the actual audit log data.| -| auditLogRecordType | [microsoft.graph.security.auditLogRecordType](../resources/security-auditlogrecordtype.md) | The type of operation indicated by the record. For the list of member values, see [auditLogRecordType](../resources/security-auditlogrecordtype.md). | -| clientIp | String | The IP address of the device used when the activity was logged. The IP address is displayed in either an IPv4 or IPv6 address format. | -| createdDateTime | DateTimeOffset| The date and time in UTC when the user performed the activity. | -| id | String| The ID of the report entry. The ID uniquely identifies the report entry. Inherited from [microsoft.graph.entity](../resources/entity.md). | -| objectId | String | For Exchange admin audit logging, the name of the object modified by the cmdlet. For SharePoint activity, the full URL path name of the file or folder accessed by a user. For Microsoft Entra activity, the name of the user account that was modified. -| operation | String | The name of the user or admin activity.| -| organizationId | String| The GUID for your organization.| -| service | String | The Microsoft 365 service where the activity occurred. | -| userId| String | The user who performed the action (specified in the Operation property) that resulted in the record being logged. Audit records for activity performed by system accounts (such as SHAREPOINT\system or NT AUTHORITY\SYSTEM) are also included in the audit log. Another common value for the UserId property is app@sharepoint. It indicates that the "user" who performed the activity was an application with the necessary permissions in SharePoint to perform organization-wide actions (such as searching a SharePoint site or OneDrive account) on behalf of a user, admin, or service.| -| userPrincipalName | String | UPN of the user who performed the action. | -| userType | microsoft.graph.security.auditLogUserType | The type of user that performed the operation. The possible values are: `regular`, `reserved`, `admin`, `dcAdmin`, `system`, `application`, `servicePrincipal`, `customPolicy`, `systemPolicy`, `partnerTechnician`, `guest`, `unknownFutureValue`. | +|Property|Type|Description| +|:---|:---|:---| +|administrativeUnits|String collection|The collection of administrative units associated with the record.| +|auditData|[microsoft.graph.security.auditData](../resources/security-auditdata.md)|The audit data associated with the record.| +|auditLogRecordType|[microsoft.graph.security.auditLogRecordType](../resources/security-auditlogrecordtype.md)|The type of the audit log record.| +|clientIp|String|The IP address of the client that performed the activity.| +|createdDateTime|DateTimeOffset|The date and time when the activity was performed.| +|id|String|The unique identifier for the audit log record. Inherited from [entity](../resources/entity.md).| +|objectId|String|The identifier of the object that was affected by the activity.| +|operation|String|The name of the activity that was performed.| +|organizationId|String|The GUID of the organization's Microsoft 365 tenant.| +|service|String|The Microsoft 365 service where the activity occurred.| +|userId|String|The identifier of the user, system account, service, or application that performed the activity.| +|userPrincipalName|String|The user principal name of the user who performed the activity.| +|userType|microsoft.graph.security.auditLogUserType|The type of user who performed the activity. Possible values are: `regular`, `reserved`, `admin`, `dcAdmin`, `system`, `application`, `servicePrincipal`, `customPolicy`, `systemPolicy`, `partnerTechnician`, `guest`, `unknownFutureValue`.| ## Relationships @@ -50,14 +50,10 @@ The following JSON representation shows the resource type. - -```json +``` json { "@odata.type": "#microsoft.graph.security.auditLogRecord", "id": "String (identifier)", @@ -72,8 +68,6 @@ The following JSON representation shows the resource type. "userPrincipalName": "String", "clientIp": "String", "administrativeUnits": ["String"], - "auditData": { - "@odata.type": "microsoft.graph.security.auditData" - } + "auditData": {"@odata.type": "microsoft.graph.security.auditData"} } ``` diff --git a/api-reference/v1.0/resources/security-auditlogrecordtype.md b/api-reference/v1.0/resources/security-auditlogrecordtype.md index e7e8464575a..ef65bf6fd74 100644 --- a/api-reference/v1.0/resources/security-auditlogrecordtype.md +++ b/api-reference/v1.0/resources/security-auditlogrecordtype.md @@ -265,6 +265,34 @@ Represents the type of operation indicated by an audit log record. | FilteringDocScan | Filtering doc scan audit log record. | | TimeTravelFilteringDocScan | Time travel filtering doc scan audit log record. | | MAPGOnboard | MAPG onboard audit log record. | +| AlertSubmission | AlertSubmission audit log record. | +| AlertSubmissionResultDetail | AlertSubmissionResultDetail audit log record. | +| ComplianceSitGradingSharePoint | ComplianceSitGradingSharePoint audit log record. | +| CompliancePolicyGradingSharePoint | CompliancePolicyGradingSharePoint audit log record. | +| AzureAISearchAudit | AzureAISearchAudit audit log record. | +| P4AIRiskScoreRecord | P4AIRiskScoreRecord audit log record. | +| DragonCopilotAdmin | DragonCopilotAdmin audit log record. | +| AISpanOutputs | AISpanOutputs audit log record. | +| EopSubmissionFeedEntity | EopSubmissionFeedEntity audit log record. | +| SonarFileDetonationEntity | SonarFileDetonationEntity audit log record. | +| SonarSubmissionEntity | SonarSubmissionEntity audit log record. | +| SonarUrlDetonationEntity | SonarUrlDetonationEntity audit log record. | +| SubmissionEntity | SubmissionEntity audit log record. | +| SonarDetonationEntity | SonarDetonationEntity audit log record. | +| MicrosoftTeamsUserConcern | MicrosoftTeamsUserConcern audit log record. | +| VivaGlintAgenticCampaign | VivaGlintAgenticCampaign audit log record. | +| MSPVectorSearchContentMetadata | MSPVectorSearchContentMetadata audit log record. | +| FabricPolicy | FabricPolicy audit log record. | +| SecurityCopilotAgentIdentityManagement | SecurityCopilotAgentIdentityManagement audit log record. | +| CopilotSessionSharing | CopilotSessionSharing audit log record. | +| DragonCopilotAccess | DragonCopilotAccess audit log record. | +| DragonCopilotClinicalData | DragonCopilotClinicalData audit log record. | +| DragonCopilotSession | DragonCopilotSession audit log record. | +| MosAgentInfoRecordV2 | MosAgentInfoRecordV2 audit log record. | +| SecurityDevelopmentLifecycleAILog | SecurityDevelopmentLifecycleAILog audit log record. | +| MDASH | MDASH audit log record. | +| DefenderSecurityForAIConfiguration | DefenderSecurityForAIConfiguration audit log record. | +| SparkCoreCustomLivePool | SparkCoreCustomLivePool audit log record. | | unknownFutureValue | Evolvable enumeration sentinel value. Don't use. | ## JSON representation diff --git a/api-reference/v1.0/resources/security-auditrecordtypedictionary.md b/api-reference/v1.0/resources/security-auditrecordtypedictionary.md new file mode 100644 index 00000000000..59e9639901c --- /dev/null +++ b/api-reference/v1.0/resources/security-auditrecordtypedictionary.md @@ -0,0 +1,43 @@ +--- +title: "auditRecordTypeDictionary resource type" +description: "Represents an open-type dictionary for dynamic audit event properties." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Audit record type dictionary" +--- +# auditRecordTypeDictionary resource type + +Namespace: microsoft.graph.security + +Represents an open-type dictionary for dynamic audit event properties. This type follows the [Graph Dictionary pattern](https://github.com/microsoft/api-guidelines/blob/vNext/graph/patterns/dictionary.md) and is declared as an open type to allow arbitrary name-value pairs at runtime. + +This type is used as the type of the **dynamicProperties** property on [auditData](../resources/security-auditdata.md), enabling dynamic properties in audit event payloads. + +## Methods + +None. + +## Properties + +None. This is an open type that accepts additional dynamic properties as name-value pairs at runtime. + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +```json +{ + "@odata.type": "#microsoft.graph.security.auditRecordTypeDictionary" +} +``` diff --git a/api-reference/v1.0/resources/security-auditsearchauditrecord.md b/api-reference/v1.0/resources/security-auditsearchauditrecord.md new file mode 100644 index 00000000000..973813beb76 --- /dev/null +++ b/api-reference/v1.0/resources/security-auditsearchauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "auditSearchAuditRecord resource type" +description: "Represents an audit record for audit search events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Audit search audit record" +--- +# auditSearchAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for audit search events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.auditSearchAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-azfwapplicationruleaggregationeventrecord.md b/api-reference/v1.0/resources/security-azfwapplicationruleaggregationeventrecord.md new file mode 100644 index 00000000000..fbcd4f2abb2 --- /dev/null +++ b/api-reference/v1.0/resources/security-azfwapplicationruleaggregationeventrecord.md @@ -0,0 +1,49 @@ +--- +title: "azfwApplicationRuleAggregationEventRecord resource type" +description: "Represents an audit record for Azure Firewall application rule aggregation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Firewall application rule aggregation audit record" +--- +# azfwApplicationRuleAggregationEventRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Firewall application rule aggregation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.azfwApplicationRuleAggregationEventRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-azfwdnsqueryeventrecord.md b/api-reference/v1.0/resources/security-azfwdnsqueryeventrecord.md new file mode 100644 index 00000000000..7d96fa1a3c3 --- /dev/null +++ b/api-reference/v1.0/resources/security-azfwdnsqueryeventrecord.md @@ -0,0 +1,49 @@ +--- +title: "azfwDnsQueryEventRecord resource type" +description: "Represents an audit record for Azure Firewall DNS query events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Firewall DNS query audit record" +--- +# azfwDnsQueryEventRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Firewall DNS query events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.azfwDnsQueryEventRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-azfwnetworkruleeventrecord.md b/api-reference/v1.0/resources/security-azfwnetworkruleeventrecord.md new file mode 100644 index 00000000000..1d7367bc68c --- /dev/null +++ b/api-reference/v1.0/resources/security-azfwnetworkruleeventrecord.md @@ -0,0 +1,49 @@ +--- +title: "azfwNetworkRuleEventRecord resource type" +description: "Represents an audit record for Azure Firewall network rule events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Firewall network rule audit record" +--- +# azfwNetworkRuleEventRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Firewall network rule events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.azfwNetworkRuleEventRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-azureactivedirectoryaccountlogonauditrecord.md b/api-reference/v1.0/resources/security-azureactivedirectoryaccountlogonauditrecord.md new file mode 100644 index 00000000000..524e6631fd0 --- /dev/null +++ b/api-reference/v1.0/resources/security-azureactivedirectoryaccountlogonauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "azureActiveDirectoryAccountLogonAuditRecord resource type" +description: "Represents an audit record for Azure Active Directory account logon events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Active Directory account logon audit record" +--- +# azureActiveDirectoryAccountLogonAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Active Directory account logon events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.azureActiveDirectoryAccountLogonAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-azureactivedirectoryauditrecord.md b/api-reference/v1.0/resources/security-azureactivedirectoryauditrecord.md new file mode 100644 index 00000000000..5a533f7188e --- /dev/null +++ b/api-reference/v1.0/resources/security-azureactivedirectoryauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "azureActiveDirectoryAuditRecord resource type" +description: "Represents an audit record for Azure Active Directory events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Active Directory audit record" +--- +# azureActiveDirectoryAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Active Directory events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.azureActiveDirectoryAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-azureactivedirectorystslogonauditrecord.md b/api-reference/v1.0/resources/security-azureactivedirectorystslogonauditrecord.md new file mode 100644 index 00000000000..b96e6d77437 --- /dev/null +++ b/api-reference/v1.0/resources/security-azureactivedirectorystslogonauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "azureActiveDirectoryStsLogonAuditRecord resource type" +description: "Represents an audit record for Azure Active Directory STS logon events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure Active Directory STS logon audit record" +--- +# azureActiveDirectoryStsLogonAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure Active Directory STS logon events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.azureActiveDirectoryStsLogonAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-azureaisearchauditrecord.md b/api-reference/v1.0/resources/security-azureaisearchauditrecord.md new file mode 100644 index 00000000000..39f2f135d9d --- /dev/null +++ b/api-reference/v1.0/resources/security-azureaisearchauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "azureAISearchAuditRecord resource type" +description: "Represents an audit record for Azure AI Search events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Azure AI Search audit record" +--- +# azureAISearchAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Azure AI Search events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.azureAISearchAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-campaignauditrecord.md b/api-reference/v1.0/resources/security-campaignauditrecord.md new file mode 100644 index 00000000000..e1cb210754c --- /dev/null +++ b/api-reference/v1.0/resources/security-campaignauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "campaignAuditRecord resource type" +description: "Represents an audit record for campaign events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Campaign audit record" +--- +# campaignAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for campaign events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.campaignAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-ccraipolicyviolationrecord.md b/api-reference/v1.0/resources/security-ccraipolicyviolationrecord.md new file mode 100644 index 00000000000..b9be0d7d61e --- /dev/null +++ b/api-reference/v1.0/resources/security-ccraipolicyviolationrecord.md @@ -0,0 +1,49 @@ +--- +title: "ccraiPolicyViolationRecord resource type" +description: "Represents an audit record for CCRAI policy violation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "CCRAI policy violation audit record" +--- +# ccraiPolicyViolationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for CCRAI policy violation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.ccraiPolicyViolationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cdpclassifierhealthrecord.md b/api-reference/v1.0/resources/security-cdpclassifierhealthrecord.md new file mode 100644 index 00000000000..a359bb7cdd9 --- /dev/null +++ b/api-reference/v1.0/resources/security-cdpclassifierhealthrecord.md @@ -0,0 +1,49 @@ +--- +title: "cdpClassifierHealthRecord resource type" +description: "Represents an audit record for Content Discovery Platform (CDP) classifier health events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Content Discovery Platform (CDP) classifier health audit record" +--- +# cdpClassifierHealthRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Content Discovery Platform (CDP) classifier health events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cdpClassifierHealthRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cdpcoldcrawlstatusrecord.md b/api-reference/v1.0/resources/security-cdpcoldcrawlstatusrecord.md new file mode 100644 index 00000000000..aa8e4a72f3f --- /dev/null +++ b/api-reference/v1.0/resources/security-cdpcoldcrawlstatusrecord.md @@ -0,0 +1,49 @@ +--- +title: "cdpColdCrawlStatusRecord resource type" +description: "Represents an audit record for Content Discovery Platform (CDP) cold crawl status events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Content Discovery Platform (CDP) cold crawl status audit record" +--- +# cdpColdCrawlStatusRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Content Discovery Platform (CDP) cold crawl status events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cdpColdCrawlStatusRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cdpconsumptionresourcerecord.md b/api-reference/v1.0/resources/security-cdpconsumptionresourcerecord.md new file mode 100644 index 00000000000..3c2a71ec1fa --- /dev/null +++ b/api-reference/v1.0/resources/security-cdpconsumptionresourcerecord.md @@ -0,0 +1,49 @@ +--- +title: "cdpConsumptionResourceRecord resource type" +description: "Represents an audit record for Content Discovery Platform (CDP) consumption resource events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Content Discovery Platform (CDP) consumption resource audit record" +--- +# cdpConsumptionResourceRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Content Discovery Platform (CDP) consumption resource events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cdpConsumptionResourceRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cdpcontentexploreraggregaterecord.md b/api-reference/v1.0/resources/security-cdpcontentexploreraggregaterecord.md new file mode 100644 index 00000000000..6b8269aff58 --- /dev/null +++ b/api-reference/v1.0/resources/security-cdpcontentexploreraggregaterecord.md @@ -0,0 +1,49 @@ +--- +title: "cdpContentExplorerAggregateRecord resource type" +description: "Represents an audit record for Content Discovery Platform (CDP) content explorer aggregate events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Content Discovery Platform (CDP) content explorer aggregate audit record" +--- +# cdpContentExplorerAggregateRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Content Discovery Platform (CDP) content explorer aggregate events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cdpContentExplorerAggregateRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cdpdlmaiinteractioninsightsrecord.md b/api-reference/v1.0/resources/security-cdpdlmaiinteractioninsightsrecord.md new file mode 100644 index 00000000000..b2e0f5d1bf3 --- /dev/null +++ b/api-reference/v1.0/resources/security-cdpdlmaiinteractioninsightsrecord.md @@ -0,0 +1,49 @@ +--- +title: "cdpdlmaiInteractionInsightsRecord resource type" +description: "Represents an audit record for Content Discovery Platform (CDP) DLM AI interaction insights events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Content Discovery Platform (CDP) DLM AI interaction insights audit record" +--- +# cdpdlmaiInteractionInsightsRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Content Discovery Platform (CDP) DLM AI interaction insights events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cdpdlmaiInteractionInsightsRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cdpdlpsensitiveendpointauditrecord.md b/api-reference/v1.0/resources/security-cdpdlpsensitiveendpointauditrecord.md new file mode 100644 index 00000000000..e6d79751c05 --- /dev/null +++ b/api-reference/v1.0/resources/security-cdpdlpsensitiveendpointauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "cdpDlpSensitiveEndpointAuditRecord resource type" +description: "Represents an audit record for Content Discovery Platform (CDP) DLP sensitive endpoint events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Content Discovery Platform (CDP) DLP sensitive endpoint audit record" +--- +# cdpDlpSensitiveEndpointAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Content Discovery Platform (CDP) DLP sensitive endpoint events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cdpDlpSensitiveEndpointAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cdplogrecord.md b/api-reference/v1.0/resources/security-cdplogrecord.md new file mode 100644 index 00000000000..6011fa0876f --- /dev/null +++ b/api-reference/v1.0/resources/security-cdplogrecord.md @@ -0,0 +1,49 @@ +--- +title: "cdpLogRecord resource type" +description: "Represents an audit record for Content Discovery Platform (CDP) log events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Content Discovery Platform (CDP) log audit record" +--- +# cdpLogRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Content Discovery Platform (CDP) log events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cdpLogRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cdpocrbillingrecord.md b/api-reference/v1.0/resources/security-cdpocrbillingrecord.md new file mode 100644 index 00000000000..50306e8e7f0 --- /dev/null +++ b/api-reference/v1.0/resources/security-cdpocrbillingrecord.md @@ -0,0 +1,49 @@ +--- +title: "cdpOcrBillingRecord resource type" +description: "Represents an audit record for Content Discovery Platform (CDP) OCR billing events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Content Discovery Platform (CDP) OCR billing audit record" +--- +# cdpOcrBillingRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Content Discovery Platform (CDP) OCR billing events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cdpOcrBillingRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cdpresourcescopechangeeventrecord.md b/api-reference/v1.0/resources/security-cdpresourcescopechangeeventrecord.md new file mode 100644 index 00000000000..9af1e47256a --- /dev/null +++ b/api-reference/v1.0/resources/security-cdpresourcescopechangeeventrecord.md @@ -0,0 +1,49 @@ +--- +title: "cdpResourceScopeChangeEventRecord resource type" +description: "Represents an audit record for Content Discovery Platform (CDP) resource scope change events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Content Discovery Platform (CDP) resource scope change audit record" +--- +# cdpResourceScopeChangeEventRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Content Discovery Platform (CDP) resource scope change events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cdpResourceScopeChangeEventRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cloudupdatedeviceconfigauditrecord.md b/api-reference/v1.0/resources/security-cloudupdatedeviceconfigauditrecord.md new file mode 100644 index 00000000000..9e0a471a7d0 --- /dev/null +++ b/api-reference/v1.0/resources/security-cloudupdatedeviceconfigauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "cloudUpdateDeviceConfigAuditRecord resource type" +description: "Represents an audit record for Cloud Update device configuration events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Cloud Update device configuration audit record" +--- +# cloudUpdateDeviceConfigAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Cloud Update device configuration events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cloudUpdateDeviceConfigAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cloudupdateprofileconfigauditrecord.md b/api-reference/v1.0/resources/security-cloudupdateprofileconfigauditrecord.md new file mode 100644 index 00000000000..a3322ca7d36 --- /dev/null +++ b/api-reference/v1.0/resources/security-cloudupdateprofileconfigauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "cloudUpdateProfileConfigAuditRecord resource type" +description: "Represents an audit record for Cloud Update profile configuration events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Cloud Update profile configuration audit record" +--- +# cloudUpdateProfileConfigAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Cloud Update profile configuration events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cloudUpdateProfileConfigAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cloudupdatetenantconfigauditrecord.md b/api-reference/v1.0/resources/security-cloudupdatetenantconfigauditrecord.md new file mode 100644 index 00000000000..8c03cb57489 --- /dev/null +++ b/api-reference/v1.0/resources/security-cloudupdatetenantconfigauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "cloudUpdateTenantConfigAuditRecord resource type" +description: "Represents an audit record for Cloud Update tenant configuration events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Cloud Update tenant configuration audit record" +--- +# cloudUpdateTenantConfigAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Cloud Update tenant configuration events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cloudUpdateTenantConfigAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-complianceconnectorauditrecord.md b/api-reference/v1.0/resources/security-complianceconnectorauditrecord.md new file mode 100644 index 00000000000..fe391a3b3b3 --- /dev/null +++ b/api-reference/v1.0/resources/security-complianceconnectorauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceConnectorAuditRecord resource type" +description: "Represents an audit record for Compliance connector events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance connector audit record" +--- +# complianceConnectorAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance connector events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceConnectorAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlmexchangeauditrecord.md b/api-reference/v1.0/resources/security-compliancedlmexchangeauditrecord.md new file mode 100644 index 00000000000..8a5112910e8 --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlmexchangeauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLMExchangeAuditRecord resource type" +description: "Represents an audit record for Compliance Data Lifecycle Management (DLM) Exchange events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance Data Lifecycle Management (DLM) Exchange audit record" +--- +# complianceDLMExchangeAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance Data Lifecycle Management (DLM) Exchange events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLMExchangeAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlmsharepointauditrecord.md b/api-reference/v1.0/resources/security-compliancedlmsharepointauditrecord.md new file mode 100644 index 00000000000..ae372a3fe61 --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlmsharepointauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLMSharePointAuditRecord resource type" +description: "Represents an audit record for Compliance Data Lifecycle Management (DLM) SharePoint events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance Data Lifecycle Management (DLM) SharePoint audit record" +--- +# complianceDLMSharePointAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance Data Lifecycle Management (DLM) SharePoint events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLMSharePointAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpapplicationsauditrecord.md b/api-reference/v1.0/resources/security-compliancedlpapplicationsauditrecord.md new file mode 100644 index 00000000000..3bf1dc68ab9 --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpapplicationsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPApplicationsAuditRecord resource type" +description: "Represents an audit record for Compliance DLP applications events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP applications audit record" +--- +# complianceDLPApplicationsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP applications events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPApplicationsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpapplicationsclassificationauditrecord.md b/api-reference/v1.0/resources/security-compliancedlpapplicationsclassificationauditrecord.md new file mode 100644 index 00000000000..3c21df99e68 --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpapplicationsclassificationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPApplicationsClassificationAuditRecord resource type" +description: "Represents an audit record for Compliance DLP applications classification events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP applications classification audit record" +--- +# complianceDLPApplicationsClassificationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP applications classification events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPApplicationsClassificationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpendpointauditrecord.md b/api-reference/v1.0/resources/security-compliancedlpendpointauditrecord.md new file mode 100644 index 00000000000..e6b6ec10791 --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpendpointauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPEndpointAuditRecord resource type" +description: "Represents an audit record for Compliance DLP endpoint events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP endpoint audit record" +--- +# complianceDLPEndpointAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP endpoint events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPEndpointAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpendpointdiscoveryauditrecord.md b/api-reference/v1.0/resources/security-compliancedlpendpointdiscoveryauditrecord.md new file mode 100644 index 00000000000..58d01a61ee7 --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpendpointdiscoveryauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPEndpointDiscoveryAuditRecord resource type" +description: "Represents an audit record for Compliance DLP endpoint discovery events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP endpoint discovery audit record" +--- +# complianceDLPEndpointDiscoveryAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP endpoint discovery events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPEndpointDiscoveryAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpenforcementauditrecord.md b/api-reference/v1.0/resources/security-compliancedlpenforcementauditrecord.md new file mode 100644 index 00000000000..0f332681ec2 --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpenforcementauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPEnforcementAuditRecord resource type" +description: "Represents an audit record for Compliance DLP enforcement events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP enforcement audit record" +--- +# complianceDLPEnforcementAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP enforcement events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPEnforcementAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpexchangeauditrecord.md b/api-reference/v1.0/resources/security-compliancedlpexchangeauditrecord.md new file mode 100644 index 00000000000..14be62d2f33 --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpexchangeauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPExchangeAuditRecord resource type" +description: "Represents an audit record for Compliance DLP Exchange events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP Exchange audit record" +--- +# complianceDLPExchangeAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP Exchange events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPExchangeAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpexchangeclassificationauditrecord.md b/api-reference/v1.0/resources/security-compliancedlpexchangeclassificationauditrecord.md new file mode 100644 index 00000000000..9ea6bf9232b --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpexchangeclassificationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPExchangeClassificationAuditRecord resource type" +description: "Represents an audit record for Compliance DLP Exchange classification events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP Exchange classification audit record" +--- +# complianceDLPExchangeClassificationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP Exchange classification events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPExchangeClassificationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpexchangeclassificationcdprecord.md b/api-reference/v1.0/resources/security-compliancedlpexchangeclassificationcdprecord.md new file mode 100644 index 00000000000..8ed4dc55da8 --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpexchangeclassificationcdprecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPExchangeClassificationCdpRecord resource type" +description: "Represents an audit record for Compliance DLP Exchange classification CDP events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP Exchange classification CDP audit record" +--- +# complianceDLPExchangeClassificationCdpRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP Exchange classification CDP events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPExchangeClassificationCdpRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpexchangediscoveryauditrecord.md b/api-reference/v1.0/resources/security-compliancedlpexchangediscoveryauditrecord.md new file mode 100644 index 00000000000..0cc22c904c0 --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpexchangediscoveryauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPExchangeDiscoveryAuditRecord resource type" +description: "Represents an audit record for Compliance DLP Exchange discovery events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP Exchange discovery audit record" +--- +# complianceDLPExchangeDiscoveryAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP Exchange discovery events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPExchangeDiscoveryAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpsharepointauditrecord.md b/api-reference/v1.0/resources/security-compliancedlpsharepointauditrecord.md new file mode 100644 index 00000000000..f2e15bb4073 --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpsharepointauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPSharePointAuditRecord resource type" +description: "Represents an audit record for Compliance DLP SharePoint events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP SharePoint audit record" +--- +# complianceDLPSharePointAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP SharePoint events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPSharePointAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpsharepointclassificationauditrecord.md b/api-reference/v1.0/resources/security-compliancedlpsharepointclassificationauditrecord.md new file mode 100644 index 00000000000..03973f837eb --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpsharepointclassificationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPSharePointClassificationAuditRecord resource type" +description: "Represents an audit record for Compliance DLP SharePoint classification events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP SharePoint classification audit record" +--- +# complianceDLPSharePointClassificationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP SharePoint classification events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPSharePointClassificationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpsharepointclassificationcdprecord.md b/api-reference/v1.0/resources/security-compliancedlpsharepointclassificationcdprecord.md new file mode 100644 index 00000000000..2d6edf2838f --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpsharepointclassificationcdprecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPSharePointClassificationCdpRecord resource type" +description: "Represents an audit record for Compliance DLP SharePoint classification CDP events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP SharePoint classification CDP audit record" +--- +# complianceDLPSharePointClassificationCdpRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP SharePoint classification CDP events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPSharePointClassificationCdpRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancedlpsharepointclassificationextendedauditrecord.md b/api-reference/v1.0/resources/security-compliancedlpsharepointclassificationextendedauditrecord.md new file mode 100644 index 00000000000..6516a605860 --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancedlpsharepointclassificationextendedauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceDLPSharePointClassificationExtendedAuditRecord resource type" +description: "Represents an audit record for Compliance DLP SharePoint classification extended events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance DLP SharePoint classification extended audit record" +--- +# complianceDLPSharePointClassificationExtendedAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance DLP SharePoint classification extended events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceDLPSharePointClassificationExtendedAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-complianceexchangeocrauditrecord.md b/api-reference/v1.0/resources/security-complianceexchangeocrauditrecord.md new file mode 100644 index 00000000000..6a78293ff0e --- /dev/null +++ b/api-reference/v1.0/resources/security-complianceexchangeocrauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceExchangeOcrAuditRecord resource type" +description: "Represents an audit record for Compliance Exchange OCR events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance Exchange OCR audit record" +--- +# complianceExchangeOcrAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance Exchange OCR events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceExchangeOcrAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancemanageractionrecord.md b/api-reference/v1.0/resources/security-compliancemanageractionrecord.md new file mode 100644 index 00000000000..5c3432ea05a --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancemanageractionrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceManagerActionRecord resource type" +description: "Represents an audit record for Compliance Manager action events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance Manager action audit record" +--- +# complianceManagerActionRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance Manager action events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceManagerActionRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancepolicygradingsharepointauditrecord.md b/api-reference/v1.0/resources/security-compliancepolicygradingsharepointauditrecord.md new file mode 100644 index 00000000000..2ccdb442dfc --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancepolicygradingsharepointauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "compliancePolicyGradingSharePointAuditRecord resource type" +description: "Represents an audit record for compliance policy grading SharePoint events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance policy grading SharePoint audit record" +--- +# compliancePolicyGradingSharePointAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for compliance policy grading SharePoint events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.compliancePolicyGradingSharePointAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancesettingschangeauditrecord.md b/api-reference/v1.0/resources/security-compliancesettingschangeauditrecord.md new file mode 100644 index 00000000000..7ef476ef75c --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancesettingschangeauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceSettingsChangeAuditRecord resource type" +description: "Represents an audit record for compliance settings change events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance settings change audit record" +--- +# complianceSettingsChangeAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for compliance settings change events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceSettingsChangeAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancesitgradingsharepointauditrecord.md b/api-reference/v1.0/resources/security-compliancesitgradingsharepointauditrecord.md new file mode 100644 index 00000000000..8f3d03800ca --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancesitgradingsharepointauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceSitGradingSharePointAuditRecord resource type" +description: "Represents an audit record for compliance SIT grading SharePoint events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance SIT grading SharePoint audit record" +--- +# complianceSitGradingSharePointAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for compliance SIT grading SharePoint events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceSitGradingSharePointAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-compliancesupervisionexchangeauditrecord.md b/api-reference/v1.0/resources/security-compliancesupervisionexchangeauditrecord.md new file mode 100644 index 00000000000..6bae167530b --- /dev/null +++ b/api-reference/v1.0/resources/security-compliancesupervisionexchangeauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "complianceSupervisionExchangeAuditRecord resource type" +description: "Represents an audit record for Compliance Supervision Exchange events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Compliance Supervision Exchange audit record" +--- +# complianceSupervisionExchangeAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Compliance Supervision Exchange events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.complianceSupervisionExchangeAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-connectedaiappinteractionauditrecord.md b/api-reference/v1.0/resources/security-connectedaiappinteractionauditrecord.md new file mode 100644 index 00000000000..e43fdf44c2d --- /dev/null +++ b/api-reference/v1.0/resources/security-connectedaiappinteractionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "connectedAIAppInteractionAuditRecord resource type" +description: "Represents an audit record for Connected AI app interaction events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Connected AI app interaction audit record" +--- +# connectedAIAppInteractionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Connected AI app interaction events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.connectedAIAppInteractionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-consumptionresourceauditrecord.md b/api-reference/v1.0/resources/security-consumptionresourceauditrecord.md new file mode 100644 index 00000000000..26b3b16c6c7 --- /dev/null +++ b/api-reference/v1.0/resources/security-consumptionresourceauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "consumptionResourceAuditRecord resource type" +description: "Represents an audit record for consumption resource events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Consumption resource audit record" +--- +# consumptionResourceAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for consumption resource events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.consumptionResourceAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-contentstoremetadatarecord.md b/api-reference/v1.0/resources/security-contentstoremetadatarecord.md new file mode 100644 index 00000000000..193058e41dc --- /dev/null +++ b/api-reference/v1.0/resources/security-contentstoremetadatarecord.md @@ -0,0 +1,49 @@ +--- +title: "contentStoreMetadataRecord resource type" +description: "Represents an audit record for content store metadata events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Content store metadata audit record" +--- +# contentStoreMetadataRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for content store metadata events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.contentStoreMetadataRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-copilotagentmanagementauditrecord.md b/api-reference/v1.0/resources/security-copilotagentmanagementauditrecord.md new file mode 100644 index 00000000000..ef3e762d345 --- /dev/null +++ b/api-reference/v1.0/resources/security-copilotagentmanagementauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "copilotAgentManagementAuditRecord resource type" +description: "Represents an audit record for Copilot agent management events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Copilot agent management audit record" +--- +# copilotAgentManagementAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Copilot agent management events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.copilotAgentManagementAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-copilotforsecurityloggingauditrecord.md b/api-reference/v1.0/resources/security-copilotforsecurityloggingauditrecord.md new file mode 100644 index 00000000000..8c021b66cf8 --- /dev/null +++ b/api-reference/v1.0/resources/security-copilotforsecurityloggingauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "copilotForSecurityLoggingAuditRecord resource type" +description: "Represents an audit record for Copilot for Security logging events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Copilot for Security logging audit record" +--- +# copilotForSecurityLoggingAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Copilot for Security logging events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.copilotForSecurityLoggingAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-copilotforsecuritytriggerauditrecord.md b/api-reference/v1.0/resources/security-copilotforsecuritytriggerauditrecord.md new file mode 100644 index 00000000000..e020c73c0b1 --- /dev/null +++ b/api-reference/v1.0/resources/security-copilotforsecuritytriggerauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "copilotForSecurityTriggerAuditRecord resource type" +description: "Represents an audit record for Copilot for Security trigger events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Copilot for Security trigger audit record" +--- +# copilotForSecurityTriggerAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Copilot for Security trigger events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.copilotForSecurityTriggerAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-copilotinteractionauditrecord.md b/api-reference/v1.0/resources/security-copilotinteractionauditrecord.md new file mode 100644 index 00000000000..4e32a2a3b4d --- /dev/null +++ b/api-reference/v1.0/resources/security-copilotinteractionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "copilotInteractionAuditRecord resource type" +description: "Represents an audit record for Copilot interaction events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Copilot interaction audit record" +--- +# copilotInteractionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Copilot interaction events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.copilotInteractionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-copilotpluginsettingauditrecord.md b/api-reference/v1.0/resources/security-copilotpluginsettingauditrecord.md new file mode 100644 index 00000000000..94809e0d42a --- /dev/null +++ b/api-reference/v1.0/resources/security-copilotpluginsettingauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "copilotPluginSettingAuditRecord resource type" +description: "Represents an audit record for Copilot plugin setting events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Copilot plugin setting audit record" +--- +# copilotPluginSettingAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Copilot plugin setting events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.copilotPluginSettingAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-copilotpromptbooksettingauditrecord.md b/api-reference/v1.0/resources/security-copilotpromptbooksettingauditrecord.md new file mode 100644 index 00000000000..132a6730ee7 --- /dev/null +++ b/api-reference/v1.0/resources/security-copilotpromptbooksettingauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "copilotPromptBookSettingAuditRecord resource type" +description: "Represents an audit record for Copilot prompt book setting events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Copilot prompt book setting audit record" +--- +# copilotPromptBookSettingAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Copilot prompt book setting events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.copilotPromptBookSettingAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-copilotsessionsharingauditrecord.md b/api-reference/v1.0/resources/security-copilotsessionsharingauditrecord.md new file mode 100644 index 00000000000..9357462999b --- /dev/null +++ b/api-reference/v1.0/resources/security-copilotsessionsharingauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "copilotSessionSharingAuditRecord resource type" +description: "Represents an audit record for Copilot session sharing events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Copilot session sharing audit record" +--- +# copilotSessionSharingAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Copilot session sharing events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.copilotSessionSharingAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-copilotsettingauditrecord.md b/api-reference/v1.0/resources/security-copilotsettingauditrecord.md new file mode 100644 index 00000000000..fd9f8ca6411 --- /dev/null +++ b/api-reference/v1.0/resources/security-copilotsettingauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "copilotSettingAuditRecord resource type" +description: "Represents an audit record for Copilot setting events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Copilot setting audit record" +--- +# copilotSettingAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Copilot setting events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.copilotSettingAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-copilotworkspacesettingauditrecord.md b/api-reference/v1.0/resources/security-copilotworkspacesettingauditrecord.md new file mode 100644 index 00000000000..a03b0b8ebdf --- /dev/null +++ b/api-reference/v1.0/resources/security-copilotworkspacesettingauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "copilotWorkspaceSettingAuditRecord resource type" +description: "Represents an audit record for Copilot workspace setting events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Copilot workspace setting audit record" +--- +# copilotWorkspaceSettingAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Copilot workspace setting events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.copilotWorkspaceSettingAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-corereportingsettingsauditrecord.md b/api-reference/v1.0/resources/security-corereportingsettingsauditrecord.md new file mode 100644 index 00000000000..0ddfd6a5923 --- /dev/null +++ b/api-reference/v1.0/resources/security-corereportingsettingsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "coreReportingSettingsAuditRecord resource type" +description: "Represents an audit record for core reporting settings events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Core reporting settings audit record" +--- +# coreReportingSettingsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for core reporting settings events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.coreReportingSettingsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-cortanabriefingauditrecord.md b/api-reference/v1.0/resources/security-cortanabriefingauditrecord.md new file mode 100644 index 00000000000..ed1f260e67d --- /dev/null +++ b/api-reference/v1.0/resources/security-cortanabriefingauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "cortanaBriefingAuditRecord resource type" +description: "Represents an audit record for Cortana Briefing events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Cortana Briefing audit record" +--- +# cortanaBriefingAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Cortana Briefing events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.cortanaBriefingAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-criticalassetmanagementclassificationrecord.md b/api-reference/v1.0/resources/security-criticalassetmanagementclassificationrecord.md new file mode 100644 index 00000000000..b8b45965061 --- /dev/null +++ b/api-reference/v1.0/resources/security-criticalassetmanagementclassificationrecord.md @@ -0,0 +1,49 @@ +--- +title: "criticalAssetManagementClassificationRecord resource type" +description: "Represents an audit record for critical asset management classification events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Critical asset management classification audit record" +--- +# criticalAssetManagementClassificationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for critical asset management classification events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.criticalAssetManagementClassificationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-crmentityoperationauditrecord.md b/api-reference/v1.0/resources/security-crmentityoperationauditrecord.md new file mode 100644 index 00000000000..5639609a2db --- /dev/null +++ b/api-reference/v1.0/resources/security-crmentityoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "crmEntityOperationAuditRecord resource type" +description: "Represents an audit record for CRM entity operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "CRM entity operation audit record" +--- +# crmEntityOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for CRM entity operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.crmEntityOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-crosstenantaccesspolicyauditrecord.md b/api-reference/v1.0/resources/security-crosstenantaccesspolicyauditrecord.md new file mode 100644 index 00000000000..c405313a107 --- /dev/null +++ b/api-reference/v1.0/resources/security-crosstenantaccesspolicyauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "crossTenantAccessPolicyAuditRecord resource type" +description: "Represents an audit record for cross-tenant access policy events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Cross-tenant access policy audit record" +--- +# crossTenantAccessPolicyAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for cross-tenant access policy events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.crossTenantAccessPolicyAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-customerkeyserviceencryptionauditrecord.md b/api-reference/v1.0/resources/security-customerkeyserviceencryptionauditrecord.md new file mode 100644 index 00000000000..4f58e40cfca --- /dev/null +++ b/api-reference/v1.0/resources/security-customerkeyserviceencryptionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "customerKeyServiceEncryptionAuditRecord resource type" +description: "Represents an audit record for Customer Key service encryption events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Customer Key service encryption audit record" +--- +# customerKeyServiceEncryptionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Customer Key service encryption events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.customerKeyServiceEncryptionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-datacentersecuritycmdletauditrecord.md b/api-reference/v1.0/resources/security-datacentersecuritycmdletauditrecord.md new file mode 100644 index 00000000000..2978440522e --- /dev/null +++ b/api-reference/v1.0/resources/security-datacentersecuritycmdletauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "dataCenterSecurityCmdletAuditRecord resource type" +description: "Represents an audit record for datacenter security cmdlet events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Datacenter security cmdlet audit record" +--- +# dataCenterSecurityCmdletAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for datacenter security cmdlet events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dataCenterSecurityCmdletAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-datagovernanceauditrecord.md b/api-reference/v1.0/resources/security-datagovernanceauditrecord.md new file mode 100644 index 00000000000..62a2fbd2a09 --- /dev/null +++ b/api-reference/v1.0/resources/security-datagovernanceauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "dataGovernanceAuditRecord resource type" +description: "Represents an audit record for data governance events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Data governance audit record" +--- +# dataGovernanceAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for data governance events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dataGovernanceAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-datainsightsrestapiauditrecord.md b/api-reference/v1.0/resources/security-datainsightsrestapiauditrecord.md new file mode 100644 index 00000000000..c83df703a7d --- /dev/null +++ b/api-reference/v1.0/resources/security-datainsightsrestapiauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "dataInsightsRestApiAuditRecord resource type" +description: "Represents an audit record for Data Insights REST API events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Data Insights REST API audit record" +--- +# dataInsightsRestApiAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Data Insights REST API events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dataInsightsRestApiAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-datalakeexportoperationauditrecord.md b/api-reference/v1.0/resources/security-datalakeexportoperationauditrecord.md new file mode 100644 index 00000000000..8d5d9d6600a --- /dev/null +++ b/api-reference/v1.0/resources/security-datalakeexportoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "dataLakeExportOperationAuditRecord resource type" +description: "Represents an audit record for data lake export operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Data lake export operation audit record" +--- +# dataLakeExportOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for data lake export operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dataLakeExportOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-datasecurityinvestigationauditrecord.md b/api-reference/v1.0/resources/security-datasecurityinvestigationauditrecord.md new file mode 100644 index 00000000000..80a0ac8ea72 --- /dev/null +++ b/api-reference/v1.0/resources/security-datasecurityinvestigationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "dataSecurityInvestigationAuditRecord resource type" +description: "Represents an audit record for data security investigation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Data security investigation audit record" +--- +# dataSecurityInvestigationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for data security investigation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dataSecurityInvestigationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-datashareoperationauditrecord.md b/api-reference/v1.0/resources/security-datashareoperationauditrecord.md new file mode 100644 index 00000000000..ed5cead278c --- /dev/null +++ b/api-reference/v1.0/resources/security-datashareoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "dataShareOperationAuditRecord resource type" +description: "Represents an audit record for data share operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Data share operation audit record" +--- +# dataShareOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for data share operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dataShareOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-defaultauditdata.md b/api-reference/v1.0/resources/security-defaultauditdata.md index 917d88f4547..8e267f3b8f3 100644 --- a/api-reference/v1.0/resources/security-defaultauditdata.md +++ b/api-reference/v1.0/resources/security-defaultauditdata.md @@ -1,28 +1,33 @@ --- title: "defaultAuditData resource type" description: "Represents a JSON object containing the actual audit log data." -author: "arishojaswi" +author: "imsandhya7-spec" +ms.subservice: security ms.localizationpriority: medium -ms.subservice: "security" doc_type: resourcePageType -ms.date: 03/06/2024 +ms.date: 06/17/2026 +toc.title: "Default audit data" --- - # defaultAuditData resource type Namespace: microsoft.graph.security Represents a JSON object containing the actual audit log data. -Inherits from [auditData](../resources/security-auditdata.md). +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). ## Properties + None. + ## Relationships + None. ## JSON representation + The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.security.defenderCaseManagementAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-defenderpreviewfeaturesrecord.md b/api-reference/v1.0/resources/security-defenderpreviewfeaturesrecord.md new file mode 100644 index 00000000000..1b705df346e --- /dev/null +++ b/api-reference/v1.0/resources/security-defenderpreviewfeaturesrecord.md @@ -0,0 +1,49 @@ +--- +title: "defenderPreviewFeaturesRecord resource type" +description: "Represents an audit record for Defender preview features events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Defender preview features audit record" +--- +# defenderPreviewFeaturesRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Defender preview features events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.defenderPreviewFeaturesRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-defendersecurityforaiconfigurationauditrecord.md b/api-reference/v1.0/resources/security-defendersecurityforaiconfigurationauditrecord.md new file mode 100644 index 00000000000..d04c81b708b --- /dev/null +++ b/api-reference/v1.0/resources/security-defendersecurityforaiconfigurationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "defenderSecurityForAIConfigurationAuditRecord resource type" +description: "Represents an audit record for Defender Security for AI configuration events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Defender Security for AI configuration audit record" +--- +# defenderSecurityForAIConfigurationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Defender Security for AI configuration events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.defenderSecurityForAIConfigurationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-deployfeatureactivityrecord.md b/api-reference/v1.0/resources/security-deployfeatureactivityrecord.md new file mode 100644 index 00000000000..6b2eb37e39f --- /dev/null +++ b/api-reference/v1.0/resources/security-deployfeatureactivityrecord.md @@ -0,0 +1,49 @@ +--- +title: "deployFeatureActivityRecord resource type" +description: "Represents an audit record for deploy feature activity events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Deploy feature activity audit record" +--- +# deployFeatureActivityRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for deploy feature activity events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.deployFeatureActivityRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-devicediscoverysettingsauthenticatedscansrecord.md b/api-reference/v1.0/resources/security-devicediscoverysettingsauthenticatedscansrecord.md new file mode 100644 index 00000000000..03be119c959 --- /dev/null +++ b/api-reference/v1.0/resources/security-devicediscoverysettingsauthenticatedscansrecord.md @@ -0,0 +1,49 @@ +--- +title: "deviceDiscoverySettingsAuthenticatedScansRecord resource type" +description: "Represents an audit record for device discovery settings authenticated scans events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Device discovery settings authenticated scans audit record" +--- +# deviceDiscoverySettingsAuthenticatedScansRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for device discovery settings authenticated scans events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.deviceDiscoverySettingsAuthenticatedScansRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-devicediscoverysettingsexclusionrecord.md b/api-reference/v1.0/resources/security-devicediscoverysettingsexclusionrecord.md new file mode 100644 index 00000000000..b663b83bb92 --- /dev/null +++ b/api-reference/v1.0/resources/security-devicediscoverysettingsexclusionrecord.md @@ -0,0 +1,49 @@ +--- +title: "deviceDiscoverySettingsExclusionRecord resource type" +description: "Represents an audit record for device discovery settings exclusion events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Device discovery settings exclusion audit record" +--- +# deviceDiscoverySettingsExclusionRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for device discovery settings exclusion events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.deviceDiscoverySettingsExclusionRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-devicediscoverysettingsrecord.md b/api-reference/v1.0/resources/security-devicediscoverysettingsrecord.md new file mode 100644 index 00000000000..bbe2882cf5c --- /dev/null +++ b/api-reference/v1.0/resources/security-devicediscoverysettingsrecord.md @@ -0,0 +1,49 @@ +--- +title: "deviceDiscoverySettingsRecord resource type" +description: "Represents an audit record for device discovery settings events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Device discovery settings audit record" +--- +# deviceDiscoverySettingsRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for device discovery settings events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.deviceDiscoverySettingsRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-discoveryauditrecord.md b/api-reference/v1.0/resources/security-discoveryauditrecord.md new file mode 100644 index 00000000000..e6a23cc6a70 --- /dev/null +++ b/api-reference/v1.0/resources/security-discoveryauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "discoveryAuditRecord resource type" +description: "Represents an audit record for discovery events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Discovery audit record" +--- +# discoveryAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for discovery events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.discoveryAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-dlpendpointauditrecord.md b/api-reference/v1.0/resources/security-dlpendpointauditrecord.md new file mode 100644 index 00000000000..98bfd88d3c2 --- /dev/null +++ b/api-reference/v1.0/resources/security-dlpendpointauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "dlpEndpointAuditRecord resource type" +description: "Represents an audit record for DLP endpoint events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "DLP endpoint audit record" +--- +# dlpEndpointAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for DLP endpoint events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dlpEndpointAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-dlpimportresultauditrecord.md b/api-reference/v1.0/resources/security-dlpimportresultauditrecord.md new file mode 100644 index 00000000000..3a941c2d7f2 --- /dev/null +++ b/api-reference/v1.0/resources/security-dlpimportresultauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "dlpImportResultAuditRecord resource type" +description: "Represents an audit record for DLP import result events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "DLP import result audit record" +--- +# dlpImportResultAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for DLP import result events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dlpImportResultAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-dlpsensitiveinformationtyperulepackagecmdletrecord.md b/api-reference/v1.0/resources/security-dlpsensitiveinformationtyperulepackagecmdletrecord.md new file mode 100644 index 00000000000..8a6cfe0cb6e --- /dev/null +++ b/api-reference/v1.0/resources/security-dlpsensitiveinformationtyperulepackagecmdletrecord.md @@ -0,0 +1,49 @@ +--- +title: "dlpSensitiveInformationTypeRulePackageCmdletRecord resource type" +description: "Represents an audit record for DLP sensitive information type rule package cmdlet events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "DLP sensitive information type rule package cmdlet audit record" +--- +# dlpSensitiveInformationTypeRulePackageCmdletRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for DLP sensitive information type rule package cmdlet events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dlpSensitiveInformationTypeRulePackageCmdletRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-dragoncopilotaccessrecord.md b/api-reference/v1.0/resources/security-dragoncopilotaccessrecord.md new file mode 100644 index 00000000000..32885a85132 --- /dev/null +++ b/api-reference/v1.0/resources/security-dragoncopilotaccessrecord.md @@ -0,0 +1,49 @@ +--- +title: "dragonCopilotAccessRecord resource type" +description: "Represents an audit record for Dragon Copilot access events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Dragon Copilot access audit record" +--- +# dragonCopilotAccessRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Dragon Copilot access events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dragonCopilotAccessRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-dragoncopilotadminrecord.md b/api-reference/v1.0/resources/security-dragoncopilotadminrecord.md new file mode 100644 index 00000000000..893f6c31a5a --- /dev/null +++ b/api-reference/v1.0/resources/security-dragoncopilotadminrecord.md @@ -0,0 +1,49 @@ +--- +title: "dragonCopilotAdminRecord resource type" +description: "Represents an audit record for Dragon Copilot admin events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Dragon Copilot admin audit record" +--- +# dragonCopilotAdminRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Dragon Copilot admin events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dragonCopilotAdminRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-dragoncopilotclinicaldatarecord.md b/api-reference/v1.0/resources/security-dragoncopilotclinicaldatarecord.md new file mode 100644 index 00000000000..e1c1d556786 --- /dev/null +++ b/api-reference/v1.0/resources/security-dragoncopilotclinicaldatarecord.md @@ -0,0 +1,49 @@ +--- +title: "dragonCopilotClinicalDataRecord resource type" +description: "Represents an audit record for Dragon Copilot clinical data events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Dragon Copilot clinical data audit record" +--- +# dragonCopilotClinicalDataRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Dragon Copilot clinical data events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dragonCopilotClinicalDataRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-dragoncopilotsessionrecord.md b/api-reference/v1.0/resources/security-dragoncopilotsessionrecord.md new file mode 100644 index 00000000000..19f18696224 --- /dev/null +++ b/api-reference/v1.0/resources/security-dragoncopilotsessionrecord.md @@ -0,0 +1,49 @@ +--- +title: "dragonCopilotSessionRecord resource type" +description: "Represents an audit record for Dragon Copilot session events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Dragon Copilot session audit record" +--- +# dragonCopilotSessionRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Dragon Copilot session events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dragonCopilotSessionRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-dynamics365businesscentralauditrecord.md b/api-reference/v1.0/resources/security-dynamics365businesscentralauditrecord.md new file mode 100644 index 00000000000..ab70b11a88c --- /dev/null +++ b/api-reference/v1.0/resources/security-dynamics365businesscentralauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "dynamics365BusinessCentralAuditRecord resource type" +description: "Represents an audit record for Dynamics 365 Business Central events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Dynamics 365 Business Central audit record" +--- +# dynamics365BusinessCentralAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Dynamics 365 Business Central events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.dynamics365BusinessCentralAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-ehrconnectorauditbaserecord.md b/api-reference/v1.0/resources/security-ehrconnectorauditbaserecord.md new file mode 100644 index 00000000000..9dcc9c1f272 --- /dev/null +++ b/api-reference/v1.0/resources/security-ehrconnectorauditbaserecord.md @@ -0,0 +1,49 @@ +--- +title: "ehrConnectorAuditBaseRecord resource type" +description: "Represents an audit record for EHR connector events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "EHR connector audit record" +--- +# ehrConnectorAuditBaseRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for EHR connector events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.ehrConnectorAuditBaseRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-eopsubmissionfeedentityauditrecord.md b/api-reference/v1.0/resources/security-eopsubmissionfeedentityauditrecord.md new file mode 100644 index 00000000000..04fee27e1dd --- /dev/null +++ b/api-reference/v1.0/resources/security-eopsubmissionfeedentityauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "eopSubmissionFeedEntityAuditRecord resource type" +description: "Represents an audit record for Exchange Online Protection (EOP) submission feed entity events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Exchange Online Protection (EOP) submission feed entity audit record" +--- +# eopSubmissionFeedEntityAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Exchange Online Protection (EOP) submission feed entity events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.eopSubmissionFeedEntityAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-exchangeadminauditrecord.md b/api-reference/v1.0/resources/security-exchangeadminauditrecord.md new file mode 100644 index 00000000000..a4219425291 --- /dev/null +++ b/api-reference/v1.0/resources/security-exchangeadminauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "exchangeAdminAuditRecord resource type" +description: "Represents an audit record for Exchange admin events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Exchange admin audit record" +--- +# exchangeAdminAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Exchange admin events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.exchangeAdminAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-exchangeaggregatedmailboxauditrecord.md b/api-reference/v1.0/resources/security-exchangeaggregatedmailboxauditrecord.md new file mode 100644 index 00000000000..166fb3b78df --- /dev/null +++ b/api-reference/v1.0/resources/security-exchangeaggregatedmailboxauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "exchangeAggregatedMailboxAuditRecord resource type" +description: "Represents an audit record for Exchange aggregated mailbox events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Exchange aggregated mailbox audit record" +--- +# exchangeAggregatedMailboxAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Exchange aggregated mailbox events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.exchangeAggregatedMailboxAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-exchangeaggregatedoperationrecord.md b/api-reference/v1.0/resources/security-exchangeaggregatedoperationrecord.md new file mode 100644 index 00000000000..44238959071 --- /dev/null +++ b/api-reference/v1.0/resources/security-exchangeaggregatedoperationrecord.md @@ -0,0 +1,49 @@ +--- +title: "exchangeAggregatedOperationRecord resource type" +description: "Represents an audit record for Exchange aggregated operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Exchange aggregated operation audit record" +--- +# exchangeAggregatedOperationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Exchange aggregated operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.exchangeAggregatedOperationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-exchangemailboxauditgrouprecord.md b/api-reference/v1.0/resources/security-exchangemailboxauditgrouprecord.md new file mode 100644 index 00000000000..eddab78d6eb --- /dev/null +++ b/api-reference/v1.0/resources/security-exchangemailboxauditgrouprecord.md @@ -0,0 +1,49 @@ +--- +title: "exchangeMailboxAuditGroupRecord resource type" +description: "Represents an audit record for Exchange mailbox audit group events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Exchange mailbox audit group audit record" +--- +# exchangeMailboxAuditGroupRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Exchange mailbox audit group events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.exchangeMailboxAuditGroupRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-exchangemailboxauditrecord.md b/api-reference/v1.0/resources/security-exchangemailboxauditrecord.md new file mode 100644 index 00000000000..e91de7cbe3b --- /dev/null +++ b/api-reference/v1.0/resources/security-exchangemailboxauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "exchangeMailboxAuditRecord resource type" +description: "Represents an audit record for Exchange mailbox events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Exchange mailbox audit record" +--- +# exchangeMailboxAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Exchange mailbox events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.exchangeMailboxAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-fabricauditrecord.md b/api-reference/v1.0/resources/security-fabricauditrecord.md new file mode 100644 index 00000000000..c692e870875 --- /dev/null +++ b/api-reference/v1.0/resources/security-fabricauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "fabricAuditRecord resource type" +description: "Represents an audit record for Microsoft Fabric events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Fabric audit record" +--- +# fabricAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Fabric events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.fabricAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-fabricpolicyrecord.md b/api-reference/v1.0/resources/security-fabricpolicyrecord.md new file mode 100644 index 00000000000..5a99938b696 --- /dev/null +++ b/api-reference/v1.0/resources/security-fabricpolicyrecord.md @@ -0,0 +1,49 @@ +--- +title: "fabricPolicyRecord resource type" +description: "Represents an audit record for Microsoft Fabric policy events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Fabric policy audit record" +--- +# fabricPolicyRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Fabric policy events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.fabricPolicyRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-healthcaresignalrecord.md b/api-reference/v1.0/resources/security-healthcaresignalrecord.md new file mode 100644 index 00000000000..b47d83c7bca --- /dev/null +++ b/api-reference/v1.0/resources/security-healthcaresignalrecord.md @@ -0,0 +1,49 @@ +--- +title: "healthcareSignalRecord resource type" +description: "Represents an audit record for healthcare signal events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Healthcare signal audit record" +--- +# healthcareSignalRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for healthcare signal events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.healthcareSignalRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-hostedrpaauditrecord.md b/api-reference/v1.0/resources/security-hostedrpaauditrecord.md new file mode 100644 index 00000000000..493549e499a --- /dev/null +++ b/api-reference/v1.0/resources/security-hostedrpaauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "hostedRpaAuditRecord resource type" +description: "Represents an audit record for hosted RPA events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Hosted RPA audit record" +--- +# hostedRpaAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for hosted RPA events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.hostedRpaAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-hrsignalauditrecord.md b/api-reference/v1.0/resources/security-hrsignalauditrecord.md new file mode 100644 index 00000000000..5dd66ef2ca7 --- /dev/null +++ b/api-reference/v1.0/resources/security-hrsignalauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "hrSignalAuditRecord resource type" +description: "Represents an audit record for HR signal events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "HR signal audit record" +--- +# hrSignalAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for HR signal events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.hrSignalAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-hygieneeventrecord.md b/api-reference/v1.0/resources/security-hygieneeventrecord.md new file mode 100644 index 00000000000..6b63f2e28bd --- /dev/null +++ b/api-reference/v1.0/resources/security-hygieneeventrecord.md @@ -0,0 +1,49 @@ +--- +title: "hygieneEventRecord resource type" +description: "Represents an audit record for hygiene events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Hygiene audit record" +--- +# hygieneEventRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for hygiene events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.hygieneEventRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-informationbarrierpolicyapplicationauditrecord.md b/api-reference/v1.0/resources/security-informationbarrierpolicyapplicationauditrecord.md new file mode 100644 index 00000000000..7ebfb37ebf8 --- /dev/null +++ b/api-reference/v1.0/resources/security-informationbarrierpolicyapplicationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "informationBarrierPolicyApplicationAuditRecord resource type" +description: "Represents an audit record for information barrier policy application events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Information barrier policy application audit record" +--- +# informationBarrierPolicyApplicationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for information barrier policy application events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.informationBarrierPolicyApplicationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-informationworkerprotectionauditrecord.md b/api-reference/v1.0/resources/security-informationworkerprotectionauditrecord.md new file mode 100644 index 00000000000..dcaad1ed58b --- /dev/null +++ b/api-reference/v1.0/resources/security-informationworkerprotectionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "informationWorkerProtectionAuditRecord resource type" +description: "Represents an audit record for information worker protection events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Information worker protection audit record" +--- +# informationWorkerProtectionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for information worker protection events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.informationWorkerProtectionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-insiderriskscopeduserinsightsrecord.md b/api-reference/v1.0/resources/security-insiderriskscopeduserinsightsrecord.md new file mode 100644 index 00000000000..f4038fc97cb --- /dev/null +++ b/api-reference/v1.0/resources/security-insiderriskscopeduserinsightsrecord.md @@ -0,0 +1,49 @@ +--- +title: "insiderRiskScopedUserInsightsRecord resource type" +description: "Represents an audit record for insider risk scoped user insights events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Insider risk scoped user insights audit record" +--- +# insiderRiskScopedUserInsightsRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for insider risk scoped user insights events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.insiderRiskScopedUserInsightsRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-insiderriskscopedusersrecord.md b/api-reference/v1.0/resources/security-insiderriskscopedusersrecord.md new file mode 100644 index 00000000000..bfe747264cf --- /dev/null +++ b/api-reference/v1.0/resources/security-insiderriskscopedusersrecord.md @@ -0,0 +1,49 @@ +--- +title: "insiderRiskScopedUsersRecord resource type" +description: "Represents an audit record for insider risk scoped users events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Insider risk scoped users audit record" +--- +# insiderRiskScopedUsersRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for insider risk scoped users events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.insiderRiskScopedUsersRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-integratedappsappadminactivityauditrecord.md b/api-reference/v1.0/resources/security-integratedappsappadminactivityauditrecord.md new file mode 100644 index 00000000000..65b67ce8a3a --- /dev/null +++ b/api-reference/v1.0/resources/security-integratedappsappadminactivityauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "integratedAppsAppAdminActivityAuditRecord resource type" +description: "Represents an audit record for Integrated Apps app admin activity events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Integrated Apps app admin activity audit record" +--- +# integratedAppsAppAdminActivityAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Integrated Apps app admin activity events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.integratedAppsAppAdminActivityAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-integratedappsappsettingsadminactivityauditrecord.md b/api-reference/v1.0/resources/security-integratedappsappsettingsadminactivityauditrecord.md new file mode 100644 index 00000000000..645dd65dc45 --- /dev/null +++ b/api-reference/v1.0/resources/security-integratedappsappsettingsadminactivityauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "integratedAppsAppSettingsAdminActivityAuditRecord resource type" +description: "Represents an audit record for Integrated Apps app settings admin activity events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Integrated Apps app settings admin activity audit record" +--- +# integratedAppsAppSettingsAdminActivityAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Integrated Apps app settings admin activity events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.integratedAppsAppSettingsAdminActivityAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-irmactivityaudittrailrecord.md b/api-reference/v1.0/resources/security-irmactivityaudittrailrecord.md new file mode 100644 index 00000000000..aa2e4de4431 --- /dev/null +++ b/api-reference/v1.0/resources/security-irmactivityaudittrailrecord.md @@ -0,0 +1,49 @@ +--- +title: "irmActivityAuditTrailRecord resource type" +description: "Represents an audit record for IRM activity audit trail events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "IRM activity audit trail audit record" +--- +# irmActivityAuditTrailRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for IRM activity audit trail events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.irmActivityAuditTrailRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-irmuserdefineddetectionrecord.md b/api-reference/v1.0/resources/security-irmuserdefineddetectionrecord.md new file mode 100644 index 00000000000..cca720b7245 --- /dev/null +++ b/api-reference/v1.0/resources/security-irmuserdefineddetectionrecord.md @@ -0,0 +1,49 @@ +--- +title: "irmUserDefinedDetectionRecord resource type" +description: "Represents an audit record for IRM user-defined detection events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "IRM user-defined detection audit record" +--- +# irmUserDefinedDetectionRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for IRM user-defined detection events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.irmUserDefinedDetectionRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-kaizalaauditrecord.md b/api-reference/v1.0/resources/security-kaizalaauditrecord.md new file mode 100644 index 00000000000..b80bb9187d7 --- /dev/null +++ b/api-reference/v1.0/resources/security-kaizalaauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "kaizalaAuditRecord resource type" +description: "Represents an audit record for Kaizala events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Kaizala audit record" +--- +# kaizalaAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Kaizala events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.kaizalaAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-labelanalyticsaggregateauditrecord.md b/api-reference/v1.0/resources/security-labelanalyticsaggregateauditrecord.md new file mode 100644 index 00000000000..5e9dc06b446 --- /dev/null +++ b/api-reference/v1.0/resources/security-labelanalyticsaggregateauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "labelAnalyticsAggregateAuditRecord resource type" +description: "Represents an audit record for label analytics aggregate events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Label analytics aggregate audit record" +--- +# labelAnalyticsAggregateAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for label analytics aggregate events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.labelAnalyticsAggregateAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-labelcontentexplorerauditrecord.md b/api-reference/v1.0/resources/security-labelcontentexplorerauditrecord.md new file mode 100644 index 00000000000..2a72b378185 --- /dev/null +++ b/api-reference/v1.0/resources/security-labelcontentexplorerauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "labelContentExplorerAuditRecord resource type" +description: "Represents an audit record for label content explorer events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Label content explorer audit record" +--- +# labelContentExplorerAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for label content explorer events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.labelContentExplorerAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-largecontentmetadataauditrecord.md b/api-reference/v1.0/resources/security-largecontentmetadataauditrecord.md new file mode 100644 index 00000000000..a5dd13289dd --- /dev/null +++ b/api-reference/v1.0/resources/security-largecontentmetadataauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "largeContentMetadataAuditRecord resource type" +description: "Represents an audit record for large content metadata events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Large content metadata audit record" +--- +# largeContentMetadataAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for large content metadata events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.largeContentMetadataAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-m365complianceconnectorauditrecord.md b/api-reference/v1.0/resources/security-m365complianceconnectorauditrecord.md new file mode 100644 index 00000000000..d89d6078ddd --- /dev/null +++ b/api-reference/v1.0/resources/security-m365complianceconnectorauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "m365ComplianceConnectorAuditRecord resource type" +description: "Represents an audit record for Microsoft 365 compliance connector events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 compliance connector audit record" +--- +# m365ComplianceConnectorAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 compliance connector events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.m365ComplianceConnectorAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-m365daadauditrecord.md b/api-reference/v1.0/resources/security-m365daadauditrecord.md new file mode 100644 index 00000000000..9728a05215e --- /dev/null +++ b/api-reference/v1.0/resources/security-m365daadauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "m365daadAuditRecord resource type" +description: "Represents an audit record for Microsoft 365 Defender AAD events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 Defender AAD audit record" +--- +# m365daadAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 Defender AAD events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.m365daadAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-m365odspassetmetadatarecord.md b/api-reference/v1.0/resources/security-m365odspassetmetadatarecord.md new file mode 100644 index 00000000000..fcc24477b55 --- /dev/null +++ b/api-reference/v1.0/resources/security-m365odspassetmetadatarecord.md @@ -0,0 +1,49 @@ +--- +title: "m365odspAssetMetadataRecord resource type" +description: "Represents an audit record for Microsoft 365 ODSP asset metadata events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 ODSP asset metadata audit record" +--- +# m365odspAssetMetadataRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 ODSP asset metadata events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.m365odspAssetMetadataRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-m365searchsectionsrecord.md b/api-reference/v1.0/resources/security-m365searchsectionsrecord.md new file mode 100644 index 00000000000..e6d0cfc7dde --- /dev/null +++ b/api-reference/v1.0/resources/security-m365searchsectionsrecord.md @@ -0,0 +1,49 @@ +--- +title: "m365SearchSectionsRecord resource type" +description: "Represents an audit record for Microsoft 365 Search sections events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 Search sections audit record" +--- +# m365SearchSectionsRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 Search sections events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.m365SearchSectionsRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mailsubmissiondata.md b/api-reference/v1.0/resources/security-mailsubmissiondata.md new file mode 100644 index 00000000000..86d5966c56c --- /dev/null +++ b/api-reference/v1.0/resources/security-mailsubmissiondata.md @@ -0,0 +1,49 @@ +--- +title: "mailSubmissionData resource type" +description: "Represents mail submission data." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Mail submission data" +--- +# mailSubmissionData resource type + +Namespace: microsoft.graph.security + +Represents mail submission data. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mailSubmissionData", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-managedservicesauditrecord.md b/api-reference/v1.0/resources/security-managedservicesauditrecord.md new file mode 100644 index 00000000000..1a283b407db --- /dev/null +++ b/api-reference/v1.0/resources/security-managedservicesauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "managedServicesAuditRecord resource type" +description: "Represents an audit record for managed services events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Managed services audit record" +--- +# managedServicesAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for managed services events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.managedServicesAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-managedtenantsauditrecord.md b/api-reference/v1.0/resources/security-managedtenantsauditrecord.md new file mode 100644 index 00000000000..1fdb8ffef2f --- /dev/null +++ b/api-reference/v1.0/resources/security-managedtenantsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "managedTenantsAuditRecord resource type" +description: "Represents an audit record for managed tenants events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Managed tenants audit record" +--- +# managedTenantsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for managed tenants events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.managedTenantsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mapgalertsauditrecord.md b/api-reference/v1.0/resources/security-mapgalertsauditrecord.md new file mode 100644 index 00000000000..9f8b843a911 --- /dev/null +++ b/api-reference/v1.0/resources/security-mapgalertsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mapgAlertsAuditRecord resource type" +description: "Represents an audit record for Microsoft Attack Path Graph (MAPG) alerts events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Attack Path Graph (MAPG) alerts audit record" +--- +# mapgAlertsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Attack Path Graph (MAPG) alerts events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mapgAlertsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mapgonboardauditrecord.md b/api-reference/v1.0/resources/security-mapgonboardauditrecord.md new file mode 100644 index 00000000000..72ca8583b67 --- /dev/null +++ b/api-reference/v1.0/resources/security-mapgonboardauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mapgOnboardAuditRecord resource type" +description: "Represents an audit record for Microsoft Attack Path Graph (MAPG) onboard events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Attack Path Graph (MAPG) onboard audit record" +--- +# mapgOnboardAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Attack Path Graph (MAPG) onboard events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mapgOnboardAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mapgpolicyauditrecord.md b/api-reference/v1.0/resources/security-mapgpolicyauditrecord.md new file mode 100644 index 00000000000..1b21b0a86e0 --- /dev/null +++ b/api-reference/v1.0/resources/security-mapgpolicyauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mapgPolicyAuditRecord resource type" +description: "Represents an audit record for Microsoft Attack Path Graph (MAPG) policy events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Attack Path Graph (MAPG) policy audit record" +--- +# mapgPolicyAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Attack Path Graph (MAPG) policy events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mapgPolicyAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mapgremediationauditrecord.md b/api-reference/v1.0/resources/security-mapgremediationauditrecord.md new file mode 100644 index 00000000000..153993b67e1 --- /dev/null +++ b/api-reference/v1.0/resources/security-mapgremediationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mapgRemediationAuditRecord resource type" +description: "Represents an audit record for Microsoft Attack Path Graph (MAPG) remediation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Attack Path Graph (MAPG) remediation audit record" +--- +# mapgRemediationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Attack Path Graph (MAPG) remediation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mapgRemediationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mcasalertsauditrecord.md b/api-reference/v1.0/resources/security-mcasalertsauditrecord.md new file mode 100644 index 00000000000..059a65ba54d --- /dev/null +++ b/api-reference/v1.0/resources/security-mcasalertsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mcasAlertsAuditRecord resource type" +description: "Represents an audit record for Microsoft Cloud App Security (MCAS) alerts events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Cloud App Security (MCAS) alerts audit record" +--- +# mcasAlertsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Cloud App Security (MCAS) alerts events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mcasAlertsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mdaauditrecord.md b/api-reference/v1.0/resources/security-mdaauditrecord.md new file mode 100644 index 00000000000..6abe3c9220f --- /dev/null +++ b/api-reference/v1.0/resources/security-mdaauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mdaAuditRecord resource type" +description: "Represents an audit record for Microsoft Defender for Cloud Apps (MDA) events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Defender for Cloud Apps (MDA) audit record" +--- +# mdaAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Defender for Cloud Apps (MDA) events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mdaAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mdadatasecuritysignalrecord.md b/api-reference/v1.0/resources/security-mdadatasecuritysignalrecord.md new file mode 100644 index 00000000000..d71d788946e --- /dev/null +++ b/api-reference/v1.0/resources/security-mdadatasecuritysignalrecord.md @@ -0,0 +1,49 @@ +--- +title: "mdaDataSecuritySignalRecord resource type" +description: "Represents an audit record for Microsoft Defender for Cloud Apps (MDA) data security signal events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Defender for Cloud Apps (MDA) data security signal audit record" +--- +# mdaDataSecuritySignalRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Defender for Cloud Apps (MDA) data security signal events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mdaDataSecuritySignalRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mdashauditrecord.md b/api-reference/v1.0/resources/security-mdashauditrecord.md new file mode 100644 index 00000000000..ddf5d662605 --- /dev/null +++ b/api-reference/v1.0/resources/security-mdashauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mDASHAuditRecord resource type" +description: "Represents an audit record for Microsoft Defender for Application Security Hygiene (MDASH) events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Defender for Application Security Hygiene (MDASH) audit record" +--- +# mDASHAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Defender for Application Security Hygiene (MDASH) events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mDASHAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mdatpauditrecord.md b/api-reference/v1.0/resources/security-mdatpauditrecord.md new file mode 100644 index 00000000000..2c83c6b6856 --- /dev/null +++ b/api-reference/v1.0/resources/security-mdatpauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mdatpAuditRecord resource type" +description: "Represents an audit record for Microsoft Defender ATP (MDATP) events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Defender ATP (MDATP) audit record" +--- +# mdatpAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Defender ATP (MDATP) events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mdatpAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mdceventsrecord.md b/api-reference/v1.0/resources/security-mdceventsrecord.md new file mode 100644 index 00000000000..2e0fd5fc707 --- /dev/null +++ b/api-reference/v1.0/resources/security-mdceventsrecord.md @@ -0,0 +1,49 @@ +--- +title: "mdcEventsRecord resource type" +description: "Represents an audit record for Microsoft Defender for Cloud (MDC) events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Defender for Cloud (MDC) audit record" +--- +# mdcEventsRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Defender for Cloud (MDC) events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mdcEventsRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mdiauditrecord.md b/api-reference/v1.0/resources/security-mdiauditrecord.md new file mode 100644 index 00000000000..b15c889c4c5 --- /dev/null +++ b/api-reference/v1.0/resources/security-mdiauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mdiAuditRecord resource type" +description: "Represents an audit record for Microsoft Defender for Identity (MDI) events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Defender for Identity (MDI) audit record" +--- +# mdiAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Defender for Identity (MDI) events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mdiAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-meshworldsauditrecord.md b/api-reference/v1.0/resources/security-meshworldsauditrecord.md new file mode 100644 index 00000000000..68279e45f56 --- /dev/null +++ b/api-reference/v1.0/resources/security-meshworldsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "meshWorldsAuditRecord resource type" +description: "Represents an audit record for Mesh Worlds events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Mesh Worlds audit record" +--- +# meshWorldsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Mesh Worlds events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.meshWorldsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoft365backupbackupitemauditrecord.md b/api-reference/v1.0/resources/security-microsoft365backupbackupitemauditrecord.md new file mode 100644 index 00000000000..7140912c084 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoft365backupbackupitemauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoft365BackupBackupItemAuditRecord resource type" +description: "Represents an audit record for Microsoft 365 Backup backup item events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 Backup backup item audit record" +--- +# microsoft365BackupBackupItemAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 Backup backup item events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoft365BackupBackupItemAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoft365backupbackuppolicyauditrecord.md b/api-reference/v1.0/resources/security-microsoft365backupbackuppolicyauditrecord.md new file mode 100644 index 00000000000..4dcd02cc614 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoft365backupbackuppolicyauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoft365BackupBackupPolicyAuditRecord resource type" +description: "Represents an audit record for Microsoft 365 Backup backup policy events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 Backup backup policy audit record" +--- +# microsoft365BackupBackupPolicyAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 Backup backup policy events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoft365BackupBackupPolicyAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoft365backupgranularbrowsetaskauditrecord.md b/api-reference/v1.0/resources/security-microsoft365backupgranularbrowsetaskauditrecord.md new file mode 100644 index 00000000000..3310767a6ef --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoft365backupgranularbrowsetaskauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoft365BackupGranularBrowseTaskAuditRecord resource type" +description: "Represents an audit record for Microsoft 365 Backup granular browse task events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 Backup granular browse task audit record" +--- +# microsoft365BackupGranularBrowseTaskAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 Backup granular browse task events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoft365BackupGranularBrowseTaskAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoft365backuprestoreitemauditrecord.md b/api-reference/v1.0/resources/security-microsoft365backuprestoreitemauditrecord.md new file mode 100644 index 00000000000..d8a119563b8 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoft365backuprestoreitemauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoft365BackupRestoreItemAuditRecord resource type" +description: "Represents an audit record for Microsoft 365 Backup restore item events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 Backup restore item audit record" +--- +# microsoft365BackupRestoreItemAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 Backup restore item events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoft365BackupRestoreItemAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoft365backuprestoretaskauditrecord.md b/api-reference/v1.0/resources/security-microsoft365backuprestoretaskauditrecord.md new file mode 100644 index 00000000000..2e8280fad23 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoft365backuprestoretaskauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoft365BackupRestoreTaskAuditRecord resource type" +description: "Represents an audit record for Microsoft 365 Backup restore task events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 Backup restore task audit record" +--- +# microsoft365BackupRestoreTaskAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 Backup restore task events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoft365BackupRestoreTaskAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoft365copilotscheduledpromptauditrecord.md b/api-reference/v1.0/resources/security-microsoft365copilotscheduledpromptauditrecord.md new file mode 100644 index 00000000000..a5774e3d464 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoft365copilotscheduledpromptauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoft365CopilotScheduledPromptAuditRecord resource type" +description: "Represents an audit record for Microsoft 365 Copilot scheduled prompt events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 Copilot scheduled prompt audit record" +--- +# microsoft365CopilotScheduledPromptAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 Copilot scheduled prompt events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoft365CopilotScheduledPromptAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftdefenderexpertsxdrauditrecord.md b/api-reference/v1.0/resources/security-microsoftdefenderexpertsxdrauditrecord.md new file mode 100644 index 00000000000..2b29312160b --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftdefenderexpertsxdrauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftDefenderExpertsXDRAuditRecord resource type" +description: "Represents an audit record for Microsoft Defender Experts XDR events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Defender Experts XDR audit record" +--- +# microsoftDefenderExpertsXDRAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Defender Experts XDR events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftDefenderExpertsXDRAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftflowauditrecord.md b/api-reference/v1.0/resources/security-microsoftflowauditrecord.md new file mode 100644 index 00000000000..1c89889bee7 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftflowauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftFlowAuditRecord resource type" +description: "Represents an audit record for Microsoft Flow events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Flow audit record" +--- +# microsoftFlowAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Flow events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftFlowAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftformsauditrecord.md b/api-reference/v1.0/resources/security-microsoftformsauditrecord.md new file mode 100644 index 00000000000..593b400ec99 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftformsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftFormsAuditRecord resource type" +description: "Represents an audit record for Microsoft Forms events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Forms audit record" +--- +# microsoftFormsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Forms events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftFormsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftgraphdataconnectconsent.md b/api-reference/v1.0/resources/security-microsoftgraphdataconnectconsent.md new file mode 100644 index 00000000000..c08a936f107 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftgraphdataconnectconsent.md @@ -0,0 +1,49 @@ +--- +title: "microsoftGraphDataConnectConsent resource type" +description: "Represents an audit record for Microsoft Graph Data Connect consent events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Graph Data Connect consent audit record" +--- +# microsoftGraphDataConnectConsent resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Graph Data Connect consent events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftGraphDataConnectConsent", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftgraphdataconnectoperation.md b/api-reference/v1.0/resources/security-microsoftgraphdataconnectoperation.md new file mode 100644 index 00000000000..de11e1de559 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftgraphdataconnectoperation.md @@ -0,0 +1,49 @@ +--- +title: "microsoftGraphDataConnectOperation resource type" +description: "Represents an audit record for Microsoft Graph Data Connect operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Graph Data Connect operation audit record" +--- +# microsoftGraphDataConnectOperation resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Graph Data Connect operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftGraphDataConnectOperation", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftpurviewdatacatalogoperationrecord.md b/api-reference/v1.0/resources/security-microsoftpurviewdatacatalogoperationrecord.md new file mode 100644 index 00000000000..0d697077a4c --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftpurviewdatacatalogoperationrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftPurviewDataCatalogOperationRecord resource type" +description: "Represents an audit record for Microsoft Purview Data Catalog operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Purview Data Catalog operation audit record" +--- +# microsoftPurviewDataCatalogOperationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Purview Data Catalog operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftPurviewDataCatalogOperationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftpurviewdatamapoperationrecord.md b/api-reference/v1.0/resources/security-microsoftpurviewdatamapoperationrecord.md new file mode 100644 index 00000000000..5c9f16584ef --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftpurviewdatamapoperationrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftPurviewDataMapOperationRecord resource type" +description: "Represents an audit record for Microsoft Purview Data Map operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Purview Data Map operation audit record" +--- +# microsoftPurviewDataMapOperationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Purview Data Map operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftPurviewDataMapOperationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftpurviewmetadatapolicyoperationrecord.md b/api-reference/v1.0/resources/security-microsoftpurviewmetadatapolicyoperationrecord.md new file mode 100644 index 00000000000..f298b42c8d2 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftpurviewmetadatapolicyoperationrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftPurviewMetadataPolicyOperationRecord resource type" +description: "Represents an audit record for Microsoft Purview metadata policy operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Purview metadata policy operation audit record" +--- +# microsoftPurviewMetadataPolicyOperationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Purview metadata policy operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftPurviewMetadataPolicyOperationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftpurviewpolicyoperationrecord.md b/api-reference/v1.0/resources/security-microsoftpurviewpolicyoperationrecord.md new file mode 100644 index 00000000000..aacc997db35 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftpurviewpolicyoperationrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftPurviewPolicyOperationRecord resource type" +description: "Represents an audit record for Microsoft Purview policy operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Purview policy operation audit record" +--- +# microsoftPurviewPolicyOperationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Purview policy operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftPurviewPolicyOperationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftpurviewprivacyauditevent.md b/api-reference/v1.0/resources/security-microsoftpurviewprivacyauditevent.md new file mode 100644 index 00000000000..194f2c291aa --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftpurviewprivacyauditevent.md @@ -0,0 +1,49 @@ +--- +title: "microsoftPurviewPrivacyAuditEvent resource type" +description: "Represents an audit record for Microsoft Purview Privacy events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Purview Privacy audit record" +--- +# microsoftPurviewPrivacyAuditEvent resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Purview Privacy events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftPurviewPrivacyAuditEvent", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftpurviewunifiedcatalogoperationrecord.md b/api-reference/v1.0/resources/security-microsoftpurviewunifiedcatalogoperationrecord.md new file mode 100644 index 00000000000..dd18a85bd1b --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftpurviewunifiedcatalogoperationrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftPurviewUnifiedCatalogOperationRecord resource type" +description: "Represents an audit record for Microsoft Purview Unified Catalog operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Purview Unified Catalog operation audit record" +--- +# microsoftPurviewUnifiedCatalogOperationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Purview Unified Catalog operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftPurviewUnifiedCatalogOperationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftstreamauditrecord.md b/api-reference/v1.0/resources/security-microsoftstreamauditrecord.md new file mode 100644 index 00000000000..51e23e84ce8 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftstreamauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftStreamAuditRecord resource type" +description: "Represents an audit record for Microsoft Stream events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Stream audit record" +--- +# microsoftStreamAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Stream events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftStreamAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftteamsadminauditrecord.md b/api-reference/v1.0/resources/security-microsoftteamsadminauditrecord.md new file mode 100644 index 00000000000..1b2ff47c461 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftteamsadminauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftTeamsAdminAuditRecord resource type" +description: "Represents an audit record for Microsoft Teams admin events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Teams admin audit record" +--- +# microsoftTeamsAdminAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Teams admin events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftTeamsAdminAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftteamsanalyticsauditrecord.md b/api-reference/v1.0/resources/security-microsoftteamsanalyticsauditrecord.md new file mode 100644 index 00000000000..054d5343474 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftteamsanalyticsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftTeamsAnalyticsAuditRecord resource type" +description: "Represents an audit record for Microsoft Teams analytics events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Teams analytics audit record" +--- +# microsoftTeamsAnalyticsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Teams analytics events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftTeamsAnalyticsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftteamsauditrecord.md b/api-reference/v1.0/resources/security-microsoftteamsauditrecord.md new file mode 100644 index 00000000000..b7693db134e --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftteamsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftTeamsAuditRecord resource type" +description: "Represents an audit record for Microsoft Teams events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Teams audit record" +--- +# microsoftTeamsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Teams events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftTeamsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftteamsdeviceauditrecord.md b/api-reference/v1.0/resources/security-microsoftteamsdeviceauditrecord.md new file mode 100644 index 00000000000..08b521023d8 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftteamsdeviceauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftTeamsDeviceAuditRecord resource type" +description: "Represents an audit record for Microsoft Teams device events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Teams device audit record" +--- +# microsoftTeamsDeviceAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Teams device events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftTeamsDeviceAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftteamsretentionlabelactionauditrecord.md b/api-reference/v1.0/resources/security-microsoftteamsretentionlabelactionauditrecord.md new file mode 100644 index 00000000000..5eff6e87456 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftteamsretentionlabelactionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftTeamsRetentionLabelActionAuditRecord resource type" +description: "Represents an audit record for Microsoft Teams retention label action events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Teams retention label action audit record" +--- +# microsoftTeamsRetentionLabelActionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Teams retention label action events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftTeamsRetentionLabelActionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftteamssensitivitylabelactionauditrecord.md b/api-reference/v1.0/resources/security-microsoftteamssensitivitylabelactionauditrecord.md new file mode 100644 index 00000000000..496de576080 --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftteamssensitivitylabelactionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftTeamsSensitivityLabelActionAuditRecord resource type" +description: "Represents an audit record for Microsoft Teams sensitivity label action events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Teams sensitivity label action audit record" +--- +# microsoftTeamsSensitivityLabelActionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Teams sensitivity label action events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftTeamsSensitivityLabelActionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftteamsshiftsauditrecord.md b/api-reference/v1.0/resources/security-microsoftteamsshiftsauditrecord.md new file mode 100644 index 00000000000..35111b53acc --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftteamsshiftsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftTeamsShiftsAuditRecord resource type" +description: "Represents an audit record for Microsoft Teams Shifts events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Teams Shifts audit record" +--- +# microsoftTeamsShiftsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Teams Shifts events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftTeamsShiftsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-microsoftteamsuserconcernauditrecord.md b/api-reference/v1.0/resources/security-microsoftteamsuserconcernauditrecord.md new file mode 100644 index 00000000000..0ca9e4a16ee --- /dev/null +++ b/api-reference/v1.0/resources/security-microsoftteamsuserconcernauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "microsoftTeamsUserConcernAuditRecord resource type" +description: "Represents an audit record for Microsoft Teams user concern events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Teams user concern audit record" +--- +# microsoftTeamsUserConcernAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Teams user concern events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.microsoftTeamsUserConcernAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mipautolabelexchangeitemauditrecord.md b/api-reference/v1.0/resources/security-mipautolabelexchangeitemauditrecord.md new file mode 100644 index 00000000000..d8feb85185c --- /dev/null +++ b/api-reference/v1.0/resources/security-mipautolabelexchangeitemauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mipAutoLabelExchangeItemAuditRecord resource type" +description: "Represents an audit record for MIP auto-label Exchange item events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MIP auto-label Exchange item audit record" +--- +# mipAutoLabelExchangeItemAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MIP auto-label Exchange item events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mipAutoLabelExchangeItemAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mipautolabelprogressfeedbackauditrecord.md b/api-reference/v1.0/resources/security-mipautolabelprogressfeedbackauditrecord.md new file mode 100644 index 00000000000..8bf801c8e43 --- /dev/null +++ b/api-reference/v1.0/resources/security-mipautolabelprogressfeedbackauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mipAutoLabelProgressFeedbackAuditRecord resource type" +description: "Represents an audit record for MIP auto-label progress feedback events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MIP auto-label progress feedback audit record" +--- +# mipAutoLabelProgressFeedbackAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MIP auto-label progress feedback events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mipAutoLabelProgressFeedbackAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mipautolabelsharepointitemauditrecord.md b/api-reference/v1.0/resources/security-mipautolabelsharepointitemauditrecord.md new file mode 100644 index 00000000000..26ed56e0ab0 --- /dev/null +++ b/api-reference/v1.0/resources/security-mipautolabelsharepointitemauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mipAutoLabelSharePointItemAuditRecord resource type" +description: "Represents an audit record for MIP auto-label SharePoint item events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MIP auto-label SharePoint item audit record" +--- +# mipAutoLabelSharePointItemAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MIP auto-label SharePoint item events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mipAutoLabelSharePointItemAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mipautolabelsharepointpolicylocationauditrecord.md b/api-reference/v1.0/resources/security-mipautolabelsharepointpolicylocationauditrecord.md new file mode 100644 index 00000000000..3c4d83abf60 --- /dev/null +++ b/api-reference/v1.0/resources/security-mipautolabelsharepointpolicylocationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mipAutoLabelSharePointPolicyLocationAuditRecord resource type" +description: "Represents an audit record for MIP auto-label SharePoint policy location events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MIP auto-label SharePoint policy location audit record" +--- +# mipAutoLabelSharePointPolicyLocationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MIP auto-label SharePoint policy location events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mipAutoLabelSharePointPolicyLocationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mipautolabelsimulationsharepointcompletionrecord.md b/api-reference/v1.0/resources/security-mipautolabelsimulationsharepointcompletionrecord.md new file mode 100644 index 00000000000..b4e4a5ada3b --- /dev/null +++ b/api-reference/v1.0/resources/security-mipautolabelsimulationsharepointcompletionrecord.md @@ -0,0 +1,49 @@ +--- +title: "mipAutoLabelSimulationSharePointCompletionRecord resource type" +description: "Represents an audit record for MIP auto-label simulation SharePoint completion events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MIP auto-label simulation SharePoint completion audit record" +--- +# mipAutoLabelSimulationSharePointCompletionRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MIP auto-label simulation SharePoint completion events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mipAutoLabelSimulationSharePointCompletionRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mipautolabelsimulationsharepointprogressrecord.md b/api-reference/v1.0/resources/security-mipautolabelsimulationsharepointprogressrecord.md new file mode 100644 index 00000000000..649b0df92a1 --- /dev/null +++ b/api-reference/v1.0/resources/security-mipautolabelsimulationsharepointprogressrecord.md @@ -0,0 +1,49 @@ +--- +title: "mipAutoLabelSimulationSharePointProgressRecord resource type" +description: "Represents an audit record for MIP auto-label simulation SharePoint progress events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MIP auto-label simulation SharePoint progress audit record" +--- +# mipAutoLabelSimulationSharePointProgressRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MIP auto-label simulation SharePoint progress events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mipAutoLabelSimulationSharePointProgressRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mipautolabelsimulationstatisticsrecord.md b/api-reference/v1.0/resources/security-mipautolabelsimulationstatisticsrecord.md new file mode 100644 index 00000000000..4b2cc8505a6 --- /dev/null +++ b/api-reference/v1.0/resources/security-mipautolabelsimulationstatisticsrecord.md @@ -0,0 +1,49 @@ +--- +title: "mipAutoLabelSimulationStatisticsRecord resource type" +description: "Represents an audit record for MIP auto-label simulation statistics events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MIP auto-label simulation statistics audit record" +--- +# mipAutoLabelSimulationStatisticsRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MIP auto-label simulation statistics events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mipAutoLabelSimulationStatisticsRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mipexactdatamatchauditrecord.md b/api-reference/v1.0/resources/security-mipexactdatamatchauditrecord.md new file mode 100644 index 00000000000..f4da16872b2 --- /dev/null +++ b/api-reference/v1.0/resources/security-mipexactdatamatchauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mipExactDataMatchAuditRecord resource type" +description: "Represents an audit record for MIP exact data match events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MIP exact data match audit record" +--- +# mipExactDataMatchAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MIP exact data match events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mipExactDataMatchAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-miplabelanalyticsauditrecord.md b/api-reference/v1.0/resources/security-miplabelanalyticsauditrecord.md new file mode 100644 index 00000000000..aabc9f65a65 --- /dev/null +++ b/api-reference/v1.0/resources/security-miplabelanalyticsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mipLabelAnalyticsAuditRecord resource type" +description: "Represents an audit record for MIP label analytics events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MIP label analytics audit record" +--- +# mipLabelAnalyticsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MIP label analytics events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mipLabelAnalyticsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-miplabelauditrecord.md b/api-reference/v1.0/resources/security-miplabelauditrecord.md new file mode 100644 index 00000000000..26f3c4b0cbc --- /dev/null +++ b/api-reference/v1.0/resources/security-miplabelauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mipLabelAuditRecord resource type" +description: "Represents an audit record for MIP label events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MIP label audit record" +--- +# mipLabelAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MIP label events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mipLabelAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mosagentinforecord.md b/api-reference/v1.0/resources/security-mosagentinforecord.md new file mode 100644 index 00000000000..9820a30c8c4 --- /dev/null +++ b/api-reference/v1.0/resources/security-mosagentinforecord.md @@ -0,0 +1,49 @@ +--- +title: "mosAgentInfoRecord resource type" +description: "Represents an audit record for MOS agent info events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MOS agent info audit record" +--- +# mosAgentInfoRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MOS agent info events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mosAgentInfoRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mosagentinforecordv2.md b/api-reference/v1.0/resources/security-mosagentinforecordv2.md new file mode 100644 index 00000000000..5368d1e1fde --- /dev/null +++ b/api-reference/v1.0/resources/security-mosagentinforecordv2.md @@ -0,0 +1,49 @@ +--- +title: "mosAgentInfoRecordV2 resource type" +description: "Represents an audit record for MOS agent info V2 events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MOS agent info V2 audit record" +--- +# mosAgentInfoRecordV2 resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MOS agent info V2 events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mosAgentInfoRecordV2", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-ms365dcustomdetectionauditrecord.md b/api-reference/v1.0/resources/security-ms365dcustomdetectionauditrecord.md new file mode 100644 index 00000000000..ba56c47622f --- /dev/null +++ b/api-reference/v1.0/resources/security-ms365dcustomdetectionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "ms365dCustomDetectionAuditRecord resource type" +description: "Represents an audit record for Microsoft 365 Defender custom detection events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 Defender custom detection audit record" +--- +# ms365dCustomDetectionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 Defender custom detection events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.ms365dCustomDetectionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-ms365dincidentauditrecord.md b/api-reference/v1.0/resources/security-ms365dincidentauditrecord.md new file mode 100644 index 00000000000..1e518a4c36f --- /dev/null +++ b/api-reference/v1.0/resources/security-ms365dincidentauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "ms365dIncidentAuditRecord resource type" +description: "Represents an audit record for Microsoft 365 Defender incident events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 Defender incident audit record" +--- +# ms365dIncidentAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 Defender incident events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.ms365dIncidentAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-ms365dsuppressionruleauditrecord.md b/api-reference/v1.0/resources/security-ms365dsuppressionruleauditrecord.md new file mode 100644 index 00000000000..2dadbc78f41 --- /dev/null +++ b/api-reference/v1.0/resources/security-ms365dsuppressionruleauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "ms365dSuppressionRuleAuditRecord resource type" +description: "Represents an audit record for Microsoft 365 Defender suppression rule events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft 365 Defender suppression rule audit record" +--- +# ms365dSuppressionRuleAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft 365 Defender suppression rule events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.ms365dSuppressionRuleAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-msdecustomcollectionauditrecord.md b/api-reference/v1.0/resources/security-msdecustomcollectionauditrecord.md new file mode 100644 index 00000000000..2cf6316126e --- /dev/null +++ b/api-reference/v1.0/resources/security-msdecustomcollectionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "msdeCustomCollectionAuditRecord resource type" +description: "Represents an audit record for Microsoft Defender for Endpoint (MSDE) custom collection events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Defender for Endpoint (MSDE) custom collection audit record" +--- +# msdeCustomCollectionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Defender for Endpoint (MSDE) custom collection events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.msdeCustomCollectionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-msdegeneralsettingsauditrecord.md b/api-reference/v1.0/resources/security-msdegeneralsettingsauditrecord.md new file mode 100644 index 00000000000..57312424a16 --- /dev/null +++ b/api-reference/v1.0/resources/security-msdegeneralsettingsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "msdeGeneralSettingsAuditRecord resource type" +description: "Represents an audit record for Microsoft Defender for Endpoint (MSDE) general settings events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Defender for Endpoint (MSDE) general settings audit record" +--- +# msdeGeneralSettingsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Defender for Endpoint (MSDE) general settings events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.msdeGeneralSettingsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-msdeindicatorssettingsauditrecord.md b/api-reference/v1.0/resources/security-msdeindicatorssettingsauditrecord.md new file mode 100644 index 00000000000..fba0daa9226 --- /dev/null +++ b/api-reference/v1.0/resources/security-msdeindicatorssettingsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "msdeIndicatorsSettingsAuditRecord resource type" +description: "Represents an audit record for Microsoft Defender for Endpoint (MSDE) indicators settings events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Defender for Endpoint (MSDE) indicators settings audit record" +--- +# msdeIndicatorsSettingsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Defender for Endpoint (MSDE) indicators settings events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.msdeIndicatorsSettingsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-msderesponseactionsauditrecord.md b/api-reference/v1.0/resources/security-msderesponseactionsauditrecord.md new file mode 100644 index 00000000000..8724ba9366f --- /dev/null +++ b/api-reference/v1.0/resources/security-msderesponseactionsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "msdeResponseActionsAuditRecord resource type" +description: "Represents an audit record for Microsoft Defender for Endpoint (MSDE) response actions events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Defender for Endpoint (MSDE) response actions audit record" +--- +# msdeResponseActionsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Defender for Endpoint (MSDE) response actions events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.msdeResponseActionsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-msderolessettingsauditrecord.md b/api-reference/v1.0/resources/security-msderolessettingsauditrecord.md new file mode 100644 index 00000000000..a27da851253 --- /dev/null +++ b/api-reference/v1.0/resources/security-msderolessettingsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "msdeRolesSettingsAuditRecord resource type" +description: "Represents an audit record for Microsoft Defender for Endpoint (MSDE) roles settings events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Defender for Endpoint (MSDE) roles settings audit record" +--- +# msdeRolesSettingsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Defender for Endpoint (MSDE) roles settings events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.msdeRolesSettingsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-mspvectorsearchcontentmetadataauditrecord.md b/api-reference/v1.0/resources/security-mspvectorsearchcontentmetadataauditrecord.md new file mode 100644 index 00000000000..791f2ad9bce --- /dev/null +++ b/api-reference/v1.0/resources/security-mspvectorsearchcontentmetadataauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "mspVectorSearchContentMetadataAuditRecord resource type" +description: "Represents an audit record for MSP vector search content metadata events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MSP vector search content metadata audit record" +--- +# mspVectorSearchContentMetadataAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MSP vector search content metadata events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.mspVectorSearchContentMetadataAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-msticnationstatenotificationrecord.md b/api-reference/v1.0/resources/security-msticnationstatenotificationrecord.md new file mode 100644 index 00000000000..ab8920c8a17 --- /dev/null +++ b/api-reference/v1.0/resources/security-msticnationstatenotificationrecord.md @@ -0,0 +1,49 @@ +--- +title: "msticNationStateNotificationRecord resource type" +description: "Represents an audit record for Microsoft Threat Intelligence Center (MSTIC) nation state notification events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Threat Intelligence Center (MSTIC) nation state notification audit record" +--- +# msticNationStateNotificationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Threat Intelligence Center (MSTIC) nation state notification events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.msticNationStateNotificationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-multistagedispositionauditrecord.md b/api-reference/v1.0/resources/security-multistagedispositionauditrecord.md new file mode 100644 index 00000000000..ce19aab26b9 --- /dev/null +++ b/api-reference/v1.0/resources/security-multistagedispositionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "multiStageDispositionAuditRecord resource type" +description: "Represents an audit record for multi-stage disposition events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Multi-stage disposition audit record" +--- +# multiStageDispositionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for multi-stage disposition events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.multiStageDispositionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-myanalyticssettingsauditrecord.md b/api-reference/v1.0/resources/security-myanalyticssettingsauditrecord.md new file mode 100644 index 00000000000..9e385401f8d --- /dev/null +++ b/api-reference/v1.0/resources/security-myanalyticssettingsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "myAnalyticsSettingsAuditRecord resource type" +description: "Represents an audit record for MyAnalytics settings events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "MyAnalytics settings audit record" +--- +# myAnalyticsSettingsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for MyAnalytics settings events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.myAnalyticsSettingsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-noisyalertpolicyauditrecord.md b/api-reference/v1.0/resources/security-noisyalertpolicyauditrecord.md new file mode 100644 index 00000000000..6510ba951c0 --- /dev/null +++ b/api-reference/v1.0/resources/security-noisyalertpolicyauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "noisyAlertPolicyAuditRecord resource type" +description: "Represents an audit record for noisy alert policy events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Noisy alert policy audit record" +--- +# noisyAlertPolicyAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for noisy alert policy events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.noisyAlertPolicyAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-officenativeauditrecord.md b/api-reference/v1.0/resources/security-officenativeauditrecord.md new file mode 100644 index 00000000000..5cec7478289 --- /dev/null +++ b/api-reference/v1.0/resources/security-officenativeauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "officeNativeAuditRecord resource type" +description: "Represents an audit record for Office native events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Office native audit record" +--- +# officeNativeAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Office native events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.officeNativeAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-omeportalauditrecord.md b/api-reference/v1.0/resources/security-omeportalauditrecord.md new file mode 100644 index 00000000000..d661caf3e60 --- /dev/null +++ b/api-reference/v1.0/resources/security-omeportalauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "omePortalAuditRecord resource type" +description: "Represents an audit record for Office Message Encryption (OME) portal events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Office Message Encryption (OME) portal audit record" +--- +# omePortalAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Office Message Encryption (OME) portal events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.omePortalAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-ondemandsharepointclassificationauditrecord.md b/api-reference/v1.0/resources/security-ondemandsharepointclassificationauditrecord.md new file mode 100644 index 00000000000..e284e4e8249 --- /dev/null +++ b/api-reference/v1.0/resources/security-ondemandsharepointclassificationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "onDemandSharePointClassificationAuditRecord resource type" +description: "Represents an audit record for on-demand SharePoint classification events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "On-demand SharePoint classification audit record" +--- +# onDemandSharePointClassificationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for on-demand SharePoint classification events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.onDemandSharePointClassificationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-onedriveauditrecord.md b/api-reference/v1.0/resources/security-onedriveauditrecord.md new file mode 100644 index 00000000000..0e74db3e6f1 --- /dev/null +++ b/api-reference/v1.0/resources/security-onedriveauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "oneDriveAuditRecord resource type" +description: "Represents an audit record for OneDrive events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "OneDrive audit record" +--- +# oneDriveAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for OneDrive events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.oneDriveAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-onpremisesfilesharescannerdlpauditrecord.md b/api-reference/v1.0/resources/security-onpremisesfilesharescannerdlpauditrecord.md new file mode 100644 index 00000000000..aa41faf69ed --- /dev/null +++ b/api-reference/v1.0/resources/security-onpremisesfilesharescannerdlpauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "onPremisesFileShareScannerDLPAuditRecord resource type" +description: "Represents an audit record for on-premises file share scanner DLP events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "On-premises file share scanner DLP audit record" +--- +# onPremisesFileShareScannerDLPAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for on-premises file share scanner DLP events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.onPremisesFileShareScannerDLPAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-onpremisessharepointscannerdlpauditrecord.md b/api-reference/v1.0/resources/security-onpremisessharepointscannerdlpauditrecord.md new file mode 100644 index 00000000000..7a379262975 --- /dev/null +++ b/api-reference/v1.0/resources/security-onpremisessharepointscannerdlpauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "onPremisesSharePointScannerDLPAuditRecord resource type" +description: "Represents an audit record for on-premises SharePoint scanner DLP events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "On-premises SharePoint scanner DLP audit record" +--- +# onPremisesSharePointScannerDLPAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for on-premises SharePoint scanner DLP events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.onPremisesSharePointScannerDLPAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-organizationaldatainm365auditrecord.md b/api-reference/v1.0/resources/security-organizationaldatainm365auditrecord.md new file mode 100644 index 00000000000..7100924b34d --- /dev/null +++ b/api-reference/v1.0/resources/security-organizationaldatainm365auditrecord.md @@ -0,0 +1,49 @@ +--- +title: "organizationalDataInM365AuditRecord resource type" +description: "Represents an audit record for organizational data in Microsoft 365 events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Organizational data in Microsoft 365 audit record" +--- +# organizationalDataInM365AuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for organizational data in Microsoft 365 events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.organizationalDataInM365AuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-outlookcopilotautomationauditrecord.md b/api-reference/v1.0/resources/security-outlookcopilotautomationauditrecord.md new file mode 100644 index 00000000000..30bafd0c8b6 --- /dev/null +++ b/api-reference/v1.0/resources/security-outlookcopilotautomationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "outlookCopilotAutomationAuditRecord resource type" +description: "Represents an audit record for Outlook Copilot automation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Outlook Copilot automation audit record" +--- +# outlookCopilotAutomationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Outlook Copilot automation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.outlookCopilotAutomationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-owagetaccesstokenforresourceauditrecord.md b/api-reference/v1.0/resources/security-owagetaccesstokenforresourceauditrecord.md new file mode 100644 index 00000000000..30c883a4cef --- /dev/null +++ b/api-reference/v1.0/resources/security-owagetaccesstokenforresourceauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "owaGetAccessTokenForResourceAuditRecord resource type" +description: "Represents an audit record for Outlook Web App (OWA) get access token for resource events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Outlook Web App (OWA) get access token for resource audit record" +--- +# owaGetAccessTokenForResourceAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Outlook Web App (OWA) get access token for resource events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.owaGetAccessTokenForResourceAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-p4aiassessmentcategoryrecord.md b/api-reference/v1.0/resources/security-p4aiassessmentcategoryrecord.md new file mode 100644 index 00000000000..03e08073b44 --- /dev/null +++ b/api-reference/v1.0/resources/security-p4aiassessmentcategoryrecord.md @@ -0,0 +1,49 @@ +--- +title: "p4aiAssessmentCategoryRecord resource type" +description: "Represents an audit record for Privacy for AI (P4AI) assessment category events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Privacy for AI (P4AI) assessment category audit record" +--- +# p4aiAssessmentCategoryRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Privacy for AI (P4AI) assessment category events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.p4aiAssessmentCategoryRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-p4aiassessmentfabricscannerrecord.md b/api-reference/v1.0/resources/security-p4aiassessmentfabricscannerrecord.md new file mode 100644 index 00000000000..055ec85c114 --- /dev/null +++ b/api-reference/v1.0/resources/security-p4aiassessmentfabricscannerrecord.md @@ -0,0 +1,49 @@ +--- +title: "p4aiAssessmentFabricScannerRecord resource type" +description: "Represents an audit record for Privacy for AI (P4AI) assessment Fabric scanner events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Privacy for AI (P4AI) assessment Fabric scanner audit record" +--- +# p4aiAssessmentFabricScannerRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Privacy for AI (P4AI) assessment Fabric scanner events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.p4aiAssessmentFabricScannerRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-p4aiassessmentlocationresultrecord.md b/api-reference/v1.0/resources/security-p4aiassessmentlocationresultrecord.md new file mode 100644 index 00000000000..e762864cc01 --- /dev/null +++ b/api-reference/v1.0/resources/security-p4aiassessmentlocationresultrecord.md @@ -0,0 +1,49 @@ +--- +title: "p4aiAssessmentLocationResultRecord resource type" +description: "Represents an audit record for Privacy for AI (P4AI) assessment location result events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Privacy for AI (P4AI) assessment location result audit record" +--- +# p4aiAssessmentLocationResultRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Privacy for AI (P4AI) assessment location result events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.p4aiAssessmentLocationResultRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-p4aiassessmentrecord.md b/api-reference/v1.0/resources/security-p4aiassessmentrecord.md new file mode 100644 index 00000000000..c1f8d26ec20 --- /dev/null +++ b/api-reference/v1.0/resources/security-p4aiassessmentrecord.md @@ -0,0 +1,49 @@ +--- +title: "p4aiAssessmentRecord resource type" +description: "Represents an audit record for Privacy for AI (P4AI) assessment events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Privacy for AI (P4AI) assessment audit record" +--- +# p4aiAssessmentRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Privacy for AI (P4AI) assessment events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.p4aiAssessmentRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-p4airiskscorerecord.md b/api-reference/v1.0/resources/security-p4airiskscorerecord.md new file mode 100644 index 00000000000..554c874b994 --- /dev/null +++ b/api-reference/v1.0/resources/security-p4airiskscorerecord.md @@ -0,0 +1,49 @@ +--- +title: "p4AIRiskScoreRecord resource type" +description: "Represents an audit record for Privacy for AI (P4AI) risk score events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Privacy for AI (P4AI) risk score audit record" +--- +# p4AIRiskScoreRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Privacy for AI (P4AI) risk score events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.p4AIRiskScoreRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-peopleadminsettingsauditrecord.md b/api-reference/v1.0/resources/security-peopleadminsettingsauditrecord.md new file mode 100644 index 00000000000..581a396c38e --- /dev/null +++ b/api-reference/v1.0/resources/security-peopleadminsettingsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "peopleAdminSettingsAuditRecord resource type" +description: "Represents an audit record for People admin settings events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "People admin settings audit record" +--- +# peopleAdminSettingsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for People admin settings events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.peopleAdminSettingsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-physicalbadgingsignalauditrecord.md b/api-reference/v1.0/resources/security-physicalbadgingsignalauditrecord.md new file mode 100644 index 00000000000..5f3865b1b15 --- /dev/null +++ b/api-reference/v1.0/resources/security-physicalbadgingsignalauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "physicalBadgingSignalAuditRecord resource type" +description: "Represents an audit record for physical badging signal events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Physical badging signal audit record" +--- +# physicalBadgingSignalAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for physical badging signal events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.physicalBadgingSignalAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-placesdirectoryauditrecord.md b/api-reference/v1.0/resources/security-placesdirectoryauditrecord.md new file mode 100644 index 00000000000..816da558be2 --- /dev/null +++ b/api-reference/v1.0/resources/security-placesdirectoryauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "placesDirectoryAuditRecord resource type" +description: "Represents an audit record for Places directory events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Places directory audit record" +--- +# placesDirectoryAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Places directory events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.placesDirectoryAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannerchatmessageauditrecord.md b/api-reference/v1.0/resources/security-plannerchatmessageauditrecord.md new file mode 100644 index 00000000000..da09d4831f5 --- /dev/null +++ b/api-reference/v1.0/resources/security-plannerchatmessageauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerChatMessageAuditRecord resource type" +description: "Represents an audit record for Planner chat message events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner chat message audit record" +--- +# plannerChatMessageAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner chat message events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerChatMessageAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannerchatmessagelistauditrecord.md b/api-reference/v1.0/resources/security-plannerchatmessagelistauditrecord.md new file mode 100644 index 00000000000..6eca8ce712f --- /dev/null +++ b/api-reference/v1.0/resources/security-plannerchatmessagelistauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerChatMessageListAuditRecord resource type" +description: "Represents an audit record for Planner chat message list events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner chat message list audit record" +--- +# plannerChatMessageListAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner chat message list events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerChatMessageListAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannercopyplanauditrecord.md b/api-reference/v1.0/resources/security-plannercopyplanauditrecord.md new file mode 100644 index 00000000000..f8bf75e9b68 --- /dev/null +++ b/api-reference/v1.0/resources/security-plannercopyplanauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerCopyPlanAuditRecord resource type" +description: "Represents an audit record for Planner copy plan events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner copy plan audit record" +--- +# plannerCopyPlanAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner copy plan events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerCopyPlanAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannergoalauditrecord.md b/api-reference/v1.0/resources/security-plannergoalauditrecord.md new file mode 100644 index 00000000000..57256ee2fda --- /dev/null +++ b/api-reference/v1.0/resources/security-plannergoalauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerGoalAuditRecord resource type" +description: "Represents an audit record for Planner goal events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner goal audit record" +--- +# plannerGoalAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner goal events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerGoalAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannergoallistauditrecord.md b/api-reference/v1.0/resources/security-plannergoallistauditrecord.md new file mode 100644 index 00000000000..615e07091ba --- /dev/null +++ b/api-reference/v1.0/resources/security-plannergoallistauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerGoalListAuditRecord resource type" +description: "Represents an audit record for Planner goal list events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner goal list audit record" +--- +# plannerGoalListAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner goal list events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerGoalListAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannerplanauditrecord.md b/api-reference/v1.0/resources/security-plannerplanauditrecord.md new file mode 100644 index 00000000000..66a500fb4a3 --- /dev/null +++ b/api-reference/v1.0/resources/security-plannerplanauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerPlanAuditRecord resource type" +description: "Represents an audit record for Planner plan events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner plan audit record" +--- +# plannerPlanAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner plan events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerPlanAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannerplanlistauditrecord.md b/api-reference/v1.0/resources/security-plannerplanlistauditrecord.md new file mode 100644 index 00000000000..6f3b45cdaec --- /dev/null +++ b/api-reference/v1.0/resources/security-plannerplanlistauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerPlanListAuditRecord resource type" +description: "Represents an audit record for Planner plan list events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner plan list audit record" +--- +# plannerPlanListAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner plan list events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerPlanListAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannerplansensitivitylabelauditrecord.md b/api-reference/v1.0/resources/security-plannerplansensitivitylabelauditrecord.md new file mode 100644 index 00000000000..0070774b814 --- /dev/null +++ b/api-reference/v1.0/resources/security-plannerplansensitivitylabelauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerPlanSensitivityLabelAuditRecord resource type" +description: "Represents an audit record for Planner plan sensitivity label events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner plan sensitivity label audit record" +--- +# plannerPlanSensitivityLabelAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner plan sensitivity label events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerPlanSensitivityLabelAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannerrosterauditrecord.md b/api-reference/v1.0/resources/security-plannerrosterauditrecord.md new file mode 100644 index 00000000000..999c29fde87 --- /dev/null +++ b/api-reference/v1.0/resources/security-plannerrosterauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerRosterAuditRecord resource type" +description: "Represents an audit record for Planner roster events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner roster audit record" +--- +# plannerRosterAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner roster events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerRosterAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannerrostersensitivitylabelauditrecord.md b/api-reference/v1.0/resources/security-plannerrostersensitivitylabelauditrecord.md new file mode 100644 index 00000000000..aa78be4de44 --- /dev/null +++ b/api-reference/v1.0/resources/security-plannerrostersensitivitylabelauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerRosterSensitivityLabelAuditRecord resource type" +description: "Represents an audit record for Planner roster sensitivity label events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner roster sensitivity label audit record" +--- +# plannerRosterSensitivityLabelAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner roster sensitivity label events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerRosterSensitivityLabelAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannertaskauditrecord.md b/api-reference/v1.0/resources/security-plannertaskauditrecord.md new file mode 100644 index 00000000000..eb64c7dadd6 --- /dev/null +++ b/api-reference/v1.0/resources/security-plannertaskauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerTaskAuditRecord resource type" +description: "Represents an audit record for Planner task events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner task audit record" +--- +# plannerTaskAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner task events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerTaskAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannertasklistauditrecord.md b/api-reference/v1.0/resources/security-plannertasklistauditrecord.md new file mode 100644 index 00000000000..1abfc0b68ea --- /dev/null +++ b/api-reference/v1.0/resources/security-plannertasklistauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerTaskListAuditRecord resource type" +description: "Represents an audit record for Planner task list events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner task list audit record" +--- +# plannerTaskListAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner task list events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerTaskListAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-plannertenantsettingsauditrecord.md b/api-reference/v1.0/resources/security-plannertenantsettingsauditrecord.md new file mode 100644 index 00000000000..9086a6ae152 --- /dev/null +++ b/api-reference/v1.0/resources/security-plannertenantsettingsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "plannerTenantSettingsAuditRecord resource type" +description: "Represents an audit record for Planner tenant settings events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Planner tenant settings audit record" +--- +# plannerTenantSettingsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Planner tenant settings events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.plannerTenantSettingsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-policyconfigchangeauditrecord.md b/api-reference/v1.0/resources/security-policyconfigchangeauditrecord.md new file mode 100644 index 00000000000..80bb124afb8 --- /dev/null +++ b/api-reference/v1.0/resources/security-policyconfigchangeauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "policyConfigChangeAuditRecord resource type" +description: "Represents an audit record for policy configuration change events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Policy configuration change audit record" +--- +# policyConfigChangeAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for policy configuration change events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.policyConfigChangeAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerappsauditapprecord.md b/api-reference/v1.0/resources/security-powerappsauditapprecord.md new file mode 100644 index 00000000000..034e48c2891 --- /dev/null +++ b/api-reference/v1.0/resources/security-powerappsauditapprecord.md @@ -0,0 +1,49 @@ +--- +title: "powerAppsAuditAppRecord resource type" +description: "Represents an audit record for Power Apps app events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power Apps app audit record" +--- +# powerAppsAuditAppRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power Apps app events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerAppsAuditAppRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerappsauditplanrecord.md b/api-reference/v1.0/resources/security-powerappsauditplanrecord.md new file mode 100644 index 00000000000..ad029f57813 --- /dev/null +++ b/api-reference/v1.0/resources/security-powerappsauditplanrecord.md @@ -0,0 +1,49 @@ +--- +title: "powerAppsAuditPlanRecord resource type" +description: "Represents an audit record for Power Apps plan events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power Apps plan audit record" +--- +# powerAppsAuditPlanRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power Apps plan events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerAppsAuditPlanRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerappsauditresourcerecord.md b/api-reference/v1.0/resources/security-powerappsauditresourcerecord.md new file mode 100644 index 00000000000..91a75638f85 --- /dev/null +++ b/api-reference/v1.0/resources/security-powerappsauditresourcerecord.md @@ -0,0 +1,49 @@ +--- +title: "powerAppsAuditResourceRecord resource type" +description: "Represents an audit record for Power Apps resource events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power Apps resource audit record" +--- +# powerAppsAuditResourceRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power Apps resource events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerAppsAuditResourceRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerbiauditrecord.md b/api-reference/v1.0/resources/security-powerbiauditrecord.md new file mode 100644 index 00000000000..c492966f6a5 --- /dev/null +++ b/api-reference/v1.0/resources/security-powerbiauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "powerBIAuditRecord resource type" +description: "Represents an audit record for Power BI events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power BI audit record" +--- +# powerBIAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power BI events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerBIAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerbidlpauditrecord.md b/api-reference/v1.0/resources/security-powerbidlpauditrecord.md new file mode 100644 index 00000000000..1e10ab8388a --- /dev/null +++ b/api-reference/v1.0/resources/security-powerbidlpauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "powerBIDlpAuditRecord resource type" +description: "Represents an audit record for Power BI DLP events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power BI DLP audit record" +--- +# powerBIDlpAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power BI DLP events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerBIDlpAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerpagessiteauditrecord.md b/api-reference/v1.0/resources/security-powerpagessiteauditrecord.md new file mode 100644 index 00000000000..6e91914213e --- /dev/null +++ b/api-reference/v1.0/resources/security-powerpagessiteauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "powerPagesSiteAuditRecord resource type" +description: "Represents an audit record for Power Pages site events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power Pages site audit record" +--- +# powerPagesSiteAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power Pages site events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerPagesSiteAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerplatformadmindlpauditrecord.md b/api-reference/v1.0/resources/security-powerplatformadmindlpauditrecord.md new file mode 100644 index 00000000000..d0cf5f3ece2 --- /dev/null +++ b/api-reference/v1.0/resources/security-powerplatformadmindlpauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "powerPlatformAdminDlpAuditRecord resource type" +description: "Represents an audit record for Power Platform admin DLP events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power Platform admin DLP audit record" +--- +# powerPlatformAdminDlpAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power Platform admin DLP events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerPlatformAdminDlpAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerplatformadminenvironmentauditrecord.md b/api-reference/v1.0/resources/security-powerplatformadminenvironmentauditrecord.md new file mode 100644 index 00000000000..91f62f68ac6 --- /dev/null +++ b/api-reference/v1.0/resources/security-powerplatformadminenvironmentauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "powerPlatformAdminEnvironmentAuditRecord resource type" +description: "Represents an audit record for Power Platform admin environment events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power Platform admin environment audit record" +--- +# powerPlatformAdminEnvironmentAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power Platform admin environment events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerPlatformAdminEnvironmentAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerplatformadministratoractivityrecord.md b/api-reference/v1.0/resources/security-powerplatformadministratoractivityrecord.md new file mode 100644 index 00000000000..7a3666bfa20 --- /dev/null +++ b/api-reference/v1.0/resources/security-powerplatformadministratoractivityrecord.md @@ -0,0 +1,49 @@ +--- +title: "powerPlatformAdministratorActivityRecord resource type" +description: "Represents an audit record for Power Platform administrator activity events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power Platform administrator activity audit record" +--- +# powerPlatformAdministratorActivityRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power Platform administrator activity events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerPlatformAdministratorActivityRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerplatformlockboxresourceaccessrequestauditrecord.md b/api-reference/v1.0/resources/security-powerplatformlockboxresourceaccessrequestauditrecord.md new file mode 100644 index 00000000000..db24691542f --- /dev/null +++ b/api-reference/v1.0/resources/security-powerplatformlockboxresourceaccessrequestauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "powerPlatformLockboxResourceAccessRequestAuditRecord resource type" +description: "Represents an audit record for Power Platform Lockbox resource access request events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power Platform Lockbox resource access request audit record" +--- +# powerPlatformLockboxResourceAccessRequestAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power Platform Lockbox resource access request events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerPlatformLockboxResourceAccessRequestAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerplatformlockboxresourcecommandauditrecord.md b/api-reference/v1.0/resources/security-powerplatformlockboxresourcecommandauditrecord.md new file mode 100644 index 00000000000..aeac8b649f5 --- /dev/null +++ b/api-reference/v1.0/resources/security-powerplatformlockboxresourcecommandauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "powerPlatformLockboxResourceCommandAuditRecord resource type" +description: "Represents an audit record for Power Platform Lockbox resource command events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power Platform Lockbox resource command audit record" +--- +# powerPlatformLockboxResourceCommandAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power Platform Lockbox resource command events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerPlatformLockboxResourceCommandAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerplatformserviceactivityauditrecord.md b/api-reference/v1.0/resources/security-powerplatformserviceactivityauditrecord.md new file mode 100644 index 00000000000..8e5d7ac6061 --- /dev/null +++ b/api-reference/v1.0/resources/security-powerplatformserviceactivityauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "powerPlatformServiceActivityAuditRecord resource type" +description: "Represents an audit record for Power Platform service activity events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power Platform service activity audit record" +--- +# powerPlatformServiceActivityAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power Platform service activity events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerPlatformServiceActivityAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-powerplatformtenantisolationrecord.md b/api-reference/v1.0/resources/security-powerplatformtenantisolationrecord.md new file mode 100644 index 00000000000..80c47433c4c --- /dev/null +++ b/api-reference/v1.0/resources/security-powerplatformtenantisolationrecord.md @@ -0,0 +1,49 @@ +--- +title: "powerPlatformTenantIsolationRecord resource type" +description: "Represents an audit record for Power Platform tenant isolation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Power Platform tenant isolation audit record" +--- +# powerPlatformTenantIsolationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Power Platform tenant isolation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.powerPlatformTenantIsolationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-privacydatamatchauditrecord.md b/api-reference/v1.0/resources/security-privacydatamatchauditrecord.md new file mode 100644 index 00000000000..ee4b0a136ee --- /dev/null +++ b/api-reference/v1.0/resources/security-privacydatamatchauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "privacyDataMatchAuditRecord resource type" +description: "Represents an audit record for privacy data match events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Privacy data match audit record" +--- +# privacyDataMatchAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for privacy data match events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.privacyDataMatchAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-privacydataminimizationrecord.md b/api-reference/v1.0/resources/security-privacydataminimizationrecord.md new file mode 100644 index 00000000000..923e124b7ae --- /dev/null +++ b/api-reference/v1.0/resources/security-privacydataminimizationrecord.md @@ -0,0 +1,49 @@ +--- +title: "privacyDataMinimizationRecord resource type" +description: "Represents an audit record for privacy data minimization events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Privacy data minimization audit record" +--- +# privacyDataMinimizationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for privacy data minimization events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.privacyDataMinimizationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-privacydigestemailrecord.md b/api-reference/v1.0/resources/security-privacydigestemailrecord.md new file mode 100644 index 00000000000..6fe6ba2ec8b --- /dev/null +++ b/api-reference/v1.0/resources/security-privacydigestemailrecord.md @@ -0,0 +1,49 @@ +--- +title: "privacyDigestEmailRecord resource type" +description: "Represents an audit record for privacy digest email events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Privacy digest email audit record" +--- +# privacyDigestEmailRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for privacy digest email events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.privacyDigestEmailRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-privacyopenaccessauditrecord.md b/api-reference/v1.0/resources/security-privacyopenaccessauditrecord.md new file mode 100644 index 00000000000..b3bc6eb1508 --- /dev/null +++ b/api-reference/v1.0/resources/security-privacyopenaccessauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "privacyOpenAccessAuditRecord resource type" +description: "Represents an audit record for privacy open access events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Privacy open access audit record" +--- +# privacyOpenAccessAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for privacy open access events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.privacyOpenAccessAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-privacyportalauditrecord.md b/api-reference/v1.0/resources/security-privacyportalauditrecord.md new file mode 100644 index 00000000000..8fc978accbe --- /dev/null +++ b/api-reference/v1.0/resources/security-privacyportalauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "privacyPortalAuditRecord resource type" +description: "Represents an audit record for privacy portal events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Privacy portal audit record" +--- +# privacyPortalAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for privacy portal events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.privacyPortalAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-privacyremediationactionrecord.md b/api-reference/v1.0/resources/security-privacyremediationactionrecord.md new file mode 100644 index 00000000000..a388e6ecc47 --- /dev/null +++ b/api-reference/v1.0/resources/security-privacyremediationactionrecord.md @@ -0,0 +1,49 @@ +--- +title: "privacyRemediationActionRecord resource type" +description: "Represents an audit record for privacy remediation action events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Privacy remediation action audit record" +--- +# privacyRemediationActionRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for privacy remediation action events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.privacyRemediationActionRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-privacyremediationrecord.md b/api-reference/v1.0/resources/security-privacyremediationrecord.md new file mode 100644 index 00000000000..a02c15aad2c --- /dev/null +++ b/api-reference/v1.0/resources/security-privacyremediationrecord.md @@ -0,0 +1,49 @@ +--- +title: "privacyRemediationRecord resource type" +description: "Represents an audit record for privacy remediation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Privacy remediation audit record" +--- +# privacyRemediationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for privacy remediation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.privacyRemediationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-privaprivacyassessmentoperationrecord.md b/api-reference/v1.0/resources/security-privaprivacyassessmentoperationrecord.md new file mode 100644 index 00000000000..5abcaad1d1b --- /dev/null +++ b/api-reference/v1.0/resources/security-privaprivacyassessmentoperationrecord.md @@ -0,0 +1,49 @@ +--- +title: "privaPrivacyAssessmentOperationRecord resource type" +description: "Represents an audit record for Priva Privacy assessment operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Priva Privacy assessment operation audit record" +--- +# privaPrivacyAssessmentOperationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Priva Privacy assessment operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.privaPrivacyAssessmentOperationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-privaprivacyconsentoperationrecord.md b/api-reference/v1.0/resources/security-privaprivacyconsentoperationrecord.md new file mode 100644 index 00000000000..3e3604cc46e --- /dev/null +++ b/api-reference/v1.0/resources/security-privaprivacyconsentoperationrecord.md @@ -0,0 +1,49 @@ +--- +title: "privaPrivacyConsentOperationRecord resource type" +description: "Represents an audit record for Priva Privacy consent operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Priva Privacy consent operation audit record" +--- +# privaPrivacyConsentOperationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Priva Privacy consent operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.privaPrivacyConsentOperationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-projectauditrecord.md b/api-reference/v1.0/resources/security-projectauditrecord.md new file mode 100644 index 00000000000..b51880fd6de --- /dev/null +++ b/api-reference/v1.0/resources/security-projectauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "projectAuditRecord resource type" +description: "Represents an audit record for Project events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Project audit record" +--- +# projectAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Project events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.projectAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-projectforthewebassignedtomesettingsauditrecord.md b/api-reference/v1.0/resources/security-projectforthewebassignedtomesettingsauditrecord.md new file mode 100644 index 00000000000..4fbc0557ddd --- /dev/null +++ b/api-reference/v1.0/resources/security-projectforthewebassignedtomesettingsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "projectForTheWebAssignedToMeSettingsAuditRecord resource type" +description: "Represents an audit record for Project for the Web assigned to me settings events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Project for the Web assigned to me settings audit record" +--- +# projectForTheWebAssignedToMeSettingsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Project for the Web assigned to me settings events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.projectForTheWebAssignedToMeSettingsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-projectforthewebprojectauditrecord.md b/api-reference/v1.0/resources/security-projectforthewebprojectauditrecord.md new file mode 100644 index 00000000000..67538b01e95 --- /dev/null +++ b/api-reference/v1.0/resources/security-projectforthewebprojectauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "projectForTheWebProjectAuditRecord resource type" +description: "Represents an audit record for Project for the Web project events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Project for the Web project audit record" +--- +# projectForTheWebProjectAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Project for the Web project events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.projectForTheWebProjectAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-projectforthewebprojectsettingsauditrecord.md b/api-reference/v1.0/resources/security-projectforthewebprojectsettingsauditrecord.md new file mode 100644 index 00000000000..d628ce31e15 --- /dev/null +++ b/api-reference/v1.0/resources/security-projectforthewebprojectsettingsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "projectForTheWebProjectSettingsAuditRecord resource type" +description: "Represents an audit record for Project for the Web project settings events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Project for the Web project settings audit record" +--- +# projectForTheWebProjectSettingsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Project for the Web project settings events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.projectForTheWebProjectSettingsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-projectforthewebroadmapauditrecord.md b/api-reference/v1.0/resources/security-projectforthewebroadmapauditrecord.md new file mode 100644 index 00000000000..f7e4753dbe7 --- /dev/null +++ b/api-reference/v1.0/resources/security-projectforthewebroadmapauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "projectForTheWebRoadmapAuditRecord resource type" +description: "Represents an audit record for Project for the Web roadmap events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Project for the Web roadmap audit record" +--- +# projectForTheWebRoadmapAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Project for the Web roadmap events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.projectForTheWebRoadmapAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-projectforthewebroadmapitemauditrecord.md b/api-reference/v1.0/resources/security-projectforthewebroadmapitemauditrecord.md new file mode 100644 index 00000000000..329128c5a8c --- /dev/null +++ b/api-reference/v1.0/resources/security-projectforthewebroadmapitemauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "projectForTheWebRoadmapItemAuditRecord resource type" +description: "Represents an audit record for Project for the Web roadmap item events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Project for the Web roadmap item audit record" +--- +# projectForTheWebRoadmapItemAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Project for the Web roadmap item events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.projectForTheWebRoadmapItemAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-projectforthewebroadmapsettingsauditrecord.md b/api-reference/v1.0/resources/security-projectforthewebroadmapsettingsauditrecord.md new file mode 100644 index 00000000000..b6914a2afc7 --- /dev/null +++ b/api-reference/v1.0/resources/security-projectforthewebroadmapsettingsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "projectForTheWebRoadmapSettingsAuditRecord resource type" +description: "Represents an audit record for Project for the Web roadmap settings events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Project for the Web roadmap settings audit record" +--- +# projectForTheWebRoadmapSettingsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Project for the Web roadmap settings events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.projectForTheWebRoadmapSettingsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-projectforthewebtaskauditrecord.md b/api-reference/v1.0/resources/security-projectforthewebtaskauditrecord.md new file mode 100644 index 00000000000..40d4b782b4c --- /dev/null +++ b/api-reference/v1.0/resources/security-projectforthewebtaskauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "projectForTheWebTaskAuditRecord resource type" +description: "Represents an audit record for Project for the Web task events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Project for the Web task audit record" +--- +# projectForTheWebTaskAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Project for the Web task events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.projectForTheWebTaskAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-publicfolderauditrecord.md b/api-reference/v1.0/resources/security-publicfolderauditrecord.md new file mode 100644 index 00000000000..c4030c1c67c --- /dev/null +++ b/api-reference/v1.0/resources/security-publicfolderauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "publicFolderAuditRecord resource type" +description: "Represents an audit record for public folder events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Public folder audit record" +--- +# publicFolderAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for public folder events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.publicFolderAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-purviewinsiderriskalertsrecord.md b/api-reference/v1.0/resources/security-purviewinsiderriskalertsrecord.md new file mode 100644 index 00000000000..8db4805ea55 --- /dev/null +++ b/api-reference/v1.0/resources/security-purviewinsiderriskalertsrecord.md @@ -0,0 +1,49 @@ +--- +title: "purviewInsiderRiskAlertsRecord resource type" +description: "Represents an audit record for Purview insider risk alerts events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Purview insider risk alerts audit record" +--- +# purviewInsiderRiskAlertsRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Purview insider risk alerts events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.purviewInsiderRiskAlertsRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-purviewinsiderriskcasesrecord.md b/api-reference/v1.0/resources/security-purviewinsiderriskcasesrecord.md new file mode 100644 index 00000000000..69ac5b699fc --- /dev/null +++ b/api-reference/v1.0/resources/security-purviewinsiderriskcasesrecord.md @@ -0,0 +1,49 @@ +--- +title: "purviewInsiderRiskCasesRecord resource type" +description: "Represents an audit record for Purview insider risk cases events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Purview insider risk cases audit record" +--- +# purviewInsiderRiskCasesRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Purview insider risk cases events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.purviewInsiderRiskCasesRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-purviewmcrecommendationrecord.md b/api-reference/v1.0/resources/security-purviewmcrecommendationrecord.md new file mode 100644 index 00000000000..e3b264b59ec --- /dev/null +++ b/api-reference/v1.0/resources/security-purviewmcrecommendationrecord.md @@ -0,0 +1,49 @@ +--- +title: "purviewMCRecommendationRecord resource type" +description: "Represents an audit record for Purview Message Center recommendation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Purview Message Center recommendation audit record" +--- +# purviewMCRecommendationRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Purview Message Center recommendation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.purviewMCRecommendationRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-purviewpostureagentauditrecord.md b/api-reference/v1.0/resources/security-purviewpostureagentauditrecord.md new file mode 100644 index 00000000000..5b37cab3aaa --- /dev/null +++ b/api-reference/v1.0/resources/security-purviewpostureagentauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "purviewPostureAgentAuditRecord resource type" +description: "Represents an audit record for Purview posture agent events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Purview posture agent audit record" +--- +# purviewPostureAgentAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Purview posture agent events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.purviewPostureAgentAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-quarantineauditrecord.md b/api-reference/v1.0/resources/security-quarantineauditrecord.md new file mode 100644 index 00000000000..a07ff6278a8 --- /dev/null +++ b/api-reference/v1.0/resources/security-quarantineauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "quarantineAuditRecord resource type" +description: "Represents an audit record for quarantine events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Quarantine audit record" +--- +# quarantineAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for quarantine events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.quarantineAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-recordsmanagementauditrecord.md b/api-reference/v1.0/resources/security-recordsmanagementauditrecord.md new file mode 100644 index 00000000000..32afce42340 --- /dev/null +++ b/api-reference/v1.0/resources/security-recordsmanagementauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "recordsManagementAuditRecord resource type" +description: "Represents an audit record for records management events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Records management audit record" +--- +# recordsManagementAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for records management events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.recordsManagementAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-reportsubmission.md b/api-reference/v1.0/resources/security-reportsubmission.md new file mode 100644 index 00000000000..b921d3fd12b --- /dev/null +++ b/api-reference/v1.0/resources/security-reportsubmission.md @@ -0,0 +1,49 @@ +--- +title: "reportSubmission resource type" +description: "Represents a report submission record." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Report submission" +--- +# reportSubmission resource type + +Namespace: microsoft.graph.security + +Represents a report submission record. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.reportSubmission", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-reportsubmissionresultdetail.md b/api-reference/v1.0/resources/security-reportsubmissionresultdetail.md new file mode 100644 index 00000000000..98fa14c695e --- /dev/null +++ b/api-reference/v1.0/resources/security-reportsubmissionresultdetail.md @@ -0,0 +1,49 @@ +--- +title: "reportSubmissionResultDetail resource type" +description: "Represents report submission result detail data." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Report submission result detail" +--- +# reportSubmissionResultDetail resource type + +Namespace: microsoft.graph.security + +Represents report submission result detail data. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.reportSubmissionResultDetail", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-restrictedmodeauditrecord.md b/api-reference/v1.0/resources/security-restrictedmodeauditrecord.md new file mode 100644 index 00000000000..3c86af57fc4 --- /dev/null +++ b/api-reference/v1.0/resources/security-restrictedmodeauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "restrictedModeAuditRecord resource type" +description: "Represents an audit record for restricted mode events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Restricted mode audit record" +--- +# restrictedModeAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for restricted mode events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.restrictedModeAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-retentionpolicyauditrecord.md b/api-reference/v1.0/resources/security-retentionpolicyauditrecord.md new file mode 100644 index 00000000000..af09b6b5aa5 --- /dev/null +++ b/api-reference/v1.0/resources/security-retentionpolicyauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "retentionPolicyAuditRecord resource type" +description: "Represents an audit record for retention policy events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Retention policy audit record" +--- +# retentionPolicyAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for retention policy events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.retentionPolicyAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-rtioperationsagentauditrecord.md b/api-reference/v1.0/resources/security-rtioperationsagentauditrecord.md new file mode 100644 index 00000000000..dc6f1e1a235 --- /dev/null +++ b/api-reference/v1.0/resources/security-rtioperationsagentauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "rtiOperationsAgentAuditRecord resource type" +description: "Represents an audit record for RTI operations agent events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "RTI operations agent audit record" +--- +# rtiOperationsAgentAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for RTI operations agent events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.rtiOperationsAgentAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sbpconfigurationeventrecord.md b/api-reference/v1.0/resources/security-sbpconfigurationeventrecord.md new file mode 100644 index 00000000000..054d27d27e5 --- /dev/null +++ b/api-reference/v1.0/resources/security-sbpconfigurationeventrecord.md @@ -0,0 +1,49 @@ +--- +title: "sbpConfigurationEventRecord resource type" +description: "Represents an audit record for SBP configuration events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SBP configuration audit record" +--- +# sbpConfigurationEventRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SBP configuration events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sbpConfigurationEventRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sbpusageeventrecord.md b/api-reference/v1.0/resources/security-sbpusageeventrecord.md new file mode 100644 index 00000000000..4ffbf4855da --- /dev/null +++ b/api-reference/v1.0/resources/security-sbpusageeventrecord.md @@ -0,0 +1,49 @@ +--- +title: "sbpUsageEventRecord resource type" +description: "Represents an audit record for SBP usage events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SBP usage audit record" +--- +# sbpUsageEventRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SBP usage events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sbpUsageEventRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-scoreevidence.md b/api-reference/v1.0/resources/security-scoreevidence.md new file mode 100644 index 00000000000..d99a6294cc6 --- /dev/null +++ b/api-reference/v1.0/resources/security-scoreevidence.md @@ -0,0 +1,49 @@ +--- +title: "scoreEvidence resource type" +description: "Represents score evidence data." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Score evidence" +--- +# scoreEvidence resource type + +Namespace: microsoft.graph.security + +Represents score evidence data. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.scoreEvidence", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-scoreplatformgenericauditrecord.md b/api-reference/v1.0/resources/security-scoreplatformgenericauditrecord.md new file mode 100644 index 00000000000..72fdc99724c --- /dev/null +++ b/api-reference/v1.0/resources/security-scoreplatformgenericauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "scorePlatformGenericAuditRecord resource type" +description: "Represents an audit record for Score Platform generic events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Score Platform generic audit record" +--- +# scorePlatformGenericAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Score Platform generic events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.scorePlatformGenericAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-scriptrunauditrecord.md b/api-reference/v1.0/resources/security-scriptrunauditrecord.md new file mode 100644 index 00000000000..1328ef34360 --- /dev/null +++ b/api-reference/v1.0/resources/security-scriptrunauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "scriptRunAuditRecord resource type" +description: "Represents an audit record for script run events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Script run audit record" +--- +# scriptRunAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for script run events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.scriptRunAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-searchauditrecord.md b/api-reference/v1.0/resources/security-searchauditrecord.md new file mode 100644 index 00000000000..920ced56223 --- /dev/null +++ b/api-reference/v1.0/resources/security-searchauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "searchAuditRecord resource type" +description: "Represents an audit record for search events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Search audit record" +--- +# searchAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for search events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.searchAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-securitycompliancealertrecord.md b/api-reference/v1.0/resources/security-securitycompliancealertrecord.md new file mode 100644 index 00000000000..fec625c427a --- /dev/null +++ b/api-reference/v1.0/resources/security-securitycompliancealertrecord.md @@ -0,0 +1,49 @@ +--- +title: "securityComplianceAlertRecord resource type" +description: "Represents an audit record for Security & Compliance alert events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Security & Compliance alert audit record" +--- +# securityComplianceAlertRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Security & Compliance alert events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.securityComplianceAlertRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-securitycompliancecentereopcmdletauditrecord.md b/api-reference/v1.0/resources/security-securitycompliancecentereopcmdletauditrecord.md new file mode 100644 index 00000000000..95b84999b3f --- /dev/null +++ b/api-reference/v1.0/resources/security-securitycompliancecentereopcmdletauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "securityComplianceCenterEOPCmdletAuditRecord resource type" +description: "Represents an audit record for Security & Compliance Center EOP cmdlet events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Security & Compliance Center EOP cmdlet audit record" +--- +# securityComplianceCenterEOPCmdletAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Security & Compliance Center EOP cmdlet events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.securityComplianceCenterEOPCmdletAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-securitycomplianceinsightsauditrecord.md b/api-reference/v1.0/resources/security-securitycomplianceinsightsauditrecord.md new file mode 100644 index 00000000000..770fa74ee54 --- /dev/null +++ b/api-reference/v1.0/resources/security-securitycomplianceinsightsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "securityComplianceInsightsAuditRecord resource type" +description: "Represents an audit record for Security & Compliance insights events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Security & Compliance insights audit record" +--- +# securityComplianceInsightsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Security & Compliance insights events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.securityComplianceInsightsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-securitycompliancerbacauditrecord.md b/api-reference/v1.0/resources/security-securitycompliancerbacauditrecord.md new file mode 100644 index 00000000000..3d67b86a3b6 --- /dev/null +++ b/api-reference/v1.0/resources/security-securitycompliancerbacauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "securityComplianceRBACAuditRecord resource type" +description: "Represents an audit record for Security & Compliance RBAC events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Security & Compliance RBAC audit record" +--- +# securityComplianceRBACAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Security & Compliance RBAC events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.securityComplianceRBACAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-securitycomplianceuserchangeauditrecord.md b/api-reference/v1.0/resources/security-securitycomplianceuserchangeauditrecord.md new file mode 100644 index 00000000000..b6c6241ed7b --- /dev/null +++ b/api-reference/v1.0/resources/security-securitycomplianceuserchangeauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "securityComplianceUserChangeAuditRecord resource type" +description: "Represents an audit record for Security & Compliance user change events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Security & Compliance user change audit record" +--- +# securityComplianceUserChangeAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Security & Compliance user change events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.securityComplianceUserChangeAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-securitycopilotidentitymanagementauditrecord.md b/api-reference/v1.0/resources/security-securitycopilotidentitymanagementauditrecord.md new file mode 100644 index 00000000000..f9a4831c93d --- /dev/null +++ b/api-reference/v1.0/resources/security-securitycopilotidentitymanagementauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "securityCopilotIdentityManagementAuditRecord resource type" +description: "Represents an audit record for Security Copilot identity management events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Security Copilot identity management audit record" +--- +# securityCopilotIdentityManagementAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Security Copilot identity management events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.securityCopilotIdentityManagementAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-securitydevelopmentlifecycleailogauditrecord.md b/api-reference/v1.0/resources/security-securitydevelopmentlifecycleailogauditrecord.md new file mode 100644 index 00000000000..6215090ec1c --- /dev/null +++ b/api-reference/v1.0/resources/security-securitydevelopmentlifecycleailogauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "securityDevelopmentLifecycleAILogAuditRecord resource type" +description: "Represents an audit record for Security Development Lifecycle AI log events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Security Development Lifecycle AI log audit record" +--- +# securityDevelopmentLifecycleAILogAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Security Development Lifecycle AI log events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.securityDevelopmentLifecycleAILogAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sensitiveinforemediationagentdatarecord.md b/api-reference/v1.0/resources/security-sensitiveinforemediationagentdatarecord.md new file mode 100644 index 00000000000..03721a129c0 --- /dev/null +++ b/api-reference/v1.0/resources/security-sensitiveinforemediationagentdatarecord.md @@ -0,0 +1,49 @@ +--- +title: "sensitiveInfoRemediationAgentDataRecord resource type" +description: "Represents an audit record for sensitive info remediation agent data events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Sensitive info remediation agent data audit record" +--- +# sensitiveInfoRemediationAgentDataRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for sensitive info remediation agent data events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sensitiveInfoRemediationAgentDataRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sensitivitylabelactionauditrecord.md b/api-reference/v1.0/resources/security-sensitivitylabelactionauditrecord.md new file mode 100644 index 00000000000..3cbd7dc624e --- /dev/null +++ b/api-reference/v1.0/resources/security-sensitivitylabelactionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sensitivityLabelActionAuditRecord resource type" +description: "Represents an audit record for sensitivity label action events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Sensitivity label action audit record" +--- +# sensitivityLabelActionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for sensitivity label action events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sensitivityLabelActionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sensitivitylabeledfileactionauditrecord.md b/api-reference/v1.0/resources/security-sensitivitylabeledfileactionauditrecord.md new file mode 100644 index 00000000000..6a1fc327f9c --- /dev/null +++ b/api-reference/v1.0/resources/security-sensitivitylabeledfileactionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sensitivityLabeledFileActionAuditRecord resource type" +description: "Represents an audit record for sensitivity labeled file action events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Sensitivity labeled file action audit record" +--- +# sensitivityLabeledFileActionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for sensitivity labeled file action events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sensitivityLabeledFileActionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sensitivitylabelpolicymatchauditrecord.md b/api-reference/v1.0/resources/security-sensitivitylabelpolicymatchauditrecord.md new file mode 100644 index 00000000000..b8f2c090e68 --- /dev/null +++ b/api-reference/v1.0/resources/security-sensitivitylabelpolicymatchauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sensitivityLabelPolicyMatchAuditRecord resource type" +description: "Represents an audit record for sensitivity label policy match events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Sensitivity label policy match audit record" +--- +# sensitivityLabelPolicyMatchAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for sensitivity label policy match events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sensitivityLabelPolicyMatchAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sentinelaitoolauditrecord.md b/api-reference/v1.0/resources/security-sentinelaitoolauditrecord.md new file mode 100644 index 00000000000..1da8ca9f571 --- /dev/null +++ b/api-reference/v1.0/resources/security-sentinelaitoolauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sentinelAIToolAuditRecord resource type" +description: "Represents an audit record for Microsoft Sentinel AI tool events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Sentinel AI tool audit record" +--- +# sentinelAIToolAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Sentinel AI tool events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sentinelAIToolAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sentinelgraphauditrecord.md b/api-reference/v1.0/resources/security-sentinelgraphauditrecord.md new file mode 100644 index 00000000000..ebfd2118ad8 --- /dev/null +++ b/api-reference/v1.0/resources/security-sentinelgraphauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sentinelGraphAuditRecord resource type" +description: "Represents an audit record for Microsoft Sentinel Graph events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Sentinel Graph audit record" +--- +# sentinelGraphAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Sentinel Graph events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sentinelGraphAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sentineljobauditrecord.md b/api-reference/v1.0/resources/security-sentineljobauditrecord.md new file mode 100644 index 00000000000..41c91b38da6 --- /dev/null +++ b/api-reference/v1.0/resources/security-sentineljobauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sentinelJobAuditRecord resource type" +description: "Represents an audit record for Microsoft Sentinel job events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Sentinel job audit record" +--- +# sentinelJobAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Sentinel job events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sentinelJobAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sentinelkqlonlakeauditrecord.md b/api-reference/v1.0/resources/security-sentinelkqlonlakeauditrecord.md new file mode 100644 index 00000000000..a2e5c4ffde5 --- /dev/null +++ b/api-reference/v1.0/resources/security-sentinelkqlonlakeauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sentinelKQLOnLakeAuditRecord resource type" +description: "Represents an audit record for Microsoft Sentinel KQL on lake events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Sentinel KQL on lake audit record" +--- +# sentinelKQLOnLakeAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Sentinel KQL on lake events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sentinelKQLOnLakeAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sentinellakedataonboardingauditrecord.md b/api-reference/v1.0/resources/security-sentinellakedataonboardingauditrecord.md new file mode 100644 index 00000000000..da37898a79d --- /dev/null +++ b/api-reference/v1.0/resources/security-sentinellakedataonboardingauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sentinelLakeDataOnboardingAuditRecord resource type" +description: "Represents an audit record for Microsoft Sentinel lake data onboarding events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Sentinel lake data onboarding audit record" +--- +# sentinelLakeDataOnboardingAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Sentinel lake data onboarding events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sentinelLakeDataOnboardingAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sentinellakeencryptionauditrecord.md b/api-reference/v1.0/resources/security-sentinellakeencryptionauditrecord.md new file mode 100644 index 00000000000..10886230ce1 --- /dev/null +++ b/api-reference/v1.0/resources/security-sentinellakeencryptionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sentinelLakeEncryptionAuditRecord resource type" +description: "Represents an audit record for Microsoft Sentinel lake encryption events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Sentinel lake encryption audit record" +--- +# sentinelLakeEncryptionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Sentinel lake encryption events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sentinelLakeEncryptionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sentinellakeonboardingauditrecord.md b/api-reference/v1.0/resources/security-sentinellakeonboardingauditrecord.md new file mode 100644 index 00000000000..0d2b1ece363 --- /dev/null +++ b/api-reference/v1.0/resources/security-sentinellakeonboardingauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sentinelLakeOnboardingAuditRecord resource type" +description: "Represents an audit record for Microsoft Sentinel lake onboarding events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Sentinel lake onboarding audit record" +--- +# sentinelLakeOnboardingAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Sentinel lake onboarding events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sentinelLakeOnboardingAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sentinelnotebookonlakeauditrecord.md b/api-reference/v1.0/resources/security-sentinelnotebookonlakeauditrecord.md new file mode 100644 index 00000000000..5be4289b487 --- /dev/null +++ b/api-reference/v1.0/resources/security-sentinelnotebookonlakeauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sentinelNotebookOnLakeAuditRecord resource type" +description: "Represents an audit record for Microsoft Sentinel notebook on lake events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Sentinel notebook on lake audit record" +--- +# sentinelNotebookOnLakeAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Sentinel notebook on lake events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sentinelNotebookOnLakeAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sentinelpackageauditrecord.md b/api-reference/v1.0/resources/security-sentinelpackageauditrecord.md new file mode 100644 index 00000000000..839d5693600 --- /dev/null +++ b/api-reference/v1.0/resources/security-sentinelpackageauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sentinelPackageAuditRecord resource type" +description: "Represents an audit record for Microsoft Sentinel package events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft Sentinel package audit record" +--- +# sentinelPackageAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft Sentinel package events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sentinelPackageAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sharepointapppermissionoperationauditrecord.md b/api-reference/v1.0/resources/security-sharepointapppermissionoperationauditrecord.md new file mode 100644 index 00000000000..e590f7c3564 --- /dev/null +++ b/api-reference/v1.0/resources/security-sharepointapppermissionoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sharePointAppPermissionOperationAuditRecord resource type" +description: "Represents an audit record for SharePoint app permission operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SharePoint app permission operation audit record" +--- +# sharePointAppPermissionOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SharePoint app permission operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sharePointAppPermissionOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sharepointauditrecord.md b/api-reference/v1.0/resources/security-sharepointauditrecord.md new file mode 100644 index 00000000000..1f27dd5ffe2 --- /dev/null +++ b/api-reference/v1.0/resources/security-sharepointauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sharePointAuditRecord resource type" +description: "Represents an audit record for SharePoint events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SharePoint audit record" +--- +# sharePointAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SharePoint events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sharePointAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sharepointcommentoperationauditrecord.md b/api-reference/v1.0/resources/security-sharepointcommentoperationauditrecord.md new file mode 100644 index 00000000000..e65b4359c34 --- /dev/null +++ b/api-reference/v1.0/resources/security-sharepointcommentoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sharePointCommentOperationAuditRecord resource type" +description: "Represents an audit record for SharePoint comment operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SharePoint comment operation audit record" +--- +# sharePointCommentOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SharePoint comment operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sharePointCommentOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sharepointcontentsecuritypolicyauditrecord.md b/api-reference/v1.0/resources/security-sharepointcontentsecuritypolicyauditrecord.md new file mode 100644 index 00000000000..ec7518f431b --- /dev/null +++ b/api-reference/v1.0/resources/security-sharepointcontentsecuritypolicyauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sharePointContentSecurityPolicyAuditRecord resource type" +description: "Represents an audit record for SharePoint content security policy events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SharePoint content security policy audit record" +--- +# sharePointContentSecurityPolicyAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SharePoint content security policy events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sharePointContentSecurityPolicyAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sharepointcontenttypeoperationauditrecord.md b/api-reference/v1.0/resources/security-sharepointcontenttypeoperationauditrecord.md new file mode 100644 index 00000000000..1334c9496de --- /dev/null +++ b/api-reference/v1.0/resources/security-sharepointcontenttypeoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sharePointContentTypeOperationAuditRecord resource type" +description: "Represents an audit record for SharePoint content type operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SharePoint content type operation audit record" +--- +# sharePointContentTypeOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SharePoint content type operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sharePointContentTypeOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sharepointesignatureauditrecord.md b/api-reference/v1.0/resources/security-sharepointesignatureauditrecord.md new file mode 100644 index 00000000000..3e54b71fd88 --- /dev/null +++ b/api-reference/v1.0/resources/security-sharepointesignatureauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sharePointESignatureAuditRecord resource type" +description: "Represents an audit record for SharePoint eSignature events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SharePoint eSignature audit record" +--- +# sharePointESignatureAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SharePoint eSignature events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sharePointESignatureAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sharepointfieldoperationauditrecord.md b/api-reference/v1.0/resources/security-sharepointfieldoperationauditrecord.md new file mode 100644 index 00000000000..216fd1f4902 --- /dev/null +++ b/api-reference/v1.0/resources/security-sharepointfieldoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sharePointFieldOperationAuditRecord resource type" +description: "Represents an audit record for SharePoint field operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SharePoint field operation audit record" +--- +# sharePointFieldOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SharePoint field operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sharePointFieldOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sharepointfileoperationauditrecord.md b/api-reference/v1.0/resources/security-sharepointfileoperationauditrecord.md new file mode 100644 index 00000000000..c473dfd95cd --- /dev/null +++ b/api-reference/v1.0/resources/security-sharepointfileoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sharePointFileOperationAuditRecord resource type" +description: "Represents an audit record for SharePoint file operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SharePoint file operation audit record" +--- +# sharePointFileOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SharePoint file operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sharePointFileOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sharepointlistitemoperationauditrecord.md b/api-reference/v1.0/resources/security-sharepointlistitemoperationauditrecord.md new file mode 100644 index 00000000000..247f6301326 --- /dev/null +++ b/api-reference/v1.0/resources/security-sharepointlistitemoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sharePointListItemOperationAuditRecord resource type" +description: "Represents an audit record for SharePoint list item operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SharePoint list item operation audit record" +--- +# sharePointListItemOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SharePoint list item operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sharePointListItemOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sharepointlistoperationauditrecord.md b/api-reference/v1.0/resources/security-sharepointlistoperationauditrecord.md new file mode 100644 index 00000000000..dace31625e7 --- /dev/null +++ b/api-reference/v1.0/resources/security-sharepointlistoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sharePointListOperationAuditRecord resource type" +description: "Represents an audit record for SharePoint list operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SharePoint list operation audit record" +--- +# sharePointListOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SharePoint list operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sharePointListOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sharepointsharingoperationauditrecord.md b/api-reference/v1.0/resources/security-sharepointsharingoperationauditrecord.md new file mode 100644 index 00000000000..d83fea7358b --- /dev/null +++ b/api-reference/v1.0/resources/security-sharepointsharingoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sharePointSharingOperationAuditRecord resource type" +description: "Represents an audit record for SharePoint sharing operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "SharePoint sharing operation audit record" +--- +# sharePointSharingOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for SharePoint sharing operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sharePointSharingOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-skypeforbusinesscmdletsauditrecord.md b/api-reference/v1.0/resources/security-skypeforbusinesscmdletsauditrecord.md new file mode 100644 index 00000000000..38a50300271 --- /dev/null +++ b/api-reference/v1.0/resources/security-skypeforbusinesscmdletsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "skypeForBusinessCmdletsAuditRecord resource type" +description: "Represents an audit record for Skype for Business cmdlets events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Skype for Business cmdlets audit record" +--- +# skypeForBusinessCmdletsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Skype for Business cmdlets events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.skypeForBusinessCmdletsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-skypeforbusinesspstnusageauditrecord.md b/api-reference/v1.0/resources/security-skypeforbusinesspstnusageauditrecord.md new file mode 100644 index 00000000000..2333c82ee65 --- /dev/null +++ b/api-reference/v1.0/resources/security-skypeforbusinesspstnusageauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "skypeForBusinessPSTNUsageAuditRecord resource type" +description: "Represents an audit record for Skype for Business PSTN usage events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Skype for Business PSTN usage audit record" +--- +# skypeForBusinessPSTNUsageAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Skype for Business PSTN usage events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.skypeForBusinessPSTNUsageAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-skypeforbusinessusersblockedauditrecord.md b/api-reference/v1.0/resources/security-skypeforbusinessusersblockedauditrecord.md new file mode 100644 index 00000000000..cae66eced15 --- /dev/null +++ b/api-reference/v1.0/resources/security-skypeforbusinessusersblockedauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "skypeForBusinessUsersBlockedAuditRecord resource type" +description: "Represents an audit record for Skype for Business users blocked events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Skype for Business users blocked audit record" +--- +# skypeForBusinessUsersBlockedAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Skype for Business users blocked events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.skypeForBusinessUsersBlockedAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sonardetonationcontentmetadata.md b/api-reference/v1.0/resources/security-sonardetonationcontentmetadata.md new file mode 100644 index 00000000000..2b44452399a --- /dev/null +++ b/api-reference/v1.0/resources/security-sonardetonationcontentmetadata.md @@ -0,0 +1,49 @@ +--- +title: "sonarDetonationContentMetadata resource type" +description: "Represents Sonar detonation content metadata." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Sonar detonation content metadata" +--- +# sonarDetonationContentMetadata resource type + +Namespace: microsoft.graph.security + +Represents Sonar detonation content metadata. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sonarDetonationContentMetadata", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sonardetonationentityauditrecord.md b/api-reference/v1.0/resources/security-sonardetonationentityauditrecord.md new file mode 100644 index 00000000000..ac51c79e19a --- /dev/null +++ b/api-reference/v1.0/resources/security-sonardetonationentityauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sonarDetonationEntityAuditRecord resource type" +description: "Represents an audit record for Sonar detonation entity events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Sonar detonation entity audit record" +--- +# sonarDetonationEntityAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Sonar detonation entity events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sonarDetonationEntityAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sonarfiledetonationentityauditrecord.md b/api-reference/v1.0/resources/security-sonarfiledetonationentityauditrecord.md new file mode 100644 index 00000000000..e204b7caa21 --- /dev/null +++ b/api-reference/v1.0/resources/security-sonarfiledetonationentityauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sonarFileDetonationEntityAuditRecord resource type" +description: "Represents an audit record for Sonar file detonation entity events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Sonar file detonation entity audit record" +--- +# sonarFileDetonationEntityAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Sonar file detonation entity events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sonarFileDetonationEntityAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sonarsubmissionentityauditrecord.md b/api-reference/v1.0/resources/security-sonarsubmissionentityauditrecord.md new file mode 100644 index 00000000000..86fa14935a2 --- /dev/null +++ b/api-reference/v1.0/resources/security-sonarsubmissionentityauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sonarSubmissionEntityAuditRecord resource type" +description: "Represents an audit record for Sonar submission entity events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Sonar submission entity audit record" +--- +# sonarSubmissionEntityAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Sonar submission entity events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sonarSubmissionEntityAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sonarurldetonationentityauditrecord.md b/api-reference/v1.0/resources/security-sonarurldetonationentityauditrecord.md new file mode 100644 index 00000000000..72ae98b2a87 --- /dev/null +++ b/api-reference/v1.0/resources/security-sonarurldetonationentityauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "sonarUrlDetonationEntityAuditRecord resource type" +description: "Represents an audit record for Sonar URL detonation entity events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Sonar URL detonation entity audit record" +--- +# sonarUrlDetonationEntityAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Sonar URL detonation entity events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sonarUrlDetonationEntityAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-sparkcorecustomlivepoolrecord.md b/api-reference/v1.0/resources/security-sparkcorecustomlivepoolrecord.md new file mode 100644 index 00000000000..213476b6528 --- /dev/null +++ b/api-reference/v1.0/resources/security-sparkcorecustomlivepoolrecord.md @@ -0,0 +1,49 @@ +--- +title: "sparkCoreCustomLivePoolRecord resource type" +description: "Represents an audit record for Spark Core custom live pool events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Spark Core custom live pool audit record" +--- +# sparkCoreCustomLivePoolRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Spark Core custom live pool events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.sparkCoreCustomLivePoolRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-submissionentityauditrecord.md b/api-reference/v1.0/resources/security-submissionentityauditrecord.md new file mode 100644 index 00000000000..5a6af2e6ba6 --- /dev/null +++ b/api-reference/v1.0/resources/security-submissionentityauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "submissionEntityAuditRecord resource type" +description: "Represents an audit record for submission entity events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Submission entity audit record" +--- +# submissionEntityAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for submission entity events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.submissionEntityAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-supervisoryreviewdayxinsightsauditrecord.md b/api-reference/v1.0/resources/security-supervisoryreviewdayxinsightsauditrecord.md new file mode 100644 index 00000000000..d615232d87e --- /dev/null +++ b/api-reference/v1.0/resources/security-supervisoryreviewdayxinsightsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "supervisoryReviewDayXInsightsAuditRecord resource type" +description: "Represents an audit record for Supervisory Review DayX insights events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Supervisory Review DayX insights audit record" +--- +# supervisoryReviewDayXInsightsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Supervisory Review DayX insights events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.supervisoryReviewDayXInsightsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-syntheticprobeauditrecord.md b/api-reference/v1.0/resources/security-syntheticprobeauditrecord.md new file mode 100644 index 00000000000..16ee6054908 --- /dev/null +++ b/api-reference/v1.0/resources/security-syntheticprobeauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "syntheticProbeAuditRecord resource type" +description: "Represents an audit record for synthetic probe events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Synthetic probe audit record" +--- +# syntheticProbeAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for synthetic probe events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.syntheticProbeAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-teamcopilotinteractionauditrecord.md b/api-reference/v1.0/resources/security-teamcopilotinteractionauditrecord.md new file mode 100644 index 00000000000..46bf95fca3b --- /dev/null +++ b/api-reference/v1.0/resources/security-teamcopilotinteractionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "teamCopilotInteractionAuditRecord resource type" +description: "Represents an audit record for Team Copilot interaction events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Team Copilot interaction audit record" +--- +# teamCopilotInteractionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Team Copilot interaction events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.teamCopilotInteractionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-teamseasyapprovalsauditrecord.md b/api-reference/v1.0/resources/security-teamseasyapprovalsauditrecord.md new file mode 100644 index 00000000000..7f44206e042 --- /dev/null +++ b/api-reference/v1.0/resources/security-teamseasyapprovalsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "teamsEasyApprovalsAuditRecord resource type" +description: "Represents an audit record for Teams Easy Approvals events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Teams Easy Approvals audit record" +--- +# teamsEasyApprovalsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Teams Easy Approvals events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.teamsEasyApprovalsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-teamsevaldatahubadminoperationauditrecord.md b/api-reference/v1.0/resources/security-teamsevaldatahubadminoperationauditrecord.md new file mode 100644 index 00000000000..5bd743f2c4e --- /dev/null +++ b/api-reference/v1.0/resources/security-teamsevaldatahubadminoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "teamsEvalDataHubAdminOperationAuditRecord resource type" +description: "Represents an audit record for Teams Eval Data Hub admin operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Teams Eval Data Hub admin operation audit record" +--- +# teamsEvalDataHubAdminOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Teams Eval Data Hub admin operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.teamsEvalDataHubAdminOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-teamsevaldatahubdataaccessauditrecord.md b/api-reference/v1.0/resources/security-teamsevaldatahubdataaccessauditrecord.md new file mode 100644 index 00000000000..247d266def4 --- /dev/null +++ b/api-reference/v1.0/resources/security-teamsevaldatahubdataaccessauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "teamsEvalDataHubDataAccessAuditRecord resource type" +description: "Represents an audit record for Teams Eval Data Hub data access events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Teams Eval Data Hub data access audit record" +--- +# teamsEvalDataHubDataAccessAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Teams Eval Data Hub data access events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.teamsEvalDataHubDataAccessAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-teamsevaldatahubpermissionchangeauditrecord.md b/api-reference/v1.0/resources/security-teamsevaldatahubpermissionchangeauditrecord.md new file mode 100644 index 00000000000..398e5e405ee --- /dev/null +++ b/api-reference/v1.0/resources/security-teamsevaldatahubpermissionchangeauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "teamsEvalDataHubPermissionChangeAuditRecord resource type" +description: "Represents an audit record for Teams Eval Data Hub permission change events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Teams Eval Data Hub permission change audit record" +--- +# teamsEvalDataHubPermissionChangeAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Teams Eval Data Hub permission change events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.teamsEvalDataHubPermissionChangeAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-teamshealthcareauditrecord.md b/api-reference/v1.0/resources/security-teamshealthcareauditrecord.md new file mode 100644 index 00000000000..7e1b77acd46 --- /dev/null +++ b/api-reference/v1.0/resources/security-teamshealthcareauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "teamsHealthcareAuditRecord resource type" +description: "Represents an audit record for Teams Healthcare events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Teams Healthcare audit record" +--- +# teamsHealthcareAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Teams Healthcare events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.teamsHealthcareAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-teamsupdatesauditrecord.md b/api-reference/v1.0/resources/security-teamsupdatesauditrecord.md new file mode 100644 index 00000000000..c6c3ac8ddf3 --- /dev/null +++ b/api-reference/v1.0/resources/security-teamsupdatesauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "teamsUpdatesAuditRecord resource type" +description: "Represents an audit record for Teams Updates events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Teams Updates audit record" +--- +# teamsUpdatesAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Teams Updates events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.teamsUpdatesAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-tenantallowblocklistauditrecord.md b/api-reference/v1.0/resources/security-tenantallowblocklistauditrecord.md new file mode 100644 index 00000000000..ea5ab9a1490 --- /dev/null +++ b/api-reference/v1.0/resources/security-tenantallowblocklistauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "tenantAllowBlockListAuditRecord resource type" +description: "Represents an audit record for Tenant Allow/Block List events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Tenant Allow/Block List audit record" +--- +# tenantAllowBlockListAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Tenant Allow/Block List events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.tenantAllowBlockListAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-threatfinderauditrecord.md b/api-reference/v1.0/resources/security-threatfinderauditrecord.md new file mode 100644 index 00000000000..4fb299a9c39 --- /dev/null +++ b/api-reference/v1.0/resources/security-threatfinderauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "threatFinderAuditRecord resource type" +description: "Represents an audit record for Threat Finder events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Threat Finder audit record" +--- +# threatFinderAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Threat Finder events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.threatFinderAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-threatintelligenceatpcontentdata.md b/api-reference/v1.0/resources/security-threatintelligenceatpcontentdata.md new file mode 100644 index 00000000000..e2ae622bc7f --- /dev/null +++ b/api-reference/v1.0/resources/security-threatintelligenceatpcontentdata.md @@ -0,0 +1,49 @@ +--- +title: "threatIntelligenceAtpContentData resource type" +description: "Represents an audit record for threat intelligence ATP content data events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Threat intelligence ATP content data audit record" +--- +# threatIntelligenceAtpContentData resource type + +Namespace: microsoft.graph.security + +Represents an audit record for threat intelligence ATP content data events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.threatIntelligenceAtpContentData", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-threatintelligenceexportauditrecord.md b/api-reference/v1.0/resources/security-threatintelligenceexportauditrecord.md new file mode 100644 index 00000000000..f3ba1c4bcc0 --- /dev/null +++ b/api-reference/v1.0/resources/security-threatintelligenceexportauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "threatIntelligenceExportAuditRecord resource type" +description: "Represents an audit record for threat intelligence export events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Threat intelligence export audit record" +--- +# threatIntelligenceExportAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for threat intelligence export events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.threatIntelligenceExportAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-threatintelligencemaildata.md b/api-reference/v1.0/resources/security-threatintelligencemaildata.md new file mode 100644 index 00000000000..0eb231490ff --- /dev/null +++ b/api-reference/v1.0/resources/security-threatintelligencemaildata.md @@ -0,0 +1,49 @@ +--- +title: "threatIntelligenceMailData resource type" +description: "Represents an audit record for threat intelligence mail data events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Threat intelligence mail data audit record" +--- +# threatIntelligenceMailData resource type + +Namespace: microsoft.graph.security + +Represents an audit record for threat intelligence mail data events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.threatIntelligenceMailData", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-threatintelligenceobjectauditrecord.md b/api-reference/v1.0/resources/security-threatintelligenceobjectauditrecord.md new file mode 100644 index 00000000000..61e7abc3fe8 --- /dev/null +++ b/api-reference/v1.0/resources/security-threatintelligenceobjectauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "threatIntelligenceObjectAuditRecord resource type" +description: "Represents an audit record for threat intelligence object events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Threat intelligence object audit record" +--- +# threatIntelligenceObjectAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for threat intelligence object events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.threatIntelligenceObjectAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-threatintelligenceurlclickdata.md b/api-reference/v1.0/resources/security-threatintelligenceurlclickdata.md new file mode 100644 index 00000000000..a8b512d12cd --- /dev/null +++ b/api-reference/v1.0/resources/security-threatintelligenceurlclickdata.md @@ -0,0 +1,49 @@ +--- +title: "threatIntelligenceUrlClickData resource type" +description: "Represents an audit record for threat intelligence URL click data events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Threat intelligence URL click data audit record" +--- +# threatIntelligenceUrlClickData resource type + +Namespace: microsoft.graph.security + +Represents an audit record for threat intelligence URL click data events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.threatIntelligenceUrlClickData", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-todoauditrecord.md b/api-reference/v1.0/resources/security-todoauditrecord.md new file mode 100644 index 00000000000..3dccbe1099c --- /dev/null +++ b/api-reference/v1.0/resources/security-todoauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "todoAuditRecord resource type" +description: "Represents an audit record for Microsoft To Do events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Microsoft To Do audit record" +--- +# todoAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Microsoft To Do events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.todoAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-trainableclassifierauditrecord.md b/api-reference/v1.0/resources/security-trainableclassifierauditrecord.md new file mode 100644 index 00000000000..92d9cf3e387 --- /dev/null +++ b/api-reference/v1.0/resources/security-trainableclassifierauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "trainableClassifierAuditRecord resource type" +description: "Represents an audit record for trainable classifier events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Trainable classifier audit record" +--- +# trainableClassifierAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for trainable classifier events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.trainableClassifierAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-uamoperationauditrecord.md b/api-reference/v1.0/resources/security-uamoperationauditrecord.md new file mode 100644 index 00000000000..6af654c57b4 --- /dev/null +++ b/api-reference/v1.0/resources/security-uamoperationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "uamOperationAuditRecord resource type" +description: "Represents an audit record for User Activity Monitoring (UAM) operation events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "User Activity Monitoring (UAM) operation audit record" +--- +# uamOperationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for User Activity Monitoring (UAM) operation events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.uamOperationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-unifiedgroupauditrecord.md b/api-reference/v1.0/resources/security-unifiedgroupauditrecord.md new file mode 100644 index 00000000000..0410821cc44 --- /dev/null +++ b/api-reference/v1.0/resources/security-unifiedgroupauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "unifiedGroupAuditRecord resource type" +description: "Represents an audit record for unified group events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Unified group audit record" +--- +# unifiedGroupAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for unified group events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.unifiedGroupAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-unifiedsimulationmatcheditemauditrecord.md b/api-reference/v1.0/resources/security-unifiedsimulationmatcheditemauditrecord.md new file mode 100644 index 00000000000..a029accc55a --- /dev/null +++ b/api-reference/v1.0/resources/security-unifiedsimulationmatcheditemauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "unifiedSimulationMatchedItemAuditRecord resource type" +description: "Represents an audit record for unified simulation matched item events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Unified simulation matched item audit record" +--- +# unifiedSimulationMatchedItemAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for unified simulation matched item events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.unifiedSimulationMatchedItemAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-unifiedsimulationsummaryauditrecord.md b/api-reference/v1.0/resources/security-unifiedsimulationsummaryauditrecord.md new file mode 100644 index 00000000000..dcad7559eff --- /dev/null +++ b/api-reference/v1.0/resources/security-unifiedsimulationsummaryauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "unifiedSimulationSummaryAuditRecord resource type" +description: "Represents an audit record for unified simulation summary events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Unified simulation summary audit record" +--- +# unifiedSimulationSummaryAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for unified simulation summary events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.unifiedSimulationSummaryAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-universalprintmanagementauditrecord.md b/api-reference/v1.0/resources/security-universalprintmanagementauditrecord.md new file mode 100644 index 00000000000..82c274811d4 --- /dev/null +++ b/api-reference/v1.0/resources/security-universalprintmanagementauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "universalPrintManagementAuditRecord resource type" +description: "Represents an audit record for Universal Print management events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Universal Print management audit record" +--- +# universalPrintManagementAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Universal Print management events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.universalPrintManagementAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-universalprintprintjobauditrecord.md b/api-reference/v1.0/resources/security-universalprintprintjobauditrecord.md new file mode 100644 index 00000000000..0bd3586aba3 --- /dev/null +++ b/api-reference/v1.0/resources/security-universalprintprintjobauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "universalPrintPrintJobAuditRecord resource type" +description: "Represents an audit record for Universal Print print job events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Universal Print print job audit record" +--- +# universalPrintPrintJobAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Universal Print print job events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.universalPrintPrintJobAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-urbacassignmentauditrecord.md b/api-reference/v1.0/resources/security-urbacassignmentauditrecord.md new file mode 100644 index 00000000000..496b5295007 --- /dev/null +++ b/api-reference/v1.0/resources/security-urbacassignmentauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "urbacAssignmentAuditRecord resource type" +description: "Represents an audit record for URBAC assignment events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "URBAC assignment audit record" +--- +# urbacAssignmentAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for URBAC assignment events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.urbacAssignmentAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-urbacenablestateauditrecord.md b/api-reference/v1.0/resources/security-urbacenablestateauditrecord.md new file mode 100644 index 00000000000..1c586399f09 --- /dev/null +++ b/api-reference/v1.0/resources/security-urbacenablestateauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "urbacEnableStateAuditRecord resource type" +description: "Represents an audit record for URBAC enable state events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "URBAC enable state audit record" +--- +# urbacEnableStateAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for URBAC enable state events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.urbacEnableStateAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-urbacroleauditrecord.md b/api-reference/v1.0/resources/security-urbacroleauditrecord.md new file mode 100644 index 00000000000..f649837c082 --- /dev/null +++ b/api-reference/v1.0/resources/security-urbacroleauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "urbacRoleAuditRecord resource type" +description: "Represents an audit record for URBAC role events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "URBAC role audit record" +--- +# urbacRoleAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for URBAC role events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.urbacRoleAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-usertrainingauditrecord.md b/api-reference/v1.0/resources/security-usertrainingauditrecord.md new file mode 100644 index 00000000000..ae8d93b1b70 --- /dev/null +++ b/api-reference/v1.0/resources/security-usertrainingauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "userTrainingAuditRecord resource type" +description: "Represents an audit record for user training events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "User training audit record" +--- +# userTrainingAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for user training events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.userTrainingAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-usxworkspaceonboardingauditrecord.md b/api-reference/v1.0/resources/security-usxworkspaceonboardingauditrecord.md new file mode 100644 index 00000000000..ee158f7d576 --- /dev/null +++ b/api-reference/v1.0/resources/security-usxworkspaceonboardingauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "usxWorkspaceOnboardingAuditRecord resource type" +description: "Represents an audit record for USX workspace onboarding events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "USX workspace onboarding audit record" +--- +# usxWorkspaceOnboardingAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for USX workspace onboarding events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.usxWorkspaceOnboardingAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vfamcreatepolicyauditrecord.md b/api-reference/v1.0/resources/security-vfamcreatepolicyauditrecord.md new file mode 100644 index 00000000000..604bc5d9899 --- /dev/null +++ b/api-reference/v1.0/resources/security-vfamcreatepolicyauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vfamCreatePolicyAuditRecord resource type" +description: "Represents an audit record for VFAM create policy events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "VFAM create policy audit record" +--- +# vfamCreatePolicyAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for VFAM create policy events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vfamCreatePolicyAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vfamdeletepolicyauditrecord.md b/api-reference/v1.0/resources/security-vfamdeletepolicyauditrecord.md new file mode 100644 index 00000000000..6bdf8577dbb --- /dev/null +++ b/api-reference/v1.0/resources/security-vfamdeletepolicyauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vfamDeletePolicyAuditRecord resource type" +description: "Represents an audit record for VFAM delete policy events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "VFAM delete policy audit record" +--- +# vfamDeletePolicyAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for VFAM delete policy events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vfamDeletePolicyAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vfamupdatepolicyauditrecord.md b/api-reference/v1.0/resources/security-vfamupdatepolicyauditrecord.md new file mode 100644 index 00000000000..05a928b05a6 --- /dev/null +++ b/api-reference/v1.0/resources/security-vfamupdatepolicyauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vfamUpdatePolicyAuditRecord resource type" +description: "Represents an audit record for VFAM update policy events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "VFAM update policy audit record" +--- +# vfamUpdatePolicyAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for VFAM update policy events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vfamUpdatePolicyAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaamplifyauditrecord.md b/api-reference/v1.0/resources/security-vivaamplifyauditrecord.md new file mode 100644 index 00000000000..9fafa1293bd --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaamplifyauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaAmplifyAuditRecord resource type" +description: "Represents an audit record for Viva Amplify events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Amplify audit record" +--- +# vivaAmplifyAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Amplify events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaAmplifyAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaengageeventsauditrecord.md b/api-reference/v1.0/resources/security-vivaengageeventsauditrecord.md new file mode 100644 index 00000000000..49d48f101a5 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaengageeventsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaEngageEventsAuditRecord resource type" +description: "Represents an audit record for Viva Engage events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Engage audit record" +--- +# vivaEngageEventsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Engage events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaEngageEventsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaengagenetworkassociationauditrecord.md b/api-reference/v1.0/resources/security-vivaengagenetworkassociationauditrecord.md new file mode 100644 index 00000000000..1beb2ed63c2 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaengagenetworkassociationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaEngageNetworkAssociationAuditRecord resource type" +description: "Represents an audit record for Viva Engage network association events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Engage network association audit record" +--- +# vivaEngageNetworkAssociationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Engage network association events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaEngageNetworkAssociationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaengagesegmentauditrecord.md b/api-reference/v1.0/resources/security-vivaengagesegmentauditrecord.md new file mode 100644 index 00000000000..496913ef516 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaengagesegmentauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaEngageSegmentAuditRecord resource type" +description: "Represents an audit record for Viva Engage segment events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Engage segment audit record" +--- +# vivaEngageSegmentAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Engage segment events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaEngageSegmentAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintadvancedconfigurationauditrecord.md b/api-reference/v1.0/resources/security-vivaglintadvancedconfigurationauditrecord.md new file mode 100644 index 00000000000..e9e6acea56d --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintadvancedconfigurationauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintAdvancedConfigurationAuditRecord resource type" +description: "Represents an audit record for Viva Glint advanced configuration events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint advanced configuration audit record" +--- +# vivaGlintAdvancedConfigurationAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint advanced configuration events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintAdvancedConfigurationAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintagenticcampaignauditrecord.md b/api-reference/v1.0/resources/security-vivaglintagenticcampaignauditrecord.md new file mode 100644 index 00000000000..08694509d7f --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintagenticcampaignauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintAgenticCampaignAuditRecord resource type" +description: "Represents an audit record for Viva Glint agentic campaign events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint agentic campaign audit record" +--- +# vivaGlintAgenticCampaignAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint agentic campaign events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintAgenticCampaignAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintfeedbackprogramauditrecord.md b/api-reference/v1.0/resources/security-vivaglintfeedbackprogramauditrecord.md new file mode 100644 index 00000000000..2a9f4d9743f --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintfeedbackprogramauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintFeedbackProgramAuditRecord resource type" +description: "Represents an audit record for Viva Glint feedback program events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint feedback program audit record" +--- +# vivaGlintFeedbackProgramAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint feedback program events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintFeedbackProgramAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintorganizationaldataauditrecord.md b/api-reference/v1.0/resources/security-vivaglintorganizationaldataauditrecord.md new file mode 100644 index 00000000000..6614d703b58 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintorganizationaldataauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintOrganizationalDataAuditRecord resource type" +description: "Represents an audit record for Viva Glint organizational data events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint organizational data audit record" +--- +# vivaGlintOrganizationalDataAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint organizational data events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintOrganizationalDataAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintpulseprogramauditrecord.md b/api-reference/v1.0/resources/security-vivaglintpulseprogramauditrecord.md new file mode 100644 index 00000000000..630a614d573 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintpulseprogramauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintPulseProgramAuditRecord resource type" +description: "Represents an audit record for Viva Glint pulse program events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint pulse program audit record" +--- +# vivaGlintPulseProgramAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint pulse program events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintPulseProgramAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintpulseprogramrespondentrateauditrecord.md b/api-reference/v1.0/resources/security-vivaglintpulseprogramrespondentrateauditrecord.md new file mode 100644 index 00000000000..d691864f9e5 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintpulseprogramrespondentrateauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintPulseProgramRespondentRateAuditRecord resource type" +description: "Represents an audit record for Viva Glint pulse program respondent rate events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint pulse program respondent rate audit record" +--- +# vivaGlintPulseProgramRespondentRateAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint pulse program respondent rate events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintPulseProgramRespondentRateAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintquestionauditrecord.md b/api-reference/v1.0/resources/security-vivaglintquestionauditrecord.md new file mode 100644 index 00000000000..1324d177b20 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintquestionauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintQuestionAuditRecord resource type" +description: "Represents an audit record for Viva Glint question events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint question audit record" +--- +# vivaGlintQuestionAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint question events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintQuestionAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintroleauditrecord.md b/api-reference/v1.0/resources/security-vivaglintroleauditrecord.md new file mode 100644 index 00000000000..a2212b49498 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintroleauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintRoleAuditRecord resource type" +description: "Represents an audit record for Viva Glint role events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint role audit record" +--- +# vivaGlintRoleAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint role events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintRoleAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintrubiconauditrecord.md b/api-reference/v1.0/resources/security-vivaglintrubiconauditrecord.md new file mode 100644 index 00000000000..c25a744b533 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintrubiconauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintRubiconAuditRecord resource type" +description: "Represents an audit record for Viva Glint Rubicon events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint Rubicon audit record" +--- +# vivaGlintRubiconAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint Rubicon events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintRubiconAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintsupportaccessauditrecord.md b/api-reference/v1.0/resources/security-vivaglintsupportaccessauditrecord.md new file mode 100644 index 00000000000..8980585ae66 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintsupportaccessauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintSupportAccessAuditRecord resource type" +description: "Represents an audit record for Viva Glint support access events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint support access audit record" +--- +# vivaGlintSupportAccessAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint support access events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintSupportAccessAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintsystemauditrecord.md b/api-reference/v1.0/resources/security-vivaglintsystemauditrecord.md new file mode 100644 index 00000000000..9e114486772 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintsystemauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintSystemAuditRecord resource type" +description: "Represents an audit record for Viva Glint system events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint system audit record" +--- +# vivaGlintSystemAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint system events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintSystemAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintuserauditrecord.md b/api-reference/v1.0/resources/security-vivaglintuserauditrecord.md new file mode 100644 index 00000000000..c053ef01edc --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintuserauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintUserAuditRecord resource type" +description: "Represents an audit record for Viva Glint user events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint user audit record" +--- +# vivaGlintUserAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint user events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintUserAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivaglintusergroupauditrecord.md b/api-reference/v1.0/resources/security-vivaglintusergroupauditrecord.md new file mode 100644 index 00000000000..d8a5b15de67 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivaglintusergroupauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGlintUserGroupAuditRecord resource type" +description: "Represents an audit record for Viva Glint user group events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Glint user group audit record" +--- +# vivaGlintUserGroupAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Glint user group events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGlintUserGroupAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivagoalsauditrecord.md b/api-reference/v1.0/resources/security-vivagoalsauditrecord.md new file mode 100644 index 00000000000..32178325001 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivagoalsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaGoalsAuditRecord resource type" +description: "Represents an audit record for Viva Goals events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Goals audit record" +--- +# vivaGoalsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Goals events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaGoalsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivalearningadminauditrecord.md b/api-reference/v1.0/resources/security-vivalearningadminauditrecord.md new file mode 100644 index 00000000000..05345ad63de --- /dev/null +++ b/api-reference/v1.0/resources/security-vivalearningadminauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaLearningAdminAuditRecord resource type" +description: "Represents an audit record for Viva Learning admin events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Learning admin audit record" +--- +# vivaLearningAdminAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Learning admin events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaLearningAdminAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivalearningauditrecord.md b/api-reference/v1.0/resources/security-vivalearningauditrecord.md new file mode 100644 index 00000000000..767155f5e3c --- /dev/null +++ b/api-reference/v1.0/resources/security-vivalearningauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaLearningAuditRecord resource type" +description: "Represents an audit record for Viva Learning events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Learning audit record" +--- +# vivaLearningAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Learning events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaLearningAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivapulseadminauditrecord.md b/api-reference/v1.0/resources/security-vivapulseadminauditrecord.md new file mode 100644 index 00000000000..60b5a796c2e --- /dev/null +++ b/api-reference/v1.0/resources/security-vivapulseadminauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaPulseAdminAuditRecord resource type" +description: "Represents an audit record for Viva Pulse admin events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Pulse admin audit record" +--- +# vivaPulseAdminAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Pulse admin events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaPulseAdminAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivapulseorganizerauditrecord.md b/api-reference/v1.0/resources/security-vivapulseorganizerauditrecord.md new file mode 100644 index 00000000000..870e21da808 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivapulseorganizerauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaPulseOrganizerAuditRecord resource type" +description: "Represents an audit record for Viva Pulse organizer events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Pulse organizer audit record" +--- +# vivaPulseOrganizerAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Pulse organizer events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaPulseOrganizerAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivapulsereportauditrecord.md b/api-reference/v1.0/resources/security-vivapulsereportauditrecord.md new file mode 100644 index 00000000000..f91308c8dc3 --- /dev/null +++ b/api-reference/v1.0/resources/security-vivapulsereportauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaPulseReportAuditRecord resource type" +description: "Represents an audit record for Viva Pulse report events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Pulse report audit record" +--- +# vivaPulseReportAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Pulse report events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaPulseReportAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-vivapulseresponseauditrecord.md b/api-reference/v1.0/resources/security-vivapulseresponseauditrecord.md new file mode 100644 index 00000000000..971348511ce --- /dev/null +++ b/api-reference/v1.0/resources/security-vivapulseresponseauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "vivaPulseResponseAuditRecord resource type" +description: "Represents an audit record for Viva Pulse response events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Viva Pulse response audit record" +--- +# vivaPulseResponseAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Viva Pulse response events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.vivaPulseResponseAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-wdatpalertsauditrecord.md b/api-reference/v1.0/resources/security-wdatpalertsauditrecord.md new file mode 100644 index 00000000000..8e342b8049b --- /dev/null +++ b/api-reference/v1.0/resources/security-wdatpalertsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "wdatpAlertsAuditRecord resource type" +description: "Represents an audit record for Windows Defender ATP (WDATP) alerts events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Windows Defender ATP (WDATP) alerts audit record" +--- +# wdatpAlertsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Windows Defender ATP (WDATP) alerts events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.wdatpAlertsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-webcontentfilteringauditrecord.md b/api-reference/v1.0/resources/security-webcontentfilteringauditrecord.md new file mode 100644 index 00000000000..31641944570 --- /dev/null +++ b/api-reference/v1.0/resources/security-webcontentfilteringauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "webContentFilteringAuditRecord resource type" +description: "Represents an audit record for web content filtering events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Web content filtering audit record" +--- +# webContentFilteringAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for web content filtering events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.webContentFilteringAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-windows365customerlockboxauditrecord.md b/api-reference/v1.0/resources/security-windows365customerlockboxauditrecord.md new file mode 100644 index 00000000000..bfc25a4669e --- /dev/null +++ b/api-reference/v1.0/resources/security-windows365customerlockboxauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "windows365CustomerLockboxAuditRecord resource type" +description: "Represents an audit record for Windows 365 Customer Lockbox events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Windows 365 Customer Lockbox audit record" +--- +# windows365CustomerLockboxAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Windows 365 Customer Lockbox events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.windows365CustomerLockboxAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-workplaceanalyticsauditrecord.md b/api-reference/v1.0/resources/security-workplaceanalyticsauditrecord.md new file mode 100644 index 00000000000..1a0ac717e9b --- /dev/null +++ b/api-reference/v1.0/resources/security-workplaceanalyticsauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "workplaceAnalyticsAuditRecord resource type" +description: "Represents an audit record for Workplace Analytics events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Workplace Analytics audit record" +--- +# workplaceAnalyticsAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Workplace Analytics events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.workplaceAnalyticsAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-yammerauditrecord.md b/api-reference/v1.0/resources/security-yammerauditrecord.md new file mode 100644 index 00000000000..a0d8c2aef18 --- /dev/null +++ b/api-reference/v1.0/resources/security-yammerauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "yammerAuditRecord resource type" +description: "Represents an audit record for Yammer events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Yammer audit record" +--- +# yammerAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Yammer events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.yammerAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security-yammeruserhidingauditrecord.md b/api-reference/v1.0/resources/security-yammeruserhidingauditrecord.md new file mode 100644 index 00000000000..0d2de89f578 --- /dev/null +++ b/api-reference/v1.0/resources/security-yammeruserhidingauditrecord.md @@ -0,0 +1,49 @@ +--- +title: "yammerUserHidingAuditRecord resource type" +description: "Represents an audit record for Yammer user hiding events." +author: "imsandhya7-spec" +ms.subservice: security +ms.localizationpriority: medium +doc_type: resourcePageType +ms.date: 08/04/2026 +toc.title: "Yammer user hiding audit record" +--- +# yammerUserHidingAuditRecord resource type + +Namespace: microsoft.graph.security + +Represents an audit record for Yammer user hiding events. This resource captures information about these activities as part of the Microsoft 365 unified audit log. + +Inherits from [microsoft.graph.security.auditData](../resources/security-auditdata.md). The audit data for this record type is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Methods + +None. This resource is returned as the **auditData** property in an [auditLogRecord](../resources/security-auditlogrecord.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|dynamicProperties|[microsoft.graph.security.auditRecordTypeDictionary](../resources/security-auditrecordtypedictionary.md)|Inherited from [auditData](../resources/security-auditdata.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.security.yammerUserHidingAuditRecord", + "dynamicProperties": { + "@odata.type": "microsoft.graph.security.auditRecordTypeDictionary" + } +} +``` diff --git a/api-reference/v1.0/resources/security.md b/api-reference/v1.0/resources/security.md index d4f71a67708..f66b0a73c73 100644 --- a/api-reference/v1.0/resources/security.md +++ b/api-reference/v1.0/resources/security.md @@ -29,6 +29,7 @@ None |:-------------|:------------|:------------| |alerts|[alert](alert.md) collection| Read-only. Nullable.| |alerts_v2 | [microsoft.graph.security.alert](security-alert.md) collection | A collection of alerts in Microsoft 365 Defender.| +|auditLog|[microsoft.graph.security.auditCoreRoot](../resources/security-auditcoreroot.md)|The entry point for the audit log query API.| |data security and compliance|[microsoft.graph.tenantDataSecurityAndGovernance](../resources/tenantdatasecurityandgovernance.md)|A container for Microsoft Purview data security and compliance APIs.| |identities|[microsoft.graph.security.identityContainer](../resources/security-identitycontainer.md)|A container for security identities APIs.| |incidents | [microsoft.graph.security.incident](security-incident.md) collection | A collection of incidents in Microsoft 365 Defender, each of which is a set of correlated alerts and associated metadata that reflects the story of an attack.| diff --git a/api-reference/v1.0/toc/toc.mapping.json b/api-reference/v1.0/toc/toc.mapping.json index 91ad6b43dbc..e471eba181b 100644 --- a/api-reference/v1.0/toc/toc.mapping.json +++ b/api-reference/v1.0/toc/toc.mapping.json @@ -1614,12 +1614,42 @@ "name": "Audit log query", "overview": "../../resources/security-auditlogquery.md", "resources": [ + "microsoft.graph.security.auditCoreRoot", "microsoft.graph.security.auditLogQuery", "microsoft.graph.security.auditLogRecord" ], "complexTypes": [ "microsoft.graph.security.auditData", - "microsoft.graph.security.defaultAuditData" + "microsoft.graph.security.auditRecordTypeDictionary", + "microsoft.graph.security.aISpanOutputsAuditRecord", + "microsoft.graph.security.alertSubmissionAuditRecord", + "microsoft.graph.security.alertSubmissionResultDetailAuditRecord", + "microsoft.graph.security.azureAISearchAuditRecord", + "microsoft.graph.security.compliancePolicyGradingSharePointAuditRecord", + "microsoft.graph.security.complianceSitGradingSharePointAuditRecord", + "microsoft.graph.security.copilotSessionSharingAuditRecord", + "microsoft.graph.security.defaultAuditData", + "microsoft.graph.security.defenderSecurityForAIConfigurationAuditRecord", + "microsoft.graph.security.dragonCopilotAccessRecord", + "microsoft.graph.security.dragonCopilotAdminRecord", + "microsoft.graph.security.dragonCopilotClinicalDataRecord", + "microsoft.graph.security.dragonCopilotSessionRecord", + "microsoft.graph.security.eopSubmissionFeedEntityAuditRecord", + "microsoft.graph.security.fabricPolicyRecord", + "microsoft.graph.security.mDASHAuditRecord", + "microsoft.graph.security.microsoftTeamsUserConcernAuditRecord", + "microsoft.graph.security.mosAgentInfoRecordV2", + "microsoft.graph.security.mspVectorSearchContentMetadataAuditRecord", + "microsoft.graph.security.p4AIRiskScoreRecord", + "microsoft.graph.security.securityCopilotIdentityManagementAuditRecord", + "microsoft.graph.security.securityDevelopmentLifecycleAILogAuditRecord", + "microsoft.graph.security.sonarDetonationEntityAuditRecord", + "microsoft.graph.security.sonarFileDetonationEntityAuditRecord", + "microsoft.graph.security.sonarSubmissionEntityAuditRecord", + "microsoft.graph.security.sonarUrlDetonationEntityAuditRecord", + "microsoft.graph.security.sparkCoreCustomLivePoolRecord", + "microsoft.graph.security.submissionEntityAuditRecord", + "microsoft.graph.security.vivaGlintAgenticCampaignAuditRecord" ] }, { diff --git a/changelog/Microsoft.M365.AuditCore.json b/changelog/Microsoft.M365.AuditCore.json index cde69e65b7e..4e0570f76b3 100644 --- a/changelog/Microsoft.M365.AuditCore.json +++ b/changelog/Microsoft.M365.AuditCore.json @@ -202,6 +202,3440 @@ "Description": "Added the `DragonCopilotSession` member to the **auditLogRecordType** enumeration.", "Target": "auditLogRecordType" }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aISpanOutputsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [aISpanOutputsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-aispanoutputsauditrecord?view=graph-rest-1.0) resource.", + "Target": "aISpanOutputsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "alertSubmissionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [alertSubmissionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-alertsubmissionauditrecord?view=graph-rest-1.0) resource.", + "Target": "alertSubmissionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "alertSubmissionResultDetailAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [alertSubmissionResultDetailAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-alertsubmissionresultdetailauditrecord?view=graph-rest-1.0) resource.", + "Target": "alertSubmissionResultDetailAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Property", + "ChangedApiName": "dynamicProperties", + "ChangeType": "Addition", + "Description": "Added the **dynamicProperties** property to the [auditData](https://learn.microsoft.com/en-us/graph/api/resources/security-auditdata?view=graph-rest-1.0) resource.", + "Target": "auditData" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "auditRecordTypeDictionary", + "ChangeType": "Addition", + "Description": "Added the [auditRecordTypeDictionary](https://learn.microsoft.com/en-us/graph/api/resources/security-auditrecordtypedictionary?view=graph-rest-1.0) resource.", + "Target": "auditRecordTypeDictionary" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "azureAISearchAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [azureAISearchAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-azureaisearchauditrecord?view=graph-rest-1.0) resource.", + "Target": "azureAISearchAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "compliancePolicyGradingSharePointAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [compliancePolicyGradingSharePointAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancepolicygradingsharepointauditrecord?view=graph-rest-1.0) resource.", + "Target": "compliancePolicyGradingSharePointAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceSitGradingSharePointAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceSitGradingSharePointAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancesitgradingsharepointauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceSitGradingSharePointAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "copilotSessionSharingAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [copilotSessionSharingAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-copilotsessionsharingauditrecord?view=graph-rest-1.0) resource.", + "Target": "copilotSessionSharingAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "eopSubmissionFeedEntityAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [eopSubmissionFeedEntityAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-eopsubmissionfeedentityauditrecord?view=graph-rest-1.0) resource.", + "Target": "eopSubmissionFeedEntityAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "fabricPolicyRecord", + "ChangeType": "Addition", + "Description": "Added the [fabricPolicyRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-fabricpolicyrecord?view=graph-rest-1.0) resource.", + "Target": "fabricPolicyRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftTeamsUserConcernAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftTeamsUserConcernAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftteamsuserconcernauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftTeamsUserConcernAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mspVectorSearchContentMetadataAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mspVectorSearchContentMetadataAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mspvectorsearchcontentmetadataauditrecord?view=graph-rest-1.0) resource.", + "Target": "mspVectorSearchContentMetadataAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "p4AIRiskScoreRecord", + "ChangeType": "Addition", + "Description": "Added the [p4AIRiskScoreRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-p4airiskscorerecord?view=graph-rest-1.0) resource.", + "Target": "p4AIRiskScoreRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "securityCopilotIdentityManagementAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [securityCopilotIdentityManagementAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-securitycopilotidentitymanagementauditrecord?view=graph-rest-1.0) resource.", + "Target": "securityCopilotIdentityManagementAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sonarDetonationEntityAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sonarDetonationEntityAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sonardetonationentityauditrecord?view=graph-rest-1.0) resource.", + "Target": "sonarDetonationEntityAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sonarFileDetonationEntityAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sonarFileDetonationEntityAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sonarfiledetonationentityauditrecord?view=graph-rest-1.0) resource.", + "Target": "sonarFileDetonationEntityAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sonarSubmissionEntityAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sonarSubmissionEntityAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sonarsubmissionentityauditrecord?view=graph-rest-1.0) resource.", + "Target": "sonarSubmissionEntityAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sonarUrlDetonationEntityAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sonarUrlDetonationEntityAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sonarurldetonationentityauditrecord?view=graph-rest-1.0) resource.", + "Target": "sonarUrlDetonationEntityAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "submissionEntityAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [submissionEntityAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-submissionentityauditrecord?view=graph-rest-1.0) resource.", + "Target": "submissionEntityAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintAgenticCampaignAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintAgenticCampaignAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintagenticcampaignauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintAgenticCampaignAuditRecord" + }, + { + "ChangedApiName": "MosAgentInfoRecordV2", + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "Target": "auditLogRecordType", + "ChangeType": "Addition", + "Description": "Added the `MosAgentInfoRecordV2` member to the **auditLogRecordType** enumeration." + }, + { + "ChangedApiName": "SecurityDevelopmentLifecycleAILog", + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "Target": "auditLogRecordType", + "ChangeType": "Addition", + "Description": "Added the `SecurityDevelopmentLifecycleAILog` member to the **auditLogRecordType** enumeration." + }, + { + "ChangedApiName": "MDASH", + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "Target": "auditLogRecordType", + "ChangeType": "Addition", + "Description": "Added the `MDASH` member to the **auditLogRecordType** enumeration." + }, + { + "ChangedApiName": "DefenderSecurityForAIConfiguration", + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "Target": "auditLogRecordType", + "ChangeType": "Addition", + "Description": "Added the `DefenderSecurityForAIConfiguration` member to the **auditLogRecordType** enumeration." + }, + { + "ChangedApiName": "SparkCoreCustomLivePool", + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "Target": "auditLogRecordType", + "ChangeType": "Addition", + "Description": "Added the `SparkCoreCustomLivePool` member to the **auditLogRecordType** enumeration." + }, + { + "ChangedApiName": "mosAgentInfoRecordV2", + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "Target": "mosAgentInfoRecordV2", + "ChangeType": "Addition", + "Description": "Added the [mosAgentInfoRecordV2](https://learn.microsoft.com/en-us/graph/api/resources/security-mosagentinforecordv2?view=graph-rest-1.0) resource type." + }, + { + "ChangedApiName": "securityDevelopmentLifecycleAILogAuditRecord", + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "Target": "securityDevelopmentLifecycleAILogAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [securityDevelopmentLifecycleAILogAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-securitydevelopmentlifecycleailogauditrecord?view=graph-rest-1.0) resource type." + }, + { + "ChangedApiName": "mDASHAuditRecord", + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "Target": "mDASHAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mDASHAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mdashauditrecord?view=graph-rest-1.0) resource type." + }, + { + "ChangedApiName": "defenderSecurityForAIConfigurationAuditRecord", + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "Target": "defenderSecurityForAIConfigurationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [defenderSecurityForAIConfigurationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-defendersecurityforaiconfigurationauditrecord?view=graph-rest-1.0) resource type." + }, + { + "ChangedApiName": "sparkCoreCustomLivePoolRecord", + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "Target": "sparkCoreCustomLivePoolRecord", + "ChangeType": "Addition", + "Description": "Added the [sparkCoreCustomLivePoolRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sparkcorecustomlivepoolrecord?view=graph-rest-1.0) resource type." + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dragonCopilotAccessRecord", + "ChangeType": "Addition", + "Description": "Added the [dragonCopilotAccessRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-dragoncopilotaccessrecord?view=graph-rest-1.0) resource type.", + "Target": "dragonCopilotAccessRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dragonCopilotAdminRecord", + "ChangeType": "Addition", + "Description": "Added the [dragonCopilotAdminRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-dragoncopilotadminrecord?view=graph-rest-1.0) resource type.", + "Target": "dragonCopilotAdminRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dragonCopilotClinicalDataRecord", + "ChangeType": "Addition", + "Description": "Added the [dragonCopilotClinicalDataRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-dragoncopilotclinicaldatarecord?view=graph-rest-1.0) resource type.", + "Target": "dragonCopilotClinicalDataRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dragonCopilotSessionRecord", + "ChangeType": "Addition", + "Description": "Added the [dragonCopilotSessionRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-dragoncopilotsessionrecord?view=graph-rest-1.0) resource type.", + "Target": "dragonCopilotSessionRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "a365AiExecuteTool", + "ChangeType": "Addition", + "Description": "Added the [a365AiExecuteTool](https://learn.microsoft.com/en-us/graph/api/resources/security-a365aiexecutetool?view=graph-rest-1.0) resource.", + "Target": "a365AiExecuteTool" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "a365AiInferenceCall", + "ChangeType": "Addition", + "Description": "Added the [a365AiInferenceCall](https://learn.microsoft.com/en-us/graph/api/resources/security-a365aiinferencecall?view=graph-rest-1.0) resource.", + "Target": "a365AiInferenceCall" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "a365AiInvokeAgent", + "ChangeType": "Addition", + "Description": "Added the [a365AiInvokeAgent](https://learn.microsoft.com/en-us/graph/api/resources/security-a365aiinvokeagent?view=graph-rest-1.0) resource.", + "Target": "a365AiInvokeAgent" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "a365AiRunSummary", + "ChangeType": "Addition", + "Description": "Added the [a365AiRunSummary](https://learn.microsoft.com/en-us/graph/api/resources/security-a365airunsummary?view=graph-rest-1.0) resource.", + "Target": "a365AiRunSummary" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "a365SpanOutputs", + "ChangeType": "Addition", + "Description": "Added the [a365SpanOutputs](https://learn.microsoft.com/en-us/graph/api/resources/security-a365spanoutputs?view=graph-rest-1.0) resource.", + "Target": "a365SpanOutputs" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aadRiskDetectionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [aadRiskDetectionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-aadriskdetectionauditrecord?view=graph-rest-1.0) resource.", + "Target": "aadRiskDetectionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aedAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [aedAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-aedauditrecord?view=graph-rest-1.0) resource.", + "Target": "aedAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "agentAdminActivityRecord", + "ChangeType": "Addition", + "Description": "Added the [agentAdminActivityRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-agentadminactivityrecord?view=graph-rest-1.0) resource.", + "Target": "agentAdminActivityRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "agentSettingAdminActivity", + "ChangeType": "Addition", + "Description": "Added the [agentSettingAdminActivity](https://learn.microsoft.com/en-us/graph/api/resources/security-agentsettingadminactivity?view=graph-rest-1.0) resource.", + "Target": "agentSettingAdminActivity" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aiAppInteractionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [aiAppInteractionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-aiappinteractionauditrecord?view=graph-rest-1.0) resource.", + "Target": "aiAppInteractionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aiExecuteToolAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [aiExecuteToolAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-aiexecutetoolauditrecord?view=graph-rest-1.0) resource.", + "Target": "aiExecuteToolAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aiInteractionsChangeNotificationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [aiInteractionsChangeNotificationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-aiinteractionschangenotificationauditrecord?view=graph-rest-1.0) resource.", + "Target": "aiInteractionsChangeNotificationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aiInteractionsExportAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [aiInteractionsExportAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-aiinteractionsexportauditrecord?view=graph-rest-1.0) resource.", + "Target": "aiInteractionsExportAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aiInteractionsSubscriptionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [aiInteractionsSubscriptionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-aiinteractionssubscriptionauditrecord?view=graph-rest-1.0) resource.", + "Target": "aiInteractionsSubscriptionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aiInvokeAgentAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [aiInvokeAgentAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-aiinvokeagentauditrecord?view=graph-rest-1.0) resource.", + "Target": "aiInvokeAgentAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aipDiscover", + "ChangeType": "Addition", + "Description": "Added the [aipDiscover](https://learn.microsoft.com/en-us/graph/api/resources/security-aipdiscover?view=graph-rest-1.0) resource.", + "Target": "aipDiscover" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aipFileDeleted", + "ChangeType": "Addition", + "Description": "Added the [aipFileDeleted](https://learn.microsoft.com/en-us/graph/api/resources/security-aipfiledeleted?view=graph-rest-1.0) resource.", + "Target": "aipFileDeleted" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aipHeartBeat", + "ChangeType": "Addition", + "Description": "Added the [aipHeartBeat](https://learn.microsoft.com/en-us/graph/api/resources/security-aipheartbeat?view=graph-rest-1.0) resource.", + "Target": "aipHeartBeat" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aipProtectionActionLogRequest", + "ChangeType": "Addition", + "Description": "Added the [aipProtectionActionLogRequest](https://learn.microsoft.com/en-us/graph/api/resources/security-aipprotectionactionlogrequest?view=graph-rest-1.0) resource.", + "Target": "aipProtectionActionLogRequest" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aipScannerDiscoverEvent", + "ChangeType": "Addition", + "Description": "Added the [aipScannerDiscoverEvent](https://learn.microsoft.com/en-us/graph/api/resources/security-aipscannerdiscoverevent?view=graph-rest-1.0) resource.", + "Target": "aipScannerDiscoverEvent" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "aipSensitivityLabelActionLogRequest", + "ChangeType": "Addition", + "Description": "Added the [aipSensitivityLabelActionLogRequest](https://learn.microsoft.com/en-us/graph/api/resources/security-aipsensitivitylabelactionlogrequest?view=graph-rest-1.0) resource.", + "Target": "aipSensitivityLabelActionLogRequest" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "airAdminActionInvestigationData", + "ChangeType": "Addition", + "Description": "Added the [airAdminActionInvestigationData](https://learn.microsoft.com/en-us/graph/api/resources/security-airadminactioninvestigationdata?view=graph-rest-1.0) resource.", + "Target": "airAdminActionInvestigationData" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "airInvestigationData", + "ChangeType": "Addition", + "Description": "Added the [airInvestigationData](https://learn.microsoft.com/en-us/graph/api/resources/security-airinvestigationdata?view=graph-rest-1.0) resource.", + "Target": "airInvestigationData" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "airManualInvestigationData", + "ChangeType": "Addition", + "Description": "Added the [airManualInvestigationData](https://learn.microsoft.com/en-us/graph/api/resources/security-airmanualinvestigationdata?view=graph-rest-1.0) resource.", + "Target": "airManualInvestigationData" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "attackSimAdminAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [attackSimAdminAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-attacksimadminauditrecord?view=graph-rest-1.0) resource.", + "Target": "attackSimAdminAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "attackSimAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [attackSimAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-attacksimauditrecord?view=graph-rest-1.0) resource.", + "Target": "attackSimAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "auditConfigAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [auditConfigAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-auditconfigauditrecord?view=graph-rest-1.0) resource.", + "Target": "auditConfigAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "auditSearchAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [auditSearchAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-auditsearchauditrecord?view=graph-rest-1.0) resource.", + "Target": "auditSearchAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "azfwApplicationRuleAggregationEventRecord", + "ChangeType": "Addition", + "Description": "Added the [azfwApplicationRuleAggregationEventRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-azfwapplicationruleaggregationeventrecord?view=graph-rest-1.0) resource.", + "Target": "azfwApplicationRuleAggregationEventRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "azfwDnsQueryEventRecord", + "ChangeType": "Addition", + "Description": "Added the [azfwDnsQueryEventRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-azfwdnsqueryeventrecord?view=graph-rest-1.0) resource.", + "Target": "azfwDnsQueryEventRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "azfwNetworkRuleEventRecord", + "ChangeType": "Addition", + "Description": "Added the [azfwNetworkRuleEventRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-azfwnetworkruleeventrecord?view=graph-rest-1.0) resource.", + "Target": "azfwNetworkRuleEventRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "azureActiveDirectoryAccountLogonAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [azureActiveDirectoryAccountLogonAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-azureactivedirectoryaccountlogonauditrecord?view=graph-rest-1.0) resource.", + "Target": "azureActiveDirectoryAccountLogonAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "azureActiveDirectoryAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [azureActiveDirectoryAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-azureactivedirectoryauditrecord?view=graph-rest-1.0) resource.", + "Target": "azureActiveDirectoryAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "azureActiveDirectoryStsLogonAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [azureActiveDirectoryStsLogonAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-azureactivedirectorystslogonauditrecord?view=graph-rest-1.0) resource.", + "Target": "azureActiveDirectoryStsLogonAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "campaignAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [campaignAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-campaignauditrecord?view=graph-rest-1.0) resource.", + "Target": "campaignAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "ccraiPolicyViolationRecord", + "ChangeType": "Addition", + "Description": "Added the [ccraiPolicyViolationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-ccraipolicyviolationrecord?view=graph-rest-1.0) resource.", + "Target": "ccraiPolicyViolationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cdpClassifierHealthRecord", + "ChangeType": "Addition", + "Description": "Added the [cdpClassifierHealthRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cdpclassifierhealthrecord?view=graph-rest-1.0) resource.", + "Target": "cdpClassifierHealthRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cdpColdCrawlStatusRecord", + "ChangeType": "Addition", + "Description": "Added the [cdpColdCrawlStatusRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cdpcoldcrawlstatusrecord?view=graph-rest-1.0) resource.", + "Target": "cdpColdCrawlStatusRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cdpConsumptionResourceRecord", + "ChangeType": "Addition", + "Description": "Added the [cdpConsumptionResourceRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cdpconsumptionresourcerecord?view=graph-rest-1.0) resource.", + "Target": "cdpConsumptionResourceRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cdpContentExplorerAggregateRecord", + "ChangeType": "Addition", + "Description": "Added the [cdpContentExplorerAggregateRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cdpcontentexploreraggregaterecord?view=graph-rest-1.0) resource.", + "Target": "cdpContentExplorerAggregateRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cdpDlpSensitiveEndpointAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [cdpDlpSensitiveEndpointAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cdpdlpsensitiveendpointauditrecord?view=graph-rest-1.0) resource.", + "Target": "cdpDlpSensitiveEndpointAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cdpLogRecord", + "ChangeType": "Addition", + "Description": "Added the [cdpLogRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cdplogrecord?view=graph-rest-1.0) resource.", + "Target": "cdpLogRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cdpOcrBillingRecord", + "ChangeType": "Addition", + "Description": "Added the [cdpOcrBillingRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cdpocrbillingrecord?view=graph-rest-1.0) resource.", + "Target": "cdpOcrBillingRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cdpResourceScopeChangeEventRecord", + "ChangeType": "Addition", + "Description": "Added the [cdpResourceScopeChangeEventRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cdpresourcescopechangeeventrecord?view=graph-rest-1.0) resource.", + "Target": "cdpResourceScopeChangeEventRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cdpdlmaiInteractionInsightsRecord", + "ChangeType": "Addition", + "Description": "Added the [cdpdlmaiInteractionInsightsRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cdpdlmaiinteractioninsightsrecord?view=graph-rest-1.0) resource.", + "Target": "cdpdlmaiInteractionInsightsRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cloudUpdateDeviceConfigAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [cloudUpdateDeviceConfigAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cloudupdatedeviceconfigauditrecord?view=graph-rest-1.0) resource.", + "Target": "cloudUpdateDeviceConfigAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cloudUpdateProfileConfigAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [cloudUpdateProfileConfigAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cloudupdateprofileconfigauditrecord?view=graph-rest-1.0) resource.", + "Target": "cloudUpdateProfileConfigAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cloudUpdateTenantConfigAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [cloudUpdateTenantConfigAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cloudupdatetenantconfigauditrecord?view=graph-rest-1.0) resource.", + "Target": "cloudUpdateTenantConfigAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceConnectorAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceConnectorAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-complianceconnectorauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceConnectorAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLMExchangeAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLMExchangeAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlmexchangeauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLMExchangeAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLMSharePointAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLMSharePointAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlmsharepointauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLMSharePointAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPApplicationsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPApplicationsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpapplicationsauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPApplicationsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPApplicationsClassificationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPApplicationsClassificationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpapplicationsclassificationauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPApplicationsClassificationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPEndpointAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPEndpointAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpendpointauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPEndpointAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPEndpointDiscoveryAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPEndpointDiscoveryAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpendpointdiscoveryauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPEndpointDiscoveryAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPEnforcementAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPEnforcementAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpenforcementauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPEnforcementAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPExchangeAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPExchangeAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpexchangeauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPExchangeAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPExchangeClassificationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPExchangeClassificationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpexchangeclassificationauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPExchangeClassificationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPExchangeClassificationCdpRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPExchangeClassificationCdpRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpexchangeclassificationcdprecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPExchangeClassificationCdpRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPExchangeDiscoveryAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPExchangeDiscoveryAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpexchangediscoveryauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPExchangeDiscoveryAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPSharePointAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPSharePointAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpsharepointauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPSharePointAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPSharePointClassificationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPSharePointClassificationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpsharepointclassificationauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPSharePointClassificationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPSharePointClassificationCdpRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPSharePointClassificationCdpRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpsharepointclassificationcdprecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPSharePointClassificationCdpRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceDLPSharePointClassificationExtendedAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceDLPSharePointClassificationExtendedAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancedlpsharepointclassificationextendedauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceDLPSharePointClassificationExtendedAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceExchangeOcrAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceExchangeOcrAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-complianceexchangeocrauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceExchangeOcrAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceManagerActionRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceManagerActionRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancemanageractionrecord?view=graph-rest-1.0) resource.", + "Target": "complianceManagerActionRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceSettingsChangeAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceSettingsChangeAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancesettingschangeauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceSettingsChangeAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "complianceSupervisionExchangeAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [complianceSupervisionExchangeAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-compliancesupervisionexchangeauditrecord?view=graph-rest-1.0) resource.", + "Target": "complianceSupervisionExchangeAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "connectedAIAppInteractionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [connectedAIAppInteractionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-connectedaiappinteractionauditrecord?view=graph-rest-1.0) resource.", + "Target": "connectedAIAppInteractionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "consumptionResourceAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [consumptionResourceAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-consumptionresourceauditrecord?view=graph-rest-1.0) resource.", + "Target": "consumptionResourceAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "contentStoreMetadataRecord", + "ChangeType": "Addition", + "Description": "Added the [contentStoreMetadataRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-contentstoremetadatarecord?view=graph-rest-1.0) resource.", + "Target": "contentStoreMetadataRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "copilotAgentManagementAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [copilotAgentManagementAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-copilotagentmanagementauditrecord?view=graph-rest-1.0) resource.", + "Target": "copilotAgentManagementAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "copilotForSecurityLoggingAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [copilotForSecurityLoggingAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-copilotforsecurityloggingauditrecord?view=graph-rest-1.0) resource.", + "Target": "copilotForSecurityLoggingAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "copilotForSecurityTriggerAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [copilotForSecurityTriggerAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-copilotforsecuritytriggerauditrecord?view=graph-rest-1.0) resource.", + "Target": "copilotForSecurityTriggerAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "copilotInteractionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [copilotInteractionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-copilotinteractionauditrecord?view=graph-rest-1.0) resource.", + "Target": "copilotInteractionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "copilotPluginSettingAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [copilotPluginSettingAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-copilotpluginsettingauditrecord?view=graph-rest-1.0) resource.", + "Target": "copilotPluginSettingAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "copilotPromptBookSettingAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [copilotPromptBookSettingAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-copilotpromptbooksettingauditrecord?view=graph-rest-1.0) resource.", + "Target": "copilotPromptBookSettingAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "copilotSettingAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [copilotSettingAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-copilotsettingauditrecord?view=graph-rest-1.0) resource.", + "Target": "copilotSettingAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "copilotWorkspaceSettingAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [copilotWorkspaceSettingAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-copilotworkspacesettingauditrecord?view=graph-rest-1.0) resource.", + "Target": "copilotWorkspaceSettingAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "coreReportingSettingsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [coreReportingSettingsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-corereportingsettingsauditrecord?view=graph-rest-1.0) resource.", + "Target": "coreReportingSettingsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "cortanaBriefingAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [cortanaBriefingAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-cortanabriefingauditrecord?view=graph-rest-1.0) resource.", + "Target": "cortanaBriefingAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "criticalAssetManagementClassificationRecord", + "ChangeType": "Addition", + "Description": "Added the [criticalAssetManagementClassificationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-criticalassetmanagementclassificationrecord?view=graph-rest-1.0) resource.", + "Target": "criticalAssetManagementClassificationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "crmEntityOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [crmEntityOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-crmentityoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "crmEntityOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "crossTenantAccessPolicyAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [crossTenantAccessPolicyAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-crosstenantaccesspolicyauditrecord?view=graph-rest-1.0) resource.", + "Target": "crossTenantAccessPolicyAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "customerKeyServiceEncryptionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [customerKeyServiceEncryptionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-customerkeyserviceencryptionauditrecord?view=graph-rest-1.0) resource.", + "Target": "customerKeyServiceEncryptionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dataCenterSecurityCmdletAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [dataCenterSecurityCmdletAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-datacentersecuritycmdletauditrecord?view=graph-rest-1.0) resource.", + "Target": "dataCenterSecurityCmdletAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dataGovernanceAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [dataGovernanceAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-datagovernanceauditrecord?view=graph-rest-1.0) resource.", + "Target": "dataGovernanceAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dataInsightsRestApiAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [dataInsightsRestApiAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-datainsightsrestapiauditrecord?view=graph-rest-1.0) resource.", + "Target": "dataInsightsRestApiAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dataLakeExportOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [dataLakeExportOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-datalakeexportoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "dataLakeExportOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dataSecurityInvestigationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [dataSecurityInvestigationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-datasecurityinvestigationauditrecord?view=graph-rest-1.0) resource.", + "Target": "dataSecurityInvestigationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dataShareOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [dataShareOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-datashareoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "dataShareOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "defenderCaseManagementAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [defenderCaseManagementAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-defendercasemanagementauditrecord?view=graph-rest-1.0) resource.", + "Target": "defenderCaseManagementAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "defenderPreviewFeaturesRecord", + "ChangeType": "Addition", + "Description": "Added the [defenderPreviewFeaturesRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-defenderpreviewfeaturesrecord?view=graph-rest-1.0) resource.", + "Target": "defenderPreviewFeaturesRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "deployFeatureActivityRecord", + "ChangeType": "Addition", + "Description": "Added the [deployFeatureActivityRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-deployfeatureactivityrecord?view=graph-rest-1.0) resource.", + "Target": "deployFeatureActivityRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "deviceDiscoverySettingsAuthenticatedScansRecord", + "ChangeType": "Addition", + "Description": "Added the [deviceDiscoverySettingsAuthenticatedScansRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-devicediscoverysettingsauthenticatedscansrecord?view=graph-rest-1.0) resource.", + "Target": "deviceDiscoverySettingsAuthenticatedScansRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "deviceDiscoverySettingsExclusionRecord", + "ChangeType": "Addition", + "Description": "Added the [deviceDiscoverySettingsExclusionRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-devicediscoverysettingsexclusionrecord?view=graph-rest-1.0) resource.", + "Target": "deviceDiscoverySettingsExclusionRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "deviceDiscoverySettingsRecord", + "ChangeType": "Addition", + "Description": "Added the [deviceDiscoverySettingsRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-devicediscoverysettingsrecord?view=graph-rest-1.0) resource.", + "Target": "deviceDiscoverySettingsRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "discoveryAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [discoveryAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-discoveryauditrecord?view=graph-rest-1.0) resource.", + "Target": "discoveryAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dlpEndpointAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [dlpEndpointAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-dlpendpointauditrecord?view=graph-rest-1.0) resource.", + "Target": "dlpEndpointAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dlpImportResultAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [dlpImportResultAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-dlpimportresultauditrecord?view=graph-rest-1.0) resource.", + "Target": "dlpImportResultAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dlpSensitiveInformationTypeRulePackageCmdletRecord", + "ChangeType": "Addition", + "Description": "Added the [dlpSensitiveInformationTypeRulePackageCmdletRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-dlpsensitiveinformationtyperulepackagecmdletrecord?view=graph-rest-1.0) resource.", + "Target": "dlpSensitiveInformationTypeRulePackageCmdletRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "dynamics365BusinessCentralAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [dynamics365BusinessCentralAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-dynamics365businesscentralauditrecord?view=graph-rest-1.0) resource.", + "Target": "dynamics365BusinessCentralAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "ehrConnectorAuditBaseRecord", + "ChangeType": "Addition", + "Description": "Added the [ehrConnectorAuditBaseRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-ehrconnectorauditbaserecord?view=graph-rest-1.0) resource.", + "Target": "ehrConnectorAuditBaseRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "exchangeAdminAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [exchangeAdminAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-exchangeadminauditrecord?view=graph-rest-1.0) resource.", + "Target": "exchangeAdminAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "exchangeAggregatedMailboxAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [exchangeAggregatedMailboxAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-exchangeaggregatedmailboxauditrecord?view=graph-rest-1.0) resource.", + "Target": "exchangeAggregatedMailboxAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "exchangeAggregatedOperationRecord", + "ChangeType": "Addition", + "Description": "Added the [exchangeAggregatedOperationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-exchangeaggregatedoperationrecord?view=graph-rest-1.0) resource.", + "Target": "exchangeAggregatedOperationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "exchangeMailboxAuditGroupRecord", + "ChangeType": "Addition", + "Description": "Added the [exchangeMailboxAuditGroupRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-exchangemailboxauditgrouprecord?view=graph-rest-1.0) resource.", + "Target": "exchangeMailboxAuditGroupRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "exchangeMailboxAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [exchangeMailboxAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-exchangemailboxauditrecord?view=graph-rest-1.0) resource.", + "Target": "exchangeMailboxAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "fabricAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [fabricAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-fabricauditrecord?view=graph-rest-1.0) resource.", + "Target": "fabricAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "healthcareSignalRecord", + "ChangeType": "Addition", + "Description": "Added the [healthcareSignalRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-healthcaresignalrecord?view=graph-rest-1.0) resource.", + "Target": "healthcareSignalRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "hostedRpaAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [hostedRpaAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-hostedrpaauditrecord?view=graph-rest-1.0) resource.", + "Target": "hostedRpaAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "hrSignalAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [hrSignalAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-hrsignalauditrecord?view=graph-rest-1.0) resource.", + "Target": "hrSignalAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "hygieneEventRecord", + "ChangeType": "Addition", + "Description": "Added the [hygieneEventRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-hygieneeventrecord?view=graph-rest-1.0) resource.", + "Target": "hygieneEventRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "informationBarrierPolicyApplicationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [informationBarrierPolicyApplicationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-informationbarrierpolicyapplicationauditrecord?view=graph-rest-1.0) resource.", + "Target": "informationBarrierPolicyApplicationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "informationWorkerProtectionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [informationWorkerProtectionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-informationworkerprotectionauditrecord?view=graph-rest-1.0) resource.", + "Target": "informationWorkerProtectionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "insiderRiskScopedUserInsightsRecord", + "ChangeType": "Addition", + "Description": "Added the [insiderRiskScopedUserInsightsRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-insiderriskscopeduserinsightsrecord?view=graph-rest-1.0) resource.", + "Target": "insiderRiskScopedUserInsightsRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "insiderRiskScopedUsersRecord", + "ChangeType": "Addition", + "Description": "Added the [insiderRiskScopedUsersRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-insiderriskscopedusersrecord?view=graph-rest-1.0) resource.", + "Target": "insiderRiskScopedUsersRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "integratedAppsAppAdminActivityAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [integratedAppsAppAdminActivityAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-integratedappsappadminactivityauditrecord?view=graph-rest-1.0) resource.", + "Target": "integratedAppsAppAdminActivityAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "integratedAppsAppSettingsAdminActivityAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [integratedAppsAppSettingsAdminActivityAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-integratedappsappsettingsadminactivityauditrecord?view=graph-rest-1.0) resource.", + "Target": "integratedAppsAppSettingsAdminActivityAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "irmActivityAuditTrailRecord", + "ChangeType": "Addition", + "Description": "Added the [irmActivityAuditTrailRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-irmactivityaudittrailrecord?view=graph-rest-1.0) resource.", + "Target": "irmActivityAuditTrailRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "irmUserDefinedDetectionRecord", + "ChangeType": "Addition", + "Description": "Added the [irmUserDefinedDetectionRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-irmuserdefineddetectionrecord?view=graph-rest-1.0) resource.", + "Target": "irmUserDefinedDetectionRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "kaizalaAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [kaizalaAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-kaizalaauditrecord?view=graph-rest-1.0) resource.", + "Target": "kaizalaAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "labelAnalyticsAggregateAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [labelAnalyticsAggregateAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-labelanalyticsaggregateauditrecord?view=graph-rest-1.0) resource.", + "Target": "labelAnalyticsAggregateAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "labelContentExplorerAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [labelContentExplorerAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-labelcontentexplorerauditrecord?view=graph-rest-1.0) resource.", + "Target": "labelContentExplorerAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "largeContentMetadataAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [largeContentMetadataAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-largecontentmetadataauditrecord?view=graph-rest-1.0) resource.", + "Target": "largeContentMetadataAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "m365ComplianceConnectorAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [m365ComplianceConnectorAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-m365complianceconnectorauditrecord?view=graph-rest-1.0) resource.", + "Target": "m365ComplianceConnectorAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "m365SearchSectionsRecord", + "ChangeType": "Addition", + "Description": "Added the [m365SearchSectionsRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-m365searchsectionsrecord?view=graph-rest-1.0) resource.", + "Target": "m365SearchSectionsRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "m365daadAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [m365daadAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-m365daadauditrecord?view=graph-rest-1.0) resource.", + "Target": "m365daadAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "m365odspAssetMetadataRecord", + "ChangeType": "Addition", + "Description": "Added the [m365odspAssetMetadataRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-m365odspassetmetadatarecord?view=graph-rest-1.0) resource.", + "Target": "m365odspAssetMetadataRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mailSubmissionData", + "ChangeType": "Addition", + "Description": "Added the [mailSubmissionData](https://learn.microsoft.com/en-us/graph/api/resources/security-mailsubmissiondata?view=graph-rest-1.0) resource.", + "Target": "mailSubmissionData" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "managedServicesAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [managedServicesAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-managedservicesauditrecord?view=graph-rest-1.0) resource.", + "Target": "managedServicesAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "managedTenantsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [managedTenantsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-managedtenantsauditrecord?view=graph-rest-1.0) resource.", + "Target": "managedTenantsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mapgAlertsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mapgAlertsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mapgalertsauditrecord?view=graph-rest-1.0) resource.", + "Target": "mapgAlertsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mapgOnboardAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mapgOnboardAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mapgonboardauditrecord?view=graph-rest-1.0) resource.", + "Target": "mapgOnboardAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mapgPolicyAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mapgPolicyAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mapgpolicyauditrecord?view=graph-rest-1.0) resource.", + "Target": "mapgPolicyAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mapgRemediationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mapgRemediationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mapgremediationauditrecord?view=graph-rest-1.0) resource.", + "Target": "mapgRemediationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mcasAlertsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mcasAlertsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mcasalertsauditrecord?view=graph-rest-1.0) resource.", + "Target": "mcasAlertsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mdaAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mdaAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mdaauditrecord?view=graph-rest-1.0) resource.", + "Target": "mdaAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mdaDataSecuritySignalRecord", + "ChangeType": "Addition", + "Description": "Added the [mdaDataSecuritySignalRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mdadatasecuritysignalrecord?view=graph-rest-1.0) resource.", + "Target": "mdaDataSecuritySignalRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mdatpAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mdatpAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mdatpauditrecord?view=graph-rest-1.0) resource.", + "Target": "mdatpAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mdcEventsRecord", + "ChangeType": "Addition", + "Description": "Added the [mdcEventsRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mdceventsrecord?view=graph-rest-1.0) resource.", + "Target": "mdcEventsRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mdiAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mdiAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mdiauditrecord?view=graph-rest-1.0) resource.", + "Target": "mdiAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "meshWorldsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [meshWorldsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-meshworldsauditrecord?view=graph-rest-1.0) resource.", + "Target": "meshWorldsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoft365BackupBackupItemAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoft365BackupBackupItemAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoft365backupbackupitemauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoft365BackupBackupItemAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoft365BackupBackupPolicyAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoft365BackupBackupPolicyAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoft365backupbackuppolicyauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoft365BackupBackupPolicyAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoft365BackupGranularBrowseTaskAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoft365BackupGranularBrowseTaskAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoft365backupgranularbrowsetaskauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoft365BackupGranularBrowseTaskAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoft365BackupRestoreItemAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoft365BackupRestoreItemAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoft365backuprestoreitemauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoft365BackupRestoreItemAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoft365BackupRestoreTaskAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoft365BackupRestoreTaskAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoft365backuprestoretaskauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoft365BackupRestoreTaskAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoft365CopilotScheduledPromptAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoft365CopilotScheduledPromptAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoft365copilotscheduledpromptauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoft365CopilotScheduledPromptAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftDefenderExpertsXDRAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftDefenderExpertsXDRAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftdefenderexpertsxdrauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftDefenderExpertsXDRAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftFlowAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftFlowAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftflowauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftFlowAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftFormsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftFormsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftformsauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftFormsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftGraphDataConnectConsent", + "ChangeType": "Addition", + "Description": "Added the [microsoftGraphDataConnectConsent](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftgraphdataconnectconsent?view=graph-rest-1.0) resource.", + "Target": "microsoftGraphDataConnectConsent" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftGraphDataConnectOperation", + "ChangeType": "Addition", + "Description": "Added the [microsoftGraphDataConnectOperation](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftgraphdataconnectoperation?view=graph-rest-1.0) resource.", + "Target": "microsoftGraphDataConnectOperation" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftPurviewDataCatalogOperationRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftPurviewDataCatalogOperationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftpurviewdatacatalogoperationrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftPurviewDataCatalogOperationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftPurviewDataMapOperationRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftPurviewDataMapOperationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftpurviewdatamapoperationrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftPurviewDataMapOperationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftPurviewMetadataPolicyOperationRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftPurviewMetadataPolicyOperationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftpurviewmetadatapolicyoperationrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftPurviewMetadataPolicyOperationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftPurviewPolicyOperationRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftPurviewPolicyOperationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftpurviewpolicyoperationrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftPurviewPolicyOperationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftPurviewPrivacyAuditEvent", + "ChangeType": "Addition", + "Description": "Added the [microsoftPurviewPrivacyAuditEvent](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftpurviewprivacyauditevent?view=graph-rest-1.0) resource.", + "Target": "microsoftPurviewPrivacyAuditEvent" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftPurviewUnifiedCatalogOperationRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftPurviewUnifiedCatalogOperationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftpurviewunifiedcatalogoperationrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftPurviewUnifiedCatalogOperationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftStreamAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftStreamAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftstreamauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftStreamAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftTeamsAdminAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftTeamsAdminAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftteamsadminauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftTeamsAdminAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftTeamsAnalyticsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftTeamsAnalyticsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftteamsanalyticsauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftTeamsAnalyticsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftTeamsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftTeamsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftteamsauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftTeamsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftTeamsDeviceAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftTeamsDeviceAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftteamsdeviceauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftTeamsDeviceAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftTeamsRetentionLabelActionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftTeamsRetentionLabelActionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftteamsretentionlabelactionauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftTeamsRetentionLabelActionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftTeamsSensitivityLabelActionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftTeamsSensitivityLabelActionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftteamssensitivitylabelactionauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftTeamsSensitivityLabelActionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "microsoftTeamsShiftsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [microsoftTeamsShiftsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-microsoftteamsshiftsauditrecord?view=graph-rest-1.0) resource.", + "Target": "microsoftTeamsShiftsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mipAutoLabelExchangeItemAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mipAutoLabelExchangeItemAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mipautolabelexchangeitemauditrecord?view=graph-rest-1.0) resource.", + "Target": "mipAutoLabelExchangeItemAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mipAutoLabelProgressFeedbackAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mipAutoLabelProgressFeedbackAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mipautolabelprogressfeedbackauditrecord?view=graph-rest-1.0) resource.", + "Target": "mipAutoLabelProgressFeedbackAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mipAutoLabelSharePointItemAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mipAutoLabelSharePointItemAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mipautolabelsharepointitemauditrecord?view=graph-rest-1.0) resource.", + "Target": "mipAutoLabelSharePointItemAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mipAutoLabelSharePointPolicyLocationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mipAutoLabelSharePointPolicyLocationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mipautolabelsharepointpolicylocationauditrecord?view=graph-rest-1.0) resource.", + "Target": "mipAutoLabelSharePointPolicyLocationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mipAutoLabelSimulationSharePointCompletionRecord", + "ChangeType": "Addition", + "Description": "Added the [mipAutoLabelSimulationSharePointCompletionRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mipautolabelsimulationsharepointcompletionrecord?view=graph-rest-1.0) resource.", + "Target": "mipAutoLabelSimulationSharePointCompletionRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mipAutoLabelSimulationSharePointProgressRecord", + "ChangeType": "Addition", + "Description": "Added the [mipAutoLabelSimulationSharePointProgressRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mipautolabelsimulationsharepointprogressrecord?view=graph-rest-1.0) resource.", + "Target": "mipAutoLabelSimulationSharePointProgressRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mipAutoLabelSimulationStatisticsRecord", + "ChangeType": "Addition", + "Description": "Added the [mipAutoLabelSimulationStatisticsRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mipautolabelsimulationstatisticsrecord?view=graph-rest-1.0) resource.", + "Target": "mipAutoLabelSimulationStatisticsRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mipExactDataMatchAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mipExactDataMatchAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mipexactdatamatchauditrecord?view=graph-rest-1.0) resource.", + "Target": "mipExactDataMatchAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mipLabelAnalyticsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mipLabelAnalyticsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-miplabelanalyticsauditrecord?view=graph-rest-1.0) resource.", + "Target": "mipLabelAnalyticsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mipLabelAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [mipLabelAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-miplabelauditrecord?view=graph-rest-1.0) resource.", + "Target": "mipLabelAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "mosAgentInfoRecord", + "ChangeType": "Addition", + "Description": "Added the [mosAgentInfoRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-mosagentinforecord?view=graph-rest-1.0) resource.", + "Target": "mosAgentInfoRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "ms365dCustomDetectionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [ms365dCustomDetectionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-ms365dcustomdetectionauditrecord?view=graph-rest-1.0) resource.", + "Target": "ms365dCustomDetectionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "ms365dIncidentAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [ms365dIncidentAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-ms365dincidentauditrecord?view=graph-rest-1.0) resource.", + "Target": "ms365dIncidentAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "ms365dSuppressionRuleAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [ms365dSuppressionRuleAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-ms365dsuppressionruleauditrecord?view=graph-rest-1.0) resource.", + "Target": "ms365dSuppressionRuleAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "msdeCustomCollectionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [msdeCustomCollectionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-msdecustomcollectionauditrecord?view=graph-rest-1.0) resource.", + "Target": "msdeCustomCollectionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "msdeGeneralSettingsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [msdeGeneralSettingsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-msdegeneralsettingsauditrecord?view=graph-rest-1.0) resource.", + "Target": "msdeGeneralSettingsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "msdeIndicatorsSettingsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [msdeIndicatorsSettingsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-msdeindicatorssettingsauditrecord?view=graph-rest-1.0) resource.", + "Target": "msdeIndicatorsSettingsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "msdeResponseActionsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [msdeResponseActionsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-msderesponseactionsauditrecord?view=graph-rest-1.0) resource.", + "Target": "msdeResponseActionsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "msdeRolesSettingsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [msdeRolesSettingsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-msderolessettingsauditrecord?view=graph-rest-1.0) resource.", + "Target": "msdeRolesSettingsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "msticNationStateNotificationRecord", + "ChangeType": "Addition", + "Description": "Added the [msticNationStateNotificationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-msticnationstatenotificationrecord?view=graph-rest-1.0) resource.", + "Target": "msticNationStateNotificationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "multiStageDispositionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [multiStageDispositionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-multistagedispositionauditrecord?view=graph-rest-1.0) resource.", + "Target": "multiStageDispositionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "myAnalyticsSettingsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [myAnalyticsSettingsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-myanalyticssettingsauditrecord?view=graph-rest-1.0) resource.", + "Target": "myAnalyticsSettingsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "noisyAlertPolicyAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [noisyAlertPolicyAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-noisyalertpolicyauditrecord?view=graph-rest-1.0) resource.", + "Target": "noisyAlertPolicyAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "officeNativeAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [officeNativeAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-officenativeauditrecord?view=graph-rest-1.0) resource.", + "Target": "officeNativeAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "omePortalAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [omePortalAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-omeportalauditrecord?view=graph-rest-1.0) resource.", + "Target": "omePortalAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "onDemandSharePointClassificationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [onDemandSharePointClassificationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-ondemandsharepointclassificationauditrecord?view=graph-rest-1.0) resource.", + "Target": "onDemandSharePointClassificationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "onPremisesFileShareScannerDLPAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [onPremisesFileShareScannerDLPAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-onpremisesfilesharescannerdlpauditrecord?view=graph-rest-1.0) resource.", + "Target": "onPremisesFileShareScannerDLPAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "onPremisesSharePointScannerDLPAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [onPremisesSharePointScannerDLPAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-onpremisessharepointscannerdlpauditrecord?view=graph-rest-1.0) resource.", + "Target": "onPremisesSharePointScannerDLPAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "oneDriveAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [oneDriveAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-onedriveauditrecord?view=graph-rest-1.0) resource.", + "Target": "oneDriveAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "organizationalDataInM365AuditRecord", + "ChangeType": "Addition", + "Description": "Added the [organizationalDataInM365AuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-organizationaldatainm365auditrecord?view=graph-rest-1.0) resource.", + "Target": "organizationalDataInM365AuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "outlookCopilotAutomationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [outlookCopilotAutomationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-outlookcopilotautomationauditrecord?view=graph-rest-1.0) resource.", + "Target": "outlookCopilotAutomationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "owaGetAccessTokenForResourceAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [owaGetAccessTokenForResourceAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-owagetaccesstokenforresourceauditrecord?view=graph-rest-1.0) resource.", + "Target": "owaGetAccessTokenForResourceAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "p4aiAssessmentCategoryRecord", + "ChangeType": "Addition", + "Description": "Added the [p4aiAssessmentCategoryRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-p4aiassessmentcategoryrecord?view=graph-rest-1.0) resource.", + "Target": "p4aiAssessmentCategoryRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "p4aiAssessmentFabricScannerRecord", + "ChangeType": "Addition", + "Description": "Added the [p4aiAssessmentFabricScannerRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-p4aiassessmentfabricscannerrecord?view=graph-rest-1.0) resource.", + "Target": "p4aiAssessmentFabricScannerRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "p4aiAssessmentLocationResultRecord", + "ChangeType": "Addition", + "Description": "Added the [p4aiAssessmentLocationResultRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-p4aiassessmentlocationresultrecord?view=graph-rest-1.0) resource.", + "Target": "p4aiAssessmentLocationResultRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "p4aiAssessmentRecord", + "ChangeType": "Addition", + "Description": "Added the [p4aiAssessmentRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-p4aiassessmentrecord?view=graph-rest-1.0) resource.", + "Target": "p4aiAssessmentRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "peopleAdminSettingsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [peopleAdminSettingsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-peopleadminsettingsauditrecord?view=graph-rest-1.0) resource.", + "Target": "peopleAdminSettingsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "physicalBadgingSignalAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [physicalBadgingSignalAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-physicalbadgingsignalauditrecord?view=graph-rest-1.0) resource.", + "Target": "physicalBadgingSignalAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "placesDirectoryAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [placesDirectoryAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-placesdirectoryauditrecord?view=graph-rest-1.0) resource.", + "Target": "placesDirectoryAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerChatMessageAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerChatMessageAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannerchatmessageauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerChatMessageAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerChatMessageListAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerChatMessageListAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannerchatmessagelistauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerChatMessageListAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerCopyPlanAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerCopyPlanAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannercopyplanauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerCopyPlanAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerGoalAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerGoalAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannergoalauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerGoalAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerGoalListAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerGoalListAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannergoallistauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerGoalListAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerPlanAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerPlanAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannerplanauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerPlanAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerPlanListAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerPlanListAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannerplanlistauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerPlanListAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerPlanSensitivityLabelAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerPlanSensitivityLabelAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannerplansensitivitylabelauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerPlanSensitivityLabelAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerRosterAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerRosterAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannerrosterauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerRosterAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerRosterSensitivityLabelAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerRosterSensitivityLabelAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannerrostersensitivitylabelauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerRosterSensitivityLabelAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerTaskAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerTaskAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannertaskauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerTaskAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerTaskListAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerTaskListAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannertasklistauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerTaskListAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "plannerTenantSettingsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [plannerTenantSettingsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-plannertenantsettingsauditrecord?view=graph-rest-1.0) resource.", + "Target": "plannerTenantSettingsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "policyConfigChangeAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [policyConfigChangeAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-policyconfigchangeauditrecord?view=graph-rest-1.0) resource.", + "Target": "policyConfigChangeAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerAppsAuditAppRecord", + "ChangeType": "Addition", + "Description": "Added the [powerAppsAuditAppRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerappsauditapprecord?view=graph-rest-1.0) resource.", + "Target": "powerAppsAuditAppRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerAppsAuditPlanRecord", + "ChangeType": "Addition", + "Description": "Added the [powerAppsAuditPlanRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerappsauditplanrecord?view=graph-rest-1.0) resource.", + "Target": "powerAppsAuditPlanRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerAppsAuditResourceRecord", + "ChangeType": "Addition", + "Description": "Added the [powerAppsAuditResourceRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerappsauditresourcerecord?view=graph-rest-1.0) resource.", + "Target": "powerAppsAuditResourceRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerBIAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [powerBIAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerbiauditrecord?view=graph-rest-1.0) resource.", + "Target": "powerBIAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerBIDlpAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [powerBIDlpAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerbidlpauditrecord?view=graph-rest-1.0) resource.", + "Target": "powerBIDlpAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerPagesSiteAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [powerPagesSiteAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerpagessiteauditrecord?view=graph-rest-1.0) resource.", + "Target": "powerPagesSiteAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerPlatformAdminDlpAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [powerPlatformAdminDlpAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerplatformadmindlpauditrecord?view=graph-rest-1.0) resource.", + "Target": "powerPlatformAdminDlpAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerPlatformAdminEnvironmentAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [powerPlatformAdminEnvironmentAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerplatformadminenvironmentauditrecord?view=graph-rest-1.0) resource.", + "Target": "powerPlatformAdminEnvironmentAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerPlatformAdministratorActivityRecord", + "ChangeType": "Addition", + "Description": "Added the [powerPlatformAdministratorActivityRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerplatformadministratoractivityrecord?view=graph-rest-1.0) resource.", + "Target": "powerPlatformAdministratorActivityRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerPlatformLockboxResourceAccessRequestAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [powerPlatformLockboxResourceAccessRequestAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerplatformlockboxresourceaccessrequestauditrecord?view=graph-rest-1.0) resource.", + "Target": "powerPlatformLockboxResourceAccessRequestAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerPlatformLockboxResourceCommandAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [powerPlatformLockboxResourceCommandAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerplatformlockboxresourcecommandauditrecord?view=graph-rest-1.0) resource.", + "Target": "powerPlatformLockboxResourceCommandAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerPlatformServiceActivityAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [powerPlatformServiceActivityAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerplatformserviceactivityauditrecord?view=graph-rest-1.0) resource.", + "Target": "powerPlatformServiceActivityAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "powerPlatformTenantIsolationRecord", + "ChangeType": "Addition", + "Description": "Added the [powerPlatformTenantIsolationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-powerplatformtenantisolationrecord?view=graph-rest-1.0) resource.", + "Target": "powerPlatformTenantIsolationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "privaPrivacyAssessmentOperationRecord", + "ChangeType": "Addition", + "Description": "Added the [privaPrivacyAssessmentOperationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-privaprivacyassessmentoperationrecord?view=graph-rest-1.0) resource.", + "Target": "privaPrivacyAssessmentOperationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "privaPrivacyConsentOperationRecord", + "ChangeType": "Addition", + "Description": "Added the [privaPrivacyConsentOperationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-privaprivacyconsentoperationrecord?view=graph-rest-1.0) resource.", + "Target": "privaPrivacyConsentOperationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "privacyDataMatchAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [privacyDataMatchAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-privacydatamatchauditrecord?view=graph-rest-1.0) resource.", + "Target": "privacyDataMatchAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "privacyDataMinimizationRecord", + "ChangeType": "Addition", + "Description": "Added the [privacyDataMinimizationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-privacydataminimizationrecord?view=graph-rest-1.0) resource.", + "Target": "privacyDataMinimizationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "privacyDigestEmailRecord", + "ChangeType": "Addition", + "Description": "Added the [privacyDigestEmailRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-privacydigestemailrecord?view=graph-rest-1.0) resource.", + "Target": "privacyDigestEmailRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "privacyOpenAccessAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [privacyOpenAccessAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-privacyopenaccessauditrecord?view=graph-rest-1.0) resource.", + "Target": "privacyOpenAccessAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "privacyPortalAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [privacyPortalAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-privacyportalauditrecord?view=graph-rest-1.0) resource.", + "Target": "privacyPortalAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "privacyRemediationActionRecord", + "ChangeType": "Addition", + "Description": "Added the [privacyRemediationActionRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-privacyremediationactionrecord?view=graph-rest-1.0) resource.", + "Target": "privacyRemediationActionRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "privacyRemediationRecord", + "ChangeType": "Addition", + "Description": "Added the [privacyRemediationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-privacyremediationrecord?view=graph-rest-1.0) resource.", + "Target": "privacyRemediationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "projectAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [projectAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-projectauditrecord?view=graph-rest-1.0) resource.", + "Target": "projectAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "projectForTheWebAssignedToMeSettingsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [projectForTheWebAssignedToMeSettingsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-projectforthewebassignedtomesettingsauditrecord?view=graph-rest-1.0) resource.", + "Target": "projectForTheWebAssignedToMeSettingsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "projectForTheWebProjectAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [projectForTheWebProjectAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-projectforthewebprojectauditrecord?view=graph-rest-1.0) resource.", + "Target": "projectForTheWebProjectAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "projectForTheWebProjectSettingsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [projectForTheWebProjectSettingsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-projectforthewebprojectsettingsauditrecord?view=graph-rest-1.0) resource.", + "Target": "projectForTheWebProjectSettingsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "projectForTheWebRoadmapAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [projectForTheWebRoadmapAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-projectforthewebroadmapauditrecord?view=graph-rest-1.0) resource.", + "Target": "projectForTheWebRoadmapAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "projectForTheWebRoadmapItemAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [projectForTheWebRoadmapItemAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-projectforthewebroadmapitemauditrecord?view=graph-rest-1.0) resource.", + "Target": "projectForTheWebRoadmapItemAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "projectForTheWebRoadmapSettingsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [projectForTheWebRoadmapSettingsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-projectforthewebroadmapsettingsauditrecord?view=graph-rest-1.0) resource.", + "Target": "projectForTheWebRoadmapSettingsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "projectForTheWebTaskAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [projectForTheWebTaskAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-projectforthewebtaskauditrecord?view=graph-rest-1.0) resource.", + "Target": "projectForTheWebTaskAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "publicFolderAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [publicFolderAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-publicfolderauditrecord?view=graph-rest-1.0) resource.", + "Target": "publicFolderAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "purviewInsiderRiskAlertsRecord", + "ChangeType": "Addition", + "Description": "Added the [purviewInsiderRiskAlertsRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-purviewinsiderriskalertsrecord?view=graph-rest-1.0) resource.", + "Target": "purviewInsiderRiskAlertsRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "purviewInsiderRiskCasesRecord", + "ChangeType": "Addition", + "Description": "Added the [purviewInsiderRiskCasesRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-purviewinsiderriskcasesrecord?view=graph-rest-1.0) resource.", + "Target": "purviewInsiderRiskCasesRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "purviewMCRecommendationRecord", + "ChangeType": "Addition", + "Description": "Added the [purviewMCRecommendationRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-purviewmcrecommendationrecord?view=graph-rest-1.0) resource.", + "Target": "purviewMCRecommendationRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "purviewPostureAgentAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [purviewPostureAgentAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-purviewpostureagentauditrecord?view=graph-rest-1.0) resource.", + "Target": "purviewPostureAgentAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "quarantineAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [quarantineAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-quarantineauditrecord?view=graph-rest-1.0) resource.", + "Target": "quarantineAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "recordsManagementAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [recordsManagementAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-recordsmanagementauditrecord?view=graph-rest-1.0) resource.", + "Target": "recordsManagementAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "reportSubmission", + "ChangeType": "Addition", + "Description": "Added the [reportSubmission](https://learn.microsoft.com/en-us/graph/api/resources/security-reportsubmission?view=graph-rest-1.0) resource.", + "Target": "reportSubmission" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "reportSubmissionResultDetail", + "ChangeType": "Addition", + "Description": "Added the [reportSubmissionResultDetail](https://learn.microsoft.com/en-us/graph/api/resources/security-reportsubmissionresultdetail?view=graph-rest-1.0) resource.", + "Target": "reportSubmissionResultDetail" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "restrictedModeAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [restrictedModeAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-restrictedmodeauditrecord?view=graph-rest-1.0) resource.", + "Target": "restrictedModeAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "retentionPolicyAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [retentionPolicyAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-retentionpolicyauditrecord?view=graph-rest-1.0) resource.", + "Target": "retentionPolicyAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "rtiOperationsAgentAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [rtiOperationsAgentAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-rtioperationsagentauditrecord?view=graph-rest-1.0) resource.", + "Target": "rtiOperationsAgentAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sbpConfigurationEventRecord", + "ChangeType": "Addition", + "Description": "Added the [sbpConfigurationEventRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sbpconfigurationeventrecord?view=graph-rest-1.0) resource.", + "Target": "sbpConfigurationEventRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sbpUsageEventRecord", + "ChangeType": "Addition", + "Description": "Added the [sbpUsageEventRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sbpusageeventrecord?view=graph-rest-1.0) resource.", + "Target": "sbpUsageEventRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "scoreEvidence", + "ChangeType": "Addition", + "Description": "Added the [scoreEvidence](https://learn.microsoft.com/en-us/graph/api/resources/security-scoreevidence?view=graph-rest-1.0) resource.", + "Target": "scoreEvidence" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "scorePlatformGenericAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [scorePlatformGenericAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-scoreplatformgenericauditrecord?view=graph-rest-1.0) resource.", + "Target": "scorePlatformGenericAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "scriptRunAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [scriptRunAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-scriptrunauditrecord?view=graph-rest-1.0) resource.", + "Target": "scriptRunAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "searchAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [searchAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-searchauditrecord?view=graph-rest-1.0) resource.", + "Target": "searchAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "securityComplianceAlertRecord", + "ChangeType": "Addition", + "Description": "Added the [securityComplianceAlertRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-securitycompliancealertrecord?view=graph-rest-1.0) resource.", + "Target": "securityComplianceAlertRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "securityComplianceCenterEOPCmdletAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [securityComplianceCenterEOPCmdletAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-securitycompliancecentereopcmdletauditrecord?view=graph-rest-1.0) resource.", + "Target": "securityComplianceCenterEOPCmdletAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "securityComplianceInsightsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [securityComplianceInsightsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-securitycomplianceinsightsauditrecord?view=graph-rest-1.0) resource.", + "Target": "securityComplianceInsightsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "securityComplianceRBACAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [securityComplianceRBACAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-securitycompliancerbacauditrecord?view=graph-rest-1.0) resource.", + "Target": "securityComplianceRBACAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "securityComplianceUserChangeAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [securityComplianceUserChangeAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-securitycomplianceuserchangeauditrecord?view=graph-rest-1.0) resource.", + "Target": "securityComplianceUserChangeAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sensitiveInfoRemediationAgentDataRecord", + "ChangeType": "Addition", + "Description": "Added the [sensitiveInfoRemediationAgentDataRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sensitiveinforemediationagentdatarecord?view=graph-rest-1.0) resource.", + "Target": "sensitiveInfoRemediationAgentDataRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sensitivityLabelActionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sensitivityLabelActionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sensitivitylabelactionauditrecord?view=graph-rest-1.0) resource.", + "Target": "sensitivityLabelActionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sensitivityLabelPolicyMatchAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sensitivityLabelPolicyMatchAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sensitivitylabelpolicymatchauditrecord?view=graph-rest-1.0) resource.", + "Target": "sensitivityLabelPolicyMatchAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sensitivityLabeledFileActionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sensitivityLabeledFileActionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sensitivitylabeledfileactionauditrecord?view=graph-rest-1.0) resource.", + "Target": "sensitivityLabeledFileActionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sentinelAIToolAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sentinelAIToolAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sentinelaitoolauditrecord?view=graph-rest-1.0) resource.", + "Target": "sentinelAIToolAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sentinelGraphAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sentinelGraphAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sentinelgraphauditrecord?view=graph-rest-1.0) resource.", + "Target": "sentinelGraphAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sentinelJobAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sentinelJobAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sentineljobauditrecord?view=graph-rest-1.0) resource.", + "Target": "sentinelJobAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sentinelKQLOnLakeAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sentinelKQLOnLakeAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sentinelkqlonlakeauditrecord?view=graph-rest-1.0) resource.", + "Target": "sentinelKQLOnLakeAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sentinelLakeDataOnboardingAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sentinelLakeDataOnboardingAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sentinellakedataonboardingauditrecord?view=graph-rest-1.0) resource.", + "Target": "sentinelLakeDataOnboardingAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sentinelLakeEncryptionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sentinelLakeEncryptionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sentinellakeencryptionauditrecord?view=graph-rest-1.0) resource.", + "Target": "sentinelLakeEncryptionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sentinelLakeOnboardingAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sentinelLakeOnboardingAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sentinellakeonboardingauditrecord?view=graph-rest-1.0) resource.", + "Target": "sentinelLakeOnboardingAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sentinelNotebookOnLakeAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sentinelNotebookOnLakeAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sentinelnotebookonlakeauditrecord?view=graph-rest-1.0) resource.", + "Target": "sentinelNotebookOnLakeAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sentinelPackageAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sentinelPackageAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sentinelpackageauditrecord?view=graph-rest-1.0) resource.", + "Target": "sentinelPackageAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sharePointAppPermissionOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sharePointAppPermissionOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sharepointapppermissionoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "sharePointAppPermissionOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sharePointAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sharePointAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sharepointauditrecord?view=graph-rest-1.0) resource.", + "Target": "sharePointAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sharePointCommentOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sharePointCommentOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sharepointcommentoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "sharePointCommentOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sharePointContentSecurityPolicyAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sharePointContentSecurityPolicyAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sharepointcontentsecuritypolicyauditrecord?view=graph-rest-1.0) resource.", + "Target": "sharePointContentSecurityPolicyAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sharePointContentTypeOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sharePointContentTypeOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sharepointcontenttypeoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "sharePointContentTypeOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sharePointESignatureAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sharePointESignatureAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sharepointesignatureauditrecord?view=graph-rest-1.0) resource.", + "Target": "sharePointESignatureAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sharePointFieldOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sharePointFieldOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sharepointfieldoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "sharePointFieldOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sharePointFileOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sharePointFileOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sharepointfileoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "sharePointFileOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sharePointListItemOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sharePointListItemOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sharepointlistitemoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "sharePointListItemOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sharePointListOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sharePointListOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sharepointlistoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "sharePointListOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sharePointSharingOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [sharePointSharingOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-sharepointsharingoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "sharePointSharingOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "skypeForBusinessCmdletsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [skypeForBusinessCmdletsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-skypeforbusinesscmdletsauditrecord?view=graph-rest-1.0) resource.", + "Target": "skypeForBusinessCmdletsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "skypeForBusinessPSTNUsageAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [skypeForBusinessPSTNUsageAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-skypeforbusinesspstnusageauditrecord?view=graph-rest-1.0) resource.", + "Target": "skypeForBusinessPSTNUsageAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "skypeForBusinessUsersBlockedAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [skypeForBusinessUsersBlockedAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-skypeforbusinessusersblockedauditrecord?view=graph-rest-1.0) resource.", + "Target": "skypeForBusinessUsersBlockedAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "sonarDetonationContentMetadata", + "ChangeType": "Addition", + "Description": "Added the [sonarDetonationContentMetadata](https://learn.microsoft.com/en-us/graph/api/resources/security-sonardetonationcontentmetadata?view=graph-rest-1.0) resource.", + "Target": "sonarDetonationContentMetadata" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "supervisoryReviewDayXInsightsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [supervisoryReviewDayXInsightsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-supervisoryreviewdayxinsightsauditrecord?view=graph-rest-1.0) resource.", + "Target": "supervisoryReviewDayXInsightsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "syntheticProbeAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [syntheticProbeAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-syntheticprobeauditrecord?view=graph-rest-1.0) resource.", + "Target": "syntheticProbeAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "teamCopilotInteractionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [teamCopilotInteractionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-teamcopilotinteractionauditrecord?view=graph-rest-1.0) resource.", + "Target": "teamCopilotInteractionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "teamsEasyApprovalsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [teamsEasyApprovalsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-teamseasyapprovalsauditrecord?view=graph-rest-1.0) resource.", + "Target": "teamsEasyApprovalsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "teamsEvalDataHubAdminOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [teamsEvalDataHubAdminOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-teamsevaldatahubadminoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "teamsEvalDataHubAdminOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "teamsEvalDataHubDataAccessAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [teamsEvalDataHubDataAccessAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-teamsevaldatahubdataaccessauditrecord?view=graph-rest-1.0) resource.", + "Target": "teamsEvalDataHubDataAccessAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "teamsEvalDataHubPermissionChangeAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [teamsEvalDataHubPermissionChangeAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-teamsevaldatahubpermissionchangeauditrecord?view=graph-rest-1.0) resource.", + "Target": "teamsEvalDataHubPermissionChangeAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "teamsHealthcareAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [teamsHealthcareAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-teamshealthcareauditrecord?view=graph-rest-1.0) resource.", + "Target": "teamsHealthcareAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "teamsUpdatesAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [teamsUpdatesAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-teamsupdatesauditrecord?view=graph-rest-1.0) resource.", + "Target": "teamsUpdatesAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "tenantAllowBlockListAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [tenantAllowBlockListAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-tenantallowblocklistauditrecord?view=graph-rest-1.0) resource.", + "Target": "tenantAllowBlockListAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "threatFinderAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [threatFinderAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-threatfinderauditrecord?view=graph-rest-1.0) resource.", + "Target": "threatFinderAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "threatIntelligenceAtpContentData", + "ChangeType": "Addition", + "Description": "Added the [threatIntelligenceAtpContentData](https://learn.microsoft.com/en-us/graph/api/resources/security-threatintelligenceatpcontentdata?view=graph-rest-1.0) resource.", + "Target": "threatIntelligenceAtpContentData" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "threatIntelligenceExportAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [threatIntelligenceExportAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-threatintelligenceexportauditrecord?view=graph-rest-1.0) resource.", + "Target": "threatIntelligenceExportAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "threatIntelligenceMailData", + "ChangeType": "Addition", + "Description": "Added the [threatIntelligenceMailData](https://learn.microsoft.com/en-us/graph/api/resources/security-threatintelligencemaildata?view=graph-rest-1.0) resource.", + "Target": "threatIntelligenceMailData" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "threatIntelligenceObjectAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [threatIntelligenceObjectAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-threatintelligenceobjectauditrecord?view=graph-rest-1.0) resource.", + "Target": "threatIntelligenceObjectAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "threatIntelligenceUrlClickData", + "ChangeType": "Addition", + "Description": "Added the [threatIntelligenceUrlClickData](https://learn.microsoft.com/en-us/graph/api/resources/security-threatintelligenceurlclickdata?view=graph-rest-1.0) resource.", + "Target": "threatIntelligenceUrlClickData" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "todoAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [todoAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-todoauditrecord?view=graph-rest-1.0) resource.", + "Target": "todoAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "trainableClassifierAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [trainableClassifierAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-trainableclassifierauditrecord?view=graph-rest-1.0) resource.", + "Target": "trainableClassifierAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "uamOperationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [uamOperationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-uamoperationauditrecord?view=graph-rest-1.0) resource.", + "Target": "uamOperationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "unifiedGroupAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [unifiedGroupAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-unifiedgroupauditrecord?view=graph-rest-1.0) resource.", + "Target": "unifiedGroupAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "unifiedSimulationMatchedItemAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [unifiedSimulationMatchedItemAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-unifiedsimulationmatcheditemauditrecord?view=graph-rest-1.0) resource.", + "Target": "unifiedSimulationMatchedItemAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "unifiedSimulationSummaryAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [unifiedSimulationSummaryAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-unifiedsimulationsummaryauditrecord?view=graph-rest-1.0) resource.", + "Target": "unifiedSimulationSummaryAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "universalPrintManagementAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [universalPrintManagementAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-universalprintmanagementauditrecord?view=graph-rest-1.0) resource.", + "Target": "universalPrintManagementAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "universalPrintPrintJobAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [universalPrintPrintJobAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-universalprintprintjobauditrecord?view=graph-rest-1.0) resource.", + "Target": "universalPrintPrintJobAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "urbacAssignmentAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [urbacAssignmentAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-urbacassignmentauditrecord?view=graph-rest-1.0) resource.", + "Target": "urbacAssignmentAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "urbacEnableStateAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [urbacEnableStateAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-urbacenablestateauditrecord?view=graph-rest-1.0) resource.", + "Target": "urbacEnableStateAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "urbacRoleAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [urbacRoleAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-urbacroleauditrecord?view=graph-rest-1.0) resource.", + "Target": "urbacRoleAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "userTrainingAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [userTrainingAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-usertrainingauditrecord?view=graph-rest-1.0) resource.", + "Target": "userTrainingAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "usxWorkspaceOnboardingAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [usxWorkspaceOnboardingAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-usxworkspaceonboardingauditrecord?view=graph-rest-1.0) resource.", + "Target": "usxWorkspaceOnboardingAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vfamCreatePolicyAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vfamCreatePolicyAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vfamcreatepolicyauditrecord?view=graph-rest-1.0) resource.", + "Target": "vfamCreatePolicyAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vfamDeletePolicyAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vfamDeletePolicyAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vfamdeletepolicyauditrecord?view=graph-rest-1.0) resource.", + "Target": "vfamDeletePolicyAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vfamUpdatePolicyAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vfamUpdatePolicyAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vfamupdatepolicyauditrecord?view=graph-rest-1.0) resource.", + "Target": "vfamUpdatePolicyAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaAmplifyAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaAmplifyAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaamplifyauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaAmplifyAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaEngageEventsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaEngageEventsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaengageeventsauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaEngageEventsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaEngageNetworkAssociationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaEngageNetworkAssociationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaengagenetworkassociationauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaEngageNetworkAssociationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaEngageSegmentAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaEngageSegmentAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaengagesegmentauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaEngageSegmentAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintAdvancedConfigurationAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintAdvancedConfigurationAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintadvancedconfigurationauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintAdvancedConfigurationAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintFeedbackProgramAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintFeedbackProgramAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintfeedbackprogramauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintFeedbackProgramAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintOrganizationalDataAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintOrganizationalDataAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintorganizationaldataauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintOrganizationalDataAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintPulseProgramAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintPulseProgramAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintpulseprogramauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintPulseProgramAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintPulseProgramRespondentRateAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintPulseProgramRespondentRateAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintpulseprogramrespondentrateauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintPulseProgramRespondentRateAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintQuestionAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintQuestionAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintquestionauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintQuestionAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintRoleAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintRoleAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintroleauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintRoleAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintRubiconAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintRubiconAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintrubiconauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintRubiconAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintSupportAccessAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintSupportAccessAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintsupportaccessauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintSupportAccessAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintSystemAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintSystemAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintsystemauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintSystemAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintUserAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintUserAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintuserauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintUserAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGlintUserGroupAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGlintUserGroupAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivaglintusergroupauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGlintUserGroupAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaGoalsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaGoalsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivagoalsauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaGoalsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaLearningAdminAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaLearningAdminAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivalearningadminauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaLearningAdminAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaLearningAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaLearningAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivalearningauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaLearningAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaPulseAdminAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaPulseAdminAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivapulseadminauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaPulseAdminAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaPulseOrganizerAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaPulseOrganizerAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivapulseorganizerauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaPulseOrganizerAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaPulseReportAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaPulseReportAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivapulsereportauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaPulseReportAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "vivaPulseResponseAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [vivaPulseResponseAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-vivapulseresponseauditrecord?view=graph-rest-1.0) resource.", + "Target": "vivaPulseResponseAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "wdatpAlertsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [wdatpAlertsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-wdatpalertsauditrecord?view=graph-rest-1.0) resource.", + "Target": "wdatpAlertsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "webContentFilteringAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [webContentFilteringAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-webcontentfilteringauditrecord?view=graph-rest-1.0) resource.", + "Target": "webContentFilteringAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "windows365CustomerLockboxAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [windows365CustomerLockboxAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-windows365customerlockboxauditrecord?view=graph-rest-1.0) resource.", + "Target": "windows365CustomerLockboxAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "workplaceAnalyticsAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [workplaceAnalyticsAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-workplaceanalyticsauditrecord?view=graph-rest-1.0) resource.", + "Target": "workplaceAnalyticsAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "yammerAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [yammerAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-yammerauditrecord?view=graph-rest-1.0) resource.", + "Target": "yammerAuditRecord" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Resource", + "ChangedApiName": "yammerUserHidingAuditRecord", + "ChangeType": "Addition", + "Description": "Added the [yammerUserHidingAuditRecord](https://learn.microsoft.com/en-us/graph/api/resources/security-yammeruserhidingauditrecord?view=graph-rest-1.0) resource.", + "Target": "yammerUserHidingAuditRecord" + }, + { + "Target": "auditCoreRoot", + "Description": "Added the **auditCoreRoot** resource.", + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ChangedApiName": "auditCoreRoot", + "ChangeType": "Addition", + "ApiChange": "Resource" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Relationship", + "ChangedApiName": "auditLog", + "ChangeType": "Addition", + "Description": "Added the **auditLog** relationship to the [security](https://learn.microsoft.com/en-us/graph/api/resources/security?view=graph-rest-1.0) resource.", + "Target": "security" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Enumeration", + "ChangedApiName": "auditLogQueryStatus", + "ChangeType": "Addition", + "Description": "Added the **auditLogQueryStatus** enumeration type with members: notStarted, running, succeeded, failed, cancelled, unknownFutureValue.", + "Target": "auditLogQueryStatus" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Enumeration", + "ChangedApiName": "auditLogUserType", + "ChangeType": "Addition", + "Description": "Added the **auditLogUserType** enumeration type with members: Regular, Reserved, Admin, DcAdmin, System, Application, ServicePrincipal, CustomPolicy, SystemPolicy, PartnerTechnician, Guest, unknownFutureValue.", + "Target": "auditLogUserType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Enumeration", + "ChangedApiName": "auditLogRecordType", + "ChangeType": "Addition", + "Description": "Added the **auditLogRecordType** enumeration type.", + "Target": "auditLogRecordType" + } + ], + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-06-17T00:00:00.0000000Z", + "WorkloadArea": "Security", + "SubArea": "Compliance" + }, + { + "ChangeList": [ + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "AlertSubmission", + "ChangeType": "Addition", + "Description": "Added the `AlertSubmission` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "ReportSubmission", + "ChangeType": "Deletion", + "Description": "Removed the `ReportSubmission` member from the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "AlertSubmissionResultDetail", + "ChangeType": "Addition", + "Description": "Added the `AlertSubmissionResultDetail` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "ReportSubmissionResultDetail", + "ChangeType": "Deletion", + "Description": "Removed the `ReportSubmissionResultDetail` member from the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "ComplianceSitGradingSharePoint", + "ChangeType": "Addition", + "Description": "Added the `ComplianceSitGradingSharePoint` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "CompliancePolicyGradingSharePoint", + "ChangeType": "Addition", + "Description": "Added the `CompliancePolicyGradingSharePoint` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "AzureAISearchAudit", + "ChangeType": "Addition", + "Description": "Added the `AzureAISearchAudit` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "P4AIRiskScoreRecord", + "ChangeType": "Addition", + "Description": "Added the `P4AIRiskScoreRecord` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "DragonCopilotAdmin", + "ChangeType": "Addition", + "Description": "Added the `DragonCopilotAdmin` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "AISpanOutputs", + "ChangeType": "Addition", + "Description": "Added the `AISpanOutputs` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "EopSubmissionFeedEntity", + "ChangeType": "Addition", + "Description": "Added the `EopSubmissionFeedEntity` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "SonarFileDetonationEntity", + "ChangeType": "Addition", + "Description": "Added the `SonarFileDetonationEntity` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "SonarSubmissionEntity", + "ChangeType": "Addition", + "Description": "Added the `SonarSubmissionEntity` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "SonarUrlDetonationEntity", + "ChangeType": "Addition", + "Description": "Added the `SonarUrlDetonationEntity` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "SubmissionEntity", + "ChangeType": "Addition", + "Description": "Added the `SubmissionEntity` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "SonarDetonationEntity", + "ChangeType": "Addition", + "Description": "Added the `SonarDetonationEntity` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "MicrosoftTeamsUserConcern", + "ChangeType": "Addition", + "Description": "Added the `MicrosoftTeamsUserConcern` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "VivaGlintAgenticCampaign", + "ChangeType": "Addition", + "Description": "Added the `VivaGlintAgenticCampaign` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "MSPVectorSearchContentMetadata", + "ChangeType": "Addition", + "Description": "Added the `MSPVectorSearchContentMetadata` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "FabricPolicy", + "ChangeType": "Addition", + "Description": "Added the `FabricPolicy` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "SecurityCopilotAgentIdentityManagement", + "ChangeType": "Addition", + "Description": "Added the `SecurityCopilotAgentIdentityManagement` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "CopilotSessionSharing", + "ChangeType": "Addition", + "Description": "Added the `CopilotSessionSharing` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "DragonCopilotAccess", + "ChangeType": "Addition", + "Description": "Added the `DragonCopilotAccess` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "DragonCopilotClinicalData", + "ChangeType": "Addition", + "Description": "Added the `DragonCopilotClinicalData` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, + { + "Id": "fe0668f3-6222-48fa-947e-69403922beba", + "ApiChange": "Member", + "ChangedApiName": "DragonCopilotSession", + "ChangeType": "Addition", + "Description": "Added the `DragonCopilotSession` member to the **auditLogRecordType** enumeration.", + "Target": "auditLogRecordType" + }, { "Id": "fe0668f3-6222-48fa-947e-69403922beba", "ApiChange": "Resource", @@ -521,7 +3955,7 @@ "ApiChange": "Resource", "ChangedApiName": "auditData", "ChangeType": "Addition", - "Description": "Added multiple derived types of [auditData](https://learn.microsoft.com/en-us/graph/api/resources/security-auditdata?view=graph-rest-beta) to represent audit log records for various Microsoft 365 workloads.", + "Description": "Added multiple derived types of **auditData** to represent audit log records for various Microsoft 365 workloads.", "Target": "auditData" } ], @@ -547,7 +3981,7 @@ "ApiChange": "Resource", "ChangedApiName": "auditData", "ChangeType": "Addition", - "Description": "Added multiple derived types of [auditData](https://learn.microsoft.com/en-us/graph/api/resources/security-auditdata?view=graph-rest-beta) to represent audit log records for various Microsoft 365 workloads.", + "Description": "Added multiple derived types of **auditData** to represent audit log records for various Microsoft 365 workloads.", "Target": "auditData" } ], diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index dc494c2d3d8..93f2e193b5f 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -254,6 +254,10 @@ Evaluate applications in the Microsoft Entra application gallery by using the [a - Added the migration guide [Migrate from legacy alerts to the alerts and incidents API](/graph/alertsv1-alertsv2-migration) to help you transition your apps from the deprecated Microsoft Graph security alerts v1 API to the new alerts and incidents API. - Extended the [alertEvidence](/graph/api/resources/security-alertevidence) base type with additional derived types to provide detailed context about various artifacts involved in [security alerts](/graph/api/resources/security-alert). +### Security | Audit log query + +- Added [auditData](/graph/api/resources/security-auditdata) derived types to represent audit records for Microsoft 365 workloads, including Exchange, SharePoint, Microsoft Teams, Microsoft Entra ID, Compliance DLP, Microsoft Purview, Copilot, Sentinel, Viva Glint, Defender, Power Platform, Dragon Copilot, Fabric, and others. Added the **dynamicProperties** property of type **auditRecordTypeDictionary** to the **auditData** resource to enable dynamic audit event properties. Added corresponding members to the [auditLogRecordType](/graph/api/resources/security-auditlogrecordtype) enumeration. + ### Teamwork and communications | Messaging Added the [chatMessageBody](/graph/api/resources/chatmessagebody?view=graph-rest-beta&preserve-view=true) resource type to support Teams-specific message content formats, including `markdown`. From 3a7207094fe4919c0edb61470bee44ce2dfbdff0 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Thu, 13 Aug 2026 09:42:39 -0600 Subject: [PATCH 043/189] Update generated permissions tables with build 232850 (#29438) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/api/security-environment-delete.md | 6 +----- api-reference/beta/api/security-environment-get.md | 6 +----- api-reference/beta/api/security-security-list-zones.md | 6 +----- api-reference/beta/api/security-security-post-zones.md | 6 +----- api-reference/beta/api/security-zone-delete.md | 6 +----- api-reference/beta/api/security-zone-get.md | 6 +----- api-reference/beta/api/security-zone-list-environments.md | 6 +----- api-reference/beta/api/security-zone-post-environments.md | 6 +----- api-reference/beta/api/security-zone-update.md | 6 +----- .../permissions/security-environment-delete-permissions.md | 3 ++- .../permissions/security-environment-get-permissions.md | 3 +-- .../permissions/security-security-list-zones-permissions.md | 3 ++- .../permissions/security-security-post-zones-permissions.md | 3 +-- .../permissions/security-zone-delete-permissions.md | 3 ++- .../includes/permissions/security-zone-get-permissions.md | 3 +-- .../security-zone-list-environments-permissions.md | 3 +-- .../security-zone-post-environments-permissions.md | 2 +- .../permissions/security-zone-update-permissions.md | 3 +-- 18 files changed, 21 insertions(+), 59 deletions(-) diff --git a/api-reference/beta/api/security-environment-delete.md b/api-reference/beta/api/security-environment-delete.md index f5506a183cf..14c02c6090a 100644 --- a/api-reference/beta/api/security-environment-delete.md +++ b/api-reference/beta/api/security-environment-delete.md @@ -22,11 +22,7 @@ Delete an [environment](../resources/security-environment.md) object from a [zon Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/security-environment-delete-permissions.md)] [!INCLUDE [rbac-security-zone-apis-write](../includes/rbac-for-apis/rbac-security-zone-apis-write.md)] diff --git a/api-reference/beta/api/security-environment-get.md b/api-reference/beta/api/security-environment-get.md index 4c47b43f0bc..a96c3c02356 100644 --- a/api-reference/beta/api/security-environment-get.md +++ b/api-reference/beta/api/security-environment-get.md @@ -22,11 +22,7 @@ Get a specific [environment](../resources/security-environment.md) associated wi Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/security-environment-get-permissions.md)] [!INCLUDE [rbac-security-zone-apis-read](../includes/rbac-for-apis/rbac-security-zone-apis-read.md)] diff --git a/api-reference/beta/api/security-security-list-zones.md b/api-reference/beta/api/security-security-list-zones.md index 77997910a5a..39dc2c6a3a4 100644 --- a/api-reference/beta/api/security-security-list-zones.md +++ b/api-reference/beta/api/security-security-list-zones.md @@ -22,11 +22,7 @@ Get a list of the [zone](../resources/security-zone.md) objects and their proper Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/security-security-list-zones-permissions.md)] [!INCLUDE [rbac-security-zone-apis-read](../includes/rbac-for-apis/rbac-security-zone-apis-read.md)] diff --git a/api-reference/beta/api/security-security-post-zones.md b/api-reference/beta/api/security-security-post-zones.md index 4a7cb27d330..fcbe262d80a 100644 --- a/api-reference/beta/api/security-security-post-zones.md +++ b/api-reference/beta/api/security-security-post-zones.md @@ -22,11 +22,7 @@ Create a new [zone](../resources/security-zone.md) object. You can create up to Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/security-security-post-zones-permissions.md)] [!INCLUDE [rbac-security-zone-apis-write](../includes/rbac-for-apis/rbac-security-zone-apis-write.md)] diff --git a/api-reference/beta/api/security-zone-delete.md b/api-reference/beta/api/security-zone-delete.md index b229e383839..ce8a50efdbb 100644 --- a/api-reference/beta/api/security-zone-delete.md +++ b/api-reference/beta/api/security-zone-delete.md @@ -22,11 +22,7 @@ Delete a [zone](../resources/security-zone.md) object by providing the **zoneId* Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/security-zone-delete-permissions.md)] [!INCLUDE [rbac-security-zone-apis-write](../includes/rbac-for-apis/rbac-security-zone-apis-write.md)] diff --git a/api-reference/beta/api/security-zone-get.md b/api-reference/beta/api/security-zone-get.md index 7d404137651..cc63b0b2bcd 100644 --- a/api-reference/beta/api/security-zone-get.md +++ b/api-reference/beta/api/security-zone-get.md @@ -22,11 +22,7 @@ Get a [zone](../resources/security-zone.md) object by a specific **zoneId**. Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/security-zone-get-permissions.md)] [!INCLUDE [rbac-security-zone-apis-read](../includes/rbac-for-apis/rbac-security-zone-apis-read.md)] diff --git a/api-reference/beta/api/security-zone-list-environments.md b/api-reference/beta/api/security-zone-list-environments.md index 034a0d731da..e32a9666c6a 100644 --- a/api-reference/beta/api/security-zone-list-environments.md +++ b/api-reference/beta/api/security-zone-list-environments.md @@ -22,11 +22,7 @@ Get all [environment](../resources/security-environment.md) objects associated w Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/security-zone-list-environments-permissions.md)] [!INCLUDE [rbac-security-zone-apis-read](../includes/rbac-for-apis/rbac-security-zone-apis-read.md)] diff --git a/api-reference/beta/api/security-zone-post-environments.md b/api-reference/beta/api/security-zone-post-environments.md index c7d1c0b5ad5..78605a61cc9 100644 --- a/api-reference/beta/api/security-zone-post-environments.md +++ b/api-reference/beta/api/security-zone-post-environments.md @@ -22,11 +22,7 @@ Create an [environment](../resources/security-environment.md) object to attach i Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/security-zone-post-environments-permissions.md)] [!INCLUDE [rbac-security-zone-apis-write](../includes/rbac-for-apis/rbac-security-zone-apis-write.md)] diff --git a/api-reference/beta/api/security-zone-update.md b/api-reference/beta/api/security-zone-update.md index 15ff6a1851c..e1665fa4826 100644 --- a/api-reference/beta/api/security-zone-update.md +++ b/api-reference/beta/api/security-zone-update.md @@ -22,11 +22,7 @@ Update the properties of a [zone](../resources/security-zone.md) object. Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/security-zone-update-permissions.md)] [!INCLUDE [rbac-security-zone-apis-write](../includes/rbac-for-apis/rbac-security-zone-apis-write.md)] diff --git a/api-reference/beta/includes/permissions/security-environment-delete-permissions.md b/api-reference/beta/includes/permissions/security-environment-delete-permissions.md index b5457df127a..92975b0f71e 100644 --- a/api-reference/beta/includes/permissions/security-environment-delete-permissions.md +++ b/api-reference/beta/includes/permissions/security-environment-delete-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|Zone.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Zone.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/security-environment-get-permissions.md b/api-reference/beta/includes/permissions/security-environment-get-permissions.md index 69871fb3d41..9a41e8f2a04 100644 --- a/api-reference/beta/includes/permissions/security-environment-get-permissions.md +++ b/api-reference/beta/includes/permissions/security-environment-get-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -10,4 +10,3 @@ ms.localizationpriority: medium |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Zone.Read.All|Zone.ReadWrite.All| - diff --git a/api-reference/beta/includes/permissions/security-security-list-zones-permissions.md b/api-reference/beta/includes/permissions/security-security-list-zones-permissions.md index 08704f41800..9a41e8f2a04 100644 --- a/api-reference/beta/includes/permissions/security-security-list-zones-permissions.md +++ b/api-reference/beta/includes/permissions/security-security-list-zones-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|Zone.Read.All|Zone.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Zone.Read.All|Zone.ReadWrite.All| + diff --git a/api-reference/beta/includes/permissions/security-security-post-zones-permissions.md b/api-reference/beta/includes/permissions/security-security-post-zones-permissions.md index 4c3583d0082..92975b0f71e 100644 --- a/api-reference/beta/includes/permissions/security-security-post-zones-permissions.md +++ b/api-reference/beta/includes/permissions/security-security-post-zones-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -10,4 +10,3 @@ ms.localizationpriority: medium |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Zone.ReadWrite.All|Not available.| - diff --git a/api-reference/beta/includes/permissions/security-zone-delete-permissions.md b/api-reference/beta/includes/permissions/security-zone-delete-permissions.md index b5457df127a..92975b0f71e 100644 --- a/api-reference/beta/includes/permissions/security-zone-delete-permissions.md +++ b/api-reference/beta/includes/permissions/security-zone-delete-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|Zone.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Zone.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/security-zone-get-permissions.md b/api-reference/beta/includes/permissions/security-zone-get-permissions.md index 69871fb3d41..9a41e8f2a04 100644 --- a/api-reference/beta/includes/permissions/security-zone-get-permissions.md +++ b/api-reference/beta/includes/permissions/security-zone-get-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -10,4 +10,3 @@ ms.localizationpriority: medium |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Zone.Read.All|Zone.ReadWrite.All| - diff --git a/api-reference/beta/includes/permissions/security-zone-list-environments-permissions.md b/api-reference/beta/includes/permissions/security-zone-list-environments-permissions.md index 69871fb3d41..9a41e8f2a04 100644 --- a/api-reference/beta/includes/permissions/security-zone-list-environments-permissions.md +++ b/api-reference/beta/includes/permissions/security-zone-list-environments-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -10,4 +10,3 @@ ms.localizationpriority: medium |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Zone.Read.All|Zone.ReadWrite.All| - diff --git a/api-reference/beta/includes/permissions/security-zone-post-environments-permissions.md b/api-reference/beta/includes/permissions/security-zone-post-environments-permissions.md index f79dd9ef864..92975b0f71e 100644 --- a/api-reference/beta/includes/permissions/security-zone-post-environments-permissions.md +++ b/api-reference/beta/includes/permissions/security-zone-post-environments-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- diff --git a/api-reference/beta/includes/permissions/security-zone-update-permissions.md b/api-reference/beta/includes/permissions/security-zone-update-permissions.md index 4c3583d0082..92975b0f71e 100644 --- a/api-reference/beta/includes/permissions/security-zone-update-permissions.md +++ b/api-reference/beta/includes/permissions/security-zone-update-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -10,4 +10,3 @@ ms.localizationpriority: medium |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Zone.ReadWrite.All|Not available.| - From 5ae44c183dfd1e4050524d8a63ffc4931f17edf9 Mon Sep 17 00:00:00 2001 From: bkeerthivasa <86682379+bkeerthivasa@users.noreply.github.com> Date: Thu, 13 Aug 2026 17:42:18 -0700 Subject: [PATCH 044/189] =?UTF-8?q?[onlineMeetings=20-=20getAllRecordings?= =?UTF-8?q?=20and=20getAllTranscripts]=20update=20chan=E2=80=A6=20(#29306)?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit * [onlineMeetings - getAllRecordings and getAllTranscripts] update changeLog and knownIssue * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update changelog/Microsoft.Teams.GraphSvc.json Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * add what's new * addressed pr comments * Fix typo in error response explanation Corrected a typographical error in the error response section. * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * address PR comments * apply fixes * Update changelog/Microsoft.Teams.GraphSvc.json Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update changelog/Microsoft.Teams.GraphSvc.json Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix online meeting artifact response guidance Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd * Fix preview What's New entry Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd * Address known issue review feedback Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd * Refine known issue documentation Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd * fix --------- Co-authored-by: bkeerthivasa Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd --- .../api/onlinemeeting-getallrecordings.md | 20 +++++++++++------ .../api/onlinemeeting-getalltranscripts.md | 22 +++++++++++-------- .../api/onlinemeeting-getallrecordings.md | 9 +++++++- .../api/onlinemeeting-getalltranscripts.md | 13 ++++++++--- .../known-issues/teamwork-communications.md | 15 +++++++++++++ concepts/whats-new-overview.md | 10 ++++++++- 6 files changed, 68 insertions(+), 21 deletions(-) diff --git a/api-reference/beta/api/onlinemeeting-getallrecordings.md b/api-reference/beta/api/onlinemeeting-getallrecordings.md index d860fb0add8..aaaefed8b16 100644 --- a/api-reference/beta/api/onlinemeeting-getallrecordings.md +++ b/api-reference/beta/api/onlinemeeting-getallrecordings.md @@ -5,7 +5,7 @@ author: "suvanka" ms.localizationpriority: medium ms.subservice: "teams" doc_type: apiPageType -ms.date: 08/06/2024 +ms.date: 08/13/2026 --- # onlineMeeting: getAllRecordings @@ -26,12 +26,13 @@ To learn more about using the Microsoft Teams export APIs to export content, see [!INCLUDE [national-cloud-support](../../includes/global-us.md)] -### Known issues - -The following known issues are associated with this API: - -- [Using the `$top` query parameter might not return the **@odata.nextLink**](/graph/known-issues#apis-that-export-online-meeting-artifacts-might-not-return-nextlink-when-the-request-uses-the-top-query-parameter). -- [Recordings aren't exported for meetings that don't have transcription turned on](/graph/known-issues#apis-that-export-online-meeting-artifacts-dont-return-recordings-for-meetings-without-transcriptions-enabled). +> [!NOTE] +> This API has a [known issue](/graph/known-issues#apis-that-export-online-meeting-artifacts-may-return-duplicate-items-during-service-update) related to pagination token resets during a planned service update. +> +> Other known issues include: +> +> - [Using the `$top` query parameter might not return the **@odata.nextLink**](/graph/known-issues#apis-that-export-online-meeting-artifacts-might-not-return-nextlink-when-the-request-uses-the-top-query-parameter). +> - [Recordings aren't exported for meetings that don't have transcription turned on](/graph/known-issues#apis-that-export-online-meeting-artifacts-dont-return-recordings-for-meetings-without-transcriptions-enabled). ## Permissions @@ -57,6 +58,9 @@ In the request URL, provide the following query parameters with values. |meetingOrganizerUserId|String|The user identifier of the meeting organizer to filter for artifacts for meetings organized by the given user identifier.| |startDateTime|DateTimeOffset|Optional parameter to filter for artifacts created after the given start date. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`.| +> [!NOTE] +> When using delta queries, follow the returned delta link without appending or reapplying filters. The token retains the filter from the initial request. + ## Optional query parameters This method supports the following OData query parameter to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). @@ -75,6 +79,8 @@ This method supports the following OData query parameter to help customize the r If successful, this method returns a `200 OK` response code and a collection of [callRecording](../resources/callrecording.md) objects in the response body. +If a filter is supplied with a delta token, the method returns a `400 Bad Request` response with `DeltaFilterNotAllowed` as the `innerError.code` value. The initial filter is encoded in the token; follow the returned delta link without appending or reapplying filters. + ## Examples ### Example 1: Get all recordings diff --git a/api-reference/beta/api/onlinemeeting-getalltranscripts.md b/api-reference/beta/api/onlinemeeting-getalltranscripts.md index 7367e338d00..49be3ff9a66 100644 --- a/api-reference/beta/api/onlinemeeting-getalltranscripts.md +++ b/api-reference/beta/api/onlinemeeting-getalltranscripts.md @@ -5,7 +5,7 @@ author: "suvanka" ms.localizationpriority: medium ms.subservice: "teams" doc_type: apiPageType -ms.date: 08/06/2024 +ms.date: 08/13/2026 --- # onlineMeeting: getAllTranscripts @@ -26,12 +26,12 @@ To learn more about using the Microsoft Teams export APIs to export content, see [!INCLUDE [national-cloud-support](../../includes/global-us.md)] -### Known issues - -The following known issues are associated with this API: - -- [Using the `$top` query parameter might not return the **@odata.nextLink**](/graph/known-issues#apis-that-export-online-meeting-artifacts-might-not-return-nextlink-when-the-request-uses-the-top-query-parameter). -- [Transcript URLs might not include any content](/graph/known-issues#apis-that-export-online-meeting-artifacts-might-return-transcript-urls-that-dont-contain-any-content). +> [!NOTE] +> This API has a [known issue](/graph/known-issues#apis-that-export-online-meeting-artifacts-may-return-duplicate-items-during-service-update) related to pagination token resets during a planned service update. +> +> Other known issues include: +> +> - [Using the `$top` query parameter might not return the **@odata.nextLink**](/graph/known-issues#apis-that-export-online-meeting-artifacts-might-not-return-nextlink-when-the-request-uses-the-top-query-parameter). ## Permissions @@ -59,6 +59,9 @@ In the request URL, provide the following query parameters with values. |meetingOrganizerUserId|String|The user identifier of the meeting organizer that is used to filter artifacts for meetings organized by that specific user.| |startDateTime|DateTimeOffset|Optional parameter to filter for artifacts created after the given start date. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`.| +> [!NOTE] +> When using delta queries, follow the returned delta link without appending or reapplying filters. The token retains the filter from the initial request. + This method supports the following OData query parameter to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). | Name | Description | @@ -77,10 +80,11 @@ If successful, this method returns a `200 OK` response code and a collection of ### Error responses -This API is governed by tenant administrator settings for transcript access. Branch on the `innerError.code` value, not the message text — messages are subject to change. +This API is governed by tenant administrator settings for transcript access. Branch on the `innerError.code` value, not the message text because messages are subject to change. | Status | Error code (`innerError.code`) | Condition | -|--------|--------------------------------|-----------| +|:-------|:--------------------------------|:----------| +| `400 Bad Request` | `DeltaFilterNotAllowed` | A filter was supplied with a delta token. Follow the returned delta link without appending or reapplying filters. | | `403 Forbidden` | `GraphAccessToTranscriptsDisabled` | A tenant administrator has turned off Graph API access to transcripts. No retry succeeds until access is re-enabled. | The `transcriptContentUrl` returned by this function points at the transcript `/content` endpoint, which is additionally subject to the tenant's speaker-attribution setting. For that error and an example error payload, see [Get callTranscript](../api/calltranscript-get.md#error-responses). diff --git a/api-reference/v1.0/api/onlinemeeting-getallrecordings.md b/api-reference/v1.0/api/onlinemeeting-getallrecordings.md index 7c28120ba11..0eefbe1049e 100644 --- a/api-reference/v1.0/api/onlinemeeting-getallrecordings.md +++ b/api-reference/v1.0/api/onlinemeeting-getallrecordings.md @@ -5,7 +5,7 @@ author: "bkeerthivasa" ms.localizationpriority: medium ms.subservice: "teams" doc_type: apiPageType -ms.date: 09/10/2024 +ms.date: 08/13/2026 --- # onlineMeeting: getAllRecordings @@ -24,6 +24,8 @@ To learn more about using the Microsoft Teams export APIs to export content, see [!INCLUDE [national-cloud-support](../../includes/global-us.md)] +> [!NOTE] +> This API has a [known issue](/graph/known-issues#apis-that-export-online-meeting-artifacts-may-return-duplicate-items-during-service-update) related to pagination token resets during a planned service update. ## Permissions @@ -49,6 +51,9 @@ In the request URL, provide the following query parameters with values. |meetingOrganizerUserId|String|The user identifier of the meeting organizer to filter for artifacts for meetings organized by the given user identifier.| |startDateTime|DateTimeOffset|Optional parameter to filter for artifacts created after the given start date. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`.| +> [!NOTE] +> When using delta queries, follow the returned delta link without appending or reapplying filters. The token retains the filter from the initial request. + ## Optional query parameters This method supports the following OData query parameter to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). @@ -67,6 +72,8 @@ This method supports the following OData query parameter to help customize the r If successful, this method returns a `200 OK` response code and a collection of [callRecording](../resources/callrecording.md) objects in the response body. +If a filter is supplied with a delta token, the method returns a `400 Bad Request` response with `DeltaFilterNotAllowed` as the `innerError.code` value. The initial filter is encoded in the token; follow the returned delta link without appending or reapplying filters. + ## Examples ### Example 1: Get all recordings diff --git a/api-reference/v1.0/api/onlinemeeting-getalltranscripts.md b/api-reference/v1.0/api/onlinemeeting-getalltranscripts.md index e898cd0bc27..860e94ed1f6 100644 --- a/api-reference/v1.0/api/onlinemeeting-getalltranscripts.md +++ b/api-reference/v1.0/api/onlinemeeting-getalltranscripts.md @@ -5,7 +5,7 @@ author: "bkeerthivasa" ms.localizationpriority: medium ms.subservice: "teams" doc_type: apiPageType -ms.date: 09/10/2024 +ms.date: 08/13/2026 --- # onlineMeeting: getAllTranscripts @@ -24,6 +24,9 @@ To learn more about using the Microsoft Teams export APIs to export content, see [!INCLUDE [national-cloud-support](../../includes/global-us.md)] +> [!NOTE] +> This API has a [known issue](/graph/known-issues#apis-that-export-online-meeting-artifacts-may-return-duplicate-items-during-service-update) related to pagination token resets during a planned service update. + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). @@ -50,6 +53,9 @@ In the request URL, provide the following query parameters with values. |meetingOrganizerUserId|String|The user identifier of the meeting organizer that is used to filter artifacts for meetings organized by that specific user.| |startDateTime|DateTimeOffset|Optional parameter to filter for artifacts created after the given start date. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`.| +> [!NOTE] +> When using delta queries, follow the returned delta link without appending or reapplying filters. The token retains the filter from the initial request. + ## Optional query parameters This method supports the following OData query parameter to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). @@ -70,10 +76,11 @@ If successful, this method returns a `200 OK` response code and a collection of ### Error responses -This API is governed by tenant administrator settings for transcript access. Branch on the `innerError.code` value, not the message text — messages are subject to change. +This API is governed by tenant administrator settings for transcript access. Branch on the `innerError.code` value, not the message text because messages are subject to change. | Status | Error code (`innerError.code`) | Condition | -|--------|--------------------------------|-----------| +|:-------|:--------------------------------|:----------| +| `400 Bad Request` | `DeltaFilterNotAllowed` | A filter was supplied with a delta token. Follow the returned delta link without appending or reapplying filters. | | `403 Forbidden` | `GraphAccessToTranscriptsDisabled` | A tenant administrator has turned off Graph API access to transcripts. No retry succeeds until access is re-enabled. | The `transcriptContentUrl` returned by this function points at the transcript `/content` endpoint, which is additionally subject to the tenant's speaker-attribution setting. For that error and an example error payload, see [Get callTranscript](../api/calltranscript-get.md#error-responses). diff --git a/concepts/includes/known-issues/teamwork-communications.md b/concepts/includes/known-issues/teamwork-communications.md index 4196069794f..d698a0f9f8f 100644 --- a/concepts/includes/known-issues/teamwork-communications.md +++ b/concepts/includes/known-issues/teamwork-communications.md @@ -114,6 +114,21 @@ When you call the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) Do not pass `$top` query parameter until the issue is fixed. +### APIs that export online meeting artifacts may return duplicate items during service update + + + +During a planned service update that is expected to be completed by August 31, 2026, paginated requests to the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) or [getAllTranscripts](/graph/api/onlinemeeting-getalltranscripts) APIs may experience an automatic pagination token reset. A request can return a `200 OK` response with an empty collection and an `@odata.nextLink`. Pagination then restarts and can return recording or transcript items that were returned previously. + +#### Workaround + +Continue following `@odata.nextLink` even when the collection is empty. De-duplicate subsequent items by tracking the **id** property of each recording or transcript. + +When using delta queries with these methods, follow the returned delta link without appending or reapplying filters. The token retains the filter from the initial request. Supplying a filter with the token returns a `400 Bad Request` response with `DeltaFilterNotAllowed` as the `innerError.code` value. + ### List team members API fails with 401 errors in newly created tenants -Limits are expressed as requests per second (rps). - -| Teams request type | Limit per app per tenant | Limit per app across all tenants | Limit per app per tenant per resource(chat/channel)| -|------------------------------------------------------|---------------------------------|------------|---| -| GET [team](/graph/api/team-get) | 30 rps | 600 rps | -| GET [channel](/graph/api/channel-get) | 30 rps | 600 rps | 1rps | -| GET tab for [channel](/graph/api/channel-list-tabs), [chat](/graph/api/chat-get-tabs)| 30 rps | 600 rps | 1rps | -| GET installedApps for [user](/graph/api/userteamwork-get-installedapps), [team](/graph/api/team-get-installedapps) | 30 rps | 600 rps | -| GET installedApps for [chat](/graph/api/chat-get-installedapps) | 30 rps | 600 rps | 1rps | -| GET [appCatalogs](/graph/api/appcatalogs-list-teamsapps) | 30 rps | 600 rps | -| POST [channel](/graph/api/channel-post) | 30 rps | 300 rps | 1rps | -| POST tab for [channel](/graph/api/channel-post-tabs) or [chat](/graph/api/chat-post-tabs)| 30 rps | 300 rps | 1rps | -| POST installedApps for [chat](/graph/api/chat-post-installedapps), [user](/graph/api/userteamwork-post-installedapps), [team](/graph/api/team-post-installedapps) | 30 rps | 300 rps | -| POST [appCatalogs](/graph/api/teamsapp-publish) | 30 rps | 300 rps | -| PATCH [team](/graph/api/team-update), [tab](/graph/api/channel-patch-tabs)| 30 rps | 300 rps | -| PATCH [channel](/graph/api/channel-patch)| 30 rps | 300 rps | 1rps | -| DELETE [channel](/graph/api/channel-delete) | 15 rps | 150 rps | 1rps | -| DELETE tab for [chat](/graph/api/chat-delete-tabs), [channel](/graph/api/channel-delete-tabs) | 15 rps | 150 rps | 1rps | -| DELETE installedApps for [chat](/graph/api/chat-delete-installedapps), [user](/graph/api/userteamwork-delete-installedapps), [team](/graph/api/team-delete-installedapps) | 15 rps | 150 rps | -| DELETE [appCatalogs](/graph/api/teamsapp-delete) | 15 rps | 150 rps | -| GET /teams/```{team-id}```, [joinedTeams](/graph/api/user-list-joinedteams) | 30 rps | 300 rps | -| POST /[teams](/graph/api/team-post) | 10 rps | 100 rps | -| PUT /groups/```{team-id}```/[team](/graph/api/team-put-teams)| Six rps | 150 rps | -| POST /```{team-id}```/ [clone](/graph/api/team-clone) | Six rps | 150 rps | -| GET [channel message](/graph/api/chatmessage-get) | 20 rps | 200 rps | 1rps | -| GET 1:1/[group chat message](/graph/api/chat-get#example-3-get-a-chat-and-all-its-members) | 20 rps | 200 rps | 1rps | -| POST [channel message](/graph/api/channel-post-messages) | 50 rps | 500 rps | 1rps | -| POST [chat member](/graph/api/chat-post-members) | 30 rps | 300 rps | 4rpm | -| Delete [chat member](/graph/api/chat-delete-members) | 30 rps | 300 rps | 4rpm | -| POST 1:1/[group chat message](/graph/api/chat-post#example-2-create-a-group-chat) | 20 rps | 200 rps | 1rps | -| GET /teams/```{team-id}```/[schedule](/graph/api/schedule-get) and all APIs under this path | 30 rps | 600 rps | -| POST /teams/```{team-id}```/[schedule](/graph/api/schedule-share) and all APIs under this path | 30 rps | 300 rps | -|PUT /teams/```{team-id}```/[schedule](/graph//api/team-put-schedule) and all APIs under this path | 30 rps | 300 rps | -| POST /teams/```{team-id}```/[sendActivityNotification](/graph/api/team-sendactivitynotification) | Five rps | 50 rps | -| POST /chats/```{chat-id}```/[sendActivityNotification](/graph/api/chat-sendactivitynotification) | Five rps | 50 rps | 1rps | -| POST /users/```{user-id}```/teamwork/[sendActivityNotification](/graph/api/userteamwork-sendactivitynotification) | Five rps | 50 rps | -| POST /teamwork/[sendActivityNotificationToRecipients](/graph/api/teamwork-sendactivitynotificationtorecipients) | Two rps | 20 rps | -| GET /teams/```{team-id}```/[members](/graph/api/team-get-members) | 60 rps | 1200 rps | -| POST /teams/```{team-id}```/[members](/graph/api/team-post-members) | 30 rps | 300 rps | 4rpm| -| GET /teams/```{team-id}```/[channels](/graph/api/channel-get) | 60 rps | 1200 rps | 1rps | -| GET /teams/```{team-id}```/channels/```{channel-id}```/[members](/graph/api/channel-get-members) | 60 rps | 1200 rps | 1rps | -| Get all channel messages for a team
GET teams/```{team-id}```/channels/[getAllMessages](/graph/api/channel-getallmessages)
GET teams/```{team-id}```/channels/allMessages | 200rps | 1000rps | -| Get all chat messages for a user
GET users/```{user-id}```/chats/[getAllMessages](/graph/api/chats-getallmessages)
GET users/```{user-id}```/chats/allMessages | 200rps | 1000rps | -| GET /teams/```{team-id}```/channels/[getAllRetainedMessages](/graph/api/channel-getallretainedmessages) | 200rps | 1000rps | -| GET /users/```{user-id}```/chats/[getAllRetainedMessages](/graph/api/chat-getallretainedmessages) | 200rps | 1000rps | -| GET /copilot/users/```{user-id}```/interactionHistory/[getAllEnterpriseInteractions](/microsoft-365-copilot/extensibility/api-reference/aiinteractionhistory-getallenterpriseinteractions) | 30rps | 1500rps | -| All section management APIs under /users/```{user-id}```/teamwork/[sections](/graph/api/resources/teamworksection?view=graph-rest-beta&preserve-view=true) | Five rps | N/A | -| Other GET API calls for Microsoft Teams | 30 rps | 1500 rps | 1rps | -| Other API calls for Microsoft Teams | 30 rps | 300 rps | 1rps | - -A maximum of four requests per second per app can be issued on a given team. - -A maximum of one request per second per app per tenant can be issued on a given [channel](/graph/api/resources/channel) or [chat](/graph/api/resources/chat). - -A maximum of one request per second per user can be issued when doing POST message in a given chat or channel (This throttling limit doesn't apply to [migration](/microsoftteams/platform/graph-api/import-messages/import-external-messages-to-teams)). - -A maximum of five requests per second per user can be issued when doing [List chats](/graph/api/chat-list) or [Get chat](/graph/api/chat-get) or [chat:removeAllAccessForUser](/graph/api/Chat-removeAllAccessForUser) + +Microsoft Teams applies throttling limits across four independent dimensions. A request is throttled when it exceeds **any** limit that applies to it, so always design for the lowest limit that your scenario hits. + +| Dimension | What it counts | When it typically applies | +|--|--|--| +| **Per app** | All requests from one app (client ID) summed across every tenant. | Multitenant apps that serve many customers. | +| **Per app per tenant** | Requests from one app within a single tenant. | The most commonly reached limit. | +| **Per resource** | Requests against a single team, channel, or chat. | Apps that concentrate traffic on one conversation. | +| **Per user** | Requests made on behalf of a single user. | Delegated (user) permission scenarios. | + +Limits are expressed as requests per second (rps) unless stated otherwise. + +> Each limit is evaluated over a short burst window. A sustained limit of approximately 83 percent of the listed value is also evaluated over a longer window, so a workload that runs continuously at the listed rate can still be throttled. Size your steady-state traffic below the listed limit and use exponential backoff. + +A dash (`-`) means that no dedicated limit is defined for that dimension. The request is still subject to the [default limits](#default-limits) and to any other limit in the same row. + +### Teams + +| Request | Per app | Per app per tenant | Per resource | Per user | +|--|--|--|--|--| +| GET /teams/`{team-id}` | 1500 rps | 30 rps | 4 rps per team | - | +| GET [/me/joinedTeams or /users/`{user-id}`/joinedTeams](/graph/api/user-list-joinedteams) | 300 rps | 30 rps | - | - | +| POST [/teams](/graph/api/team-post) | 100 rps | 10 rps | - | - | +| PUT /groups/`{team-id}`/[team](/graph/api/team-put-teams) | 150 rps | 6 rps | - | - | +| PATCH [/teams/`{team-id}`](/graph/api/team-update) | 300 rps | 30 rps | 4 rps per team | - | +| POST /teams/`{team-id}`/[clone](/graph/api/team-clone) | 150 rps | 6 rps | - | - | +| POST /teams/`{team-id}`/[completeMigration](/graph/api/team-completemigration) | 100 rps | 10 rps | - | - | + +### Channels + +| Request | Per app | Per app per tenant | Per resource | Per user | +|--|--|--|--|--| +| GET /teams/`{team-id}`/[channels](/graph/api/channel-list) | 1200 rps | 60 rps | 4 rps per team | - | +| GET /teams/`{team-id}`/channels/[`{channel-id}`](/graph/api/channel-get) | 600 rps | 30 rps | 1 rps per channel | - | +| GET /teams/`{team-id}`/channels/`{channel-id}`/[members](/graph/api/channel-list-members) | 1200 rps | 60 rps | 1 rps per channel | - | +| POST /teams/`{team-id}`/[channels](/graph/api/channel-post) | 100 rps | 10 rps | 4 rps per team | - | +| PATCH /teams/`{team-id}`/channels/[`{channel-id}`](/graph/api/channel-patch) | 300 rps | 30 rps | 1 rps per channel | - | +| DELETE /teams/`{team-id}`/channels/[`{channel-id}`](/graph/api/channel-delete) | 150 rps | 15 rps | 1 rps per channel | - | +| POST /teams/`{team-id}`/channels/`{channel-id}`/[completeMigration](/graph/api/channel-completemigration) | 100 rps | 10 rps | - | - | + +### Channel messages + +| Request | Per app | Per app per tenant | Per resource | Per user | +|--|--|--|--|--| +| GET /teams/`{team-id}`/channels/`{channel-id}`/[messages](/graph/api/channel-list-messages) | 200 rps | 20 rps | 1 rps per channel | - | +| POST /teams/`{team-id}`/channels/`{channel-id}`/[messages](/graph/api/channel-post-messages) | 500 rps | 50 rps | 1 rps per channel | 1 rps | +| POST /teams/`{team-id}`/channels/`{channel-id}`/messages/`{message-id}`/[replies](/graph/api/chatmessage-post-replies) | 500 rps | 50 rps | 1 rps per channel | 1 rps | + +The POST limits in the preceding table are shared by regular message sends and by [message import](/microsoftteams/platform/graph-api/import-messages/import-external-messages-to-teams). The per-user limit doesn't apply to import. + +### Chats + +| Request | Per app | Per app per tenant | Per resource | Per user | +|--|--|--|--|--| +| GET [/chats](/graph/api/chat-list), /me/chats, or /users/`{user-id}`/chats | 200 rps | 20 rps | - | 1 rps | +| GET [/chats/`{chat-id}`](/graph/api/chat-get) | 2000 rps | 200 rps | 1 rps per chat | 5 rps | +| POST [/chats](/graph/api/chat-post) | 200 rps | 20 rps | - | - | +| PATCH [/chats/`{chat-id}`](/graph/api/chat-patch) | 300 rps | 30 rps | 1 rps per chat | - | +| DELETE [/chats/`{chat-id}`](/graph/api/chat-delete) | 10 rps | 1 rps | 1 rps per chat | - | +| POST /chats/`{chat-id}`/[removeAllAccessForUser](/graph/api/chat-removeallaccessforuser) | 300 rps | 30 rps | 1 rps per chat | 1 rps | + +### Chat messages + +| Request | Per app | Per app per tenant | Per resource | Per user | +|--|--|--|--|--| +| GET /chats/`{chat-id}`/[messages](/graph/api/chat-list-messages) | 200 rps | 20 rps | 1 rps per chat | - | +| POST /chats/`{chat-id}`/[messages](/graph/api/chat-post-messages) | 200 rps | 20 rps | 1 rps per chat | 1 rps | +| PATCH /chats/`{chat-id}`/[messages/`{message-id}`](/graph/api/chatmessage-update) | 300 rps | 30 rps | 1 rps per chat | - | +| POST /chats/`{chat-id}`/messages/`{message-id}`/[softDelete](/graph/api/chatmessage-softdelete) or [undoSoftDelete](/graph/api/chatmessage-undosoftdelete) | 300 rps | 30 rps | 1 rps per chat | - | +| GET /chats/`{chat-id}`/messages/`{message-id}`/[hostedContents](/graph/api/chatmessagehostedcontent-get) | 500 rps | 50 rps | 1 rps per chat | - | +| GET /chats/`{chat-id}`/messages/`{message-id}`/hostedContents/`{id}`/$value | 600 rps | 60 rps | 1 rps per chat | - | + +### Members + +| Request | Per app | Per app per tenant | Per resource | Per user | +|--|--|--|--|--| +| GET /teams/`{team-id}`/[members](/graph/api/team-list-members) | 1200 rps | 60 rps | 4 rps per team | - | +| POST /teams/`{team-id}`/[members](/graph/api/team-post-members) | 300 rps | 30 rps | 4 requests per minute per team | - | +| POST /teams/`{team-id}`/members/[add](/graph/api/conversationmember-add) | 100 rps | 10 rps | 4 requests per minute per team | - | +| POST /chats/`{chat-id}`/[members](/graph/api/chat-post-members) | 300 rps | 30 rps | 4 requests per minute per chat | - | +| DELETE /chats/`{chat-id}`/[members/`{membership-id}`](/graph/api/chat-delete-members) | 300 rps | 30 rps | 4 requests per minute per chat | - | + +### Apps, tabs, and permission grants + +| Request | Per app | Per app per tenant | Per resource | Per user | +|--|--|--|--|--| +| GET installedApps for [team](/graph/api/team-list-installedapps), [chat](/graph/api/chat-list-installedapps), or [user](/graph/api/userteamwork-list-installedapps) | 1500 rps | 30 rps | 1 rps per chat or channel | - | +| GET permissionGrants for [team](/graph/api/team-list-permissiongrants) or [chat](/graph/api/chat-list-permissiongrants) | 1500 rps | 30 rps | 1 rps per chat or channel | - | +| POST installedApps for [team](/graph/api/team-post-installedapps), [chat](/graph/api/chat-post-installedapps), or [user](/graph/api/userteamwork-post-installedapps) | 300 rps | 30 rps | 1 rps per chat or channel | - | +| DELETE installedApps for [team](/graph/api/team-delete-installedapps), [chat](/graph/api/chat-delete-installedapps), or [user](/graph/api/userteamwork-delete-installedapps) | 150 rps | 15 rps | 1 rps per chat or channel | - | +| GET tabs for [channel](/graph/api/channel-list-tabs) or [chat](/graph/api/chat-list-tabs) | 600 rps | 30 rps | 1 rps per chat or channel | - | +| POST tabs for [channel](/graph/api/channel-post-tabs) or [chat](/graph/api/chat-post-tabs) | 300 rps | 30 rps | 1 rps per chat or channel | - | +| PATCH [tab](/graph/api/channel-patch-tabs) | 300 rps | 30 rps | 1 rps per chat or channel | - | +| DELETE tabs for [channel](/graph/api/channel-delete-tabs) or [chat](/graph/api/chat-delete-tabs) | 150 rps | 15 rps | 1 rps per chat or channel | - | +| GET [/appCatalogs/teamsApps](/graph/api/appcatalogs-list-teamsapps) | 1500 rps | 30 rps | - | - | +| POST [/appCatalogs/teamsApps](/graph/api/teamsapp-publish) | 300 rps | 30 rps | - | - | +| DELETE [/appCatalogs/teamsApps/`{app-id}`](/graph/api/teamsapp-delete) | 150 rps | 15 rps | - | - | + +### Activity feed notifications + +| Request | Per app | Per app per tenant | Per resource | Per user | +|--|--|--|--|--| +| POST /teams/`{team-id}`/[sendActivityNotification](/graph/api/team-sendactivitynotification) | 50 rps | 5 rps | 4 rps per team | - | +| POST /chats/`{chat-id}`/[sendActivityNotification](/graph/api/chat-sendactivitynotification) | 50 rps | 5 rps | 1 rps per chat | - | +| POST /users/`{user-id}`/teamwork/[sendActivityNotification](/graph/api/userteamwork-sendactivitynotification) | 50 rps | 5 rps | - | - | +| POST /teamwork/[sendActivityNotificationToRecipients](/graph/api/teamwork-sendactivitynotificationtorecipients) | 20 rps | 2 rps | - | - | + +### Bulk message retrieval + +These APIs are designed for export and compliance scenarios and have their own higher limits. + +| Request | Per app | Per app per tenant | Per resource | Per user | +|--|--|--|--|--| +| GET /teams/`{team-id}`/channels/[getAllMessages](/graph/api/channel-getallmessages) or /channels/allMessages | 1000 rps | 200 rps | - | - | +| GET /users/`{user-id}`/chats/[getAllMessages](/graph/api/chats-getallmessages) or /chats/allMessages | 1000 rps | 200 rps | - | - | +| GET /teams/`{team-id}`/channels/[getAllRetainedMessages](/graph/api/channel-getallretainedmessages) | 1000 rps | 200 rps | - | - | +| GET /users/`{user-id}`/chats/[getAllRetainedMessages](/graph/api/chat-getallretainedmessages) | 1000 rps | 200 rps | - | - | +| GET /copilot/users/`{user-id}`/interactionHistory/[getAllEnterpriseInteractions](/microsoft-365-copilot/extensibility/api-reference/aiinteractionhistory-getallenterpriseinteractions) | 1500 rps | 30 rps | - | - | + +### Shifts + +| Request | Per app | Per app per tenant | Per resource | Per user | +|--|--|--|--|--| +| GET /teams/`{team-id}`/[schedule](/graph/api/schedule-get) and all APIs under this path | 600 rps | 30 rps | - | - | +| POST /teams/`{team-id}`/[schedule](/graph/api/schedule-share) and all APIs under this path | 300 rps | 30 rps | - | - | +| PUT /teams/`{team-id}`/[schedule](/graph/api/team-put-schedule) and all APIs under this path | 300 rps | 30 rps | - | - | + +### Sections + +| Request | Per app | Per app per tenant | Per resource | Per user | +|--|--|--|--|--| +| All section management APIs under /users/`{user-id}`/teamwork/[sections](/graph/api/resources/teamworksection?view=graph-rest-beta&preserve-view=true) | - | 5 rps | - | - | + +All section operations, including sections, section items, reorder actions, and delta queries, share a single limit. + +### Default limits + +Any Microsoft Teams request that isn't listed in the preceding tables uses these limits. + +| Request type | Per app | Per app per tenant | Per resource | Per user | +|--|--|--|--|--| +| GET | 1500 rps | 30 rps | 1 rps per chat or channel | 1 rps | +| POST, PUT, and PATCH | 300 rps | 30 rps | 1 rps per chat or channel | 1 rps | +| DELETE | 150 rps | 15 rps | 1 rps per chat or channel | 1 rps | + +### Related resources See also [Microsoft Teams limits](/graph/api/resources/teams-api-overview#microsoft-teams-limits) and [polling requirements](/graph/api/resources/teams-api-overview#polling-requirements). @@ -71,5 +160,3 @@ The preceding limits apply to the following resources: | | | |--|--| |
  • [aadUserConversationMember](/graph/api/resources/aadUserConversationMember)
  • [changeTrackedEntity](/graph/api/resources/changeTrackedEntity)
  • [channel](/graph/api/resources/channel)
  • [chatMessage](/graph/api/resources/chatMessage)
  • [chatMessageHostedContent](/graph/api/resources/chatMessageHostedContent)
  • [conversationMember](/graph/api/resources/conversationMember)
  • [offerShiftRequest](/graph/api/resources/offerShiftRequest)
  • [openShift](/graph/api/resources/openShift)
  • [openShiftChangeRequest](/graph/api/resources/openShiftChangeRequest)
  • [schedule](/graph/api/resources/schedule)
  • [schedulingGroup](/graph/api/resources/schedulingGroup)
  • [shift](/graph/api/resources/shift)
  • [shiftPreferences](/graph/api/resources/shiftPreferences)
|
  • [swapShiftsChangeRequest](/graph/api/resources/swapShiftsChangeRequest)
  • [team](/graph/api/resources/team)
  • [teamsApp](/graph/api/resources/teamsApp)
  • [teamsAppDefinition](/graph/api/resources/teamsAppDefinition)
  • [teamsAppInstallation](/graph/api/resources/teamsAppInstallation)
  • [teamsAsyncOperation](/graph/api/resources/teamsAsyncOperation)
  • [teamsTab](/graph/api/resources/teamsTab)
  • [teamsTemplate](/graph/api/resources/teamsTemplate)
  • [teamwork](/graph/api/resources/teamwork)
  • [teamworkSection](/graph/api/resources/teamworksection?view=graph-rest-beta&preserve-view=true)
  • [teamworkSectionItem](/graph/api/resources/teamworksectionitem?view=graph-rest-beta&preserve-view=true)
  • [timeOff](/graph/api/resources/timeOff)
  • [timeOffReason](/graph/api/resources/timeOffReason)
  • [timeOffRequest](/graph/api/resources/timeOffRequest)
  • [userSettings](/graph/api/resources/userSettings)
  • [workforceIntegration](/graph/api/resources/workforceIntegration)
| - - From acd138b053eb6d0b71d8c76984be95786873d5a2 Mon Sep 17 00:00:00 2001 From: Nickii Miaro Date: Fri, 14 Aug 2026 18:43:57 +0300 Subject: [PATCH 047/189] Recommend search endpoint instead of people endpoint in the user-list-people.md file. (#29439) * Recommend search endpoint instead of people endpoint in the user-list-people.md file. * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- api-reference/v1.0/api/user-list-people.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/api-reference/v1.0/api/user-list-people.md b/api-reference/v1.0/api/user-list-people.md index 887c45e1f93..909db46646f 100644 --- a/api-reference/v1.0/api/user-list-people.md +++ b/api-reference/v1.0/api/user-list-people.md @@ -16,6 +16,10 @@ Retrieve a collection of [person](../resources/person.md) objects ordered by the You can get this information via the People API. For examples, see the [Examples](#examples) section and the article [Use the People API to get information about the people most relevant to you](/graph/people-insights-overview). +> [!NOTE] +> For new development, we recommend using the Microsoft Search API (`POST /search/query` with `entityTypes: ["person"]`) instead of the People API (`GET /me/people` and `GET /users/{id | userPrincipalName}/people`). The People API is in maintenance mode. +> For more information, see [searchEntity: query](../api/search-query.md) and [Use the Microsoft Search API to search people](/graph/search-concept-person). + [!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions From 5d294aba8f3fde94a7ae676134078c7cc232d850 Mon Sep 17 00:00:00 2001 From: mehakagarwal Date: Fri, 14 Aug 2026 08:44:46 -0700 Subject: [PATCH 048/189] Update chatMessage examples to reflect messageBodyContentType (#29430) Surface the new chatMessageBody messageBodyContentType property in examples (added in PR #29271). Response bodies include both the deprecated contentType (still returned by the service) and messageBodyContentType; request bodies use only the forward-looking messageBodyContentType. Co-authored-by: Mehak Agarwal --- .../beta/api/channel-list-messages.md | 10 ++++ api-reference/beta/api/chat-list-messages.md | 4 ++ api-reference/beta/api/chatmessage-get.md | 8 +++ .../beta/api/chatmessage-list-replies.md | 3 ++ api-reference/beta/api/chatmessage-post.md | 49 +++++++++++++------ 5 files changed, 58 insertions(+), 16 deletions(-) diff --git a/api-reference/beta/api/channel-list-messages.md b/api-reference/beta/api/channel-list-messages.md index b977194fa06..5d5a37cd2f6 100644 --- a/api-reference/beta/api/channel-list-messages.md +++ b/api-reference/beta/api/channel-list-messages.md @@ -163,6 +163,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "Hello World Jane Smith" }, "channelIdentity": { @@ -218,6 +219,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "
 
" }, "channelIdentity": { @@ -249,6 +251,7 @@ Content-type: application/json "from": null, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "channelIdentity": { @@ -382,6 +385,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "Hello World Jane Smith" }, "channelIdentity": { @@ -436,6 +440,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "
 
" }, "channelIdentity": { @@ -466,6 +471,7 @@ Content-type: application/json "from": null, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "channelIdentity": { @@ -590,6 +596,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "
 
" }, "channelIdentity": { @@ -631,6 +638,7 @@ Content-type: application/json }, "body": { "contentType": "text", + "messageBodyContentType": "text", "content": "Reply3" }, "channelIdentity": { @@ -670,6 +678,7 @@ Content-type: application/json }, "body": { "contentType": "text", + "messageBodyContentType": "text", "content": "Reply2" }, "channelIdentity": { @@ -709,6 +718,7 @@ Content-type: application/json }, "body": { "contentType": "text", + "messageBodyContentType": "text", "content": "Reply1" }, "channelIdentity": { diff --git a/api-reference/beta/api/chat-list-messages.md b/api-reference/beta/api/chat-list-messages.md index 3733ab8b720..ca423b95fa2 100644 --- a/api-reference/beta/api/chat-list-messages.md +++ b/api-reference/beta/api/chat-list-messages.md @@ -167,6 +167,7 @@ Content-type: application/json }, "body": { "contentType": "text", + "messageBodyContentType": "text", "content": "Hello world" }, "attachments": [], @@ -204,6 +205,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "
" }, "attachments": [], @@ -313,6 +315,7 @@ Content-type: application/json }, "body": { "contentType": "text", + "messageBodyContentType": "text", "content": "Hello world" }, "attachments": [], @@ -350,6 +353,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "
" }, "attachments": [], diff --git a/api-reference/beta/api/chatmessage-get.md b/api-reference/beta/api/chatmessage-get.md index ec6de164335..ebb06c88aaa 100644 --- a/api-reference/beta/api/chatmessage-get.md +++ b/api-reference/beta/api/chatmessage-get.md @@ -168,6 +168,7 @@ Content-type: application/json }, "body": { "contentType": "text", + "messageBodyContentType": "text", "content": "test" }, "attachments": [], @@ -266,6 +267,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "
" }, "channelIdentity": { @@ -370,6 +372,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "
Test
" }, "channelIdentity": { @@ -478,6 +481,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "

I am looking 

" }, "attachments": [], @@ -615,6 +619,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "

Hi Everyone

" }, "attachments": [], @@ -735,6 +740,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "attachments": [ @@ -851,6 +857,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "attachments": [ @@ -974,6 +981,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "

 

\n\n{
   \"body\": {
   \"contentType\": \"html\",
   \"content\": \"<codeblock><code>Hello world</code></codeblock>\"
   }
}
\n

 

" }, "attachments": [], diff --git a/api-reference/beta/api/chatmessage-list-replies.md b/api-reference/beta/api/chatmessage-list-replies.md index 8894b74e345..32fc546ef59 100644 --- a/api-reference/beta/api/chatmessage-list-replies.md +++ b/api-reference/beta/api/chatmessage-list-replies.md @@ -146,6 +146,7 @@ Content-type: application/json }, "body": { "contentType": "text", + "messageBodyContentType": "text", "content": "Reply3" }, "channelIdentity": { @@ -188,6 +189,7 @@ Content-type: application/json }, "body": { "contentType": "text", + "messageBodyContentType": "text", "content": "Reply2" }, "channelIdentity": { @@ -230,6 +232,7 @@ Content-type: application/json }, "body": { "contentType": "text", + "messageBodyContentType": "text", "content": "Reply1" }, "channelIdentity": { diff --git a/api-reference/beta/api/chatmessage-post.md b/api-reference/beta/api/chatmessage-post.md index 8c4ae8f952d..86a5b679372 100644 --- a/api-reference/beta/api/chatmessage-post.md +++ b/api-reference/beta/api/chatmessage-post.md @@ -178,6 +178,7 @@ Content-type: application/json }, "body": { "contentType": "text", + "messageBodyContentType": "text", "content": "Hello World" }, "channelIdentity": { @@ -210,7 +211,7 @@ Content-type: application/json { "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "Hello World Jane Smith" }, "mentions": [ @@ -302,6 +303,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "Hello World Jane Smith" }, "channelIdentity": { @@ -353,7 +355,7 @@ Content-type: application/json { "subject": null, "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "attachments": [ @@ -442,6 +444,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "channelIdentity": { @@ -486,7 +489,7 @@ Content-type: application/json { "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "Here's the latest budget. " }, "attachments": [ @@ -573,6 +576,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "Here's the latest budget. " }, "channelIdentity": { @@ -617,7 +621,7 @@ Content-type: application/json { "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "Testing with file share link. " }, "attachments": [ @@ -702,6 +706,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "Testing with file share link. " }, "channelIdentity": { @@ -746,7 +751,7 @@ Content-type: application/json { "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "hostedContents":[ @@ -834,6 +839,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "attachments": [], @@ -868,7 +874,7 @@ Content-type: application/json { "subject": null, "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "attachments": [{ @@ -965,6 +971,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "channelIdentity": { @@ -1008,7 +1015,7 @@ Content-type: application/json { "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "General Hello there!" }, "mentions": [ @@ -1101,6 +1108,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "General Hello there!" }, "channelIdentity": { @@ -1150,7 +1158,7 @@ Content-type: application/json { "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "GraphTesting Hello team" }, "mentions": [ @@ -1245,6 +1253,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "GraphTesting Hello team" }, "channelIdentity": { @@ -1292,7 +1301,7 @@ Content-type: application/json { "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "TestTag Testing Tags" }, "mentions": [ @@ -1384,6 +1393,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "TestTag Testing Tags" }, "channelIdentity": { @@ -1437,7 +1447,7 @@ Content-type: application/json { "subject": null, "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "attachments": [ @@ -1528,6 +1538,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "channelIdentity": { @@ -1574,7 +1585,7 @@ Content-type: application/json { "subject": "Announcement Subheading", "body": { - "contentType": "text", + "messageBodyContentType": "text", "content": "Announcement text" }, "attachments": [ @@ -1675,6 +1686,7 @@ Content-type: application/json }, "body": { "contentType": "text", + "messageBodyContentType": "text", "content": "Announcement text" }, "channelIdentity": { @@ -1717,7 +1729,7 @@ Content-type: application/json { "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "" } } @@ -1798,6 +1810,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "attachments": [], @@ -1836,7 +1849,7 @@ Content-type: application/json { "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "Hello world" } } @@ -1920,6 +1933,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "\nHello world" }, "attachments": [], @@ -1949,7 +1963,7 @@ Content-Type: application/json { "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "" }, "attachments": [ @@ -2039,6 +2053,7 @@ Content-Type: application/json }, "body": { "contentType": "text", + "messageBodyContentType": "text", "content": "" }, "channelIdentity": { @@ -2095,7 +2110,7 @@ POST https://graph.microsoft.com/beta/chats/19:4b6bed8d24574f6a9e436813cb2617d8@ } }, "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "Hello World" } } @@ -2175,6 +2190,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "Hello World" }, "attachments": [], @@ -2217,7 +2233,7 @@ POST https://graph.microsoft.com/beta/teams/57fb72d0-d811-46f4-8947-305e6072eaa5 } }, "body": { - "contentType": "html", + "messageBodyContentType": "html", "content": "Hello World" } } @@ -2296,6 +2312,7 @@ Content-type: application/json }, "body": { "contentType": "html", + "messageBodyContentType": "html", "content": "Hello World" }, "channelIdentity": { From fedb35e1446ba7a83a5e81dd78531d202ebf0329 Mon Sep 17 00:00:00 2001 From: lieric-msft <140449234+lieric-msft@users.noreply.github.com> Date: Fri, 14 Aug 2026 12:05:08 -0400 Subject: [PATCH 049/189] docs: expose managerApplications on agentIdentity and agentIdentityBlueprintPrincipal (beta) (#29365) * docs: add managerApplications property to agentIdentity Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: add managerApplications property to agentIdentityBlueprintPrincipal Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: add changelog entry for managerApplications on agentIdentity and agentIdentityBlueprintPrincipal Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: add What's New entry for managerApplications property Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: add managerApplications to JSON representation on agentIdentity Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: add managerApplications to JSON representation on agentIdentityBlueprintPrincipal Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: fix duplicate changelog GUIDs and Learn URL locale/casing Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: merge duplicate Directory management heading in What's New Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: clarify cross-tenant managerApplications update requirement on agentIdentity Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: clarify cross-tenant managerApplications update requirement on agentIdentityBlueprintPrincipal Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- api-reference/beta/resources/agentidentity.md | 4 +++ .../agentidentityblueprintprincipal.md | 4 +++ changelog/Microsoft.DirectoryServices.json | 28 ++++++++++++++++++- concepts/whats-new-overview.md | 4 ++- 4 files changed, 38 insertions(+), 2 deletions(-) diff --git a/api-reference/beta/resources/agentidentity.md b/api-reference/beta/resources/agentidentity.md index 0ea45366cf7..ec39a528c22 100644 --- a/api-reference/beta/resources/agentidentity.md +++ b/api-reference/beta/resources/agentidentity.md @@ -74,6 +74,7 @@ This resource is an open type that allows additional properties beyond those doc |disabledByMicrosoftStatus|String|Specifies whether Microsoft has disabled the registered Agent Identity Blueprint. The possible values are: `null` (default value), `NotDisabled`, and `DisabledDueToViolationOfServicesAgreement` (reasons may include suspicious, abusive, or malicious activity, or a violation of the Microsoft Services Agreement). Inherited from [servicePrincipal](../resources/serviceprincipal.md).| |displayName|String|The display name for the agent identity. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| |id|String|The unique identifier for the agent identity. Inherited from [directoryObject](../resources/directoryobject.md). Key. Not nullable. Read-only. Inherited from [entity](../resources/entity.md).| +|managerApplications|Guid collection|The collection of application IDs designated as managers of this agent identity's backing [agentIdentityBlueprint](../resources/agentidentityblueprint.md). Read-only; the value is server-managed and reflects the **managerApplications** of the backing agentIdentityBlueprint. To change the managers, an owner or administrator must update the **managerApplications** property on the backing agentIdentityBlueprint **in the tenant where it's registered**. For multitenant agent identity blueprints, admins in a tenant where the blueprint is only consumed can't make this change — they must ask an owner or administrator in the blueprint's home tenant. Not nullable. Returned only on `$select`.| |servicePrincipalType|String|Set to __ServiceIdentity__ for all agent identities. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| |tags|String collection|Custom strings that can be used to categorize and identify the agent identity. Not nullable. The value is the union of strings set here and on the associated Agent Identity Blueprint entity's **tags** property. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| @@ -112,6 +113,9 @@ The following JSON representation shows the resource type. Only a subset of all "createdDateTime": "String (timestamp)", "disabledByMicrosoftStatus": "String", "displayName": "String", + "managerApplications": [ + "Guid" + ], "servicePrincipalType": "String", "tags": [ "String" diff --git a/api-reference/beta/resources/agentidentityblueprintprincipal.md b/api-reference/beta/resources/agentidentityblueprintprincipal.md index ff024c6c971..0dfbe115003 100644 --- a/api-reference/beta/resources/agentidentityblueprintprincipal.md +++ b/api-reference/beta/resources/agentidentityblueprintprincipal.md @@ -75,6 +75,7 @@ This resource is an open type that allows additional properties beyond those doc |displayName|String|The display name for the agent identity blueprint principal. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| |id|String|The unique identifier for the agent identity blueprint principal. Inherited from [entity](../resources/entity.md). Key. Not nullable. Read-only.| |info|[informationalUrl](../resources/informationalurl.md)|Basic profile information of the acquired application such as app's marketing, support, terms of service and privacy statement URLs. The terms of service and privacy statement are surfaced to users through the user consent experience. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| +|managerApplications|Guid collection|The collection of application IDs designated as managers of this agent identity blueprint principal's backing [agentIdentityBlueprint](../resources/agentidentityblueprint.md). Read-only; the value is server-managed and reflects the **managerApplications** of the backing agentIdentityBlueprint. To change the managers, an owner or administrator must update the **managerApplications** property on the backing agentIdentityBlueprint **in the tenant where it's registered**. For multitenant agent identity blueprints, admins in a tenant where the blueprint is only consumed can't make this change — they must ask an owner or administrator in the blueprint's home tenant. Not nullable. Returned only on `$select`.| |publishedPermissionScopes|[permissionScope](../resources/permissionscope.md) collection|The delegated permissions exposed by the application. For more information, see the **oauth2PermissionScopes** property on the agent identity blueprint entity's **api** property. Not nullable. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| |publisherName|String|The name of the Microsoft Entra tenant that published the application. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| |servicePrincipalNames|String collection|Read-only **identifierUris** used to identify the permissions exposed by this app within Microsoft Entra ID. Not nullable. **Property blocked on Agent Identity Blueprint Principal**. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| @@ -136,6 +137,9 @@ The following JSON representation shows the resource type. Only a subset of all "info": { "@odata.type": "microsoft.graph.informationalUrl" }, + "managerApplications": [ + "Guid" + ], "publishedPermissionScopes": [ { "@odata.type": "microsoft.graph.permissionScope" diff --git a/changelog/Microsoft.DirectoryServices.json b/changelog/Microsoft.DirectoryServices.json index 2f8237acdd5..9daf133d78a 100644 --- a/changelog/Microsoft.DirectoryServices.json +++ b/changelog/Microsoft.DirectoryServices.json @@ -1,5 +1,31 @@ -{ +{ "changelog": [ + { + "ChangeList": [ + { + "Id": "af422b2e-b42f-4f2d-84e4-68d9f2bab7a7", + "ApiChange": "Property", + "ChangedApiName": "managerApplications", + "ChangeType": "Addition", + "Description": "Added the **managerApplications** property to the [agentIdentity](https://learn.microsoft.com/graph/api/resources/agentidentity?view=graph-rest-beta) resource.", + "Target": "agentIdentity" + }, + { + "Id": "9f0ed767-3c0e-4eb6-a96f-23b56b913549", + "ApiChange": "Property", + "ChangedApiName": "managerApplications", + "ChangeType": "Addition", + "Description": "Added the **managerApplications** property to the [agentIdentityBlueprintPrincipal](https://learn.microsoft.com/graph/api/resources/agentidentityblueprintprincipal?view=graph-rest-beta) resource.", + "Target": "agentIdentityBlueprintPrincipal" + } + ], + "Id": "0170df4f-dc33-4fc7-bda6-d8a6663555db", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-14T15:19:22.275623Z", + "WorkloadArea": "Identity and access", + "SubArea": "Directory management" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 28a922158ec..b080078bacd 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -135,7 +135,9 @@ Added the `Group.ManageProtection.All` delegated permission as the least privile ### Identity and access | Directory management -Added the **sponsorOf** relationship to the [user](/graph/api/resources/user?view=graph-rest-beta&preserve-view=true) resource type to represent the directory objects that a user sponsors. +- Added the [remoteTenantGroup](/graph/api/resources/remotetenantgroup?view=graph-rest-beta&preserve-view=true) resource type and related methods to retrieve groups from remote Microsoft Entra tenants through the directory resource. +- Added the **sponsorOf** relationship to the [user](/graph/api/resources/user?view=graph-rest-beta&preserve-view=true) resource type to represent the directory objects that a user sponsors. +- Added the **managerApplications** property to the [agentIdentity](/graph/api/resources/agentidentity?view=graph-rest-beta&preserve-view=true) and [agentIdentityBlueprintPrincipal](/graph/api/resources/agentidentityblueprintprincipal?view=graph-rest-beta&preserve-view=true) resource types to represent the collection of applications designated as managers of the backing agent identity blueprint. ### Identity and access | Governance From ef1d67f8cce844cb61692d4f9baecc618dbf1627 Mon Sep 17 00:00:00 2001 From: Hiro7 <75809971+garchiro7@users.noreply.github.com> Date: Fri, 14 Aug 2026 10:23:33 -0600 Subject: [PATCH 050/189] presence notification clouds deployment (#29440) --- concepts/changenotifications-for-presence.md | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/concepts/changenotifications-for-presence.md b/concepts/changenotifications-for-presence.md index ad407ace5a7..ebb36bf8b1e 100644 --- a/concepts/changenotifications-for-presence.md +++ b/concepts/changenotifications-for-presence.md @@ -18,6 +18,12 @@ Use webhooks to subscribe to users' presence information and get notifications w > [!NOTE] > Effective June 30 2024, to get changes that occurred to an active meeting call, we recommend that you subscribe to [rich notifications](#rich-presence-notifications). +This API is available in the following [national cloud deployments](/graph/deployments). + +| Global service | US Government L4 | US Government L5 (DOD) | China operated by 21Vianet | +|--------------------|------------------|------------------------|----------------------------| +| :white_check_mark: | :x: | :x: | :x: | + ## Permissions | Permission type | Permissions (from least to most privileged) | Supported versions | From aba19bb106a8d257fee73b8042363f16cb310e89 Mon Sep 17 00:00:00 2001 From: tafra00 <167899045+tafra00@users.noreply.github.com> Date: Fri, 14 Aug 2026 19:15:49 -0400 Subject: [PATCH 051/189] Promote Entra Backup and Recovery APIs to v1.0 (#29026) * Promote Entra Recovery Services backup/recovery docs from beta to v1.0 * Revert agentuser v1 examples to published content * Update changelog for Microsoft Entra Recovery Services * fix syntax in changelog for Microsoft Entra Recovery Services * Fix malformed recoveryJobs sample links in Entra Recovery v1 docs * Fix missing organization enum value for Entra Recovery Services v1 docs * Remove invalid strongAuthentication resource links from changelog * Add missing doc stubs from schema PR 16183321 build artifacts * Revert "Add missing doc stubs from schema PR 16183321 build artifacts" This reverts commit ec7ee62a0d44bbde1d97226d6a3f0ba55c4ab074. * Fix Entra Recovery v1 resource docs structure and broken overview link * Add missing Entra Backup and Recovery resources to v1 TOC * Add 'organization' to entityTypeName options addressing Fix: Add organization to the possible-values list, and include it in the Prefer: include-unknown-enum-members note since it follows unknownFutureValue. * Align recoveryPreviewJob RBAC includes to write role in v1 and beta * Use lowercase snapshot resource type title and H1 * Change 'objectId' to 'id' in recovery job API * Fix bulleted list in backup recovery overview Removed duplicate lines in the overview section regarding job scoping criteria. * Add 'organization' to entityType values * Clarify id property description in snapshot.md * Remove stray whitespace in application get page * Revert whitespace-only edit in application get page * Add changelog entry for application resource Added a new entry for the application resource in the changelog. * Adding missing changelog entries * Remove changelog entries with unpublished resource links Co-authored-by: tafra00 <167899045+tafra00@users.noreply.github.com> * fixes * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Madhuri Bhavirisetty Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- ...vices-snapshot-post-recoverypreviewjobs.md | 2 +- ...ntrarecoveryservices-recovery-list-jobs.md | 116 +++++++ ...ecoveryservices-recovery-list-snapshots.md | 99 ++++++ .../entrarecoveryservices-recoveryjob-get.md | 99 ++++++ ...ryservices-recoveryjob-getfailedchanges.md | 197 +++++++++++ ...recoveryservices-recoveryjobbase-cancel.md | 80 +++++ ...recoveryservices-recoverypreviewjob-get.md | 97 ++++++ ...yservices-recoverypreviewjob-getchanges.md | 327 ++++++++++++++++++ .../api/entrarecoveryservices-snapshot-get.md | 88 +++++ ...veryservices-snapshot-list-recoveryjobs.md | 118 +++++++ ...vices-snapshot-list-recoverypreviewjobs.md | 102 ++++++ ...veryservices-snapshot-post-recoveryjobs.md | 169 +++++++++ ...vices-snapshot-post-recoverypreviewjobs.md | 169 +++++++++ ...services-recovery-list-jobs-permissions.md | 11 + ...ces-recovery-list-snapshots-permissions.md | 11 + ...eryservices-recoveryjob-get-permissions.md | 11 + ...ecoveryjob-getfailedchanges-permissions.md | 11 + ...ices-recoveryjobbase-cancel-permissions.md | 11 + ...ices-recoverypreviewjob-get-permissions.md | 11 + ...coverypreviewjob-getchanges-permissions.md | 11 + ...coveryservices-snapshot-get-permissions.md | 11 + ...-snapshot-list-recoveryjobs-permissions.md | 11 + ...ot-list-recoverypreviewjobs-permissions.md | 11 + ...-snapshot-post-recoveryjobs-permissions.md | 11 + ...ot-post-recoverypreviewjobs-permissions.md | 11 + .../rbac-entrarecoveryservices-apis-read.md | 9 + .../rbac-entrarecoveryservices-apis-write.md | 7 + ...coveryservices-backup-recovery-overview.md | 174 ++++++++++ .../entrarecoveryservices-entitytypeandids.md | 41 +++ .../entrarecoveryservices-recovery.md | 41 +++ ...coveryservices-recoverychangeobjectbase.md | 87 +++++ .../entrarecoveryservices-recoveryjob.md | 73 ++++ .../entrarecoveryservices-recoveryjobbase.md | 76 ++++ ...vices-recoveryjobentitynameandidsfilter.md | 43 +++ ...ryservices-recoveryjobentitynamesfilter.md | 41 +++ ...rvices-recoveryjobfilteringcriteriabase.md | 38 ++ ...ntrarecoveryservices-recoverypreviewjob.md | 66 ++++ .../entrarecoveryservices-snapshot.md | 52 +++ .../resources/enums-entrarecoveryservices.md | 59 ++++ api-reference/v1.0/toc/toc.mapping.json | 18 + .../Microsoft.Entra.RecoveryServices.json | 146 ++++++++ concepts/whats-new-overview.md | 8 + 42 files changed, 2773 insertions(+), 1 deletion(-) create mode 100644 api-reference/v1.0/api/entrarecoveryservices-recovery-list-jobs.md create mode 100644 api-reference/v1.0/api/entrarecoveryservices-recovery-list-snapshots.md create mode 100644 api-reference/v1.0/api/entrarecoveryservices-recoveryjob-get.md create mode 100644 api-reference/v1.0/api/entrarecoveryservices-recoveryjob-getfailedchanges.md create mode 100644 api-reference/v1.0/api/entrarecoveryservices-recoveryjobbase-cancel.md create mode 100644 api-reference/v1.0/api/entrarecoveryservices-recoverypreviewjob-get.md create mode 100644 api-reference/v1.0/api/entrarecoveryservices-recoverypreviewjob-getchanges.md create mode 100644 api-reference/v1.0/api/entrarecoveryservices-snapshot-get.md create mode 100644 api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoveryjobs.md create mode 100644 api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoverypreviewjobs.md create mode 100644 api-reference/v1.0/api/entrarecoveryservices-snapshot-post-recoveryjobs.md create mode 100644 api-reference/v1.0/api/entrarecoveryservices-snapshot-post-recoverypreviewjobs.md create mode 100644 api-reference/v1.0/includes/permissions/entrarecoveryservices-recovery-list-jobs-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/entrarecoveryservices-recovery-list-snapshots-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/entrarecoveryservices-recoveryjob-get-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/entrarecoveryservices-recoveryjob-getfailedchanges-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/entrarecoveryservices-recoveryjobbase-cancel-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/entrarecoveryservices-recoverypreviewjob-get-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/entrarecoveryservices-recoverypreviewjob-getchanges-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-get-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-list-recoveryjobs-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-list-recoverypreviewjobs-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoveryjobs-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoverypreviewjobs-permissions.md create mode 100644 api-reference/v1.0/includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md create mode 100644 api-reference/v1.0/includes/rbac-for-apis/rbac-entrarecoveryservices-apis-write.md create mode 100644 api-reference/v1.0/resources/entrarecoveryservices-backup-recovery-overview.md create mode 100644 api-reference/v1.0/resources/entrarecoveryservices-entitytypeandids.md create mode 100644 api-reference/v1.0/resources/entrarecoveryservices-recovery.md create mode 100644 api-reference/v1.0/resources/entrarecoveryservices-recoverychangeobjectbase.md create mode 100644 api-reference/v1.0/resources/entrarecoveryservices-recoveryjob.md create mode 100644 api-reference/v1.0/resources/entrarecoveryservices-recoveryjobbase.md create mode 100644 api-reference/v1.0/resources/entrarecoveryservices-recoveryjobentitynameandidsfilter.md create mode 100644 api-reference/v1.0/resources/entrarecoveryservices-recoveryjobentitynamesfilter.md create mode 100644 api-reference/v1.0/resources/entrarecoveryservices-recoveryjobfilteringcriteriabase.md create mode 100644 api-reference/v1.0/resources/entrarecoveryservices-recoverypreviewjob.md create mode 100644 api-reference/v1.0/resources/entrarecoveryservices-snapshot.md create mode 100644 api-reference/v1.0/resources/enums-entrarecoveryservices.md diff --git a/api-reference/beta/api/entrarecoveryservices-snapshot-post-recoverypreviewjobs.md b/api-reference/beta/api/entrarecoveryservices-snapshot-post-recoverypreviewjobs.md index 6a549d05d09..a099bf7cde4 100644 --- a/api-reference/beta/api/entrarecoveryservices-snapshot-post-recoverypreviewjobs.md +++ b/api-reference/beta/api/entrarecoveryservices-snapshot-post-recoverypreviewjobs.md @@ -23,7 +23,7 @@ Choose the permission or permissions marked as least privileged for this API. Us [!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-snapshot-post-recoverypreviewjobs-permissions.md)] -[!INCLUDE [rbac-entrarecoveryservices-apis-read](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md)] +[!INCLUDE [rbac-entrarecoveryservices-apis-write](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-write.md)] ## HTTP request diff --git a/api-reference/v1.0/api/entrarecoveryservices-recovery-list-jobs.md b/api-reference/v1.0/api/entrarecoveryservices-recovery-list-jobs.md new file mode 100644 index 00000000000..2e4f55a1930 --- /dev/null +++ b/api-reference/v1.0/api/entrarecoveryservices-recovery-list-jobs.md @@ -0,0 +1,116 @@ +--- +title: "List jobs" +description: "Get a list of all recovery jobs (both preview and recovery) across all snapshots." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: apiPageType +--- + +# List jobs + +Namespace: microsoft.graph.entraRecoveryServices + +Get a list of all recovery [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md) objects (both preview and recovery jobs) across all snapshots for the tenant. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-recovery-list-jobs-permissions.md)] + +[!INCLUDE [rbac-entrarecoveryservices-apis-read](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/recovery/jobs +``` + +## Optional query parameters + +This method supports the `$select`, `$top`, `$filter`, and `$orderby` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). The default and maximum page sizes are 100 and 999 job objects respectively. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [microsoft.graph.entraRecoveryServices.recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md) objects in the response body. The response uses `@odata.type` annotations to differentiate between [recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md) and [recoveryJob](../resources/entrarecoveryservices-recoveryjob.md) objects. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/recovery/jobs +``` + + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#directory/recovery/jobs", + "value": [ + { + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryPreviewJob", + "id": "d3f8e7e8-7e87-4a7f-9d2c-c1c2d7e8e1f1", + "status": "successful", + "targetStateDateTime": "2024-08-26T02:30:00Z", + "jobStartDateTime": "2024-08-26T06:40:00Z", + "jobCompletionDateTime": "2024-08-26T08:50:00Z", + "filteringCriteria": null, + "totalChangedObjectsCalculated": 2000, + "totalChangedLinksCalculated": 300 + }, + { + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryJob", + "id": "3f4a6b60-7c1e-4e7c-9c7b-13f8d44b20c4", + "status": "successful", + "targetStateDateTime": "2024-08-26T02:30:00Z", + "jobStartDateTime": "2024-08-26T08:30:00Z", + "jobCompletionDateTime": "2024-08-26T13:30:00Z", + "filteringCriteria": null, + "totalChangedObjectsCalculated": 1024, + "totalChangedLinksCalculated": 124, + "totalObjectsModified": 1024, + "totalLinksModified": 124, + "totalFailedChanges": 0 + } + ] +} +``` diff --git a/api-reference/v1.0/api/entrarecoveryservices-recovery-list-snapshots.md b/api-reference/v1.0/api/entrarecoveryservices-recovery-list-snapshots.md new file mode 100644 index 00000000000..f07ead269b9 --- /dev/null +++ b/api-reference/v1.0/api/entrarecoveryservices-recovery-list-snapshots.md @@ -0,0 +1,99 @@ +--- +title: "List snapshots" +description: "Get a list of available backup snapshots for the tenant." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: apiPageType +--- + +# List snapshots + +Namespace: microsoft.graph.entraRecoveryServices + +Get a list of available backup [snapshot](../resources/entrarecoveryservices-snapshot.md) objects for the tenant. Snapshots represent points in time to which the tenant can be restored. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-recovery-list-snapshots-permissions.md)] + +[!INCLUDE [rbac-entrarecoveryservices-apis-read](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/recovery/snapshots +``` + +## Optional query parameters + +This method supports the `$select`, `$top`, and `$orderby` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). The default and maximum page sizes are 100 and 999 snapshots objects respectively. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [microsoft.graph.entraRecoveryServices.snapshot](../resources/entrarecoveryservices-snapshot.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/recovery/snapshots +``` + + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#directory/recovery/snapshots", + "value": [ + { + "@odata.type": "#microsoft.graph.entraRecoveryServices.snapshot", + "id": "MjAyNC0wOC0yNVQwNjozMDowMFo=", + "createdDateTime": "2024-08-25T06:30:00Z", + "totalChangedObjects": 1230000 + }, + { + "@odata.type": "#microsoft.graph.entraRecoveryServices.snapshot", + "id": "MjAyNC0wOC0yNlQwMjozMDowMFo=", + "createdDateTime": "2024-08-26T02:30:00Z", + "totalChangedObjects": 1000000 + } + ] +} +``` diff --git a/api-reference/v1.0/api/entrarecoveryservices-recoveryjob-get.md b/api-reference/v1.0/api/entrarecoveryservices-recoveryjob-get.md new file mode 100644 index 00000000000..d9a8fed3a01 --- /dev/null +++ b/api-reference/v1.0/api/entrarecoveryservices-recoveryjob-get.md @@ -0,0 +1,99 @@ +--- +title: "Get recoveryJob" +description: "Get the properties of a recovery job." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: apiPageType +--- + +# Get recoveryJob + +Namespace: microsoft.graph.entraRecoveryServices + +Read the properties and relationships of a [recoveryJob](../resources/entrarecoveryservices-recoveryjob.md) object to check the status of the recovery operation. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-recoveryjob-get-permissions.md)] + +[!INCLUDE [rbac-entrarecoveryservices-apis-read](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/recovery/snapshots/{snapshot-id}/recoveryJobs/{job-id} +``` + +## Optional query parameters + +This method supports the `$select` OData query parameter to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [microsoft.graph.entraRecoveryServices.recoveryJob](../resources/entrarecoveryservices-recoveryjob.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs/3f4a6b60-7c1e-4e7c-9c7b-13f8d44b20c4 +``` + + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#directory/recovery/snapshots('MjAyNC0wOC0yNlQwMjozMDowMFo=')/recoveryJobs/$entity", + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryJob", + "id": "3f4a6b60-7c1e-4e7c-9c7b-13f8d44b20c4", + "status": "running", + "targetStateDateTime": "2024-08-26T02:30:00Z", + "jobStartDateTime": "2024-08-26T08:30:00Z", + "jobCompletionDateTime": null, + "filteringCriteria": null, + "totalObjectsModified": 2000, + "totalLinksModified": 300, + "totalFailedChanges": null +} +``` diff --git a/api-reference/v1.0/api/entrarecoveryservices-recoveryjob-getfailedchanges.md b/api-reference/v1.0/api/entrarecoveryservices-recoveryjob-getfailedchanges.md new file mode 100644 index 00000000000..a2dbf333ebf --- /dev/null +++ b/api-reference/v1.0/api/entrarecoveryservices-recoveryjob-getfailedchanges.md @@ -0,0 +1,197 @@ +--- +title: "recoveryJob: getFailedChanges" +description: "Get a paginated collection of changes that failed to apply during the recovery operation." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: apiPageType +--- + +# recoveryJob: getFailedChanges + +Namespace: microsoft.graph.entraRecoveryServices + +Get a paginated collection of [recoveryChangeObjectBase](../resources/entrarecoveryservices-recoverychangeobjectbase.md) objects that failed to apply during the recovery operation. + +This method can only be called on a recovery job that has completed and has a **totalFailedChanges** value greater than 0. Each failed change includes a **failureMessage** property describing why the change could not be applied. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-recoveryjob-getfailedchanges-permissions.md)] + +[!INCLUDE [rbac-entrarecoveryservices-apis-read](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/recovery/snapshots/{snapshot-id}/recoveryJobs/{job-id}/microsoft.graph.entraRecoveryServices.getFailedChanges +``` + +## Function parameters + +Don't supply a function parameter for this method. + +## Optional query parameters + +This method supports the `$top`, `$skip`, and `$select` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). The default and maximum page sizes are 100 and 999 failed change objects respectively. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this function returns a `200 OK` response code and a collection of [microsoft.graph.entraRecoveryServices.recoveryChangeObjectBase](../resources/entrarecoveryservices-recoverychangeobjectbase.md) objects in the response body. Each object includes a **failureMessage** property describing the error. + +## Examples + +### Example 1: Get failed changes from a completed recovery job + +The following example shows a request to retrieve changes that failed to apply during recovery. + +#### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs/3f4a6b60-7c1e-4e7c-9c7b-13f8d44b20c4/microsoft.graph.entraRecoveryServices.getFailedChanges +``` + +--- + +#### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs/d3f8e7e8-7e87-4a7f-9d2c-c1c2d7e8e1f1/microsoft.graph.entraRecoveryServices.getFailedChanges", + "@odata.nextLink": "https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs/d3f8e7e8-7e87-4a7f-9d2c-c1c2d7e8e1f1/microsoft.graph.entraRecoveryServices.getFailedChanges?$skiptoken=RFNwdAIAAQAAACA6X1NNVFBfYnJhemlsc291dGhAbWl", + "value": + [ + { + "entityTypeName": "user", + "id": "36e07e06-72c1-4b2c-b547-c5084413b88b", + "displayName": "JD", + "recoveryAction": "update", + "deltaFromCurrent": + { + "@odata.type": "#microsoft.graph.user", + "displayName": "John Doe", + "userPrincipalName": "johndoe@example.com", + "mail": "johndoe@example.com", + "jobTitle": "Software Engineer", + "department": "Engineering", + "officeLocation": "Redmond", + "mobilePhone": "+1 555-555-5555", + "businessPhones": [ + "+1 555-555-5555" + ], + "preferredLanguage": "en-US", + "accountEnabled": true, + "passwordProfile": { + "forceChangePasswordNextSignIn": false + } + }, + "currentState": + { + "@odata.type": "#microsoft.graph.user", + "displayName": "JD", + "userPrincipalName": "johndoe@example2.com", + "mail": "jdoe@example.com", + "jobTitle": "Product Manager", + "department": "Management", + "officeLocation": "San Fransisco", + "mobilePhone": "+1 999-999-9999", + "businessPhones": [ + "+1 555-888-5555" + ], + "preferredLanguage": "en-SP", + "accountEnabled": false, + "passwordProfile": { + "forceChangePasswordNextSignIn": true + } + } + } + ] +} +``` + +### Example 2: Get failed changes with top parameter + +The following example shows a request using the `$top` query parameter to limit results. + +#### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs/3f4a6b60-7c1e-4e7c-9c7b-13f8d44b20c4/microsoft.graph.entraRecoveryServices.getFailedChanges?$top=1 +``` + +--- + +#### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#Collection(microsoft.graph.entraRecoveryServices.recoveryChangeObjectBase)", + "@odata.count": 5, + "value": [ + { + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryChangeObjectBase", + "id": "9c4f2e1d-7a3b-4f8e-9c2d-3e4f5a6b7c8d", + "entityTypeName": "servicePrincipal", + "recoveryAction": "update", + "deltaFromCurrent": { + "appRoleAssignmentRequired": false + }, + "currentState": { + "appRoleAssignmentRequired": true + }, + "failureMessage": "Update failed: Service principal is managed by another service." + } + ], + "@odata.nextLink": "https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs/3f4a6b60-7c1e-4e7c-9c7b-13f8d44b20c4/microsoft.graph.entraRecoveryServices.getFailedChanges?$skip=1&$top=1" +} +``` diff --git a/api-reference/v1.0/api/entrarecoveryservices-recoveryjobbase-cancel.md b/api-reference/v1.0/api/entrarecoveryservices-recoveryjobbase-cancel.md new file mode 100644 index 00000000000..23e3760c87f --- /dev/null +++ b/api-reference/v1.0/api/entrarecoveryservices-recoveryjobbase-cancel.md @@ -0,0 +1,80 @@ +--- +title: "recoveryJobBase: cancel" +description: "Cancel a running recovery or preview job." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: apiPageType +--- + +# recoveryJobBase: cancel + +Namespace: microsoft.graph.entraRecoveryServices + +Cancel a running [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md) object (either a preview or recovery job). The job must be in a non-terminal state (`initialized`, `calculating`, `loadingData`, or `running`). After cancellation, the job status changes to `abandoned`. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-recoveryjobbase-cancel-permissions.md)] + +[!INCLUDE [rbac-entrarecoveryservices-apis-write](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-write.md)] + +## HTTP request + + +``` http +POST /directory/recovery/jobs/{job-id}/microsoft.graph.entraRecoveryServices.cancel +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `202 Accepted` response code with a `Location` header pointing to the job resource. + +## Examples + +### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/directory/recovery/jobs/3f4a6b60-7c1e-4e7c-9c7b-13f8d44b20c4/microsoft.graph.entraRecoveryServices.cancel +``` + + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 202 Accepted +Location: https://graph.microsoft.com/v1.0/directory/recovery/jobs/3f4a6b60-7c1e-4e7c-9c7b-13f8d44b20c4 +``` diff --git a/api-reference/v1.0/api/entrarecoveryservices-recoverypreviewjob-get.md b/api-reference/v1.0/api/entrarecoveryservices-recoverypreviewjob-get.md new file mode 100644 index 00000000000..e2122f047d4 --- /dev/null +++ b/api-reference/v1.0/api/entrarecoveryservices-recoverypreviewjob-get.md @@ -0,0 +1,97 @@ +--- +title: "Get recoveryPreviewJob" +description: "Get the properties of a preview job." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: apiPageType +--- + +# Get recoveryPreviewJob + +Namespace: microsoft.graph.entraRecoveryServices + +Read the properties and relationships of a [recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md) object to check the status of the preview job. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-recoverypreviewjob-get-permissions.md)] + +[!INCLUDE [rbac-entrarecoveryservices-apis-read](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/recovery/snapshots/{snapshot-id}/recoveryPreviewJobs/{job-id} +``` + +## Optional query parameters + +This method supports the `$select` OData query parameter to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [microsoft.graph.entraRecoveryServices.recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryPreviewJobs/d3f8e7e8-7e87-4a7f-9d2c-c1c2d7e8e1f1 +``` + + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#directory/recovery/snapshots('MjAyNC0wOC0yNlQwMjozMDowMFo=')/recoveryPreviewJobs/$entity", + "id": "d3f8e7e8-7e87-4a7f-9d2c-c1c2d7e8e1f1", + "status": "calculating", + "targetStateDateTime": "2024-08-26T02:30:00Z", + "jobStartDateTime": "2024-08-26T06:40:00Z", + "jobCompletionDateTime": null, + "filteringCriteria": null, + "totalChangedObjectsCalculated": 0, + "totalChangedLinksCalculated": 0 +} +``` diff --git a/api-reference/v1.0/api/entrarecoveryservices-recoverypreviewjob-getchanges.md b/api-reference/v1.0/api/entrarecoveryservices-recoverypreviewjob-getchanges.md new file mode 100644 index 00000000000..4f92447252c --- /dev/null +++ b/api-reference/v1.0/api/entrarecoveryservices-recoverypreviewjob-getchanges.md @@ -0,0 +1,327 @@ +--- +title: "recoveryPreviewJob: getChanges" +description: "Get a paginated collection of change objects that will be applied if the recovery operation is executed." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: apiPageType +--- + +# recoveryPreviewJob: getChanges + +Namespace: microsoft.graph.entraRecoveryServices + +Get a paginated collection of [recoveryChangeObjectBase](../resources/entrarecoveryservices-recoverychangeobjectbase.md) objects that will be applied if a recovery operation is executed for the same snapshot and filtering criteria. + +This method can only be called on a [preview job](../resources/entrarecoveryservices-recoverypreviewjob.md) that has a status of `successful`. The changes returned represent the differences between the current tenant state and the state at the time of the snapshot. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-recoverypreviewjob-getchanges-permissions.md)] + +[!INCLUDE [rbac-entrarecoveryservices-apis-read](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/recovery/snapshots/{snapshot-id}/recoveryPreviewJobs/{job-id}/microsoft.graph.entraRecoveryServices.getChanges +``` + +## Function parameters + +Don't supply a function parameter for this method. + +## Optional query parameters + +This method supports the `$top`, `$skip`, and `$select` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). The default and maximum page sizes are 100 and 999 change objects respectively. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this function returns a `200 OK` response code and a collection of [microsoft.graph.entraRecoveryServices.recoveryChangeObjectBase](../resources/entrarecoveryservices-recoverychangeobjectbase.md) objects in the response body. + +## Examples + +### Example 1: Get changes showing objects that will be updated + +The following example shows a request that retrieves changes where objects in the current tenant will be updated to match the snapshot state. + +#### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryPreviewJobs/d3f8e7e8-7e87-4a7f-9d2c-c1c2d7e8e1f1/microsoft.graph.entraRecoveryServices.getChanges +``` + +--- + +#### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryPreviewJobs/d3f8e7e8-7e87-4a7f-9d2c-c1c2d7e8e1f1/microsoft.graph.entraRecoveryServices.getChanges", + "@odata.nextLink": "https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryPreviewJobs/d3f8e7e8-7e87-4a7f-9d2c-c1c2d7e8e1f1/microsoft.graph.entraRecoveryServices.getChanges?$skiptoken=RFNwdAIAAQAAACA6X1NNVFBfYnJhemlsc291dGhAbWl", + "value": + [ + { + "entityTypeName": "user", + "id": "36e07e06-72c1-4b2c-b547-c5084413b88b", + "displayName": "JD", + "recoveryAction": "update", + "deltaFromCurrent": + { + "@odata.type": "#microsoft.graph.user", + "displayName": "John Doe", + "userPrincipalName": "johndoe@example.com", + "mail": "johndoe@example.com", + "jobTitle": "Software Engineer", + "department": "Engineering", + "officeLocation": "Redmond", + "mobilePhone": "+1 555-555-5555", + "businessPhones": ["+1 555-555-5555"], + "preferredLanguage": "en-US", + "accountEnabled": true, + "passwordProfile": { + "forceChangePasswordNextSignIn": false + } + }, + + "currentState": + { + "@odata.type": "#microsoft.graph.user", + "displayName": "JD", + "userPrincipalName": "johndoe@example2.com", + "mail": "jdoe@example.com", + "jobTitle": "Product Manager", + "department": "Management", + "officeLocation": "San Francisco", + "mobilePhone": "+1 999-999-9999", + "businessPhones": ["+1 555-888-5555"], + "preferredLanguage": "en-SP", + "accountEnabled": false, + "passwordProfile": { + "forceChangePasswordNextSignIn": true + } + } + }, + + { + "entityTypeName": "user", + "id": "36e07e06-72c1-4b2c-b547-c5084413b88b", + "displayName": "Test Display Name2", + "recoveryAction": "restore", + "deltaFromCurrent": + { + "@odata.type": "#microsoft.graph.user", + "displayName": "Test Display Name1", + "deletedDateTime": null + }, + + "currentState": + { + "@odata.type": "#microsoft.graph.user", + "displayName": "Test Display Name2", + "deletedDateTime": "2024-08-20T00:00:00Z" + } + }, + + { + "entityTypeName": "user", + "id": "36e07e06-72c1-4b2c-b547-c5084413b88b", + "displayName": "Test Display Name2", + "recoveryAction": "softDelete", + "deltaFromCurrent": + { + "@odata.type": "#microsoft.graph.user", + "displayName": "Test Display Name1", + "@removed": { + "reason": "changed" + }, + "deletedDateTime": "2024-08-26T00:00:00Z" + }, + + "currentState": + { + "@odata.type": "#microsoft.graph.user", + "displayName": "Test Display Name2", + "deletedDateTime": null + } + }, + { + "entityTypeName": "user", + "id": "36e07e06-72c1-4b2c-b547-c5084413b88b", + "displayName": "testUser", + "recoveryAction": "softDelete", + "deltaFromCurrent": + { + "@odata.type": "#microsoft.graph.user", + "@removed": { + "reason": "changed" + }, + "deletedDateTime": "2024-08-26T00:00:00Z" + }, + + "currentState": + { + "@odata.type": "#microsoft.graph.user", + "deletedDateTime": null + } + }, + + { + "entityTypeName": "group", + "id": "ef043007-ea2e-44ba-a8ff-59c1cfc08dac", + "displayName": "Engineering Team", + "recoveryAction": "update", + "deltaFromCurrent": + { + "@odata.type": "#microsoft.graph.group", + "displayName": "Management Team", + "description": "Group for the engineering team", + "securityEnabled": true, + "visibility": "Private", + "renewedDateTime": "2023-06-01T00:00:00Z", + "members@delta": [ + + { + "@odata.type": "#microsoft.graph.user", + "id": "632f6bb2-3ec8-4c1f-9073-0027a8c6859", + "@removed": { + "reason": "changed"} + }, + { + "@odata.type": "#microsoft.graph.user", + "id": "37de1ae3-408f-4702-8636-20824abda004" + } + ], + "owners@delta": [ + { + "id": "34567890-3456-3456-3456-3456789012cd", + "displayName": "John Miler", + "userPrincipalName": "johnmiller@example.com" + } + ] + }, + "currentState": + { + "@odata.type": "#microsoft.graph.group", + "displayName": "Engineering Team", + "description": "Management Team's group", + "securityEnabled": false, + "visibility": "Public", + "renewedDateTime": "2023-07-01T00:00:00Z" + } + }, + + { + "entityTypeName": "conditionalAccessPolicy", + "id": "863f9620-8b90-4296-b8dc-6ff480da5c8b", + "displayName": "Require MFA for Admins", + "recoveryAction": "update", + "deltaFromCurrent": + { + "@odata.type": "#microsoft.graph.conditionalAccessPolicy", + "displayName": "Require MFA for Finance Team", + "conditions": { + "users": { + "includeUsers": ["finance1", "finance2"], + "excludeUsers": ["backup-account"] + }, + "applications": { + "includeApplications": ["financeApp1", "financeApp2"], + "excludeApplications": ["financeApp3"] + }, + "signInRiskLevels": ["medium"], + "devicePlatforms": ["iOS", "Android"], + "locations": { + "includeLocations": ["office1", "office2"], + "excludeLocations": ["remote"] + }, + "clientAppTypes": ["mobileAppsAndDesktopClients"] + }, + "grantControls": { + "operator": "OR", + "builtInControls": ["mfa", "passwordChange"] + }, + "sessionControls": { + "applicationEnforcedRestrictions": null, + "cloudAppSecurity": null, + "signInFrequency": { + "value": 14, + "type": "days" + } + }, + "state": "enabled" + } , + "currentState": + { + "@odata.type": "#microsoft.graph.conditionalAccessPolicy", + "displayName": "Require MFA for Admins", + "conditions": { + "users": { + "includeUsers": ["admin1", "admin2"], + "excludeUsers": ["emergency-access-account"] + }, + "applications": { + "includeApplications": ["app1", "app2"], + "excludeApplications": ["app3"] + }, + "signInRiskLevels": ["high"], + "devicePlatforms": ["windows", "macOS"], + "locations": { + "includeLocations": ["location1", "location2"], + "excludeLocations": ["location3"] + }, + "clientAppTypes": ["browser", "mobileAppsAndDesktopClients"] + }, + "grantControls": { + "operator": "AND", + "builtInControls": ["mfa", "compliantDevice"] + }, + "sessionControls": { + "applicationEnforcedRestrictions": null, + "cloudAppSecurity": null, + "signInFrequency": { + "value": 7, + "type": "days" + } + }, + "state": "disabled" + } + } + ] + } + +``` diff --git a/api-reference/v1.0/api/entrarecoveryservices-snapshot-get.md b/api-reference/v1.0/api/entrarecoveryservices-snapshot-get.md new file mode 100644 index 00000000000..65ac6ee06dd --- /dev/null +++ b/api-reference/v1.0/api/entrarecoveryservices-snapshot-get.md @@ -0,0 +1,88 @@ +--- +title: "Get snapshot" +description: "Get the properties of a snapshot object." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: apiPageType +--- + +# Get snapshot + +Namespace: microsoft.graph.entraRecoveryServices + +Read the properties and relationships of a [snapshot](../resources/entrarecoveryservices-snapshot.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-snapshot-get-permissions.md)] + +[!INCLUDE [rbac-entrarecoveryservices-apis-read](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/recovery/snapshots/{snapshot-id} +``` + +## Optional query parameters + +This method supports the `$select` OData query parameter to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [microsoft.graph.entraRecoveryServices.snapshot](../resources/entrarecoveryservices-snapshot.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo= +``` + + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.entraRecoveryServices.snapshot", + "id": "MjAyNC0wOC0yNlQwMjozMDowMFo=", + "createdDateTime": "2024-08-25T06:30:00Z", + "totalChangedObjects": 1230000 +} +``` diff --git a/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoveryjobs.md b/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoveryjobs.md new file mode 100644 index 00000000000..356c93f0702 --- /dev/null +++ b/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoveryjobs.md @@ -0,0 +1,118 @@ +--- +title: "List recoveryJobs" +description: "Get a list of recovery jobs for a specific snapshot." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: apiPageType +--- + +# List recoveryJobs + +Namespace: microsoft.graph.entraRecoveryServices + +Get a list of [recoveryJob](../resources/entrarecoveryservices-recoveryjob.md) objects for a specific snapshot. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-snapshot-list-recoveryjobs-permissions.md)] + +[!INCLUDE [rbac-entrarecoveryservices-apis-read](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/recovery/snapshots/{snapshot-id}/recoveryJobs +``` + +## Optional query parameters + +This method supports the `$select`, `$top`, `$filter`, and `$orderby` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). The default and maximum page sizes are 100 and 999 recovery job objects respectively. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [microsoft.graph.entraRecoveryServices.recoveryJob](../resources/entrarecoveryservices-recoveryjob.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs +``` + + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs", + "value": + [ + { + "id": "d3f8e7e8-7e87-4a7f-9d2c-c1c2d7e8e1f1", + "status": "successful", + "targetStateDateTime": "2024-08-26T02:30:00Z" , + "jobStartDateTime": "2024-08-26T08:30:00Z", + "jobCompletionDateTime": "2024-08-26T13:30:00Z", + "totalObjectsModified": 1024, + "totalLinksModified": 124, + "totalFailedChanges": 0, + "totalChangedObjectsCalculated" : 1024, + "totalChangedLinksCalculated" : 124, + "filteringCriteria": null + }, + { + "id": "a1b2c3d4-5e6f-7a8b-9c0d-e1f2a3b4c5d6", + "status": "successful", + "targetStateDateTime": "2025-08-26T02:30:00Z" , + "jobStartDateTime": "2025-08-26T08:30:00Z", + "jobCompletionDateTime": "2025-08-26T13:30:00Z", + "totalObjectsModified": 2048, + "totalLinksModified": 256, + "totalFailedChanges": 0, + "totalChangedObjectsCalculated" : 2304, + "totalChangedLinksCalculated" : 2304, + "filteringCriteria": null + } + ] +} +``` diff --git a/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoverypreviewjobs.md b/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoverypreviewjobs.md new file mode 100644 index 00000000000..ff0a130ba49 --- /dev/null +++ b/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoverypreviewjobs.md @@ -0,0 +1,102 @@ +--- +title: "List recoveryPreviewJobs" +description: "Get a list of preview jobs for a specific snapshot." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: apiPageType +--- + +# List recoveryPreviewJobs + +Namespace: microsoft.graph.entraRecoveryServices + +Get a list of [recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md) objects for a specific snapshot. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-snapshot-list-recoverypreviewjobs-permissions.md)] + +[!INCLUDE [rbac-entrarecoveryservices-apis-read](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/recovery/snapshots/{snapshot-id}/recoveryPreviewJobs +``` + +## Optional query parameters + +This method supports the `$select`, `$top`, `$filter`, and `$orderby` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). The default and maximum page sizes are 100 and 999 preview job objects respectively. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [microsoft.graph.entraRecoveryServices.recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryPreviewJobs +``` + + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#directory/recovery/snapshots('MjAyNC0wOC0yNlQwMjozMDowMFo=')/recoveryPreviewJobs", + "value": + [ + { + "id": "d3f8e7e8-7e87-4a7f-9d2c-c1c2d7e8e1f1", + "status": "successful", + "targetStateDateTime": "2024-08-26T02:30:00Z" , + "jobStartDateTime": "2024-08-26T06:40:00Z", + "jobCompletionDateTime": "2024-08-26T08:50:00Z", + "totalChangedObjectsCalculated": 2000, + "totalChangedLinksCalculated": 1000, + "filteringCriteria": null + } + ] +} +``` diff --git a/api-reference/v1.0/api/entrarecoveryservices-snapshot-post-recoveryjobs.md b/api-reference/v1.0/api/entrarecoveryservices-snapshot-post-recoveryjobs.md new file mode 100644 index 00000000000..8b6ca9e95d9 --- /dev/null +++ b/api-reference/v1.0/api/entrarecoveryservices-snapshot-post-recoveryjobs.md @@ -0,0 +1,169 @@ +--- +title: "Create recoveryJob" +description: "Create a new recovery job to restore the tenant's directory objects to a snapshot state." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: apiPageType +--- + +# Create recoveryJob + +Namespace: microsoft.graph.entraRecoveryServices + +Create a new [recoveryJob](../resources/entrarecoveryservices-recoveryjob.md) object to restore the tenant's directory objects to a specific snapshot state. This operation follows the resource-based long running operation (RELO) pattern and returns a `202 Accepted` response with a `Location` header pointing to the job resource. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-snapshot-post-recoveryjobs-permissions.md)] + +[!INCLUDE [rbac-entrarecoveryservices-apis-write](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-write.md)] + +## HTTP request + + +``` http +POST /directory/recovery/snapshots/{snapshot-id}/recoveryJobs +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, optionally supply a JSON representation with the following property. + +|Property|Type|Description| +|:---|:---|:---| +|filteringCriteria|[microsoft.graph.entraRecoveryServices.recoveryJobFilteringCriteriaBase](../resources/entrarecoveryservices-recoveryjobfilteringcriteriabase.md)|Optional. Filtering criteria to scope the job to specific entity types or entity IDs. If not specified, all supported entities are included. Use `@odata.type` to specify the derived type: `#microsoft.graph.entraRecoveryServices.recoveryJobEntityNamesFilter` or `#microsoft.graph.entraRecoveryServices.recoveryJobEntityNameAndIdsFilter`.| + +## Response + +If successful, this method returns a `202 Accepted` response code with a `Location` header pointing to the created job resource. + +## Examples + +### Example 1: Create a recovery job without filtering + +The following example creates a recovery job for all changes. + +#### Request + +``` http +POST https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs +``` + +--- + +#### Response + +``` http +HTTP/1.1 202 Accepted +Location: https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs/3f4a6b60-7c1e-4e7c-9c7b-13f8d44b20c4 +``` + +### Example 2: Create a recovery job filtered by entity types + +The following example creates a recovery job for only user entity changes. + +#### Request + +``` http +POST https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs +Content-Type: application/json + +{ + "filteringCriteria": { + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryJobEntityNamesFilter", + "entityTypes": [ + "user" + ] + } +} +``` + +--- + +#### Response + +``` http +HTTP/1.1 202 Accepted +Location: https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs/3f4a6b60-7c1e-4e7c-9c7b-13f8d44b20c4 +``` + +### Example 3: Create a recovery job filtered by specific entity IDs + +The following example creates a recovery job for specific users and groups. + +#### Request + +``` http +POST https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs +Content-Type: application/json + +{ + "filteringCriteria": { + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryJobEntityNameAndIdsFilter", + "filterValues": [ + { + "entityType": "user", + "entityIds": [ + "52330fde-895a-4a99-ae59-1c35c2a263e9", + "0c503c02-5554-4d59-9fcc-69736618fb8f" + ] + }, + { + "entityType": "group", + "entityIds": [ + "04181a71-a18d-4eee-94da-a77e7eb6520b", + "2c888900-a7e8-4a01-ada5-17c04b29e8ec" + ] + } + ] + } +} +``` + +--- + +#### Response + +``` http +HTTP/1.1 202 Accepted +Location: https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryJobs/fa0f72f4-68e8-4625-846f-38865c49a086 +``` diff --git a/api-reference/v1.0/api/entrarecoveryservices-snapshot-post-recoverypreviewjobs.md b/api-reference/v1.0/api/entrarecoveryservices-snapshot-post-recoverypreviewjobs.md new file mode 100644 index 00000000000..8d26f90c3fe --- /dev/null +++ b/api-reference/v1.0/api/entrarecoveryservices-snapshot-post-recoverypreviewjobs.md @@ -0,0 +1,169 @@ +--- +title: "Create recoveryPreviewJob" +description: "Create a new preview job to enumerate changes required to restore to a snapshot's state." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: apiPageType +--- + +# Create recoveryPreviewJob + +Namespace: microsoft.graph.entraRecoveryServices + +Create a new [recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md) object to preview changes required to restore the tenant to a specific snapshot state. This operation follows the resource-based long running operation (RELO) pattern and returns a `202 Accepted` response with a `Location` header pointing to the job resource. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entrarecoveryservices-snapshot-post-recoverypreviewjobs-permissions.md)] + +[!INCLUDE [rbac-entrarecoveryservices-apis-write](../includes/rbac-for-apis/rbac-entrarecoveryservices-apis-write.md)] + +## HTTP request + + +``` http +POST /directory/recovery/snapshots/{snapshot-id}/recoveryPreviewJobs +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, optionally supply a JSON representation with the following property. + +|Property|Type|Description| +|:---|:---|:---| +|filteringCriteria|[microsoft.graph.entraRecoveryServices.recoveryJobFilteringCriteriaBase](../resources/entrarecoveryservices-recoveryjobfilteringcriteriabase.md)|Optional. Filtering criteria to scope the job to specific entity types or entity IDs. If not specified, all supported entities are included. Use `@odata.type` to specify the derived type: `#microsoft.graph.entraRecoveryServices.recoveryJobEntityNamesFilter` or `#microsoft.graph.entraRecoveryServices.recoveryJobEntityNameAndIdsFilter`.| + +## Response + +If successful, this method returns a `202 Accepted` response code with a `Location` header pointing to the created job resource. + +## Examples + +### Example 1: Create a preview job without filtering + +The following example creates a preview job for all changes. + +#### Request + +``` http +POST https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryPreviewJobs +``` + +--- + +#### Response + +``` http +HTTP/1.1 202 Accepted +Location: https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryPreviewJobs/d3f8e7e8-7e87-4a7f-9d2c-c1c2d7e8e1f1 +``` + +### Example 2: Create a preview job filtered by entity types + +The following example creates a preview job for only user entity changes. + +#### Request + +``` http +POST https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryPreviewJobs +Content-Type: application/json + +{ + "filteringCriteria": { + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryJobEntityNamesFilter", + "entityTypes": [ + "user" + ] + } +} +``` + +--- + +#### Response + +``` http +HTTP/1.1 202 Accepted +Location: https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryPreviewJobs/d3f8e7e8-7e87-4a7f-9d2c-c1c2d7e8e1f1 +``` + +### Example 3: Create a preview job filtered by specific entity IDs + +The following example creates a preview job for specific users and groups. + +#### Request + +``` http +POST https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryPreviewJobs +Content-Type: application/json + +{ + "filteringCriteria": { + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryJobEntityNameAndIdsFilter", + "filterValues": [ + { + "entityType": "user", + "entityIds": [ + "52330fde-895a-4a99-ae59-1c35c2a263e9", + "0c503c02-5554-4d59-9fcc-69736618fb8f" + ] + }, + { + "entityType": "group", + "entityIds": [ + "04181a71-a18d-4eee-94da-a77e7eb6520b", + "2c888900-a7e8-4a01-ada5-17c04b29e8ec" + ] + } + ] + } +} +``` + +--- + +#### Response + +``` http +HTTP/1.1 202 Accepted +Location: https://graph.microsoft.com/v1.0/directory/recovery/snapshots/MjAyNC0wOC0yNlQwMjozMDowMFo=/recoveryPreviewJobs/fa0f72f4-68e8-4625-846f-38865c49a086 +``` diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-recovery-list-jobs-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recovery-list-jobs-permissions.md new file mode 100644 index 00000000000..c11e6dc9972 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recovery-list-jobs-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Not supported.|Not supported.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-recovery-list-snapshots-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recovery-list-snapshots-permissions.md new file mode 100644 index 00000000000..4f8f6787b37 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recovery-list-snapshots-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|EntraBackup.Read.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|EntraBackup.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoveryjob-get-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoveryjob-get-permissions.md new file mode 100644 index 00000000000..c11e6dc9972 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoveryjob-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Not supported.|Not supported.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoveryjob-getfailedchanges-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoveryjob-getfailedchanges-permissions.md new file mode 100644 index 00000000000..4f8f6787b37 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoveryjob-getfailedchanges-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|EntraBackup.Read.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|EntraBackup.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoveryjobbase-cancel-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoveryjobbase-cancel-permissions.md new file mode 100644 index 00000000000..c11e6dc9972 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoveryjobbase-cancel-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Not supported.|Not supported.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoverypreviewjob-get-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoverypreviewjob-get-permissions.md new file mode 100644 index 00000000000..c11e6dc9972 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoverypreviewjob-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Not supported.|Not supported.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoverypreviewjob-getchanges-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoverypreviewjob-getchanges-permissions.md new file mode 100644 index 00000000000..4f8f6787b37 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recoverypreviewjob-getchanges-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|EntraBackup.Read.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|EntraBackup.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-get-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-get-permissions.md new file mode 100644 index 00000000000..4f8f6787b37 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|EntraBackup.Read.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|EntraBackup.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-list-recoveryjobs-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-list-recoveryjobs-permissions.md new file mode 100644 index 00000000000..c11e6dc9972 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-list-recoveryjobs-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Not supported.|Not supported.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-list-recoverypreviewjobs-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-list-recoverypreviewjobs-permissions.md new file mode 100644 index 00000000000..c11e6dc9972 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-list-recoverypreviewjobs-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Not supported.|Not supported.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoveryjobs-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoveryjobs-permissions.md new file mode 100644 index 00000000000..b06566160c3 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoveryjobs-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|EntraBackup.ReadWrite.Recovery|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoverypreviewjobs-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoverypreviewjobs-permissions.md new file mode 100644 index 00000000000..3f3b0d04385 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoverypreviewjobs-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|EntraBackup.ReadWrite.Preview|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md b/api-reference/v1.0/includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md new file mode 100644 index 00000000000..64b16f0272d --- /dev/null +++ b/api-reference/v1.0/includes/rbac-for-apis/rbac-entrarecoveryservices-apis-read.md @@ -0,0 +1,9 @@ +--- +author: yuhko +ms.topic: include +--- + +> [!IMPORTANT] +> For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. This operation supports the following built-in roles, which provide only the least privilege necessary: +> - Entra Backup Reader +> - Entra Backup Administrator diff --git a/api-reference/v1.0/includes/rbac-for-apis/rbac-entrarecoveryservices-apis-write.md b/api-reference/v1.0/includes/rbac-for-apis/rbac-entrarecoveryservices-apis-write.md new file mode 100644 index 00000000000..8e0d12d3ff1 --- /dev/null +++ b/api-reference/v1.0/includes/rbac-for-apis/rbac-entrarecoveryservices-apis-write.md @@ -0,0 +1,7 @@ +--- +author: yuhko +ms.topic: include +--- + +> [!IMPORTANT] +> For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. *Entra Backup Administrator* is the least privileged role supported for this operation. diff --git a/api-reference/v1.0/resources/entrarecoveryservices-backup-recovery-overview.md b/api-reference/v1.0/resources/entrarecoveryservices-backup-recovery-overview.md new file mode 100644 index 00000000000..8719c07de58 --- /dev/null +++ b/api-reference/v1.0/resources/entrarecoveryservices-backup-recovery-overview.md @@ -0,0 +1,174 @@ +--- +title: "Overview of Microsoft Entra Backup and Recovery APIs" +description: "Learn how to use Microsoft Entra Backup and Recovery APIs as part of your Business Continuity strategy to programmatically back up, preview, and restore directory objects." +author: "FaithOmbongi" +ms.author: "ombongifaith" +ms.reviewer: "yuhko-msft, yuhko-msft" +ms.localizationpriority: medium +doc_type: conceptualPageType +ms.topic: overview +ms.subservice: entra-directory-management +ms.date: 06/05/2026 +# Customer intent: As a developer integrating with Microsoft Graph, I want to understand the Entra Backup and Recovery APIs so that I can programmatically back up, preview, and restore my tenant's directory objects. +--- + +# Overview of Microsoft Entra Backup and Recovery APIs + +Namespace: microsoft.graph.entraRecoveryServices + +The [Microsoft Entra Backup and Recovery](/entra/backup/overview) APIs in Microsoft Graph enable you to programmatically back up and restore critical directory objects to a previously known good state. These APIs help IT administrators recover from accidental changes or security compromises by viewing available backups, previewing restoration changes, executing recovery operations, and monitoring job progress. + +## Supported directory objects + +The backup and recovery APIs support the following Microsoft Entra directory objects. For each object type, only a subset of properties and relationships are tracked and supported in the backup and recovery process. + +- [Users](../resources/user.md) +- [Groups - Microsoft 365 and security groups](../resources/group.md) +- [Applications](../resources/application.md) +- [Service principals](../resources/serviceprincipal.md) +- [Conditional Access policies](../resources/conditionalaccesspolicy.md) +- [Named location policies](../resources/namedlocation.md) +- [Authentication method policies](../resources/authenticationmethodspolicy.md) +- [Authorization policies](../resources/authorizationpolicy.md) +- [OAuth2 permission grants](../resources/oauth2permissiongrant.md) +- [App role assignments](../resources/approleassignment.md) + +Agent identities associated with users, applications, or service principals are also supported. + +For more information, see [Supported objects and recoverable properties in Microsoft Entra Backup and Recovery](/entra/backup/scope-supported-objects-limitations). + +> [!NOTE] +> Hard-deleted objects can't be recovered. Only objects that were modified, soft-deleted, or newly created since the backup can be addressed by a recovery operation. +> On-premises Active Directory-synced objects with the source of authority on-premises can't be recovered, but changes are visible in the snapshots. + +## Key API concepts + +### Snapshots + +A [snapshot](../resources/entrarecoveryservices-snapshot.md) represents a point-in-time backup of the tenant's directory data. Each snapshot has a unique identifier (base64-encoded timestamp) and tracks the total count of changed objects. Use snapshots as the starting point for both preview and recovery operations. + +Microsoft Entra automatically creates one backup snapshot per day and retains up to five days of snapshot history. Snapshots are non-editable and can't be deleted or disabled by any user or application. + +### Jobs + +The backup and recovery process revolves around two types of jobs: preview jobs and recovery jobs, represented by the [recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md) and [recoveryJob](../resources/entrarecoveryservices-recoveryjob.md) resource types, respectively. + +You can scope both preview and recovery jobs to specific subsets of data using filtering criteria: +- Limit the scope to specific entity types (for example, only users, or only users and groups). +- Limit the scope to specific objects identified by entity type and object ID. + +Jobs are long-running operations. When you create a job, the response includes a `Location` header with the URL of the created job resource. Poll this resource to check the job status until it completes. +- A successful preview job provides a comprehensive list of objects that would be affected by a recovery operation, along with the specific property changes. +- A successful recovery job applies the necessary changes to restore the tenant's directory objects to the snapshot state. After completion, you can review any failed changes that couldn't be applied. + +Only one job (preview or recovery) can run at a time per tenant. Wait for a running job to complete or cancel it before starting a new one. + +#### Recovery preview jobs + +A [recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md) is a "dry run" that calculates the differences between the current tenant state and a selected snapshot. Preview jobs don't modify any data. + +A preview job can be successfully completed, failed, or abandoned (canceled). +- After a preview job completes, call the [getChanges](../api/entrarecoveryservices-recoverypreviewjob-getchanges.md) function to enumerate the objects that would be affected, along with the specific property changes. +- To cancel a preview job, call the [cancel](../api/entrarecoveryservices-recoveryjobbase-cancel.md) action. No results are available for an abandoned job. + +Each changed object returned by `getChanges` or `getFailedChanges` includes a **recoveryAction** property indicating what the recovery operation does to that object: + +| Action | Description | +|:---|:---| +| `update` | The object's properties are updated to match the snapshot state. | +| `softDelete` | The object is soft-deleted because it didn't exist in the snapshot or was deleted in the snapshot. | +| `restore` | The object is restored from a soft-deleted state because it existed in the snapshot. | + +#### Recovery jobs + +Unlike a preview job, a [recoveryJob](../resources/entrarecoveryservices-recoveryjob.md) executes the actual restoration of directory objects to the selected snapshot state. After a recovery job completes, call the [getFailedChanges](../api/entrarecoveryservices-recoveryjob-getfailedchanges.md) function to review any changes that couldn't be applied. + +## Typical workflow + +The following diagram illustrates the typical end-to-end workflow for using the backup and recovery APIs: + +**Step 1: List available snapshots** +Retrieve the available backups to identify the snapshot you want to restore to. + +```http +GET /directory/recovery/snapshots +``` + +**Step 2: Create a preview job** +Create a preview job to calculate the differences between the current tenant state and the selected snapshot. Optionally, include filtering criteria to limit the scope. + +```http +POST /directory/recovery/snapshots/{snapshot-id}/recoveryPreviewJobs +``` + +**Step 3: Poll the preview job status** +The preview job is a long-running operation that returns a `202 Accepted` response with a `Location` header that points to the created job resource. Poll its status until it completes. When the job completes (`successful`, `failed`, or `abandoned` status), retrieve the results. + +```http +GET /directory/recovery/snapshots/{snapshot-id}/recoveryPreviewJobs/{job-id} +``` + +**Step 4: Review the changes** +After the preview job completes successfully, retrieve the list of objects that would be affected. + +```http +GET /directory/recovery/snapshots/{snapshot-id}/recoveryPreviewJobs/{job-id}/microsoft.graph.entraRecoveryServices.getChanges +``` + +**Step 5: Create a recovery job** +After reviewing the preview, create a recovery job to apply the changes. You can use the same filtering criteria as the preview. + +```http +POST /directory/recovery/snapshots/{snapshot-id}/recoveryJobs +``` + +**Step 6: Monitor the recovery job** +The recovery job is a long-running operation that returns a `202 Accepted` response with a `Location` header that points to the created job resource. Poll its status to track progress, including the number of objects and links modified. When the job completes (`successful`, `failed`, or `abandoned` status), retrieve the results. + +```http +GET /directory/recovery/snapshots/{snapshot-id}/recoveryJobs/{job-id} +``` + +**Step 7: Review failed changes (if any)** +If the recovery job reports failed changes, retrieve the details to understand what couldn't be applied and why. + +```http +GET /directory/recovery/snapshots/{snapshot-id}/recoveryJobs/{job-id}/microsoft.graph.entraRecoveryServices.getFailedChanges +``` + +> [!TIP] +> You can cancel a running preview or recovery job at any time by calling the [cancel](../api/entrarecoveryservices-recoveryjobbase-cancel.md) action. Canceling a job updates its status to `abandoned`. + +## Audit logs + +All operations performed through the backup and recovery APIs are logged in the Microsoft Entra [audit logs](../resources/directoryaudit.md) with the category "Backup and Recovery". You can use these logs to track when snapshots were created, when preview and recovery jobs were initiated, and their outcomes. + +## Permissions and privileges + +The backup and recovery APIs support both delegated and application permissions. For more information about permissions required to call these APIs, see the individual API reference topics for each operation. + +In addition to Microsoft Graph permissions, the signed-in user must be assigned one of the following [Microsoft Entra roles](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json): + +- **Microsoft Entra Backup Reader** — For read operations (listing snapshots, viewing jobs, retrieving changes). +- **Microsoft Entra Backup Administrator** — For write operations (creating preview jobs, creating recovery jobs, canceling jobs). + +## Limitations + +- This feature isn't supported for Entra External ID and Azure AD B2C tenants. +- Backup snapshots are created automatically once per day and retained for five days. You can't create, modify, delete, or export snapshots. +- Not all attributes and linked attributes of the [supported object types](#supported-directory-objects) can be recovered. +- On-premises Active Directory-synced objects can't be recovered through these APIs, though changes are visible in snapshots. +- Job completion time depends on the volume of data and processing complexity. Allow at least 1 hour to complete. +- Recovery to another tenant isn't supported. +- Recovery operations don't generate change notifications through [subscriptions](/graph/api/resources/subscription) or delta records for [change tracking](/graph/delta-query-overview). Applications that rely on these mechanisms aren't notified of changes made by recovery jobs. + +## Throttling + +The backup and recovery APIs follow standard [Microsoft Graph service-specific throttling limits](/graph/throttling-limits). Monitor `429 Too Many Requests` responses and implement retry logic using the `Retry-After` header. + +## Related content + +- [snapshot resource type](entrarecoveryservices-snapshot.md) +- [recoveryJobBase resource type](entrarecoveryservices-recoveryjobbase.md) +- [recoveryPreviewJob resource type](entrarecoveryservices-recoverypreviewjob.md) +- [recoveryJob resource type](entrarecoveryservices-recoveryjob.md) diff --git a/api-reference/v1.0/resources/entrarecoveryservices-entitytypeandids.md b/api-reference/v1.0/resources/entrarecoveryservices-entitytypeandids.md new file mode 100644 index 00000000000..6467ef3925c --- /dev/null +++ b/api-reference/v1.0/resources/entrarecoveryservices-entitytypeandids.md @@ -0,0 +1,41 @@ +--- +title: "entityTypeAndIds resource type" +description: "Specifies an entity type and a list of entity IDs to scope recovery operations." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: resourcePageType +--- + +# entityTypeAndIds resource type + +Namespace: microsoft.graph.entraRecoveryServices + +Specifies an entity type and a list of entity IDs to scope recovery operations. Used within [recoveryJobEntityNameAndIdsFilter](entrarecoveryservices-recoveryjobentitynameandidsfilter.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|entityIds|String collection|The list of entity IDs for the specified entity type.| +|entityType|[microsoft.graph.entraRecoveryServices.resourceTypeName](../resources/enums-entrarecoveryservices.md)|The type of directory entity. The possible values are: `user`, `group`, `conditionalAccessPolicy`, `namedLocationPolicy`, `authenticationMethodPolicy`, `authorizationPolicy`, `authenticationStrengthPolicy`, `application`, `servicePrincipal`, `unknownFutureValue`, `oAuth2PermissionGrant`, `appRoleAssignment`, `organization`. You must use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `oAuth2PermissionGrant`, `appRoleAssignment`, `organization`.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.entraRecoveryServices.entityTypeAndIds", + "entityType": "String", + "entityIds": [ + "String" + ] +} +``` diff --git a/api-reference/v1.0/resources/entrarecoveryservices-recovery.md b/api-reference/v1.0/resources/entrarecoveryservices-recovery.md new file mode 100644 index 00000000000..824e2caac1f --- /dev/null +++ b/api-reference/v1.0/resources/entrarecoveryservices-recovery.md @@ -0,0 +1,41 @@ +--- +title: "recovery resource type" +description: "Represents the entry point for the Microsoft Entra Backup and Recovery service for a tenant." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: resourcePageType +--- + +# recovery resource type + +Namespace: microsoft.graph.entraRecoveryServices + +Represents the entry point for the Microsoft Entra Backup and Recovery service. Provides access to snapshots and recovery jobs for a tenant, enabling administrators to restore directory objects to a previous state. + +## Methods +None. + +## Properties +None. + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|jobs|[microsoft.graph.entraRecoveryServices.recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md) collection|Collection of all recovery jobs (both preview and recovery) for the tenant.| +|snapshots|[microsoft.graph.entraRecoveryServices.snapshot](../resources/entrarecoveryservices-snapshot.md) collection|Collection of backup snapshots available for the tenant.| + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.entraRecoveryServices.recovery" +} +``` diff --git a/api-reference/v1.0/resources/entrarecoveryservices-recoverychangeobjectbase.md b/api-reference/v1.0/resources/entrarecoveryservices-recoverychangeobjectbase.md new file mode 100644 index 00000000000..89a0f339a7f --- /dev/null +++ b/api-reference/v1.0/resources/entrarecoveryservices-recoverychangeobjectbase.md @@ -0,0 +1,87 @@ +--- +title: "recoveryChangeObjectBase resource type" +description: "Represents a single object change in the context of tenant recovery." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: resourcePageType +--- + +# recoveryChangeObjectBase resource type + +Namespace: microsoft.graph.entraRecoveryServices + +Represents a single object change in the context of tenant recovery. Returned by the [getChanges](../api/entrarecoveryservices-recoverypreviewjob-getchanges.md) function on preview jobs and [getFailedChanges](../api/entrarecoveryservices-recoveryjob-getfailedchanges.md) function on recovery jobs. Each instance describes the entity being modified, the type of recovery action to be performed, and the delta between the current and target states. + +This resource is an open type that supports additional dynamic properties **deltaFromCurrent** and **currentState** in responses. + +## Methods +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|displayName|String|The display name of the changed object in its current state, used to uniquely identify the object. Supports `$filter` (`eq`, `ne`, `startswith`).| +|entityTypeName|[microsoft.graph.entraRecoveryServices.resourceTypeName](#resourcetypename-values)|The type of directory entity being modified. Supports `$filter` (`eq`, `ne`).| +|failureMessage|String|The error message if the change failed to apply. Only populated in [getFailedChanges](../api/entrarecoveryservices-recoveryjob-getfailedchanges.md) responses. `null` otherwise.| +|id|String|The unique identifier of the changed object. Supports `$filter` (`eq`, `ne`).| +|recoveryAction|[microsoft.graph.entraRecoveryServices.recoveryAction](#recoveryaction-values)|The type of recovery action to be performed on this object. Supports `$filter` (`eq`, `ne`).| + +### Additional properties + +In addition to the properties listed above, the following dynamic properties are included in responses: +- **deltaFromCurrent** - Contains the changes that will be applied during recovery, typed as the entity being modified (e.g., `microsoft.graph.user`). +- **currentState** - Contains the current state of the object for comparison, typed as the entity being modified. + +### recoveryAction values + +|Member|Description| +|:---|:---| +|softDelete|The object is soft deleted during recovery.| +|update|The object is updated during recovery.| +|restore|The object is restored during recovery.| +|unknownFutureValue|Evolvable enumeration sentinel value. Don't use.| + +### resourceTypeName values + +The following table lists the members of an [evolvable enumeration](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations). Use the `Prefer: include-unknown-enum-members` request header to get the following members: `oAuth2PermissionGrant`, `appRoleAssignment`, `organization`. + +|Member|Description| +|:---|:---| +|user|A user.| +|group|A group.| +|conditionalAccessPolicy|A Conditional Access policy.| +|namedLocationPolicy|A named location policy.| +|authenticationMethodPolicy|An authentication method policy.| +|authorizationPolicy|An authorization policy.| +|authenticationStrengthPolicy|An authentication strength policy.| +|application|An application.| +|servicePrincipal|A service principal.| +|unknownFutureValue|Evolvable enumeration sentinel value. Don't use.| +|oAuth2PermissionGrant|An OAuth 2.0 permission grant.| +|appRoleAssignment|An app role assignment.| +|organization|An organization.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryChangeObjectBase", + "id": "String (identifier)", + "entityTypeName": "String", + "displayName": "String", + "recoveryAction": "String", + "failureMessage": "String" +} +``` diff --git a/api-reference/v1.0/resources/entrarecoveryservices-recoveryjob.md b/api-reference/v1.0/resources/entrarecoveryservices-recoveryjob.md new file mode 100644 index 00000000000..e14d5bec400 --- /dev/null +++ b/api-reference/v1.0/resources/entrarecoveryservices-recoveryjob.md @@ -0,0 +1,73 @@ +--- +title: "recoveryJob resource type" +description: "Represents a recovery job that applies changes to restore a tenant's directory objects to a specific snapshot state." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: resourcePageType +--- + +# recoveryJob resource type + +Namespace: microsoft.graph.entraRecoveryServices + +Represents a recovery job that applies changes to restore a tenant's directory objects to a specific snapshot state. Inherits from [recoveryJobBase](entrarecoveryservices-recoveryjobbase.md). After the job completes, use the `getFailedChanges` function to review any changes that could not be applied. + +Inherits from [microsoft.graph.entraRecoveryServices.recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md). + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[List](../api/entrarecoveryservices-snapshot-list-recoveryjobs.md)|[microsoft.graph.entraRecoveryServices.recoveryJob](../resources/entrarecoveryservices-recoveryjob.md) collection|Get a list of the recoveryJob objects and their properties.| +|[Create](../api/entrarecoveryservices-snapshot-post-recoveryjobs.md)|[microsoft.graph.entraRecoveryServices.recoveryJob](../resources/entrarecoveryservices-recoveryjob.md)|Create a new recoveryJob object.| +|[Get](../api/entrarecoveryservices-recoveryjob-get.md)|[microsoft.graph.entraRecoveryServices.recoveryJob](../resources/entrarecoveryservices-recoveryjob.md)|Read the properties and relationships of a recoveryJob object.| +|[Get failed changes](../api/entrarecoveryservices-recoveryjob-getfailedchanges.md)|[microsoft.graph.entraRecoveryServices.recoveryChangeObjectBase](../resources/entrarecoveryservices-recoverychangeobjectbase.md) collection|Retrieve changes that failed to apply during recovery.| + + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|filteringCriteria|[microsoft.graph.entraRecoveryServices.recoveryJobFilteringCriteriaBase](../resources/entrarecoveryservices-recoveryjobfilteringcriteriabase.md)|Optional filtering criteria used to scope the job to specific entity types or entity IDs. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md).| +|id|String|The unique identifier for the job. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md). Supports `$filter` (`eq`, `ne`).| +|jobCompletionDateTime|DateTimeOffset|The date and time when the job completed. Null if the job is still running. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md).| +|jobStartDateTime|DateTimeOffset|The date and time when the job started. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md).| +|status|[microsoft.graph.entraRecoveryServices.recoveryStatus](../resources/entrarecoveryservices-recoveryjobbase.md#recoverystatus-values)|The current status of the job. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md). Supports `$filter` (`eq`, `ne`).| +|targetStateDateTime|DateTimeOffset|The target snapshot timestamp to which the tenant is being restored. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md). Supports `$filter` (`eq`, `ne`).| +|totalChangedLinksCalculated|Int32|The total count of changed directory object links (relationships) calculated by the job. `null` until the job completes calculation. This value can differ from **totalLinksModified** because some link changes may fail to apply during recovery. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md).| +|totalChangedObjectsCalculated|Int32|The total count of changed directory objects calculated by the job. `null` until the job completes calculation. This value can differ from **totalObjectsModified** because some object changes may fail to apply during recovery. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md).| +|totalFailedChanges|Int32|The count of changes (including both objects and links) that failed to apply during recovery.| +|totalLinksModified|Int32|The count of directory object links (relationships) that were successfully modified during recovery. This value may be less than **totalChangedLinksCalculated** if some link changes failed.| +|totalObjectsModified|Int32|The count of directory objects that were successfully modified during recovery. This value may be less than **totalChangedObjectsCalculated** if some object changes failed.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryJob", + "id": "String (identifier)", + "status": "String", + "targetStateDateTime": "String (timestamp)", + "jobStartDateTime": "String (timestamp)", + "jobCompletionDateTime": "String (timestamp)", + "filteringCriteria": { + "@odata.type": "microsoft.graph.entraRecoveryServices.recoveryJobFilteringCriteriaBase" + }, + "totalChangedObjectsCalculated": "Integer", + "totalChangedLinksCalculated": "Integer", + "totalObjectsModified": "Integer", + "totalLinksModified": "Integer", + "totalFailedChanges": "Integer" +} +``` diff --git a/api-reference/v1.0/resources/entrarecoveryservices-recoveryjobbase.md b/api-reference/v1.0/resources/entrarecoveryservices-recoveryjobbase.md new file mode 100644 index 00000000000..7cca5ff3d3b --- /dev/null +++ b/api-reference/v1.0/resources/entrarecoveryservices-recoveryjobbase.md @@ -0,0 +1,76 @@ +--- +title: "recoveryJobBase resource type" +description: "Abstract base type for recovery jobs. Defines common properties shared by preview and recovery jobs." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: resourcePageType +--- + +# recoveryJobBase resource type + +Namespace: microsoft.graph.entraRecoveryServices + +Abstract base type for recovery jobs. Defines common properties shared by [recoveryPreviewJob](entrarecoveryservices-recoverypreviewjob.md) and [recoveryJob](entrarecoveryservices-recoveryjob.md). Cannot be instantiated directly. Jobs follow the resource-based long running operation (RELO) pattern. + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[List](../api/entrarecoveryservices-recovery-list-jobs.md)|[microsoft.graph.entraRecoveryServices.recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md) collection|Get a list of the recoveryJobBase objects and their properties.| +|[Cancel](../api/entrarecoveryservices-recoveryjobbase-cancel.md)|None|Cancel a running recovery or preview job.| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|filteringCriteria|[microsoft.graph.entraRecoveryServices.recoveryJobFilteringCriteriaBase](../resources/entrarecoveryservices-recoveryjobfilteringcriteriabase.md)|Optional filtering criteria used to scope the job to specific entity types or entity IDs.| +|id|String|The unique identifier for the job. Supports `$filter` (`eq`, `ne`).| +|jobCompletionDateTime|DateTimeOffset|The date and time when the job completed. Null if the job is still running.| +|jobStartDateTime|DateTimeOffset|The date and time when the job started.| +|status|[microsoft.graph.entraRecoveryServices.recoveryStatus](#recoverystatus-values)|The current status of the job. Supports `$filter` (`eq`, `ne`).| +|targetStateDateTime|DateTimeOffset|The target snapshot timestamp to which the tenant is being restored. Supports `$filter` (`eq`, `ne`).| +|totalChangedLinksCalculated|Int32|The total count of changed directory object links (relationships) calculated by the job. `null` until the job completes calculation. Not all calculated link changes may be successfully applied; see **totalLinksModified** on derived types for the count of links that were actually modified.| +|totalChangedObjectsCalculated|Int32|The total count of changed directory objects calculated by the job. `null` until the job completes calculation. Not all calculated object changes may be successfully applied; see **totalObjectsModified** on derived types for the count of objects that were actually modified.| + +### recoveryStatus values + +The following table lists the members of an [evolvable enumeration](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations). Use the `Prefer: include-unknown-enum-members` request header to get the following members: `calculating`, `loadingData`. + +|Member|Description| +|:---|:---| +|initialized|The job is initialized but hasn't started.| +|running|The job is in progress.| +|successful|The job completed successfully.| +|failed|The job didn't complete successfully.| +|abandoned|The job was abandoned by the user.| +|unknownFutureValue|Evolvable enumeration sentinel value. Don't use.| +|calculating|The job is calculating the recovery preview.| +|loadingData|The job is loading snapshot data.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryJobBase", + "id": "String (identifier)", + "status": "String", + "targetStateDateTime": "String (timestamp)", + "jobStartDateTime": "String (timestamp)", + "jobCompletionDateTime": "String (timestamp)", + "filteringCriteria": { + "@odata.type": "microsoft.graph.entraRecoveryServices.recoveryJobFilteringCriteriaBase" + }, + "totalChangedObjectsCalculated": "Integer", + "totalChangedLinksCalculated": "Integer" +} +``` diff --git a/api-reference/v1.0/resources/entrarecoveryservices-recoveryjobentitynameandidsfilter.md b/api-reference/v1.0/resources/entrarecoveryservices-recoveryjobentitynameandidsfilter.md new file mode 100644 index 00000000000..4f408605c1f --- /dev/null +++ b/api-reference/v1.0/resources/entrarecoveryservices-recoveryjobentitynameandidsfilter.md @@ -0,0 +1,43 @@ +--- +title: "recoveryJobEntityNameAndIdsFilter resource type" +description: "Filters recovery jobs to only include changes for specific entities identified by type and ID." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: resourcePageType +--- + +# recoveryJobEntityNameAndIdsFilter resource type + +Namespace: microsoft.graph.entraRecoveryServices + +Filters a [recovery job](../resources/entrarecoveryservices-recoveryjob.md) to only include changes for specific entities identified by type and ID. Used as **filteringCriteria** in [Create recoveryPreviewJob](../api/entrarecoveryservices-snapshot-post-recoverypreviewjobs.md) and [Create recoveryJob](../api/entrarecoveryservices-snapshot-post-recoveryjobs.md) operations. + +Inherits from [microsoft.graph.entraRecoveryServices.recoveryJobFilteringCriteriaBase](../resources/entrarecoveryservices-recoveryjobfilteringcriteriabase.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|filterValues|[microsoft.graph.entraRecoveryServices.entityTypeAndIds](../resources/entrarecoveryservices-entitytypeandids.md) collection|The list of entity type and ID pairs to include in the recovery job. Duplicate entity types are not allowed and return a `400 Bad Request` error.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryJobEntityNameAndIdsFilter", + "filterValues": [ + { + "@odata.type": "microsoft.graph.entraRecoveryServices.entityTypeAndIds" + } + ] +} +``` diff --git a/api-reference/v1.0/resources/entrarecoveryservices-recoveryjobentitynamesfilter.md b/api-reference/v1.0/resources/entrarecoveryservices-recoveryjobentitynamesfilter.md new file mode 100644 index 00000000000..5eaf6cdb6ab --- /dev/null +++ b/api-reference/v1.0/resources/entrarecoveryservices-recoveryjobentitynamesfilter.md @@ -0,0 +1,41 @@ +--- +title: "recoveryJobEntityNamesFilter resource type" +description: "Filters recovery jobs to only include changes for specified entity types." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: resourcePageType +--- + +# recoveryJobEntityNamesFilter resource type + +Namespace: microsoft.graph.entraRecoveryServices + +Filters a [recovery job](../resources/entrarecoveryservices-recoveryjob.md) to only include changes for specified entity types (for example, only users, or only users and groups). Used as **filteringCriteria** in [Create recoveryPreviewJob](../api/entrarecoveryservices-snapshot-post-recoverypreviewjobs.md) and [Create recoveryJob](../api/entrarecoveryservices-snapshot-post-recoveryjobs.md) operations. + +Inherits from [microsoft.graph.entraRecoveryServices.recoveryJobFilteringCriteriaBase](../resources/entrarecoveryservices-recoveryjobfilteringcriteriabase.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|entityTypes|[microsoft.graph.entraRecoveryServices.resourceTypeName](../resources/enums-entrarecoveryservices.md) collection|The list of entity types to include in the recovery job.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryJobEntityNamesFilter", + "entityTypes": [ + "String" + ] +} +``` diff --git a/api-reference/v1.0/resources/entrarecoveryservices-recoveryjobfilteringcriteriabase.md b/api-reference/v1.0/resources/entrarecoveryservices-recoveryjobfilteringcriteriabase.md new file mode 100644 index 00000000000..646e1d8352b --- /dev/null +++ b/api-reference/v1.0/resources/entrarecoveryservices-recoveryjobfilteringcriteriabase.md @@ -0,0 +1,38 @@ +--- +title: "recoveryJobFilteringCriteriaBase resource type" +description: "Base complex type for filtering criteria used to scope recovery jobs to specific entity types or entity IDs." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: resourcePageType +--- + +# recoveryJobFilteringCriteriaBase resource type + +Namespace: microsoft.graph.entraRecoveryServices + +Base complex type for filtering criteria used to scope [recovery jobs](../resources/entrarecoveryservices-recoveryjob.md) to specific entity types or entity IDs. This type has no properties of its own. + +Derived types: +- [recoveryJobEntityNamesFilter](entrarecoveryservices-recoveryjobentitynamesfilter.md) +- [recoveryJobEntityNameAndIdsFilter](entrarecoveryservices-recoveryjobentitynameandidsfilter.md) + +## Properties +None. + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryJobFilteringCriteriaBase" +} +``` diff --git a/api-reference/v1.0/resources/entrarecoveryservices-recoverypreviewjob.md b/api-reference/v1.0/resources/entrarecoveryservices-recoverypreviewjob.md new file mode 100644 index 00000000000..a6f3496e811 --- /dev/null +++ b/api-reference/v1.0/resources/entrarecoveryservices-recoverypreviewjob.md @@ -0,0 +1,66 @@ +--- +title: "recoveryPreviewJob resource type" +description: "Represents a preview job that calculates and enumerates the changes required to recover a tenant to a specific snapshot state." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: resourcePageType +--- + +# recoveryPreviewJob resource type + +Namespace: microsoft.graph.entraRecoveryServices + +Represents a preview job that calculates and enumerates the changes required to recover a tenant to a specific snapshot state. Inherits from [recoveryJobBase](entrarecoveryservices-recoveryjobbase.md). Use the [getChanges](../api/entrarecoveryservices-recoverypreviewjob-getchanges.md) function to retrieve the calculated changes after the job completes. + +Inherits from [microsoft.graph.entraRecoveryServices.recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md). + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[List](../api/entrarecoveryservices-snapshot-list-recoverypreviewjobs.md)|[microsoft.graph.entraRecoveryServices.recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md) collection|Get a list of the recoveryPreviewJob objects and their properties.| +|[Create](../api/entrarecoveryservices-snapshot-post-recoverypreviewjobs.md)|[microsoft.graph.entraRecoveryServices.recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md)|Create a new recoveryPreviewJob object.| +|[Get](../api/entrarecoveryservices-recoverypreviewjob-get.md)|[microsoft.graph.entraRecoveryServices.recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md)|Read the properties and relationships of a recoveryPreviewJob object.| +|[Get changes](../api/entrarecoveryservices-recoverypreviewjob-getchanges.md)|[microsoft.graph.entraRecoveryServices.recoveryChangeObjectBase](../resources/entrarecoveryservices-recoverychangeobjectbase.md) collection|Retrieve the collection of changes calculated by the preview job.| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|filteringCriteria|[microsoft.graph.entraRecoveryServices.recoveryJobFilteringCriteriaBase](../resources/entrarecoveryservices-recoveryjobfilteringcriteriabase.md)|Optional filtering criteria used to scope the job to specific entity types or entity IDs. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md).| +|id|String|The unique identifier for the job. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md). Supports `$filter` (`eq`, `ne`).| +|jobCompletionDateTime|DateTimeOffset|The date and time when the job completed. `null` if the job is still running. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md).| +|jobStartDateTime|DateTimeOffset|The date and time when the job started. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md).| +|status|[microsoft.graph.entraRecoveryServices.recoveryStatus](../resources/entrarecoveryservices-recoveryjobbase.md#recoverystatus-values)|The current status of the job. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md). Supports `$filter` (`eq`, `ne`).| +|targetStateDateTime|DateTimeOffset|The target snapshot timestamp to which the tenant is being restored. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md). Supports `$filter` (`eq`, `ne`).| +|totalChangedLinksCalculated|Int32|The total count of changed directory object links (relationships) calculated by the job. `null` until the job completes calculation. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md).| +|totalChangedObjectsCalculated|Int32|The total count of changed directory objects calculated by the job. `null` until the job completes calculation. Inherited from [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.entraRecoveryServices.recoveryPreviewJob", + "id": "String (identifier)", + "status": "String", + "targetStateDateTime": "String (timestamp)", + "jobStartDateTime": "String (timestamp)", + "jobCompletionDateTime": "String (timestamp)", + "filteringCriteria": { + "@odata.type": "microsoft.graph.entraRecoveryServices.recoveryJobFilteringCriteriaBase" + }, + "totalChangedObjectsCalculated": "Integer", + "totalChangedLinksCalculated": "Integer" +} +``` diff --git a/api-reference/v1.0/resources/entrarecoveryservices-snapshot.md b/api-reference/v1.0/resources/entrarecoveryservices-snapshot.md new file mode 100644 index 00000000000..fcab09a755c --- /dev/null +++ b/api-reference/v1.0/resources/entrarecoveryservices-snapshot.md @@ -0,0 +1,52 @@ +--- +title: "snapshot resource type" +description: "Represents a backup snapshot of the tenant's directory data at a specific point in time." +author: "yuhko-msft" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: resourcePageType +--- + +# snapshot resource type + +Namespace: microsoft.graph.entraRecoveryServices + +Represents a backup snapshot of the tenant's directory data at a specific point in time. Each snapshot defines a timestamp to which a tenant's state can be recovered. The **id** property is a base64-encoded representation of the snapshot timestamp. + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[List snapshots](../api/entrarecoveryservices-recovery-list-snapshots.md)|[microsoft.graph.entraRecoveryServices.snapshot](../resources/entrarecoveryservices-snapshot.md) collection|Get a list of the snapshot objects and their properties.| +|[Get snapshot](../api/entrarecoveryservices-snapshot-get.md)|[microsoft.graph.entraRecoveryServices.snapshot](../resources/entrarecoveryservices-snapshot.md)|Read the properties and relationships of a snapshot object.| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|createdDateTime|DateTimeOffset|The date and time when the snapshot was created.| +|id|String|The unique identifier for the snapshot. This ID is the base64-encoded representation of the snapshot timestamp.| +|totalChangedObjects|Int32|The total number of changed objects identified in this snapshot.| + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|recoveryJobs|[microsoft.graph.entraRecoveryServices.recoveryJob](../resources/entrarecoveryservices-recoveryjob.md) collection|Collection of recovery jobs created for this snapshot.| +|recoveryPreviewJobs|[microsoft.graph.entraRecoveryServices.recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md) collection|Collection of preview jobs created for this snapshot.| + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.entraRecoveryServices.snapshot", + "id": "String (identifier)", + "createdDateTime": "String (timestamp)", + "totalChangedObjects": "Integer" +} +``` diff --git a/api-reference/v1.0/resources/enums-entrarecoveryservices.md b/api-reference/v1.0/resources/enums-entrarecoveryservices.md new file mode 100644 index 00000000000..65279ce6658 --- /dev/null +++ b/api-reference/v1.0/resources/enums-entrarecoveryservices.md @@ -0,0 +1,59 @@ +--- +title: "Entra recovery services enum values" +description: "Microsoft Graph entra recovery services enumeration values" +author: "mapamu" +ms.date: 06/05/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id" +doc_type: enumTypes +--- + +# Microsoft Graph entra recovery services enumeration values + +Namespace: microsoft.graph.entraRecoveryServices + +### recoveryAction values + +| Member | +|:---| +| softDelete | +| update | +| restore | +| unknownFutureValue | + +### recoveryStatus values + +| Member | +|:---| +| initialized | +| running | +| successful | +| failed | +| abandoned | +| unknownFutureValue | +| calculating | +| loadingData | + +### resourceTypeName values + +| Member | +|:---| +| user | +| group | +| conditionalAccessPolicy | +| namedLocationPolicy | +| authenticationMethodPolicy | +| authorizationPolicy | +| authenticationStrengthPolicy | +| application | +| servicePrincipal | +| unknownFutureValue | +| oAuth2PermissionGrant | +| appRoleAssignment | +| organization | + + diff --git a/api-reference/v1.0/toc/toc.mapping.json b/api-reference/v1.0/toc/toc.mapping.json index e471eba181b..228656b2148 100644 --- a/api-reference/v1.0/toc/toc.mapping.json +++ b/api-reference/v1.0/toc/toc.mapping.json @@ -841,6 +841,24 @@ "unifiedRoleDefinition", "unifiedRoleAssignment" ] + }, + { + "name": "Entra Backup and Recovery", + "overview": "../../resources/entrarecoveryservices-backup-recovery-overview.md", + "resources": [ + "microsoft.graph.entraRecoveryServices.recovery", + "microsoft.graph.entraRecoveryServices.recoveryChangeObjectBase", + "microsoft.graph.entraRecoveryServices.recoveryJob", + "microsoft.graph.entraRecoveryServices.recoveryJobBase", + "microsoft.graph.entraRecoveryServices.recoveryPreviewJob", + "microsoft.graph.entraRecoveryServices.snapshot" + ], + "complexTypes": [ + "microsoft.graph.entraRecoveryServices.entityTypeAndIds", + "microsoft.graph.entraRecoveryServices.recoveryJobEntityNameAndIdsFilter", + "microsoft.graph.entraRecoveryServices.recoveryJobEntityNamesFilter", + "microsoft.graph.entraRecoveryServices.recoveryJobFilteringCriteriaBase" + ] } ] }, diff --git a/changelog/Microsoft.Entra.RecoveryServices.json b/changelog/Microsoft.Entra.RecoveryServices.json index 34603fe1122..ad7348b0f06 100644 --- a/changelog/Microsoft.Entra.RecoveryServices.json +++ b/changelog/Microsoft.Entra.RecoveryServices.json @@ -1,5 +1,151 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Relationship", + "ChangedApiName": "recovery", + "ChangeType": "Addition", + "Description": "Added the **recovery** relationship to the [directory](https://learn.microsoft.com/en-us/graph/api/resources/directory?view=graph-rest-v1.0) resource.", + "Target": "directory" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Enumeration", + "ChangedApiName": "recoveryAction", + "ChangeType": "Addition", + "Description": "Added the **recoveryAction** enumeration type.", + "Target": "recoveryAction" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Enumeration", + "ChangedApiName": "recoveryStatus", + "ChangeType": "Addition", + "Description": "Added the **recoveryStatus** enumeration type.", + "Target": "recoveryStatus" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Enumeration", + "ChangedApiName": "resourceTypeName", + "ChangeType": "Addition", + "Description": "Added the **resourceTypeName** enumeration type.", + "Target": "resourceTypeName" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Resource", + "ChangedApiName": "entityTypeAndIds", + "ChangeType": "Addition", + "Description": "Added the [entityTypeAndIds](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-entitytypeandids?view=graph-rest-v1.0) resource.", + "Target": "entityTypeAndIds" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Resource", + "ChangedApiName": "recoveryJobEntityNameAndIdsFilter", + "ChangeType": "Addition", + "Description": "Added the [recoveryJobEntityNameAndIdsFilter](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-recoveryjobentitynameandidsfilter?view=graph-rest-v1.0) resource.", + "Target": "recoveryJobEntityNameAndIdsFilter" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Resource", + "ChangedApiName": "recoveryJobEntityNamesFilter", + "ChangeType": "Addition", + "Description": "Added the [recoveryJobEntityNamesFilter](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-recoveryjobentitynamesfilter?view=graph-rest-v1.0) resource.", + "Target": "recoveryJobEntityNamesFilter" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Resource", + "ChangedApiName": "recoveryJobFilteringCriteriaBase", + "ChangeType": "Addition", + "Description": "Added the [recoveryJobFilteringCriteriaBase](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-recoveryjobfilteringcriteriabase?view=graph-rest-v1.0) resource.", + "Target": "recoveryJobFilteringCriteriaBase" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Resource", + "ChangedApiName": "recovery", + "ChangeType": "Addition", + "Description": "Added the [recovery](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-recovery?view=graph-rest-v1.0) resource.", + "Target": "recovery" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Resource", + "ChangedApiName": "recoveryChangeObjectBase", + "ChangeType": "Addition", + "Description": "Added the [recoveryChangeObjectBase](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-recoverychangeobjectbase?view=graph-rest-v1.0) resource.", + "Target": "recoveryChangeObjectBase" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Resource", + "ChangedApiName": "recoveryJob", + "ChangeType": "Addition", + "Description": "Added the [recoveryJob](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-recoveryjob?view=graph-rest-v1.0) resource.", + "Target": "recoveryJob" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Resource", + "ChangedApiName": "recoveryJobBase", + "ChangeType": "Addition", + "Description": "Added the [recoveryJobBase](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-recoveryjobbase?view=graph-rest-v1.0) resource.", + "Target": "recoveryJobBase" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Resource", + "ChangedApiName": "recoveryPreviewJob", + "ChangeType": "Addition", + "Description": "Added the [recoveryPreviewJob](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-recoverypreviewjob?view=graph-rest-v1.0) resource.", + "Target": "recoveryPreviewJob" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Resource", + "ChangedApiName": "snapshot", + "ChangeType": "Addition", + "Description": "Added the [snapshot](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-snapshot?view=graph-rest-v1.0) resource.", + "Target": "snapshot" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Method", + "ChangedApiName": "cancel", + "ChangeType": "Addition", + "Description": "Added the [cancel](https://learn.microsoft.com/en-us/graph/api/entrarecoveryservices-recoveryjobbase-cancel?view=graph-rest-v1.0) method to the [recoveryJobBase](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-recoveryjobbase?view=graph-rest-v1.0) resource.", + "Target": "recoveryJobBase" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Method", + "ChangedApiName": "getChanges", + "ChangeType": "Addition", + "Description": "Added the [getChanges](https://learn.microsoft.com/en-us/graph/api/entrarecoveryservices-recoverypreviewjob-getchanges?view=graph-rest-v1.0) method to the [recoveryPreviewJob](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-recoverypreviewjob?view=graph-rest-v1.0) resource.", + "Target": "recoveryPreviewJob" + }, + { + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "ApiChange": "Method", + "ChangedApiName": "getFailedChanges", + "ChangeType": "Addition", + "Description": "Added the [getFailedChanges](https://learn.microsoft.com/en-us/graph/api/entrarecoveryservices-recoveryjob-getfailedchanges?view=graph-rest-v1.0) method to the [recoveryJob](https://learn.microsoft.com/en-us/graph/api/resources/entrarecoveryservices-recoveryjob?view=graph-rest-v1.0) resource.", + "Target": "recoveryJob" + } + ], + "Id": "8bf4ba3e-beb0-4e48-a1a8-bc07b26e0232", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-14T19:39:39.2833556Z", + "WorkloadArea": "Backup and recovery", + "SubArea": "Microsoft Entra backup and recovery" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index b080078bacd..d7636e82087 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -25,6 +25,10 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what - Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer) resource type to create or update up to 20 columnDefinition objects in a single request. - Added the **appliedByUser** parameter to the [assignSensitivityLabel](/graph/api/driveitem-assignsensitivitylabel) action on the [driveItem](/graph/api/resources/driveitem) resource. This parameter allows app-only callers to specify the user identity on whose behalf the sensitivity label is applied. +### Identity and access | Directory management + +Added the [recovery](/graph/api/resources/entrarecoveryservices-recovery) resource type and related methods to programmatically recover critical Microsoft Entra directory objects from automatically created point-in-time snapshots. Use these APIs to inspect available snapshots, preview and scope changes before restoration, run recovery jobs, monitor progress, and review failed changes. + ### Teamwork and communications | Calls and online meetings - Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) and [getAllTranscripts](/graph/api/onlinemeeting-getalltranscripts) methods to document a service-update issue that can cause paginated requests to return an empty collection followed by duplicate items. @@ -139,6 +143,10 @@ Added the `Group.ManageProtection.All` delegated permission as the least privile - Added the **sponsorOf** relationship to the [user](/graph/api/resources/user?view=graph-rest-beta&preserve-view=true) resource type to represent the directory objects that a user sponsors. - Added the **managerApplications** property to the [agentIdentity](/graph/api/resources/agentidentity?view=graph-rest-beta&preserve-view=true) and [agentIdentityBlueprintPrincipal](/graph/api/resources/agentidentityblueprintprincipal?view=graph-rest-beta&preserve-view=true) resource types to represent the collection of applications designated as managers of the backing agent identity blueprint. +### Files | Reports + +Added the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to the [reportRoot](/graph/api/resources/reportroot?view=graph-rest-beta&preserve-view=true) resource to retrieve aggregated OneDrive and SharePoint API usage metrics for a tenant. + ### Identity and access | Governance - Added the [Get](/graph/api/accesspackagesubject-get) and [Update](/graph/api/accesspackagesubject-update) methods to the [accessPackageSubject](/graph/api/resources/accesspackagesubject) resource type to manage the subject lifecycle of external directory users in Microsoft Entra entitlement management. From 0229a214f96620a0ce6002c3a6a37e54db7e9def Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 17 Aug 2026 12:28:54 -0600 Subject: [PATCH 052/189] Update reference TOC (#29452) Co-authored-by: Microsoft Graph DevX Tooling --- .../v1.0/toc/identity-and-access/toc.yml | 58 +++++++++++++++++++ 1 file changed, 58 insertions(+) diff --git a/api-reference/v1.0/toc/identity-and-access/toc.yml b/api-reference/v1.0/toc/identity-and-access/toc.yml index 2be94903dba..49a2798e5bf 100644 --- a/api-reference/v1.0/toc/identity-and-access/toc.yml +++ b/api-reference/v1.0/toc/identity-and-access/toc.yml @@ -244,6 +244,64 @@ items: href: ../../api/domain-list-serviceconfigurationrecords.md - name: List verification DNS records href: ../../api/domain-list-verificationdnsrecords.md + - name: Entra Backup and Recovery + items: + - name: Overview + href: ../../resources/entrarecoveryservices-backup-recovery-overview.md + - name: Recovery + href: ../../resources/entrarecoveryservices-recovery.md + - name: Recovery change object base + href: ../../resources/entrarecoveryservices-recoverychangeobjectbase.md + - name: Recovery job + items: + - name: Recovery job + href: ../../resources/entrarecoveryservices-recoveryjob.md + - name: List + href: ../../api/entrarecoveryservices-snapshot-list-recoveryjobs.md + - name: Create + href: ../../api/entrarecoveryservices-snapshot-post-recoveryjobs.md + - name: Get + href: ../../api/entrarecoveryservices-recoveryjob-get.md + - name: Get failed changes + href: ../../api/entrarecoveryservices-recoveryjob-getfailedchanges.md + - name: Recovery job base + items: + - name: Recovery job base + href: ../../resources/entrarecoveryservices-recoveryjobbase.md + - name: List + href: ../../api/entrarecoveryservices-recovery-list-jobs.md + - name: Cancel + href: ../../api/entrarecoveryservices-recoveryjobbase-cancel.md + - name: Recovery preview job + items: + - name: Recovery preview job + href: ../../resources/entrarecoveryservices-recoverypreviewjob.md + - name: List + href: ../../api/entrarecoveryservices-snapshot-list-recoverypreviewjobs.md + - name: Create + href: ../../api/entrarecoveryservices-snapshot-post-recoverypreviewjobs.md + - name: Get + href: ../../api/entrarecoveryservices-recoverypreviewjob-get.md + - name: Get changes + href: ../../api/entrarecoveryservices-recoverypreviewjob-getchanges.md + - name: Snapshot + items: + - name: Snapshot + href: ../../resources/entrarecoveryservices-snapshot.md + - name: List snapshots + href: ../../api/entrarecoveryservices-recovery-list-snapshots.md + - name: Get snapshot + href: ../../api/entrarecoveryservices-snapshot-get.md + - name: Complex types + items: + - name: Entity type and ids + href: ../../resources/entrarecoveryservices-entitytypeandids.md + - name: Recovery job entity name and ids filter + href: ../../resources/entrarecoveryservices-recoveryjobentitynameandidsfilter.md + - name: Recovery job entity names filter + href: ../../resources/entrarecoveryservices-recoveryjobentitynamesfilter.md + - name: Recovery job filtering criteria base + href: ../../resources/entrarecoveryservices-recoveryjobfilteringcriteriabase.md - name: Group setting items: - name: Group setting From 0523e7838741c0c2a68005fdc0050ba1a92a0d09 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 17 Aug 2026 12:30:05 -0600 Subject: [PATCH 053/189] Update cloud support status (#29451) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/api/participant-reportsyntheticmedia.md | 2 ++ .../v1.0/api/entrarecoveryservices-recovery-list-jobs.md | 2 ++ .../v1.0/api/entrarecoveryservices-recovery-list-snapshots.md | 2 ++ api-reference/v1.0/api/entrarecoveryservices-recoveryjob-get.md | 2 ++ .../v1.0/api/entrarecoveryservices-recoveryjobbase-cancel.md | 2 ++ .../v1.0/api/entrarecoveryservices-recoverypreviewjob-get.md | 2 ++ api-reference/v1.0/api/entrarecoveryservices-snapshot-get.md | 2 ++ .../api/entrarecoveryservices-snapshot-list-recoveryjobs.md | 2 ++ .../entrarecoveryservices-snapshot-list-recoverypreviewjobs.md | 2 ++ 9 files changed, 18 insertions(+) diff --git a/api-reference/beta/api/participant-reportsyntheticmedia.md b/api-reference/beta/api/participant-reportsyntheticmedia.md index 4a596bafb08..947cf2d4ede 100644 --- a/api-reference/beta/api/participant-reportsyntheticmedia.md +++ b/api-reference/beta/api/participant-reportsyntheticmedia.md @@ -22,6 +22,8 @@ Third-party bots can invoke this action only when the meeting tenant administrat The detection bot must be admitted to the call before it can call this action. For more information about registering a calling bot and joining calls, see [Calls and online meetings](../resources/communications-api-overview.md). The bot obtains the call ID and participant ID from the call roster and subsequent participant roster update notifications, and uses the [call](../resources/call.md)'s **id** as `{call-id}` and the [participant](../resources/participant.md)'s **id** as `{participant-id}` in the request URL. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/entrarecoveryservices-recovery-list-jobs.md b/api-reference/v1.0/api/entrarecoveryservices-recovery-list-jobs.md index 2e4f55a1930..dce55471113 100644 --- a/api-reference/v1.0/api/entrarecoveryservices-recovery-list-jobs.md +++ b/api-reference/v1.0/api/entrarecoveryservices-recovery-list-jobs.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph.entraRecoveryServices Get a list of all recovery [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md) objects (both preview and recovery jobs) across all snapshots for the tenant. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/entrarecoveryservices-recovery-list-snapshots.md b/api-reference/v1.0/api/entrarecoveryservices-recovery-list-snapshots.md index f07ead269b9..7667ca3d0d2 100644 --- a/api-reference/v1.0/api/entrarecoveryservices-recovery-list-snapshots.md +++ b/api-reference/v1.0/api/entrarecoveryservices-recovery-list-snapshots.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph.entraRecoveryServices Get a list of available backup [snapshot](../resources/entrarecoveryservices-snapshot.md) objects for the tenant. Snapshots represent points in time to which the tenant can be restored. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/entrarecoveryservices-recoveryjob-get.md b/api-reference/v1.0/api/entrarecoveryservices-recoveryjob-get.md index d9a8fed3a01..5ceb47fe662 100644 --- a/api-reference/v1.0/api/entrarecoveryservices-recoveryjob-get.md +++ b/api-reference/v1.0/api/entrarecoveryservices-recoveryjob-get.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph.entraRecoveryServices Read the properties and relationships of a [recoveryJob](../resources/entrarecoveryservices-recoveryjob.md) object to check the status of the recovery operation. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/entrarecoveryservices-recoveryjobbase-cancel.md b/api-reference/v1.0/api/entrarecoveryservices-recoveryjobbase-cancel.md index 23e3760c87f..17e4b7ef45f 100644 --- a/api-reference/v1.0/api/entrarecoveryservices-recoveryjobbase-cancel.md +++ b/api-reference/v1.0/api/entrarecoveryservices-recoveryjobbase-cancel.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph.entraRecoveryServices Cancel a running [recoveryJobBase](../resources/entrarecoveryservices-recoveryjobbase.md) object (either a preview or recovery job). The job must be in a non-terminal state (`initialized`, `calculating`, `loadingData`, or `running`). After cancellation, the job status changes to `abandoned`. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/entrarecoveryservices-recoverypreviewjob-get.md b/api-reference/v1.0/api/entrarecoveryservices-recoverypreviewjob-get.md index e2122f047d4..501a0e325b7 100644 --- a/api-reference/v1.0/api/entrarecoveryservices-recoverypreviewjob-get.md +++ b/api-reference/v1.0/api/entrarecoveryservices-recoverypreviewjob-get.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph.entraRecoveryServices Read the properties and relationships of a [recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md) object to check the status of the preview job. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/entrarecoveryservices-snapshot-get.md b/api-reference/v1.0/api/entrarecoveryservices-snapshot-get.md index 65ac6ee06dd..d7f1baf50eb 100644 --- a/api-reference/v1.0/api/entrarecoveryservices-snapshot-get.md +++ b/api-reference/v1.0/api/entrarecoveryservices-snapshot-get.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph.entraRecoveryServices Read the properties and relationships of a [snapshot](../resources/entrarecoveryservices-snapshot.md) object. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoveryjobs.md b/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoveryjobs.md index 356c93f0702..cd29fe2dff0 100644 --- a/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoveryjobs.md +++ b/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoveryjobs.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph.entraRecoveryServices Get a list of [recoveryJob](../resources/entrarecoveryservices-recoveryjob.md) objects for a specific snapshot. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoverypreviewjobs.md b/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoverypreviewjobs.md index ff0a130ba49..2e7b37dbe4b 100644 --- a/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoverypreviewjobs.md +++ b/api-reference/v1.0/api/entrarecoveryservices-snapshot-list-recoverypreviewjobs.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph.entraRecoveryServices Get a list of [recoveryPreviewJob](../resources/entrarecoveryservices-recoverypreviewjob.md) objects for a specific snapshot. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). From 0011e0afa02bc1330b98ad53868c44d5974291d5 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 17 Aug 2026 12:30:30 -0600 Subject: [PATCH 054/189] Update generated permissions tables with build 233573 (#29450) Co-authored-by: Microsoft Graph DevX Tooling --- .../entrarecoveryservices-recovery-list-snapshots-permissions.md | 1 + .../entrarecoveryservices-snapshot-get-permissions.md | 1 + ...trarecoveryservices-snapshot-post-recoveryjobs-permissions.md | 1 + ...veryservices-snapshot-post-recoverypreviewjobs-permissions.md | 1 + 4 files changed, 4 insertions(+) diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-recovery-list-snapshots-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recovery-list-snapshots-permissions.md index 4f8f6787b37..81334caf7bd 100644 --- a/api-reference/v1.0/includes/permissions/entrarecoveryservices-recovery-list-snapshots-permissions.md +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-recovery-list-snapshots-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|EntraBackup.Read.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|EntraBackup.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-get-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-get-permissions.md index 4f8f6787b37..81334caf7bd 100644 --- a/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-get-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|EntraBackup.Read.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|EntraBackup.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoveryjobs-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoveryjobs-permissions.md index b06566160c3..6aa37908257 100644 --- a/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoveryjobs-permissions.md +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoveryjobs-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|EntraBackup.ReadWrite.Recovery|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoverypreviewjobs-permissions.md b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoverypreviewjobs-permissions.md index 3f3b0d04385..8f7008e79f8 100644 --- a/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoverypreviewjobs-permissions.md +++ b/api-reference/v1.0/includes/permissions/entrarecoveryservices-snapshot-post-recoverypreviewjobs-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|EntraBackup.ReadWrite.Preview|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + From 4fd60ba19af5b82ca64f70335298d51792d1c80c Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 17 Aug 2026 12:30:51 -0600 Subject: [PATCH 055/189] 2026-08-17: Automated permissions reference update (#29449) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling --- concepts/permissions-reference.md | 29 ++++++++++++++++++++--------- 1 file changed, 20 insertions(+), 9 deletions(-) diff --git a/concepts/permissions-reference.md b/concepts/permissions-reference.md index f2fb121af94..b776f92ca1e 100644 --- a/concepts/permissions-reference.md +++ b/concepts/permissions-reference.md @@ -7,7 +7,7 @@ ms.localizationpriority: high ms.topic: reference ms.subservice: entra-applications ms.custom: graphiamtop20, scenarios:getting-started -ms.date: 08/10/2026 +ms.date: 08/17/2026 #Customer intent: As a developer, I want to learn more about the permissions available in Microsoft Graph, so that I understand the impact of granting specific permissions to my app. --- @@ -4884,8 +4884,8 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000 | Category | Application | Delegated | |--|--|--| | Identifier | - | df96e8a0-f4e1-4ecf-8d83-a429f822cbd6 | -| DisplayText | - | Allows the app to perform backup and restore of mailbox items | -| Description | - | Allows the app to backup, restore, and modify mailbox items on behalf of the signed-in user. | +| DisplayText | - | Export and import a user's mailbox items | +| Description | - | Allows the app to export and import the user's mailbox items, on behalf of the signed-in user. | | AdminConsentRequired | - | Yes | --- @@ -4895,8 +4895,8 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000 | Category | Application | Delegated | |--|--|--| | Identifier | 76577085-e73d-4f1d-b26a-85fb33892327 | - | -| DisplayText | Allows the app to perform backup and restore for all mailbox items | - | -| Description | Allows the app to backup, restore, and modify all mailbox items without a signed-in user. | - | +| DisplayText | Export and import all the users' mailbox items | - | +| Description | Allows the app to export and import all the users' mailbox items, without signed-in user. | - | | AdminConsentRequired | Yes | - | --- @@ -6030,10 +6030,10 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000 | Category | Application | Delegated | |--|--|--| -| Identifier | - | 1e7a2f4c-e602-4b1b-9547-304dd65c4cc2 | -| DisplayText | - | Read and write your organization's recovery policy | -| Description | - | Allows the application to read and update the organization's recovery policy on behalf of the signed-in user. | -| AdminConsentRequired | - | Yes | +| Identifier | 795fc94d-3deb-4632-b1eb-e6d1a5f44918 | 1e7a2f4c-e602-4b1b-9547-304dd65c4cc2 | +| DisplayText | Read and write your organization's recovery policy | Read and write your organization's recovery policy | +| Description | Allows the application to read and update the organization's recovery policy without a signed-in user. | Allows the application to read and update the organization's recovery policy on behalf of the signed-in user. | +| AdminConsentRequired | Yes | Yes | --- @@ -6072,6 +6072,17 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000 --- +### PreAuthorizationGrant.Read.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | 66ae8ecc-328f-47f6-97ca-4d9e952df081 | 9c98cbde-410c-4719-9058-166504f17863 | +| DisplayText | Read all preauthorization grants | Read all preauthorization grants | +| Description | Allows the app to read preauthorization grants for service principals without a signed-in user. | Allows the app to read preauthorization grants for service principals on behalf of the signed-in user. | +| AdminConsentRequired | Yes | Yes | + +--- + ### Presence.Read | Category | Application | Delegated | From 38e0b7020a519637f1963326a6e871ec662e4d26 Mon Sep 17 00:00:00 2001 From: "learn-build-service-prod[bot]" <113403604+learn-build-service-prod[bot]@users.noreply.github.com> Date: Mon, 17 Aug 2026 12:40:06 -0600 Subject: [PATCH 056/189] update (#29448) Co-authored-by: OpenPublishing.Build --- concepts/whats-new-overview.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index d7636e82087..abc1bdb7816 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -115,7 +115,7 @@ Added the **vapidPublicKey**, **webPushEncryptionP256dhPublicKey**, and **webPus - Updated [retrieveCloudPcTroubleshootReports](/graph/api/cloudpcreports-retrievecloudpctroubleshootreports?view=graph-rest-beta&preserve-view=true) on the [cloudPcReports](/graph/api/resources/cloudpcreports?view=graph-rest-beta&preserve-view=true) resource to support new troubleshooting report types across tenant, configuration, user and device, and view data table scopes. - [Create](/graph/api/virtualendpoint-post-cloudapps?view=graph-rest-beta&preserve-view=true) or [delete](/graph/api/cloudpccloudapp-delete?view=graph-rest-beta&preserve-view=true) a [cloud app](/graph/api/resources/cloudpccloudapp?view=graph-rest-beta&preserve-view=true). -- Extended the **appDetail** property on [cloudPcCloudApp](/graph/api/resources/cloudpccloudapp?view=graph-rest-beta&preserve-view=true) to support the [cloudPcAutomaticDiscoveredAppDetail](/graph/api/resources/cloudpcautomaticdiscoveredappdetail?view=graph-rest-beta&preserve-view=true) type for apps automatically discovered from the *start* menu, and the [cloudPcFilePathAppDetail](/graph/api/resources/cloudpcfilepathappdetail.md) type for apps manually created when a file path is specified. +- Extended the **appDetail** property on [cloudPcCloudApp](/graph/api/resources/cloudpccloudapp?view=graph-rest-beta&preserve-view=true) to support the [cloudPcAutomaticDiscoveredAppDetail](/graph/api/resources/cloudpcautomaticdiscoveredappdetail?view=graph-rest-beta&preserve-view=true) type for apps automatically discovered from the *start* menu, and the [cloudPcFilePathAppDetail](/graph/api/resources/cloudpcfilepathappdetail) type for apps manually created when a file path is specified. - Added the `iconPathInvalid` and `filePathInvalid` members as supported values for the **actionFailedErrorCode** property on the [cloudPcCloudApp](/graph/api/resources/cloudpccloudapp?view=graph-rest-beta&preserve-view=true). Use these members to indicate that the icon or file path specified for the cloud app is invalid. - Added the [cloudPcPool](/graph/api/resources/cloudpcpool?view=graph-rest-beta&preserve-view=true) resource and its derived type [cloudPcAgentPool](/graph/api/resources/cloudpcagentpool?view=graph-rest-beta&preserve-view=true) to enable management of Cloud PC pools for agentic workloads. - Added the [cloudPcPoolAssignment](/graph/api/resources/cloudpcpoolassignment?view=graph-rest-beta&preserve-view=true) resource and its derived type [cloudPcAgentPoolUserAssignment](/graph/api/resources/cloudpcagentpooluserassignment?view=graph-rest-beta&preserve-view=true) to manage pool assignments. From 1c2e69d2fec0d0ebf23c3c8ab2ac7ad7793b8ea2 Mon Sep 17 00:00:00 2001 From: adamben04 <109113430+adamben04@users.noreply.github.com> Date: Mon, 17 Aug 2026 11:59:39 -0700 Subject: [PATCH 057/189] Document coopEnforcement property on authenticationBehaviors (beta) (#29412) * Document coopEnforcement public preview Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 9faca183-24a4-4667-a4f6-ebfc85565b40 * Refine coopEnforcement public preview guidance Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 9faca183-24a4-4667-a4f6-ebfc85565b40 * Address Celeste content-review feedback for coopEnforcement - Changelog: unique ChangeList GUID, drop en-us from Learn URL, shorten description - Keep empty SubArea (common for Applications entries; avoid non-empty SubArea issues) - Keep CreatedDateTime unchanged - Trim resource property row; national-cloud detail remains on concept page * Fix authenticationbehaviors.md formatting after content-review edit Restore proper markdown newlines and keep trimmed coopEnforcement property row. * Set changelog SubArea to Application management for coopEnforcement * Align coopEnforcement how-to with authenticationBehaviors page patterns - Use full language tabs and option1/option2 PATCH forms - Use object-id application URLs like sibling examples - Soften double-null 400 note as current beta behavior - Note per-app override applies when service evaluation is available - MSAL v5 + redirect bridge links verified * Fix $select typo in coopEnforcement reset guidance * Fix HTTP code fences in coopEnforcement examples Use triple backticks so Learn request blocks render correctly. * Roll coopEnforcement changelog CreatedDateTime to 2026-08-08 * Address Celeste 2026-08-14 content review on coopEnforcement docs - Add bullet marker on Whats New entry - Align changelog ChangeList Id with parent record GUID and fix indentation - Trim resource property row; add national-cloud NOTE and related-content link Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: b941943f-9aee-484e-bf0e-a09c1772b1b0 * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Adam Benazouz Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: 9faca183-24a4-4667-a4f6-ebfc85565b40 Copilot-Session: b941943f-9aee-484e-bf0e-a09c1772b1b0 --- .../beta/resources/authenticationbehaviors.md | 6 + changelog/Microsoft.DirectoryServices.json | 18 + .../applications-authenticationbehaviors.md | 333 ++++++++++++++++++ concepts/whats-new-overview.md | 4 + 4 files changed, 361 insertions(+) diff --git a/api-reference/beta/resources/authenticationbehaviors.md b/api-reference/beta/resources/authenticationbehaviors.md index 62e93107191..00f66aee3a5 100644 --- a/api-reference/beta/resources/authenticationbehaviors.md +++ b/api-reference/beta/resources/authenticationbehaviors.md @@ -22,9 +22,13 @@ Applications can adopt new breaking changes by enabling a behavior (set the beha |Property|Type|Description| |:---|:---|:---| |blockAzureADGraphAccess|Boolean| If `false`, allows the app to have extended access to Azure AD Graph until August 31, 2025 when Azure AD Graph is fully retired. For more information on Azure AD retirement updates, see [June 2024 update on Azure AD Graph API retirement](https://techcommunity.microsoft.com/t5/microsoft-entra-blog/june-2024-update-on-azure-ad-graph-api-retirement/ba-p/4094534).| +|coopEnforcement|Boolean|Indicates whether Cross-Origin-Opener-Policy (COOP) headers are enforced on browser-based authentication responses for the application. Set to `true` to enable enforcement, `false` to temporarily suppress enforcement, or `null` to use the service default. For how-to guidance, see [Control Cross-Origin-Opener-Policy enforcement](/graph/applications-authenticationbehaviors#control-cross-origin-opener-policy-enforcement).| |removeUnverifiedEmailClaim|Boolean| If `true`, removes the `email` claim from tokens sent to an application when the email address's domain can't be verified. | |requireClientServicePrincipal|Boolean| If `true`, requires multitenant applications to have a service principal in the resource tenant as part of authorization checks before they're granted access tokens. This property is only modifiable for multitenant resource applications that rely on access from clients without a service principal and had this behavior as set to `false` by Microsoft. Tenant administrators should respond to security advisories sent through Azure Health Service events and the Microsoft 365 message center.| +> [!NOTE] +> The **coopEnforcement** property isn't available in national cloud deployments. It's available only for the global service. + ## Relationships None. @@ -39,6 +43,7 @@ The following JSON representation shows the resource type. { "@odata.type": "#microsoft.graph.authenticationBehaviors", "blockAzureADGraphAccess": "Boolean", + "coopEnforcement": "Boolean", "removeUnverifiedEmailClaim": "Boolean", "requireClientServicePrincipal": "Boolean" } @@ -47,3 +52,4 @@ The following JSON representation shows the resource type. ## Related content - [How-to: Manage application authenticationBehaviors](/graph/applications-authenticationbehaviors) +- [Control Cross-Origin-Opener-Policy enforcement](/graph/applications-authenticationbehaviors#control-cross-origin-opener-policy-enforcement) diff --git a/changelog/Microsoft.DirectoryServices.json b/changelog/Microsoft.DirectoryServices.json index 9daf133d78a..8f9c3801e1d 100644 --- a/changelog/Microsoft.DirectoryServices.json +++ b/changelog/Microsoft.DirectoryServices.json @@ -26,6 +26,24 @@ "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, + { + "ChangeList": [ + { + "Id": "ecf3b088-ce0e-4282-b483-c6122f3afc82", + "ApiChange": "Property", + "ChangedApiName": "coopEnforcement", + "ChangeType": "Addition", + "Description": "Added the **coopEnforcement** property to the [authenticationBehaviors](https://learn.microsoft.com/graph/api/resources/authenticationbehaviors?view=graph-rest-beta) resource.", + "Target": "authenticationBehaviors" + } + ], + "Id": "ecf3b088-ce0e-4282-b483-c6122f3afc82", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-17T06:51:28.9942785Z", + "WorkloadArea": "Applications", + "SubArea": "Application management" + }, { "ChangeList": [ { diff --git a/concepts/applications-authenticationbehaviors.md b/concepts/applications-authenticationbehaviors.md index eb1788591f5..f6d1b56d76f 100644 --- a/concepts/applications-authenticationbehaviors.md +++ b/concepts/applications-authenticationbehaviors.md @@ -18,6 +18,7 @@ The [**authenticationBehaviors**](/graph/api/resources/authenticationbehaviors?v You can configure the following behaviors: +- [Control Cross-Origin-Opener-Policy (COOP) enforcement on browser-based authentication responses](#control-cross-origin-opener-policy-enforcement). - [Allow or prevent the issuance of email claims with unverified domain owners](#prevent-the-issuance-of-email-claims-with-unverified-domain-owners). - [Enable or disable extended Azure AD Graph access until August 31, 2025](#allow-extended-azure-ad-graph-access-until-august-31-2025), when Azure AD Graph is fully retired. - Require multitenant applications to have a service principal in the resource tenant as part of authorization checks before they're granted access tokens. @@ -124,6 +125,338 @@ You can also use the **appId** property as follows: GET https://graph.microsoft.com/beta/applications(appId='37bf1fd4-78b0-4fea-ac2d-6c82829e9365')/authenticationBehaviors ``` +## Control Cross-Origin-Opener-Policy enforcement + +The **coopEnforcement** property controls whether Microsoft Entra authentication responses for an application include enforced Cross-Origin-Opener-Policy (COOP) headers. COOP isolates browser windows from cross-origin opener access and helps protect browser-based authentication flows. The service applies this per-app setting when per-app COOP override evaluation is available for the request. + +Applications that use popup authentication should first adopt a COOP-compatible authentication flow. If your application uses MSAL.js, migrate to MSAL.js v5 or later and configure its supported redirect bridge. For more information, see [Migrate from MSAL Browser v4 to v5](/entra/msal/javascript/browser/v4-migration#cross-origin-opener-policy-coop-support) and [Set up the redirect bridge page in MSAL Browser](/entra/msal/javascript/browser/redirect-bridge). If an SDK or hosting platform owns the popup and callback, update to a compatible platform release or report the issue to that platform's owner. + +The property supports the following values: + +- `true`: Explicitly enforce COOP for the application. +- `false`: Explicitly suppress COOP enforcement as a temporary compatibility exception. +- `null`: Remove the explicit override and use the service default. + +> [!NOTE] +> **coopEnforcement** is available only in the global service and isn't available in national cloud deployments. + +> [!IMPORTANT] +> Before setting **coopEnforcement** to `true`, test the application's complete authentication flow, including popup closure and delivery of the authentication result to the host application. Setting the property to `false` is a temporary compatibility exception while the application or owning platform is remediated; it isn't a security remediation. The exception doesn't expire automatically. Reset the property to `null` or set it to `true` after remediation. + +### Explicitly enable COOP enforcement + +The following examples explicitly enable COOP enforcement for an application. + +#### Option 1 + +This pattern for specifying the property in the request URL allows you to update *only* the specified property in the request. +# [HTTP](#tab/http) + + +```http +PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors +Content-Type: application/json + +{ + "coopEnforcement": true +} +``` + +# [C#](#tab/csharp) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + +#### Option 2 + +This pattern for specifying the property in the request body lets you update other peer properties in the same request. + +# [HTTP](#tab/http) + + +```http +PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e +Content-Type: application/json + +{ + "authenticationBehaviors": { + "coopEnforcement": true + } +} +``` + +# [C#](#tab/csharp) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- +If successful, these requests return a `204 No Content` response. + +### Temporarily suppress COOP enforcement + +The following examples explicitly suppress COOP enforcement while the application owner remediates an incompatible authentication flow. + +#### Option 1 + +This pattern for specifying the property in the request URL allows you to update *only* the specified property in the request. +# [HTTP](#tab/http) + + +```http +PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors +Content-Type: application/json + +{ + "coopEnforcement": false +} +``` + +# [C#](#tab/csharp) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + +#### Option 2 + +This pattern for specifying the property in the request body lets you update other peer properties in the same request. + +# [HTTP](#tab/http) + + +```http +PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e +Content-Type: application/json + +{ + "authenticationBehaviors": { + "coopEnforcement": false + } +} +``` + +# [C#](#tab/csharp) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- +If successful, these requests return a `204 No Content` response. A COOP Report-Only header might still be present. After the application or owning platform is remediated, set the property to `true` for controlled validation or reset it to `null` to use the service default. + +### Restore the service default + +The following examples remove the explicit override. + +#### Option 1 + +This pattern for specifying the property in the request URL allows you to update *only* the specified property in the request. +# [HTTP](#tab/http) + + +```http +PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors +Content-Type: application/json + +{ + "coopEnforcement": null +} +``` + +# [C#](#tab/csharp) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + +#### Option 2 + +This pattern for specifying the property in the request body lets you update other peer properties in the same request. + +# [HTTP](#tab/http) + + +```http +PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e +Content-Type: application/json + +{ + "authenticationBehaviors": { + "coopEnforcement": null + } +} +``` + +# [C#](#tab/csharp) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- +If successful, these requests return a `204 No Content` response. To confirm the reset state, read the application with `$select=id,appId,authenticationBehaviors`. If the application has no other explicit authentication behavior, **authenticationBehaviors** is `null`. If another authentication behavior is configured, the complex object remains present and **coopEnforcement** is omitted. + +> [!NOTE] +> In the current beta, if **coopEnforcement** is already absent, another reset request might return `400 Request_BadRequest`. Read the application first and treat an omitted property as already reset. ## Prevent the issuance of email claims with unverified domain owners As described in the Microsoft security advisory [Potential Risk of Privilege Escalation in Microsoft Entra Applications](https://msrc.microsoft.com/blog/2023/06/potential-risk-of-privilege-escalation-in-azure-ad-applications/), **apps should never use the email claim for authorization purposes**. If your application uses the email claim for authorization or primary user identification purposes, it's subject to account and privilege escalation attacks. This risk of unauthorized access is especially identified in the following scenarios: diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index abc1bdb7816..693ae2066fd 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -35,6 +35,10 @@ Added the [recovery](/graph/api/resources/entrarecoveryservices-recovery) resour ## August 2026: New in preview only +### Applications + +- Added the **coopEnforcement** property to the [authenticationBehaviors](/graph/api/resources/authenticationbehaviors?view=graph-rest-beta&preserve-view=true) resource. Application owners can use it to explicitly test Cross-Origin-Opener-Policy enforcement, temporarily suppress enforcement while remediating an incompatible browser authentication flow, or return to the service default. + ### Files - Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns?view=graph-rest-beta&preserve-view=true) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource type to create or update up to 20 columnDefinition objects in a single request. From d8bf1aa732c85c8014025314500602bb59e6f94e Mon Sep 17 00:00:00 2001 From: t-naomigorny Date: Mon, 17 Aug 2026 22:31:13 +0300 Subject: [PATCH 058/189] Promote runHuntingQuery workspaceId parameter to v1.0 (#29219) * Add workspaceId parameter to runHuntingQuery (v1.0) Document the optional workspaceId parameter promoted from beta to v1.0 in AGS PR 16261921. Uses changelog stub content generated by the AGS build. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Add What's New entry for workspaceId parameter in runHuntingQuery (v1.0) * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- .../api/security-security-runhuntingquery.md | 5 +++-- changelog/Microsoft.M365.Defender.json | 18 ++++++++++++++++++ concepts/whats-new-overview.md | 4 ++++ 3 files changed, 25 insertions(+), 2 deletions(-) diff --git a/api-reference/v1.0/api/security-security-runhuntingquery.md b/api-reference/v1.0/api/security-security-runhuntingquery.md index a9ef4169978..3889e8988b5 100644 --- a/api-reference/v1.0/api/security-security-runhuntingquery.md +++ b/api-reference/v1.0/api/security-security-runhuntingquery.md @@ -1,7 +1,7 @@ --- title: "security: runHuntingQuery" description: "Run the hunting query API." -ms.date: 11/11/2022 +ms.date: 07/02/2026 author: "BenAlfasi" ms.localizationpriority: medium ms.subservice: "security" @@ -48,12 +48,13 @@ POST /security/runHuntingQuery ## Request body -In the request body, provide a JSON object for the `Query` parameter, and optionally include a `Timespan` parameter. +In the request body, provide a JSON object with the `Query` property, and optionally include the `Timespan` and `workspaceId` properties. | Parameter | Type | Description | Example | |:-------------|:----------------|:---------------------------------------------------------------------------------------------------------------------------------|:-------------------------------------------------------------------| | Query | String | Required. The hunting query in Kusto Query Language (KQL). For more information, see [KQL quick reference](/azure/data-explorer/kql-quick-reference). | | | Timespan | String | Optional. The interval of time over which to query data, in ISO 8601 format. The default value is 30 days, meaning if no startTime is specified, the query looks back 30 days from now. If a time filter is specified in both the query and the startTime parameter, the shorter time span is applied. For example, if the query has a filter for the last seven days and the startTime is 10 days ago, the query only looks back seven days. | | +| workspaceId | Guid | Optional. The GUID of a specific Log Analytics workspace to target. If omitted, the service uses the caller's primary workspace. If the workspace isn't found or not accessible, the service falls back to the caller's primary workspace. | `00000000-0000-0000-0000-000000000001` | The following examples show the possible formats for the `Timespan` parameter: diff --git a/changelog/Microsoft.M365.Defender.json b/changelog/Microsoft.M365.Defender.json index f4f5bfb1c0a..b4a62885313 100644 --- a/changelog/Microsoft.M365.Defender.json +++ b/changelog/Microsoft.M365.Defender.json @@ -1,5 +1,23 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "464962b2-410c-44c4-a1bc-c8c12d7e7560", + "ApiChange": "Parameter", + "ChangedApiName": "workspaceId", + "ChangeType": "Addition", + "Description": "Added the optional `workspaceId` parameter to the [runHuntingQuery](https://learn.microsoft.com/en-us/graph/api/security-security-runhuntingquery?view=graph-rest-1.0) method.", + "Target": "runHuntingQuery" + } + ], + "Id": "464962b2-410c-44c4-a1bc-c8c12d7e7560", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-17T13:00:00.0000000Z", + "WorkloadArea": "Security", + "SubArea": "Advanced hunting" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 693ae2066fd..e7b2fcaaf6f 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -178,6 +178,10 @@ Added the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?vi - Added the **manifestUrl** property to [verifiedIdProfileConfiguration](/graph/api/resources/verifiedidprofileconfiguration?view=graph-rest-beta&preserve-view=true) to reference the credential issuer's manifest defining the credential schema and issuer details. - Added the `verification` member to the **verifiedIdUsageConfigurationPurpose** enumeration to enable just-in-time identity verification scenarios, such as step-up authentication enforcement through Conditional Access policies. +### Security | Advanced hunting + +Added the optional **workspaceId** parameter to the [runHuntingQuery](/graph/api/security-security-runhuntingquery) method to target a specific Log Analytics workspace. + ### Security | Alerts and incidents - Added the **tenantId** property to the [userAccount](/graph/api/resources/security-useraccount) resource to provide the Entra home tenant ID for the compromised user account indicated in a [security alert](/graph/api/resources/security-alert) where the alert evidence is related to a [processEvidence](/graph/api/resources/security-processevidence), [userEvidence](/graph/api/resources/security-userevidence), or [mailboxEvidence](/graph/api/resources/security-mailboxevidence). From 5efd6585008193427d40ba1f9e986235cddb8ba9 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Tue, 18 Aug 2026 09:07:59 -0600 Subject: [PATCH 059/189] Update generated files with build 233982 (#29456) Co-authored-by: Microsoft Graph DevX Tooling --- ...resourceaccountkeyauthenticationmethods.md | 1 - .../beta/api/distributionlist-addmembers.md | 27 ++++++ .../api/distributionlist-deletemembers.md | 27 ++++++ .../beta/api/distributionlist-get.md | 27 ++++++ .../beta/api/distributionlist-update.md | 27 ++++++ .../api/driveitem-assignsensitivitylabel.md | 86 +++++++++++++++++++ ...agecontainer-transferprincipalownership.md | 1 - ...ceaccountkeyauthenticationmethod-delete.md | 1 - ...ourceaccountkeyauthenticationmethod-get.md | 1 - .../beta/api/user-list-distributionlists.md | 27 ++++++ .../beta/api/user-post-distributionlists.md | 27 ++++++ ...itivitylabel-apponly-id-csharp-snippets.md | 36 ++++++++ ...tivitylabel-apponly-upn-csharp-snippets.md | 36 ++++++++ ...create-distributionlist-csharp-snippets.md | 25 ------ ...ributionlist-addmembers-csharp-snippets.md | 8 +- ...utionlist-deletemembers-csharp-snippets.md | 8 +- .../post-chatmessage-11-csharp-snippets.md | 2 +- .../post-chatmessage-12-csharp-snippets.md | 2 +- .../post-chatmessage-13-csharp-snippets.md | 2 +- .../post-chatmessage-14-csharp-snippets.md | 2 +- .../post-chatmessage-15-csharp-snippets.md | 2 +- .../post-chatmessage-2-csharp-snippets.md | 2 +- .../post-chatmessage-3-csharp-snippets.md | 2 +- .../post-chatmessage-4-csharp-snippets.md | 2 +- .../post-chatmessage-5-csharp-snippets.md | 7 +- .../post-chatmessage-6-csharp-snippets.md | 2 +- .../post-chatmessage-7-csharp-snippets.md | 2 +- ...essage-atmentionchannel-csharp-snippets.md | 2 +- ...hatmessage-atmentiontag-csharp-snippets.md | 2 +- ...atmessage-atmentionteam-csharp-snippets.md | 2 +- ...tmessage-import-channel-csharp-snippets.md | 2 +- ...chatmessage-import-chat-csharp-snippets.md | 2 +- ...sensitivitylabel-apponly-id-go-snippets.md | 38 ++++++++ ...ensitivitylabel-apponly-upn-go-snippets.md | 38 ++++++++ .../go/create-distributionlist-go-snippets.md | 26 ------ ...distributionlist-addmembers-go-snippets.md | 8 +- ...tributionlist-deletemembers-go-snippets.md | 8 +- .../go/post-chatmessage-11-go-snippets.md | 4 +- .../go/post-chatmessage-12-go-snippets.md | 4 +- .../go/post-chatmessage-13-go-snippets.md | 4 +- .../go/post-chatmessage-14-go-snippets.md | 4 +- .../go/post-chatmessage-15-go-snippets.md | 4 +- .../go/post-chatmessage-2-go-snippets.md | 4 +- .../go/post-chatmessage-3-go-snippets.md | 4 +- .../go/post-chatmessage-4-go-snippets.md | 4 +- .../go/post-chatmessage-5-go-snippets.md | 6 +- .../go/post-chatmessage-6-go-snippets.md | 4 +- .../go/post-chatmessage-7-go-snippets.md | 4 +- ...hatmessage-atmentionchannel-go-snippets.md | 4 +- ...st-chatmessage-atmentiontag-go-snippets.md | 4 +- ...t-chatmessage-atmentionteam-go-snippets.md | 4 +- ...-chatmessage-import-channel-go-snippets.md | 4 +- ...ost-chatmessage-import-chat-go-snippets.md | 4 +- ...nsitivitylabel-apponly-id-java-snippets.md | 23 +++++ ...sitivitylabel-apponly-upn-java-snippets.md | 23 +++++ .../create-distributionlist-java-snippets.md | 16 ---- ...stributionlist-addmembers-java-snippets.md | 5 +- ...ibutionlist-deletemembers-java-snippets.md | 5 +- .../java/post-chatmessage-11-java-snippets.md | 2 +- .../java/post-chatmessage-12-java-snippets.md | 2 +- .../java/post-chatmessage-13-java-snippets.md | 2 +- .../java/post-chatmessage-14-java-snippets.md | 2 +- .../java/post-chatmessage-15-java-snippets.md | 2 +- .../java/post-chatmessage-2-java-snippets.md | 2 +- .../java/post-chatmessage-3-java-snippets.md | 2 +- .../java/post-chatmessage-4-java-snippets.md | 2 +- .../java/post-chatmessage-5-java-snippets.md | 4 +- .../java/post-chatmessage-6-java-snippets.md | 2 +- .../java/post-chatmessage-7-java-snippets.md | 2 +- ...tmessage-atmentionchannel-java-snippets.md | 2 +- ...-chatmessage-atmentiontag-java-snippets.md | 2 +- ...chatmessage-atmentionteam-java-snippets.md | 2 +- ...hatmessage-import-channel-java-snippets.md | 2 +- ...t-chatmessage-import-chat-java-snippets.md | 2 +- ...itylabel-apponly-id-javascript-snippets.md | 26 ++++++ ...tylabel-apponly-upn-javascript-snippets.md | 26 ++++++ ...te-distributionlist-javascript-snippets.md | 14 +-- ...tionlist-addmembers-javascript-snippets.md | 3 +- ...nlist-deletemembers-javascript-snippets.md | 3 +- ...post-chatmessage-11-javascript-snippets.md | 2 +- ...post-chatmessage-12-javascript-snippets.md | 2 +- ...post-chatmessage-13-javascript-snippets.md | 2 +- ...post-chatmessage-14-javascript-snippets.md | 2 +- ...post-chatmessage-15-javascript-snippets.md | 2 +- .../post-chatmessage-2-javascript-snippets.md | 2 +- .../post-chatmessage-3-javascript-snippets.md | 2 +- .../post-chatmessage-4-javascript-snippets.md | 2 +- .../post-chatmessage-5-javascript-snippets.md | 22 ++--- .../post-chatmessage-6-javascript-snippets.md | 2 +- .../post-chatmessage-7-javascript-snippets.md | 2 +- ...ge-atmentionchannel-javascript-snippets.md | 2 +- ...essage-atmentiontag-javascript-snippets.md | 2 +- ...ssage-atmentionteam-javascript-snippets.md | 2 +- ...sage-import-channel-javascript-snippets.md | 2 +- ...message-import-chat-javascript-snippets.md | 2 +- ...ensitivitylabel-apponly-id-php-snippets.md | 28 ++++++ ...nsitivitylabel-apponly-upn-php-snippets.md | 28 ++++++ .../create-distributionlist-php-snippets.md | 20 ----- ...istributionlist-addmembers-php-snippets.md | 7 +- ...ributionlist-deletemembers-php-snippets.md | 7 +- .../php/post-chatmessage-11-php-snippets.md | 4 +- .../php/post-chatmessage-12-php-snippets.md | 4 +- .../php/post-chatmessage-13-php-snippets.md | 4 +- .../php/post-chatmessage-14-php-snippets.md | 4 +- .../php/post-chatmessage-15-php-snippets.md | 4 +- .../php/post-chatmessage-2-php-snippets.md | 4 +- .../php/post-chatmessage-3-php-snippets.md | 4 +- .../php/post-chatmessage-4-php-snippets.md | 4 +- .../php/post-chatmessage-5-php-snippets.md | 6 +- .../php/post-chatmessage-6-php-snippets.md | 4 +- .../php/post-chatmessage-7-php-snippets.md | 4 +- ...atmessage-atmentionchannel-php-snippets.md | 4 +- ...t-chatmessage-atmentiontag-php-snippets.md | 4 +- ...-chatmessage-atmentionteam-php-snippets.md | 4 +- ...chatmessage-import-channel-php-snippets.md | 4 +- ...st-chatmessage-import-chat-php-snippets.md | 4 +- ...itylabel-apponly-id-powershell-snippets.md | 20 +++++ ...tylabel-apponly-upn-powershell-snippets.md | 20 +++++ ...post-chatmessage-11-powershell-snippets.md | 2 +- ...post-chatmessage-12-powershell-snippets.md | 2 +- ...post-chatmessage-13-powershell-snippets.md | 2 +- ...post-chatmessage-14-powershell-snippets.md | 2 +- ...post-chatmessage-15-powershell-snippets.md | 2 +- .../post-chatmessage-2-powershell-snippets.md | 2 +- .../post-chatmessage-3-powershell-snippets.md | 2 +- .../post-chatmessage-4-powershell-snippets.md | 2 +- .../post-chatmessage-5-powershell-snippets.md | 2 +- .../post-chatmessage-6-powershell-snippets.md | 2 +- .../post-chatmessage-7-powershell-snippets.md | 2 +- ...ge-atmentionchannel-powershell-snippets.md | 2 +- ...essage-atmentiontag-powershell-snippets.md | 2 +- ...ssage-atmentionteam-powershell-snippets.md | 2 +- ...sage-import-channel-powershell-snippets.md | 2 +- ...message-import-chat-powershell-snippets.md | 2 +- ...itivitylabel-apponly-id-python-snippets.md | 26 ++++++ ...tivitylabel-apponly-upn-python-snippets.md | 26 ++++++ ...create-distributionlist-python-snippets.md | 18 ---- ...ributionlist-addmembers-python-snippets.md | 6 +- ...utionlist-deletemembers-python-snippets.md | 6 +- .../post-chatmessage-11-python-snippets.md | 4 +- .../post-chatmessage-12-python-snippets.md | 4 +- .../post-chatmessage-13-python-snippets.md | 4 +- .../post-chatmessage-14-python-snippets.md | 4 +- .../post-chatmessage-15-python-snippets.md | 4 +- .../post-chatmessage-2-python-snippets.md | 4 +- .../post-chatmessage-3-python-snippets.md | 4 +- .../post-chatmessage-4-python-snippets.md | 4 +- .../post-chatmessage-5-python-snippets.md | 5 +- .../post-chatmessage-6-python-snippets.md | 4 +- .../post-chatmessage-7-python-snippets.md | 4 +- ...essage-atmentionchannel-python-snippets.md | 4 +- ...hatmessage-atmentiontag-python-snippets.md | 4 +- ...atmessage-atmentionteam-python-snippets.md | 4 +- ...tmessage-import-channel-python-snippets.md | 4 +- ...chatmessage-import-chat-python-snippets.md | 4 +- .../api/driveitem-assignsensitivitylabel.md | 86 +++++++++++++++++++ ...ntrarecoveryservices-recovery-list-jobs.md | 31 +++++++ ...ecoveryservices-recovery-list-snapshots.md | 31 +++++++ .../entrarecoveryservices-recoveryjob-get.md | 31 +++++++ ...ryservices-recoveryjob-getfailedchanges.md | 14 +++ ...recoveryservices-recoveryjobbase-cancel.md | 31 +++++++ ...recoveryservices-recoverypreviewjob-get.md | 31 +++++++ ...yservices-recoverypreviewjob-getchanges.md | 7 ++ .../api/entrarecoveryservices-snapshot-get.md | 31 +++++++ ...veryservices-snapshot-list-recoveryjobs.md | 31 +++++++ ...vices-snapshot-list-recoverypreviewjobs.md | 31 +++++++ ...veryservices-snapshot-post-recoveryjobs.md | 21 +++++ ...vices-snapshot-post-recoverypreviewjobs.md | 21 +++++ ...itivitylabel-apponly-id-csharp-snippets.md | 36 ++++++++ ...tivitylabel-apponly-upn-csharp-snippets.md | 36 ++++++++ .../csharp/delete-page-csharp-snippets.md | 2 +- .../csharp/get-recoveryjob-csharp-snippets.md | 13 +++ .../get-recoverypreviewjob-csharp-snippets.md | 13 +++ .../csharp/get-snapshot-csharp-snippets.md | 13 +++ .../list-recoveryjob-csharp-snippets.md | 13 +++ .../list-recoveryjobbase-csharp-snippets.md | 13 +++ ...list-recoverypreviewjob-csharp-snippets.md | 13 +++ .../csharp/list-snapshot-csharp-snippets.md | 13 +++ .../post-chatmessage-5-csharp-snippets.md | 7 +- .../recoveryjobbase-cancel-csharp-snippets.md | 13 +++ ...sensitivitylabel-apponly-id-go-snippets.md | 38 ++++++++ ...ensitivitylabel-apponly-upn-go-snippets.md | 38 ++++++++ .../snippets/go/delete-page-go-snippets.md | 2 +- .../go/get-recoveryjob-go-snippets.md | 22 +++++ .../go/get-recoverypreviewjob-go-snippets.md | 22 +++++ .../snippets/go/get-snapshot-go-snippets.md | 22 +++++ .../go/list-recoveryjob-go-snippets.md | 22 +++++ .../go/list-recoveryjobbase-go-snippets.md | 22 +++++ .../go/list-recoverypreviewjob-go-snippets.md | 22 +++++ .../snippets/go/list-snapshot-go-snippets.md | 22 +++++ .../go/post-chatmessage-5-go-snippets.md | 6 +- .../go/recoveryjobbase-cancel-go-snippets.md | 22 +++++ ...nsitivitylabel-apponly-id-java-snippets.md | 23 +++++ ...sitivitylabel-apponly-upn-java-snippets.md | 23 +++++ .../java/delete-page-java-snippets.md | 2 +- .../java/get-recoveryjob-java-snippets.md | 14 +++ .../get-recoverypreviewjob-java-snippets.md | 14 +++ .../java/get-snapshot-java-snippets.md | 14 +++ .../java/list-recoveryjob-java-snippets.md | 14 +++ .../list-recoveryjobbase-java-snippets.md | 14 +++ .../list-recoverypreviewjob-java-snippets.md | 14 +++ .../java/list-snapshot-java-snippets.md | 14 +++ .../java/post-chatmessage-5-java-snippets.md | 4 +- .../recoveryjobbase-cancel-java-snippets.md | 14 +++ ...itylabel-apponly-id-javascript-snippets.md | 25 ++++++ ...tylabel-apponly-upn-javascript-snippets.md | 25 ++++++ ...coveryjob-entityids-javascript-snippets.md | 38 ++++++++ ...veryjob-entitytypes-javascript-snippets.md | 25 ++++++ ...ecoveryjob-nofilter-javascript-snippets.md | 16 ++++ ...reviewjob-entityids-javascript-snippets.md | 38 ++++++++ ...viewjob-entitytypes-javascript-snippets.md | 25 ++++++ ...previewjob-nofilter-javascript-snippets.md | 16 ++++ .../delete-page-javascript-snippets.md | 2 +- .../get-recoveryjob-javascript-snippets.md | 16 ++++ ...-recoverypreviewjob-javascript-snippets.md | 16 ++++ .../get-snapshot-javascript-snippets.md | 16 ++++ .../list-recoveryjob-javascript-snippets.md | 16 ++++ ...ist-recoveryjobbase-javascript-snippets.md | 16 ++++ ...-recoverypreviewjob-javascript-snippets.md | 16 ++++ .../list-snapshot-javascript-snippets.md | 16 ++++ .../post-chatmessage-5-javascript-snippets.md | 22 ++--- ...overyjobbase-cancel-javascript-snippets.md | 16 ++++ ...iledchangesexample1-javascript-snippets.md | 16 ++++ ...iledchangesexample2-javascript-snippets.md | 17 ++++ ...sgetchangesexample1-javascript-snippets.md | 16 ++++ ...ensitivitylabel-apponly-id-php-snippets.md | 28 ++++++ ...nsitivitylabel-apponly-upn-php-snippets.md | 28 ++++++ .../snippets/php/delete-page-php-snippets.md | 2 +- .../php/get-recoveryjob-php-snippets.md | 16 ++++ .../get-recoverypreviewjob-php-snippets.md | 16 ++++ .../snippets/php/get-snapshot-php-snippets.md | 16 ++++ .../php/list-recoveryjob-php-snippets.md | 16 ++++ .../php/list-recoveryjobbase-php-snippets.md | 16 ++++ .../list-recoverypreviewjob-php-snippets.md | 16 ++++ .../php/list-snapshot-php-snippets.md | 16 ++++ .../php/post-chatmessage-5-php-snippets.md | 6 +- .../recoveryjobbase-cancel-php-snippets.md | 16 ++++ ...itylabel-apponly-id-powershell-snippets.md | 20 +++++ ...tylabel-apponly-upn-powershell-snippets.md | 20 +++++ .../delete-page-powershell-snippets.md | 5 +- .../get-recoveryjob-powershell-snippets.md | 11 +++ ...-recoverypreviewjob-powershell-snippets.md | 11 +++ .../get-snapshot-powershell-snippets.md | 11 +++ .../list-recoveryjob-powershell-snippets.md | 11 +++ ...ist-recoveryjobbase-powershell-snippets.md | 11 +++ ...-recoverypreviewjob-powershell-snippets.md | 11 +++ .../list-snapshot-powershell-snippets.md | 11 +++ .../post-chatmessage-5-powershell-snippets.md | 2 +- ...overyjobbase-cancel-powershell-snippets.md | 11 +++ ...itivitylabel-apponly-id-python-snippets.md | 26 ++++++ ...tivitylabel-apponly-upn-python-snippets.md | 26 ++++++ .../python/delete-page-python-snippets.md | 2 +- .../python/get-recoveryjob-python-snippets.md | 14 +++ .../get-recoverypreviewjob-python-snippets.md | 14 +++ .../python/get-snapshot-python-snippets.md | 14 +++ .../list-recoveryjob-python-snippets.md | 14 +++ .../list-recoveryjobbase-python-snippets.md | 14 +++ ...list-recoverypreviewjob-python-snippets.md | 14 +++ .../python/list-snapshot-python-snippets.md | 14 +++ .../post-chatmessage-5-python-snippets.md | 5 +- .../recoveryjobbase-cancel-python-snippets.md | 14 +++ .../applications-authenticationbehaviors.md | 57 ++++++------ ...forcement-false-option2-csharp-snippets.md | 29 +++++++ ...nforcement-null-option2-csharp-snippets.md | 29 +++++++ ...nforcement-true-option2-csharp-snippets.md | 29 +++++++ ...openforcement-false-option2-go-snippets.md | 31 +++++++ ...oopenforcement-null-option2-go-snippets.md | 31 +++++++ ...oopenforcement-true-option2-go-snippets.md | 31 +++++++ ...enforcement-false-option2-java-snippets.md | 20 +++++ ...penforcement-null-option2-java-snippets.md | 20 +++++ ...penforcement-true-option2-java-snippets.md | 20 +++++ ...ement-false-option1-javascript-snippets.md | 21 +++++ ...ement-false-option2-javascript-snippets.md | 23 +++++ ...cement-null-option1-javascript-snippets.md | 21 +++++ ...cement-null-option2-javascript-snippets.md | 23 +++++ ...cement-true-option1-javascript-snippets.md | 21 +++++ ...cement-true-option2-javascript-snippets.md | 23 +++++ ...penforcement-false-option2-php-snippets.md | 25 ++++++ ...openforcement-null-option2-php-snippets.md | 25 ++++++ ...openforcement-true-option2-php-snippets.md | 25 ++++++ ...ement-false-option2-powershell-snippets.md | 17 ++++ ...cement-null-option2-powershell-snippets.md | 17 ++++ ...cement-true-option2-powershell-snippets.md | 17 ++++ ...forcement-false-option2-python-snippets.md | 23 +++++ ...nforcement-null-option2-python-snippets.md | 23 +++++ ...nforcement-true-option2-python-snippets.md | 23 +++++ 286 files changed, 3345 insertions(+), 383 deletions(-) create mode 100644 api-reference/beta/includes/snippets/csharp/assignsensitivitylabel-apponly-id-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/assignsensitivitylabel-apponly-upn-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/assignsensitivitylabel-apponly-id-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/assignsensitivitylabel-apponly-upn-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/assignsensitivitylabel-apponly-id-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/assignsensitivitylabel-apponly-upn-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/assignsensitivitylabel-apponly-id-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/assignsensitivitylabel-apponly-upn-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/assignsensitivitylabel-apponly-id-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/assignsensitivitylabel-apponly-upn-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/assignsensitivitylabel-apponly-id-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/assignsensitivitylabel-apponly-upn-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/assignsensitivitylabel-apponly-id-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/assignsensitivitylabel-apponly-upn-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/assignsensitivitylabel-apponly-id-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/assignsensitivitylabel-apponly-upn-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/get-recoveryjob-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/get-recoverypreviewjob-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/get-snapshot-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/list-recoveryjob-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/list-recoveryjobbase-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/list-recoverypreviewjob-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/list-snapshot-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/csharp/recoveryjobbase-cancel-csharp-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/assignsensitivitylabel-apponly-id-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/assignsensitivitylabel-apponly-upn-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/get-recoveryjob-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/get-recoverypreviewjob-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/get-snapshot-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/list-recoveryjob-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/list-recoveryjobbase-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/list-recoverypreviewjob-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/list-snapshot-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/go/recoveryjobbase-cancel-go-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/assignsensitivitylabel-apponly-id-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/assignsensitivitylabel-apponly-upn-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/get-recoveryjob-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/get-recoverypreviewjob-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/get-snapshot-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/list-recoveryjob-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/list-recoveryjobbase-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/list-recoverypreviewjob-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/list-snapshot-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/java/recoveryjobbase-cancel-java-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/assignsensitivitylabel-apponly-id-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/assignsensitivitylabel-apponly-upn-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/create-recoveryjob-entityids-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/create-recoveryjob-entitytypes-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/create-recoveryjob-nofilter-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/create-recoverypreviewjob-entityids-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/create-recoverypreviewjob-entitytypes-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/create-recoverypreviewjob-nofilter-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/get-recoveryjob-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/get-recoverypreviewjob-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/get-snapshot-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/list-recoveryjob-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/list-recoveryjobbase-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/list-recoverypreviewjob-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/list-snapshot-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/recoveryjobbase-cancel-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/recoveryjobthisgetfailedchangesexample1-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/recoveryjobthisgetfailedchangesexample2-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/recoverypreviewjobthisgetchangesexample1-javascript-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/assignsensitivitylabel-apponly-id-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/assignsensitivitylabel-apponly-upn-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/get-recoveryjob-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/get-recoverypreviewjob-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/get-snapshot-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/list-recoveryjob-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/list-recoveryjobbase-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/list-recoverypreviewjob-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/list-snapshot-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/php/recoveryjobbase-cancel-php-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/assignsensitivitylabel-apponly-id-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/assignsensitivitylabel-apponly-upn-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/get-recoveryjob-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/get-recoverypreviewjob-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/get-snapshot-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-recoveryjob-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-recoveryjobbase-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-recoverypreviewjob-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-snapshot-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/recoveryjobbase-cancel-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/assignsensitivitylabel-apponly-id-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/assignsensitivitylabel-apponly-upn-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/get-recoveryjob-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/get-recoverypreviewjob-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/get-snapshot-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/list-recoveryjob-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/list-recoveryjobbase-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/list-recoverypreviewjob-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/list-snapshot-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/python/recoveryjobbase-cancel-python-snippets.md create mode 100644 includes/snippets/csharp/beta/update-authenticationbehaviors-coopenforcement-false-option2-csharp-snippets.md create mode 100644 includes/snippets/csharp/beta/update-authenticationbehaviors-coopenforcement-null-option2-csharp-snippets.md create mode 100644 includes/snippets/csharp/beta/update-authenticationbehaviors-coopenforcement-true-option2-csharp-snippets.md create mode 100644 includes/snippets/go/beta/update-authenticationbehaviors-coopenforcement-false-option2-go-snippets.md create mode 100644 includes/snippets/go/beta/update-authenticationbehaviors-coopenforcement-null-option2-go-snippets.md create mode 100644 includes/snippets/go/beta/update-authenticationbehaviors-coopenforcement-true-option2-go-snippets.md create mode 100644 includes/snippets/java/beta/update-authenticationbehaviors-coopenforcement-false-option2-java-snippets.md create mode 100644 includes/snippets/java/beta/update-authenticationbehaviors-coopenforcement-null-option2-java-snippets.md create mode 100644 includes/snippets/java/beta/update-authenticationbehaviors-coopenforcement-true-option2-java-snippets.md create mode 100644 includes/snippets/javascript/beta/update-authenticationbehaviors-coopenforcement-false-option1-javascript-snippets.md create mode 100644 includes/snippets/javascript/beta/update-authenticationbehaviors-coopenforcement-false-option2-javascript-snippets.md create mode 100644 includes/snippets/javascript/beta/update-authenticationbehaviors-coopenforcement-null-option1-javascript-snippets.md create mode 100644 includes/snippets/javascript/beta/update-authenticationbehaviors-coopenforcement-null-option2-javascript-snippets.md create mode 100644 includes/snippets/javascript/beta/update-authenticationbehaviors-coopenforcement-true-option1-javascript-snippets.md create mode 100644 includes/snippets/javascript/beta/update-authenticationbehaviors-coopenforcement-true-option2-javascript-snippets.md create mode 100644 includes/snippets/php/beta/update-authenticationbehaviors-coopenforcement-false-option2-php-snippets.md create mode 100644 includes/snippets/php/beta/update-authenticationbehaviors-coopenforcement-null-option2-php-snippets.md create mode 100644 includes/snippets/php/beta/update-authenticationbehaviors-coopenforcement-true-option2-php-snippets.md create mode 100644 includes/snippets/powershell/beta/update-authenticationbehaviors-coopenforcement-false-option2-powershell-snippets.md create mode 100644 includes/snippets/powershell/beta/update-authenticationbehaviors-coopenforcement-null-option2-powershell-snippets.md create mode 100644 includes/snippets/powershell/beta/update-authenticationbehaviors-coopenforcement-true-option2-powershell-snippets.md create mode 100644 includes/snippets/python/beta/update-authenticationbehaviors-coopenforcement-false-option2-python-snippets.md create mode 100644 includes/snippets/python/beta/update-authenticationbehaviors-coopenforcement-null-option2-python-snippets.md create mode 100644 includes/snippets/python/beta/update-authenticationbehaviors-coopenforcement-true-option2-python-snippets.md diff --git a/api-reference/beta/api/authentication-list-resourceaccountkeyauthenticationmethods.md b/api-reference/beta/api/authentication-list-resourceaccountkeyauthenticationmethods.md index 277924b6235..8de2ea473dc 100644 --- a/api-reference/beta/api/authentication-list-resourceaccountkeyauthenticationmethods.md +++ b/api-reference/beta/api/authentication-list-resourceaccountkeyauthenticationmethods.md @@ -82,7 +82,6 @@ GET https://graph.microsoft.com/beta/users/0a3e7ad0-8d1b-4e25-ad43-5b7c7c2b5f6f/ --- - ### Response The following example shows the response. diff --git a/api-reference/beta/api/distributionlist-addmembers.md b/api-reference/beta/api/distributionlist-addmembers.md index b93c067cdaf..d8ea243e9ee 100644 --- a/api-reference/beta/api/distributionlist-addmembers.md +++ b/api-reference/beta/api/distributionlist-addmembers.md @@ -62,6 +62,7 @@ If successful, this action returns a `200 OK` response code and a [distributionL ### Request The following example shows a request. +# [HTTP](#tab/http) ``` http POST https://graph.microsoft.com/beta/drives/{drive-id}/items/016GVDAP3RCQS5VBQHORFIVU2ZMOSBL25U/assignSensitivityLabel @@ -148,6 +173,36 @@ Content-Type: application/json } ``` +# [C#](#tab/csharp) +[!INCLUDE [sample-code](../includes/snippets/csharp/assignsensitivitylabel-apponly-id-csharp-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [sample-code](../includes/snippets/go/assignsensitivitylabel-apponly-id-go-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [sample-code](../includes/snippets/java/assignsensitivitylabel-apponly-id-java-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [sample-code](../includes/snippets/javascript/assignsensitivitylabel-apponly-id-javascript-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [sample-code](../includes/snippets/php/assignsensitivitylabel-apponly-id-php-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/assignsensitivitylabel-apponly-id-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [sample-code](../includes/snippets/python/assignsensitivitylabel-apponly-id-python-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + #### Response @@ -162,6 +217,7 @@ Location: https://contoso.sharepoint.com/_api/v2.0/monitor/QXNzaWduU2Vuc2l0aXZpd The following example shows an app-only request that identifies the user by their user principal name. +# [HTTP](#tab/http) ``` http POST https://graph.microsoft.com/beta/drives/{drive-id}/items/016GVDAP3RCQS5VBQHORFIVU2ZMOSBL25U/assignSensitivityLabel @@ -177,6 +233,36 @@ Content-Type: application/json } ``` +# [C#](#tab/csharp) +[!INCLUDE [sample-code](../includes/snippets/csharp/assignsensitivitylabel-apponly-upn-csharp-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [sample-code](../includes/snippets/go/assignsensitivitylabel-apponly-upn-go-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [sample-code](../includes/snippets/java/assignsensitivitylabel-apponly-upn-java-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [sample-code](../includes/snippets/javascript/assignsensitivitylabel-apponly-upn-javascript-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [sample-code](../includes/snippets/php/assignsensitivitylabel-apponly-upn-php-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/assignsensitivitylabel-apponly-upn-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [sample-code](../includes/snippets/python/assignsensitivitylabel-apponly-upn-python-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + #### Response diff --git a/api-reference/beta/api/filestoragecontainer-transferprincipalownership.md b/api-reference/beta/api/filestoragecontainer-transferprincipalownership.md index 64950dbaa43..fe0a2ce1f2e 100644 --- a/api-reference/beta/api/filestoragecontainer-transferprincipalownership.md +++ b/api-reference/beta/api/filestoragecontainer-transferprincipalownership.md @@ -115,7 +115,6 @@ Content-Type: application/json --- - ### Response The following example shows the response. diff --git a/api-reference/beta/api/resourceaccountkeyauthenticationmethod-delete.md b/api-reference/beta/api/resourceaccountkeyauthenticationmethod-delete.md index 8605b970b7b..914d1e84d42 100644 --- a/api-reference/beta/api/resourceaccountkeyauthenticationmethod-delete.md +++ b/api-reference/beta/api/resourceaccountkeyauthenticationmethod-delete.md @@ -81,7 +81,6 @@ DELETE https://graph.microsoft.com/beta/users/0a3e7ad0-8d1b-4e25-ad43-5b7c7c2b5f --- - ### Response The following example shows the response. diff --git a/api-reference/beta/api/resourceaccountkeyauthenticationmethod-get.md b/api-reference/beta/api/resourceaccountkeyauthenticationmethod-get.md index 27b85db3ff4..c4c3c61dd1c 100644 --- a/api-reference/beta/api/resourceaccountkeyauthenticationmethod-get.md +++ b/api-reference/beta/api/resourceaccountkeyauthenticationmethod-get.md @@ -82,7 +82,6 @@ GET https://graph.microsoft.com/beta/users/0a3e7ad0-8d1b-4e25-ad43-5b7c7c2b5f6f/ --- - ### Response The following example shows the response. diff --git a/api-reference/beta/api/user-list-distributionlists.md b/api-reference/beta/api/user-list-distributionlists.md index 8a9e5ac62a5..33177187c7a 100644 --- a/api-reference/beta/api/user-list-distributionlists.md +++ b/api-reference/beta/api/user-list-distributionlists.md @@ -59,6 +59,7 @@ If successful, this method returns a `200 OK` response code and a collection of ### Request The following example shows a request. +# [HTTP](#tab/http) ``` http POST https://graph.microsoft.com/v1.0/drives/{drive-id}/items/016GVDAP3RCQS5VBQHORFIVU2ZMOSBL25U/assignSensitivityLabel @@ -146,6 +171,36 @@ Content-Type: application/json } ``` +# [C#](#tab/csharp) +[!INCLUDE [sample-code](../includes/snippets/csharp/assignsensitivitylabel-apponly-id-csharp-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [sample-code](../includes/snippets/go/assignsensitivitylabel-apponly-id-go-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [sample-code](../includes/snippets/java/assignsensitivitylabel-apponly-id-java-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [sample-code](../includes/snippets/javascript/assignsensitivitylabel-apponly-id-javascript-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [sample-code](../includes/snippets/php/assignsensitivitylabel-apponly-id-php-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/assignsensitivitylabel-apponly-id-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [sample-code](../includes/snippets/python/assignsensitivitylabel-apponly-id-python-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + #### Response @@ -160,6 +215,7 @@ Location: https://contoso.sharepoint.com/_api/v2.0/monitor/QXNzaWduU2Vuc2l0aXZpd The following example shows an app-only request that identifies the user by their user principal name. +# [HTTP](#tab/http) ``` http POST https://graph.microsoft.com/v1.0/drives/{drive-id}/items/016GVDAP3RCQS5VBQHORFIVU2ZMOSBL25U/assignSensitivityLabel @@ -175,6 +231,36 @@ Content-Type: application/json } ``` +# [C#](#tab/csharp) +[!INCLUDE [sample-code](../includes/snippets/csharp/assignsensitivitylabel-apponly-upn-csharp-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [sample-code](../includes/snippets/go/assignsensitivitylabel-apponly-upn-go-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [sample-code](../includes/snippets/java/assignsensitivitylabel-apponly-upn-java-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [sample-code](../includes/snippets/javascript/assignsensitivitylabel-apponly-upn-javascript-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [sample-code](../includes/snippets/php/assignsensitivitylabel-apponly-upn-php-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/assignsensitivitylabel-apponly-upn-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [sample-code](../includes/snippets/python/assignsensitivitylabel-apponly-upn-python-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + #### Response diff --git a/api-reference/v1.0/api/entrarecoveryservices-recovery-list-jobs.md b/api-reference/v1.0/api/entrarecoveryservices-recovery-list-jobs.md index dce55471113..e5b019b7c27 100644 --- a/api-reference/v1.0/api/entrarecoveryservices-recovery-list-jobs.md +++ b/api-reference/v1.0/api/entrarecoveryservices-recovery-list-jobs.md @@ -62,6 +62,7 @@ If successful, this method returns a `200 OK` response code and a collection of ### Request The following example shows a request. +# [HTTP](#tab/http) ``` http -GET https://graph.microsoft.com/v1.0/admin/exchange/mailboxes/MBX:e0643f21@a7809c93/folders?$filter=type eq 'IPF.Appointment'&$select=displayName,type&$top=5 +GET https://graph.microsoft.com/v1.0/admin/exchange/mailboxes/MBX:e0643f21@a7809c93/folders?$filter=type eq 'IPF.Appointment'&$select=displayName,type,wellKnownName&$top=5 ``` -# [C#](#tab/csharp) -[!INCLUDE [sample-code](../includes/snippets/csharp/list-mailboxfolder-with-query-parameters-csharp-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [sample-code](../includes/snippets/go/list-mailboxfolder-with-query-parameters-go-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [sample-code](../includes/snippets/java/list-mailboxfolder-with-query-parameters-java-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/list-mailboxfolder-with-query-parameters-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [sample-code](../includes/snippets/php/list-mailboxfolder-with-query-parameters-php-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [sample-code](../includes/snippets/python/list-mailboxfolder-with-query-parameters-python-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - ---- - #### Response The following example shows the response. @@ -207,9 +155,10 @@ Content-length: 232 { "@odata.type": "#microsoft.graph.mailboxFolder", "id": "NJWt2LeVEAAAIBDQAAAA==", - "displayName": "Calendar", + "displayName": "Project Calendar", "parentMailboxUrl": "https://graph.microsoft.com/v1.0/admin/exchange/mailboxes/MBX:e0643f21@a7809c93", - "type": "IPF.Appointment" + "type": "IPF.Appointment", + "wellKnownName": null } ] } diff --git a/api-reference/v1.0/api/mailbox-post-folders.md b/api-reference/v1.0/api/mailbox-post-folders.md index 424f5d706d8..0eb97b3b7b4 100644 --- a/api-reference/v1.0/api/mailbox-post-folders.md +++ b/api-reference/v1.0/api/mailbox-post-folders.md @@ -2,7 +2,7 @@ title: "Create mailboxFolder" description: "Create a new mailboxFolder or child mailboxFolder in a user's mailbox." author: "cparker-msft" -ms.date: 02/23/2026 +ms.date: 08/06/2026 ms.localizationpriority: medium ms.subservice: "outlook" doc_type: apiPageType @@ -60,7 +60,6 @@ If successful, this method returns a `201 Created` response code and a [mailboxF The following example shows how to create a new mailbox folder. -# [HTTP](#tab/http) + ```http HTTP/1.1 200 OK @@ -185,6 +187,36 @@ Content-type: application/json } ``` +### Example 2: Get a drive and its settings + +The **settings** property isn't returned by default. The following example uses `$select` to explicitly request it in the response. + +#### Request + +The following example shows a request. + + +```msgraph-interactive +GET /drives/b!t18F8ybsHUq1z3LTz8xvZqP8zaSWjkFNhsME-Fepo75dTf9vQKfeRblBZjoSQrd7?$select=id,settings +``` + +#### Response + +The following example shows the response. + + +```http +HTTP/1.1 200 OK +Content-type: application/json + +{ + "id": "b!t18F8ybsHUq1z3LTz8xvZqP8zaSWjkFNhsME-Fepo75dTf9vQKfeRblBZjoSQrd7", + "settings": { + "itemDefaultSensitivityLabelId": "bf7ea563-b848-4ec8-9155-b2054564cfe4" + } +} +``` + [drive-resource]: ../resources/drive.md [odata-query-parameters]: /graph/query-parameters diff --git a/api-reference/beta/resources/drive.md b/api-reference/beta/resources/drive.md index adfd3a7ab7f..8ac5867cd40 100644 --- a/api-reference/beta/resources/drive.md +++ b/api-reference/beta/resources/drive.md @@ -5,7 +5,7 @@ author: spgraph-docs-team ms.localizationpriority: high ms.subservice: "sharepoint" doc_type: resourcePageType -ms.date: 09/27/2024 +ms.date: 08/04/2026 --- # drive resource type @@ -48,6 +48,7 @@ Users without a OneDrive license may not have a default drive available. | name | string | The name of the item. Read-write. | | owner | [identitySet](identityset.md) | Optional. The user account that owns the drive. Read-only. | | quota | [quota](../resources/quota.md) | Optional. Information about the drive's storage space quota. Read-only. | +| settings | [driveSettings](drivesettings.md) | The settings associated with the drive. Read-only. This property isn't returned by default and must be selected using the `$select` query parameter. | | sharepointIds | [sharepointIds][] | Returns identifiers useful for SharePoint REST compatibility. Read-only. This property isn't returned by default and must be selected using the `$select` query parameter. | | system | [systemFacet][] | If present, indicates that it's a system-managed drive. Read-only. | webUrl | string (url) | URL that displays the resource in the browser. Read-only. | @@ -87,6 +88,7 @@ The **drive** resource is derived from [**baseItem**](baseitem.md) and inherits "webUrl", "items", "root", + "settings", "sharepointIds", "special", "system" @@ -112,6 +114,7 @@ The **drive** resource is derived from [**baseItem**](baseitem.md) and inherits "owner": {"@odata.type": "microsoft.graph.identitySet"}, "quota": {"@odata.type": "microsoft.graph.quota"}, "root": {"@odata.type": "microsoft.graph.driveItem"}, + "settings": {"@odata.type": "microsoft.graph.driveSettings"}, "sharepointIds": {"@odata.type": "microsoft.graph.sharepointIds"}, "special": [{"@odata.type": "microsoft.graph.driveItem"}], "system": {"@odata.type": "microsoft.graph.systemFacet"}, diff --git a/api-reference/beta/resources/drivesettings.md b/api-reference/beta/resources/drivesettings.md new file mode 100644 index 00000000000..c084b359848 --- /dev/null +++ b/api-reference/beta/resources/drivesettings.md @@ -0,0 +1,46 @@ +--- +title: "driveSettings resource type" +description: "Represents the settings associated with a drive." +author: "danipocket" +ms.localizationpriority: medium +ms.subservice: "sharepoint" +doc_type: resourcePageType +ms.date: 07/23/2026 +--- + +# driveSettings resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the settings associated with a [drive](../resources/drive.md). Contains configuration values that apply to the drive and its contents. This property isn't returned by default and must be selected using the `$select` query parameter. + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|itemDefaultSensitivityLabelId|String|The ID of the default sensitivity label for items in the drive. Read-only.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "itemDefaultSensitivityLabelId": "String" +} +``` diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 8c6d26e2d10..67f4afd1bbb 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -1159,6 +1159,7 @@ "sharePointGroupMember" ], "complexTypes": [ + "driveSettings", "fileStorageContainerTypeRegistrationSettings", "fileStorageContainerTypeAgentSettings", "fileStorageContainerTypeSettings", diff --git a/changelog/Microsoft.FileServices.json b/changelog/Microsoft.FileServices.json index 6070c31eaf5..e15c7ce2fb7 100644 --- a/changelog/Microsoft.FileServices.json +++ b/changelog/Microsoft.FileServices.json @@ -1,5 +1,31 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "45d62bf0-4286-4f94-a149-f7cc6bc7466f", + "ApiChange": "Resource", + "ChangedApiName": "driveSettings", + "ChangeType": "Addition", + "Description": "Added the [driveSettings](https://learn.microsoft.com/en-us/graph/api/resources/drivesettings?view=graph-rest-beta) resource.", + "Target": "driveSettings" + }, + { + "Id": "45d62bf0-4286-4f94-a149-f7cc6bc7466f", + "ApiChange": "Property", + "ChangedApiName": "settings", + "ChangeType": "Addition", + "Description": "Added the **settings** property to the [drive](https://learn.microsoft.com/en-us/graph/api/resources/drive?view=graph-rest-beta) resource.", + "Target": "drive" + } + ], + "Id": "45d62bf0-4286-4f94-a149-f7cc6bc7466f", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-18T21:36:29.4641494Z", + "WorkloadArea": "Files", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 3070b32732b..ff2d4607559 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -136,7 +136,9 @@ Added the **vapidPublicKey**, **webPushEncryptionP256dhPublicKey**, and **webPus ### Files -- Updated the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to support the optional **reportType** parameter for retrieving throttling metrics. Use `reportType='throttlingReport'` to get throttled request counts via the **throttledRequests** property on the [sharePointApiUsageDataPoint](/graph/api/resources/sharepointapiusagedatapoint?view=graph-rest-beta&preserve-view=true) resource, or use `reportType='egressReport'` (default) to get egress usage via the **usageMB** property. +- Added the **settings** property of type [driveSettings](/graph/api/resources/drivesettings?view=graph-rest-beta&preserve-view=true) to the [drive](/graph/api/resources/drive?view=graph-rest-beta&preserve-view=true) resource type to retrieve drive-level settings such as the default sensitivity label applied to items. +- Updated the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to support the optional `reportType` parameter for retrieving throttling metrics. Use `reportType='throttlingReport'` to get throttled request counts via the **throttledRequests** property on the [sharePointApiUsageDataPoint](/graph/api/resources/sharepointapiusagedatapoint?view=graph-rest-beta&preserve-view=true) resource, or use `reportType='egressReport'` (default) to get egress usage via the **usageMB** property. +- Added the [Upsert permissions](/graph/api/filestoragecontainer-patch-permissions) (create or update) up to 40 permissions on a [fileStorageContainer](/graph/api/resources/filestoragecontainer) in a single request. The limit increased from 10 to 40 [permission](/graph/api/resources/permission) objects per request. - Added the **allowOnPremUpdateOfOnPremisesObjectIdentifierEnabled** property to the [onPremisesDirectorySynchronizationFeature](/graph/api/resources/onpremisesdirectorysynchronizationfeature?view=graph-rest-beta&preserve-view=true) resource. - Added the [getByUser](/graph/api/filestoragecontainer-getbyuser?view=graph-rest-beta&preserve-view=true) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource to retrieve a list of file storage containers owned by a user, with optional filtering by role (owner or principalOwner). - Added the **isOfficeRestricted** property to the [fileStorageContainerTypeSettings](/graph/api/resources/filestoragecontainertypesettings?view=graph-rest-beta&preserve-view=true) and [fileStorageContainerTypeRegistrationSettings](/graph/api/resources/filestoragecontainertyperegistrationsettings?view=graph-rest-beta&preserve-view=true) resources, and the **fileStorageContainerTypeSettingsOverride** enumeration. From 3070261a095dbca9a0c3f94f2e433bbdc566fcd5 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Wed, 19 Aug 2026 09:28:49 -0600 Subject: [PATCH 063/189] Update reference TOC (#29463) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/toc/files/toc.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/api-reference/beta/toc/files/toc.yml b/api-reference/beta/toc/files/toc.yml index 20bce94b059..7adf1589b48 100644 --- a/api-reference/beta/toc/files/toc.yml +++ b/api-reference/beta/toc/files/toc.yml @@ -458,6 +458,8 @@ items: href: ../../resources/sharepointusermigrationtaskparameters.md - name: Complex types items: + - name: Drive settings + href: ../../resources/drivesettings.md - name: File storage container type agent settings href: ../../resources/filestoragecontainertypeagentsettings.md - name: File storage container type registration settings From 2db8f6155498adc74bbbd02785aa4f3153c70233 Mon Sep 17 00:00:00 2001 From: rebeccawwood <29644648+rebeccawwood@users.noreply.github.com> Date: Wed, 19 Aug 2026 12:34:10 -0400 Subject: [PATCH 064/189] Address permissions overview review feedback --- .../beta/resources/crosstenant-migration-overview.md | 7 +++++-- 1 file changed, 5 insertions(+), 2 deletions(-) diff --git a/api-reference/beta/resources/crosstenant-migration-overview.md b/api-reference/beta/resources/crosstenant-migration-overview.md index 59eb121004e..7909355068b 100644 --- a/api-reference/beta/resources/crosstenant-migration-overview.md +++ b/api-reference/beta/resources/crosstenant-migration-overview.md @@ -43,9 +43,12 @@ Organizations often need to consolidate or reorganize Microsoft 365 environments ## Permissions -Permissions vary by operation. List and Get operations support `CrossTenantContentMigration.Read.All` as the least privileged permission and `CrossTenantContentMigration.ReadWrite.All` as a higher privileged permission. All other operations require `CrossTenantContentMigration.ReadWrite.All`. +Permissions vary by operation. For List and Get operations, `CrossTenantContentMigration.Read.All` is the least privileged permission and `CrossTenantContentMigration.ReadWrite.All` is a higher privileged permission. All other operations require `CrossTenantContentMigration.ReadWrite.All`. -Delegated permissions for work or school accounts and application permissions are supported. Delegated permissions for personal Microsoft accounts aren't supported. For delegated access, the signed-in user must also be assigned a supported Microsoft Entra role or a custom role that grants the permissions required for the operation. For the exact permissions and supported roles, see the **Permissions** section of each API operation. +Delegated permissions for work or school accounts and application permissions are supported. Delegated permissions for personal Microsoft accounts aren't supported. + +> [!NOTE] +> For delegated access, the signed-in user must also be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference) or a custom role that grants the permissions required for the operation. For the exact permissions and supported roles, see the **Permissions** section of each API operation. ## Related content From 16e83c256d33dafe9ff57273a85c6e97aee14cf1 Mon Sep 17 00:00:00 2001 From: VISHNU VARDHAN PACHVA <67050501+Vishnu369@users.noreply.github.com> Date: Wed, 19 Aug 2026 09:58:21 -0700 Subject: [PATCH 065/189] =?UTF-8?q?=C2=A0Document=20matchedConditionsDescr?= =?UTF-8?q?iption=20and=20complianceUrl=20on=20policyTipAction=C2=A0=20(#2?= =?UTF-8?q?9288)?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit * Document policyTipAction property additions Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Vishnu Vardhan Pachva Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../beta/resources/policytipaction.md | 4 +++ .../Microsoft.DataClassificationService.json | 26 +++++++++++++++++++ concepts/whats-new-overview.md | 2 ++ 3 files changed, 32 insertions(+) diff --git a/api-reference/beta/resources/policytipaction.md b/api-reference/beta/resources/policytipaction.md index 0a900866bf6..eb14877c890 100644 --- a/api-reference/beta/resources/policytipaction.md +++ b/api-reference/beta/resources/policytipaction.md @@ -23,6 +23,8 @@ Inherits from [dlpActionInfo](../resources/dlpactioninfo.md). | Property | Type | Description | | :--- | :--- | :--- | | action | microsoft.graph.security.dlpAction | The type of DLP action. Inherited from [dlpActionInfo](../resources/dlpactioninfo.md). | +| complianceUrl | String | A URL that points users to additional compliance guidance or remediation details for the policy tip. | +| matchedConditionsDescription | String | A user-friendly summary of the matched DLP conditions that triggered the policy tip. | | policyTip | String | The text of the policy tip that explains what triggered the DLP policy. Developers can display this information to users in the app. | ## Relationships @@ -42,6 +44,8 @@ The following JSON representation shows the resource type. { "@odata.type": "#microsoft.graph.policyTipAction", "action": "policyTip", + "complianceUrl": "String", + "matchedConditionsDescription": "String", "policyTip": "String" } ``` diff --git a/changelog/Microsoft.DataClassificationService.json b/changelog/Microsoft.DataClassificationService.json index dad9d2357de..b5e43ac23cf 100644 --- a/changelog/Microsoft.DataClassificationService.json +++ b/changelog/Microsoft.DataClassificationService.json @@ -1,5 +1,31 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "e845e70f-0e71-4ef3-ab89-4b1bbb9d9953", + "ApiChange": "Property", + "ChangedApiName": "complianceUrl", + "ChangeType": "Addition", + "Description": "Added the **complianceUrl** property to the [policyTipAction](https://learn.microsoft.com/en-us/graph/api/resources/policyTipAction?view=graph-rest-beta) resource.", + "Target": "policyTipAction" + }, + { + "Id": "e845e70f-0e71-4ef3-ab89-4b1bbb9d9953", + "ApiChange": "Property", + "ChangedApiName": "matchedConditionsDescription", + "ChangeType": "Addition", + "Description": "Added the **matchedConditionsDescription** property to the [policyTipAction](https://learn.microsoft.com/en-us/graph/api/resources/policyTipAction?view=graph-rest-beta) resource.", + "Target": "policyTipAction" + } + ], + "Id": "e845e70f-0e71-4ef3-ab89-4b1bbb9d9953", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-19T05:18:33.5364712Z", + "WorkloadArea": "Security", + "SubArea": "Data security and compliance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index ff2d4607559..8c73cbfff9c 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -196,6 +196,8 @@ Added the optional **workspaceId** parameter to the [runHuntingQuery](/graph/api ### Security | Data security and compliance +Added the **matchedConditionsDescription** and **complianceUrl** properties to the [policyTipAction](/graph/api/resources/policytipaction?view=graph-rest-beta&preserve-view=true) resource. Use these properties to display a user-friendly summary of the matched DLP conditions and link users to additional compliance guidance. + Added the [embeddingInput](/graph/api/resources/embeddinginput?view=graph-rest-beta&preserve-view=true) resource type and the **embeddings** property on the [textClassificationRequest](/graph/api/resources/textclassificationrequest?view=graph-rest-beta&preserve-view=true) resource, so a caller can supply precomputed embedding vectors when classifying text and let the service skip recomputing them. ### Security | eDiscovery From b69225781a34d198423780c17cfab1bb5a97cbe4 Mon Sep 17 00:00:00 2001 From: Alex Feldsher <66358192+alfeldsh@users.noreply.github.com> Date: Thu, 20 Aug 2026 00:03:32 +0300 Subject: [PATCH 066/189] docs: improve security case management reference (#29313) * docs: correct case management filter guidance Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: f54d135d-fa18-4671-8c14-0e041f3b7a9c * docs: correct case management query support Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: f54d135d-fa18-4671-8c14-0e041f3b7a9c * docs: clarify case property query support Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: f54d135d-fa18-4671-8c14-0e041f3b7a9c * docs: update case management API documentation for genericCase properties * docs: clarify incident case patch behavior Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: document case activity filters Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: enhance priority field descriptions for genericCase and case update * docs: clarify tenant-defined lifecycle status for case management resources * docs: update task resource documentation to include support for $filter query parameter * docs: clarify relation resource types and update related properties in case management documentation * docs: document missing case management operations Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: document attachment name uniqueness Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: document case list top limit Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: clarify custom fields filtering Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: declare attachment download stream response Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: document polymorphic collection casts Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: clarify case list count support Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: explain case custom field payloads Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: correct case management cast guidance Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: clarify incident relation case support Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: correct case management PATCH responses Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: clarify custom field payload shape Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: address case management review feedback Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: remove priorityScore from incident case updates Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: align polymorphic cast examples Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 * docs: correct case management cast examples Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a88f5505-345b-4160-b761-a2413b629040 * docs: add case management supporting updates Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a88f5505-345b-4160-b761-a2413b629040 * docs: regenerate case management TOC Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a88f5505-345b-4160-b761-a2413b629040 * Update reference TOC * docs: update case management RBAC roles Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: d4304916-03a7-43e8-b2ea-8714aa30add2 * docs: remove global administrator RBAC role Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: d4304916-03a7-43e8-b2ea-8714aa30add2 * docs: document case comment limit Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 63ee6199-2c29-42c2-a464-2a5968372736 * fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: f54d135d-fa18-4671-8c14-0e041f3b7a9c Copilot-Session: 2b2611e2-ebff-4d17-91f9-99ffd184cf42 Copilot-Session: a88f5505-345b-4160-b761-a2413b629040 Copilot-Session: d4304916-03a7-43e8-b2ea-8714aa30add2 Copilot-Session: 63ee6199-2c29-42c2-a464-2a5968372736 --- .../security-casemanagement-activity-get.md | 2 +- ...security-casemanagement-activity-update.md | 19 +-- ...emanagement-attachment-download-content.md | 82 +++++++++++++ .../security-casemanagement-attachment-get.md | 2 +- ...curity-casemanagement-attachment-update.md | 28 +---- ...asemanagement-attachment-upload-content.md | 84 +++++++++++++ .../api/security-casemanagement-case-get.md | 2 +- ...ity-casemanagement-case-list-activities.md | 8 +- ...ty-casemanagement-case-list-attachments.md | 2 +- ...rity-casemanagement-case-list-relations.md | 11 +- ...security-casemanagement-case-list-tasks.md | 2 +- ...ity-casemanagement-case-post-activities.md | 3 + ...ty-casemanagement-case-post-attachments.md | 29 ++--- ...rity-casemanagement-case-post-relations.md | 33 +++-- .../security-casemanagement-case-update.md | 52 ++++++-- ...casetypeconfiguration-list-customfields.md | 2 + ...security-casemanagement-relation-delete.md | 74 +++++++++++ .../security-casemanagement-relation-get.md | 90 ++++++++++++++ ...security-casemanagement-relation-update.md | 30 ++--- .../security-casemanagement-task-delete.md | 74 +++++++++++ .../security-casemanagement-task-update.md | 36 ++---- .../security-casemanagementroot-list-cases.md | 6 +- .../security-casemanagementroot-post-cases.md | 47 ++++++- ...attachment-download-content-permissions.md | 11 ++ ...t-attachment-upload-content-permissions.md | 11 ++ ...emanagement-relation-delete-permissions.md | 11 ++ ...casemanagement-relation-get-permissions.md | 11 ++ ...-casemanagement-task-delete-permissions.md | 11 ++ .../rbac-case-management-apis.md | 1 + .../security-casemanagement-activity.md | 4 +- .../security-casemanagement-attachment.md | 16 +-- .../security-casemanagement-auditlog.md | 28 ++--- .../resources/security-casemanagement-case.md | 22 ++-- .../security-casemanagement-comment.md | 18 +-- ...curity-casemanagement-customfieldvalues.md | 42 ++++++- .../security-casemanagement-genericcase.md | 34 ++--- .../security-casemanagement-incidentcase.md | 116 ++++++++---------- ...ecurity-casemanagement-incidentrelation.md | 8 +- ...y-casemanagement-recommendationrelation.md | 6 +- .../security-casemanagement-relation.md | 15 ++- .../resources/security-casemanagement-task.md | 29 ++--- ...semanagement-workspaceindicatorrelation.md | 6 +- .../resources/security-casemanagementroot.md | 7 +- api-reference/beta/toc/security/toc.yml | 10 ++ changelog/Microsoft.USX.CaseManagement.json | 50 ++++++++ concepts/whats-new-overview.md | 6 + 46 files changed, 888 insertions(+), 303 deletions(-) create mode 100644 api-reference/beta/api/security-casemanagement-attachment-download-content.md create mode 100644 api-reference/beta/api/security-casemanagement-attachment-upload-content.md create mode 100644 api-reference/beta/api/security-casemanagement-relation-delete.md create mode 100644 api-reference/beta/api/security-casemanagement-relation-get.md create mode 100644 api-reference/beta/api/security-casemanagement-task-delete.md create mode 100644 api-reference/beta/includes/permissions/security-casemanagement-attachment-download-content-permissions.md create mode 100644 api-reference/beta/includes/permissions/security-casemanagement-attachment-upload-content-permissions.md create mode 100644 api-reference/beta/includes/permissions/security-casemanagement-relation-delete-permissions.md create mode 100644 api-reference/beta/includes/permissions/security-casemanagement-relation-get-permissions.md create mode 100644 api-reference/beta/includes/permissions/security-casemanagement-task-delete-permissions.md diff --git a/api-reference/beta/api/security-casemanagement-activity-get.md b/api-reference/beta/api/security-casemanagement-activity-get.md index c946fb13c9b..38d29ee3e13 100644 --- a/api-reference/beta/api/security-casemanagement-activity-get.md +++ b/api-reference/beta/api/security-casemanagement-activity-get.md @@ -38,7 +38,7 @@ GET /security/caseManagement/cases/{caseId}/activities/{activityId} ## Optional query parameters -This method supports the `$select` OData query parameter. For general information, see [OData query parameters](/graph/query-parameters). +This method supports the `$select` OData query parameter. On the base activity endpoint, `$select` can reference only properties declared on [activity](../resources/security-casemanagement-activity.md). Derived-only properties require either no `$select` or a casted endpoint, if supported. For general information, see [OData query parameters](/graph/query-parameters). ## Request headers diff --git a/api-reference/beta/api/security-casemanagement-activity-update.md b/api-reference/beta/api/security-casemanagement-activity-update.md index 2c342c68949..d0d61c8f409 100644 --- a/api-reference/beta/api/security-casemanagement-activity-update.md +++ b/api-reference/beta/api/security-casemanagement-activity-update.md @@ -59,7 +59,7 @@ Supply a JSON representation of the resource. Include `@odata.type` to identify ## Response -If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.security.caseManagement.activity](../resources/security-casemanagement-activity.md) object in the response body. +If successful, this method returns a `204 No Content` response code. ## Examples @@ -112,22 +112,9 @@ Content-Type: application/json The following example shows the response. ``` http -HTTP/1.1 200 OK -Content-Type: application/json - -{ - "@odata.type": "#microsoft.graph.security.caseManagement.comment", - "id": "c5dcf8b0-0732-750b-0e35-7f44188423bf", - "createdDateTime": "2026-05-20T11:12:28Z", - "createdBy": "user@contoso.com", - "lastModifiedDateTime": "2026-05-20T11:18:45Z", - "lastModifiedBy": "user@contoso.com", - "message": "This is a modified comment." -} +HTTP/1.1 204 No Content ``` diff --git a/api-reference/beta/api/security-casemanagement-attachment-download-content.md b/api-reference/beta/api/security-casemanagement-attachment-download-content.md new file mode 100644 index 00000000000..6d3a2e8cf16 --- /dev/null +++ b/api-reference/beta/api/security-casemanagement-attachment-download-content.md @@ -0,0 +1,82 @@ +--- +title: "Download attachment content" +description: "Download binary content for a case attachment." +author: "alfeldsh" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: apiPageType +--- + +# Download attachment content + +Namespace: microsoft.graph.security.caseManagement + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Download the binary content of an [attachment](../resources/security-casemanagement-attachment.md). + +After an upload completes, the service asynchronously scans the attachment for malware. Poll the attachment metadata by using [Get attachment](../api/security-casemanagement-attachment-get.md). If **scanResult** is `unscanned`, wait and try again later. Download the content only when **scanResult** is `noThreatsFound`. Don't download content when **scanResult** is `malicious`. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/security-casemanagement-attachment-download-content-permissions.md)] +[!INCLUDE [rbac-case-management-apis](../includes/rbac-for-apis/rbac-case-management-apis.md)] + +## HTTP request + + +``` http +GET /security/caseManagement/cases/{caseId}/attachments/{attachmentId}/content +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code, a `Content-Type` of `application/octet-stream`, and the attachment content in the response body. + +A request made before content is uploaded or while malware scanning is pending returns `400 Bad Request`. Wait for scanning to complete and retry the request. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/beta/security/caseManagement/cases/{caseId}/attachments/{attachmentId}/content +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/octet-stream + +...binary data... +``` diff --git a/api-reference/beta/api/security-casemanagement-attachment-get.md b/api-reference/beta/api/security-casemanagement-attachment-get.md index 29bec0dd5e8..09e39677b4e 100644 --- a/api-reference/beta/api/security-casemanagement-attachment-get.md +++ b/api-reference/beta/api/security-casemanagement-attachment-get.md @@ -118,7 +118,7 @@ Content-Type: application/json "displayName": "Case MS-001 Attachment", "description": "Screenshot of suspicious sign-in activity", "fileSize": 1000, - "fileExtension": "jpeg", + "fileExtension": ".jpeg", "scanResult": "noThreatsFound", "origin": { "@odata.type": "microsoft.graph.security.caseManagement.attachmentOrigin", diff --git a/api-reference/beta/api/security-casemanagement-attachment-update.md b/api-reference/beta/api/security-casemanagement-attachment-update.md index 0a9138b210b..87f0fda1d8f 100644 --- a/api-reference/beta/api/security-casemanagement-attachment-update.md +++ b/api-reference/beta/api/security-casemanagement-attachment-update.md @@ -56,7 +56,7 @@ Supply a JSON representation of the properties to update. ## Response -If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.security.caseManagement.attachment](../resources/security-casemanagement-attachment.md) object in the response body. +If successful, this method returns a `204 No Content` response code. ## Examples @@ -109,31 +109,9 @@ Content-Type: application/json The following example shows the response. ``` http -HTTP/1.1 200 OK -Content-Type: application/json - -{ - "@odata.type": "#microsoft.graph.security.caseManagement.attachment", - "id": "1719f11c-21e9-acf2-85db-ade533556fba", - "createdDateTime": "2026-05-20T11:12:28Z", - "createdBy": "user@contoso.com", - "lastModifiedDateTime": "2026-05-20T11:18:45Z", - "lastModifiedBy": "user@contoso.com", - "displayName": "Case MS-001 Attachment", - "description": "Screenshot of suspicious sign-in activity", - "fileSize": 1000, - "fileExtension": "jpeg", - "scanResult": "noThreatsFound", - "origin": { - "@odata.type": "microsoft.graph.security.caseManagement.attachmentOrigin", - "resourceId": "987757fb-6ef4-1061-17e7-9de0d088e1dd", - "resourceType": "case" - } -} +HTTP/1.1 204 No Content ``` diff --git a/api-reference/beta/api/security-casemanagement-attachment-upload-content.md b/api-reference/beta/api/security-casemanagement-attachment-upload-content.md new file mode 100644 index 00000000000..8caa2167480 --- /dev/null +++ b/api-reference/beta/api/security-casemanagement-attachment-upload-content.md @@ -0,0 +1,84 @@ +--- +title: "Upload attachment content" +description: "Upload binary content for a case attachment." +author: "alfeldsh" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: apiPageType +--- + +# Upload attachment content + +Namespace: microsoft.graph.security.caseManagement + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Upload binary content for an [attachment](../resources/security-casemanagement-attachment.md). Create the attachment metadata first by using [Create case attachment](../api/security-casemanagement-case-post-attachments.md). + +The maximum file size is 100 MB. Upload files in chunks of no more than 1 MB. For files larger than 1 MB, send one PUT request for each chunk until all byte ranges are uploaded. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/security-casemanagement-attachment-upload-content-permissions.md)] +[!INCLUDE [rbac-case-management-apis](../includes/rbac-for-apis/rbac-case-management-apis.md)] + +## HTTP request + + +``` http +PUT /security/caseManagement/cases/{caseId}/attachments/{attachmentId}/content +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Range|The zero-based, inclusive byte range of the chunk and the total file size, in the format `bytes {start}-{end}/{total}`. The total must match the attachment **fileSize**. Required.| +|Content-Type|`application/octet-stream`. Required.| + +## Request body + +Supply a binary content chunk of no more than 1 MB. + +## Response + +When all chunks are uploaded successfully, this method returns a `201 Created` response code and no response body. + +After upload completes, the service asynchronously scans the attachment for malware. The content isn't available to download until scanning completes successfully. + +## Examples + +### Request + +The following example uploads an 11-byte file in one chunk. + +``` http +PUT https://graph.microsoft.com/beta/security/caseManagement/cases/{caseId}/attachments/{attachmentId}/content +Content-Type: application/octet-stream +Content-Range: bytes 0-10/11 + +hello world +``` + +### Response + +The following example shows the response after the upload completes. + +``` http +HTTP/1.1 201 Created +``` diff --git a/api-reference/beta/api/security-casemanagement-case-get.md b/api-reference/beta/api/security-casemanagement-case-get.md index a55b4b56617..c3e1e2dd86e 100644 --- a/api-reference/beta/api/security-casemanagement-case-get.md +++ b/api-reference/beta/api/security-casemanagement-case-get.md @@ -38,7 +38,7 @@ GET /security/caseManagement/cases/{caseId} ## Optional query parameters -This method supports the `$select` OData query parameter. For general information, see [OData query parameters](/graph/query-parameters). +This method supports the `$select` OData query parameter. On the base case endpoint, `$select` can reference only properties declared on [case](../resources/security-casemanagement-case.md). Derived-only properties require either no `$select` or a casted endpoint, if supported. For general information, see [OData query parameters](/graph/query-parameters). ## Request headers diff --git a/api-reference/beta/api/security-casemanagement-case-list-activities.md b/api-reference/beta/api/security-casemanagement-case-list-activities.md index a565371b1e5..09117ab1f5e 100644 --- a/api-reference/beta/api/security-casemanagement-case-list-activities.md +++ b/api-reference/beta/api/security-casemanagement-case-list-activities.md @@ -38,7 +38,13 @@ GET /security/caseManagement/cases/{caseId}/activities ## Optional query parameters -This method supports the `$select` OData query parameter. For general information, see [OData query parameters](/graph/query-parameters). +This method supports the `$filter` and `$select` OData query parameters. On the base collection, these query options can reference only properties declared on [activity](../resources/security-casemanagement-activity.md). To reference a property declared only on a derived type, cast the collection to the derived type first. + +For an [auditLog](../resources/security-casemanagement-auditlog.md) cast, you can filter by the **action**, **createdBy**, **createdDateTime**, **id**, **lastModifiedBy**, **lastModifiedDateTime**, and **modifiedProperties** properties. For example: `GET /security/caseManagement/cases/{caseId}/activities/microsoft.graph.security.caseManagement.auditLog?$filter=action eq 'update'`. + +For a [comment](../resources/security-casemanagement-comment.md) cast, you can filter by the **createdBy**, **createdDateTime**, **id**, **lastModifiedBy**, **lastModifiedDateTime**, and **message** properties. For example: `GET /security/caseManagement/cases/{caseId}/activities/microsoft.graph.security.caseManagement.comment?$filter=message eq 'hello'`. + +For general information, see [OData query parameters](/graph/query-parameters). ## Request headers diff --git a/api-reference/beta/api/security-casemanagement-case-list-attachments.md b/api-reference/beta/api/security-casemanagement-case-list-attachments.md index d9b95a77adb..d47f00d100c 100644 --- a/api-reference/beta/api/security-casemanagement-case-list-attachments.md +++ b/api-reference/beta/api/security-casemanagement-case-list-attachments.md @@ -120,7 +120,7 @@ Content-Type: application/json "displayName": "Case MS-001 Attachment", "description": "Screenshot of suspicious sign-in activity", "fileSize": 1000, - "fileExtension": "jpeg", + "fileExtension": ".jpeg", "scanResult": "noThreatsFound", "origin": { "@odata.type": "microsoft.graph.security.caseManagement.attachmentOrigin", diff --git a/api-reference/beta/api/security-casemanagement-case-list-relations.md b/api-reference/beta/api/security-casemanagement-case-list-relations.md index b142243bfff..007a02cf238 100644 --- a/api-reference/beta/api/security-casemanagement-case-list-relations.md +++ b/api-reference/beta/api/security-casemanagement-case-list-relations.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph.security.caseManagement [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Get a list of external resource [relation](../resources/security-casemanagement-relation.md) objects for a [case](../resources/security-casemanagement-case.md). +Get a list of external resource [relation](../resources/security-casemanagement-relation.md) objects for a [case](../resources/security-casemanagement-case.md). Each relation is an [incidentRelation](../resources/security-casemanagement-incidentrelation.md), [recommendationRelation](../resources/security-casemanagement-recommendationrelation.md), or [workspaceIndicatorRelation](../resources/security-casemanagement-workspaceindicatorrelation.md), identified by `@odata.type`. [!INCLUDE [national-cloud-support](../../includes/global-only.md)] @@ -38,7 +38,11 @@ GET /security/caseManagement/cases/{caseId}/relations ## Optional query parameters -This method supports the `$select` OData query parameter. For general information, see [OData query parameters](/graph/query-parameters). +This method supports the `$select` OData query parameter. On the base collection, `$select` can reference only properties declared on [relation](../resources/security-casemanagement-relation.md). To select a property declared only on a derived type, cast the collection to the derived type first. + +For example: `GET /security/caseManagement/cases/{caseId}/relations/microsoft.graph.security.caseManagement.recommendationRelation?$select=recommendationType`. + +For general information, see [OData query parameters](/graph/query-parameters). ## Request headers @@ -117,8 +121,7 @@ Content-Type: application/json "createdBy": "user@contoso.com", "lastModifiedDateTime": "2026-05-20T11:18:45Z", "lastModifiedBy": "user@contoso.com", - "relatedResourceId": "987654321", - "displayName": "Related incident" + "relatedResourceId": "987654321" } ] } diff --git a/api-reference/beta/api/security-casemanagement-case-list-tasks.md b/api-reference/beta/api/security-casemanagement-case-list-tasks.md index 325fcbeac0f..7007f82a743 100644 --- a/api-reference/beta/api/security-casemanagement-case-list-tasks.md +++ b/api-reference/beta/api/security-casemanagement-case-list-tasks.md @@ -38,7 +38,7 @@ GET /security/caseManagement/cases/{caseId}/tasks ## Optional query parameters -This method supports the `$select` OData query parameter. For general information, see [OData query parameters](/graph/query-parameters). +This method supports the `$filter` and `$select` OData query parameters. You can filter by the **assignedTo**, **category**, **closingNotes**, **createdBy**, **createdDateTime**, **description**, **displayName**, **dueDateTime**, **id**, **lastModifiedBy**, **lastModifiedDateTime**, **priority**, and **status** properties. For general information, see [OData query parameters](/graph/query-parameters). ## Request headers diff --git a/api-reference/beta/api/security-casemanagement-case-post-activities.md b/api-reference/beta/api/security-casemanagement-case-post-activities.md index da88a12e8c5..63407311208 100644 --- a/api-reference/beta/api/security-casemanagement-case-post-activities.md +++ b/api-reference/beta/api/security-casemanagement-case-post-activities.md @@ -16,6 +16,9 @@ Namespace: microsoft.graph.security.caseManagement Create a [comment](../resources/security-casemanagement-comment.md) activity for a [case](../resources/security-casemanagement-case.md). +> [!NOTE] +> A case supports a maximum of 100 comments. + [!INCLUDE [national-cloud-support](../../includes/global-only.md)] ## Permissions diff --git a/api-reference/beta/api/security-casemanagement-case-post-attachments.md b/api-reference/beta/api/security-casemanagement-case-post-attachments.md index 2fad8a27887..ec4386e1c18 100644 --- a/api-reference/beta/api/security-casemanagement-case-post-attachments.md +++ b/api-reference/beta/api/security-casemanagement-case-post-attachments.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph.security.caseManagement [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Create an [attachment](../resources/security-casemanagement-attachment.md) for a [case](../resources/security-casemanagement-case.md). +Create [attachment](../resources/security-casemanagement-attachment.md) metadata for a [case](../resources/security-casemanagement-case.md). This method doesn't upload the file content. After creating the attachment, use [Upload attachment content](../api/security-casemanagement-attachment-upload-content.md). [!INCLUDE [national-cloud-support](../../includes/global-only.md)] @@ -51,12 +51,12 @@ You can specify the following properties when creating an **attachment**. |Property|Type|Description| |:---|:---|:---| -|displayName|String|The display name of the resource. Required.| |description|String|The description of the resource. Optional.| -|fileSize|Int64|The size of the attachment in bytes. Optional.| -|fileExtension|String|The file extension of the attachment. Optional.| -|scanResult|[microsoft.graph.security.caseManagement.attachmentScanResult](../resources/security-casemanagement-attachment.md#attachmentscanresult-values)|The malware scan result for the attachment. Required.| -|origin|[microsoft.graph.security.caseManagement.attachmentOrigin](../resources/security-casemanagement-attachmentorigin.md)|The origin reference for the attachment. Optional.| +|displayName|String|The display name of the attachment. The value must be unique among attachments in the same case; creating another attachment with the same display name isn't allowed. Required.| +|fileExtension|String|The file extension of the attachment. The service normalizes the value to include a leading period. Optional.| +|fileSize|Int64|The size of the attachment in bytes. The maximum file size is 100 MB. Required.| + +The **origin** and **scanResult** properties are service controlled and can't be supplied. ## Response @@ -82,13 +82,7 @@ Content-Type: application/json "displayName": "Case MS-001 Attachment", "description": "Screenshot of suspicious sign-in activity", "fileSize": 1000, - "fileExtension": "jpeg", - "scanResult": "noThreatsFound", - "origin": { - "@odata.type": "microsoft.graph.security.caseManagement.attachmentOrigin", - "resourceId": "987757fb-6ef4-1061-17e7-9de0d088e1dd", - "resourceType": "case" - } + "fileExtension": "jpeg" } ``` @@ -141,12 +135,7 @@ Content-Type: application/json "displayName": "Case MS-001 Attachment", "description": "Screenshot of suspicious sign-in activity", "fileSize": 1000, - "fileExtension": "jpeg", - "scanResult": "noThreatsFound", - "origin": { - "@odata.type": "microsoft.graph.security.caseManagement.attachmentOrigin", - "resourceId": "987757fb-6ef4-1061-17e7-9de0d088e1dd", - "resourceType": "case" - } + "fileExtension": ".jpeg", + "scanResult": "unscanned" } ``` diff --git a/api-reference/beta/api/security-casemanagement-case-post-relations.md b/api-reference/beta/api/security-casemanagement-case-post-relations.md index ef5280f5d29..fb7d513651a 100644 --- a/api-reference/beta/api/security-casemanagement-case-post-relations.md +++ b/api-reference/beta/api/security-casemanagement-case-post-relations.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph.security.caseManagement [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Create an external resource [relation](../resources/security-casemanagement-relation.md) for a [case](../resources/security-casemanagement-case.md). +Create a concrete external resource [relation](../resources/security-casemanagement-relation.md) for a [case](../resources/security-casemanagement-case.md). [!INCLUDE [national-cloud-support](../../includes/global-only.md)] @@ -45,15 +45,30 @@ POST /security/caseManagement/cases/{caseId}/relations ## Request body -In the request body, supply a JSON representation of the [microsoft.graph.security.caseManagement.relation](../resources/security-casemanagement-relation.md) object. +In the request body, supply a JSON representation of a concrete [microsoft.graph.security.caseManagement.relation](../resources/security-casemanagement-relation.md) object. The base **relation** type is abstract and can't be created. Include `@odata.type` with one of the following supported types: -You can specify the following properties when creating a **relation**. +- [incidentRelation](../resources/security-casemanagement-incidentrelation.md) +- [recommendationRelation](../resources/security-casemanagement-recommendationrelation.md) +- [workspaceIndicatorRelation](../resources/security-casemanagement-workspaceindicatorrelation.md) + +The required subtype-specific properties are: + +|Concrete relation type|Required subtype-specific properties| +|:---|:---| +|[incidentRelation](../resources/security-casemanagement-incidentrelation.md)|None.| +|[recommendationRelation](../resources/security-casemanagement-recommendationrelation.md)|**recommendationType**| +|[workspaceIndicatorRelation](../resources/security-casemanagement-workspaceindicatorrelation.md)|**subscriptionId**| + +You can also supply the following properties as applicable to the selected concrete type. |Property|Type|Description| |:---|:---|:---| -|@odata.type|String|The OData type of the concrete relation. To create an incident relation, use `#microsoft.graph.security.caseManagement.incidentRelation`. Required.| -|displayName|String|The display name of the resource. Required.| +|@odata.type|String|The OData type of the concrete relation. The supported values are `#microsoft.graph.security.caseManagement.incidentRelation`, `#microsoft.graph.security.caseManagement.recommendationRelation`, and `#microsoft.graph.security.caseManagement.workspaceIndicatorRelation`. Required.| +|recommendationType|String|The recommendation type associated with the linked recommendation. Required for **recommendationRelation**.| |relatedResourceId|String|The identifier of the related external resource. Optional.| +|resourceGroupName|String|The Azure resource group name. Applies to **recommendationRelation** and **workspaceIndicatorRelation**.| +|subscriptionId|String|The Azure subscription identifier. Required for **workspaceIndicatorRelation** and supported for **recommendationRelation**.| +|workspaceName|String|The Log Analytics workspace name. Applies to **workspaceIndicatorRelation**.| ## Response @@ -76,8 +91,7 @@ Content-Type: application/json { "@odata.type": "#microsoft.graph.security.caseManagement.incidentRelation", - "relatedResourceId": "987654321", - "displayName": "Related incident" + "relatedResourceId": "987654321" } ``` @@ -113,7 +127,7 @@ The following example shows the response. ``` http @@ -127,7 +141,6 @@ Content-Type: application/json "createdBy": "user@contoso.com", "lastModifiedDateTime": "2026-05-20T11:18:45Z", "lastModifiedBy": "user@contoso.com", - "relatedResourceId": "987654321", - "displayName": "Related incident" + "relatedResourceId": "987654321" } ``` diff --git a/api-reference/beta/api/security-casemanagement-case-update.md b/api-reference/beta/api/security-casemanagement-case-update.md index 62d2862752a..09f7539f86d 100644 --- a/api-reference/beta/api/security-casemanagement-case-update.md +++ b/api-reference/beta/api/security-casemanagement-case-update.md @@ -49,12 +49,16 @@ PATCH /security/caseManagement/cases/{caseId} Supply a JSON representation of the resource. For polymorphic resources, include `@odata.type` to identify the concrete case type. The properties that can be updated depend on the case type. +To update **customFields**, call [List customFields](../api/security-casemanagement-casetypeconfiguration-list-customfields.md) at `/security/caseManagement/caseTypeConfigurations/{caseTypeConfigurationId}/customFields`, where `{caseTypeConfigurationId}` matches the case type. Use each definition's **displayName**, not its **id**, as the dynamic property name. The name must match exactly one definition. Each dynamic value must be an object that includes the mapped concrete `@odata.type` and the corresponding **value**, **values**, or **valueDateTime** property from the [custom field value mapping](../resources/security-casemanagement-customfieldvalues.md#custom-field-value-mapping); bare values aren't supported. + +For [genericCase](../resources/security-casemanagement-genericcase.md) objects, all properties can be updated except `id`, `createdBy`, `createdDateTime`, `lastModifiedBy`, and `lastModifiedDateTime`, which are inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). The API ignores these properties if you include them in the request body. + The following properties can be updated for all case types. |Property|Type|Description| |:---|:---|:---| |displayName|String|The display name of the case.| -|status|String|The lifecycle status of the case.| +|status|String|The tenant-defined lifecycle status of the case. Use a **displayName** value returned in the status tree by [List statuses](../api/security-casemanagement-casetypeconfiguration-list-statuses.md) from `/security/caseManagement/caseTypeConfigurations/genericCase/statuses` or `/security/caseManagement/caseTypeConfigurations/incidentCase/statuses`, depending on the case type.| For [genericCase](../resources/security-casemanagement-genericcase.md) objects, you can also update the following properties. @@ -62,26 +66,37 @@ For [genericCase](../resources/security-casemanagement-genericcase.md) objects, |:---|:---|:---| |assignedTo|String|The user assigned to the generic case.| |closingNotes|String|Notes recorded when the generic case is closed.| +|customFields|[microsoft.graph.security.caseManagement.customFieldValues](../resources/security-casemanagement-customfieldvalues.md)|Tenant-defined custom field values keyed by the exact **displayName** of each custom field definition.| |description|String|The description of the generic case.| |dueDateTime|DateTimeOffset|The target completion date and time for the generic case.| -|priority|String|The priority assigned to the generic case.| +|priority|String|The priority assigned to the generic case. Possible values are: `veryLow`, `low`, `medium`, `high`, and `critical`.| -For [incidentCase](../resources/security-casemanagement-incidentcase.md) objects, you can also update the following properties. Changes to incident case properties might be synchronized with the related incident. +For [incidentCase](../resources/security-casemanagement-incidentcase.md) objects, the following properties are synchronized with the underlying incident. A PATCH request that includes any of these properties returns `202 Accepted` with no response body. The changes might take a few minutes to synchronize and appear on the case. |Property|Type|Description| |:---|:---|:---| +|assignedTo|String|The user assigned to the incident case.| |classification|[microsoft.graph.security.caseManagement.incidentClassification](../resources/security-casemanagement-incidentcase.md#incidentclassification-values)|The classification assigned to the incident.| |determination|[microsoft.graph.security.caseManagement.incidentDetermination](../resources/security-casemanagement-incidentcase.md#incidentdetermination-values)|The determination assigned to the incident.| -|emailNotificationRecipients|String collection|The email notification recipients for the incident.| -|priorityScore|Int32|The priority score assigned to the incident.| +|displayName|String|The display name of the incident case.| |severity|[microsoft.graph.security.caseManagement.incidentSeverity](../resources/security-casemanagement-incidentcase.md#incidentseverity-values)|The severity assigned to the incident.| -|summary|String|A summary of the incident.| +|status|String|The tenant-defined lifecycle status of the incident case. Use a **displayName** value returned in the status tree by [List statuses](../api/security-casemanagement-casetypeconfiguration-list-statuses.md) from `/security/caseManagement/caseTypeConfigurations/incidentCase/statuses`.| + +The following incident case properties aren't synchronized with the underlying incident. A PATCH request that updates only these properties returns `200 OK` with the updated [incidentCase](../resources/security-casemanagement-incidentcase.md) object in the response body. + +|Property|Type|Description| +|:---|:---|:---| +|customFields|[microsoft.graph.security.caseManagement.customFieldValues](../resources/security-casemanagement-customfieldvalues.md)|Tenant-defined custom field values keyed by the exact **displayName** of each custom field definition.| +|dueDateTime|DateTimeOffset|The target completion date and time for the incident case.| + +If a PATCH request includes properties from both groups, the method returns `202 Accepted` with no response body. ## Response If successful, this method returns one of the following response codes: -- For [incidentCase](../resources/security-casemanagement-incidentcase.md) objects, changes might be synchronized with the related incident. As a result, this method returns a `202 Accepted` response code, and the changes might take a few minutes to apply. +- For [incidentCase](../resources/security-casemanagement-incidentcase.md) objects, a request that includes any property synchronized with the underlying incident returns `202 Accepted` with no response body. The changes might take a few minutes to synchronize and appear on the case. +- For [incidentCase](../resources/security-casemanagement-incidentcase.md) objects, a request that updates only properties that aren't synchronized returns `200 OK` and an updated [microsoft.graph.security.caseManagement.incidentCase](../resources/security-casemanagement-incidentcase.md) object in the response body. - For other case types, this method returns a `200 OK` response code and an updated [microsoft.graph.security.caseManagement.case](../resources/security-casemanagement-case.md) object in the response body. ## Examples @@ -109,7 +124,13 @@ Content-Type: application/json "assignedTo": "john.doe@contoso.com", "priority": "high", "dueDateTime": "2026-06-29T17:54:43Z", - "closingNotes": "Follow up with the account owner." + "closingNotes": "Follow up with the account owner.", + "customFields": { + "Customer impact": { + "@odata.type": "#microsoft.graph.security.caseManagement.customFieldStringValue", + "value": "Multiple executive mailboxes affected" + } + } } ``` @@ -165,15 +186,21 @@ Content-Type: application/json "assignedTo": "john.doe@contoso.com", "priority": "high", "dueDateTime": "2026-06-29T17:54:43Z", - "closingNotes": "Follow up with the account owner." + "closingNotes": "Follow up with the account owner.", + "customFields": { + "Customer impact": { + "@odata.type": "#microsoft.graph.security.caseManagement.customFieldStringValue", + "value": "Multiple executive mailboxes affected" + } + } } ``` -### Example 2: Update an incident case +### Example 2: Update synchronized incident case properties #### Request -The following example shows a request. +The following example updates properties that are synchronized with the underlying incident. # [HTTP](#tab/http) +[!INCLUDE [permissions-table](../includes/permissions/security-casemanagement-relation-delete-permissions.md)] +[!INCLUDE [rbac-case-management-apis](../includes/rbac-for-apis/rbac-case-management-apis.md)] + +## HTTP request + + +``` http +DELETE /security/caseManagement/cases/{caseId}/relations/{relationId} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `204 No Content` response code. + +## Examples + +### Request + +The following example shows a request. + +``` http +DELETE https://graph.microsoft.com/beta/security/caseManagement/cases/{caseId}/relations/{relationId} +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/beta/api/security-casemanagement-relation-get.md b/api-reference/beta/api/security-casemanagement-relation-get.md new file mode 100644 index 00000000000..2f866b016f9 --- /dev/null +++ b/api-reference/beta/api/security-casemanagement-relation-get.md @@ -0,0 +1,90 @@ +--- +title: "Get relation" +description: "Read a relation from a security case." +author: "alfeldsh" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: apiPageType +--- + +# Get relation + +Namespace: microsoft.graph.security.caseManagement + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Read a concrete [relation](../resources/security-casemanagement-relation.md) from a [case](../resources/security-casemanagement-case.md). The response is an [incidentRelation](../resources/security-casemanagement-incidentrelation.md), [recommendationRelation](../resources/security-casemanagement-recommendationrelation.md), or [workspaceIndicatorRelation](../resources/security-casemanagement-workspaceindicatorrelation.md), identified by `@odata.type`. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/security-casemanagement-relation-get-permissions.md)] +[!INCLUDE [rbac-case-management-apis](../includes/rbac-for-apis/rbac-case-management-apis.md)] + +## HTTP request + + +``` http +GET /security/caseManagement/cases/{caseId}/relations/{relationId} +``` + +## Optional query parameters + +This method supports the `$select` OData query parameter. On the base relation endpoint, `$select` can reference only properties declared on [relation](../resources/security-casemanagement-relation.md). Derived-only properties require either no `$select` or a casted endpoint, if supported. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a concrete [microsoft.graph.security.caseManagement.relation](../resources/security-casemanagement-relation.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/beta/security/caseManagement/cases/{caseId}/relations/{relationId} +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.security.caseManagement.incidentRelation", + "id": "790478d8-6402-8452-4584-5d32e6acf31a", + "createdDateTime": "2026-05-20T11:12:28Z", + "createdBy": "user@contoso.com", + "lastModifiedDateTime": "2026-05-20T11:18:45Z", + "lastModifiedBy": "user@contoso.com", + "relatedResourceId": "987654321" +} +``` diff --git a/api-reference/beta/api/security-casemanagement-relation-update.md b/api-reference/beta/api/security-casemanagement-relation-update.md index 3f6078b0f98..ed2e31fcc5c 100644 --- a/api-reference/beta/api/security-casemanagement-relation-update.md +++ b/api-reference/beta/api/security-casemanagement-relation-update.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph.security.caseManagement [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Update the properties of a [relation](../resources/security-casemanagement-relation.md) object. +Update the properties of a concrete [relation](../resources/security-casemanagement-relation.md) object. [!INCLUDE [national-cloud-support](../../includes/global-only.md)] @@ -47,16 +47,16 @@ PATCH /security/caseManagement/cases/{caseId}/relations/{relationId} [!INCLUDE [table-intro](../../includes/update-property-table-intro.md)] -Supply a JSON representation of the resource. For polymorphic resources, include `@odata.type` to identify the derived type. +Supply a JSON representation of the resource. Include `@odata.type` in every request body to identify the concrete relation type. The value must match the existing relation type. |Property|Type|Description| |:---|:---|:---| -|displayName|String|The display name of the resource.| +|@odata.type|String|The OData type of the concrete relation. The supported values are `#microsoft.graph.security.caseManagement.incidentRelation`, `#microsoft.graph.security.caseManagement.recommendationRelation`, and `#microsoft.graph.security.caseManagement.workspaceIndicatorRelation`. Required.| |relatedResourceId|String|The identifier of the related external resource.| ## Response -If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.security.caseManagement.relation](../resources/security-casemanagement-relation.md) object in the response body. +If successful, this method returns a `204 No Content` response code. ## Examples @@ -74,8 +74,8 @@ PATCH https://graph.microsoft.com/beta/security/caseManagement/cases/{caseId}/re Content-Type: application/json { - "relatedResourceId": "987654321", - "displayName": "Related incident" + "@odata.type": "#microsoft.graph.security.caseManagement.incidentRelation", + "relatedResourceId": "987654321" } ``` @@ -109,23 +109,9 @@ Content-Type: application/json The following example shows the response. ``` http -HTTP/1.1 200 OK -Content-Type: application/json - -{ - "@odata.type": "#microsoft.graph.security.caseManagement.incidentRelation", - "id": "790478d8-6402-8452-4584-5d32e6acf31a", - "createdDateTime": "2026-05-20T11:12:28Z", - "createdBy": "user@contoso.com", - "lastModifiedDateTime": "2026-05-20T11:18:45Z", - "lastModifiedBy": "user@contoso.com", - "relatedResourceId": "987654321", - "displayName": "Related incident" -} +HTTP/1.1 204 No Content ``` diff --git a/api-reference/beta/api/security-casemanagement-task-delete.md b/api-reference/beta/api/security-casemanagement-task-delete.md new file mode 100644 index 00000000000..dec4fd3554b --- /dev/null +++ b/api-reference/beta/api/security-casemanagement-task-delete.md @@ -0,0 +1,74 @@ +--- +title: "Delete task" +description: "Delete a task from a security case." +author: "alfeldsh" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: apiPageType +--- + +# Delete task + +Namespace: microsoft.graph.security.caseManagement + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Delete a [task](../resources/security-casemanagement-task.md) from a [case](../resources/security-casemanagement-case.md). + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/security-casemanagement-task-delete-permissions.md)] +[!INCLUDE [rbac-case-management-apis](../includes/rbac-for-apis/rbac-case-management-apis.md)] + +## HTTP request + + +``` http +DELETE /security/caseManagement/cases/{caseId}/tasks/{taskId} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `204 No Content` response code. + +## Examples + +### Request + +The following example shows a request. + +``` http +DELETE https://graph.microsoft.com/beta/security/caseManagement/cases/{caseId}/tasks/{taskId} +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/beta/api/security-casemanagement-task-update.md b/api-reference/beta/api/security-casemanagement-task-update.md index 10cfeffb783..0921c220301 100644 --- a/api-reference/beta/api/security-casemanagement-task-update.md +++ b/api-reference/beta/api/security-casemanagement-task-update.md @@ -49,20 +49,22 @@ PATCH /security/caseManagement/cases/{caseId}/tasks/{taskId} Supply a JSON representation of the resource. For polymorphic resources, include `@odata.type` to identify the derived type. +You can update all client-managed task properties. The **id**, **createdBy**, **createdDateTime**, **lastModifiedBy**, and **lastModifiedDateTime** properties are server managed and can't be updated. + |Property|Type|Description| |:---|:---|:---| -|displayName|String|The display name of the resource.| -|status|[microsoft.graph.security.caseManagement.taskStatus](../resources/security-casemanagement-task.md#taskstatus-values)|The lifecycle status of the resource.| -|description|String|The description of the resource.| |assignedTo|String|The user assigned to the resource.| +|category|[microsoft.graph.security.caseManagement.caseTaskCategory](../resources/security-casemanagement-task.md#casetaskcategory-values)|The functional category of the task.| |closingNotes|String|Notes recorded when the resource is completed or closed.| +|description|String|The description of the resource.| +|displayName|String|The display name of the resource.| |dueDateTime|DateTimeOffset|The target completion date and time.| |priority|[microsoft.graph.security.caseManagement.caseTaskPriority](../resources/security-casemanagement-task.md#casetaskpriority-values)|The priority assigned to the resource.| -|category|[microsoft.graph.security.caseManagement.caseTaskCategory](../resources/security-casemanagement-task.md#casetaskcategory-values)|The functional category of the task.| +|status|[microsoft.graph.security.caseManagement.taskStatus](../resources/security-casemanagement-task.md#taskstatus-values)|The lifecycle status of the resource.| ## Response -If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.security.caseManagement.task](../resources/security-casemanagement-task.md) object in the response body. +If successful, this method returns a `204 No Content` response code. ## Examples @@ -122,29 +124,9 @@ Content-Type: application/json The following example shows the response. ``` http -HTTP/1.1 200 OK -Content-Type: application/json - -{ - "@odata.type": "#microsoft.graph.security.caseManagement.task", - "id": "1601f158-fa4e-ceaa-7789-685b5e916d72", - "createdDateTime": "2026-05-20T11:12:28Z", - "createdBy": "user@contoso.com", - "lastModifiedDateTime": "2026-05-20T11:18:45Z", - "lastModifiedBy": "user@contoso.com", - "displayName": "Validate affected devices", - "status": "new", - "description": "Review affected devices and collect evidence", - "assignedTo": "user@contoso.com", - "closingNotes": "Investigation completed and documented", - "dueDateTime": "2026-06-29T17:54:43Z", - "priority": "high", - "category": "investigate" -} +HTTP/1.1 204 No Content ``` diff --git a/api-reference/beta/api/security-casemanagementroot-list-cases.md b/api-reference/beta/api/security-casemanagementroot-list-cases.md index 864bbf5eff2..be8fc3c62e8 100644 --- a/api-reference/beta/api/security-casemanagementroot-list-cases.md +++ b/api-reference/beta/api/security-casemanagementroot-list-cases.md @@ -38,7 +38,11 @@ GET /security/caseManagement/cases ## Optional query parameters -This method supports the `$count`, `$filter`, `$orderby`, `$select`, `$skip`, and `$top` OData query parameters. For general information, see [OData query parameters](/graph/query-parameters). +This method supports the `$filter`, `$orderby`, `$select`, `$skip`, and `$top` OData query parameters. The `$count` query parameter isn't supported. On the base collection, `$filter`, `$orderby`, and `$select` can reference only properties declared on [case](../resources/security-casemanagement-case.md). A request that references a property declared only on a derived type, such as **incidentId**, is rejected. To use a supported query option with a derived property, cast the collection to the derived type first. + +For example: `GET /security/caseManagement/cases/microsoft.graph.security.caseManagement.incidentCase?$filter=incidentId eq 1006`. + +The `$filter` query parameter doesn't support the **customFields** property or its dynamic fields. The maximum value for `$top` is 100; requests with a larger value return `400 Bad Request`. For general information, see [OData query parameters](/graph/query-parameters). ## Request headers diff --git a/api-reference/beta/api/security-casemanagementroot-post-cases.md b/api-reference/beta/api/security-casemanagementroot-post-cases.md index deff7a61321..3d4516bc5ad 100644 --- a/api-reference/beta/api/security-casemanagementroot-post-cases.md +++ b/api-reference/beta/api/security-casemanagementroot-post-cases.md @@ -50,15 +50,20 @@ POST /security/caseManagement/cases In the request body, supply a JSON representation of the [case](../resources/security-casemanagement-case.md) object. Include `@odata.type` to identify a supported derived type. The `microsoft.graph.security.caseManagement.incidentCase` derived type isn't supported for create requests. -You can specify the following properties when creating a **case**. +When creating a [genericCase](../resources/security-casemanagement-genericcase.md) object, you can specify all its properties except `id`, `createdBy`, `createdDateTime`, `lastModifiedBy`, and `lastModifiedDateTime`, which are inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). The API ignores these properties if you include them in the request body. -The **customFields** property is an open object keyed by custom field identifier. Each value must include an `@odata.type` annotation for the concrete custom field value type. +Before constructing **customFields**, call [List customFields](../api/security-casemanagement-casetypeconfiguration-list-customfields.md) at `/security/caseManagement/caseTypeConfigurations/genericCase/customFields`. Use each definition's **displayName**, not its **id**, as the dynamic property name. The name must match exactly one definition. Each dynamic value must be an object that includes the mapped concrete `@odata.type` and the corresponding **value**, **values**, or **valueDateTime** property from the [custom field value mapping](../resources/security-casemanagement-customfieldvalues.md#custom-field-value-mapping); bare values aren't supported. |Property|Type|Description| |:---|:---|:---| -|customFields|[microsoft.graph.security.caseManagement.customFieldValues](../resources/security-casemanagement-customfieldvalues.md)|Tenant-defined custom field values keyed by custom field identifier. Optional.| +|assignedTo|String|The user assigned to the generic case. Optional.| +|closingNotes|String|Notes recorded when the generic case is closed. Optional.| +|customFields|[microsoft.graph.security.caseManagement.customFieldValues](../resources/security-casemanagement-customfieldvalues.md)|Tenant-defined custom field values keyed by the exact **displayName** of each custom field definition. Optional.| +|description|String|The description of the generic case. Optional.| |displayName|String|The display name of the resource. Required.| -|status|String|The lifecycle status of the resource. Required.| +|dueDateTime|DateTimeOffset|The target completion date and time for the generic case. Optional.| +|priority|String|The priority assigned to the generic case. Possible values are: `veryLow`, `low`, `medium`, `high`, and `critical`. Optional.| +|status|String|The tenant-defined lifecycle status of the generic case. Use a **displayName** value returned in the status tree by [List statuses](../api/security-casemanagement-casetypeconfiguration-list-statuses.md) from `/security/caseManagement/caseTypeConfigurations/genericCase/statuses`. Required.| ## Response @@ -87,9 +92,24 @@ Content-Type: application/json "assignedTo": "john.doe@contoso.com", "priority": "high", "customFields": { - "customerImpact": { + "Customer impact": { "@odata.type": "#microsoft.graph.security.caseManagement.customFieldStringValue", "value": "Executive mailbox affected" + }, + "Affected users": { + "@odata.type": "#microsoft.graph.security.caseManagement.customFieldNumberValue", + "value": 12 + }, + "Review date": { + "@odata.type": "#microsoft.graph.security.caseManagement.customFieldDateTimeValue", + "valueDateTime": "2026-06-15T09:00:00Z" + }, + "Affected services": { + "@odata.type": "#microsoft.graph.security.caseManagement.customFieldOptionsValue", + "values": [ + "Exchange Online", + "Microsoft Teams" + ] } } } @@ -147,9 +167,24 @@ Content-Type: application/json "assignedTo": "john.doe@contoso.com", "priority": "high", "customFields": { - "customerImpact": { + "Customer impact": { "@odata.type": "#microsoft.graph.security.caseManagement.customFieldStringValue", "value": "Executive mailbox affected" + }, + "Affected users": { + "@odata.type": "#microsoft.graph.security.caseManagement.customFieldNumberValue", + "value": 12 + }, + "Review date": { + "@odata.type": "#microsoft.graph.security.caseManagement.customFieldDateTimeValue", + "valueDateTime": "2026-06-15T09:00:00Z" + }, + "Affected services": { + "@odata.type": "#microsoft.graph.security.caseManagement.customFieldOptionsValue", + "values": [ + "Exchange Online", + "Microsoft Teams" + ] } } } diff --git a/api-reference/beta/includes/permissions/security-casemanagement-attachment-download-content-permissions.md b/api-reference/beta/includes/permissions/security-casemanagement-attachment-download-content-permissions.md new file mode 100644 index 00000000000..2a4b0dcd5ce --- /dev/null +++ b/api-reference/beta/includes/permissions/security-casemanagement-attachment-download-content-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|CaseManagement.Read.All|CaseManagement.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|CaseManagement.Read.All|CaseManagement.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/security-casemanagement-attachment-upload-content-permissions.md b/api-reference/beta/includes/permissions/security-casemanagement-attachment-upload-content-permissions.md new file mode 100644 index 00000000000..16b9bc1b316 --- /dev/null +++ b/api-reference/beta/includes/permissions/security-casemanagement-attachment-upload-content-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|CaseManagement.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|CaseManagement.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/security-casemanagement-relation-delete-permissions.md b/api-reference/beta/includes/permissions/security-casemanagement-relation-delete-permissions.md new file mode 100644 index 00000000000..16b9bc1b316 --- /dev/null +++ b/api-reference/beta/includes/permissions/security-casemanagement-relation-delete-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|CaseManagement.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|CaseManagement.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/security-casemanagement-relation-get-permissions.md b/api-reference/beta/includes/permissions/security-casemanagement-relation-get-permissions.md new file mode 100644 index 00000000000..2a4b0dcd5ce --- /dev/null +++ b/api-reference/beta/includes/permissions/security-casemanagement-relation-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|CaseManagement.Read.All|CaseManagement.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|CaseManagement.Read.All|CaseManagement.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/security-casemanagement-task-delete-permissions.md b/api-reference/beta/includes/permissions/security-casemanagement-task-delete-permissions.md new file mode 100644 index 00000000000..16b9bc1b316 --- /dev/null +++ b/api-reference/beta/includes/permissions/security-casemanagement-task-delete-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|CaseManagement.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|CaseManagement.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/rbac-for-apis/rbac-case-management-apis.md b/api-reference/beta/includes/rbac-for-apis/rbac-case-management-apis.md index 382e7a6d253..12e26b38ced 100644 --- a/api-reference/beta/includes/rbac-for-apis/rbac-case-management-apis.md +++ b/api-reference/beta/includes/rbac-for-apis/rbac-case-management-apis.md @@ -5,6 +5,7 @@ ms.topic: include > [!IMPORTANT] > For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. This API supports the following built-in roles: +> - Global Reader > - Security Reader > - Security Operator > - Security Administrator diff --git a/api-reference/beta/resources/security-casemanagement-activity.md b/api-reference/beta/resources/security-casemanagement-activity.md index 6c2b207559b..6bd98c8e19d 100644 --- a/api-reference/beta/resources/security-casemanagement-activity.md +++ b/api-reference/beta/resources/security-casemanagement-activity.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph.security.caseManagement Represents an abstract activity that records an update in a security [case](../resources/security-casemanagement-case.md) timeline. Use the derived [comment](../resources/security-casemanagement-comment.md) and [auditLog](../resources/security-casemanagement-auditlog.md) resources to work with specific activity records. Create, update, and delete operations are supported for comments; audit logs support get operations only. +For cast segments in URLs, use the full type name, for example `microsoft.graph.security.caseManagement.comment`. + This resource inherits from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). ## Methods @@ -25,7 +27,7 @@ This resource inherits from [caseManagementEntity](../resources/security-caseman |[List](../api/security-casemanagement-case-list-activities.md)|[microsoft.graph.security.caseManagement.activity](../resources/security-casemanagement-activity.md) collection|Get a list of timeline activities for a case.| |[Create](../api/security-casemanagement-case-post-activities.md)|[microsoft.graph.security.caseManagement.activity](../resources/security-casemanagement-activity.md)|Create a comment activity for a case.| |[Get](../api/security-casemanagement-activity-get.md)|[microsoft.graph.security.caseManagement.activity](../resources/security-casemanagement-activity.md)|Read the properties and relationships of an activity.| -|[Update](../api/security-casemanagement-activity-update.md)|[microsoft.graph.security.caseManagement.activity](../resources/security-casemanagement-activity.md)|Update a comment activity.| +|[Update](../api/security-casemanagement-activity-update.md)|None|Update a comment activity.| |[Delete](../api/security-casemanagement-activity-delete.md)|None|Delete a comment activity.| ## Properties diff --git a/api-reference/beta/resources/security-casemanagement-attachment.md b/api-reference/beta/resources/security-casemanagement-attachment.md index 836554d7416..f55b70d53d3 100644 --- a/api-reference/beta/resources/security-casemanagement-attachment.md +++ b/api-reference/beta/resources/security-casemanagement-attachment.md @@ -25,24 +25,26 @@ Inherited from [caseManagementEntity](../resources/security-casemanagement-casem |[List](../api/security-casemanagement-case-list-attachments.md)|[microsoft.graph.security.caseManagement.attachment](../resources/security-casemanagement-attachment.md) collection|List attachments for a case.| |[Create](../api/security-casemanagement-case-post-attachments.md)|[microsoft.graph.security.caseManagement.attachment](../resources/security-casemanagement-attachment.md)|Create an attachment for a case.| |[Get](../api/security-casemanagement-attachment-get.md)|[microsoft.graph.security.caseManagement.attachment](../resources/security-casemanagement-attachment.md)|Read the properties and relationships of [microsoft.graph.security.caseManagement.attachment](../resources/security-casemanagement-attachment.md) object.| -|[Update](../api/security-casemanagement-attachment-update.md)|[microsoft.graph.security.caseManagement.attachment](../resources/security-casemanagement-attachment.md)|Update an attachment object.| +|[Update](../api/security-casemanagement-attachment-update.md)|None|Update an attachment object.| +|[Download content](../api/security-casemanagement-attachment-download-content.md)|Stream|Download the attachment content after malware scanning completes.| +|[Upload content](../api/security-casemanagement-attachment-upload-content.md)|None|Upload the attachment content in chunks.| ## Properties |Property|Type|Description| |:---|:---|:---| -|content|Stream|The binary content stream for the attachment.| +|content|Stream|The binary content stream for the attachment. Use the [Upload content](../api/security-casemanagement-attachment-upload-content.md) and [Download content](../api/security-casemanagement-attachment-download-content.md) methods to access it.| |createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| |createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| |description|String|The description of the attachment.| |displayName|String|The display name of the attachment.| -|fileExtension|String|The file extension of the attachment.| -|fileSize|Int64|The size of the attachment in bytes.| +|fileExtension|String|The file extension of the attachment. The service normalizes the value to include a leading period.| +|fileSize|Int64|The size of the attachment in bytes. The maximum file size is 100 MB.| |id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md).| |lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| |lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| |origin|[microsoft.graph.security.caseManagement.attachmentOrigin](../resources/security-casemanagement-attachmentorigin.md)|The origin reference for the attachment.| -|scanResult|[microsoft.graph.security.caseManagement.attachmentScanResult](#attachmentscanresult-values)|The malware scan result for the attachment.| +|scanResult|[microsoft.graph.security.caseManagement.attachmentScanResult](#attachmentscanresult-values)|The service-controlled malware scan result for the attachment. Read-only.| ### attachmentScanResult values @@ -79,9 +81,7 @@ The following JSON representation shows the resource type. "fileSize": "Integer", "fileExtension": "String", "scanResult": "String", - "origin": { - "@odata.type": "#microsoft.graph.security.caseManagement.attachmentOrigin" - }, + "origin": {"@odata.type": "#microsoft.graph.security.caseManagement.attachmentOrigin"}, "content": "Stream" } ``` diff --git a/api-reference/beta/resources/security-casemanagement-auditlog.md b/api-reference/beta/resources/security-casemanagement-auditlog.md index 1e167163b78..03c9e650796 100644 --- a/api-reference/beta/resources/security-casemanagement-auditlog.md +++ b/api-reference/beta/resources/security-casemanagement-auditlog.md @@ -16,22 +16,26 @@ Namespace: microsoft.graph.security.caseManagement Represents an audit event that records a change or action in a case. +For cast segments in URLs, use the full type name, for example `microsoft.graph.security.caseManagement.auditLog`. + Inherited from [activity](../resources/security-casemanagement-activity.md). ## Methods This resource is part of a polymorphic collection managed by the [activity](../resources/security-casemanagement-activity.md) base type. Use the [Get activity](../api/security-casemanagement-activity-get.md) endpoint to read audit log activities. Create, update, and delete operations aren't supported for audit logs. +To use a supported query option with a property declared only on **auditLog**, cast the base activities collection to `microsoft.graph.security.caseManagement.auditLog`. + ## Properties |Property|Type|Description| |:---|:---|:---| -|action|[microsoft.graph.security.caseManagement.auditAction](#auditaction-values)|The action represented by the audit log activity.| -|createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| +|action|[microsoft.graph.security.caseManagement.auditAction](#auditaction-values)|The action represented by the audit log activity. Supports `$filter`.| +|createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter`.| +|createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter`.| |details|[microsoft.graph.security.caseManagement.activityResourceDetails](../resources/security-casemanagement-activityresourcedetails.md)|The target resource details for the audit activity.| -|id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md).| -|lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|modifiedProperties|[microsoft.graph.security.caseManagement.modifiedProperty](../resources/security-casemanagement-modifiedproperty.md) collection|The collection of property changes recorded in the audit log.| +|id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md). Supports `$filter`.| +|lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter`.| +|lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter`.| +|modifiedProperties|[microsoft.graph.security.caseManagement.modifiedProperty](../resources/security-casemanagement-modifiedproperty.md) collection|The collection of property changes recorded in the audit log. Supports `$filter`.| ### auditAction values @@ -69,13 +73,7 @@ The following JSON representation shows the resource type. "lastModifiedDateTime": "String (timestamp)", "lastModifiedBy": "String", "action": "String", - "details": { - "@odata.type": "#microsoft.graph.security.caseManagement.activityResourceDetails" - }, - "modifiedProperties": [ - { - "@odata.type": "#microsoft.graph.security.caseManagement.modifiedProperty" - } - ] + "details": {"@odata.type": "#microsoft.graph.security.caseManagement.activityResourceDetails"}, + "modifiedProperties": [{"@odata.type": "#microsoft.graph.security.caseManagement.modifiedProperty"}] } ``` diff --git a/api-reference/beta/resources/security-casemanagement-case.md b/api-reference/beta/resources/security-casemanagement-case.md index cc726698e0c..7b7bd5459be 100644 --- a/api-reference/beta/resources/security-casemanagement-case.md +++ b/api-reference/beta/resources/security-casemanagement-case.md @@ -17,6 +17,8 @@ Namespace: microsoft.graph.security.caseManagement Represents an abstract security case that tracks an investigation and organizes related tasks, activities, relations, and attachments. Use the [genericCase](../resources/security-casemanagement-genericcase.md) derived type to create case instances. You can't create [incidentCase](../resources/security-casemanagement-incidentcase.md) instances with API requests; incident cases are created by the service. Instances are differentiated by `@odata.type`. This is an abstract type. +For cast segments in URLs, use the full type name, for example `microsoft.graph.security.caseManagement.genericCase` or `microsoft.graph.security.caseManagement.incidentCase`. + Inherits from [microsoft.graph.security.caseManagement.caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). ## Methods @@ -35,14 +37,14 @@ Use the [Update](../api/security-casemanagement-case-update.md) method to update |Property|Type|Description| |:---|:---|:---| -|createdBy|String|The user or service that created the case. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` (`eq`, `ne`) and `$orderby`.| -|createdDateTime|DateTimeOffset|The date and time when the case was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` (`eq`, `ne`, `ge`, `le`) and `$orderby`.| -|customFields|[microsoft.graph.security.caseManagement.customFieldValues](../resources/security-casemanagement-customfieldvalues.md)|Tenant-defined custom field values keyed by custom field identifier.| -|displayName|String|The display name of the case. Supports `$filter` (`eq`, `ne`) and `$orderby`.| -|id|String|The unique identifier for the case. Inherited from [entity](../resources/entity.md). Supports `$filter` (`eq`, `ne`) and `$orderby`.| -|lastModifiedBy|String|The user or service that last modified the case. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` (`eq`, `ne`) and `$orderby`.| -|lastModifiedDateTime|DateTimeOffset|The date and time when the case was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` (`eq`, `ne`, `ge`, `le`) and `$orderby`.| -|status|String|The lifecycle status of the case, such as open, in progress, or closed. Supports `$filter` (`eq`, `ne`) and `$orderby`.| +|createdBy|String|The user or service that created the case. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|createdDateTime|DateTimeOffset|The date and time when the case was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|customFields|[microsoft.graph.security.caseManagement.customFieldValues](../resources/security-casemanagement-customfieldvalues.md)|Tenant-defined custom field values keyed by the exact **displayName** of each custom field definition. The property and its dynamic fields don't support `$filter`.| +|displayName|String|The display name of the case. Supports `$filter` and `$orderby`.| +|id|String|The unique identifier for the case. Inherited from [entity](../resources/entity.md). Supports `$filter` and `$orderby`.| +|lastModifiedBy|String|The user or service that last modified the case. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|lastModifiedDateTime|DateTimeOffset|The date and time when the case was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|status|String|The tenant-defined lifecycle status of the case. Use a **displayName** value returned in the status tree by [List statuses](../api/security-casemanagement-casetypeconfiguration-list-statuses.md) from `/security/caseManagement/caseTypeConfigurations/genericCase/statuses` or `/security/caseManagement/caseTypeConfigurations/incidentCase/statuses`, depending on the case type. Supports `$filter` (`eq`).| ## Relationships @@ -73,8 +75,6 @@ The following JSON representation shows the resource type. "lastModifiedBy": "String", "displayName": "String", "status": "String", - "customFields": { - "@odata.type": "#microsoft.graph.security.caseManagement.customFieldValues" - } + "customFields": {"@odata.type": "#microsoft.graph.security.caseManagement.customFieldValues"} } ``` diff --git a/api-reference/beta/resources/security-casemanagement-comment.md b/api-reference/beta/resources/security-casemanagement-comment.md index 6ede011eac6..9fa5660e1ba 100644 --- a/api-reference/beta/resources/security-casemanagement-comment.md +++ b/api-reference/beta/resources/security-casemanagement-comment.md @@ -16,23 +16,27 @@ Namespace: microsoft.graph.security.caseManagement Represents a human-authored comment in a case activity timeline. +For cast segments in URLs, use the full type name, for example `microsoft.graph.security.caseManagement.comment`. + Inherited from [activity](../resources/security-casemanagement-activity.md). ## Methods -This resource is part of a polymorphic collection managed by the [activity](../resources/security-casemanagement-activity.md) base type. Use the activity endpoints to create, get, update, and delete comment activities. +This resource is part of a polymorphic collection managed by the [activity](../resources/security-casemanagement-activity.md) base type. Use the activity endpoints to [create](../api/security-casemanagement-case-post-activities.md), [get](../api/security-casemanagement-activity-get.md), [update](../api/security-casemanagement-activity-update.md), and [delete](../api/security-casemanagement-activity-delete.md) comment activities. Updating and deleting comment activities isn't supported for [incidentCase](../resources/security-casemanagement-incidentcase.md) objects. +To use a supported query option with a property declared only on **comment**, cast the base activities collection to `microsoft.graph.security.caseManagement.comment`. + ## Properties |Property|Type|Description| |:---|:---|:---| -|createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md).| -|lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|message|String|The comment body.| +|createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter`.| +|createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter`.| +|id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md). Supports `$filter`.| +|lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter`.| +|lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter`.| +|message|String|The comment body. Supports `$filter`.| ## Relationships None. diff --git a/api-reference/beta/resources/security-casemanagement-customfieldvalues.md b/api-reference/beta/resources/security-casemanagement-customfieldvalues.md index 17c363b4b65..dc027fe6c37 100644 --- a/api-reference/beta/resources/security-casemanagement-customfieldvalues.md +++ b/api-reference/beta/resources/security-casemanagement-customfieldvalues.md @@ -14,10 +14,47 @@ Namespace: microsoft.graph.security.caseManagement [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents an open collection of tenant-defined custom field values in the **customFields** property of a [case](../resources/security-casemanagement-case.md). Dynamic property names are custom field identifiers, and dynamic property values are typed custom field value payloads. +Represents an open collection of tenant-defined custom field values in the **customFields** property of a [case](../resources/security-casemanagement-case.md). ## Properties -None. + +This open type has no fixed properties. To identify the available custom fields, call [List customFields](../api/security-casemanagement-casetypeconfiguration-list-customfields.md) at `/security/caseManagement/caseTypeConfigurations/{caseTypeConfigurationId}/customFields`, where `{caseTypeConfigurationId}` is `genericCase` or `incidentCase`. + +> [!IMPORTANT] +> Use the definition's **displayName**, not its **id**, as the dynamic property name. The display name must match exactly one definition in the case type configuration. A request fails if the name matches no definition or more than one definition. If a display name changes, update integrations that use it as a key. + +For each custom field value: + +- Use the definition's **displayName** value as the dynamic property name. +- Supply an object as the dynamic property value. Bare values such as strings or numbers aren't supported. +- Include `@odata.type` in every value object. +- Use the definition's `@odata.type` to select the corresponding custom field value type and value property from the following table. +- Use **isRequired** and **isDisabled** to determine whether the field must or can be supplied. +- For an options field, use only values listed in the definition's **options** property. + +### Custom field value mapping + +|Custom field definition `@odata.type`|Custom field value `@odata.type`|Value property| +|:---|:---|:---| +|[`#microsoft.graph.security.caseManagement.dateTimeCustomFieldDefinition`](../resources/security-casemanagement-datetimecustomfielddefinition.md)|[`#microsoft.graph.security.caseManagement.customFieldDateTimeValue`](../resources/security-casemanagement-customfielddatetimevalue.md)|**valueDateTime** (DateTimeOffset)| +|[`#microsoft.graph.security.caseManagement.numberCustomFieldDefinition`](../resources/security-casemanagement-numbercustomfielddefinition.md)|[`#microsoft.graph.security.caseManagement.customFieldNumberValue`](../resources/security-casemanagement-customfieldnumbervalue.md)|**value** (Int32)| +|[`#microsoft.graph.security.caseManagement.optionsCustomFieldDefinition`](../resources/security-casemanagement-optionscustomfielddefinition.md)|[`#microsoft.graph.security.caseManagement.customFieldOptionsValue`](../resources/security-casemanagement-customfieldoptionsvalue.md)|**values** (String collection)| +|[`#microsoft.graph.security.caseManagement.stringCustomFieldDefinition`](../resources/security-casemanagement-stringcustomfielddefinition.md)|[`#microsoft.graph.security.caseManagement.customFieldStringValue`](../resources/security-casemanagement-customfieldstringvalue.md)|**value** (String)| + +### Example + +The following example shows the shape of a **customFields** payload. `External reference` is the exact **displayName** returned by the custom field definition. + +``` json +{ + "customFields": { + "External reference": { + "@odata.type": "#microsoft.graph.security.caseManagement.customFieldStringValue", + "value": "INC-2026-0042" + } + } +} +``` ## Relationships None. @@ -34,4 +71,3 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.security.caseManagement.customFieldValues" } ``` - diff --git a/api-reference/beta/resources/security-casemanagement-genericcase.md b/api-reference/beta/resources/security-casemanagement-genericcase.md index 6eccd58b7d4..d7989ce90c4 100644 --- a/api-reference/beta/resources/security-casemanagement-genericcase.md +++ b/api-reference/beta/resources/security-casemanagement-genericcase.md @@ -16,29 +16,31 @@ Namespace: microsoft.graph.security.caseManagement Represents a generic case with assignment, priority, due date, and closing notes. This resource derives from [case](../resources/security-casemanagement-case.md) and participates in the polymorphic `/security/caseManagement/cases` collection. -Inherited from [case](../resources/security-casemanagement-case.md). +For cast segments in URLs, use the full type name, for example `microsoft.graph.security.caseManagement.genericCase`. ## Methods This resource is part of a polymorphic collection managed by the [case resource](../resources/security-casemanagement-case.md) base type. Operations are performed through the base type endpoints. Use the base type [Update](../api/security-casemanagement-case-update.md) method to update **assignedTo**, **closingNotes**, **description**, **displayName**, **dueDateTime**, **priority**, and **status**. +To use a supported query option with a property declared only on **genericCase**, cast the base cases collection to `microsoft.graph.security.caseManagement.genericCase`. + ## Properties |Property|Type|Description| |:---|:---|:---| -|assignedTo|String|The user assigned to the generic case.| -|closingNotes|String|Notes recorded when the generic case is closed.| -|createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|customFields|[microsoft.graph.security.caseManagement.customFieldValues](../resources/security-casemanagement-customfieldvalues.md)|Tenant-defined custom field values keyed by custom field identifier. Inherited from [case](../resources/security-casemanagement-case.md).| -|description|String|The description of the generic case.| -|displayName|String|The display name of the generic case. Inherited from [case](../resources/security-casemanagement-case.md).| -|dueDateTime|DateTimeOffset|The target completion date and time for the generic case.| -|id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md).| -|lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|priority|String|The priority assigned to the generic case.| -|status|String|The lifecycle status of the generic case. Inherited from [case](../resources/security-casemanagement-case.md).| +|assignedTo|String|The user assigned to the generic case. Supports `$filter` and `$orderby`.| +|closingNotes|String|Notes recorded when the generic case is closed. Supports `$filter`.| +|createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|customFields|[microsoft.graph.security.caseManagement.customFieldValues](../resources/security-casemanagement-customfieldvalues.md)|Tenant-defined custom field values keyed by the exact **displayName** of each custom field definition. The property and its dynamic fields don't support `$filter`. Inherited from [case](../resources/security-casemanagement-case.md).| +|description|String|The description of the generic case. Supports `$filter`.| +|displayName|String|The display name of the generic case. Inherited from [case](../resources/security-casemanagement-case.md). Supports `$filter` and `$orderby`.| +|dueDateTime|DateTimeOffset|The target completion date and time for the generic case. Supports `$filter`.| +|id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md). Supports `$filter` and `$orderby`.| +|lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|priority|String|The priority assigned to the generic case. Possible values are: `veryLow`, `low`, `medium`, `high`, and `critical`. Supports `$filter`.| +|status|String|The tenant-defined lifecycle status of the generic case. Use a **displayName** value returned in the status tree by [List statuses](../api/security-casemanagement-casetypeconfiguration-list-statuses.md) from `/security/caseManagement/caseTypeConfigurations/genericCase/statuses`. Inherited from [case](../resources/security-casemanagement-case.md). Supports `$filter` (`eq`).| ## Relationships |Relationship|Type|Description| @@ -68,9 +70,7 @@ The following JSON representation shows the resource type. "lastModifiedBy": "String", "displayName": "String", "status": "String", - "customFields": { - "@odata.type": "#microsoft.graph.security.caseManagement.customFieldValues" - }, + "customFields": {"@odata.type": "#microsoft.graph.security.caseManagement.customFieldValues"}, "description": "String", "closingNotes": "String", "assignedTo": "String", diff --git a/api-reference/beta/resources/security-casemanagement-incidentcase.md b/api-reference/beta/resources/security-casemanagement-incidentcase.md index c298e3adf35..b48a37317df 100644 --- a/api-reference/beta/resources/security-casemanagement-incidentcase.md +++ b/api-reference/beta/resources/security-casemanagement-incidentcase.md @@ -14,66 +14,69 @@ Namespace: microsoft.graph.security.caseManagement [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a security incident case with incident details, classification, severity, investigation, and impacted asset information. This resource derives from [case](../resources/security-casemanagement-case.md) and participates in the polymorphic `/security/caseManagement/cases` collection. Incident cases are created by the service; you can't create new **incidentCase** resources with API requests. Incident case properties are synced with the corresponding incident. +Represents a security incident case with incident details, classification, severity, investigation, and impacted asset information. This resource derives from [case](../resources/security-casemanagement-case.md) and participates in the polymorphic `/security/caseManagement/cases` collection. Incident cases are created by the service; you can't create new **incidentCase** resources with API requests. Some incident case properties are synchronized with the corresponding incident. -Inherited from [case](../resources/security-casemanagement-case.md). +For cast segments in URLs, use the full type name, for example `microsoft.graph.security.caseManagement.incidentCase`. ## Methods This resource is part of a polymorphic collection managed by the [case resource](../resources/security-casemanagement-case.md) base type. Operations are performed through the base type endpoints. Creating **incidentCase** objects with `POST /security/caseManagement/cases` isn't supported. -Use the base type [Update](../api/security-casemanagement-case-update.md) method to update **classification**, **determination**, **displayName**, **emailNotificationRecipients**, **priorityScore**, **severity**, **status**, and **summary**. A successful PATCH request for an **incidentCase** returns a `202 Accepted` response code. +Use the base type [Update](../api/security-casemanagement-case-update.md) method to update **assignedTo**, **classification**, **customFields**, **determination**, **displayName**, **dueDateTime**, **severity**, and **status**. + +The **assignedTo**, **classification**, **determination**, **displayName**, **severity**, and **status** properties are synchronized with the underlying incident. A PATCH request that includes any of these properties returns `202 Accepted` with no response body. The changes might take a few minutes to synchronize and appear on the case. + +The **customFields** and **dueDateTime** properties aren't synchronized. A PATCH request that updates only these properties returns `200 OK` with the updated **incidentCase** object in the response body. A request that includes properties from both groups returns `202 Accepted` with no response body. Updating and deleting comment activities isn't supported for **incidentCase** objects. +To use a supported query option with a property declared only on **incidentCase**, cast the base cases collection to `microsoft.graph.security.caseManagement.incidentCase`. + ## Properties |Property|Type|Description| |:---|:---|:---| -|aiAgentIds|String collection|The list of AI agent identifiers associated with the incident.| -|alertCounts|[microsoft.graph.security.caseManagement.alertCounts](../resources/security-casemanagement-alertcounts.md)|A summary of alert counts grouped by severity and status.| -|alertPolicyIds|String collection|The list of alert policy identifiers associated with the incident.| -|assignedTo|String|The user assigned to investigate the incident case.| -|associatedThreatIds|String collection|The list of threat identifiers associated with the incident.| -|categories|String collection|The incident categories.| -|classification|[microsoft.graph.security.caseManagement.incidentClassification](#incidentclassification-values)|The classification assigned to the incident.| -|cloudScopes|String collection|The cloud scopes associated with the incident.| -|createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` (`eq`, `ne`) and `$orderby`.| -|createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` (`eq`, `ne`, `ge`, `le`) and `$orderby`.| -|customFields|[microsoft.graph.security.caseManagement.customFieldValues](../resources/security-casemanagement-customfieldvalues.md)|Tenant-defined custom field values keyed by custom field identifier. Inherited from [case](../resources/security-casemanagement-case.md).| -|dataSensitivityLabels|String collection|The data sensitivity labels associated with the incident.| -|dataStreams|String collection|The data streams associated with the incident.| -|description|String|The description of the incident case.| -|detectionSources|String collection|The detection sources that identified the incident.| -|determination|[microsoft.graph.security.caseManagement.incidentDetermination](#incidentdetermination-values)|The determination assigned to the incident.| -|displayName|String|The display name of the incident case. Inherited from [case](../resources/security-casemanagement-case.md). Supports `$filter` (`eq`, `ne`) and `$orderby`.| -|dueDateTime|DateTimeOffset|The target completion date and time for the incident case.| -|emailNotificationRecipients|String collection|The email notification recipients for the incident case.| -|firstEventTime|DateTimeOffset|The date and time of the first event in the incident.| -|id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md). Supports `$filter` (`eq`, `ne`) and `$orderby`.| -|impactedAssets|[microsoft.graph.security.caseManagement.impactedAssetsCounts](../resources/security-casemanagement-impactedassetscounts.md)|A summary of impacted asset counts for the incident.| -|incidentId|Int64|The Microsoft Security incident identifier.| -|incidentWebUrl|String|The URL for the incident in the Microsoft Defender portal.| -|investigation|[microsoft.graph.security.caseManagement.investigation](../resources/security-casemanagement-investigation.md)|A summary of investigation details associated with the incident.| -|investigationIds|String collection|The list of investigation identifiers associated with the incident.| -|investigationStates|String collection|The list of investigation states associated with the incident.| -|lastEventTime|DateTimeOffset|The date and time of the most recent event in the incident.| -|lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` (`eq`, `ne`) and `$orderby`.| -|lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` (`eq`, `ne`, `ge`, `le`) and `$orderby`.| -|machineGroupIds|String collection|The list of machine group identifiers associated with the incident.| -|osPlatforms|String collection|The operating system platforms associated with the incident.| -|policyNames|String collection|The policy names associated with the incident.| -|priorityScore|Int32|The priority score assigned to the incident.| -|productNames|String collection|The product names associated with the incident.| -|redirectCaseId|Int64|The case identifier to which this case redirects when merged.| -|redirectIncidentId|Int64|The incident identifier to which this incident redirects when merged.| -|serviceSources|String collection|The service sources associated with the incident.| -|severity|[microsoft.graph.security.caseManagement.incidentSeverity](#incidentseverity-values)|The severity assigned to the incident.| -|status|String|The lifecycle status of the incident case. Inherited from [case](../resources/security-casemanagement-case.md). Supports `$filter` (`eq`, `ne`) and `$orderby`.| -|summary|String|A summary of the incident.| -|systemTags|String collection|The system tags associated with the incident.| -|topRiskScore|Int32|The top risk score associated with the incident.| -|workspaceIds|String collection|The list of workspace identifiers associated with the incident.| +|aiAgentIds|String collection|The list of AI agent identifiers associated with the incident. Supports `$filter`.| +|alertCounts|[microsoft.graph.security.caseManagement.alertCounts](../resources/security-casemanagement-alertcounts.md)|A summary of alert counts grouped by severity and status. Supports `$filter`.| +|alertPolicyIds|String collection|The list of alert policy identifiers associated with the incident. Supports `$filter`.| +|assignedTo|String|The user assigned to investigate the incident case. Supports `$filter` and `$orderby`.| +|associatedThreatIds|String collection|The list of threat identifiers associated with the incident. Supports `$filter`.| +|categories|String collection|The incident categories. Supports `$filter`.| +|classification|[microsoft.graph.security.caseManagement.incidentClassification](#incidentclassification-values)|The classification assigned to the incident. Supports `$filter`.| +|cloudScopes|String collection|The cloud scopes associated with the incident. Supports `$filter`.| +|createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|customFields|[microsoft.graph.security.caseManagement.customFieldValues](../resources/security-casemanagement-customfieldvalues.md)|Tenant-defined custom field values keyed by the exact **displayName** of each custom field definition. The property and its dynamic fields don't support `$filter`. Inherited from [case](../resources/security-casemanagement-case.md).| +|dataSensitivityLabels|String collection|The data sensitivity labels associated with the incident. Supports `$filter`.| +|dataStreams|String collection|The data streams associated with the incident. Supports `$filter`.| +|detectionSources|String collection|The detection sources that identified the incident. Supports `$filter`.| +|determination|[microsoft.graph.security.caseManagement.incidentDetermination](#incidentdetermination-values)|The determination assigned to the incident. Supports `$filter`.| +|displayName|String|The display name of the incident case. Inherited from [case](../resources/security-casemanagement-case.md). Supports `$filter` and `$orderby`.| +|dueDateTime|DateTimeOffset|The target completion date and time for the incident case. Supports `$filter`.| +|emailNotificationRecipients|String collection|The email notification recipients for the incident case. Supports `$filter`.| +|firstEventTime|DateTimeOffset|The date and time of the first event in the incident. Supports `$filter`.| +|id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md). Supports `$filter` and `$orderby`.| +|impactedAssets|[microsoft.graph.security.caseManagement.impactedAssetsCounts](../resources/security-casemanagement-impactedassetscounts.md)|A summary of impacted asset counts for the incident. Supports `$filter`.| +|incidentId|Int64|The Microsoft Security incident identifier. Supports `$filter`.| +|incidentWebUrl|String|The URL for the incident in the Microsoft Defender portal. Supports `$filter`.| +|investigation|[microsoft.graph.security.caseManagement.investigation](../resources/security-casemanagement-investigation.md)|A summary of investigation details associated with the incident. Supports `$filter`.| +|investigationIds|String collection|The list of investigation identifiers associated with the incident. Supports `$filter`.| +|investigationStates|String collection|The list of investigation states associated with the incident. Supports `$filter`.| +|lastEventTime|DateTimeOffset|The date and time of the most recent event in the incident. Supports `$filter`.| +|lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|machineGroupIds|String collection|The list of machine group identifiers associated with the incident. Supports `$filter`.| +|osPlatforms|String collection|The operating system platforms associated with the incident. Supports `$filter`.| +|policyNames|String collection|The policy names associated with the incident. Supports `$filter`.| +|priorityScore|Int32|The priority score assigned to the incident. Supports `$filter`.| +|productNames|String collection|The product names associated with the incident. Supports `$filter`.| +|serviceSources|String collection|The service sources associated with the incident. Supports `$filter`.| +|severity|[microsoft.graph.security.caseManagement.incidentSeverity](#incidentseverity-values)|The severity assigned to the incident. Supports `$filter`.| +|status|String|The tenant-defined lifecycle status of the incident case. Use a **displayName** value returned in the status tree by [List statuses](../api/security-casemanagement-casetypeconfiguration-list-statuses.md) from `/security/caseManagement/caseTypeConfigurations/incidentCase/statuses`. Inherited from [case](../resources/security-casemanagement-case.md). Supports `$filter` (`eq`).| +|summary|String|A summary of the incident. Supports `$filter`.| +|systemTags|String collection|The system tags associated with the incident. Supports `$filter`.| +|topRiskScore|Int32|The top risk score associated with the incident. Supports `$filter`.| +|workspaceIds|String collection|The list of workspace identifiers associated with the incident. Supports `$filter`.| ### incidentClassification values @@ -145,10 +148,7 @@ The following JSON representation shows the resource type. "lastModifiedBy": "String", "displayName": "String", "status": "String", - "customFields": { - "@odata.type": "#microsoft.graph.security.caseManagement.customFieldValues" - }, - "description": "String", + "customFields": {"@odata.type": "#microsoft.graph.security.caseManagement.customFieldValues"}, "assignedTo": "String", "emailNotificationRecipients": [ "String" @@ -162,15 +162,9 @@ The following JSON representation shows the resource type. "priorityScore": "Integer", "firstEventTime": "String (timestamp)", "lastEventTime": "String (timestamp)", - "alertCounts": { - "@odata.type": "#microsoft.graph.security.caseManagement.alertCounts" - }, - "impactedAssets": { - "@odata.type": "#microsoft.graph.security.caseManagement.impactedAssetsCounts" - }, - "investigation": { - "@odata.type": "#microsoft.graph.security.caseManagement.investigation" - }, + "alertCounts": {"@odata.type": "#microsoft.graph.security.caseManagement.alertCounts"}, + "impactedAssets": {"@odata.type": "#microsoft.graph.security.caseManagement.impactedAssetsCounts"}, + "investigation": {"@odata.type": "#microsoft.graph.security.caseManagement.investigation"}, "topRiskScore": "Integer", "detectionSources": [ "String" @@ -205,8 +199,6 @@ The following JSON representation shows the resource type. "aiAgentIds": [ "String" ], - "redirectIncidentId": "Integer", - "redirectCaseId": "Integer", "investigationIds": [ "String" ], diff --git a/api-reference/beta/resources/security-casemanagement-incidentrelation.md b/api-reference/beta/resources/security-casemanagement-incidentrelation.md index ceeec06856d..7c073df9560 100644 --- a/api-reference/beta/resources/security-casemanagement-incidentrelation.md +++ b/api-reference/beta/resources/security-casemanagement-incidentrelation.md @@ -14,7 +14,9 @@ Namespace: microsoft.graph.security.caseManagement [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a relation between a case and an incident. +Represents a relation between a case and an incident. Creating an **incidentRelation** for an [incidentCase](../resources/security-casemanagement-incidentcase.md) isn't supported. + +For cast segments in URLs, use the full type name, for example `microsoft.graph.security.caseManagement.incidentRelation`. Inherited from [relation](../resources/security-casemanagement-relation.md). @@ -26,7 +28,6 @@ This resource is part of a polymorphic collection managed by the [relation resou |:---|:---|:---| |createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| |createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|displayName|String|The human-friendly name for the linked resource. Inherited from [relation](../resources/security-casemanagement-relation.md).| |id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md).| |lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| |lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| @@ -53,7 +54,6 @@ The following JSON representation shows the resource type. "createdBy": "String", "lastModifiedDateTime": "String (timestamp)", "lastModifiedBy": "String", - "relatedResourceId": "String", - "displayName": "String" + "relatedResourceId": "String" } ``` diff --git a/api-reference/beta/resources/security-casemanagement-recommendationrelation.md b/api-reference/beta/resources/security-casemanagement-recommendationrelation.md index 05c0ccf53f2..0fcdc715da0 100644 --- a/api-reference/beta/resources/security-casemanagement-recommendationrelation.md +++ b/api-reference/beta/resources/security-casemanagement-recommendationrelation.md @@ -16,17 +16,20 @@ Namespace: microsoft.graph.security.caseManagement Represents a relation between a case and a recommendation. +For cast segments in URLs, use the full type name, for example `microsoft.graph.security.caseManagement.recommendationRelation`. + Inherited from [relation](../resources/security-casemanagement-relation.md). ## Methods This resource is part of a polymorphic collection managed by the [relation resource](../resources/security-casemanagement-relation.md) base type. Operations are performed through the base type endpoints. +To use a supported query option with a property declared only on **recommendationRelation**, cast the base relations collection to `microsoft.graph.security.caseManagement.recommendationRelation`. + ## Properties |Property|Type|Description| |:---|:---|:---| |createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| |createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|displayName|String|The human-friendly name for the linked resource. Inherited from [relation](../resources/security-casemanagement-relation.md).| |id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md).| |lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| |lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| @@ -57,7 +60,6 @@ The following JSON representation shows the resource type. "lastModifiedDateTime": "String (timestamp)", "lastModifiedBy": "String", "relatedResourceId": "String", - "displayName": "String", "recommendationType": "String", "subscriptionId": "String", "resourceGroupName": "String" diff --git a/api-reference/beta/resources/security-casemanagement-relation.md b/api-reference/beta/resources/security-casemanagement-relation.md index 9b85a7a448e..c83a44e754a 100644 --- a/api-reference/beta/resources/security-casemanagement-relation.md +++ b/api-reference/beta/resources/security-casemanagement-relation.md @@ -14,8 +14,11 @@ Namespace: microsoft.graph.security.caseManagement [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a link from a case to another security resource. -This is an abstract type. +Represents a link from a case to another security resource. This abstract type can't be instantiated directly. Use one of the following concrete derived types, identified by `@odata.type`: + +- [incidentRelation](../resources/security-casemanagement-incidentrelation.md) +- [recommendationRelation](../resources/security-casemanagement-recommendationrelation.md) +- [workspaceIndicatorRelation](../resources/security-casemanagement-workspaceindicatorrelation.md) Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). @@ -25,7 +28,9 @@ Inherited from [caseManagementEntity](../resources/security-casemanagement-casem |:---|:---|:---| |[List](../api/security-casemanagement-case-list-relations.md)|[microsoft.graph.security.caseManagement.relation](../resources/security-casemanagement-relation.md) collection|List external resource relations for a case.| |[Create](../api/security-casemanagement-case-post-relations.md)|[microsoft.graph.security.caseManagement.relation](../resources/security-casemanagement-relation.md)|Create a relation from a case to another security resource.| -|[Update](../api/security-casemanagement-relation-update.md)|[microsoft.graph.security.caseManagement.relation](../resources/security-casemanagement-relation.md)|Update the properties of a relation object.| +|[Get](../api/security-casemanagement-relation-get.md)|[microsoft.graph.security.caseManagement.relation](../resources/security-casemanagement-relation.md)|Read a concrete relation from a case.| +|[Update](../api/security-casemanagement-relation-update.md)|None|Update the properties of a relation object.| +|[Delete](../api/security-casemanagement-relation-delete.md)|None|Delete a relation from a case.| ## Properties @@ -33,7 +38,6 @@ Inherited from [caseManagementEntity](../resources/security-casemanagement-casem |:---|:---|:---| |createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| |createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|displayName|String|The human-friendly name for the linked resource.| |id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md).| |lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| |lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| @@ -60,7 +64,6 @@ The following JSON representation shows the resource type. "createdBy": "String", "lastModifiedDateTime": "String (timestamp)", "lastModifiedBy": "String", - "relatedResourceId": "String", - "displayName": "String" + "relatedResourceId": "String" } ``` diff --git a/api-reference/beta/resources/security-casemanagement-task.md b/api-reference/beta/resources/security-casemanagement-task.md index a78a7adda1d..d57ff022167 100644 --- a/api-reference/beta/resources/security-casemanagement-task.md +++ b/api-reference/beta/resources/security-casemanagement-task.md @@ -25,25 +25,26 @@ This resource inherits from [caseManagementEntity](../resources/security-caseman |[List](../api/security-casemanagement-case-list-tasks.md)|[microsoft.graph.security.caseManagement.task](../resources/security-casemanagement-task.md) collection|Get a list of tasks for a case.| |[Create](../api/security-casemanagement-case-post-tasks.md)|[microsoft.graph.security.caseManagement.task](../resources/security-casemanagement-task.md)|Create a task for a case.| |[Get](../api/security-casemanagement-task-get.md)|[microsoft.graph.security.caseManagement.task](../resources/security-casemanagement-task.md)|Read the properties and relationships of [microsoft.graph.security.caseManagement.task](../resources/security-casemanagement-task.md) object.| -|[Update](../api/security-casemanagement-task-update.md)|[microsoft.graph.security.caseManagement.task](../resources/security-casemanagement-task.md)|Update the properties of a task object.| +|[Update](../api/security-casemanagement-task-update.md)|None|Update all client-managed properties of a task.| +|[Delete](../api/security-casemanagement-task-delete.md)|None|Delete a task from a case.| ## Properties |Property|Type|Description| |:---|:---|:---| -|assignedTo|String|The user assigned to the task.| -|category|[microsoft.graph.security.caseManagement.caseTaskCategory](#casetaskcategory-values)|The functional category of the task.| -|closingNotes|String|Notes recorded when the task is completed.| -|createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|description|String|The description of the task.| -|displayName|String|The title of the task.| -|dueDateTime|DateTimeOffset|The target completion date and time for the task.| -|id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md).| -|lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|priority|[microsoft.graph.security.caseManagement.caseTaskPriority](#casetaskpriority-values)|The priority assigned to the task.| -|status|[microsoft.graph.security.caseManagement.taskStatus](#taskstatus-values)|The lifecycle state of the task.| +|assignedTo|String|The user assigned to the task. Supports `$filter`.| +|category|[microsoft.graph.security.caseManagement.caseTaskCategory](#casetaskcategory-values)|The functional category of the task. Supports `$filter`.| +|closingNotes|String|Notes recorded when the task is completed. Supports `$filter`.| +|createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter`.| +|createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter`.| +|description|String|The description of the task. Supports `$filter`.| +|displayName|String|The title of the task. Supports `$filter`.| +|dueDateTime|DateTimeOffset|The target completion date and time for the task. Supports `$filter`.| +|id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md). Supports `$filter`.| +|lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter`.| +|lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter`.| +|priority|[microsoft.graph.security.caseManagement.caseTaskPriority](#casetaskpriority-values)|The priority assigned to the task. Supports `$filter`.| +|status|[microsoft.graph.security.caseManagement.taskStatus](#taskstatus-values)|The lifecycle state of the task. Supports `$filter`.| ### caseTaskCategory values diff --git a/api-reference/beta/resources/security-casemanagement-workspaceindicatorrelation.md b/api-reference/beta/resources/security-casemanagement-workspaceindicatorrelation.md index 5835da5928f..23e3f204f4e 100644 --- a/api-reference/beta/resources/security-casemanagement-workspaceindicatorrelation.md +++ b/api-reference/beta/resources/security-casemanagement-workspaceindicatorrelation.md @@ -16,17 +16,20 @@ Namespace: microsoft.graph.security.caseManagement Represents a relation between a case and a workspace indicator. +For cast segments in URLs, use the full type name, for example `microsoft.graph.security.caseManagement.workspaceIndicatorRelation`. + Inherited from [relation](../resources/security-casemanagement-relation.md). ## Methods This resource is part of a polymorphic collection managed by the [relation resource](../resources/security-casemanagement-relation.md) base type. Operations are performed through the base type endpoints. +To use a supported query option with a property declared only on **workspaceIndicatorRelation**, cast the base relations collection to `microsoft.graph.security.caseManagement.workspaceIndicatorRelation`. + ## Properties |Property|Type|Description| |:---|:---|:---| |createdBy|String|The user or service that created the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| |createdDateTime|DateTimeOffset|The date and time when the resource was created. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| -|displayName|String|The human-friendly name for the linked resource. Inherited from [relation](../resources/security-casemanagement-relation.md).| |id|String|The unique identifier for the resource. Inherited from [entity](../resources/entity.md).| |lastModifiedBy|String|The user or service that last modified the resource. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| |lastModifiedDateTime|DateTimeOffset|The date and time when the resource was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md).| @@ -57,7 +60,6 @@ The following JSON representation shows the resource type. "lastModifiedDateTime": "String (timestamp)", "lastModifiedBy": "String", "relatedResourceId": "String", - "displayName": "String", "subscriptionId": "String", "resourceGroupName": "String", "workspaceName": "String" diff --git a/api-reference/beta/resources/security-casemanagementroot.md b/api-reference/beta/resources/security-casemanagementroot.md index f27b8281875..5a5b4de4681 100644 --- a/api-reference/beta/resources/security-casemanagementroot.md +++ b/api-reference/beta/resources/security-casemanagementroot.md @@ -16,6 +16,11 @@ Namespace: microsoft.graph.security Represents the entry point for Microsoft Graph security case management APIs. Use this resource to access cases that organize security investigations, related work, activities, and evidence. +|Context|Example| +|:---|:---| +|URL cast segment|`.../cases/microsoft.graph.security.caseManagement.incidentCase`| +|JSON body discriminator|`"@odata.type": "#microsoft.graph.security.caseManagement.incidentCase"`| + ## Methods None. @@ -26,7 +31,7 @@ None. |Relationship|Type|Description| |:---|:---|:---| |caseTypeConfigurations|[microsoft.graph.security.caseManagement.caseTypeConfiguration](../resources/security-casemanagement-casetypeconfiguration.md) collection|The collection of case type configurations that define the statuses and custom fields available for each case type. Read-only. Supports `$select`, `$count`, and `$expand` of the `statuses` and `customFields` relationships.| -|cases|[microsoft.graph.security.caseManagement.case](../resources/security-casemanagement-case.md) collection|The collection of security cases managed through the case management entry point. Supports `$filter`, `$orderby`, `$select`, `$top`, `$skip`, and `$count`.| +|cases|[microsoft.graph.security.caseManagement.case](../resources/security-casemanagement-case.md) collection|The collection of security cases managed through the case management entry point. Supports `$filter`, `$orderby`, `$select`, `$top`, and `$skip`.| ## JSON representation The following JSON representation shows the resource type. diff --git a/api-reference/beta/toc/security/toc.yml b/api-reference/beta/toc/security/toc.yml index ce861f16ab7..ddada434a96 100644 --- a/api-reference/beta/toc/security/toc.yml +++ b/api-reference/beta/toc/security/toc.yml @@ -410,6 +410,10 @@ items: href: ../../api/security-casemanagement-attachment-get.md - name: Update href: ../../api/security-casemanagement-attachment-update.md + - name: Download content + href: ../../api/security-casemanagement-attachment-download-content.md + - name: Upload content + href: ../../api/security-casemanagement-attachment-upload-content.md - name: Relation items: - name: Relation @@ -418,8 +422,12 @@ items: href: ../../api/security-casemanagement-case-list-relations.md - name: Create href: ../../api/security-casemanagement-case-post-relations.md + - name: Get + href: ../../api/security-casemanagement-relation-get.md - name: Update href: ../../api/security-casemanagement-relation-update.md + - name: Delete + href: ../../api/security-casemanagement-relation-delete.md - name: Incident relation href: ../../resources/security-casemanagement-incidentrelation.md - name: Recommendation relation @@ -438,6 +446,8 @@ items: href: ../../api/security-casemanagement-task-get.md - name: Update href: ../../api/security-casemanagement-task-update.md + - name: Delete + href: ../../api/security-casemanagement-task-delete.md - name: Case type configuration items: - name: Case type configuration diff --git a/changelog/Microsoft.USX.CaseManagement.json b/changelog/Microsoft.USX.CaseManagement.json index 999e110af5f..20a3fe17928 100644 --- a/changelog/Microsoft.USX.CaseManagement.json +++ b/changelog/Microsoft.USX.CaseManagement.json @@ -1,5 +1,55 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "3547088c-6080-4202-9e9c-ad28ff7bb2cd", + "ApiChange": "Method", + "ChangedApiName": "Download content", + "ChangeType": "Addition", + "Description": "Added the [Download attachment content](https://learn.microsoft.com/en-us/graph/api/security-casemanagement-attachment-download-content?view=graph-rest-beta) method to the [attachment](https://learn.microsoft.com/en-us/graph/api/resources/security-casemanagement-attachment?view=graph-rest-beta) resource to download binary content after malware scanning completes.", + "Target": "attachment" + }, + { + "Id": "3547088c-6080-4202-9e9c-ad28ff7bb2cd", + "ApiChange": "Method", + "ChangedApiName": "Upload content", + "ChangeType": "Addition", + "Description": "Added the [Upload attachment content](https://learn.microsoft.com/en-us/graph/api/security-casemanagement-attachment-upload-content?view=graph-rest-beta) method to the [attachment](https://learn.microsoft.com/en-us/graph/api/resources/security-casemanagement-attachment?view=graph-rest-beta) resource to upload binary content in chunks.", + "Target": "attachment" + }, + { + "Id": "3547088c-6080-4202-9e9c-ad28ff7bb2cd", + "ApiChange": "Method", + "ChangedApiName": "Get", + "ChangeType": "Addition", + "Description": "Added the [Get relation](https://learn.microsoft.com/en-us/graph/api/security-casemanagement-relation-get?view=graph-rest-beta) method to the [relation](https://learn.microsoft.com/en-us/graph/api/resources/security-casemanagement-relation?view=graph-rest-beta) resource to read a relation from a security case.", + "Target": "relation" + }, + { + "Id": "3547088c-6080-4202-9e9c-ad28ff7bb2cd", + "ApiChange": "Method", + "ChangedApiName": "Delete", + "ChangeType": "Addition", + "Description": "Added the [Delete relation](https://learn.microsoft.com/en-us/graph/api/security-casemanagement-relation-delete?view=graph-rest-beta) method to the [relation](https://learn.microsoft.com/en-us/graph/api/resources/security-casemanagement-relation?view=graph-rest-beta) resource to remove a relation from a security case.", + "Target": "relation" + }, + { + "Id": "3547088c-6080-4202-9e9c-ad28ff7bb2cd", + "ApiChange": "Method", + "ChangedApiName": "Delete", + "ChangeType": "Addition", + "Description": "Added the [Delete task](https://learn.microsoft.com/en-us/graph/api/security-casemanagement-task-delete?view=graph-rest-beta) method to the [task](https://learn.microsoft.com/en-us/graph/api/resources/security-casemanagement-task?view=graph-rest-beta) resource to remove a task from a security case.", + "Target": "task" + } + ], + "Id": "3547088c-6080-4202-9e9c-ad28ff7bb2cd", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-19T16:32:58.8605158Z", + "WorkloadArea": "Security", + "SubArea": "Case management" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 8c73cbfff9c..3e8a4cd3cf2 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -52,6 +52,12 @@ Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources - Changed the **members** property on the [distributionList](/graph/api/resources/distributionlist?view=graph-rest-beta&preserve-view=true) resource to an expandable relationship. Use `$expand=members` with the [Get distribution list](/graph/api/distributionlist-get?view=graph-rest-beta&preserve-view=true) method instead of the removed standalone methods for listing and getting members. +### Security | Case management + +- Added the [download attachment content](/graph/api/security-casemanagement-attachment-download-content?view=graph-rest-beta&preserve-view=true) and [upload attachment content](/graph/api/security-casemanagement-attachment-upload-content?view=graph-rest-beta&preserve-view=true) methods to the [attachment](/graph/api/resources/security-casemanagement-attachment?view=graph-rest-beta&preserve-view=true) resource type to transfer case evidence in chunks and retrieve it after malware scanning. +- Added the [get relation](/graph/api/security-casemanagement-relation-get?view=graph-rest-beta&preserve-view=true) and [delete relation](/graph/api/security-casemanagement-relation-delete?view=graph-rest-beta&preserve-view=true) methods to the [relation](/graph/api/resources/security-casemanagement-relation?view=graph-rest-beta&preserve-view=true) resource type to read and remove links between a case and related security resources. +- Added the [delete task](/graph/api/security-casemanagement-task-delete?view=graph-rest-beta&preserve-view=true) method to the [task](/graph/api/resources/security-casemanagement-task?view=graph-rest-beta&preserve-view=true) resource type to remove a task from a case. + ### Teamwork and communications | Calls and online meetings - Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings?view=graph-rest-beta&preserve-view=true) and [getAllTranscripts](/graph/api/onlinemeeting-getalltranscripts?view=graph-rest-beta&preserve-view=true) methods to document a service-update issue that can cause paginated requests to return an empty collection followed by duplicate items. From 064729464efef1805403f6e21054295c47ac63f7 Mon Sep 17 00:00:00 2001 From: Rushwant Koppolu <277856787+RushwantKoppolu@users.noreply.github.com> Date: Wed, 19 Aug 2026 16:15:14 -0700 Subject: [PATCH 067/189] Docs: add dataLocationCode property to fileStorageContainer beta docs (#29323) * Docs: add dataLocationCode property to fileStorageContainer beta docs * Added example in filestoragecontainer-get * Fix validation error * Apply suggestion from @Danipocket Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Addressed copilot nit comment * fixes * Update changelog/Microsoft.FileServices.json * fix --------- Co-authored-by: rkoppolu Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: vhontovyy-MS <146036742+vhontovyy-MS@users.noreply.github.com> --- .../beta/api/filestoragecontainer-get.md | 45 ++++++++++++++++++- .../beta/resources/filestoragecontainer.md | 8 ++-- changelog/Microsoft.FileServices.json | 18 ++++++++ concepts/whats-new-overview.md | 1 + 4 files changed, 67 insertions(+), 5 deletions(-) diff --git a/api-reference/beta/api/filestoragecontainer-get.md b/api-reference/beta/api/filestoragecontainer-get.md index 9cf7b796c71..a2b6a6c7d1a 100644 --- a/api-reference/beta/api/filestoragecontainer-get.md +++ b/api-reference/beta/api/filestoragecontainer-get.md @@ -37,6 +37,10 @@ Choose the permission or permissions marked as least privileged for this API. Us GET /storage/fileStorage/containers/{containerId} ``` +## Optional query parameters + +This method supports the `$select` OData query parameter to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + ## Request headers |Name|Description| |:---|:---| @@ -49,7 +53,9 @@ If successful, this method returns a `200 OK` response code and a [fileStorageCo ## Examples -### Request +### Example 1: Get a fileStorageContainer + +#### Request The following example shows a request. # [HTTP](#tab/http) +```msgraph-interactive +GET https://graph.microsoft.com/beta/storage/fileStorage/containers/{containerId}?$select=id,dataLocationCode +``` + +#### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.fileStorageContainer", + "id": "b!ISJs1WRro0y0EWgkUYcktDa0mE8zSlFEqFzqRn70Zwp1CEtDEBZgQICPkRbil_5Z", + "dataLocationCode": "NAM" +} +``` + diff --git a/api-reference/beta/resources/filestoragecontainer.md b/api-reference/beta/resources/filestoragecontainer.md index 61851e0cf49..f8077aa27fc 100644 --- a/api-reference/beta/resources/filestoragecontainer.md +++ b/api-reference/beta/resources/filestoragecontainer.md @@ -68,17 +68,18 @@ Represents a location where multiple users or a group of users can store files a |containerTypeId|GUID|Container type ID of the **fileStorageContainer**. Each container must have only one container type. Read-only.| |createdDateTime|DateTimeOffset|Date and time of the **fileStorageContainer** creation. Read-only.| |customProperties|[fileStorageContainerCustomPropertyDictionary](../resources/filestoragecontainercustompropertydictionary.md)|Custom property collection for the **fileStorageContainer**. Read-write.| +|dataLocationCode|String|The geographic location of the data for multi-geo tenants. This property is only returned when explicitly selected by using `$select`. Read-only.| |description|String|Provides a user-visible description of the **fileStorageContainer**. Read-write.| |displayName|String|The display name of the **fileStorageContainer**. Read-write.| |id|String|The unique stable identifier of the **fileStorageContainer**. Read-only.| +|informationBarrier|[informationBarrier](../resources/informationBarrier.md)|Information barrier of a **fileStorageContainer**. Read-write.| +|lockState|siteLockState|Indicates the lock state of the **fileStorageContainer**. The possible values are `unlocked` and `lockedReadOnly`. Read-only.| |owners|[userIdentity](../resources/useridentity.md) collection|List of users who own the **fileStorageContainer**. Read-only.| |ownershipType|fileStorageContainerOwnershipType|Ownership type of the **fileStorageContainer**. The possible values are: `tenantOwned`. Read-only.| +|settings|[fileStorageContainerSettings](../resources/filestoragecontainersettings.md)|Settings associated with a **fileStorageContainer**. Read-write.| |status|fileStorageContainerStatus|Status of the **fileStorageContainer**. Containers are created as inactive and require activation. Inactive containers are subjected to automatic deletion in 24 hours. The possible values are: `inactive`, `active`. Read-only.| |storageUsedInBytes|Int64|Storage used in the **fileStorageContainer**, in bytes. Read-only.| |viewpoint|[fileStorageContainerViewpoint](../resources/filestoragecontainerviewpoint.md)|Data specific to the current user. Read-only.| -|lockState|siteLockState|Indicates the lock state of the **fileStorageContainer**. The possible values are `unlocked` and `lockedReadOnly`. Read-only.| -|settings|[fileStorageContainerSettings](../resources/filestoragecontainersettings.md)|Settings associated with a **fileStorageContainer**. Read-write.| -|informationBarrier|[informationBarrier](../resources/informationBarrier.md)|Information barrier of a **fileStorageContainer**. Read-write.| ## Relationships @@ -130,6 +131,7 @@ The following JSON representation shows the resource type. "assignedSensitivityLabel": {"@odata.type": "microsoft.graph.assignedLabel"}, "owners": [ { "@odata.type": "microsoft.graph.userIdentity" } ], "ownershipType": {"@odata.type": "microsoft.graph.fileStorageContainerOwnershipType"}, + "dataLocationCode": "string", "expiryDateTime": "string (timestamp)", "lockState": {"@odata.type": "microsoft.graph.siteLockState"}, "settings": { "@odata.type": "microsoft.graph.fileStorageContainerSettings" }, diff --git a/changelog/Microsoft.FileServices.json b/changelog/Microsoft.FileServices.json index e15c7ce2fb7..7dab16c1e22 100644 --- a/changelog/Microsoft.FileServices.json +++ b/changelog/Microsoft.FileServices.json @@ -1,5 +1,23 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "9dfb98ca-f428-4244-a2cc-efedffada6ef", + "ApiChange": "Property", + "ChangedApiName": "dataLocationCode", + "ChangeType": "Addition", + "Description": "Added the **dataLocationCode** property to the [fileStorageContainer](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainer?view=graph-rest-beta) resource.", + "Target": "fileStorageContainer" + } + ], + "Id": "9dfb98ca-f428-4244-a2cc-efedffada6ef", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-19T01:57:40.5485866Z", + "WorkloadArea": "Files", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 3e8a4cd3cf2..25f7fba623f 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -142,6 +142,7 @@ Added the **vapidPublicKey**, **webPushEncryptionP256dhPublicKey**, and **webPus ### Files +- Added the **dataLocationCode** property to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource type to represent the geographic location of the data for multi-geo tenants. - Added the **settings** property of type [driveSettings](/graph/api/resources/drivesettings?view=graph-rest-beta&preserve-view=true) to the [drive](/graph/api/resources/drive?view=graph-rest-beta&preserve-view=true) resource type to retrieve drive-level settings such as the default sensitivity label applied to items. - Updated the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to support the optional `reportType` parameter for retrieving throttling metrics. Use `reportType='throttlingReport'` to get throttled request counts via the **throttledRequests** property on the [sharePointApiUsageDataPoint](/graph/api/resources/sharepointapiusagedatapoint?view=graph-rest-beta&preserve-view=true) resource, or use `reportType='egressReport'` (default) to get egress usage via the **usageMB** property. - Added the [Upsert permissions](/graph/api/filestoragecontainer-patch-permissions) (create or update) up to 40 permissions on a [fileStorageContainer](/graph/api/resources/filestoragecontainer) in a single request. The limit increased from 10 to 40 [permission](/graph/api/resources/permission) objects per request. From 047ecfea14614053da2f8f40b35a89b80e717060 Mon Sep 17 00:00:00 2001 From: diogbo <138807534+diogbo@users.noreply.github.com> Date: Wed, 19 Aug 2026 19:27:21 -0400 Subject: [PATCH 068/189] Document GSA health monitoring enum values (#29367) * Document GSA health monitoring enum values Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address changelog review feedback Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../beta/resources/enums-healthmonitoring.md | 5 ++ .../beta/resources/healthmonitoring-alert.md | 5 +- changelog/Microsoft.AAD.Reporting.json | 50 +++++++++++++++++++ concepts/whats-new-overview.md | 4 ++ 4 files changed, 61 insertions(+), 3 deletions(-) diff --git a/api-reference/beta/resources/enums-healthmonitoring.md b/api-reference/beta/resources/enums-healthmonitoring.md index 0fb37a706a1..72f3c22ce9b 100644 --- a/api-reference/beta/resources/enums-healthmonitoring.md +++ b/api-reference/beta/resources/enums-healthmonitoring.md @@ -35,6 +35,10 @@ Namespace: microsoft.graph.healthMonitoring |unknownFutureValue| |conditionalAccessBlockedSignIn| |samlSignInFailure| +|internetAppBlockedByPolicy| +|privateAppBlockedByConnector| +|remoteNetworkTunnelConnectivity| +|remoteNetworkBgpConnectivity| ### category values @@ -69,6 +73,7 @@ Namespace: microsoft.graph.healthMonitoring |unknownFutureValue| |conditionalAccess| |saml| +|gsa| +``` http +POST https://graph.microsoft.com/beta/solutions/backupRestore/oneDriveForBusinessBrowseSessions/m_RtZ8BiiUXOK69cuN6gwubfm9_yeVlDg8s6hci01_cVOAE/browse +Content-Type: application/json + +{ + "optimizedBrowse": true +} +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#Collection(microsoft.graph.browseQueryResponseItem)", + "@odata.count": 3, + "value": [ + { + "itemKey": "a535851e-9fc6-4eb1-90ab-2955fd9117b5,2a8b7eaf-092a-4561-a25a-998ad2e5142e,38eec3f1-b879-44a6-8ae6-05bd46ed4b3d,f1a2b3c4-5678-90ab-cdef-1234567890ab", + "name": "Folder1", + "webUrl": "https://contoso-my.sharepoint.com/personal/alice_contoso_onmicrosoft_com/Shared%20Documents/Folder1", + "type": "folder" + }, + { + "itemKey": "a535851e-9fc6-4eb1-90ab-2955fd9117b5,2a8b7eaf-092a-4561-a25a-998ad2e5142e,38eec3f1-b879-44a6-8ae6-05bd46ed4b3d,a1b2c3d4-5678-90ab-cdef-0987654321ba", + "name": "Folder 2", + "webUrl": "https://contoso-my.sharepoint.com/personal/alice_contoso_onmicrosoft_com/Shared%20Documents/Folder2", + "type": "folder" + }, + { + "itemKey": "a535851e-9fc6-4eb1-90ab-2955fd9117b5,2a8b7eaf-092a-4561-a25a-998ad2e5142e,38eec3f1-b879-44a6-8ae6-05bd46ed4b3d,b2c3d4e5-6789-01ab-cdef-9876543210ba", + "name": "Presentation", + "webUrl": "https://contoso-my.sharepoint.com/personal/alice_contoso_onmicrosoft_com/Shared%20Documents/Presentation.ppt", + "type": "file" + } + ] +} +``` + +### Example 5: Search items by using the optimized browse flow with a filter + +The following example uses the optimized browse flow together with a **filter** to return only the items whose name contains `Folder`. + +#### Request + +The following example shows a request. + + +``` http +POST https://graph.microsoft.com/beta/solutions/backupRestore/oneDriveForBusinessBrowseSessions/m_RtZ8BiiUXOK69cuN6gwubfm9_yeVlDg8s6hci01_cVOAE/browse +Content-Type: application/json + +{ + "optimizedBrowse": true, + "filter": "(name -contains 'Folder')" +} +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#Collection(microsoft.graph.browseQueryResponseItem)", + "@odata.count": 2, + "value": [ + { + "itemKey": "a535851e-9fc6-4eb1-90ab-2955fd9117b5,2a8b7eaf-092a-4561-a25a-998ad2e5142e,38eec3f1-b879-44a6-8ae6-05bd46ed4b3d,a1b2c3d4-5678-90ab-cdef-0987654321ba", + "name": "Folder1", + "webUrl": "https://contoso-my.sharepoint.com/personal/alice_contoso_onmicrosoft_com/Shared%20Documents/Folder1", + "type": "folder" + }, + { + "itemKey": "a535851e-9fc6-4eb1-90ab-2955fd9117b5,2a8b7eaf-092a-4561-a25a-998ad2e5142e,38eec3f1-b879-44a6-8ae6-05bd46ed4b3d,b2c3d4e5-6789-01ab-cdef-9876543210ba", + "name": "FolderFile.txt", + "webUrl": "https://contoso-my.sharepoint.com/personal/alice_contoso_onmicrosoft_com/Shared%20Documents/Folder1/FolderFile.txt", + "type": "file" + } + ] +} +``` diff --git a/api-reference/beta/api/sharepointbrowsesession-browse.md b/api-reference/beta/api/sharepointbrowsesession-browse.md index 293712c5231..fa773d6d058 100644 --- a/api-reference/beta/api/sharepointbrowsesession-browse.md +++ b/api-reference/beta/api/sharepointbrowsesession-browse.md @@ -43,15 +43,16 @@ POST /solutions/backupRestore/sharePointBrowseSessions/{sharePointBrowseSessionI ## Request body -Users should make a request with an empty body to get the list of the top browsable locations. +To get top browsable locations, in the request body, supply an empty JSON object `{}`. -In the request body, supply a JSON representation of the following parameters. +To browse a specific scope, in the request body, supply a JSON representation of the following parameters. |Parameter|Type|Description| |:---|:---|:---| |browseLocationItemKey|String|The item key of the location that you want to browse. Optional.| -|browseResourceType|[browsableResourceType](../resources/enums.md#browsableresourcetype-values)|The type of the browsable location. Optional. The possible values are `none`, `site`, `documentLibrary`, `folder`, and `unknownFutureValue`. Optional.| +|browseResourceType|[browsableResourceType](../resources/enums.md#browsableresourcetype-values)|The type of the browsable location. The possible values are `none`, `site`, `documentLibrary`, `folder`, and `unknownFutureValue`. Optional.| |filter|String|Contains the search expression. Optional.| +|optimizedBrowse|Boolean|Indicates whether to use the optimized browse flow to directly retrieve files and folders when the artifact has a single site and single document library. Optional. Returns `409 Conflict` if multiple sites or document libraries exist.| |orderBy|[browseQueryOrder](../resources/enums.md#browsequeryorder-values)|Specifies the order by which response should be ordered. Optional.| The following table shows examples of possible formats for the filter expression. The filter is supported only on the `name` property. @@ -64,6 +65,8 @@ The following table shows examples of possible formats for the filter expression If successful, this function returns a `200 OK` response code and a [browseQueryResponseItem](../resources/browsequeryresponseitem.md) collection in the response body. +When **optimizedBrowse** is `true` but the artifact contains multiple sites or document libraries, this method returns a `409 Conflict` response code. In this case, use the regular browse flow. + ## Examples ### Example 1: Get top browsable locations @@ -115,7 +118,7 @@ Content-Type: application/json } ``` -### Example 2: Browse a specify resource +### Example 2: Browse a specific resource #### Request @@ -370,3 +373,122 @@ Content-Type: application/json ] } ``` + +### Example 4: Browse items by using the optimized browse flow + +When the browse session targets a single site that contains a single document library, set **optimizedBrowse** to `true` to directly get the files and folders in the artifact without specifying **browseResourceType**. + +#### Request + +The following example shows a request. + + +``` http +POST https://graph.microsoft.com/beta/solutions/backupRestore/sharePointBrowseSessions/m_RtZ8BiiUXOK69cuN6gwubfm9_yeVlDg8s6hci01_cVOAE/browse +Content-Type: application/json + +{ + "optimizedBrowse": true +} +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#Collection(microsoft.graph.browseQueryResponseItem)", + "@odata.count": 3, + "value": [ + { + "itemKey": "a535851e-9fc6-4eb1-90ab-2955fd9117b5,2a8b7eaf-092a-4561-a25a-998ad2e5142e,38eec3f1-b879-44a6-8ae6-05bd46ed4b3d,f1a2b3c4-5678-90ab-cdef-1234567890ab", + "name": "Documents", + "webUrl": "https://contoso.sharepoint.com/sites/site1/Shared%20Documents", + "type": "folder" + }, + { + "itemKey": "a535851e-9fc6-4eb1-90ab-2955fd9117b5,2a8b7eaf-092a-4561-a25a-998ad2e5142e,38eec3f1-b879-44a6-8ae6-05bd46ed4b3d,a1b2c3d4-5678-90ab-cdef-0987654321ba", + "name": "Site Assets", + "webUrl": "https://contoso.sharepoint.com/sites/site1/SiteAssets/Folder1", + "type": "folder" + }, + { + "itemKey": "a535851e-9fc6-4eb1-90ab-2955fd9117b5,2a8b7eaf-092a-4561-a25a-998ad2e5142e,38eec3f1-b879-44a6-8ae6-05bd46ed4b3d,b2c3d4e5-6789-01ab-cdef-9876543210ba", + "name": "Presentation", + "webUrl": "https://contoso.sharepoint.com/sites/site1/SiteAssets/Presentation.ppt", + "type": "file" + } + ] +} +``` + +### Example 5: Search items by using the optimized browse flow with a filter + +The following example uses the optimized browse flow together with a **filter** to return only the items whose name contains `Folder`. + +#### Request + +The following example shows a request. + + +``` http +POST https://graph.microsoft.com/beta/solutions/backupRestore/sharePointBrowseSessions/m_RtZ8BiiUXOK69cuN6gwubfm9_yeVlDg8s6hci01_cVOAE/browse +Content-Type: application/json + +{ + "optimizedBrowse": true, + "filter": "(name -contains 'Folder')" +} +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#Collection(microsoft.graph.browseQueryResponseItem)", + "@odata.count": 2, + "value": [ + { + "itemKey": "a535851e-9fc6-4eb1-90ab-2955fd9117b5,2a8b7eaf-092a-4561-a25a-998ad2e5142e,38eec3f1-b879-44a6-8ae6-05bd46ed4b3d,a1b2c3d4-5678-90ab-cdef-0987654321ba", + "name": "Folder1", + "webUrl": "https://contoso.sharepoint.com/sites/site1/SiteAssets/Folder1", + "type": "folder" + }, + { + "itemKey": "a535851e-9fc6-4eb1-90ab-2955fd9117b5,2a8b7eaf-092a-4561-a25a-998ad2e5142e,38eec3f1-b879-44a6-8ae6-05bd46ed4b3d,b2c3d4e5-6789-01ab-cdef-9876543210ba", + "name": "FolderFile.txt", + "webUrl": "https://contoso.sharepoint.com/sites/site1/SiteAssets/Folder1/FolderFile.txt", + "type": "file" + } + ] +} +``` diff --git a/changelog/Microsoft.EnhancedRestore.json b/changelog/Microsoft.EnhancedRestore.json index a178c7c608c..2be6cdf9a5c 100644 --- a/changelog/Microsoft.EnhancedRestore.json +++ b/changelog/Microsoft.EnhancedRestore.json @@ -1,5 +1,31 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "a22559ba-bd75-4d84-9ad4-5eaa3795272d", + "ApiChange": "Method", + "ChangedApiName": "browse", + "ChangeType": "Update", + "Description": "Added the **optimizedBrowse** optional parameter to the [browse](https://learn.microsoft.com/graph/api/sharepointbrowsesession-browse?view=graph-rest-beta) method of the [sharePointBrowseSession](https://learn.microsoft.com/graph/api/resources/sharepointbrowsesession?view=graph-rest-beta) resource to directly browse files and folders when the artifact has a single site and a single document library.", + "Target": "sharePointBrowseSession" + }, + { + "Id": "8521e56d-f301-4f1b-a2a9-40acb2b59d8a", + "ApiChange": "Method", + "ChangedApiName": "browse", + "ChangeType": "Update", + "Description": "Added the **optimizedBrowse** optional parameter to the [browse](https://learn.microsoft.com/graph/api/onedriveforbusinessbrowsesession-browse?view=graph-rest-beta) method of the [oneDriveForBusinessBrowseSession](https://learn.microsoft.com/graph/api/resources/onedriveforbusinessbrowsesession?view=graph-rest-beta) resource to directly browse files and folders when the artifact has a single site and a single document library.", + "Target": "oneDriveForBusinessBrowseSession" + } + ], + "Id": "cce61b61-33c8-47df-ae2b-6c022d2f9dba", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-19T21:52:42.9632648Z", + "WorkloadArea": "Backup and recovery", + "SubArea": "Microsoft 365 backup and storage" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 5f8945e9157..0ed5a8f1abd 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -121,6 +121,11 @@ Added support for user-centric (catalog-scope) access reviews through the **unif ## July 2026: New in preview only +### Backup and recovery | Microsoft 365 Backup and Storage + +- Added the **optimizedBrowse** parameter to the [sharePointBrowseSession: browse](/graph/api/sharepointbrowsesession-browse?view=graph-rest-beta&preserve-view=true) method of the [sharePointBrowseSession](/graph/api/resources/sharepointbrowsesession?view=graph-rest-beta&preserve-view=true) resource. Set this parameter to `true` to retrieve files and folders in a single request when the backup artifact has a single site and a single document library. +- Added the **optimizedBrowse** parameter to the [oneDriveForBusinessBrowseSession: browse](/graph/api/onedriveforbusinessbrowsesession-browse?view=graph-rest-beta&preserve-view=true) method of the [oneDriveForBusinessBrowseSession](/graph/api/resources/onedriveforbusinessbrowsesession?view=graph-rest-beta&preserve-view=true) resource. Set this parameter to `true` to retrieve files and folders in a single request when the backup artifact has a single site and a single document library. + ### Change notifications Added the **vapidPublicKey**, **webPushEncryptionP256dhPublicKey**, and **webPushEncryptionSecret** properties to the [subscription](/graph/api/resources/subscription?view=graph-rest-beta&preserve-view=true) resource to support encrypted change notifications delivered to browser-native Web Push endpoints (Apple, Mozilla, FCM). Browser-based applications can now register with Microsoft Graph to receive change notifications through the W3C Push API channel without operating a public webhook. See [RFC 8291](https://www.rfc-editor.org/rfc/rfc8291.html) and [RFC 8292](https://www.rfc-editor.org/rfc/rfc8292.html) for the underlying encryption and authentication protocols. From 5327c2f65815cc9021dc156a2abe2286f1e7b051 Mon Sep 17 00:00:00 2001 From: Saksham Sharma Date: Thu, 20 Aug 2026 05:23:03 +0530 Subject: [PATCH 070/189] Updated docs with the new metadata property details (#29107) * Updated docs with the new metadata property details * Updating property description * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Renaming identity with id property * Update whats-new-overview.md * Changelog: unique GUIDs per ChangeList item and drop en-us locale from URLs * Apply review feedback: inline @odata.type in JSON representation and roll CreatedDateTime forward * Move browseQueryResponseItem entry from whats-new-earlier to whats-new-overview * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: sakshamshar Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- ...onedriveforbusinessbrowsesession-browse.md | 210 ++++++------------ .../api/sharepointbrowsesession-browse.md | 208 ++++++----------- .../beta/resources/browsequeryresponseitem.md | 8 + changelog/Microsoft.EnhancedRestore.json | 42 ++++ concepts/whats-new-overview.md | 1 + 5 files changed, 180 insertions(+), 289 deletions(-) diff --git a/api-reference/beta/api/onedriveforbusinessbrowsesession-browse.md b/api-reference/beta/api/onedriveforbusinessbrowsesession-browse.md index f86d791ea7e..504f44076e5 100644 --- a/api-reference/beta/api/onedriveforbusinessbrowsesession-browse.md +++ b/api-reference/beta/api/onedriveforbusinessbrowsesession-browse.md @@ -171,83 +171,43 @@ Content-Type: application/json "value": [ { "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,2db4d4a9-7a10-409d-acfb-136101b43ba8", - "name": "objectdelete-onedriveforbusinessbrowsesessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-onedriveforbusinessbrowsesessions.md", + "name": "Report.docx", + "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/Report.docx", "type": "file", "itemsCount": 0, - "sizeInBytes": "2594" + "sizeInBytes": "2594", + "createdDateTime": "2024-06-01T10:00:00Z", + "createdBy": { + "user": { + "id": "6ebb65c7-0b69-4f4a-8108-12f29da1a7b7" + } + }, + "lastModifiedDateTime": "2024-06-02T15:30:00Z", + "lastModifiedBy": { + "user": { + "id": "6ebb65c7-0b69-4f4a-8108-12f29da1a7b7" + } + } }, { "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,e3cca06d-b45d-4e98-bd16-c57a4563776f", - "name": "objectdelete-browsesessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-browsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2411" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,cd692efa-0297-4a98-a39b-ec568a118f35", - "name": "objectdelete-onedriveforbusinessrestoresessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-onedriveforbusinessrestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2605" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,24c84b57-692b-40b3-b0b0-9cb8613b4398", - "name": "objectdelete-restoresessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-restoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2422" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,b74f9233-27a7-4d49-a723-c9a4ab717d2d", - "name": "objectdelete-exchangerestoresessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-exchangerestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2484" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,4f20a6c4-c999-4ee8-9552-ca6a7fc46edf", - "name": "objectdelete-onedriveforbusinessbrowsesessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-onedriveforbusinessbrowsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2493" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,92d28cdf-82b4-4964-b6fa-fd61240acf6c", - "name": "objectdelete-sharepointrestoresessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-sharepointrestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2504" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,cbd8e3c8-d0da-40a8-8eb8-51699268d6cf", - "name": "objectenable.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectenable.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2853" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,45cccd01-511c-4705-97b6-8884d2397e3c", - "name": "objectget.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectget.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2966" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,ef0ebe75-df09-43d0-91b6-705f03e0b006", - "name": "objectlist-browsesessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectlist-browsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "3254" + "name": "Reports", + "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/Reports", + "type": "folder", + "itemsCount": 12, + "sizeInBytes": "45820", + "createdDateTime": "2024-05-20T08:15:00Z", + "createdBy": { + "user": { + "id": "6ebb65c7-0b69-4f4a-8108-12f29da1a7b7" + } + }, + "lastModifiedDateTime": "2024-06-02T11:45:00Z", + "lastModifiedBy": { + "user": { + "id": "6ebb65c7-0b69-4f4a-8108-12f29da1a7b7" + } + } } ] } @@ -296,84 +256,44 @@ Content-Type: application/json "value": [ { "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,2db4d4a9-7a10-409d-acfb-136101b43ba8", - "name": "objectdelete-onedriveforbusinessbrowsesessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-onedriveforbusinessbrowsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2594" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,e3cca06d-b45d-4e98-bd16-c57a4563776f", - "name": "objectdelete-browsesessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-browsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2411" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,cd692efa-0297-4a98-a39b-ec568a118f35", - "name": "objectdelete-onedriveforbusinessrestoresessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-onedriveforbusinessrestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2605" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,24c84b57-692b-40b3-b0b0-9cb8613b4398", - "name": "objectdelete-restoresessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-restoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2422" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,b74f9233-27a7-4d49-a723-c9a4ab717d2d", - "name": "objectdelete-exchangerestoresessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-exchangerestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2484" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,4f20a6c4-c999-4ee8-9552-ca6a7fc46edf", - "name": "objectdelete-onedriveforbusinessbrowsesessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-onedriveforbusinessbrowsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2493" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,92d28cdf-82b4-4964-b6fa-fd61240acf6c", - "name": "objectdelete-sharepointrestoresessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-sharepointrestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2504" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,cbd8e3c8-d0da-40a8-8eb8-51699268d6cf", - "name": "objectenable.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectenable.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2853" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,2db4d4a9-7a10-409d-acfb-136101b43ba8", - "name": "objectdelete-onedriveforbusinessbrowsesessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-onedriveforbusinessbrowsesessions.md", + "name": "Report.docx", + "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/Report.docx", "type": "file", "itemsCount": 0, - "sizeInBytes": "2594" + "sizeInBytes": "2594", + "createdDateTime": "2024-06-01T10:00:00Z", + "createdBy": { + "application": { + "id": "5110d9f2-bfb1-4dec-9712-0ab11af28e1c" + } + }, + "lastModifiedDateTime": "2024-06-02T15:30:00Z", + "lastModifiedBy": { + "application": { + "id": "5110d9f2-bfb1-4dec-9712-0ab11af28e1c" + } + } }, { "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,e3cca06d-b45d-4e98-bd16-c57a4563776f", - "name": "objectdelete-browsesessions.md", - "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/api/objectdelete-browsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2411" - }, + "name": "Reports", + "webUrl": "https://contoso-my.sharepoint.com/personal/user0_contoso_onmicrosoft_com/Documents/Reports", + "type": "folder", + "itemsCount": 12, + "sizeInBytes": "45820", + "createdDateTime": "2024-05-20T08:15:00Z", + "createdBy": { + "application": { + "id": "5110d9f2-bfb1-4dec-9712-0ab11af28e1c" + } + }, + "lastModifiedDateTime": "2024-06-02T11:45:00Z", + "lastModifiedBy": { + "application": { + "id": "5110d9f2-bfb1-4dec-9712-0ab11af28e1c" + } + } + } ] } ``` diff --git a/api-reference/beta/api/sharepointbrowsesession-browse.md b/api-reference/beta/api/sharepointbrowsesession-browse.md index fa773d6d058..0cdc5a2fe9d 100644 --- a/api-reference/beta/api/sharepointbrowsesession-browse.md +++ b/api-reference/beta/api/sharepointbrowsesession-browse.md @@ -167,83 +167,43 @@ Content-Type: application/json "value": [ { "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,2db4d4a9-7a10-409d-acfb-136101b43ba8", - "name": "objectdelete-sharepointbrowsesessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-sharepointbrowsesessions.md", + "name": "Report.docx", + "webUrl": "https://contoso.sharepoint.com/Shared Documents/Report.docx", "type": "file", "itemsCount": 0, - "sizeInBytes": "2594" + "sizeInBytes": "2594", + "createdDateTime": "2024-06-01T10:00:00Z", + "createdBy": { + "user": { + "id": "6ebb65c7-0b69-4f4a-8108-12f29da1a7b7" + } + }, + "lastModifiedDateTime": "2024-06-02T15:30:00Z", + "lastModifiedBy": { + "user": { + "id": "6ebb65c7-0b69-4f4a-8108-12f29da1a7b7" + } + } }, { "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,e3cca06d-b45d-4e98-bd16-c57a4563776f", - "name": "objectdelete-browsesessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-browsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2411" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,cd692efa-0297-4a98-a39b-ec568a118f35", - "name": "objectdelete-sharepointrestoresessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-sharepointrestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2605" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,24c84b57-692b-40b3-b0b0-9cb8613b4398", - "name": "objectdelete-restoresessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-restoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2422" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,b74f9233-27a7-4d49-a723-c9a4ab717d2d", - "name": "objectdelete-exchangerestoresessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-exchangerestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2484" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,4f20a6c4-c999-4ee8-9552-ca6a7fc46edf", - "name": "objectdelete-sharepointbrowsesessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-sharepointbrowsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2493" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,92d28cdf-82b4-4964-b6fa-fd61240acf6c", - "name": "objectdelete-sharepointrestoresessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-sharepointrestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2504" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,cbd8e3c8-d0da-40a8-8eb8-51699268d6cf", - "name": "objectenable.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectenable.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2853" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,45cccd01-511c-4705-97b6-8884d2397e3c", - "name": "objectget.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectget.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2966" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,ef0ebe75-df09-43d0-91b6-705f03e0b006", - "name": "objectlist-browsesessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectlist-browsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "3254" + "name": "Reports", + "webUrl": "https://contoso.sharepoint.com/Shared Documents/Reports", + "type": "folder", + "itemsCount": 12, + "sizeInBytes": "45820", + "createdDateTime": "2024-05-20T08:15:00Z", + "createdBy": { + "user": { + "id": "6ebb65c7-0b69-4f4a-8108-12f29da1a7b7" + } + }, + "lastModifiedDateTime": "2024-06-02T11:45:00Z", + "lastModifiedBy": { + "user": { + "id": "6ebb65c7-0b69-4f4a-8108-12f29da1a7b7" + } + } } ] } @@ -292,83 +252,43 @@ Content-Type: application/json "value": [ { "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,b74f9233-27a7-4d49-a723-c9a4ab717d2d", - "name": "objectdelete-exchangerestoresessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-exchangerestoresessions.md", + "name": "Report.docx", + "webUrl": "https://contoso.sharepoint.com/Shared Documents/Report.docx", "type": "file", "itemsCount": 0, - "sizeInBytes": "2484" + "sizeInBytes": "2484", + "createdDateTime": "2024-06-01T10:00:00Z", + "createdBy": { + "application": { + "id": "5110d9f2-bfb1-4dec-9712-0ab11af28e1c" + } + }, + "lastModifiedDateTime": "2024-06-02T15:30:00Z", + "lastModifiedBy": { + "application": { + "id": "5110d9f2-bfb1-4dec-9712-0ab11af28e1c" + } + } }, { "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,4f20a6c4-c999-4ee8-9552-ca6a7fc46edf", - "name": "objectdelete-sharepointbrowsesessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-sharepointbrowsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2493" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,92d28cdf-82b4-4964-b6fa-fd61240acf6c", - "name": "objectdelete-sharepointrestoresessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-sharepointrestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2504" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,cbd8e3c8-d0da-40a8-8eb8-51699268d6cf", - "name": "objectenable.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectenable.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2853" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,e3cca06d-b45d-4e98-bd16-c57a4563776f", - "name": "objectdelete-browsesessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-browsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2411" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,cd692efa-0297-4a98-a39b-ec568a118f35", - "name": "objectdelete-sharepointrestoresessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-sharepointrestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2605" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,24c84b57-692b-40b3-b0b0-9cb8613b4398", - "name": "objectdelete-restoresessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-restoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2422" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,b74f9233-27a7-4d49-a723-c9a4ab717d2d", - "name": "objectdelete-exchangerestoresessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-exchangerestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2484" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,4f20a6c4-c999-4ee8-9552-ca6a7fc46edf", - "name": "objectdelete-sharepointbrowsesessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-sharepointbrowsesessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2493" - }, - { - "itemKey": "bb281f72-f7cc-4379-b295-0c61253127af,77042fcb-74e3-46aa-8a53-05f9739ebdf4,07a7125a-15e3-402d-beb9-ee6540f7f5bc,92d28cdf-82b4-4964-b6fa-fd61240acf6c", - "name": "objectdelete-sharepointrestoresessions.md", - "webUrl": "https://contoso.sharepoint.com/Shared Documents/api/objectdelete-sharepointrestoresessions.md", - "type": "file", - "itemsCount": 0, - "sizeInBytes": "2504" + "name": "Reports", + "webUrl": "https://contoso.sharepoint.com/Shared Documents/Reports", + "type": "folder", + "itemsCount": 12, + "sizeInBytes": "45820", + "createdDateTime": "2024-05-20T08:15:00Z", + "createdBy": { + "application": { + "id": "5110d9f2-bfb1-4dec-9712-0ab11af28e1c" + } + }, + "lastModifiedDateTime": "2024-06-02T11:45:00Z", + "lastModifiedBy": { + "application": { + "id": "5110d9f2-bfb1-4dec-9712-0ab11af28e1c" + } + } } ] } diff --git a/api-reference/beta/resources/browsequeryresponseitem.md b/api-reference/beta/resources/browsequeryresponseitem.md index 8e0ab1e0cd4..eee2b4305bb 100644 --- a/api-reference/beta/resources/browsequeryresponseitem.md +++ b/api-reference/beta/resources/browsequeryresponseitem.md @@ -20,8 +20,12 @@ Represents the response of the [sharepointBrowseSession](../api/sharepointbrowse ## Properties |Property|Type|Description| |:---|:---|:---| +|createdBy|[identitySet](../resources/identityset.md)|The identity of the user or application that created the item. Returned only when **type** is `file` or `folder`.| +|createdDateTime|DateTimeOffset|The date and time when the item was created. Returned only when **type** is `file` or `folder`. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. | |itemKey|String|Unique identifier of the returned item.| |itemsCount|Int32|The count of items present within the items; for example, the count of files in a folder.| +|lastModifiedBy|[identitySet](../resources/identityset.md)|The identity of the user or application that last modified the item. Returned only when **type** is `file` or `folder`.| +|lastModifiedDateTime|DateTimeOffset|The date and time when the item was last modified. Returned only when **type** is `file` or `folder`. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. | |name|String|The name of the item.| |sizeInBytes|String|The size of the item in bytes.| |type|browseQueryResponseItemType|The type of the item. The possible values are: `none`, `site`, `documentLibrary`, `folder`, `file`, `unknownFutureValue`.| @@ -40,8 +44,12 @@ The following JSON representation shows the resource type. ``` json { "@odata.type": "#microsoft.graph.browseQueryResponseItem", + "createdBy": {"@odata.type": "microsoft.graph.identitySet"}, + "createdDateTime": "String (timestamp)", "itemKey": "String", "itemsCount": "Int32", + "lastModifiedBy": {"@odata.type": "microsoft.graph.identitySet"}, + "lastModifiedDateTime": "String (timestamp)", "name": "String", "sizeInBytes": "String", "type": "String", diff --git a/changelog/Microsoft.EnhancedRestore.json b/changelog/Microsoft.EnhancedRestore.json index 2be6cdf9a5c..eb8cd276859 100644 --- a/changelog/Microsoft.EnhancedRestore.json +++ b/changelog/Microsoft.EnhancedRestore.json @@ -103,6 +103,48 @@ "SubArea": "Microsoft 365 backup and storage" }, { + "ChangeList": [ + { + "Id": "f79be107-8d10-49d2-9c66-428931ea9f83", + "ApiChange": "Property", + "ChangedApiName": "createdBy", + "ChangeType": "Addition", + "Description": "Added the **createdBy** property to the [browseQueryResponseItem](https://learn.microsoft.com/graph/api/resources/browsequeryresponseitem?view=graph-rest-beta) resource.", + "Target": "browseQueryResponseItem" + }, + { + "Id": "4fca0f53-1ee7-4329-aeb1-d649052dce76", + "ApiChange": "Property", + "ChangedApiName": "createdDateTime", + "ChangeType": "Addition", + "Description": "Added the **createdDateTime** property to the [browseQueryResponseItem](https://learn.microsoft.com/graph/api/resources/browsequeryresponseitem?view=graph-rest-beta) resource.", + "Target": "browseQueryResponseItem" + }, + { + "Id": "8723e91e-7dd3-4eb8-826d-463b5f05e5f6", + "ApiChange": "Property", + "ChangedApiName": "lastModifiedBy", + "ChangeType": "Addition", + "Description": "Added the **lastModifiedBy** property to the [browseQueryResponseItem](https://learn.microsoft.com/graph/api/resources/browsequeryresponseitem?view=graph-rest-beta) resource.", + "Target": "browseQueryResponseItem" + }, + { + "Id": "82161748-c0cd-4355-9850-c2b79700fe63", + "ApiChange": "Property", + "ChangedApiName": "lastModifiedDateTime", + "ChangeType": "Addition", + "Description": "Added the **lastModifiedDateTime** property to the [browseQueryResponseItem](https://learn.microsoft.com/graph/api/resources/browsequeryresponseitem?view=graph-rest-beta) resource.", + "Target": "browseQueryResponseItem" + } + ], + "Id": "1bf42bab-5ae1-4fcb-802f-9fdf1b494f74", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-19T08:06:52.0464983Z", + "WorkloadArea": "Backup and recovery", + "SubArea": "Microsoft 365 backup and storage" + }, + { "ChangeList": [ { "Id": "d3dee94f-3c8b-475f-9aaf-b1a94b873b46", diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 0ed5a8f1abd..5546f7e4ba3 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -123,6 +123,7 @@ Added support for user-centric (catalog-scope) access reviews through the **unif ### Backup and recovery | Microsoft 365 Backup and Storage +Added the **createdBy**, **createdDateTime**, **lastModifiedBy**, and **lastModifiedDateTime** properties to the [browseQueryResponseItem](/graph/api/resources/browsequeryresponseitem?view=graph-rest-beta&preserve-view=true) resource. Use these properties to get the identity and timestamp details for when a browse item was created and last modified. - Added the **optimizedBrowse** parameter to the [sharePointBrowseSession: browse](/graph/api/sharepointbrowsesession-browse?view=graph-rest-beta&preserve-view=true) method of the [sharePointBrowseSession](/graph/api/resources/sharepointbrowsesession?view=graph-rest-beta&preserve-view=true) resource. Set this parameter to `true` to retrieve files and folders in a single request when the backup artifact has a single site and a single document library. - Added the **optimizedBrowse** parameter to the [oneDriveForBusinessBrowseSession: browse](/graph/api/onedriveforbusinessbrowsesession-browse?view=graph-rest-beta&preserve-view=true) method of the [oneDriveForBusinessBrowseSession](/graph/api/resources/onedriveforbusinessbrowsesession?view=graph-rest-beta&preserve-view=true) resource. Set this parameter to `true` to retrieve files and folders in a single request when the backup artifact has a single site and a single document library. From f80d729b2cc36487c1f382cf2318d754bd864b54 Mon Sep 17 00:00:00 2001 From: bkeerthivasa <86682379+bkeerthivasa@users.noreply.github.com> Date: Wed, 19 Aug 2026 17:28:44 -0700 Subject: [PATCH 071/189] Document getAllRecordings content URL change (#29408) * Document getAllRecordings content URL change Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add getAllRecordings What's New entry Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd * Add What's New entries for recordings URL change Co-authored-by: bkeerthivasa <86682379+bkeerthivasa@users.noreply.github.com> * Address recording URL review feedback Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd * Format recording URL What's New entry Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd * Remove recording URL changelog entry Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd --------- Co-authored-by: bkeerthivasa Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd --- concepts/whats-new-overview.md | 1 + 1 file changed, 1 insertion(+) diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 5546f7e4ba3..f112f6e5edc 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -36,6 +36,7 @@ Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources ### Teamwork and communications | Calls and online meetings - Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) and [getAllTranscripts](/graph/api/onlinemeeting-getalltranscripts) methods to document a service-update issue that can cause paginated requests to return an empty collection followed by duplicate items. +- Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) method to return a Microsoft Graph URL that you can use to download recording content. ## August 2026: New in preview only From cfe238b1c505c921211caf543fd876d033ba8706 Mon Sep 17 00:00:00 2001 From: v-kumapanka-microsoft Date: Wed, 19 Aug 2026 17:35:39 -0700 Subject: [PATCH 072/189] Add externalOriginResourceConnector (SAP IAG) v1.0 documentation (#29325) * Add externalOriginResourceConnector (SAP IAG) v1.0 documentation Documents the externalOriginResourceConnector resource and its List, Create, Get, Update, and Delete methods, plus the externalTokenBasedSapIagConnectionInfo resource, for Microsoft Graph v1.0. v1.0 supports the sapIag connectorType only. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 * Fix API Doctor and OpenPublishing build errors - Add missing connectorType enum (sapIag, unknownFutureValue) to v1.0 enums.md so the externalOriginResourceConnector.connectorType type reference resolves. - Remove SDK language-tab snippet includes from the 5 new API docs; the snippet files are generated post-merge by the SDK snippet pipeline, so referencing them at PR time caused invalid-include-link build errors. Kept the plain HTTP request examples, matching the freshly-authored v1.0 API doc convention. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 * Address Copilot review comments on v1.0 connector docs - changelog: share parent record Id across ChangeList items (repo convention) - toc: add External origin resource connector group to identity-and-access TOC - Normalize example naming SAPIAG -> SAP IAG across API examples - get: add missing article (an externalOriginResourceConnector object) in front matter and body - resource: scope description to SAP IAG only (v1.0 supports sapIag) - connectioninfo: fix double space and sentence fragment; bold connectorType - enums: align connectorType values table to standard header format Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 * Add 7-decimal precision to changelog CreatedDateTime Addresses review feedback on PR #29325 (CelesteDG). Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 * Refine request-body qualifiers: drop from update, mark create fields Required - Remove Required/Optional qualifiers from the PATCH (update) request body table, per the prevailing v1.0 convention (majority of update docs omit them). - Mark all create (POST) request body properties as Required. Addresses review feedback on PR #29325 (CelesteDG). Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 * Register externalOriginResourceConnector in TOC mapping Add externalOriginResourceConnector and externalTokenBasedSapIagConnectionInfo to the Entitlement management node in v1.0 toc.mapping.json, matching the convention used by recent EM resource promotions (e.g. PR #29195). Addresses review feedback on PR #29325 (CelesteDG). Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 * Add What's New entry for externalOriginResourceConnector v1.0 promotion Add a July 2026 'Identity and access | Governance' What's New entry for the external origin resource connector (SAP IAG) GA promotion, matching the convention used by recent v1.0 promotions (e.g. PR #29195). Bump ms.date. Addresses review feedback on PR #29325 (CelesteDG). Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 * Note consuming resources in externalOriginResourceConnector Relationships Add a brief note that the connector has no outbound relationships but is referenced from entitlementManagement and accessPackageResource. Addresses review feedback on PR #29325 (CelesteDG). Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * fixes * fix * fixea --------- Co-authored-by: v-kumapanka Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 --- ...t-list-externaloriginresourceconnectors.md | 106 +++++++++++++++ ...t-post-externaloriginresourceconnectors.md | 127 ++++++++++++++++++ .../externaloriginresourceconnector-delete.md | 73 ++++++++++ .../externaloriginresourceconnector-get.md | 101 ++++++++++++++ .../externaloriginresourceconnector-update.md | 125 +++++++++++++++++ ...naloriginresourceconnectors-permissions.md | 11 ++ ...naloriginresourceconnectors-permissions.md | 11 ++ ...ginresourceconnector-delete-permissions.md | 11 ++ ...originresourceconnector-get-permissions.md | 11 ++ ...ginresourceconnector-update-permissions.md | 11 ++ .../v1.0/resources/accesspackageresource.md | 1 + .../v1.0/resources/connectioninfo.md | 8 +- .../v1.0/resources/entitlementmanagement.md | 1 + api-reference/v1.0/resources/enums.md | 7 + .../externaloriginresourceconnector.md | 72 ++++++++++ .../externaltokenbasedsapiagconnectioninfo.md | 53 ++++++++ .../v1.0/toc/identity-and-access/toc.yml | 14 ++ api-reference/v1.0/toc/toc.mapping.json | 6 +- changelog/Microsoft.IGAELM.json | 50 +++++++ concepts/whats-new-overview.md | 4 + 20 files changed, 801 insertions(+), 2 deletions(-) create mode 100644 api-reference/v1.0/api/entitlementmanagement-list-externaloriginresourceconnectors.md create mode 100644 api-reference/v1.0/api/entitlementmanagement-post-externaloriginresourceconnectors.md create mode 100644 api-reference/v1.0/api/externaloriginresourceconnector-delete.md create mode 100644 api-reference/v1.0/api/externaloriginresourceconnector-get.md create mode 100644 api-reference/v1.0/api/externaloriginresourceconnector-update.md create mode 100644 api-reference/v1.0/includes/permissions/entitlementmanagement-list-externaloriginresourceconnectors-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/entitlementmanagement-post-externaloriginresourceconnectors-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/externaloriginresourceconnector-delete-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/externaloriginresourceconnector-get-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/externaloriginresourceconnector-update-permissions.md create mode 100644 api-reference/v1.0/resources/externaloriginresourceconnector.md create mode 100644 api-reference/v1.0/resources/externaltokenbasedsapiagconnectioninfo.md diff --git a/api-reference/v1.0/api/entitlementmanagement-list-externaloriginresourceconnectors.md b/api-reference/v1.0/api/entitlementmanagement-list-externaloriginresourceconnectors.md new file mode 100644 index 00000000000..fe1a4ce9e22 --- /dev/null +++ b/api-reference/v1.0/api/entitlementmanagement-list-externaloriginresourceconnectors.md @@ -0,0 +1,106 @@ +--- +title: "List externalOriginResourceConnectors" +description: "Get a list of externalOriginResourceConnector objects and their properties." +author: "vikama-microsoft" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +--- + +# List externalOriginResourceConnectors + +Namespace: microsoft.graph + +Get a list of [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) objects and their properties. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entitlementmanagement-list-externaloriginresourceconnectors-permissions.md)] + +## HTTP request + + +``` http +GET /identityGovernance/entitlementManagement/externalOriginResourceConnectors +``` + +## Optional query parameters + +This method supports some of the OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/identityGovernance/entitlementManagement/externalOriginResourceConnectors +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.externalOriginResourceConnector", + "id": "e363ebb8-6faa-4980-ac5b-eefc196e1cd4", + "displayName": "SAP IAG Connector", + "description": "SAP IAG Connector description", + "connectorType": "sapIag", + "connectionInfo": { + "@odata.type": "microsoft.graph.externalTokenBasedSapIagConnectionInfo", + "url": "https://contoso.example.com", + "accessTokenUrl": "https://contoso.example.com/oauth/token", + "clientId": "e9ad8b1d-959c-4e86-8ba2-2cbf4d14bc29", + "keyVaultName": "Keyvault", + "secretName": "clientSecret", + "subscriptionId": "5ee98b73-d9df-43a7-8a92-36855054bdee", + "resourceGroup": "SAP IAG Group" + }, + "createdBy": "admin@contoso.com", + "createdDateTime": "2026-02-23T10:15:30Z", + "modifiedBy": null, + "modifiedDateTime": null + } + ] +} +``` diff --git a/api-reference/v1.0/api/entitlementmanagement-post-externaloriginresourceconnectors.md b/api-reference/v1.0/api/entitlementmanagement-post-externaloriginresourceconnectors.md new file mode 100644 index 00000000000..26f868ec55a --- /dev/null +++ b/api-reference/v1.0/api/entitlementmanagement-post-externaloriginresourceconnectors.md @@ -0,0 +1,127 @@ +--- +title: "Create externalOriginResourceConnector" +description: "Create a new externalOriginResourceConnector object." +author: "vikama-microsoft" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +--- + +# Create externalOriginResourceConnector + +Namespace: microsoft.graph + +Creates a new [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/entitlementmanagement-post-externaloriginresourceconnectors-permissions.md)] + +## HTTP request + + +``` http +POST /identityGovernance/entitlementManagement/externalOriginResourceConnectors +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object. + +You can specify the following properties when creating an **externalOriginResourceConnector**. + +|Property|Type|Description| +|:---|:---|:---| +|connectionInfo|[connectionInfo](../resources/connectioninfo.md)|The connection information for the external origin resource connector. Required.| +|connectorType|connectorType|The type of connector. The possible values are: `sapIag`, `unknownFutureValue`. Required.| +|description|String|The description of the external origin resource connector. Required.| +|displayName|String|The display name of the external origin resource connector. Required.| + + + +## Response + +If successful, this method returns a `201 Created` response code and an [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/identityGovernance/entitlementManagement/externalOriginResourceConnectors +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.externalOriginResourceConnector", + "displayName": "SAP IAG Connector", + "description": "This connector helps integrate Microsoft Entra with SAP IAG", + "connectorType": "sapIag", + "connectionInfo": { + "@odata.type": "microsoft.graph.externalTokenBasedSapIagConnectionInfo", + "url": "https://contoso.example.com", + "accessTokenUrl": "https://contoso.example.com/oauth/token", + "clientId": "e9ad8b1d-959c-4e86-8ba2-2cbf4d14bc29", + "keyVaultName": "Keyvault", + "secretName": "clientSecret", + "subscriptionId": "5ee98b73-d9df-43a7-8a92-36855054bdee", + "resourceGroup": "SAP IAG Group" + } +} +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.externalOriginResourceConnector", + "id": "ea32a820-9c92-428d-ba21-a33b0c00cfb2", + "displayName": "SAP IAG Connector", + "description": "This connector helps integrate Microsoft Entra with SAP IAG", + "connectorType": "sapIag", + "connectionInfo": { + "@odata.type": "microsoft.graph.externalTokenBasedSapIagConnectionInfo", + "url": "https://contoso.example.com", + "accessTokenUrl": "https://contoso.example.com/oauth/token", + "clientId": "e9ad8b1d-959c-4e86-8ba2-2cbf4d14bc29", + "keyVaultName": "Keyvault", + "secretName": "clientSecret", + "subscriptionId": "5ee98b73-d9df-43a7-8a92-36855054bdee", + "resourceGroup": "SAP IAG Group" + }, + "createdBy": "admin@contoso.com", + "createdDateTime": "2026-02-23T10:15:30Z", + "modifiedBy": null, + "modifiedDateTime": null +} +``` diff --git a/api-reference/v1.0/api/externaloriginresourceconnector-delete.md b/api-reference/v1.0/api/externaloriginresourceconnector-delete.md new file mode 100644 index 00000000000..f46b1da8339 --- /dev/null +++ b/api-reference/v1.0/api/externaloriginresourceconnector-delete.md @@ -0,0 +1,73 @@ +--- +title: "Delete externalOriginResourceConnector" +description: "Delete an externalOriginResourceConnector object." +author: "vikama-microsoft" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +--- + +# Delete externalOriginResourceConnector + +Namespace: microsoft.graph + +Delete an [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/externaloriginresourceconnector-delete-permissions.md)] + +## HTTP request + + +``` http +DELETE /identityGovernance/entitlementManagement/externalOriginResourceConnectors/{externalOriginResourceConnectorId} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `204 No Content` response code. + +## Examples + +### Request + +The following example shows a request. + +``` http +DELETE https://graph.microsoft.com/v1.0/identityGovernance/entitlementManagement/externalOriginResourceConnectors/e363ebb8-6faa-4980-ac5b-eefc196e1cd4 +``` + +### Response + +The following example shows the response. + + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/api/externaloriginresourceconnector-get.md b/api-reference/v1.0/api/externaloriginresourceconnector-get.md new file mode 100644 index 00000000000..723ca2ad3e0 --- /dev/null +++ b/api-reference/v1.0/api/externaloriginresourceconnector-get.md @@ -0,0 +1,101 @@ +--- +title: "Get externalOriginResourceConnector" +description: "Read the properties and relationships of an externalOriginResourceConnector object." +author: "vikama-microsoft" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +--- + +# Get externalOriginResourceConnector + +Namespace: microsoft.graph + +Read the properties and relationships of an [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/externaloriginresourceconnector-get-permissions.md)] + +## HTTP request + + +``` http +GET /identityGovernance/entitlementManagement/externalOriginResourceConnectors/{externalOriginResourceConnectorId} +``` + +## Optional query parameters + +This method supports the `$select` OData query parameter to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and an [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/identityGovernance/entitlementManagement/externalOriginResourceConnectors/e363ebb8-6faa-4980-ac5b-eefc196e1cd4 +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.externalOriginResourceConnector", + "id": "e363ebb8-6faa-4980-ac5b-eefc196e1cd4", + "displayName": "SAP IAG Connector", + "description": "SAP IAG Connector description", + "connectorType": "sapIag", + "connectionInfo": { + "@odata.type": "microsoft.graph.externalTokenBasedSapIagConnectionInfo", + "url": "https://contoso.example.com", + "accessTokenUrl": "https://contoso.example.com/oauth/token", + "clientId": "e9ad8b1d-959c-4e86-8ba2-2cbf4d14bc29", + "keyVaultName": "Keyvault", + "secretName": "clientSecret", + "subscriptionId": "5ee98b73-d9df-43a7-8a92-36855054bdee", + "resourceGroup": "SAP IAG Group" + }, + "createdBy": "admin@contoso.com", + "createdDateTime": "2026-02-23T10:15:30Z", + "modifiedBy": null, + "modifiedDateTime": null +} +``` diff --git a/api-reference/v1.0/api/externaloriginresourceconnector-update.md b/api-reference/v1.0/api/externaloriginresourceconnector-update.md new file mode 100644 index 00000000000..78932041430 --- /dev/null +++ b/api-reference/v1.0/api/externaloriginresourceconnector-update.md @@ -0,0 +1,125 @@ +--- +title: "Update externalOriginResourceConnector" +description: "Update the properties of an externalOriginResourceConnector object." +author: "vikama-microsoft" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +--- + +# Update externalOriginResourceConnector + +Namespace: microsoft.graph + +Update the properties of an [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/externaloriginresourceconnector-update-permissions.md)] + +## HTTP request + + +``` http +PATCH /identityGovernance/entitlementManagement/externalOriginResourceConnectors/{externalOriginResourceConnectorId} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +[!INCLUDE [table-intro](../../includes/update-property-table-intro.md)] + + +|Property|Type|Description| +|:---|:---|:---| +|connectionInfo|[connectionInfo](../resources/connectioninfo.md)|The connection information used to communicate with the external resource system.| +|connectorType|connectorType|The type of connector. The possible values are: `sapIag`, `unknownFutureValue`.| +|description|String|A description of the connector.| +|displayName|String|The display name of the connector.| + + + +## Response + +If successful, this method returns a `200 OK` response code and an updated [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +PATCH https://graph.microsoft.com/v1.0/identityGovernance/entitlementManagement/externalOriginResourceConnectors/e363ebb8-6faa-4980-ac5b-eefc196e1cd4 +Content-Type: application/json + +{ + "connectorType": "sapIag", + "displayName": "SAP IAG Connector 2.0", + "description": "SAP IAG Connector 2.0 description", + "connectionInfo": { + "@odata.type": "microsoft.graph.externalTokenBasedSapIagConnectionInfo", + "url": "https://contoso.example.com", + "keyVaultName": "Keyvault", + "subscriptionId": "5ee98b73-d9df-43a7-8a92-36855054bdee", + "resourceGroup": "SAP IAG Group", + "accessTokenUrl": "https://contoso.example.com/oauth/token", + "clientId": "e9ad8b1d-959c-4e86-8ba2-2cbf4d14bc29", + "secretName": "clientSecret" + } +} +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.externalOriginResourceConnector", + "id": "e363ebb8-6faa-4980-ac5b-eefc196e1cd4", + "displayName": "SAP IAG Connector 2.0", + "description": "SAP IAG Connector 2.0 description", + "connectorType": "sapIag", + "connectionInfo": { + "@odata.type": "microsoft.graph.externalTokenBasedSapIagConnectionInfo", + "url": "https://contoso.example.com", + "accessTokenUrl": "https://contoso.example.com/oauth/token", + "clientId": "e9ad8b1d-959c-4e86-8ba2-2cbf4d14bc29", + "keyVaultName": "Keyvault", + "secretName": "clientSecret", + "subscriptionId": "5ee98b73-d9df-43a7-8a92-36855054bdee", + "resourceGroup": "SAP IAG Group" + }, + "createdBy": "admin@contoso.com", + "createdDateTime": "2026-02-23T10:15:30Z", + "modifiedBy": "admin@contoso.com", + "modifiedDateTime": "2026-02-24T11:20:10Z" +} +``` diff --git a/api-reference/v1.0/includes/permissions/entitlementmanagement-list-externaloriginresourceconnectors-permissions.md b/api-reference/v1.0/includes/permissions/entitlementmanagement-list-externaloriginresourceconnectors-permissions.md new file mode 100644 index 00000000000..dcc22a68490 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entitlementmanagement-list-externaloriginresourceconnectors-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|EntitlementManagement.Read.All|EntitlementManagement.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|EntitlementManagement.Read.All|EntitlementManagement.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/entitlementmanagement-post-externaloriginresourceconnectors-permissions.md b/api-reference/v1.0/includes/permissions/entitlementmanagement-post-externaloriginresourceconnectors-permissions.md new file mode 100644 index 00000000000..142aea0a481 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/entitlementmanagement-post-externaloriginresourceconnectors-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|EntitlementManagement.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|EntitlementManagement.ReadWrite.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/externaloriginresourceconnector-delete-permissions.md b/api-reference/v1.0/includes/permissions/externaloriginresourceconnector-delete-permissions.md new file mode 100644 index 00000000000..142aea0a481 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/externaloriginresourceconnector-delete-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|EntitlementManagement.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|EntitlementManagement.ReadWrite.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/externaloriginresourceconnector-get-permissions.md b/api-reference/v1.0/includes/permissions/externaloriginresourceconnector-get-permissions.md new file mode 100644 index 00000000000..dcc22a68490 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/externaloriginresourceconnector-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|EntitlementManagement.Read.All|EntitlementManagement.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|EntitlementManagement.Read.All|EntitlementManagement.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/externaloriginresourceconnector-update-permissions.md b/api-reference/v1.0/includes/permissions/externaloriginresourceconnector-update-permissions.md new file mode 100644 index 00000000000..142aea0a481 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/externaloriginresourceconnector-update-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|EntitlementManagement.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|EntitlementManagement.ReadWrite.All|Not available.| diff --git a/api-reference/v1.0/resources/accesspackageresource.md b/api-reference/v1.0/resources/accesspackageresource.md index c39b0837248..912bb5678ca 100644 --- a/api-reference/v1.0/resources/accesspackageresource.md +++ b/api-reference/v1.0/resources/accesspackageresource.md @@ -42,6 +42,7 @@ In [Microsoft Entra entitlement management](entitlementmanagement-overview.md), | Relationship | Type | Description | |:-------------|:------------|:------------| |environment|[accessPackageResourceEnvironment](../resources/accesspackageresourceenvironment.md)|Contains the environment information for the resource. This can be set using either the `@odata.bind` annotation or the environment's *originId*.Supports `$expand`.| +|externalOriginResourceConnector|[externalOriginResourceConnector](../resources/externaloriginresourceconnector.md)|The connector that integrates with external origin systems to provision access to resources from those systems. Read-only. Nullable.| |roles|[accessPackageResourceRole](accesspackageresourcerole.md) collection| Read-only. Nullable. Supports `$expand`.| |scopes|[accessPackageResourceScope](accesspackageresourcescope.md) collection| Read-only. Nullable. Supports `$expand`.| |uploadSessions|[customDataProvidedResourceUploadSession](../resources/customdataprovidedresourceuploadsession.md) collection|The upload sessions for uploading external access data to this resource through the Bring Your Own Data (BYOD) flow.| diff --git a/api-reference/v1.0/resources/connectioninfo.md b/api-reference/v1.0/resources/connectioninfo.md index b527c624b8d..e188e703192 100644 --- a/api-reference/v1.0/resources/connectioninfo.md +++ b/api-reference/v1.0/resources/connectioninfo.md @@ -14,7 +14,13 @@ Namespace: microsoft.graph The connectionInfo object defines the resource locator that is used to communicate with a resource in Microsoft Entra Entitlement Management. -In entitlement management, this object is configured in the **connectionInfo** property of [accessPackageResourceEnvironment](../resources/accesspackageresourceenvironment.md). +The following types are derived from connectionInfo: + +- [externalTokenBasedSapIagConnectionInfo](../resources/externaltokenbasedsapiagconnectioninfo.md) + +In entitlement management, this object is configured in the following properties and relationships: +- **connectionInfo** property of [accessPackageResourceEnvironment](../resources/accesspackageresourceenvironment.md) +- **connectionInfo** property of [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) ## Properties |Property|Type|Description| diff --git a/api-reference/v1.0/resources/entitlementmanagement.md b/api-reference/v1.0/resources/entitlementmanagement.md index 627c6e28c35..14b6be677b0 100644 --- a/api-reference/v1.0/resources/entitlementmanagement.md +++ b/api-reference/v1.0/resources/entitlementmanagement.md @@ -38,6 +38,7 @@ None. |catalogs|[accessPackageCatalog](../resources/accesspackagecatalog.md) collection|A container for access packages.| |connectedOrganizations|[connectedOrganization](../resources/connectedorganization.md) collection|References to a directory or domain of another organization whose users can request access.| |controlConfigurations|[controlConfiguration](../resources/controlconfiguration.md) collection|Configuration settings that control the lifecycle and access policies of entitlement management within a tenant.| +|externalOriginResourceConnectors|[externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) collection|Represents the connectors used to communicate with external resource systems.| |resourceEnvironments|[accessPackageResourceEnvironment](../resources/accesspackageresourceenvironment.md) collection| A reference to the geolocation environments in which a resource is located.| |resourceRequests|[accessPackageResourceRequest](../resources/accesspackageresourcerequest.md) collection|Represents a request to add or remove a resource to or from a catalog respectively. | |resources|[accessPackageResource](../resources/accesspackageresource.md) collection|The resources associated with the catalogs. | diff --git a/api-reference/v1.0/resources/enums.md b/api-reference/v1.0/resources/enums.md index 3f20cebb915..6bca6ce1bde 100644 --- a/api-reference/v1.0/resources/enums.md +++ b/api-reference/v1.0/resources/enums.md @@ -903,6 +903,13 @@ Namespace: microsoft.graph | configured | | proposed | +### connectorType values + +| Member | +| ------------------ | +| sapIag | +| unknownFutureValue | + ### accessReviewInstanceDecisionItemFilterByCurrentUserOptions values | Member | diff --git a/api-reference/v1.0/resources/externaloriginresourceconnector.md b/api-reference/v1.0/resources/externaloriginresourceconnector.md new file mode 100644 index 00000000000..7b78ac979ed --- /dev/null +++ b/api-reference/v1.0/resources/externaloriginresourceconnector.md @@ -0,0 +1,72 @@ +--- +title: "externalOriginResourceConnector resource type" +description: "Represents a connector used to communicate with external resource systems." +author: "vikama-microsoft" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# externalOriginResourceConnector resource type + +Namespace: microsoft.graph + +Represents a connector used to communicate with an external resource system in Microsoft Entra ID Governance. The connector integrates with SAP Identity Access Governance (SAP IAG) to enable access management and governance for resources that originate in that system. + + +Inherits from [entity](../resources/entity.md). + + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[List](../api/entitlementmanagement-list-externaloriginresourceconnectors.md)|[externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) collection|Get a list of the [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) objects and their properties.| +|[Create](../api/entitlementmanagement-post-externaloriginresourceconnectors.md)|[externalOriginResourceConnector](../resources/externaloriginresourceconnector.md)|Create a new [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object.| +|[Get](../api/externaloriginresourceconnector-get.md)|[externalOriginResourceConnector](../resources/externaloriginresourceconnector.md)|Read the properties and relationships of an [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object.| +|[Update](../api/externaloriginresourceconnector-update.md)|[externalOriginResourceConnector](../resources/externaloriginresourceconnector.md)|Update the properties of an [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object.| +|[Delete](../api/externaloriginresourceconnector-delete.md)|None|Delete an [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object.| + + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|connectionInfo|[connectionInfo](../resources/connectioninfo.md)|The connection information used to communicate with the external resource system. When **connectorType** is `sapIag`, the type is [externalTokenBasedSapIagConnectionInfo](../resources/externaltokenbasedsapiagconnectioninfo.md).| +|connectorType|connectorType|The type of connector to SAP being used. The possible values are: `sapIag` (SAP Cloud Identity Access Governance), `unknownFutureValue`. | +|createdBy|String|The identifier of the user or application that created the connector.| +|createdDateTime|DateTimeOffset|The date and time when the connector was created.| +|description|String|A description of the connector.| +|displayName|String|The display name of the connector.| +|id|String|The unique identifier of the connector. Inherited from [entity](../resources/entity.md).| +|modifiedBy|String|The identifier of the user or application that last modified the connector.| +|modifiedDateTime|DateTimeOffset|The date and time when the connector was last modified.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.externalOriginResourceConnector", + "id": "String (identifier)", + "displayName": "String", + "description": "String", + "connectorType": "String", + "connectionInfo": { + "@odata.type": "microsoft.graph.connectionInfo" + }, + "createdBy": "String", + "createdDateTime": "String (timestamp)", + "modifiedBy": "String", + "modifiedDateTime": "String (timestamp)" +} +``` diff --git a/api-reference/v1.0/resources/externaltokenbasedsapiagconnectioninfo.md b/api-reference/v1.0/resources/externaltokenbasedsapiagconnectioninfo.md new file mode 100644 index 00000000000..e6c8549169d --- /dev/null +++ b/api-reference/v1.0/resources/externaltokenbasedsapiagconnectioninfo.md @@ -0,0 +1,53 @@ +--- +title: "externalTokenBasedSapIagConnectionInfo resource type" +description: "Represents connection information for token-based authentication to SAP IAG (Identity and Access Governance) systems." +author: "vikama-microsoft" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# externalTokenBasedSapIagConnectionInfo resource type + +Namespace: microsoft.graph + +Represents connection information for token-based authentication to SAP Identity Access Governance (SAP IAG) systems. This resource contains the configuration details required to establish a secure connection between an Entitlement Management [accessPackageResource](../resources/accesspackageresource.md)'s **externalOriginResourceConnector** and SAP IAG, including token endpoint information and Azure Key Vault references for credential storage. This type is used when the **connectorType** of the [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) is `sapIag`. + + +Inherits from [connectionInfo](../resources/connectioninfo.md). + + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|accessTokenUrl|String|The URL endpoint used to obtain access tokens for authentication with the SAP IAG system.| +|clientId|String|The client identifier used for authentication with the SAP IAG system.| +|keyVaultName|String|The name of the Azure Key Vault that stores the client secret for authentication.| +|resourceGroup|String|The Azure resource group that contains the Key Vault.| +|secretName|String|The name of the secret in Azure Key Vault that contains the client secret.| +|subscriptionId|String|The Azure subscription ID that contains the Key Vault.| +|url|String|The endpoint that is used by Entitlement Management to communicate with the SAP IAG system. Inherited from [connectionInfo](../resources/connectioninfo.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.externalTokenBasedSapIagConnectionInfo", + "url": "String", + "accessTokenUrl": "String", + "clientId": "String", + "keyVaultName": "String", + "secretName": "String", + "subscriptionId": "String", + "resourceGroup": "String" +} +``` diff --git a/api-reference/v1.0/toc/identity-and-access/toc.yml b/api-reference/v1.0/toc/identity-and-access/toc.yml index 49a2798e5bf..a9d18e1cf46 100644 --- a/api-reference/v1.0/toc/identity-and-access/toc.yml +++ b/api-reference/v1.0/toc/identity-and-access/toc.yml @@ -880,6 +880,20 @@ items: href: ../../api/entitlementmanagementsettings-get.md - name: Update href: ../../api/entitlementmanagementsettings-update.md + - name: External origin resource connector + items: + - name: External origin resource connector + href: ../../resources/externaloriginresourceconnector.md + - name: List + href: ../../api/entitlementmanagement-list-externaloriginresourceconnectors.md + - name: Create + href: ../../api/entitlementmanagement-post-externaloriginresourceconnectors.md + - name: Get + href: ../../api/externaloriginresourceconnector-get.md + - name: Update + href: ../../api/externaloriginresourceconnector-update.md + - name: Delete + href: ../../api/externaloriginresourceconnector-delete.md - name: Lifecycle workflows displayName: LCW, Identity Governance, Joiner, Mover, Leaver items: diff --git a/api-reference/v1.0/toc/toc.mapping.json b/api-reference/v1.0/toc/toc.mapping.json index 228656b2148..6853d5c1329 100644 --- a/api-reference/v1.0/toc/toc.mapping.json +++ b/api-reference/v1.0/toc/toc.mapping.json @@ -925,7 +925,11 @@ "customDataProvidedResourceUploadSessionRequest", "customDataProvidedResourceUploadStats", "endUserSettings", - "entitlementManagementSettings" + "entitlementManagementSettings", + "externalOriginResourceConnector" + ], + "complexTypes": [ + "externalTokenBasedSapIagConnectionInfo" ] }, { diff --git a/changelog/Microsoft.IGAELM.json b/changelog/Microsoft.IGAELM.json index 494df81ec24..397fff96d1c 100644 --- a/changelog/Microsoft.IGAELM.json +++ b/changelog/Microsoft.IGAELM.json @@ -1,5 +1,55 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "2f43767d-4db4-4d5d-9f29-751f56d6cd04", + "ApiChange": "Resource", + "ChangedApiName": "externalOriginResourceConnector", + "ChangeType": "Addition", + "Description": "Added the [externalOriginResourceConnector](https://learn.microsoft.com/en-us/graph/api/resources/externaloriginresourceconnector?view=graph-rest-1.0) resource and its methods.", + "Target": "externalOriginResourceConnector" + }, + { + "Id": "2f43767d-4db4-4d5d-9f29-751f56d6cd04", + "ApiChange": "Resource", + "ChangedApiName": "externalTokenBasedSapIagConnectionInfo", + "ChangeType": "Addition", + "Description": "Added the [externalTokenBasedSapIagConnectionInfo](https://learn.microsoft.com/en-us/graph/api/resources/externaltokenbasedsapiagconnectioninfo?view=graph-rest-1.0) complex type.", + "Target": "externalTokenBasedSapIagConnectionInfo" + }, + { + "Id": "2f43767d-4db4-4d5d-9f29-751f56d6cd04", + "ApiChange": "Enumeration", + "ChangedApiName": "connectorType", + "ChangeType": "Addition", + "Description": "Added the **connectorType** enumeration type.", + "Target": "connectorType" + }, + { + "Id": "2f43767d-4db4-4d5d-9f29-751f56d6cd04", + "ApiChange": "Relationship", + "ChangedApiName": "externalOriginResourceConnector", + "ChangeType": "Addition", + "Description": "Added the **externalOriginResourceConnector** relationship to the [accessPackageResource](https://learn.microsoft.com/en-us/graph/api/resources/accesspackageresource?view=graph-rest-1.0) resource.", + "Target": "accessPackageResource" + }, + { + "Id": "2f43767d-4db4-4d5d-9f29-751f56d6cd04", + "ApiChange": "Relationship", + "ChangedApiName": "externalOriginResourceConnectors", + "ChangeType": "Addition", + "Description": "Added the **externalOriginResourceConnectors** relationship to the [entitlementManagement](https://learn.microsoft.com/en-us/graph/api/resources/entitlementmanagement?view=graph-rest-1.0) resource.", + "Target": "entitlementManagement" + } + ], + "Id": "2f43767d-4db4-4d5d-9f29-751f56d6cd04", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-19T00:00:00.0000000Z", + "WorkloadArea": "Identity and access", + "SubArea": "Governance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index f112f6e5edc..c802449d7a8 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -29,6 +29,10 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what Added the [recovery](/graph/api/resources/entrarecoveryservices-recovery) resource type and related methods to programmatically recover critical Microsoft Entra directory objects from automatically created point-in-time snapshots. Use these APIs to inspect available snapshots, preview and scope changes before restoration, run recovery jobs, monitor progress, and review failed changes. +### Identity and access | Governance + +Added the [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) resource type and methods to [create](/graph/api/entitlementmanagement-post-externaloriginresourceconnectors), [list](/graph/api/entitlementmanagement-list-externaloriginresourceconnectors), [get](/graph/api/externaloriginresourceconnector-get), [update](/graph/api/externaloriginresourceconnector-update), and [delete](/graph/api/externaloriginresourceconnector-delete) connections from Microsoft Entra entitlement management to SAP Identity Access Governance (SAP IAG). For an SAP IAG connector, specify the SAP IAG endpoint, OAuth token endpoint, and client ID, along with the Azure subscription, resource group, key vault, and secret that identify where its client secret is stored. The connector is associated with an access package resource so that entitlement management can provision access to resources in SAP IAG through access packages. + ### Mailbox import and export Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources/mailboxfolder) resource type in v1.0. Use this property to identify folders created by Outlook by using a locale-independent name. From f1257738cfc79fa06a0b669ddc1b36162ff2089b Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Thu, 20 Aug 2026 09:56:09 -0600 Subject: [PATCH 073/189] Update reference TOC (#29470) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/v1.0/toc/identity-and-access/toc.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/api-reference/v1.0/toc/identity-and-access/toc.yml b/api-reference/v1.0/toc/identity-and-access/toc.yml index a9d18e1cf46..c581df9a373 100644 --- a/api-reference/v1.0/toc/identity-and-access/toc.yml +++ b/api-reference/v1.0/toc/identity-and-access/toc.yml @@ -894,6 +894,10 @@ items: href: ../../api/externaloriginresourceconnector-update.md - name: Delete href: ../../api/externaloriginresourceconnector-delete.md + - name: Complex types + items: + - name: External token based sap iag connection info + href: ../../resources/externaltokenbasedsapiagconnectioninfo.md - name: Lifecycle workflows displayName: LCW, Identity Governance, Joiner, Mover, Leaver items: From 92d607ec5b5642223245b19caf65b3d2ecce82fa Mon Sep 17 00:00:00 2001 From: bkeerthivasa <86682379+bkeerthivasa@users.noreply.github.com> Date: Thu, 20 Aug 2026 08:56:34 -0700 Subject: [PATCH 074/189] Document transcript API admin control (#29462) * Document transcript API admin control Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update api-reference/beta/api/onlinemeeting-getalltranscripts.md Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: bkeerthivasa Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd --- api-reference/beta/api/onlinemeeting-getalltranscripts.md | 3 +++ api-reference/v1.0/api/onlinemeeting-getalltranscripts.md | 3 +++ 2 files changed, 6 insertions(+) diff --git a/api-reference/beta/api/onlinemeeting-getalltranscripts.md b/api-reference/beta/api/onlinemeeting-getalltranscripts.md index 49be3ff9a66..51451da0636 100644 --- a/api-reference/beta/api/onlinemeeting-getalltranscripts.md +++ b/api-reference/beta/api/onlinemeeting-getalltranscripts.md @@ -33,6 +33,9 @@ To learn more about using the Microsoft Teams export APIs to export content, see > > - [Using the `$top` query parameter might not return the **@odata.nextLink**](/graph/known-issues#apis-that-export-online-meeting-artifacts-might-not-return-nextlink-when-the-request-uses-the-top-query-parameter). +> [!NOTE] +> A tenant administrator must enable Microsoft Graph API access to meeting transcripts before apps can retrieve them. For more information, see [Manage transcript API access for Teams meetings](/microsoftteams/meeting-transcript-api-access). + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/onlinemeeting-getalltranscripts.md b/api-reference/v1.0/api/onlinemeeting-getalltranscripts.md index 860e94ed1f6..ee1eec1b640 100644 --- a/api-reference/v1.0/api/onlinemeeting-getalltranscripts.md +++ b/api-reference/v1.0/api/onlinemeeting-getalltranscripts.md @@ -27,6 +27,9 @@ To learn more about using the Microsoft Teams export APIs to export content, see > [!NOTE] > This API has a [known issue](/graph/known-issues#apis-that-export-online-meeting-artifacts-may-return-duplicate-items-during-service-update) related to pagination token resets during a planned service update. +> [!NOTE] +> A tenant administrator must enable Microsoft Graph API access to meeting transcripts before apps can retrieve them. For more information, see [Manage transcript API access for Teams meetings](/microsoftteams/meeting-transcript-api-access). + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). From 5793b2b1e838743300c38afe2c7f5d133d22dd4c Mon Sep 17 00:00:00 2001 From: lasharma6199068 <278895872+lasharma6199068@users.noreply.github.com> Date: Thu, 20 Aug 2026 23:25:20 +0530 Subject: [PATCH 075/189] M365XTAP: Promote docs to v1.0 (#29398) * init * addressed comments * added overview topic * Update reference TOC * addressed comments * updated created date * addressed comments * Update reference TOC * addressed comments * Update reference TOC * fix schema build failures * fixes * fixes * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Lavanya Sharma Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../rbac-xtap-m365capabilities-apis-read.md | 6 +- .../rbac-xtap-m365capabilities-apis-write.md | 6 +- .../crosstenantcalendaravailabilitybasic.md | 8 +- ...enantcalendaravailabilitylimiteddetails.md | 8 +- ...rosstenantcalendarsharingfreebusydetail.md | 8 +- ...sstenantcalendarsharingfreebusyreviewer.md | 8 +- ...rosstenantcalendarsharingfreebusysimple.md | 8 +- .../beta/resources/crosstenantmailtipsall.md | 8 +- .../resources/crosstenantmailtipslimited.md | 8 +- .../beta/resources/crosstenantmigration.md | 8 +- .../resources/crosstenantopenprofilecard.md | 8 +- .../resources/crosstenantplacesdeskbooking.md | 8 +- .../resources/crosstenantplacesroombooking.md | 8 +- .../beta/resources/m365capabilitybase.md | 6 +- .../resources/m365capabilityinboundaccess.md | 8 +- .../resources/m365capabilityresourcescope.md | 8 +- .../resources/m365capabilityresourcescopes.md | 12 +- ...figurationdefault-list-m365capabilities.md | 116 +++++++ ...figurationdefault-post-m365capabilities.md | 197 +++++++++++ ...gurationdefault-update-m365capabilities.md | 148 +++++++++ ...gurationpartner-delete-m365capabilities.md | 76 +++++ ...figurationpartner-list-m365capabilities.md | 122 +++++++ ...figurationpartner-post-m365capabilities.md | 189 +++++++++++ ...gurationpartner-update-m365capabilities.md | 103 ++++++ ...fault-list-m365capabilities-permissions.md | 11 + ...fault-post-m365capabilities-permissions.md | 11 + ...ult-update-m365capabilities-permissions.md | 11 + ...ner-delete-m365capabilities-permissions.md | 11 + ...rtner-list-m365capabilities-permissions.md | 11 + ...rtner-post-m365capabilities-permissions.md | 11 + ...ner-update-m365capabilities-permissions.md | 11 + .../rbac-xtap-m365capabilities-apis-read.md | 9 + .../rbac-xtap-m365capabilities-apis-write.md | 9 + ...stenantaccesspolicyconfigurationdefault.md | 9 +- ...stenantaccesspolicyconfigurationpartner.md | 7 +- .../crosstenantcalendaravailabilitybasic.md | 49 +++ ...enantcalendaravailabilitylimiteddetails.md | 49 +++ ...rosstenantcalendarsharingfreebusydetail.md | 49 +++ ...sstenantcalendarsharingfreebusyreviewer.md | 49 +++ ...rosstenantcalendarsharingfreebusysimple.md | 49 +++ .../v1.0/resources/crosstenantmailtipsall.md | 49 +++ .../resources/crosstenantmailtipslimited.md | 49 +++ .../v1.0/resources/crosstenantmigration.md | 49 +++ .../resources/crosstenantopenprofilecard.md | 49 +++ .../resources/crosstenantplacesdeskbooking.md | 49 +++ .../resources/crosstenantplacesroombooking.md | 49 +++ ...365-cross-tenant-access-policy-overview.md | 76 +++++ .../v1.0/resources/m365capabilitybase.md | 62 ++++ .../resources/m365capabilityinboundaccess.md | 40 +++ .../resources/m365capabilityresourcescope.md | 51 +++ .../resources/m365capabilityresourcescopes.md | 44 +++ api-reference/v1.0/toc/tenants/toc.yml | 49 +++ api-reference/v1.0/toc/toc.mapping.json | 27 +- changelog/Microsoft.M365.XTAP.json | 310 +++++++++++++++--- concepts/whats-new-overview.md | 4 + 55 files changed, 2263 insertions(+), 135 deletions(-) create mode 100644 api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md create mode 100644 api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md create mode 100644 api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities.md create mode 100644 api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities.md create mode 100644 api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md create mode 100644 api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md create mode 100644 api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities.md create mode 100644 api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities-permissions.md create mode 100644 api-reference/v1.0/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-read.md create mode 100644 api-reference/v1.0/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md create mode 100644 api-reference/v1.0/resources/crosstenantcalendaravailabilitybasic.md create mode 100644 api-reference/v1.0/resources/crosstenantcalendaravailabilitylimiteddetails.md create mode 100644 api-reference/v1.0/resources/crosstenantcalendarsharingfreebusydetail.md create mode 100644 api-reference/v1.0/resources/crosstenantcalendarsharingfreebusyreviewer.md create mode 100644 api-reference/v1.0/resources/crosstenantcalendarsharingfreebusysimple.md create mode 100644 api-reference/v1.0/resources/crosstenantmailtipsall.md create mode 100644 api-reference/v1.0/resources/crosstenantmailtipslimited.md create mode 100644 api-reference/v1.0/resources/crosstenantmigration.md create mode 100644 api-reference/v1.0/resources/crosstenantopenprofilecard.md create mode 100644 api-reference/v1.0/resources/crosstenantplacesdeskbooking.md create mode 100644 api-reference/v1.0/resources/crosstenantplacesroombooking.md create mode 100644 api-reference/v1.0/resources/m365-cross-tenant-access-policy-overview.md create mode 100644 api-reference/v1.0/resources/m365capabilitybase.md create mode 100644 api-reference/v1.0/resources/m365capabilityinboundaccess.md create mode 100644 api-reference/v1.0/resources/m365capabilityresourcescope.md create mode 100644 api-reference/v1.0/resources/m365capabilityresourcescopes.md diff --git a/api-reference/beta/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-read.md b/api-reference/beta/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-read.md index 6ee28371bc8..29fc031cc99 100644 --- a/api-reference/beta/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-read.md +++ b/api-reference/beta/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-read.md @@ -4,6 +4,6 @@ ms.topic: include --- > [!IMPORTANT] -> For delegated access using work or school accounts where the signed-in user is acting on another user, they must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. This operation supports the following built-in roles, which provide only the least privilege necessary: -> - Global Administrator -> - Exchange Administrator - only for capabilities of MailTips, Calendar Sharing, and Free/Busy +> For delegated access using work or school accounts where the signed-in user is acting on another user, they must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. Managing Microsoft 365 cross-tenant capabilities affects the entire cross-tenant access policy, so no lower-privileged built-in role covers all capabilities. This operation supports the following built-in roles: +> - Global Administrator - required for all capabilities, because managing the cross-tenant access policy requires directory-wide privileges. +> - Exchange Administrator - supported only for the MailTips, Calendar Sharing, and Free/Busy capabilities. diff --git a/api-reference/beta/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md b/api-reference/beta/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md index 6ee28371bc8..29fc031cc99 100644 --- a/api-reference/beta/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md +++ b/api-reference/beta/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md @@ -4,6 +4,6 @@ ms.topic: include --- > [!IMPORTANT] -> For delegated access using work or school accounts where the signed-in user is acting on another user, they must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. This operation supports the following built-in roles, which provide only the least privilege necessary: -> - Global Administrator -> - Exchange Administrator - only for capabilities of MailTips, Calendar Sharing, and Free/Busy +> For delegated access using work or school accounts where the signed-in user is acting on another user, they must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. Managing Microsoft 365 cross-tenant capabilities affects the entire cross-tenant access policy, so no lower-privileged built-in role covers all capabilities. This operation supports the following built-in roles: +> - Global Administrator - required for all capabilities, because managing the cross-tenant access policy requires directory-wide privileges. +> - Exchange Administrator - supported only for the MailTips, Calendar Sharing, and Free/Busy capabilities. diff --git a/api-reference/beta/resources/crosstenantcalendaravailabilitybasic.md b/api-reference/beta/resources/crosstenantcalendaravailabilitybasic.md index 5bac8e4b754..51e59c5bdc2 100644 --- a/api-reference/beta/resources/crosstenantcalendaravailabilitybasic.md +++ b/api-reference/beta/resources/crosstenantcalendaravailabilitybasic.md @@ -2,7 +2,7 @@ title: "crossTenantCalendarAvailabilityBasic resource type" description: "Represents a cross-tenant capability for basic calendar availability." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a cross-tenant capability for basic calendar availability. This capability allows tenant administrators to control whether users can share basic calendar free/busy information across organizations. +Represents authorization for external users from a trusted partner tenant to see basic calendar free/busy status, without meeting details. Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). @@ -46,8 +46,6 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.crossTenantCalendarAvailabilityBasic", "name": "String (identifier)", "lastModifiedDateTime": "String (timestamp)", - "inboundAccess": { - "@odata.type": "microsoft.graph.m365CapabilityInboundAccess" - } + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} } ``` diff --git a/api-reference/beta/resources/crosstenantcalendaravailabilitylimiteddetails.md b/api-reference/beta/resources/crosstenantcalendaravailabilitylimiteddetails.md index 852c5db4310..3088e7c58f9 100644 --- a/api-reference/beta/resources/crosstenantcalendaravailabilitylimiteddetails.md +++ b/api-reference/beta/resources/crosstenantcalendaravailabilitylimiteddetails.md @@ -2,7 +2,7 @@ title: "crossTenantCalendarAvailabilityLimitedDetails resource type" description: "Represents a cross-tenant capability for calendar availability with limited details." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a cross-tenant capability for calendar availability with limited details. This capability allows tenant administrators to control whether users can share calendar availability information with limited meeting details across organizations. +Represents authorization for external users from a trusted partner tenant to see calendar free/busy availability with limited meeting details. Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). @@ -46,8 +46,6 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.crossTenantCalendarAvailabilityLimitedDetails", "name": "String (identifier)", "lastModifiedDateTime": "String (timestamp)", - "inboundAccess": { - "@odata.type": "microsoft.graph.m365CapabilityInboundAccess" - } + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} } ``` diff --git a/api-reference/beta/resources/crosstenantcalendarsharingfreebusydetail.md b/api-reference/beta/resources/crosstenantcalendarsharingfreebusydetail.md index dbf8411c5ab..6e5e32f3b18 100644 --- a/api-reference/beta/resources/crosstenantcalendarsharingfreebusydetail.md +++ b/api-reference/beta/resources/crosstenantcalendarsharingfreebusydetail.md @@ -2,7 +2,7 @@ title: "crossTenantCalendarSharingFreeBusyDetail resource type" description: "Represents a cross-tenant capability for detailed free/busy calendar sharing." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a cross-tenant capability for detailed free/busy calendar sharing. This capability allows tenant administrators to control whether users can share detailed calendar free/busy information across organizations. +Represents authorization for external users from a trusted partner tenant to view detailed calendar free/busy information, including meeting subject and location. Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). @@ -46,8 +46,6 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.crossTenantCalendarSharingFreeBusyDetail", "name": "String (identifier)", "lastModifiedDateTime": "String (timestamp)", - "inboundAccess": { - "@odata.type": "microsoft.graph.m365CapabilityInboundAccess" - } + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} } ``` diff --git a/api-reference/beta/resources/crosstenantcalendarsharingfreebusyreviewer.md b/api-reference/beta/resources/crosstenantcalendarsharingfreebusyreviewer.md index e97bc0e8357..7147b3b91ef 100644 --- a/api-reference/beta/resources/crosstenantcalendarsharingfreebusyreviewer.md +++ b/api-reference/beta/resources/crosstenantcalendarsharingfreebusyreviewer.md @@ -2,7 +2,7 @@ title: "crossTenantCalendarSharingFreeBusyReviewer resource type" description: "Represents a cross-tenant capability for reviewer-level free/busy calendar sharing." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a cross-tenant capability for reviewer-level free/busy calendar sharing. This capability allows tenant administrators to control whether users can share calendar free/busy information with reviewer-level permissions across organizations. +Represents authorization for external users from a trusted partner tenant to view calendar free/busy information at reviewer fidelity, the most detailed sharing level. Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). @@ -46,8 +46,6 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.crossTenantCalendarSharingFreeBusyReviewer", "name": "String (identifier)", "lastModifiedDateTime": "String (timestamp)", - "inboundAccess": { - "@odata.type": "microsoft.graph.m365CapabilityInboundAccess" - } + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} } ``` diff --git a/api-reference/beta/resources/crosstenantcalendarsharingfreebusysimple.md b/api-reference/beta/resources/crosstenantcalendarsharingfreebusysimple.md index 514c3cf4db3..1147155fc97 100644 --- a/api-reference/beta/resources/crosstenantcalendarsharingfreebusysimple.md +++ b/api-reference/beta/resources/crosstenantcalendarsharingfreebusysimple.md @@ -2,7 +2,7 @@ title: "crossTenantCalendarSharingFreeBusySimple resource type" description: "Represents a cross-tenant capability for simple free/busy calendar sharing." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a cross-tenant capability for simple free/busy calendar sharing. This capability allows tenant administrators to control whether users can share simple calendar free/busy information across organizations. +Represents authorization for external users from a trusted partner tenant to view simple calendar free/busy status, shown as busy or free. Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). @@ -46,8 +46,6 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.crossTenantCalendarSharingFreeBusySimple", "name": "String (identifier)", "lastModifiedDateTime": "String (timestamp)", - "inboundAccess": { - "@odata.type": "microsoft.graph.m365CapabilityInboundAccess" - } + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} } ``` diff --git a/api-reference/beta/resources/crosstenantmailtipsall.md b/api-reference/beta/resources/crosstenantmailtipsall.md index 77878f9b9bf..57c9129f49e 100644 --- a/api-reference/beta/resources/crosstenantmailtipsall.md +++ b/api-reference/beta/resources/crosstenantmailtipsall.md @@ -2,7 +2,7 @@ title: "crossTenantMailTipsAll resource type" description: "Represents a cross-tenant capability for sharing all mail tips." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a cross-tenant capability for sharing all mail tips. This capability allows tenant administrators to control whether users can share all mail tips across organizations. +Represents authorization for MailTips to display full information—including automatic replies and mailbox-full notices—to external users from a trusted partner tenant. Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). @@ -46,8 +46,6 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.crossTenantMailTipsAll", "name": "String (identifier)", "lastModifiedDateTime": "String (timestamp)", - "inboundAccess": { - "@odata.type": "microsoft.graph.m365CapabilityInboundAccess" - } + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} } ``` diff --git a/api-reference/beta/resources/crosstenantmailtipslimited.md b/api-reference/beta/resources/crosstenantmailtipslimited.md index 5a9a8a98771..178eab1f277 100644 --- a/api-reference/beta/resources/crosstenantmailtipslimited.md +++ b/api-reference/beta/resources/crosstenantmailtipslimited.md @@ -2,7 +2,7 @@ title: "crossTenantMailTipsLimited resource type" description: "Represents a cross-tenant capability for sharing limited mail tips." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a cross-tenant capability for sharing limited mail tips. This capability allows tenant administrators to control whether users can share limited mail tips across organizations. +Represents authorization for MailTips to display limited information to external users from a trusted partner tenant. Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). @@ -46,8 +46,6 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.crossTenantMailTipsLimited", "name": "String (identifier)", "lastModifiedDateTime": "String (timestamp)", - "inboundAccess": { - "@odata.type": "microsoft.graph.m365CapabilityInboundAccess" - } + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} } ``` diff --git a/api-reference/beta/resources/crosstenantmigration.md b/api-reference/beta/resources/crosstenantmigration.md index da70075c83d..8d502b20ef6 100644 --- a/api-reference/beta/resources/crosstenantmigration.md +++ b/api-reference/beta/resources/crosstenantmigration.md @@ -2,7 +2,7 @@ title: "crossTenantMigration resource type" description: "Represents a cross-tenant capability for mailbox migration." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a cross-tenant capability for mailbox migration. This capability allows tenant administrators to control cross-tenant mailbox migration scenarios. +Represents authorization for cross-tenant mailbox migration from a partner tenant. Available only in a partner policy. Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). @@ -46,8 +46,6 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.crossTenantMigration", "name": "String (identifier)", "lastModifiedDateTime": "String (timestamp)", - "inboundAccess": { - "@odata.type": "microsoft.graph.m365CapabilityInboundAccess" - } + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} } ``` diff --git a/api-reference/beta/resources/crosstenantopenprofilecard.md b/api-reference/beta/resources/crosstenantopenprofilecard.md index ab60cbc146d..7483c4891d4 100644 --- a/api-reference/beta/resources/crosstenantopenprofilecard.md +++ b/api-reference/beta/resources/crosstenantopenprofilecard.md @@ -2,7 +2,7 @@ title: "crossTenantOpenProfileCard resource type" description: "Represents a cross-tenant capability for sharing user profile information." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a cross-tenant capability for sharing user profile information. This capability allows tenant administrators to control whether their users' profile cards can be viewed by users in other organizations. +Represents authorization for profile cards of your users to be viewed by external users from a trusted partner tenant. Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). @@ -46,8 +46,6 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.crossTenantOpenProfileCard", "name": "String (identifier)", "lastModifiedDateTime": "String (timestamp)", - "inboundAccess": { - "@odata.type": "microsoft.graph.m365CapabilityInboundAccess" - } + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} } ``` diff --git a/api-reference/beta/resources/crosstenantplacesdeskbooking.md b/api-reference/beta/resources/crosstenantplacesdeskbooking.md index a07ee941a1e..4df21292780 100644 --- a/api-reference/beta/resources/crosstenantplacesdeskbooking.md +++ b/api-reference/beta/resources/crosstenantplacesdeskbooking.md @@ -2,7 +2,7 @@ title: "crossTenantPlacesDeskBooking resource type" description: "Represents a cross-tenant capability for desk booking in Places." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a cross-tenant capability for desk booking in Places. This capability allows tenant administrators to control whether users can book desks across organizations. +Represents authorization for external users from a trusted partner tenant to book desks in Places. Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). @@ -46,8 +46,6 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.crossTenantPlacesDeskBooking", "name": "String (identifier)", "lastModifiedDateTime": "String (timestamp)", - "inboundAccess": { - "@odata.type": "microsoft.graph.m365CapabilityInboundAccess" - } + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} } ``` diff --git a/api-reference/beta/resources/crosstenantplacesroombooking.md b/api-reference/beta/resources/crosstenantplacesroombooking.md index d02632a68e9..11121d15874 100644 --- a/api-reference/beta/resources/crosstenantplacesroombooking.md +++ b/api-reference/beta/resources/crosstenantplacesroombooking.md @@ -2,7 +2,7 @@ title: "crossTenantPlacesRoomBooking resource type" description: "Represents a cross-tenant capability for room booking in Places." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a cross-tenant capability for room booking in Places. This capability allows tenant administrators to control whether users can book rooms across organizations. +Represents authorization for external users from a trusted partner tenant to book rooms in Places. Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). @@ -46,8 +46,6 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.crossTenantPlacesRoomBooking", "name": "String (identifier)", "lastModifiedDateTime": "String (timestamp)", - "inboundAccess": { - "@odata.type": "microsoft.graph.m365CapabilityInboundAccess" - } + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} } ``` diff --git a/api-reference/beta/resources/m365capabilitybase.md b/api-reference/beta/resources/m365capabilitybase.md index d6cd097a26f..6765eda2c0b 100644 --- a/api-reference/beta/resources/m365capabilitybase.md +++ b/api-reference/beta/resources/m365capabilitybase.md @@ -2,7 +2,7 @@ title: "m365CapabilityBase resource type" description: "Represents an abstract base type for cross-tenant Microsoft 365 capabilities." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -59,8 +59,6 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.m365CapabilityBase", "name": "String (identifier)", "lastModifiedDateTime": "String (timestamp)", - "inboundAccess": { - "@odata.type": "microsoft.graph.m365CapabilityInboundAccess" - } + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} } ``` diff --git a/api-reference/beta/resources/m365capabilityinboundaccess.md b/api-reference/beta/resources/m365capabilityinboundaccess.md index 832859668a8..fec6148fe85 100644 --- a/api-reference/beta/resources/m365capabilityinboundaccess.md +++ b/api-reference/beta/resources/m365capabilityinboundaccess.md @@ -2,7 +2,7 @@ title: "m365CapabilityInboundAccess resource type" description: "Represents the inbound access settings for a cross-tenant Microsoft 365 capability." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -15,7 +15,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents the inbound access settings for a cross-tenant Microsoft 365 capability. This type defines whether the capability should be allowed or blocked and specifies the resource scopes for the capability. +Represents the inbound access settings for a cross-tenant Microsoft 365 capability. This type defines whether the capability should be allowed or blocked and specifies the resource scopes for the capability. This resource is used as the **inboundAccess** property of the [m365CapabilityBase](../resources/m365capabilitybase.md) resource. ## Properties |Property|Type|Description| @@ -37,8 +37,6 @@ The following JSON representation shows the resource type. { "@odata.type": "#microsoft.graph.m365CapabilityInboundAccess", "isAllowed": "Boolean", - "resourceScopes": { - "@odata.type": "microsoft.graph.m365CapabilityResourceScopes" - } + "resourceScopes": { "@odata.type": "microsoft.graph.m365CapabilityResourceScopes" } } ``` diff --git a/api-reference/beta/resources/m365capabilityresourcescope.md b/api-reference/beta/resources/m365capabilityresourcescope.md index adeb488ad70..7312d3e6d6b 100644 --- a/api-reference/beta/resources/m365capabilityresourcescope.md +++ b/api-reference/beta/resources/m365capabilityresourcescope.md @@ -2,7 +2,7 @@ title: "m365CapabilityResourceScope resource type" description: "Specifies the resource that a cross-tenant capability policy applies to." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -15,7 +15,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Specifies the resource that a cross-tenant capability policy applies to. This type defines which specific user or group a policy affects. +Specifies the resource that a cross-tenant capability policy applies to. This type defines which specific user or group a policy affects. This resource is used by the **included** and **excluded** properties of the [m365CapabilityResourceScopes](../resources/m365capabilityresourcescopes.md) resource. ## Properties |Property|Type|Description| @@ -25,9 +25,11 @@ Specifies the resource that a cross-tenant capability policy applies to. This ty ### m365ResourceType values +The following table lists the members of an [evolvable enumeration](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations). + | Member | Description | | ------------------ | --------------------------------- | -| none | A value to use instead of `null`. | +| none | Indicates that no resource type is selected. | | group | The resource ID is a group ID. | | user | The resource ID is a user ID. | | unknownFutureValue | Evolvable enumeration sentinel value. Don't use. | diff --git a/api-reference/beta/resources/m365capabilityresourcescopes.md b/api-reference/beta/resources/m365capabilityresourcescopes.md index c823aaea4e6..0e9340cd989 100644 --- a/api-reference/beta/resources/m365capabilityresourcescopes.md +++ b/api-reference/beta/resources/m365capabilityresourcescopes.md @@ -2,7 +2,7 @@ title: "m365CapabilityResourceScopes resource type" description: "Specifies the included and excluded resource scopes for a cross-tenant capability." author: "lasharma" -ms.date: 04/23/2026 +ms.date: 08/07/2026 ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType @@ -15,7 +15,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Specifies the included and excluded resource scopes for a cross-tenant capability. This type defines which resources are in scope for the capability and which resources are explicitly excluded. +Specifies the included and excluded resource scopes for a cross-tenant capability. This type defines which resources are in scope for the capability and which resources are explicitly excluded. This resource is used as the **resourceScopes** property of the [m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md) resource. ## Properties |Property|Type|Description| @@ -37,14 +37,10 @@ The following JSON representation shows the resource type. { "@odata.type": "#microsoft.graph.m365CapabilityResourceScopes", "included": [ - { - "@odata.type": "microsoft.graph.m365CapabilityResourceScope" - } + { "@odata.type": "microsoft.graph.m365CapabilityResourceScope" } ], "excluded": [ - { - "@odata.type": "microsoft.graph.m365CapabilityResourceScope" - } + { "@odata.type": "microsoft.graph.m365CapabilityResourceScope" } ] } ``` diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md new file mode 100644 index 00000000000..cf383c901fd --- /dev/null +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md @@ -0,0 +1,116 @@ +--- +title: "List Microsoft 365 capabilities for default policy" +description: "Get a list of Microsoft 365 cross-tenant capabilities configured for the default cross-tenant access policy." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: apiPageType +toc.title: List Microsoft 365 capabilities +--- + +# List Microsoft 365 capabilities for default policy + +Namespace: microsoft.graph + +Get a list of Microsoft 365 cross-tenant capabilities configured for the [default cross-tenant access policy](../resources/crosstenantaccesspolicyconfigurationdefault.md). The returned collection is a heterogeneous collection of derived types of [m365CapabilityBase](../resources/m365capabilitybase.md), differentiated by their **@odata.type** property. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities-permissions.md)] + +[!INCLUDE [rbac-xtap-m365capabilities-apis-read](../includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-read.md)] + +## HTTP request + + +``` http +GET /policies/crossTenantAccessPolicy/default/m365Capabilities +``` + +## Optional query parameters + +This method supports the `$select`, `$filter`, `$top`, `$skip`, and `$count` [OData query parameters](/graph/query-parameters) to help customize the response. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [m365CapabilityBase](../resources/m365capabilitybase.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/policies/crossTenantAccessPolicy/default/m365Capabilities +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.crossTenantOpenProfileCard", + "name": "crossTenantOpenProfileCard", + "lastModifiedDateTime": "2026-01-15T10:04:11.4531504Z", + "inboundAccess": { + "isAllowed": true, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + } + ], + "excluded": [] + } + } + }, + { + "@odata.type": "#microsoft.graph.crossTenantMigration", + "name": "crossTenantMigration", + "lastModifiedDateTime": "2026-01-15T10:08:08.8321956Z", + "inboundAccess": { + "isAllowed": false, + "resourceScopes": { + "included": [], + "excluded": [] + } + } + } + ] +} +``` diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md new file mode 100644 index 00000000000..82709bceb56 --- /dev/null +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md @@ -0,0 +1,197 @@ +--- +title: "Create Microsoft 365 capability for default policy" +description: "Create a new Microsoft 365 cross-tenant capability for the default cross-tenant access policy." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: apiPageType +toc.title: Create Microsoft 365 capability +--- + +# Create Microsoft 365 capability for default policy + +Namespace: microsoft.graph + +Create a new Microsoft 365 cross-tenant capability for the [default cross-tenant access policy](../resources/crosstenantaccesspolicyconfigurationdefault.md). The **@odata.type** property in the request body is required to specify which type of capability to create. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities-permissions.md)] + +[!INCLUDE [rbac-xtap-m365capabilities-apis-write](../includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md)] + +## HTTP request + + +``` http +POST /policies/crossTenantAccessPolicy/default/m365Capabilities +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of a derived type of [m365CapabilityBase](../resources/m365capabilitybase.md). The **@odata.type** property is required to specify the capability type. + +You can specify the following properties when you create an **m365CapabilityBase** capability. + +|Property|Type|Description| +|:---|:---|:---| +|@odata.type|String|The type of capability to create. Required. Example values: `#microsoft.graph.crossTenantOpenProfileCard`, `#microsoft.graph.crossTenantMigration`.| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Required.| + +## Response + +If successful, this method returns a `201 Created` response code and the created capability object in the response body. + +## Examples + +### Example 1: Create a cross-tenant open profile card capability +The following example shows how to create a [cross-tenant open profile card](../resources/crosstenantopenprofilecard.md) capability. +#### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/policies/crossTenantAccessPolicy/default/m365Capabilities +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.crossTenantOpenProfileCard", + "inboundAccess": { + "isAllowed": true, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + } + ], + "excluded": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e00", + "resourceType": "group" + } + ] + } + } +} +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.crossTenantOpenProfileCard", + "name": "crossTenantOpenProfileCard", + "lastModifiedDateTime": "2026-01-15T10:04:11.4531504Z", + "inboundAccess": { + "isAllowed": true, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + } + ], + "excluded": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e00", + "resourceType": "group" + } + ] + } + } +} +``` + +### Example 2: Create a cross-tenant migration capability +The following example shows how to create a [cross-tenant migration](../resources/crosstenantmigration.md) capability. +#### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/policies/crossTenantAccessPolicy/default/m365Capabilities +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.crossTenantMigration", + "inboundAccess": { + "isAllowed": true, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + } + ], + "excluded": [] + } + } +} +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.crossTenantMigration", + "name": "crossTenantMigration", + "lastModifiedDateTime": "2026-01-15T10:08:08.8321956Z", + "inboundAccess": { + "isAllowed": true, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + } + ], + "excluded": [] + } + } +} +``` diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities.md new file mode 100644 index 00000000000..01c75adc85d --- /dev/null +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities.md @@ -0,0 +1,148 @@ +--- +title: "Update Microsoft 365 capability for default policy" +description: "Update an existing Microsoft 365 cross-tenant capability for the default cross-tenant access policy." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: apiPageType +toc.title: Update Microsoft 365 capability +--- + +# Update Microsoft 365 capability for default policy + +Namespace: microsoft.graph + +Update an existing Microsoft 365 cross-tenant capability for the [default cross-tenant access policy](../resources/crosstenantaccesspolicyconfigurationdefault.md). + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities-permissions.md)] + +[!INCLUDE [rbac-xtap-m365capabilities-apis-write](../includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md)] + +## HTTP request + + +``` http +PATCH /policies/crossTenantAccessPolicy/default/m365Capabilities/{m365CapabilityBase-name} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply *only* the values for properties that should be updated. Existing properties that aren't included in the request body maintain their previous values. + +The following table specifies the properties that can be updated. + +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability.| + +## Response + +If successful, this method returns a `204 No Content` response code. + +## Examples + +### Example 1: Update only the access setting + +The following example shows how to update just the **isAllowed** setting for a capability. + +#### Request + +The following example shows a request. + +``` http +PATCH https://graph.microsoft.com/v1.0/policies/crossTenantAccessPolicy/default/m365Capabilities/crossTenantOpenProfileCard +Content-Type: application/json + +{ + "inboundAccess": { + "isAllowed": false + } +} +``` + +#### Response + +The following example shows the response. + +``` http +HTTP/1.1 204 No Content +``` + +### Example 2: Update the access setting and resource scopes + +The following example shows how to update both the **isAllowed** setting and the **resourceScopes** for a capability. + +#### Request + +The following example shows a request. + +``` http +PATCH https://graph.microsoft.com/v1.0/policies/crossTenantAccessPolicy/default/m365Capabilities/crossTenantOpenProfileCard +Content-Type: application/json + +{ + "inboundAccess": { + "isAllowed": true, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + }, + { + "resourceId": "070061d7-a98e-43d3-b708-0758d3738ac7", + "resourceType": "group" + } + ], + "excluded": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e00", + "resourceType": "group" + } + ] + } + } +} +``` + +#### Response + +The following example shows the response. + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities.md new file mode 100644 index 00000000000..55b42091f6d --- /dev/null +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities.md @@ -0,0 +1,76 @@ +--- +title: "Delete Microsoft 365 capability for partner" +description: "Delete a Microsoft 365 cross-tenant capability from a partner organization in the cross-tenant access policy." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: apiPageType +toc.title: Delete Microsoft 365 capability +--- + +# Delete Microsoft 365 capability for partner + +Namespace: microsoft.graph + +Delete a Microsoft 365 cross-tenant capability from a partner organization in the [cross-tenant access policy](../resources/crosstenantaccesspolicy-overview.md). + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities-permissions.md)] + +[!INCLUDE [rbac-xtap-m365capabilities-apis-write](../includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md)] + +## HTTP request + + +``` http +DELETE /policies/crossTenantAccessPolicy/partners/{crossTenantAccessPolicyConfigurationPartner-id}/m365Capabilities/{m365CapabilityBase-name} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `204 No Content` response code. + +## Examples + +### Request + +The following example shows a request. + +``` http +DELETE https://graph.microsoft.com/v1.0/policies/crossTenantAccessPolicy/partners/e8c338c6-d070-466e-a3d5-ca735b9261b4/m365Capabilities/crossTenantOpenProfileCard +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md new file mode 100644 index 00000000000..0b3e05cb783 --- /dev/null +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md @@ -0,0 +1,122 @@ +--- +title: "List Microsoft 365 capabilities for partner" +description: "Get a list of Microsoft 365 cross-tenant capabilities configured for a partner organization in the cross-tenant access policy." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: apiPageType +toc.title: List Microsoft 365 capabilities +--- + +# List Microsoft 365 capabilities for partner + +Namespace: microsoft.graph + +Get a list of Microsoft 365 cross-tenant capabilities configured for a partner organization in the [cross-tenant access policy](../resources/crosstenantaccesspolicy-overview.md). The returned collection is a heterogeneous collection of derived types of [m365CapabilityBase](../resources/m365capabilitybase.md), differentiated by their **@odata.type** property. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities-permissions.md)] + +[!INCLUDE [rbac-xtap-m365capabilities-apis-read](../includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-read.md)] + +## HTTP request + + +``` http +GET /policies/crossTenantAccessPolicy/partners/{crossTenantAccessPolicyConfigurationPartner-id}/m365Capabilities +``` + +## Optional query parameters + +This method supports the `$select`, `$filter`, `$top`, `$skip`, and `$count` [OData query parameters](/graph/query-parameters) to help customize the response. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [m365CapabilityBase](../resources/m365capabilitybase.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/policies/crossTenantAccessPolicy/partners/af7b70b0-d161-4628-82b4-16190344c029/m365Capabilities +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.crossTenantOpenProfileCard", + "name": "crossTenantOpenProfileCard", + "lastModifiedDateTime": "2026-01-15T10:04:11.4531504Z", + "inboundAccess": { + "isAllowed": true, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + } + ], + "excluded": [] + } + } + }, + { + "@odata.type": "#microsoft.graph.crossTenantCalendarSharingFreeBusySimple", + "name": "crossTenantCalendarSharingFreeBusySimple", + "lastModifiedDateTime": "2026-01-15T10:20:08.6953855Z", + "inboundAccess": { + "isAllowed": false, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + } + ], + "excluded": [] + } + } + } + ] +} +``` diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md new file mode 100644 index 00000000000..0f656ff0377 --- /dev/null +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md @@ -0,0 +1,189 @@ +--- +title: "Create Microsoft 365 capability for partner" +description: "Create a new Microsoft 365 cross-tenant capability for a partner organization in the cross-tenant access policy." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: apiPageType +toc.title: Create Microsoft 365 capability +--- + +# Create Microsoft 365 capability for partner + +Namespace: microsoft.graph + +Create a new Microsoft 365 cross-tenant capability for a partner organization in the [cross-tenant access policy](../resources/crosstenantaccesspolicy-overview.md). The **@odata.type** property in the request body is required to specify which type of capability to create. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities-permissions.md)] + +[!INCLUDE [rbac-xtap-m365capabilities-apis-write](../includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md)] + +## HTTP request + + +``` http +POST /policies/crossTenantAccessPolicy/partners/{crossTenantAccessPolicyConfigurationPartner-id}/m365Capabilities +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of a derived type of [m365CapabilityBase](../resources/m365capabilitybase.md). The **@odata.type** property is required to specify the capability type. + +You can specify the following properties when you create an **m365CapabilityBase** capability. + +|Property|Type|Description| +|:---|:---|:---| +|@odata.type|String|The type of capability to create. Required. Example values: `#microsoft.graph.crossTenantOpenProfileCard`, `#microsoft.graph.crossTenantMigration`| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Required.| + +## Response + +If successful, this method returns a `201 Created` response code and the created capability object in the response body. + +## Examples + +### Example 1: Create a cross-tenant mail tips capability +The following example shows how to create a [cross-tenant mail tips](../resources/crosstenantmailtipslimited.md) capability. +#### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/policies/crossTenantAccessPolicy/partners/af7b70b0-d161-4628-82b4-16190344c029/m365Capabilities +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.crossTenantMailTipsLimited", + "inboundAccess": { + "isAllowed": false, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + } + ], + "excluded": [] + } + } +} +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.crossTenantMailTipsLimited", + "name": "crossTenantMailTipsLimited", + "lastModifiedDateTime": "2026-01-15T09:57:58.6364196Z", + "inboundAccess": { + "isAllowed": false, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + } + ], + "excluded": [] + } + } +} +``` + +### Example 2: Create a cross-tenant places room booking capability +The following example shows how to create a [cross-tenant places room booking](../resources/crosstenantplacesroombooking.md) capability. +#### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/policies/crossTenantAccessPolicy/partners/af7b70b0-d161-4628-82b4-16190344c029/m365Capabilities +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.crossTenantPlacesRoomBooking", + "inboundAccess": { + "isAllowed": true, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + } + ], + "excluded": [] + } + } +} +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.crossTenantPlacesRoomBooking", + "name": "crossTenantPlacesRoomBooking", + "lastModifiedDateTime": "2026-01-15T10:27:34.8241493Z", + "inboundAccess": { + "isAllowed": true, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + } + ], + "excluded": [] + } + } +} +``` diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities.md new file mode 100644 index 00000000000..d8241525a2d --- /dev/null +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities.md @@ -0,0 +1,103 @@ +--- +title: "Update Microsoft 365 capability for partner" +description: "Update an existing Microsoft 365 cross-tenant capability for a partner organization in the cross-tenant access policy." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: apiPageType +toc.title: Update Microsoft 365 capability +--- + +# Update Microsoft 365 capability for partner + +Namespace: microsoft.graph + +Update an existing Microsoft 365 cross-tenant capability for a partner organization in the [cross-tenant access policy](../resources/crosstenantaccesspolicy-overview.md). + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities-permissions.md)] + +[!INCLUDE [rbac-xtap-m365capabilities-apis-write](../includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md)] + +## HTTP request + + +``` http +PATCH /policies/crossTenantAccessPolicy/partners/{crossTenantAccessPolicyConfigurationPartner-id}/m365Capabilities/{m365CapabilityBase-name} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply *only* the values for properties that should be updated. Existing properties that aren't included in the request body maintain their previous values. + +The following table specifies the properties that can be updated. + +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability.| + +## Response + +If successful, this method returns a `204 No Content` response code. + +## Examples + +### Request + +The following example shows a request. + +``` http +PATCH https://graph.microsoft.com/v1.0/policies/crossTenantAccessPolicy/partners/e8c338c6-d070-466e-a3d5-ca735b9261b4/m365Capabilities/crossTenantOpenProfileCard +Content-Type: application/json + +{ + "inboundAccess": { + "isAllowed": false, + "resourceScopes": { + "included": [ + { + "resourceId": "ad4fc698-74dc-4f62-9e71-ba9b591e8e74", + "resourceType": "group" + }, + { + "resourceId": "070061d7-a98e-43d3-b708-0758d3738ac7", + "resourceType": "group" + } + ], + "excluded": [] + } + } +} +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities-permissions.md b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities-permissions.md new file mode 100644 index 00000000000..829a267e64e --- /dev/null +++ b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Policy.Read.All|Policy.ReadWrite.CrossTenantCapability| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Policy.Read.All|Policy.ReadWrite.CrossTenantCapability| \ No newline at end of file diff --git a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities-permissions.md b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities-permissions.md new file mode 100644 index 00000000000..c768b28ae82 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Policy.ReadWrite.CrossTenantCapability|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Policy.ReadWrite.CrossTenantCapability|Not available.| \ No newline at end of file diff --git a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities-permissions.md b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities-permissions.md new file mode 100644 index 00000000000..5f491a0d44e --- /dev/null +++ b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Policy.ReadWrite.CrossTenantCapability|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Policy.ReadWrite.CrossTenantCapability|Not available.| diff --git a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities-permissions.md b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities-permissions.md new file mode 100644 index 00000000000..5f491a0d44e --- /dev/null +++ b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Policy.ReadWrite.CrossTenantCapability|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Policy.ReadWrite.CrossTenantCapability|Not available.| diff --git a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities-permissions.md b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities-permissions.md new file mode 100644 index 00000000000..829a267e64e --- /dev/null +++ b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Policy.Read.All|Policy.ReadWrite.CrossTenantCapability| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Policy.Read.All|Policy.ReadWrite.CrossTenantCapability| \ No newline at end of file diff --git a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities-permissions.md b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities-permissions.md new file mode 100644 index 00000000000..c768b28ae82 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Policy.ReadWrite.CrossTenantCapability|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Policy.ReadWrite.CrossTenantCapability|Not available.| \ No newline at end of file diff --git a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities-permissions.md b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities-permissions.md new file mode 100644 index 00000000000..5f491a0d44e --- /dev/null +++ b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Policy.ReadWrite.CrossTenantCapability|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Policy.ReadWrite.CrossTenantCapability|Not available.| diff --git a/api-reference/v1.0/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-read.md b/api-reference/v1.0/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-read.md new file mode 100644 index 00000000000..29fc031cc99 --- /dev/null +++ b/api-reference/v1.0/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-read.md @@ -0,0 +1,9 @@ +--- +author: jkdouglas +ms.topic: include +--- + +> [!IMPORTANT] +> For delegated access using work or school accounts where the signed-in user is acting on another user, they must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. Managing Microsoft 365 cross-tenant capabilities affects the entire cross-tenant access policy, so no lower-privileged built-in role covers all capabilities. This operation supports the following built-in roles: +> - Global Administrator - required for all capabilities, because managing the cross-tenant access policy requires directory-wide privileges. +> - Exchange Administrator - supported only for the MailTips, Calendar Sharing, and Free/Busy capabilities. diff --git a/api-reference/v1.0/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md b/api-reference/v1.0/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md new file mode 100644 index 00000000000..29fc031cc99 --- /dev/null +++ b/api-reference/v1.0/includes/rbac-for-apis/rbac-xtap-m365capabilities-apis-write.md @@ -0,0 +1,9 @@ +--- +author: jkdouglas +ms.topic: include +--- + +> [!IMPORTANT] +> For delegated access using work or school accounts where the signed-in user is acting on another user, they must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. Managing Microsoft 365 cross-tenant capabilities affects the entire cross-tenant access policy, so no lower-privileged built-in role covers all capabilities. This operation supports the following built-in roles: +> - Global Administrator - required for all capabilities, because managing the cross-tenant access policy requires directory-wide privileges. +> - Exchange Administrator - supported only for the MailTips, Calendar Sharing, and Free/Busy capabilities. diff --git a/api-reference/v1.0/resources/crosstenantaccesspolicyconfigurationdefault.md b/api-reference/v1.0/resources/crosstenantaccesspolicyconfigurationdefault.md index 9436edade92..0b7083c011b 100644 --- a/api-reference/v1.0/resources/crosstenantaccesspolicyconfigurationdefault.md +++ b/api-reference/v1.0/resources/crosstenantaccesspolicyconfigurationdefault.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType toc.title: Default settings -ms.date: 07/22/2024 +ms.date: 08/07/2026 --- # crossTenantAccessPolicyConfigurationDefault resource type @@ -22,6 +22,9 @@ Represents the default configuration for cross-tenant access and tenant restrict |[Get](../api/crosstenantaccesspolicyconfigurationdefault-get.md)|[crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md)|Get the default configuration for B2B collaboration and B2B direct connect inbound and outbound settings.| |[Update](../api/crosstenantaccesspolicyconfigurationdefault-update.md)|None|Update the default configuration for B2B collaboration and B2B direct connect inbound and outbound settings.| |[Reset to system default](../api/crosstenantaccesspolicyconfigurationdefault-resettosystemdefault.md)|None|Reset the default configuration for a cross-tenant access policy to the system default settings.| +|[List Microsoft 365 capabilities](../api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md)|[m365CapabilityBase](../resources/m365capabilitybase.md) collection|Get a list of Microsoft 365 cross-tenant capabilities configured for the [default cross-tenant access policy](../resources/crosstenantaccesspolicyconfigurationdefault.md).| +|[Create Microsoft 365 capability](../api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md)|[m365CapabilityBase](../resources/m365capabilitybase.md)|Create a new Microsoft 365 cross-tenant capability for the [default cross-tenant access policy](../resources/crosstenantaccesspolicyconfigurationdefault.md).| +|[Update Microsoft 365 capability](../api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities.md)|[m365CapabilityBase](../resources/m365capabilitybase.md)|Update an existing Microsoft 365 cross-tenant capability for the [default cross-tenant access policy](../resources/crosstenantaccesspolicyconfigurationdefault.md).| ## Properties @@ -42,7 +45,9 @@ Represents the default configuration for cross-tenant access and tenant restrict ## Relationships -None. +|Relationship|Type|Description| +|:---|:---|:---| +|m365Capabilities|[m365CapabilityBase](../resources/m365capabilitybase.md) collection|Defines the default Microsoft 365 cross-tenant capabilities for inbound access from external organizations.| ## JSON representation diff --git a/api-reference/v1.0/resources/crosstenantaccesspolicyconfigurationpartner.md b/api-reference/v1.0/resources/crosstenantaccesspolicyconfigurationpartner.md index 700db8c25a4..958848222c6 100644 --- a/api-reference/v1.0/resources/crosstenantaccesspolicyconfigurationpartner.md +++ b/api-reference/v1.0/resources/crosstenantaccesspolicyconfigurationpartner.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium ms.subservice: "entra-sign-in" doc_type: resourcePageType toc.title: Partner settings -ms.date: 07/22/2024 +ms.date: 08/07/2026 --- # crossTenantAccessPolicyConfigurationPartner resource type @@ -26,6 +26,10 @@ For any partner-specific property that is `null`, these settings inherit the beh | [Get](../api/crosstenantaccesspolicyconfigurationpartner-get.md) | [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) | Read the partner-specific configuration settings. | | [Update](../api/crosstenantaccesspolicyconfigurationpartner-update.md) | [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) | Update the properties of a partner-specific configuration. | | [Delete](../api/crosstenantaccesspolicyconfigurationpartner-delete.md) | None | Delete the partner-specific configuration. | +|[List Microsoft 365 capabilities](../api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md)|[m365CapabilityBase](../resources/m365capabilitybase.md) collection|Get a list of Microsoft 365 cross-tenant capabilities configured for a partner organization in the [cross-tenant access policy](../resources/crosstenantaccesspolicy-overview.md).| +|[Create Microsoft 365 capability](../api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md)|[m365CapabilityBase](../resources/m365capabilitybase.md)|Create a new Microsoft 365 cross-tenant capability for a partner organization in the [cross-tenant access policy](../resources/crosstenantaccesspolicy-overview.md).| +|[Update Microsoft 365 capability](../api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities.md)|[m365CapabilityBase](../resources/m365capabilitybase.md)|Update an existing Microsoft 365 cross-tenant capability for a partner organization in the [cross-tenant access policy](../resources/crosstenantaccesspolicy-overview.md).| +|[Delete Microsoft 365 capability](../api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities.md)| None |Delete a Microsoft 365 cross-tenant capability from a partner organization in the [cross-tenant access policy](../resources/crosstenantaccesspolicy-overview.md).| ## Properties @@ -50,6 +54,7 @@ For any partner-specific property that is `null`, these settings inherit the beh |Relationship|Type|Description| |:---|:---|:---| |identitySynchronization|[crossTenantIdentitySyncPolicyPartner](../resources/crosstenantidentitysyncpolicypartner.md)|Defines the cross-tenant policy for the synchronization of users from a partner tenant. Use this user synchronization policy to streamline collaboration between users in a multitenant organization by automating the creation, update, and deletion of users from one tenant to another.| +|m365Capabilities|[m365CapabilityBase](../resources/m365capabilitybase.md) collection|Defines the partner-specific Microsoft 365 cross-tenant capabilities for inbound access from the partner organization.| ## JSON representation diff --git a/api-reference/v1.0/resources/crosstenantcalendaravailabilitybasic.md b/api-reference/v1.0/resources/crosstenantcalendaravailabilitybasic.md new file mode 100644 index 00000000000..36d05a1ec8d --- /dev/null +++ b/api-reference/v1.0/resources/crosstenantcalendaravailabilitybasic.md @@ -0,0 +1,49 @@ +--- +title: "crossTenantCalendarAvailabilityBasic resource type" +description: "Represents a cross-tenant capability for basic calendar availability." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# crossTenantCalendarAvailabilityBasic resource type + +Namespace: microsoft.graph + +Represents authorization for external users from a trusted partner tenant to see basic calendar free/busy status, without meeting details. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.crossTenantCalendarAvailabilityBasic", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/crosstenantcalendaravailabilitylimiteddetails.md b/api-reference/v1.0/resources/crosstenantcalendaravailabilitylimiteddetails.md new file mode 100644 index 00000000000..eea5d7cb8b5 --- /dev/null +++ b/api-reference/v1.0/resources/crosstenantcalendaravailabilitylimiteddetails.md @@ -0,0 +1,49 @@ +--- +title: "crossTenantCalendarAvailabilityLimitedDetails resource type" +description: "Represents a cross-tenant capability for calendar availability with limited details." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# crossTenantCalendarAvailabilityLimitedDetails resource type + +Namespace: microsoft.graph + +Represents authorization for external users from a trusted partner tenant to see calendar free/busy availability with limited meeting details. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.crossTenantCalendarAvailabilityLimitedDetails", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/crosstenantcalendarsharingfreebusydetail.md b/api-reference/v1.0/resources/crosstenantcalendarsharingfreebusydetail.md new file mode 100644 index 00000000000..50ae8bee9ae --- /dev/null +++ b/api-reference/v1.0/resources/crosstenantcalendarsharingfreebusydetail.md @@ -0,0 +1,49 @@ +--- +title: "crossTenantCalendarSharingFreeBusyDetail resource type" +description: "Represents a cross-tenant capability for detailed free/busy calendar sharing." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# crossTenantCalendarSharingFreeBusyDetail resource type + +Namespace: microsoft.graph + +Represents authorization for external users from a trusted partner tenant to view detailed calendar free/busy information, including meeting subject and location. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.crossTenantCalendarSharingFreeBusyDetail", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/crosstenantcalendarsharingfreebusyreviewer.md b/api-reference/v1.0/resources/crosstenantcalendarsharingfreebusyreviewer.md new file mode 100644 index 00000000000..01608f17c09 --- /dev/null +++ b/api-reference/v1.0/resources/crosstenantcalendarsharingfreebusyreviewer.md @@ -0,0 +1,49 @@ +--- +title: "crossTenantCalendarSharingFreeBusyReviewer resource type" +description: "Represents a cross-tenant capability for reviewer-level free/busy calendar sharing." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# crossTenantCalendarSharingFreeBusyReviewer resource type + +Namespace: microsoft.graph + +Represents authorization for external users from a trusted partner tenant to view calendar free/busy information at reviewer fidelity, the most detailed sharing level. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.crossTenantCalendarSharingFreeBusyReviewer", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/crosstenantcalendarsharingfreebusysimple.md b/api-reference/v1.0/resources/crosstenantcalendarsharingfreebusysimple.md new file mode 100644 index 00000000000..5177a3b7265 --- /dev/null +++ b/api-reference/v1.0/resources/crosstenantcalendarsharingfreebusysimple.md @@ -0,0 +1,49 @@ +--- +title: "crossTenantCalendarSharingFreeBusySimple resource type" +description: "Represents a cross-tenant capability for simple free/busy calendar sharing." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# crossTenantCalendarSharingFreeBusySimple resource type + +Namespace: microsoft.graph + +Represents authorization for external users from a trusted partner tenant to view simple calendar free/busy status, shown as busy or free. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.crossTenantCalendarSharingFreeBusySimple", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/crosstenantmailtipsall.md b/api-reference/v1.0/resources/crosstenantmailtipsall.md new file mode 100644 index 00000000000..2d059281f4c --- /dev/null +++ b/api-reference/v1.0/resources/crosstenantmailtipsall.md @@ -0,0 +1,49 @@ +--- +title: "crossTenantMailTipsAll resource type" +description: "Represents a cross-tenant capability for sharing all mail tips." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# crossTenantMailTipsAll resource type + +Namespace: microsoft.graph + +Represents authorization for MailTips to display full information—including automatic replies and mailbox-full notices—to external users from a trusted partner tenant. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.crossTenantMailTipsAll", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/crosstenantmailtipslimited.md b/api-reference/v1.0/resources/crosstenantmailtipslimited.md new file mode 100644 index 00000000000..4137da33499 --- /dev/null +++ b/api-reference/v1.0/resources/crosstenantmailtipslimited.md @@ -0,0 +1,49 @@ +--- +title: "crossTenantMailTipsLimited resource type" +description: "Represents a cross-tenant capability for sharing limited mail tips." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# crossTenantMailTipsLimited resource type + +Namespace: microsoft.graph + +Represents authorization for MailTips to display limited information to external users from a trusted partner tenant. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.crossTenantMailTipsLimited", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/crosstenantmigration.md b/api-reference/v1.0/resources/crosstenantmigration.md new file mode 100644 index 00000000000..d5dd9547d5a --- /dev/null +++ b/api-reference/v1.0/resources/crosstenantmigration.md @@ -0,0 +1,49 @@ +--- +title: "crossTenantMigration resource type" +description: "Represents a cross-tenant capability for mailbox migration." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# crossTenantMigration resource type + +Namespace: microsoft.graph + +Represents authorization for cross-tenant mailbox migration from a partner tenant. Available only in a partner policy. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.crossTenantMigration", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/crosstenantopenprofilecard.md b/api-reference/v1.0/resources/crosstenantopenprofilecard.md new file mode 100644 index 00000000000..d63d6fc4447 --- /dev/null +++ b/api-reference/v1.0/resources/crosstenantopenprofilecard.md @@ -0,0 +1,49 @@ +--- +title: "crossTenantOpenProfileCard resource type" +description: "Represents a cross-tenant capability for sharing user profile information." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# crossTenantOpenProfileCard resource type + +Namespace: microsoft.graph + +Represents authorization for profile cards of your users to be viewed by external users from a trusted partner tenant. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.crossTenantOpenProfileCard", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/crosstenantplacesdeskbooking.md b/api-reference/v1.0/resources/crosstenantplacesdeskbooking.md new file mode 100644 index 00000000000..0a678e9ea48 --- /dev/null +++ b/api-reference/v1.0/resources/crosstenantplacesdeskbooking.md @@ -0,0 +1,49 @@ +--- +title: "crossTenantPlacesDeskBooking resource type" +description: "Represents a cross-tenant capability for desk booking in Places." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# crossTenantPlacesDeskBooking resource type + +Namespace: microsoft.graph + +Represents authorization for external users from a trusted partner tenant to book desks in Places. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.crossTenantPlacesDeskBooking", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/crosstenantplacesroombooking.md b/api-reference/v1.0/resources/crosstenantplacesroombooking.md new file mode 100644 index 00000000000..68d33af037d --- /dev/null +++ b/api-reference/v1.0/resources/crosstenantplacesroombooking.md @@ -0,0 +1,49 @@ +--- +title: "crossTenantPlacesRoomBooking resource type" +description: "Represents a cross-tenant capability for room booking in Places." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# crossTenantPlacesRoomBooking resource type + +Namespace: microsoft.graph + +Represents authorization for external users from a trusted partner tenant to book rooms in Places. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.crossTenantPlacesRoomBooking", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/m365-cross-tenant-access-policy-overview.md b/api-reference/v1.0/resources/m365-cross-tenant-access-policy-overview.md new file mode 100644 index 00000000000..d7e4851a671 --- /dev/null +++ b/api-reference/v1.0/resources/m365-cross-tenant-access-policy-overview.md @@ -0,0 +1,76 @@ +--- +title: Microsoft 365 cross-tenant access policy API overview +description: Learn about the Microsoft 365 cross-tenant access policy API in Microsoft Graph and how you can use it to authorize partner access to Microsoft 365 capabilities such as calendar availability, MailTips, calendar sharing, profile card, and Places. +author: Anusree-stack +ms.author: anusreenandy +ms.localizationpriority: medium +ms.subservice: entra-sign-in +ms.custom: scenarios:getting-started +ms.date: 08/07/2026 +ms.topic: concept-article +doc_type: conceptualPageType +--- + +# Microsoft 365 cross-tenant access policy Microsoft Graph API overview + +The Microsoft 365 cross-tenant access policy API in Microsoft Graph lets tenant administrators authorize which Microsoft 365 capabilities — such as calendar availability, MailTips, calendar sharing, profile card, and Places — external users from a trusted partner tenant can access in the resource tenant. It extends Microsoft Entra cross-tenant access policy with granular authorization control over Microsoft 365 resources, and is the recommended evolution path for organizations moving off the legacy Organization Relationships (OrgRel) model used today for MailTips, calendar sharing, and free/busy. + +Use the API to automate and standardize cross-tenant collaboration settings across partner organizations, multitenant environments, and merger or acquisition scenarios. It currently supports cross-tenant access within the same cloud and across clouds, with hybrid support planned. + +> [!TIP] +> This article explains the concepts behind the API. For the request and response details of individual operations, see [API reference](#api-reference). + +## Why integrate with the Microsoft 365 cross-tenant access policy API? + +The API gives administrators and applications programmatic, granular control over which Microsoft 365 resources external partners can access, without relying on the legacy OrgRel model. It pairs with Microsoft Entra cross-tenant access to form a layered model: Microsoft Entra handles *authentication* (who can access your tenant), and the Microsoft 365 cross-tenant access policy handles *authorization* (which resources they can access). + +### Authorize partner access with capability-level precision + +Control exactly which Microsoft 365 capabilities external users from a trusted partner can use, and scope each capability to specific users, groups, or the entire tenant. Supported capabilities include: + +- Profile card and photo sharing. +- Calendar availability (free/busy), with basic or limited-detail options. +- Calendar sharing, at simple, detail, or reviewer fidelity. +- MailTips shown while composing email. +- Places — room and desk booking. +- Mailbox migration between tenants (partner policy only). + +Teams Shared Channels are also available between trusted tenants, but they're governed directly by Microsoft Entra B2B direct connect rather than by this API. + +### Apply a consistent, two-tier policy model + +Like Microsoft Entra cross-tenant access, the API uses a two-tier model. A *default policy* sets the global baseline for all external tenants, and a *partner policy* overrides that baseline for a specific tenant to enable, disable, or scope capabilities per partner. When a cross-tenant request arrives, a partner policy takes precedence over the default policy, and the system default is *disabled* for all Microsoft 365 capabilities. + +### Control access as an inbound-only setting + +Microsoft 365 cross-tenant access policy is an inbound control: the resource tenant that owns the data decides what to expose. Enabling a capability is equivalent to saying "external users from that partner can access this resource in my tenant." Because the control is inbound only, a tenant can enable a capability one-way. Mutual configuration is required only when both organizations want their users to access each other's resources. + +### Modernize cross-tenant collaboration + +The API is the recommended path away from the legacy OrgRel model for MailTips, calendar sharing, and free/busy. It's designed for organizations that collaborate with external partners through Microsoft 365 apps, operate multiple Microsoft 365 tenants, or go through mergers, acquisitions, and reorganizations that require secure cross-tenant resource sharing. + +### High-level access or permission considerations + +Configuring cross-tenant capabilities requires a privileged administrator role (such as Global Administrator) on the resource tenant and delegated Microsoft Graph permissions, including `Policy.ReadWrite.CrossTenantAccess` and `Policy.ReadWrite.CrossTenantCapability`. A Microsoft Entra cross-tenant access trust with the partner must already exist: most capabilities require Microsoft 365 collaboration trust, Shared Channels require B2B direct connect, and mailbox migration requires app service connect. For authentication details, see [Authentication and authorization basics](/graph/auth/auth-concepts). Configuration is available through Microsoft Graph and the Microsoft Graph PowerShell SDK, with Microsoft Admin Center support planned after general availability. + +### Integration opportunities with other APIs + +- **Microsoft Entra cross-tenant access.** This API builds on Microsoft Entra cross-tenant access policy, which establishes the trust and authentication layer. Changes to the Microsoft Entra trust relationship directly affect these capabilities — removing a trust invalidates the corresponding Microsoft 365 capabilities for that partner. +- **Microsoft 365 substrate APIs.** Because capabilities govern substrate resources, you can combine authorization with the calendar, Outlook, people (profile card), and Places APIs to build end-to-end cross-tenant collaboration scenarios. + +## API reference + +For the request and response details of individual operations, see the following resources in the Microsoft Graph reference. + +- [crossTenantAccessPolicyConfigurationDefault resource type](/graph/api/resources/crosstenantaccesspolicyconfigurationdefault?view=graph-rest-1.0&preserve-view=true) +- [crossTenantAccessPolicyConfigurationPartner resource type](/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-1.0&preserve-view=true) +- [List m365Capabilities for the default policy](/graph/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities?view=graph-rest-1.0&preserve-view=true) +- [Create m365CapabilityBase for the default policy](/graph/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities?view=graph-rest-1.0&preserve-view=true) +- [List m365Capabilities for a partner](/graph/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities?view=graph-rest-1.0&preserve-view=true) +- [Create m365CapabilityBase for a partner](/graph/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities?view=graph-rest-1.0&preserve-view=true) + +## Related content + +- [Cross-tenant access settings API overview](crosstenantaccesspolicy-overview.md) +- [Microsoft Entra cross-tenant access overview](/entra/external-id/cross-tenant-access-overview) +- [Authentication and authorization basics](/graph/auth/auth-concepts) diff --git a/api-reference/v1.0/resources/m365capabilitybase.md b/api-reference/v1.0/resources/m365capabilitybase.md new file mode 100644 index 00000000000..0aeeace3145 --- /dev/null +++ b/api-reference/v1.0/resources/m365capabilitybase.md @@ -0,0 +1,62 @@ +--- +title: "m365CapabilityBase resource type" +description: "Represents an abstract base type for cross-tenant Microsoft 365 capabilities." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +toc.title: "Microsoft 365 capabilities" +--- + +# m365CapabilityBase resource type + +Namespace: microsoft.graph + +Represents an abstract base type for cross-tenant Microsoft 365 capabilities. This type can't be instantiated directly. Instances are created using specific derived types. All capability instances in a collection are differentiated by the **@odata.type** property. + +The following types derive from **m365CapabilityBase**: + +- [crossTenantCalendarAvailabilityBasic](../resources/crosstenantcalendaravailabilitybasic.md) +- [crossTenantCalendarAvailabilityLimitedDetails](../resources/crosstenantcalendaravailabilitylimiteddetails.md) +- [crossTenantCalendarSharingFreeBusyDetail](../resources/crosstenantcalendarsharingfreebusydetail.md) +- [crossTenantCalendarSharingFreeBusyReviewer](../resources/crosstenantcalendarsharingfreebusyreviewer.md) +- [crossTenantCalendarSharingFreeBusySimple](../resources/crosstenantcalendarsharingfreebusysimple.md) +- [crossTenantMailTipsAll](../resources/crosstenantmailtipsall.md) +- [crossTenantMailTipsLimited](../resources/crosstenantmailtipslimited.md) +- [crossTenantMigration](../resources/crosstenantmigration.md) +- [crossTenantOpenProfileCard](../resources/crosstenantopenprofilecard.md) +- [crossTenantPlacesDeskBooking](../resources/crosstenantplacesdeskbooking.md) +- [crossTenantPlacesRoomBooking](../resources/crosstenantplacesroombooking.md) + +## Methods +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability.| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`.| +|name|String|The name or identifier of the capability. Key.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.m365CapabilityBase", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/m365capabilityinboundaccess.md b/api-reference/v1.0/resources/m365capabilityinboundaccess.md new file mode 100644 index 00000000000..7aabc10ff9c --- /dev/null +++ b/api-reference/v1.0/resources/m365capabilityinboundaccess.md @@ -0,0 +1,40 @@ +--- +title: "m365CapabilityInboundAccess resource type" +description: "Represents the inbound access settings for a cross-tenant Microsoft 365 capability." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +toc.title: "Microsoft 365 capability inbound access" +--- + +# m365CapabilityInboundAccess resource type + +Namespace: microsoft.graph + +Represents the inbound access settings for a cross-tenant Microsoft 365 capability. This type defines whether the capability should be allowed or blocked and specifies the resource scopes for the capability. This resource is used as the **inboundAccess** property of the [m365CapabilityBase](../resources/m365capabilitybase.md) resource. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|isAllowed|Boolean|Indicates whether this capability should be allowed or blocked for inbound access.| +|resourceScopes|[m365CapabilityResourceScopes](../resources/m365capabilityresourcescopes.md)|Specifies the included and excluded resource scopes for the capability.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.m365CapabilityInboundAccess", + "isAllowed": "Boolean", + "resourceScopes": { "@odata.type": "microsoft.graph.m365CapabilityResourceScopes" } +} +``` diff --git a/api-reference/v1.0/resources/m365capabilityresourcescope.md b/api-reference/v1.0/resources/m365capabilityresourcescope.md new file mode 100644 index 00000000000..8d04192ad06 --- /dev/null +++ b/api-reference/v1.0/resources/m365capabilityresourcescope.md @@ -0,0 +1,51 @@ +--- +title: "m365CapabilityResourceScope resource type" +description: "Specifies the resource that a cross-tenant capability policy applies to." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +toc.title: "Microsoft 365 capability resource scope" +--- + +# m365CapabilityResourceScope resource type + +Namespace: microsoft.graph + +Specifies the resource that a cross-tenant capability policy applies to. This type defines which specific user or group a policy affects. This resource is used by the **included** and **excluded** properties of the [m365CapabilityResourceScopes](../resources/m365capabilityresourcescopes.md) resource. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|resourceId|String|The ID of the resource to modify. The value is either `All`, to apply the capability to all resources of the type specified by **resourceType** (all users or all groups), or the GUID of a specific user or group.| +|resourceType|[m365ResourceType](#m365resourcetype-values)|The type of resource. The possible values are: `none`, `group`, `user`, `unknownFutureValue`.| + +### m365ResourceType values + +The following table lists the members of an [evolvable enumeration](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations). + +| Member | Description | +| ------------------ | --------------------------------- | +| none | Indicates that no resource type is selected. | +| group | The resource ID is a group ID. | +| user | The resource ID is a user ID. | +| unknownFutureValue | Evolvable enumeration sentinel value. Don't use. | + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.m365CapabilityResourceScope", + "resourceId": "String", + "resourceType": "String" +} +``` diff --git a/api-reference/v1.0/resources/m365capabilityresourcescopes.md b/api-reference/v1.0/resources/m365capabilityresourcescopes.md new file mode 100644 index 00000000000..671452cd1dc --- /dev/null +++ b/api-reference/v1.0/resources/m365capabilityresourcescopes.md @@ -0,0 +1,44 @@ +--- +title: "m365CapabilityResourceScopes resource type" +description: "Specifies the included and excluded resource scopes for a cross-tenant capability." +author: "lasharma" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +toc.title: "Microsoft 365 resource scopes" +--- + +# m365CapabilityResourceScopes resource type + +Namespace: microsoft.graph + +Specifies the included and excluded resource scopes for a cross-tenant capability. This type defines which resources are in scope for the capability and which resources are explicitly excluded. This resource is used as the **resourceScopes** property of the [m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md) resource. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|excluded|[m365CapabilityResourceScope](../resources/m365capabilityresourcescope.md) collection|Resources to exclude from the scope. If a resource appears in both **included** and **excluded**, the **excluded** property takes precedence.| +|included|[m365CapabilityResourceScope](../resources/m365capabilityresourcescope.md) collection|Resources to include in the scope.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.m365CapabilityResourceScopes", + "included": [ + { "@odata.type": "microsoft.graph.m365CapabilityResourceScope" } + ], + "excluded": [ + { "@odata.type": "microsoft.graph.m365CapabilityResourceScope" } + ] +} +``` diff --git a/api-reference/v1.0/toc/tenants/toc.yml b/api-reference/v1.0/toc/tenants/toc.yml index 1cc346851f2..4b6902eabfc 100644 --- a/api-reference/v1.0/toc/tenants/toc.yml +++ b/api-reference/v1.0/toc/tenants/toc.yml @@ -81,6 +81,12 @@ items: href: ../../api/crosstenantaccesspolicyconfigurationdefault-update.md - name: Reset to system default href: ../../api/crosstenantaccesspolicyconfigurationdefault-resettosystemdefault.md + - name: List Microsoft 365 capabilities + href: ../../api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md + - name: Create Microsoft 365 capability + href: ../../api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md + - name: Update Microsoft 365 capability + href: ../../api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities.md - name: Partner settings items: - name: Partner settings @@ -95,6 +101,14 @@ items: href: ../../api/crosstenantaccesspolicyconfigurationpartner-update.md - name: Delete href: ../../api/crosstenantaccesspolicyconfigurationpartner-delete.md + - name: List Microsoft 365 capabilities + href: ../../api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md + - name: Create Microsoft 365 capability + href: ../../api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md + - name: Update Microsoft 365 capability + href: ../../api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities.md + - name: Delete Microsoft 365 capability + href: ../../api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities.md - name: Partner user sync settings items: - name: Partner user sync settings @@ -107,6 +121,41 @@ items: href: ../../api/crosstenantidentitysyncpolicypartner-update.md - name: Delete href: ../../api/crosstenantidentitysyncpolicypartner-delete.md + - name: Microsoft 365 capabilities + href: ../../resources/m365capabilitybase.md + items: + - name: Overview + href: ../../resources/m365-cross-tenant-access-policy-overview.md + - name: Cross-tenant calendar availability basic + href: ../../resources/crosstenantcalendaravailabilitybasic.md + - name: Cross-tenant calendar availability limited details + href: ../../resources/crosstenantcalendaravailabilitylimiteddetails.md + - name: Cross-tenant calendar sharing free busy detail + href: ../../resources/crosstenantcalendarsharingfreebusydetail.md + - name: Cross-tenant calendar sharing free busy reviewer + href: ../../resources/crosstenantcalendarsharingfreebusyreviewer.md + - name: Cross-tenant calendar sharing free busy simple + href: ../../resources/crosstenantcalendarsharingfreebusysimple.md + - name: Cross-tenant mail tips all + href: ../../resources/crosstenantmailtipsall.md + - name: Cross-tenant mail tips limited + href: ../../resources/crosstenantmailtipslimited.md + - name: Cross-tenant migration + href: ../../resources/crosstenantmigration.md + - name: Cross-tenant open profile card + href: ../../resources/crosstenantopenprofilecard.md + - name: Cross-tenant places desk booking + href: ../../resources/crosstenantplacesdeskbooking.md + - name: Cross-tenant places room booking + href: ../../resources/crosstenantplacesroombooking.md + - name: Complex types + items: + - name: Microsoft 365 capability inbound access + href: ../../resources/m365capabilityinboundaccess.md + - name: Microsoft 365 capability resource scope + href: ../../resources/m365capabilityresourcescope.md + - name: Microsoft 365 resource scopes + href: ../../resources/m365capabilityresourcescopes.md - name: Multitenant organization displayName: MTO items: diff --git a/api-reference/v1.0/toc/toc.mapping.json b/api-reference/v1.0/toc/toc.mapping.json index 6853d5c1329..e949cae47ae 100644 --- a/api-reference/v1.0/toc/toc.mapping.json +++ b/api-reference/v1.0/toc/toc.mapping.json @@ -2291,7 +2291,32 @@ "crossTenantAccessPolicy", "crossTenantAccessPolicyConfigurationDefault", "crossTenantAccessPolicyConfigurationPartner", - "crossTenantIdentitySyncPolicyPartner" + "crossTenantIdentitySyncPolicyPartner", + "m365CapabilityBase" + ], + "childNodes": [ + { + "name": "Microsoft 365 capabilities", + "overview": "../../resources/m365-cross-tenant-access-policy-overview.md", + "resources": [ + "crossTenantCalendarAvailabilityBasic", + "crossTenantCalendarAvailabilityLimitedDetails", + "crossTenantCalendarSharingFreeBusyDetail", + "crossTenantCalendarSharingFreeBusyReviewer", + "crossTenantCalendarSharingFreeBusySimple", + "crossTenantMailTipsAll", + "crossTenantMailTipsLimited", + "crossTenantMigration", + "crossTenantOpenProfileCard", + "crossTenantPlacesDeskBooking", + "crossTenantPlacesRoomBooking" + ], + "complexTypes": [ + "m365CapabilityInboundAccess", + "m365CapabilityResourceScope", + "m365CapabilityResourceScopes" + ] + } ] }, { diff --git a/changelog/Microsoft.M365.XTAP.json b/changelog/Microsoft.M365.XTAP.json index caed410fa26..4399d716131 100644 --- a/changelog/Microsoft.M365.XTAP.json +++ b/changelog/Microsoft.M365.XTAP.json @@ -3,31 +3,241 @@ { "ChangeList": [ { - "Id": "7aa56ae6-269f-4d96-ac9f-327c7872fba7", + "Id": "2f7a98c4-222e-4544-8b16-02e5bdda79a7", + "ApiChange": "Enumeration", + "ChangedApiName": "m365ResourceType", + "ChangeType": "Addition", + "Description": "Added the [m365ResourceType](https://learn.microsoft.com/graph/api/resources/m365capabilityresourcescope?view=graph-rest-1.0#m365resourcetype-values) enumeration type.", + "Target": "m365ResourceType" + }, + { + "Id": "569305aa-40c6-425d-b99d-da2a61950da5", + "ApiChange": "Resource", + "ChangedApiName": "m365CapabilityInboundAccess", + "ChangeType": "Addition", + "Description": "Added the [m365CapabilityInboundAccess](https://learn.microsoft.com/graph/api/resources/m365capabilityinboundaccess?view=graph-rest-1.0) resource.", + "Target": "m365CapabilityInboundAccess" + }, + { + "Id": "2190f75b-de45-4e09-999a-7886bff83353", + "ApiChange": "Resource", + "ChangedApiName": "m365CapabilityResourceScope", + "ChangeType": "Addition", + "Description": "Added the [m365CapabilityResourceScope](https://learn.microsoft.com/graph/api/resources/m365capabilityresourcescope?view=graph-rest-1.0) resource.", + "Target": "m365CapabilityResourceScope" + }, + { + "Id": "652fea4d-5123-40e9-ab8d-60c2a7a899ce", + "ApiChange": "Resource", + "ChangedApiName": "m365CapabilityResourceScopes", + "ChangeType": "Addition", + "Description": "Added the [m365CapabilityResourceScopes](https://learn.microsoft.com/graph/api/resources/m365capabilityresourcescopes?view=graph-rest-1.0) resource.", + "Target": "m365CapabilityResourceScopes" + }, + { + "Id": "33b08a3b-0043-4000-b947-ab6445725f5e", + "ApiChange": "Relationship", + "ChangedApiName": "m365Capabilities", + "ChangeType": "Addition", + "Description": "Added the **m365Capabilities** relationship to the [crossTenantAccessPolicyConfigurationDefault](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationdefault?view=graph-rest-1.0) resource.", + "Target": "crossTenantAccessPolicyConfigurationDefault" + }, + { + "Id": "e2e571aa-b7b2-4148-bfbf-58e5f7d97ffe", + "ApiChange": "Relationship", + "ChangedApiName": "m365Capabilities", + "ChangeType": "Addition", + "Description": "Added the **m365Capabilities** relationship to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-1.0) resource.", + "Target": "crossTenantAccessPolicyConfigurationPartner" + }, + { + "Id": "83e64320-0dc6-46ed-9220-4f037b83edf4", + "ApiChange": "Method", + "ChangedApiName": "GET", + "ChangeType": "Addition", + "Description": "Added the [List m365Capabilities](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities?view=graph-rest-1.0) method to the [crossTenantAccessPolicyConfigurationDefault](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationdefault?view=graph-rest-1.0) resource.", + "Target": "crossTenantAccessPolicyConfigurationDefault" + }, + { + "Id": "df2c02e7-7fc8-4648-8193-ee1dbec6533a", + "ApiChange": "Method", + "ChangedApiName": "POST", + "ChangeType": "Addition", + "Description": "Added the [Create m365CapabilityBase](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities?view=graph-rest-1.0) method to the [crossTenantAccessPolicyConfigurationDefault](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationdefault?view=graph-rest-1.0) resource.", + "Target": "crossTenantAccessPolicyConfigurationDefault" + }, + { + "Id": "d00f1568-9ab8-4cae-b010-dd7c2158fc51", + "ApiChange": "Method", + "ChangedApiName": "PATCH", + "ChangeType": "Addition", + "Description": "Added the [Update m365CapabilityBase](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities?view=graph-rest-1.0) method to the [crossTenantAccessPolicyConfigurationDefault](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationdefault?view=graph-rest-1.0) resource.", + "Target": "crossTenantAccessPolicyConfigurationDefault" + }, + { + "Id": "c656bb22-07b4-4899-9d07-4bf3be8c8bd6", + "ApiChange": "Method", + "ChangedApiName": "GET", + "ChangeType": "Addition", + "Description": "Added the [List m365Capabilities](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities?view=graph-rest-1.0) method to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-1.0) resource.", + "Target": "crossTenantAccessPolicyConfigurationPartner" + }, + { + "Id": "fd615633-2723-4fae-b5fc-2b0339a29aa4", + "ApiChange": "Method", + "ChangedApiName": "POST", + "ChangeType": "Addition", + "Description": "Added the [Create m365CapabilityBase](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities?view=graph-rest-1.0) method to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-1.0) resource.", + "Target": "crossTenantAccessPolicyConfigurationPartner" + }, + { + "Id": "5aef9156-33f2-4a7a-a34e-9411fbb48218", + "ApiChange": "Method", + "ChangedApiName": "PATCH", + "ChangeType": "Addition", + "Description": "Added the [Update m365CapabilityBase](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities?view=graph-rest-1.0) method to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-1.0) resource.", + "Target": "crossTenantAccessPolicyConfigurationPartner" + }, + { + "Id": "d294c929-6254-4569-baec-644b77292e95", + "ApiChange": "Method", + "ChangedApiName": "DELETE", + "ChangeType": "Addition", + "Description": "Added the [Delete m365CapabilityBase](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities?view=graph-rest-1.0) method to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-1.0) resource.", + "Target": "crossTenantAccessPolicyConfigurationPartner" + }, + { + "Id": "5e57db8d-c1ff-4edf-8a45-9291c87b8f98", + "ApiChange": "Resource", + "ChangedApiName": "crossTenantCalendarAvailabilityBasic", + "ChangeType": "Addition", + "Description": "Added the [crossTenantCalendarAvailabilityBasic](https://learn.microsoft.com/graph/api/resources/crosstenantcalendaravailabilitybasic?view=graph-rest-1.0) resource.", + "Target": "crossTenantCalendarAvailabilityBasic" + }, + { + "Id": "3c316702-f949-46c3-88fd-66dcb6ed9674", + "ApiChange": "Resource", + "ChangedApiName": "crossTenantCalendarAvailabilityLimitedDetails", + "ChangeType": "Addition", + "Description": "Added the [crossTenantCalendarAvailabilityLimitedDetails](https://learn.microsoft.com/graph/api/resources/crosstenantcalendaravailabilitylimiteddetails?view=graph-rest-1.0) resource.", + "Target": "crossTenantCalendarAvailabilityLimitedDetails" + }, + { + "Id": "edebe97a-f6a9-40d8-893b-cbf8127cf7b9", + "ApiChange": "Resource", + "ChangedApiName": "crossTenantCalendarSharingFreeBusyDetail", + "ChangeType": "Addition", + "Description": "Added the [crossTenantCalendarSharingFreeBusyDetail](https://learn.microsoft.com/graph/api/resources/crosstenantcalendarsharingfreebusydetail?view=graph-rest-1.0) resource.", + "Target": "crossTenantCalendarSharingFreeBusyDetail" + }, + { + "Id": "aaa5a1eb-e84c-49f4-8265-407ca3e0f41e", + "ApiChange": "Resource", + "ChangedApiName": "crossTenantCalendarSharingFreeBusyReviewer", + "ChangeType": "Addition", + "Description": "Added the [crossTenantCalendarSharingFreeBusyReviewer](https://learn.microsoft.com/graph/api/resources/crosstenantcalendarsharingfreebusyreviewer?view=graph-rest-1.0) resource.", + "Target": "crossTenantCalendarSharingFreeBusyReviewer" + }, + { + "Id": "61c22b56-69fe-4826-9144-13b944f5b771", + "ApiChange": "Resource", + "ChangedApiName": "crossTenantCalendarSharingFreeBusySimple", + "ChangeType": "Addition", + "Description": "Added the [crossTenantCalendarSharingFreeBusySimple](https://learn.microsoft.com/graph/api/resources/crosstenantcalendarsharingfreebusysimple?view=graph-rest-1.0) resource.", + "Target": "crossTenantCalendarSharingFreeBusySimple" + }, + { + "Id": "dcf876bb-a253-4178-b4aa-6a370e70d68b", + "ApiChange": "Resource", + "ChangedApiName": "crossTenantMailTipsAll", + "ChangeType": "Addition", + "Description": "Added the [crossTenantMailTipsAll](https://learn.microsoft.com/graph/api/resources/crosstenantmailtipsall?view=graph-rest-1.0) resource.", + "Target": "crossTenantMailTipsAll" + }, + { + "Id": "8f24a8df-f301-4a18-b7a7-e11735d138fc", + "ApiChange": "Resource", + "ChangedApiName": "crossTenantMailTipsLimited", + "ChangeType": "Addition", + "Description": "Added the [crossTenantMailTipsLimited](https://learn.microsoft.com/graph/api/resources/crosstenantmailtipslimited?view=graph-rest-1.0) resource.", + "Target": "crossTenantMailTipsLimited" + }, + { + "Id": "6815773c-c069-4ac6-94f4-882f288d43cf", + "ApiChange": "Resource", + "ChangedApiName": "crossTenantMigration", + "ChangeType": "Addition", + "Description": "Added the [crossTenantMigration](https://learn.microsoft.com/graph/api/resources/crosstenantmigration?view=graph-rest-1.0) resource.", + "Target": "crossTenantMigration" + }, + { + "Id": "de581e2d-30d8-4029-884e-4e0f109316e8", + "ApiChange": "Resource", + "ChangedApiName": "crossTenantOpenProfileCard", + "ChangeType": "Addition", + "Description": "Added the [crossTenantOpenProfileCard](https://learn.microsoft.com/graph/api/resources/crosstenantopenprofilecard?view=graph-rest-1.0) resource.", + "Target": "crossTenantOpenProfileCard" + }, + { + "Id": "3acc8e91-de94-4f59-801f-cca9f9a444e4", + "ApiChange": "Resource", + "ChangedApiName": "crossTenantPlacesDeskBooking", + "ChangeType": "Addition", + "Description": "Added the [crossTenantPlacesDeskBooking](https://learn.microsoft.com/graph/api/resources/crosstenantplacesdeskbooking?view=graph-rest-1.0) resource.", + "Target": "crossTenantPlacesDeskBooking" + }, + { + "Id": "e8f6b3be-a240-4576-99a8-00047cb1411f", + "ApiChange": "Resource", + "ChangedApiName": "crossTenantPlacesRoomBooking", + "ChangeType": "Addition", + "Description": "Added the [crossTenantPlacesRoomBooking](https://learn.microsoft.com/graph/api/resources/crosstenantplacesroombooking?view=graph-rest-1.0) resource.", + "Target": "crossTenantPlacesRoomBooking" + }, + { + "Id": "ca06dd5c-fe1c-49b0-b058-f4bc918a4041", + "ApiChange": "Resource", + "ChangedApiName": "m365CapabilityBase", + "ChangeType": "Addition", + "Description": "Added the [m365CapabilityBase](https://learn.microsoft.com/graph/api/resources/m365capabilitybase?view=graph-rest-1.0) resource.", + "Target": "m365CapabilityBase" + } + ], + "Id": "cc5429ec-de9b-4121-997e-f893607ae9e3", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-20T07:00:07.0563788Z", + "WorkloadArea": "Identity and access", + "SubArea": "Identity and sign-in" + }, + { + "ChangeList": [ + { + "Id": "7c4a742a-8321-4d4a-85f7-249df90e1c17", "ApiChange": "Method", "ChangedApiName": "PATCH", "ChangeType": "Addition", - "Description": "Added the [Update m365CapabilityBase](https://learn.microsoft.com/en-us/graph/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities?view=graph-rest-beta) method to the [crossTenantAccessPolicyConfigurationDefault](https://learn.microsoft.com/en-us/graph/api/resources/crosstenantaccesspolicyconfigurationdefault?view=graph-rest-beta) resource.", + "Description": "Added the [Update m365CapabilityBase](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities?view=graph-rest-beta) method to the [crossTenantAccessPolicyConfigurationDefault](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationdefault?view=graph-rest-beta) resource.", "Target": "crossTenantAccessPolicyConfigurationDefault" }, { - "Id": "7aa56ae6-269f-4d96-ac9f-327c7872fba7", + "Id": "099f293a-1f03-45c9-a4e8-b1d87d782a16", "ApiChange": "Method", "ChangedApiName": "PATCH", "ChangeType": "Addition", - "Description": "Added the [Update m365CapabilityBase](https://learn.microsoft.com/en-us/graph/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities?view=graph-rest-beta) method to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/en-us/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-beta) resource.", + "Description": "Added the [Update m365CapabilityBase](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities?view=graph-rest-beta) method to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-beta) resource.", "Target": "crossTenantAccessPolicyConfigurationPartner" }, { - "Id": "7aa56ae6-269f-4d96-ac9f-327c7872fba7", + "Id": "dddbc1b8-0ff0-4ac0-bad3-465fb503f74a", "ApiChange": "Method", "ChangedApiName": "DELETE", "ChangeType": "Addition", - "Description": "Added the [Delete m365CapabilityBase](https://learn.microsoft.com/en-us/graph/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities?view=graph-rest-beta) method to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/en-us/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-beta) resource.", + "Description": "Added the [Delete m365CapabilityBase](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities?view=graph-rest-beta) method to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-beta) resource.", "Target": "crossTenantAccessPolicyConfigurationPartner" } ], - "Id": "7aa56ae6-269f-4d96-ac9f-327c7872fba7", + "Id": "9f91f2cc-3df6-44ad-b60a-fbfeeafdb16a", "Cloud": "Prod", "Version": "beta", "CreatedDateTime": "2026-07-21T10:00:00.0000000Z", @@ -37,175 +247,175 @@ { "ChangeList": [ { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "b724b89f-6fa9-412f-a397-689f227e91d9", "ApiChange": "Resource", "ChangedApiName": "m365CapabilityInboundAccess", "ChangeType": "Addition", - "Description": "Added the [m365CapabilityInboundAccess](https://learn.microsoft.com/en-us/graph/api/resources/m365CapabilityInboundAccess?view=graph-rest-beta) resource.", + "Description": "Added the [m365CapabilityInboundAccess](https://learn.microsoft.com/graph/api/resources/m365capabilityinboundaccess?view=graph-rest-beta) resource.", "Target": "m365CapabilityInboundAccess" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "8176cd6b-f1cf-4ef3-bdce-396be8f32e73", "ApiChange": "Resource", "ChangedApiName": "m365CapabilityResourceScope", "ChangeType": "Addition", - "Description": "Added the [m365CapabilityResourceScope](https://learn.microsoft.com/en-us/graph/api/resources/m365CapabilityResourceScope?view=graph-rest-beta) resource.", + "Description": "Added the [m365CapabilityResourceScope](https://learn.microsoft.com/graph/api/resources/m365capabilityresourcescope?view=graph-rest-beta) resource.", "Target": "m365CapabilityResourceScope" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "eab70da0-51a8-48f9-a12e-a6b2f0037e61", "ApiChange": "Resource", "ChangedApiName": "m365CapabilityResourceScopes", "ChangeType": "Addition", - "Description": "Added the [m365CapabilityResourceScopes](https://learn.microsoft.com/en-us/graph/api/resources/m365CapabilityResourceScopes?view=graph-rest-beta) resource.", + "Description": "Added the [m365CapabilityResourceScopes](https://learn.microsoft.com/graph/api/resources/m365capabilityresourcescopes?view=graph-rest-beta) resource.", "Target": "m365CapabilityResourceScopes" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "2486ba5a-4840-4a4e-b519-e7c186d3776d", "ApiChange": "Relationship", "ChangedApiName": "m365Capabilities", "ChangeType": "Addition", - "Description": "Added the **m365Capabilities** relationship to the [crossTenantAccessPolicyConfigurationDefault](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantAccessPolicyConfigurationDefault?view=graph-rest-beta) resource.", + "Description": "Added the **m365Capabilities** relationship to the [crossTenantAccessPolicyConfigurationDefault](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationdefault?view=graph-rest-beta) resource.", "Target": "crossTenantAccessPolicyConfigurationDefault" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "18395805-151c-4db4-b48c-f8e245658944", "ApiChange": "Relationship", "ChangedApiName": "m365Capabilities", "ChangeType": "Addition", - "Description": "Added the **m365Capabilities** relationship to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantAccessPolicyConfigurationPartner?view=graph-rest-beta) resource.", + "Description": "Added the **m365Capabilities** relationship to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-beta) resource.", "Target": "crossTenantAccessPolicyConfigurationPartner" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "a20d0808-faba-4edf-b65a-5bc60a99b5db", "ApiChange": "Method", "ChangedApiName": "GET", "ChangeType": "Addition", - "Description": "Added the **List m365Capabilities** method to the **crossTenantAccessPolicyConfigurationDefault** resource.", + "Description": "Added the [List m365Capabilities](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities?view=graph-rest-beta) method to the [crossTenantAccessPolicyConfigurationDefault](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationdefault?view=graph-rest-beta) resource.", "Target": "crossTenantAccessPolicyConfigurationDefault" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "3a4969f5-a903-4e13-a7d2-4bd0eba54faa", "ApiChange": "Method", "ChangedApiName": "POST", "ChangeType": "Addition", - "Description": "Added the **Create m365CapabilityBase** method to the **crossTenantAccessPolicyConfigurationDefault** resource.", + "Description": "Added the [Create m365CapabilityBase](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities?view=graph-rest-beta) method to the [crossTenantAccessPolicyConfigurationDefault](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationdefault?view=graph-rest-beta) resource.", "Target": "crossTenantAccessPolicyConfigurationDefault" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "89846851-e400-4d40-ba8d-a6dcd0126f4c", "ApiChange": "Method", "ChangedApiName": "GET", "ChangeType": "Addition", - "Description": "Added the **List m365Capabilities** method to the **crossTenantAccessPolicyConfigurationPartner** resource.", + "Description": "Added the [List m365Capabilities](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities?view=graph-rest-beta) method to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-beta) resource.", "Target": "crossTenantAccessPolicyConfigurationPartner" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "d2c7f433-4c6c-4098-9e57-e694270631a4", "ApiChange": "Method", "ChangedApiName": "POST", "ChangeType": "Addition", - "Description": "Added the **Create m365CapabilityBase** method to the **crossTenantAccessPolicyConfigurationPartner** resource.", + "Description": "Added the [Create m365CapabilityBase](https://learn.microsoft.com/graph/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities?view=graph-rest-beta) method to the [crossTenantAccessPolicyConfigurationPartner](https://learn.microsoft.com/graph/api/resources/crosstenantaccesspolicyconfigurationpartner?view=graph-rest-beta) resource.", "Target": "crossTenantAccessPolicyConfigurationPartner" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "1d15d733-d170-43d5-b600-eb8df4865ea0", "ApiChange": "Resource", "ChangedApiName": "crossTenantCalendarAvailabilityBasic", "ChangeType": "Addition", - "Description": "Added the [crossTenantCalendarAvailabilityBasic](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantCalendarAvailabilityBasic?view=graph-rest-beta) resource.", + "Description": "Added the [crossTenantCalendarAvailabilityBasic](https://learn.microsoft.com/graph/api/resources/crosstenantcalendaravailabilitybasic?view=graph-rest-beta) resource.", "Target": "crossTenantCalendarAvailabilityBasic" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "be09be0c-ebaa-4d70-b56c-5a5c4f2eb97e", "ApiChange": "Resource", "ChangedApiName": "crossTenantCalendarAvailabilityLimitedDetails", "ChangeType": "Addition", - "Description": "Added the [crossTenantCalendarAvailabilityLimitedDetails](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantCalendarAvailabilityLimitedDetails?view=graph-rest-beta) resource.", + "Description": "Added the [crossTenantCalendarAvailabilityLimitedDetails](https://learn.microsoft.com/graph/api/resources/crosstenantcalendaravailabilitylimiteddetails?view=graph-rest-beta) resource.", "Target": "crossTenantCalendarAvailabilityLimitedDetails" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "823aaf59-fb0d-45eb-afb5-ca83459e0b0d", "ApiChange": "Resource", "ChangedApiName": "crossTenantCalendarSharingFreeBusyDetail", "ChangeType": "Addition", - "Description": "Added the [crossTenantCalendarSharingFreeBusyDetail](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantCalendarSharingFreeBusyDetail?view=graph-rest-beta) resource.", + "Description": "Added the [crossTenantCalendarSharingFreeBusyDetail](https://learn.microsoft.com/graph/api/resources/crosstenantcalendarsharingfreebusydetail?view=graph-rest-beta) resource.", "Target": "crossTenantCalendarSharingFreeBusyDetail" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "f5087bb4-f280-4552-85d5-61a825995b5b", "ApiChange": "Resource", "ChangedApiName": "crossTenantCalendarSharingFreeBusyReviewer", "ChangeType": "Addition", - "Description": "Added the [crossTenantCalendarSharingFreeBusyReviewer](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantCalendarSharingFreeBusyReviewer?view=graph-rest-beta) resource.", + "Description": "Added the [crossTenantCalendarSharingFreeBusyReviewer](https://learn.microsoft.com/graph/api/resources/crosstenantcalendarsharingfreebusyreviewer?view=graph-rest-beta) resource.", "Target": "crossTenantCalendarSharingFreeBusyReviewer" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "a1a0f53d-3de8-42ca-b0b8-a19ddab91666", "ApiChange": "Resource", "ChangedApiName": "crossTenantCalendarSharingFreeBusySimple", "ChangeType": "Addition", - "Description": "Added the [crossTenantCalendarSharingFreeBusySimple](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantCalendarSharingFreeBusySimple?view=graph-rest-beta) resource.", + "Description": "Added the [crossTenantCalendarSharingFreeBusySimple](https://learn.microsoft.com/graph/api/resources/crosstenantcalendarsharingfreebusysimple?view=graph-rest-beta) resource.", "Target": "crossTenantCalendarSharingFreeBusySimple" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "d13e9fcf-397e-4c88-8390-cb0fd0e1f1aa", "ApiChange": "Resource", "ChangedApiName": "crossTenantMailTipsAll", "ChangeType": "Addition", - "Description": "Added the [crossTenantMailTipsAll](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantMailTipsAll?view=graph-rest-beta) resource.", + "Description": "Added the [crossTenantMailTipsAll](https://learn.microsoft.com/graph/api/resources/crosstenantmailtipsall?view=graph-rest-beta) resource.", "Target": "crossTenantMailTipsAll" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "440d0817-1d1c-4c2d-a2e4-87b57273ab56", "ApiChange": "Resource", "ChangedApiName": "crossTenantMailTipsLimited", "ChangeType": "Addition", - "Description": "Added the [crossTenantMailTipsLimited](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantMailTipsLimited?view=graph-rest-beta) resource.", + "Description": "Added the [crossTenantMailTipsLimited](https://learn.microsoft.com/graph/api/resources/crosstenantmailtipslimited?view=graph-rest-beta) resource.", "Target": "crossTenantMailTipsLimited" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "d4cfe310-27eb-491a-a677-e8841d2d9773", "ApiChange": "Resource", "ChangedApiName": "crossTenantMigration", "ChangeType": "Addition", - "Description": "Added the [crossTenantMigration](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantMigration?view=graph-rest-beta) resource.", + "Description": "Added the [crossTenantMigration](https://learn.microsoft.com/graph/api/resources/crosstenantmigration?view=graph-rest-beta) resource.", "Target": "crossTenantMigration" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "744d31c6-cb42-4f1e-979e-e09efc83019b", "ApiChange": "Resource", "ChangedApiName": "crossTenantOpenProfileCard", "ChangeType": "Addition", - "Description": "Added the [crossTenantOpenProfileCard](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantOpenProfileCard?view=graph-rest-beta) resource.", + "Description": "Added the [crossTenantOpenProfileCard](https://learn.microsoft.com/graph/api/resources/crosstenantopenprofilecard?view=graph-rest-beta) resource.", "Target": "crossTenantOpenProfileCard" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "9e881cae-ca2c-4754-89c2-2dc5479448b9", "ApiChange": "Resource", "ChangedApiName": "crossTenantPlacesDeskBooking", "ChangeType": "Addition", - "Description": "Added the [crossTenantPlacesDeskBooking](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantPlacesDeskBooking?view=graph-rest-beta) resource.", + "Description": "Added the [crossTenantPlacesDeskBooking](https://learn.microsoft.com/graph/api/resources/crosstenantplacesdeskbooking?view=graph-rest-beta) resource.", "Target": "crossTenantPlacesDeskBooking" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "7530ea99-b0a1-490a-89b7-9fc1ef84868d", "ApiChange": "Resource", "ChangedApiName": "crossTenantPlacesRoomBooking", "ChangeType": "Addition", - "Description": "Added the [crossTenantPlacesRoomBooking](https://learn.microsoft.com/en-us/graph/api/resources/crossTenantPlacesRoomBooking?view=graph-rest-beta) resource.", + "Description": "Added the [crossTenantPlacesRoomBooking](https://learn.microsoft.com/graph/api/resources/crosstenantplacesroombooking?view=graph-rest-beta) resource.", "Target": "crossTenantPlacesRoomBooking" }, { - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "ac51e570-f981-4a0f-bfa8-376a6d1bbec4", "ApiChange": "Enumeration", "ChangedApiName": "m365ResourceType", "ChangeType": "Addition", - "Description": "Added the **m365ResourceType** enumeration type. For details, see [m365CapabilityInboundAccess](https://learn.microsoft.com/en-us/graph/api/resources/m365CapabilityInboundAccess?view=graph-rest-beta).", + "Description": "Added the **m365ResourceType** enumeration type. For details, see [m365CapabilityInboundAccess](https://learn.microsoft.com/graph/api/resources/m365capabilityinboundaccess?view=graph-rest-beta).", "Target": "m365ResourceType" } ], - "Id": "bd386b48-f0cf-4b48-9bfb-2500f71ee753", + "Id": "88329f91-d0c2-401b-8056-0195245e7c32", "Cloud": "Prod", "Version": "beta", "CreatedDateTime": "2026-05-04T13:06:28.2230249Z", diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index c802449d7a8..7bf856eafa8 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -33,6 +33,10 @@ Added the [recovery](/graph/api/resources/entrarecoveryservices-recovery) resour Added the [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) resource type and methods to [create](/graph/api/entitlementmanagement-post-externaloriginresourceconnectors), [list](/graph/api/entitlementmanagement-list-externaloriginresourceconnectors), [get](/graph/api/externaloriginresourceconnector-get), [update](/graph/api/externaloriginresourceconnector-update), and [delete](/graph/api/externaloriginresourceconnector-delete) connections from Microsoft Entra entitlement management to SAP Identity Access Governance (SAP IAG). For an SAP IAG connector, specify the SAP IAG endpoint, OAuth token endpoint, and client ID, along with the Azure subscription, resource group, key vault, and secret that identify where its client secret is stored. The connector is associated with an access package resource so that entitlement management can provision access to resources in SAP IAG through access packages. +### Identity and access | Identity and sign-in + +Added support for managing Microsoft 365 cross-tenant capabilities in cross-tenant access policies. Use the [m365CapabilityBase](/graph/api/resources/m365capabilitybase) resource and the **m365Capabilities** relationship to manage which Microsoft 365 experiences—such as calendar sharing, MailTips, places booking, and cross-tenant migration—are enabled between tenants. For the default policy, you can [list](/graph/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities), [create](/graph/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities), and [update](/graph/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities) capabilities. For partner policies, you can [list](/graph/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities), [create](/graph/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities), [update](/graph/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities), and [delete](/graph/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities) capabilities. + ### Mailbox import and export Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources/mailboxfolder) resource type in v1.0. Use this property to identify folders created by Outlook by using a locale-independent name. From c610b5ba097803095786ee495182a25acfb2a2d3 Mon Sep 17 00:00:00 2001 From: Ryutaro Koma Date: Fri, 21 Aug 2026 02:55:40 +0900 Subject: [PATCH 076/189] Add example in sitepage-publish.md (#29381) * Add example in sitepage-publish.md Added example request and response for publishing a site page. * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- api-reference/v1.0/api/sitepage-publish.md | 17 +++++++++++++++++ 1 file changed, 17 insertions(+) diff --git a/api-reference/v1.0/api/sitepage-publish.md b/api-reference/v1.0/api/sitepage-publish.md index 8247b89802c..0c57c63b82c 100644 --- a/api-reference/v1.0/api/sitepage-publish.md +++ b/api-reference/v1.0/api/sitepage-publish.md @@ -51,6 +51,23 @@ If successful, this method returns a `204 No Content`. It doesn't return anythin HTTP/1.1 204 No Content ``` +## Example +The following is an example of how to call this API. + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/v1.0/sites/{siteId}/pages/{pageId}/microsoft.graph.sitePage/publish +``` + +### Response +The following example shows the response. + +```http +HTTP/1.1 204 No Content +``` +``` json +{ + "@odata.type": "#microsoft.graph.accessReviewAccessPackageAssignmentPolicyScope", + "resourceId": "String", + "scopeType": "String", + "displayName": "String", + "accessPackageId": "String", + "accessPackageDisplayName": "String", + "catalogId": "String", + "catalogDisplayName": "String" +} +``` diff --git a/api-reference/v1.0/resources/accessreviewerror.md b/api-reference/v1.0/resources/accessreviewerror.md new file mode 100644 index 00000000000..87a88982e53 --- /dev/null +++ b/api-reference/v1.0/resources/accessreviewerror.md @@ -0,0 +1,53 @@ +--- +title: "accessReviewError resource type" +description: "Represents an error that occurred within an access review instance lifecycle." +author: "jyothig123" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +ms.date: 08/10/2026 +--- + +# accessReviewError resource type + +Namespace: microsoft.graph + +In an [accessReviewInstance](../resources/accessreviewinstance.md), the **errors** property contains errors that occurred in the access review instance lifecycle. This resource is read-only. + +Inherits from [genericError](../resources/genericerror.md). + +## Properties +| Property | Type | Description | +| :--------------------------- | :------ | :---------- | +| code |String | Represents the error type. Inherited from [genericError](../resources/genericerror.md). Read-only. | +| message |String | Represents the error details. Inherited from [genericError](../resources/genericerror.md). Read-only.| + +## Relationships +None. + + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.accessReviewError", + "code": "String", + "message": "String" +} +``` + + diff --git a/api-reference/v1.0/resources/accessreviewinstance.md b/api-reference/v1.0/resources/accessreviewinstance.md index 28ca18ec2d2..fc1361b8efa 100644 --- a/api-reference/v1.0/resources/accessreviewinstance.md +++ b/api-reference/v1.0/resources/accessreviewinstance.md @@ -5,7 +5,7 @@ author: "jyothig123" ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType -ms.date: 07/15/2024 +ms.date: 08/10/2026 --- # accessReviewInstance resource type @@ -40,6 +40,7 @@ Inherits from [entity](../resources/entity.md). | Property | Type | Description | | :-------------------------| :---------------------------------- | :---------- | | endDateTime | DateTimeOffset | DateTime when review instance is scheduled to end.The DatetimeOffset type represents date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`. Supports `$select`. Read-only.| +| errors | [accessReviewError](../resources/accessreviewerror.md) collection| Collection of errors in an access review instance lifecycle. Read-only. | | fallbackReviewers |[accessReviewReviewerScope](../resources/accessreviewreviewerscope.md) collection| This collection of reviewer scopes is used to define the list of fallback reviewers. These fallback reviewers will be notified to take action if no users are found from the list of reviewers specified. This could occur when either the group owner is specified as the reviewer but the group owner does not exist, or manager is specified as reviewer but a user's manager does not exist. Supports `$select`.| | id | String | Unique identifier of the instance. Supports `$select`. Read-only.| | reviewers |[accessReviewReviewerScope](../resources/accessreviewreviewerscope.md) collection| This collection of access review scopes is used to define who the reviewers are. Supports `$select`. For examples of options for assigning reviewers, see [Assign reviewers to your access review definition using the Microsoft Graph API](/graph/accessreviews-scope-concept).| @@ -77,6 +78,11 @@ The following JSON representation shows the resource type. } ], "endDateTime": "string (timestamp)", + "errors": [ + { + "@odata.type": "microsoft.graph.accessReviewError" + } + ], "fallbackReviewers": [ { "@odata.type": "microsoft.graph.accessReviewReviewerScope" diff --git a/api-reference/v1.0/resources/accessreviewinstancedecisionitem.md b/api-reference/v1.0/resources/accessreviewinstancedecisionitem.md index a041be16680..3bbc8103872 100644 --- a/api-reference/v1.0/resources/accessreviewinstancedecisionitem.md +++ b/api-reference/v1.0/resources/accessreviewinstancedecisionitem.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType toc.keywords: [ access review decisions ] -ms.date: 07/22/2024 +ms.date: 08/10/2026 --- # accessReviewInstanceDecisionItem resource type @@ -34,6 +34,7 @@ Inherits from [entity](../resources/entity.md). |accessReviewId|String|The identifier of the accessReviewInstance parent. Supports `$select`. Read-only.| |appliedBy|[userIdentity](../resources/useridentity.md)|The identifier of the user who applied the decision. Read-only.| |appliedDateTime|DateTimeOffset|The timestamp when the approval decision was applied.`00000000-0000-0000-0000-000000000000` if the assigned reviewer hasn't applied the decision or it was automatically applied. The DatetimeOffset type represents date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`. Supports `$select`. Read-only.| +|applyDescription|String|The description of the apply result. Read-only.| |applyResult|String|The result of applying the decision. Possible values: `New`, `AppliedSuccessfully`, `AppliedWithUnknownFailure`, `AppliedSuccessfullyButObjectNotFound` and `ApplyNotSupported`. Supports `$select`, `$orderby`, and `$filter` (`eq` only). Read-only.| |decision|String|Result of the review. Possible values: `Approve`, `Deny`, `NotReviewed`, or `DontKnow`. Supports `$select`, `$orderby`, and `$filter` (`eq` only). | |id|String| The identifier of the decision. Inherited from [entity](../resources/entity.md). Supports `$select`. Read-only.| @@ -69,6 +70,7 @@ The following JSON representation shows the resource type. "@odata.type": "microsoft.graph.userIdentity" }, "appliedDateTime": "String (timestamp)", + "applyDescription": "String", "applyResult": "String", "decision": "String", "id": "String (identifier)", diff --git a/api-reference/v1.0/resources/accessreviewinstancedecisionitemserviceprincipalresource.md b/api-reference/v1.0/resources/accessreviewinstancedecisionitemserviceprincipalresource.md index 0128df001a6..dc2dc8421ce 100644 --- a/api-reference/v1.0/resources/accessreviewinstancedecisionitemserviceprincipalresource.md +++ b/api-reference/v1.0/resources/accessreviewinstancedecisionitemserviceprincipalresource.md @@ -5,7 +5,7 @@ author: "jyothig123" ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType -ms.date: 07/22/2024 +ms.date: 08/10/2026 --- # accessReviewInstanceDecisionItemServicePrincipalResource resource type @@ -20,6 +20,8 @@ Inherits from [accessReviewInstanceDecisionItemResource](accessreviewinstancedec |Property|Type|Description| |:---|:---|:---| | appId | String | The globally unique identifier of the application to which access has been granted. | +| appRoleDisplayName | String | The display name of the app role. | +| appRoleId | String | The identifier of the app role. | | displayName | String | Display name of the resource. Inherited from [accessReviewInstanceDecisionItemResource](accessreviewinstancedecisionItemresource.md).| | id | String | Identifier of the decision item resource. Inherited from [accessReviewInstanceDecisionItemResource](accessreviewinstancedecisionItemresource.md). | | type | String | Type of resource. Type will always be `ServicePrincipal`. Inherited from [accessReviewInstanceDecisionItemResource](accessreviewinstancedecisionItemresource.md). | @@ -41,6 +43,8 @@ The following JSON representation shows the resource type. { "@odata.type": "#microsoft.graph.accessreviewinstancedecisionitemserviceprincipalresource", "appId": "String", + "appRoleDisplayName": "String", + "appRoleId": "String", "displayName": "String", "id": "String (identifier)", "type": "String" diff --git a/api-reference/v1.0/resources/accessreviewprincipalscope.md b/api-reference/v1.0/resources/accessreviewprincipalscope.md new file mode 100644 index 00000000000..ef7cd494763 --- /dev/null +++ b/api-reference/v1.0/resources/accessreviewprincipalscope.md @@ -0,0 +1,41 @@ +--- +title: "accessReviewPrincipalScope resource type" +description: "Defines the type of users that are reviewed in an access review." +author: "jyothig123" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +ms.date: 08/10/2026 +--- + +# accessReviewPrincipalScope resource type + +Namespace: microsoft.graph + +An **accessReviewPrincipalScope** object defines the type of users to include in an [access review](../resources/accessreviewsv2-overview.md), without writing a query expression. + +Use it in the **principalScopes** collection of a [principalResourceMembershipsScope](../resources/principalresourcemembershipsscope.md) object to state which population of principals has its access reviewed. + +Inherits from [accessReviewScope](../resources/accessreviewscope.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|scopeType|accessReviewPrincipalScopeType| The type of users to include in the review. The possible values are: `allUsers`, `guestUsers`, `inactiveUsers`, `inactiveGuestUsers`, `unknownFutureValue`.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.accessReviewPrincipalScope", + "scopeType": "String" +} +``` diff --git a/api-reference/v1.0/resources/accessreviewresourcescope.md b/api-reference/v1.0/resources/accessreviewresourcescope.md new file mode 100644 index 00000000000..2df7d071a99 --- /dev/null +++ b/api-reference/v1.0/resources/accessreviewresourcescope.md @@ -0,0 +1,47 @@ +--- +title: "accessReviewResourceScope resource type" +description: "Defines the type of resource that is reviewed in an access review." +author: "jyothig123" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +ms.date: 08/10/2026 +--- + +# accessReviewResourceScope resource type + +Namespace: microsoft.graph + +An **accessReviewResourceScope** object defines the type of resource that users have access to in an [access review](../resources/accessreviewsv2-overview.md). + +Use it in the **resourceScopes** collection of a [principalResourceMembershipsScope](../resources/principalresourcemembershipsscope.md) object to identify the resource whose access is reviewed. + +Inherits from [accessReviewScope](../resources/accessreviewscope.md). + +This type is inherited by [accessReviewAccessPackageAssignmentPolicyScope](../resources/accessreviewaccesspackageassignmentpolicyscope.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|displayName|String| The display name of the resource. | +|resourceId|String| The identifier of the resource. | +|scopeType|accessReviewResourceScopeType| The type of the resource. The possible values are: `group`, `catalog`, `servicePrincipal`, `directoryRole`, `accessPackageAssignmentPolicy`, `unknownFutureValue`.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.accessReviewResourceScope", + "resourceId": "String", + "scopeType": "String", + "displayName": "String" +} +``` diff --git a/api-reference/v1.0/resources/accessreviewreviewerscope.md b/api-reference/v1.0/resources/accessreviewreviewerscope.md index ba11b09007e..51794420e3c 100644 --- a/api-reference/v1.0/resources/accessreviewreviewerscope.md +++ b/api-reference/v1.0/resources/accessreviewreviewerscope.md @@ -5,7 +5,7 @@ author: "jyothig123" ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType -ms.date: 07/22/2024 +ms.date: 08/10/2026 --- # accessReviewReviewerScope resource type @@ -29,6 +29,8 @@ Inherits from [accessReviewScope](../resources/accessreviewscope.md). | query | String | The query specifying who will be the reviewer.| | queryRoot | String | In the scenario where reviewers need to be specified dynamically, this property is used to indicate the relative source of the query. This property is only required if a relative query, for example, `./manager`, is specified. Possible value: `decisions`. | | queryType | String | The type of query. Examples include `MicrosoftGraph` and `ARM`. | +| reviewerId | String | The identifier of the reviewer. | +| scopeType | accessReviewReviewerScopeType | The type of the reviewer scope. The possible values are: `user`, `group`, `self`, `manager`, `sponsor`, `resourceOwner`, `managerOrSponsor`, `unknownFutureValue`. | For more about configuration options for **reviewers**, see [Assign reviewers to your access review definition using the Microsoft Graph API](/graph/accessreviews-reviewers-concept). @@ -47,6 +49,8 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.accessReviewReviewerScope", "query": "String", "queryRoot": "String", - "queryType": "String" + "queryType": "String", + "reviewerId": "String", + "scopeType": "String" } ``` diff --git a/api-reference/v1.0/resources/accessreviewscope.md b/api-reference/v1.0/resources/accessreviewscope.md index b27dcf22eed..ba1e842f460 100644 --- a/api-reference/v1.0/resources/accessreviewscope.md +++ b/api-reference/v1.0/resources/accessreviewscope.md @@ -5,7 +5,7 @@ author: "jyothig123" ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType -ms.date: 07/22/2024 +ms.date: 08/10/2026 --- # accessReviewScope resource type @@ -17,7 +17,7 @@ Use **accessReviewScope** to configure what is reviewed in the following propert - [accessReviewInstance](../resources/accessreviewinstance.md): **scope** - [accessReviewHistoryDefinition](../resources/accessreviewhistorydefinition.md): **scopes** -This abstract type is inherited by [accessReviewQueryScope](../resources/accessreviewqueryscope.md), [principalResourceMembershipsScope](../resources/principalresourcemembershipsscope.md), and [accessReviewReviewerScope](../resources/accessreviewreviewerscope.md). +This abstract type is inherited by [accessReviewQueryScope](../resources/accessreviewqueryscope.md), [principalResourceMembershipsScope](../resources/principalresourcemembershipsscope.md), [accessReviewPrincipalScope](../resources/accessreviewprincipalscope.md), [accessReviewResourceScope](../resources/accessreviewresourcescope.md), and [accessReviewReviewerScope](../resources/accessreviewreviewerscope.md). Specifying the OData type in **scope** is highly recommended for all types but required for [principalResourceMembershipsScope](../resources/principalresourcemembershipsscope.md) and [accessReviewInactiveUsersQueryScope](../resources/accessreviewinactiveusersqueryscope.md). diff --git a/api-reference/v1.0/resources/enums.md b/api-reference/v1.0/resources/enums.md index 6bca6ce1bde..70027e2d160 100644 --- a/api-reference/v1.0/resources/enums.md +++ b/api-reference/v1.0/resources/enums.md @@ -3,7 +3,7 @@ title: "Enum values" description: "Microsoft Graph enumeration values." ms.localizationpriority: medium ms.subservice: "non-product-specific" -ms.date: 05/26/2026 +ms.date: 08/10/2026 author: "MSGraphDocsvTeam" doc_type: enumPageType ms.custom: sfi-ropc-nochange @@ -220,6 +220,40 @@ Namespace: microsoft.graph |relaxed| |unknownFutureValue| +### accessReviewPrincipalScopeType values + +|Member| +|:---| +|allUsers| +|guestUsers| +|inactiveUsers| +|inactiveGuestUsers| +|unknownFutureValue| + +### accessReviewResourceScopeType values + +|Member| +|:---| +|group| +|catalog| +|servicePrincipal| +|directoryRole| +|accessPackageAssignmentPolicy| +|unknownFutureValue| + +### accessReviewReviewerScopeType values + +|Member| +|:---| +|user| +|group| +|self| +|manager| +|sponsor| +|resourceOwner| +|managerOrSponsor| +|unknownFutureValue| + ### applicationDataType values |Member| diff --git a/api-reference/v1.0/resources/genericerror.md b/api-reference/v1.0/resources/genericerror.md index 4c3ebd243ce..9d5cfb33dc6 100644 --- a/api-reference/v1.0/resources/genericerror.md +++ b/api-reference/v1.0/resources/genericerror.md @@ -5,7 +5,7 @@ ms.localizationpriority: medium doc_type: resourcePageType ms.subservice: outlook author: "SuryaLashmiS" -ms.date: 04/12/2024 +ms.date: 08/11/2026 --- # genericError resource type @@ -14,6 +14,10 @@ Namespace: microsoft.graph A general-purpose error. +The **genericError** resource is the base type for the following resource: + +- [accessReviewError](accessreviewerror.md) + ## Properties | Property | Type | Description | diff --git a/api-reference/v1.0/resources/principalresourcemembershipsscope.md b/api-reference/v1.0/resources/principalresourcemembershipsscope.md index a68d4df2920..50992566caf 100644 --- a/api-reference/v1.0/resources/principalresourcemembershipsscope.md +++ b/api-reference/v1.0/resources/principalresourcemembershipsscope.md @@ -5,7 +5,7 @@ author: "jyothig123" ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType -ms.date: 04/03/2024 +ms.date: 08/10/2026 --- # principalResourceMembershipsScope resource type @@ -19,8 +19,8 @@ Inherits from [accessReviewScope](../resources/accessreviewscope.md). ## Properties |Property|Type|Description| |:---|:---|:---| -|principalScopes|[accessReviewScope](../resources/accessreviewscope.md) collection|Defines the scopes of the principals whose access to resources are reviewed in the access review.| -|resourceScopes|[accessReviewScope](../resources/accessreviewscope.md) collection|Defines the scopes of the resources for which access is reviewed.| +|principalScopes|[accessReviewScope](../resources/accessreviewscope.md) collection|Defines the scopes of the principals whose access to resources are reviewed in the access review. Use an [accessReviewPrincipalScope](../resources/accessreviewprincipalscope.md) object to select a well-known population of principals, such as all guest users.| +|resourceScopes|[accessReviewScope](../resources/accessreviewscope.md) collection|Defines the scopes of the resources for which access is reviewed. Use an [accessReviewResourceScope](../resources/accessreviewresourcescope.md) object to identify the resource, or an [accessReviewAccessPackageAssignmentPolicyScope](../resources/accessreviewaccesspackageassignmentpolicyscope.md) object when the resource is an access package assignment policy.| You must also specify the **@odata.type** type property with the value `#microsoft.graph.principalResourceMembershipsScope`. For more about configuration options for **scope** using **principalResourceMembershipsScope**, see [Configure the scope of your access review definition using the Microsoft Graph API](/graph/accessreviews-scope-concept). diff --git a/changelog/Microsoft.IdentityGovernance.AccessReviews.json b/changelog/Microsoft.IdentityGovernance.AccessReviews.json index f590c457ac3..51f28ceec0d 100644 --- a/changelog/Microsoft.IdentityGovernance.AccessReviews.json +++ b/changelog/Microsoft.IdentityGovernance.AccessReviews.json @@ -1,5 +1,127 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "Property", + "ChangedApiName": "reviewerId", + "ChangeType": "Addition", + "Description": "Added the **reviewerId** property to the [accessReviewReviewerScope](https://learn.microsoft.com/graph/api/resources/accessreviewreviewerscope) resource to identify a reviewer directly instead of through a query.", + "Target": "accessReviewReviewerScope" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "Property", + "ChangedApiName": "scopeType", + "ChangeType": "Addition", + "Description": "Added the **scopeType** property to the [accessReviewReviewerScope](https://learn.microsoft.com/graph/api/resources/accessreviewreviewerscope) resource to specify how a reviewer is resolved as a well-known scope rather than as a query.", + "Target": "accessReviewReviewerScope" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "Property", + "ChangedApiName": "applyDescription", + "ChangeType": "Addition", + "Description": "Added the **applyDescription** property to the [accessReviewInstanceDecisionItem](https://learn.microsoft.com/graph/api/resources/accessreviewinstancedecisionitem) resource to describe the result of applying a decision.", + "Target": "accessReviewInstanceDecisionItem" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "Property", + "ChangedApiName": "appRoleId", + "ChangeType": "Addition", + "Description": "Added the **appRoleId** property to the [accessReviewInstanceDecisionItemServicePrincipalResource](https://learn.microsoft.com/graph/api/resources/accessreviewinstancedecisionitemserviceprincipalresource) resource to identify the app role under review.", + "Target": "accessReviewInstanceDecisionItemServicePrincipalResource" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "Property", + "ChangedApiName": "appRoleDisplayName", + "ChangeType": "Addition", + "Description": "Added the **appRoleDisplayName** property to the [accessReviewInstanceDecisionItemServicePrincipalResource](https://learn.microsoft.com/graph/api/resources/accessreviewinstancedecisionitemserviceprincipalresource) resource to provide the display name of the app role under review.", + "Target": "accessReviewInstanceDecisionItemServicePrincipalResource" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "Property", + "ChangedApiName": "errors", + "ChangeType": "Addition", + "Description": "Added the **errors** property to the [accessReviewInstance](https://learn.microsoft.com/graph/api/resources/accessreviewinstance) resource to report errors that occurred during the access review instance lifecycle.", + "Target": "accessReviewInstance" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "Resource", + "ChangedApiName": "accessReviewError", + "ChangeType": "Addition", + "Description": "Added the [accessReviewError](https://learn.microsoft.com/graph/api/resources/accessreviewerror) resource type to represent an error reported through the **errors** property of an [accessReviewInstance](https://learn.microsoft.com/graph/api/resources/accessreviewinstance).", + "Target": "accessReviewError" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "Resource", + "ChangedApiName": "accessReviewPrincipalScope", + "ChangeType": "Addition", + "Description": "Added the [accessReviewPrincipalScope](https://learn.microsoft.com/graph/api/resources/accessreviewprincipalscope) resource type to select a well-known population of principals, such as all guest users, in the **principalScopes** property of a [principalResourceMembershipsScope](https://learn.microsoft.com/graph/api/resources/principalresourcemembershipsscope).", + "Target": "accessReviewPrincipalScope" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "Resource", + "ChangedApiName": "accessReviewResourceScope", + "ChangeType": "Addition", + "Description": "Added the [accessReviewResourceScope](https://learn.microsoft.com/graph/api/resources/accessreviewresourcescope) resource type to identify the resource whose access is reviewed in the **resourceScopes** property of a [principalResourceMembershipsScope](https://learn.microsoft.com/graph/api/resources/principalresourcemembershipsscope).", + "Target": "accessReviewResourceScope" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "Resource", + "ChangedApiName": "accessReviewAccessPackageAssignmentPolicyScope", + "ChangeType": "Addition", + "Description": "Added the [accessReviewAccessPackageAssignmentPolicyScope](https://learn.microsoft.com/graph/api/resources/accessreviewaccesspackageassignmentpolicyscope) resource type, which derives from [accessReviewResourceScope](https://learn.microsoft.com/graph/api/resources/accessreviewresourcescope), to scope a review to an access package assignment policy.", + "Target": "accessReviewAccessPackageAssignmentPolicyScope" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "EnumType", + "ChangedApiName": "accessReviewPrincipalScopeType", + "ChangeType": "Addition", + "Description": "Added the **accessReviewPrincipalScopeType** enumeration type to specify the categories of principals that a review can target.", + "Target": "accessReviewPrincipalScopeType" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "EnumType", + "ChangedApiName": "accessReviewResourceScopeType", + "ChangeType": "Addition", + "Description": "Added the **accessReviewResourceScopeType** enumeration type to specify the categories of resources that a review can target.", + "Target": "accessReviewResourceScopeType" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "EnumType", + "ChangedApiName": "accessReviewReviewerScopeType", + "ChangeType": "Addition", + "Description": "Added the **accessReviewReviewerScopeType** enumeration type to specify how a reviewer is resolved as a well-known scope.", + "Target": "accessReviewReviewerScopeType" + }, + { + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "ApiChange": "Resource", + "ChangedApiName": "genericError", + "ChangeType": "Addition", + "Description": "Added the [genericError](https://learn.microsoft.com/graph/api/resources/genericerror) complex type to the access reviews API surface as the base type of the [accessReviewError](https://learn.microsoft.com/graph/api/resources/accessreviewerror) resource.", + "Target": "genericError" + } + ], + "Id": "b70d247a-ca61-4d52-a892-6dfc2a7441b8", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-20T00:00:00.0000000Z", + "WorkloadArea": "Identity and access", + "SubArea": "Governance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 7bf856eafa8..5c45c2e250b 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -3,7 +3,7 @@ title: "What's new in Microsoft Graph" description: "Find out what's new in Microsoft Graph APIs, SDKs, documentation, and other resources." author: "lauragra" ms.localizationpriority: high -ms.date: 08/13/2026 +ms.date: 08/20/2026 ms.topic: whats-new --- @@ -33,6 +33,13 @@ Added the [recovery](/graph/api/resources/entrarecoveryservices-recovery) resour Added the [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) resource type and methods to [create](/graph/api/entitlementmanagement-post-externaloriginresourceconnectors), [list](/graph/api/entitlementmanagement-list-externaloriginresourceconnectors), [get](/graph/api/externaloriginresourceconnector-get), [update](/graph/api/externaloriginresourceconnector-update), and [delete](/graph/api/externaloriginresourceconnector-delete) connections from Microsoft Entra entitlement management to SAP Identity Access Governance (SAP IAG). For an SAP IAG connector, specify the SAP IAG endpoint, OAuth token endpoint, and client ID, along with the Azure subscription, resource group, key vault, and secret that identify where its client secret is stored. The connector is associated with an access package resource so that entitlement management can provision access to resources in SAP IAG through access packages. +- Added the **reviewerId** and **scopeType** properties to [accessReviewReviewerScope](/graph/api/resources/accessreviewreviewerscope) to specify a reviewer directly or as a well-known scope instead of through a query. +- Added the **applyDescription** property to [accessReviewInstanceDecisionItem](/graph/api/resources/accessreviewinstancedecisionitem) to describe the result of applying a decision. +- Added the **appRoleId** and **appRoleDisplayName** properties to [accessReviewInstanceDecisionItemServicePrincipalResource](/graph/api/resources/accessreviewinstancedecisionitemserviceprincipalresource) to identify the app role under review. +- Added the **errors** property to [accessReviewInstance](/graph/api/resources/accessreviewinstance) and the [accessReviewError](/graph/api/resources/accessreviewerror) resource type to report errors that occur during the review instance lifecycle. +- Added the [accessReviewPrincipalScope](/graph/api/resources/accessreviewprincipalscope), [accessReviewResourceScope](/graph/api/resources/accessreviewresourcescope), and [accessReviewAccessPackageAssignmentPolicyScope](/graph/api/resources/accessreviewaccesspackageassignmentpolicyscope) resource types. Use them in the **principalScopes** and **resourceScopes** properties of [principalResourceMembershipsScope](/graph/api/resources/principalresourcemembershipsscope) to state which principals have their access to which resources reviewed without writing a query expression. +- Added the **accessReviewPrincipalScopeType**, **accessReviewResourceScopeType**, and **accessReviewReviewerScopeType** enumeration types to identify well-known principal, resource, and reviewer scopes. + ### Identity and access | Identity and sign-in Added support for managing Microsoft 365 cross-tenant capabilities in cross-tenant access policies. Use the [m365CapabilityBase](/graph/api/resources/m365capabilitybase) resource and the **m365Capabilities** relationship to manage which Microsoft 365 experiences—such as calendar sharing, MailTips, places booking, and cross-tenant migration—are enabled between tenants. For the default policy, you can [list](/graph/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities), [create](/graph/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities), and [update](/graph/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities) capabilities. For partner policies, you can [list](/graph/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities), [create](/graph/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities), [update](/graph/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities), and [delete](/graph/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities) capabilities. From 832b9bc4e8f48726b371d57936b9ca18814e3a02 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Fri, 21 Aug 2026 09:30:31 -0600 Subject: [PATCH 079/189] Update generated permissions tables with build 234613 (#29475) Co-authored-by: Microsoft Graph DevX Tooling --- ...cyconfigurationdefault-list-m365capabilities-permissions.md | 3 ++- ...cyconfigurationdefault-post-m365capabilities-permissions.md | 3 ++- ...cyconfigurationpartner-list-m365capabilities-permissions.md | 3 ++- ...cyconfigurationpartner-post-m365capabilities-permissions.md | 3 ++- 4 files changed, 8 insertions(+), 4 deletions(-) diff --git a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities-permissions.md b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities-permissions.md index 829a267e64e..fc38603294b 100644 --- a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities-permissions.md +++ b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities-permissions.md @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|Policy.Read.All|Policy.ReadWrite.CrossTenantCapability| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Policy.Read.All|Policy.ReadWrite.CrossTenantCapability| \ No newline at end of file +|Application|Policy.Read.All|Policy.ReadWrite.CrossTenantCapability| + diff --git a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities-permissions.md b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities-permissions.md index c768b28ae82..37f1645f003 100644 --- a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities-permissions.md +++ b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities-permissions.md @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|Policy.ReadWrite.CrossTenantCapability|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Policy.ReadWrite.CrossTenantCapability|Not available.| \ No newline at end of file +|Application|Policy.ReadWrite.CrossTenantCapability|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities-permissions.md b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities-permissions.md index 829a267e64e..fc38603294b 100644 --- a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities-permissions.md +++ b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities-permissions.md @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|Policy.Read.All|Policy.ReadWrite.CrossTenantCapability| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Policy.Read.All|Policy.ReadWrite.CrossTenantCapability| \ No newline at end of file +|Application|Policy.Read.All|Policy.ReadWrite.CrossTenantCapability| + diff --git a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities-permissions.md b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities-permissions.md index c768b28ae82..37f1645f003 100644 --- a/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities-permissions.md +++ b/api-reference/v1.0/includes/permissions/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities-permissions.md @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|Policy.ReadWrite.CrossTenantCapability|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Policy.ReadWrite.CrossTenantCapability|Not available.| \ No newline at end of file +|Application|Policy.ReadWrite.CrossTenantCapability|Not available.| + From d1b782a000a2bb8a3f46382a7be15eddbeb02fec Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 24 Aug 2026 12:00:57 -0600 Subject: [PATCH 080/189] 2026-08-24: Automated permissions reference update (#29479) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling --- concepts/permissions-reference.md | 123 +++++++++++++++++++++++++++++- 1 file changed, 122 insertions(+), 1 deletion(-) diff --git a/concepts/permissions-reference.md b/concepts/permissions-reference.md index b776f92ca1e..0896e444439 100644 --- a/concepts/permissions-reference.md +++ b/concepts/permissions-reference.md @@ -7,7 +7,7 @@ ms.localizationpriority: high ms.topic: reference ms.subservice: entra-applications ms.custom: graphiamtop20, scenarios:getting-started -ms.date: 08/17/2026 +ms.date: 08/24/2026 #Customer intent: As a developer, I want to learn more about the permissions available in Microsoft Graph, so that I understand the impact of granting specific permissions to my app. --- @@ -236,6 +236,50 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000 --- +### AgentCommunicationConfiguration.Read + +| Category | Application | Delegated | +|--|--|--| +| Identifier | - | 57ff8075-2fb3-4879-8693-5d51ee8d5e9e | +| DisplayText | - | Read agent communication configuration | +| Description | - | Allows the app to read the communication configuration of agent blueprints on behalf of the signed-in user. | +| AdminConsentRequired | - | Yes | + +--- + +### AgentCommunicationConfiguration.Read.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | eccf3f2d-f81a-4718-95d7-ef4a0c42ac43 | - | +| DisplayText | Read all agent communication configurations | - | +| Description | Allows the app to read the communication configuration of agent blueprints without a signed-in user. | - | +| AdminConsentRequired | Yes | - | + +--- + +### AgentCommunicationConfiguration.ReadWrite + +| Category | Application | Delegated | +|--|--|--| +| Identifier | - | 15e0db35-0641-4175-b014-c2cb39286338 | +| DisplayText | - | Read and write agent communication configuration | +| Description | - | Allows the app to read and update the communication configuration of agent blueprints on behalf of the signed-in user. | +| AdminConsentRequired | - | Yes | + +--- + +### AgentCommunicationConfiguration.ReadWrite.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | 9c72696d-c77b-4d8d-b59e-dfca4792c9ec | - | +| DisplayText | Read and write all agent communication configurations | - | +| Description | Allows the app to read and update the communication configuration of agent blueprints without a signed-in user. | - | +| AdminConsentRequired | Yes | - | + +--- + ### AgentIdentity.Create.All | Category | Application | Delegated | @@ -2655,6 +2699,28 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000 --- +### DeviceManagementDeploymentPlans.Read.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | c5825671-0390-4bf2-b99b-80496fd4b673 | 700bfe0b-b3bd-4fa4-bec2-6849edd7fb7b | +| DisplayText | Read Microsoft Intune Deployment Plans | Read Microsoft Intune Deployment Plans | +| Description | Allows the app to read properties of Microsoft Intune-managed deployment plans and their ring configurations, without a signed-in user. | Allows the app to read properties of Microsoft Intune-managed deployment plans and their ring configurations. | +| AdminConsentRequired | Yes | Yes | + +--- + +### DeviceManagementDeploymentPlans.ReadWrite.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | 68356fd1-028d-4ce3-b724-241dec11127a | 9d95843d-67b9-48b2-8e20-e42372db8549 | +| DisplayText | Read and write Microsoft Intune Deployment Plans | Read and write Microsoft Intune Deployment Plans | +| Description | Allows the app to read and write properties of Microsoft Intune-managed deployment plans and their ring configurations, without a signed-in user. | Allows the app to read and write properties of Microsoft Intune-managed deployment plans and their ring configurations. | +| AdminConsentRequired | Yes | Yes | + +--- + ### DeviceManagementManagedDevices.PrivilegedOperations.All | Category | Application | Delegated | @@ -4496,6 +4562,28 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000 --- +### LifecyclePolicies-AgentId.Read.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | 6343d63f-034f-45b5-832d-9f9d7632e182 | 65857db0-62ac-4279-aa73-c2b5dab186f5 | +| DisplayText | Read identity lifecycle policies for agent identities | Read identity lifecycle policies for agent identities | +| Description | Allows the app to read identity lifecycle policies for agent identities in the organization, without a signed-in user. | Allows the app to read identity lifecycle policies for agent identities that the signed-in user has access to in the organization. | +| AdminConsentRequired | Yes | Yes | + +--- + +### LifecyclePolicies-AgentId.ReadWrite.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | 00d1c504-8dc7-461b-8a0b-dc15c8f1bd5a | f2292ca5-46fc-4195-9b4d-16491bf9bf7f | +| DisplayText | Read and write identity lifecycle policies for agent identities | Read and write identity lifecycle policies for agent identities | +| Description | Allows the app to read, create, update and delete identity lifecycle policies for agent identities in the organization, without a signed-in user. | Allows the app to read, create, update and delete identity lifecycle policies for agent identities that the signed-in user has access to in the organization. | +| AdminConsentRequired | Yes | Yes | + +--- + ### LifecyclePolicies-Guests.Read.All | Category | Application | Delegated | @@ -6699,6 +6787,39 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000 --- +### PullPrintPrinter.FullControl.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | - | ef6b83cd-f762-47ff-97d7-6f6f2d0486ea | +| DisplayText | - | Create, read, update and delete pull-print printers and manage member printers | +| Description | - | Allows the application to create, read, update and delete pull-print printers and manage member printers on behalf of the signed-in user. | +| AdminConsentRequired | - | Yes | + +--- + +### PullPrintPrinter.Read.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | f369d3b8-fe98-4772-85e1-b23e7cf41982 | deac7994-79bc-44c9-8828-01c1a9a96618 | +| DisplayText | Read pull-print printers | Read pull-print printers | +| Description | Allows the application to read pull-print printers without a signed-in user. | Allows the application to read pull-print printers on behalf of the signed-in user. | +| AdminConsentRequired | Yes | Yes | + +--- + +### PullPrintPrinter.ReadWrite.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | - | c628c397-5d7f-4c93-ae0f-4680282fd6d5 | +| DisplayText | - | Read and update pull-print printers | +| Description | - | Allows the application to read and update pull-print printers on behalf of the signed-in user. Does not allow creating or deleting pull-print printers or managing member printers. | +| AdminConsentRequired | - | Yes | + +--- + ### QnA.Read.All | Category | Application | Delegated | From 61026002d999b2ca295341b720958037026cef0d Mon Sep 17 00:00:00 2001 From: a-merberg Date: Mon, 24 Aug 2026 21:49:18 +0300 Subject: [PATCH 081/189] feat(security): Add createAlert action documentation for M365 Defender alerts (#29399) * feat(security): Add createAlert action documentation for M365 Defender alerts - New API reference: security-alert-createalert.md - New resources: security-createalertinput.md, security-entitydefinition.md - New permissions include - Added createAlert to Methods table in security-alert.md - Added changelog entry for createAlertInput, entityDefinition, and createAlert - Added What's New entry for August 2026 - Updated TOC mapping with new complex types - Included doc stubs in temp-docstubs/ Related: AB#51168 * chore: clean up temp-docstubs after authoring complete * Address content review feedback - fix blocking issues - Revert collateral timestamp edits in changelog (reset to main, prepend only new entry) - Generate unique GUIDs for each ChangeList item and parent entry - Set SubArea to 'Alerts and incidents' matching sibling entries - Fix enum links: entitydefinition.md -> enums-security.md with anchors - Fix severity link in createalertinput.md -> enums.md#alertseverity-values - Remove Required/Optional qualifiers from resource property table - Remove 'replaces manualAlert' language (manualAlert not yet deprecated) - Rename code block names to follow conventions - Reorder methods table (CRUD ordering: Create before Update) - Drop en-us from changelog description URLs Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7fb9ddb8-4b44-4886-b7d5-e98c6eb187e7 * Address second review round - non-blocking fixes - Bump changelog CreatedDateTime to 2026-08-05 - Improve front-matter description on createAlertInput - Fix tautological property descriptions (title, description) - Add Methods/None section to both complex-type pages - Populate entityDefinitions JSON sample with all fields - Reorder methods table to CRUD convention (Create before List) - Add trailing newlines to all new files Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7fb9ddb8-4b44-4886-b7d5-e98c6eb187e7 * Address reviewer feedback round 3 - non-blocking fixes - Align ChangeList item IDs with record-level ID (ac5c3274) - Roll CreatedDateTime forward to 2026-08-23 - Fix indent on first changelog record opening brace - Add bullet marker to What's New entry - Trim supporting complex type links from What's New - Use real enum values in JSON representations (severity, entityType, role) Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7fb9ddb8-4b44-4886-b7d5-e98c6eb187e7 * fixes * fix --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: 7fb9ddb8-4b44-4886-b7d5-e98c6eb187e7 --- .../beta/api/security-alert-createalert.md | 204 ++++++++++++++++++ .../security-alert-createalert-permissions.md | 11 + .../beta/resources/security-alert.md | 3 +- .../resources/security-createalertinput.md | 64 ++++++ .../resources/security-entitydefinition.md | 48 +++++ api-reference/beta/toc/toc.mapping.json | 2 + changelog/Microsoft.M365.Defender.json | 34 +++ concepts/whats-new-overview.md | 4 + 8 files changed, 369 insertions(+), 1 deletion(-) create mode 100644 api-reference/beta/api/security-alert-createalert.md create mode 100644 api-reference/beta/includes/permissions/security-alert-createalert-permissions.md create mode 100644 api-reference/beta/resources/security-createalertinput.md create mode 100644 api-reference/beta/resources/security-entitydefinition.md diff --git a/api-reference/beta/api/security-alert-createalert.md b/api-reference/beta/api/security-alert-createalert.md new file mode 100644 index 00000000000..c43116c057e --- /dev/null +++ b/api-reference/beta/api/security-alert-createalert.md @@ -0,0 +1,204 @@ +--- +title: "alert: createAlert" +description: "Create a Microsoft 365 Defender alert by invoking a bound action on the alerts_v2 collection." +author: "a-merberg" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: apiPageType +--- + +# alert: createAlert + +Namespace: microsoft.graph.security + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Create a Microsoft 365 Defender alert by invoking a bound action on the `alerts_v2` collection and returning the created [alert](../resources/security-alert.md) resource. The action accepts a [createAlertInput](../resources/security-createalertinput.md) complex type that combines alert metadata and creation-specific options in one request object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/security-alert-createalert-permissions.md)] + +## HTTP request + + +``` http +POST /security/alerts_v2/createAlert +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the parameters. + +The following table lists the parameters that are required when you call this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|createAlertInput|[microsoft.graph.security.createAlertInput](../resources/security-createalertinput.md)|Required. The input containing alert properties, incident-linking options, workspace routing, and inline entity definitions.| + +## Response + +If successful, this action returns a `201 Created` response code and an [alert](../resources/security-alert.md) object in the response body. + +## Examples + +### Example 1: Create an alert linked to an existing incident + +#### Request + +The following example shows a request that creates an alert and links it to incident 42. + +``` http +POST https://graph.microsoft.com/beta/security/alerts_v2/createAlert +Content-Type: application/json + +{ + "createAlertInput": { + "title": "Suspicious PowerShell activity", + "severity": "medium", + "description": "PowerShell script execution was identified during analyst triage.", + "category": "Execution", + "recommendedActions": "Review the script contents and isolate the affected device.", + "mitreTechniques": ["T1059.001"], + "linkToIncident": 42, + "isExcludedFromCorrelation": false, + "entityDefinitions": [ + { + "entityType": "device", + "entityIdentifier": "deviceId", + "identifierValue": "d1234567-abcd-4f01-8abc-890123456789", + "role": "impacted" + } + ] + } +} +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.security.alert", + "id": "ea2c5e5341-c60a-42fc-953f-3da427c85e2d_aml", + "providerAlertId": "manual_ea2c5e5341-c60a-42fc-953f-3da427c85e2d", + "incidentId": "42", + "title": "Suspicious PowerShell activity", + "description": "PowerShell script execution was identified during analyst triage.", + "severity": "medium", + "status": "new", + "classification": "unknown", + "determination": "unknown", + "category": "Execution", + "serviceSource": "microsoft365Defender", + "detectionSource": "manual", + "createdDateTime": "2026-07-27T11:00:00Z", + "lastUpdateDateTime": "2026-07-27T11:00:00Z", + "recommendedActions": "Review the script contents and isolate the affected device.", + "mitreTechniques": ["T1059.001"], + "alertWebUrl": "https://security.microsoft.com/alerts/ea2c5e5341-c60a-42fc-953f-3da427c85e2d_aml" +} +``` + +### Example 2: Create an alert with a new incident + +#### Request + +The following example shows a request that creates an alert without specifying an incident, causing the backend to create a new incident. + +``` http +POST https://graph.microsoft.com/beta/security/alerts_v2/createAlert +Content-Type: application/json + +{ + "createAlertInput": { + "title": "Unauthorized access attempt", + "severity": "high", + "description": "Multiple failed login attempts from an unusual location.", + "category": "InitialAccess", + "mitreTechniques": ["T1078"], + "isExcludedFromCorrelation": false, + "entityDefinitions": [ + { + "entityType": "user", + "entityIdentifier": "userPrincipalName", + "identifierValue": "admin@contoso.com", + "role": "impacted" + }, + { + "entityType": "ip", + "entityIdentifier": "address", + "identifierValue": "198.51.100.42", + "role": "related" + } + ] + } +} +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.security.alert", + "id": "bf3c9e7812-a45b-44dc-8e2f-1a2b3c4d5e6f_aml", + "providerAlertId": "manual_bf3c9e7812-a45b-44dc-8e2f-1a2b3c4d5e6f", + "incidentId": "128", + "title": "Unauthorized access attempt", + "severity": "high", + "status": "new", + "category": "InitialAccess", + "serviceSource": "microsoft365Defender", + "detectionSource": "manual", + "createdDateTime": "2026-07-27T12:30:00Z", + "lastUpdateDateTime": "2026-07-27T12:30:00Z", + "alertWebUrl": "https://security.microsoft.com/alerts/bf3c9e7812-a45b-44dc-8e2f-1a2b3c4d5e6f_aml" +} +``` diff --git a/api-reference/beta/includes/permissions/security-alert-createalert-permissions.md b/api-reference/beta/includes/permissions/security-alert-createalert-permissions.md new file mode 100644 index 00000000000..0876f570802 --- /dev/null +++ b/api-reference/beta/includes/permissions/security-alert-createalert-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|SecurityAlert.Create.All|SecurityAlert.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|SecurityAlert.Create.All|SecurityAlert.ReadWrite.All| diff --git a/api-reference/beta/resources/security-alert.md b/api-reference/beta/resources/security-alert.md index 19b7313bd0d..0e49f8a4fa8 100644 --- a/api-reference/beta/resources/security-alert.md +++ b/api-reference/beta/resources/security-alert.md @@ -30,8 +30,9 @@ Security providers create an alert in the system when they detect a threat. Micr |[List](../api/security-list-alerts_v2.md)|[microsoft.graph.security.alert](security-alert.md) collection|Get a list of [alert](../resources/security-alert.md) resources that track suspicious activities in an organization.| |[Get](../api/security-alert-get.md)|[microsoft.graph.security.alert](security-alert.md)|Get the properties of an [alert](../resources/security-alert.md) object in an organization based on the specified alert **ID** property.| |[Update](../api/security-alert-update.md)|[microsoft.graph.security.alert](../resources/security-alert.md)|Update the properties of an [alert](../resources/security-alert.md) object in an organization based on the specified alert **ID** property.| -|[Move alerts](../api/security-alert-movealerts.md)|[microsoft.graph.security.mergeResponse](security-mergeresponse.md)|Move one or more [alert](../resources/security-alert.md) resources to an existing or a new [incident](../resources/security-incident.md).| +|[Create alert](../api/security-alert-createalert.md)|[microsoft.graph.security.alert](security-alert.md)|Create a Microsoft 365 Defender alert by invoking a bound action on the alerts_v2 collection.| |[Create comment](../api/security-alert-post-comments.md)| [alertComment](../resources/security-alertcomment.md) | Create a comment for an existing [alert](../resources/security-alert.md) based on the specified alert **ID** property.| +|[Move alerts](../api/security-alert-movealerts.md)|[microsoft.graph.security.mergeResponse](security-mergeresponse.md)|Move one or more [alert](../resources/security-alert.md) resources to an existing or a new [incident](../resources/security-incident.md).| ## Properties diff --git a/api-reference/beta/resources/security-createalertinput.md b/api-reference/beta/resources/security-createalertinput.md new file mode 100644 index 00000000000..e243700cd09 --- /dev/null +++ b/api-reference/beta/resources/security-createalertinput.md @@ -0,0 +1,64 @@ +--- +title: "createAlertInput resource type" +description: "Represents the input for the createAlert action, including alert metadata and inline entity definitions." +author: "a-merberg" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# createAlertInput resource type + +Namespace: microsoft.graph.security + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Input parameters for the [createAlert](../api/security-alert-createalert.md) action, including alert metadata and inline entity definitions. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|category|String|MITRE ATT&CK category for the alert.| +|description|String|Free-text explanation of the suspicious activity or policy violation.| +|entityDefinitions|[microsoft.graph.security.entityDefinition](../resources/security-entitydefinition.md) collection|Inline entity definitions that associate entities with the alert.| +|isExcludedFromCorrelation|Boolean|Whether the alert is excluded from automatic correlation. Defaults to `false`.| +|linkToIncident|Int64|Incident ID to link the alert to. Use `0` or omit the value to create a new incident.| +|mitreTechniques|String collection|MITRE ATT&CK technique identifiers associated with the alert.| +|recommendedActions|String|Recommended remediation actions for the alert.| +|sentinelWorkspace|String|Microsoft Sentinel workspace identifier used for workspace routing.| +|severity|[microsoft.graph.security.alertSeverity](../resources/enums.md#alertseverity-values)|Severity level of the alert. The possible values are: `unknown`, `informational`, `low`, `medium`, `high`, `unknownFutureValue`.| +|title|String|Short display name shown for the alert in the Defender portal.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.security.createAlertInput", + "category": "String", + "description": "String", + "entityDefinitions": [ + { + "@odata.type": "microsoft.graph.security.entityDefinition" + } + ], + "isExcludedFromCorrelation": "Boolean", + "linkToIncident": "Int64", + "mitreTechniques": ["String"], + "recommendedActions": "String", + "sentinelWorkspace": "String", + "severity": "String", + "title": "String" +} +``` diff --git a/api-reference/beta/resources/security-entitydefinition.md b/api-reference/beta/resources/security-entitydefinition.md new file mode 100644 index 00000000000..a2d5ed6304b --- /dev/null +++ b/api-reference/beta/resources/security-entitydefinition.md @@ -0,0 +1,48 @@ +--- +title: "entityDefinition resource type" +description: "Defines a single entity reference included in createAlertInput for alert creation." +author: "a-merberg" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# entityDefinition resource type + +Namespace: microsoft.graph.security + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Defines a single entity reference included in [createAlertInput](../resources/security-createalertinput.md) for alert creation. Each entity definition associates an entity (such as a user, device, or IP address) with the alert being created. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|entityIdentifier|String|The identifier kind for the selected entity type, such as `userPrincipalName`, `deviceId`, or `address`.| +|entityType|[microsoft.graph.security.manualAlertEntityType](../resources/enums-security.md#manualalertentitytype-values)|The type of entity to associate with the alert. The possible values are: `user`, `device`, `file`, `ip`, `url`, `cloudApplication`, `mailbox`, `securityGroup`, `azureResource`, `amazonResource`, `googleCloudResource`, `oAuthApplication`, `emailMessage`, `emailCluster`, `process`, `registryKey`, `registryValue`, `unknownFutureValue`.| +|identifierValue|String|The value for the selected entity identifier.| +|role|[microsoft.graph.security.entityDefinitionInputRole](../resources/enums-security.md#entitydefinitioninputrole-values)|Whether the entity is an impacted asset or related evidence. The possible values are: `impacted`, `related`, `unknownFutureValue`.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.security.entityDefinition", + "entityIdentifier": "String", + "entityType": "String", + "identifierValue": "String", + "role": "String" +} +``` diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 67f4afd1bbb..b1b7acbd897 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -2758,7 +2758,9 @@ ], "complexTypes": [ "microsoft.graph.security.aiAgentEvidence", + "microsoft.graph.security.createAlertInput", "microsoft.graph.security.dnsEvidence", + "microsoft.graph.security.entityDefinition", "microsoft.graph.security.entityDefinitionInput", "microsoft.graph.security.fileHashEvidence", "microsoft.graph.security.gitHubOrganizationEvidence", diff --git a/changelog/Microsoft.M365.Defender.json b/changelog/Microsoft.M365.Defender.json index b4a62885313..03bd1e9fe41 100644 --- a/changelog/Microsoft.M365.Defender.json +++ b/changelog/Microsoft.M365.Defender.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "ac5c3274-87aa-493f-ad25-51dd98e81881", + "ApiChange": "Resource", + "ChangedApiName": "createAlertInput", + "ChangeType": "Addition", + "Description": "Added the [createAlertInput](https://learn.microsoft.com/en-us/graph/api/resources/security-createalertinput?view=graph-rest-beta) resource.", + "Target": "createAlertInput" + }, + { + "Id": "ac5c3274-87aa-493f-ad25-51dd98e81881", + "ApiChange": "Resource", + "ChangedApiName": "entityDefinition", + "ChangeType": "Addition", + "Description": "Added the [entityDefinition](https://learn.microsoft.com/en-us/graph/api/resources/security-entitydefinition?view=graph-rest-beta) resource.", + "Target": "entityDefinition" + }, + { + "Id": "ac5c3274-87aa-493f-ad25-51dd98e81881", + "ApiChange": "Method", + "ChangedApiName": "createAlert", + "ChangeType": "Addition", + "Description": "Added the [createAlert](https://learn.microsoft.com/en-us/graph/api/security-alert-createalert?view=graph-rest-beta) method to the [alert](https://learn.microsoft.com/en-us/graph/api/resources/security-alert?view=graph-rest-beta) resource.", + "Target": "alert" + } + ], + "Id": "ac5c3274-87aa-493f-ad25-51dd98e81881", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-23T00:00:00.0000000Z", + "WorkloadArea": "Security", + "SubArea": "Alerts and incidents" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 5c45c2e250b..aa9dbdf12a3 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -68,6 +68,10 @@ Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources - Changed the **members** property on the [distributionList](/graph/api/resources/distributionlist?view=graph-rest-beta&preserve-view=true) resource to an expandable relationship. Use `$expand=members` with the [Get distribution list](/graph/api/distributionlist-get?view=graph-rest-beta&preserve-view=true) method instead of the removed standalone methods for listing and getting members. +### Security | Alerts and incidents + +- Added the [createAlert](/graph/api/security-alert-createalert?view=graph-rest-beta&preserve-view=true) action to the [alert](/graph/api/resources/security-alert?view=graph-rest-beta&preserve-view=true) resource for creating Microsoft 365 Defender alerts programmatically, including alert properties, incident-linking options, workspace routing, and inline entity definitions in a single request. + ### Security | Case management - Added the [download attachment content](/graph/api/security-casemanagement-attachment-download-content?view=graph-rest-beta&preserve-view=true) and [upload attachment content](/graph/api/security-casemanagement-attachment-upload-content?view=graph-rest-beta&preserve-view=true) methods to the [attachment](/graph/api/resources/security-casemanagement-attachment?view=graph-rest-beta&preserve-view=true) resource type to transfer case evidence in chunks and retrieve it after malware scanning. From a0a004669133b477422ab5f9a381b85e39048818 Mon Sep 17 00:00:00 2001 From: sweta-thapliyal <91509056+sweta-thapliyal@users.noreply.github.com> Date: Mon, 24 Aug 2026 17:52:55 -0700 Subject: [PATCH 082/189] Add Graph APIs to manage Agent Communication Configuration (#29360) * initial changes * adding enums * minor change * adding navigation property * Fix API Doctor agentIdentity paths * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * no op changes * minor changes * adding change log * adding changelogs * Apply suggestions from code review Taking the review comments Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Use apiBased endpoint configuration in examples and add recommendation note Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * adding toc and other review comments * Fix broken changelog links: add /en-us/ to Learn URLs for new agent resources Co-authored-by: sweta-thapliyal <91509056+sweta-thapliyal@users.noreply.github.com> * Update reference TOC * Taking more review comments * fixing change log links * cleaning up toc * Fix agent communication documentation issues * Update reference TOC * addressin review comments * fixes * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../agentcommunicationconfiguration-reset.md | 107 ++++++++++++++ ...identity-get-communicationconfiguration.md | 111 ++++++++++++++ ...ntity-update-communicationconfiguration.md | 139 ++++++++++++++++++ ...lueprint-get-communicationconfiguration.md | 111 ++++++++++++++ ...print-update-communicationconfiguration.md | 139 ++++++++++++++++++ ...nicationconfiguration-reset-permissions.md | 11 ++ ...-communicationconfiguration-permissions.md | 11 ++ ...-communicationconfiguration-permissions.md | 11 ++ ...-communicationconfiguration-permissions.md | 11 ++ ...-communicationconfiguration-permissions.md | 11 ++ ...intapibasedendpointconfigurationdetails.md | 45 ++++++ ...intbotbasedendpointconfigurationdetails.md | 45 ++++++ .../agentcommunicationconfiguration.md | 54 +++++++ .../agentconversationconfiguration.md | 45 ++++++ .../resources/agentendpointconfiguration.md | 49 ++++++ api-reference/beta/resources/agentidentity.md | 6 +- .../beta/resources/agentidentityblueprint.md | 4 + .../resources/agentteamworkconfiguration.md | 51 +++++++ api-reference/beta/resources/enums.md | 16 ++ api-reference/beta/toc/toc.mapping.json | 14 ++ changelog/Microsoft.Teams.GraphSvc.json | 130 ++++++++++++++++ concepts/whats-new-overview.md | 1 + 22 files changed, 1121 insertions(+), 1 deletion(-) create mode 100644 api-reference/beta/api/agentcommunicationconfiguration-reset.md create mode 100644 api-reference/beta/api/agentidentity-get-communicationconfiguration.md create mode 100644 api-reference/beta/api/agentidentity-update-communicationconfiguration.md create mode 100644 api-reference/beta/api/agentidentityblueprint-get-communicationconfiguration.md create mode 100644 api-reference/beta/api/agentidentityblueprint-update-communicationconfiguration.md create mode 100644 api-reference/beta/includes/permissions/agentcommunicationconfiguration-reset-permissions.md create mode 100644 api-reference/beta/includes/permissions/agentidentity-get-communicationconfiguration-permissions.md create mode 100644 api-reference/beta/includes/permissions/agentidentity-update-communicationconfiguration-permissions.md create mode 100644 api-reference/beta/includes/permissions/agentidentityblueprint-get-communicationconfiguration-permissions.md create mode 100644 api-reference/beta/includes/permissions/agentidentityblueprint-update-communicationconfiguration-permissions.md create mode 100644 api-reference/beta/resources/agentblueprintapibasedendpointconfigurationdetails.md create mode 100644 api-reference/beta/resources/agentblueprintbotbasedendpointconfigurationdetails.md create mode 100644 api-reference/beta/resources/agentcommunicationconfiguration.md create mode 100644 api-reference/beta/resources/agentconversationconfiguration.md create mode 100644 api-reference/beta/resources/agentendpointconfiguration.md create mode 100644 api-reference/beta/resources/agentteamworkconfiguration.md diff --git a/api-reference/beta/api/agentcommunicationconfiguration-reset.md b/api-reference/beta/api/agentcommunicationconfiguration-reset.md new file mode 100644 index 00000000000..cbf218dd05d --- /dev/null +++ b/api-reference/beta/api/agentcommunicationconfiguration-reset.md @@ -0,0 +1,107 @@ +--- +title: "agentCommunicationConfiguration: reset" +description: "Reset the communication configuration override for an agent identity, restoring effective configuration resolution to the agent blueprint level." +author: "sthapliyal" +ms.date: 07/28/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: apiPageType +--- + +# agentCommunicationConfiguration: reset + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Reset the communication configuration override for an [agentIdentity](../resources/agentidentity.md), which restores effective configuration resolution to the agent blueprint level. The action takes no request body and returns the agent blueprint's [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md) as the new effective configuration for the agent identity. + +> [!NOTE] +> When you set the **endpointConfiguration**, we recommend that you use the `apiBased` [agentEndpointConfigurationType](../resources/enums.md#agentendpointconfigurationtype-values) rather than `botBased`. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/agentcommunicationconfiguration-reset-permissions.md)] + +## HTTP request + + +``` http +POST /servicePrincipals/microsoft.graph.agentIdentity/{agentIdentityId}/communicationConfiguration/reset +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer \{token\}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this action returns a `200 OK` response code and an [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + + +``` http +POST https://graph.microsoft.com/beta/servicePrincipals/microsoft.graph.agentIdentity/1f554dbf-8c7a-42dc-8f92-1a3b4c5d6e7f/communicationConfiguration/reset +``` + +### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#servicePrincipals/microsoft.graph.agentIdentity/communicationConfiguration/$entity", + "isOverridableAtAgentIdLevel": true, + "endpointConfiguration": { + "configurationType": "apiBased", + "apiBased": { + "callbackUri": "https://agent.contoso.com/api/messages" + }, + "botBased": null + }, + "teamworkConfiguration": { + "groupChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + }, + "channelConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + }, + "oneOnOneChatConfiguration": { + "messageNotificationMode": "allMessages" + }, + "meetingChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + } + } +} +``` diff --git a/api-reference/beta/api/agentidentity-get-communicationconfiguration.md b/api-reference/beta/api/agentidentity-get-communicationconfiguration.md new file mode 100644 index 00000000000..f9d36eeb88d --- /dev/null +++ b/api-reference/beta/api/agentidentity-get-communicationconfiguration.md @@ -0,0 +1,111 @@ +--- +title: "Get communicationConfiguration" +description: "Read the communication configuration of an agent identity." +author: "sthapliyal" +ms.date: 07/28/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: apiPageType +--- + +# Get communicationConfiguration + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Read the properties of the [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md) of an [agentIdentity](../resources/agentidentity.md). + +> [!NOTE] +> When you set the **endpointConfiguration**, we recommend that you use the `apiBased` [agentEndpointConfigurationType](../resources/enums.md#agentendpointconfigurationtype-values) rather than `botBased`. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/agentidentity-get-communicationconfiguration-permissions.md)] + +## HTTP request + + +``` http +GET /servicePrincipals/microsoft.graph.agentIdentity/{agentIdentityId}/communicationConfiguration +``` + +## Optional query parameters + +This method doesn't support the [OData query parameters](/graph/query-parameters) to customize the response. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer \{token\}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and an [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + + +``` http +GET https://graph.microsoft.com/beta/servicePrincipals/microsoft.graph.agentIdentity/1f554dbf-8c7a-42dc-8f92-1a3b4c5d6e7f/communicationConfiguration +``` + +### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#servicePrincipals/microsoft.graph.agentIdentity/communicationConfiguration/$entity", + "isOverridableAtAgentIdLevel": true, + "endpointConfiguration": { + "configurationType": "apiBased", + "apiBased": { + "callbackUri": "https://agent.contoso.com/api/messages" + }, + "botBased": null + }, + "teamworkConfiguration": { + "groupChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + }, + "channelConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + }, + "oneOnOneChatConfiguration": { + "messageNotificationMode": "allMessages" + }, + "meetingChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + } + } +} +``` diff --git a/api-reference/beta/api/agentidentity-update-communicationconfiguration.md b/api-reference/beta/api/agentidentity-update-communicationconfiguration.md new file mode 100644 index 00000000000..1e3c4572f71 --- /dev/null +++ b/api-reference/beta/api/agentidentity-update-communicationconfiguration.md @@ -0,0 +1,139 @@ +--- +title: "Update communicationConfiguration" +description: "Replace the communication configuration of an agent identity." +author: "sthapliyal" +ms.date: 07/28/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: apiPageType +--- + +# Update communicationConfiguration + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Replace the [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md) of an [agentIdentity](../resources/agentidentity.md). This operation is a full replace: the request replaces the entire configuration object with the supplied body. An agent identity can override the configuration only when the source blueprint sets **isOverridableAtAgentIdLevel** to `true`. + +> [!NOTE] +> When you set the **endpointConfiguration**, we recommend that you use the `apiBased` [agentEndpointConfigurationType](../resources/enums.md#agentendpointconfigurationtype-values) rather than `botBased`. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/agentidentity-update-communicationconfiguration-permissions.md)] + +## HTTP request + + +``` http +PUT /servicePrincipals/microsoft.graph.agentIdentity/{agentIdentityId}/communicationConfiguration +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer \{token\}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a full JSON representation of the [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md) object. Because this operation is a full replace, include all properties you want to persist; properties that are omitted are cleared. + +|Property|Type|Description| +|:---|:---|:---| +|isOverridableAtAgentIdLevel|Boolean|Indicates whether individual agent instances created from this blueprint can override the **endpointConfiguration**. Optional.| +|endpointConfiguration|[agentEndpointConfiguration](../resources/agentendpointconfiguration.md)|The endpoint binding (bot ID or callback URI) that the agent uses to receive messages. Optional.| +|teamworkConfiguration|[agentTeamworkConfiguration](../resources/agentteamworkconfiguration.md)|The per-conversation-context message notification settings that agents use. Optional.| + +## Response + +If successful, this method returns a `200 OK` response code and an updated [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + + +``` http +PUT https://graph.microsoft.com/beta/servicePrincipals/microsoft.graph.agentIdentity/1f554dbf-8c7a-42dc-8f92-1a3b4c5d6e7f/communicationConfiguration +Content-Type: application/json + +{ + "isOverridableAtAgentIdLevel": false, + "endpointConfiguration": { + "configurationType": "apiBased", + "apiBased": { + "callbackUri": "https://agent.contoso.com/api/messages" + } + }, + "teamworkConfiguration": { + "groupChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + }, + "channelConfiguration": { + "messageNotificationMode": "allMessages" + }, + "oneOnOneChatConfiguration": { + "messageNotificationMode": "allMessages" + }, + "meetingChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + } + } +} +``` + +### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#servicePrincipals/microsoft.graph.agentIdentity/communicationConfiguration/$entity", + "isOverridableAtAgentIdLevel": false, + "endpointConfiguration": { + "configurationType": "apiBased", + "apiBased": { + "callbackUri": "https://agent.contoso.com/api/messages" + }, + "botBased": null + }, + "teamworkConfiguration": { + "groupChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + }, + "channelConfiguration": { + "messageNotificationMode": "allMessages" + }, + "oneOnOneChatConfiguration": { + "messageNotificationMode": "allMessages" + }, + "meetingChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + } + } +} +``` diff --git a/api-reference/beta/api/agentidentityblueprint-get-communicationconfiguration.md b/api-reference/beta/api/agentidentityblueprint-get-communicationconfiguration.md new file mode 100644 index 00000000000..6329a0b0e1d --- /dev/null +++ b/api-reference/beta/api/agentidentityblueprint-get-communicationconfiguration.md @@ -0,0 +1,111 @@ +--- +title: "Get communicationConfiguration" +description: "Read the communication configuration of an agent identity blueprint." +author: "sthapliyal" +ms.date: 07/28/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: apiPageType +--- + +# Get communicationConfiguration + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Read the properties of the [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md) of an [agentIdentityBlueprint](../resources/agentidentityblueprint.md). + +> [!NOTE] +> When you set the **endpointConfiguration**, we recommend that you use the `apiBased` [agentEndpointConfigurationType](../resources/enums.md#agentendpointconfigurationtype-values) rather than `botBased`. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/agentidentityblueprint-get-communicationconfiguration-permissions.md)] + +## HTTP request + + +``` http +GET /applications/{agentIdentityBlueprintId}/microsoft.graph.agentIdentityBlueprint/communicationConfiguration +``` + +## Optional query parameters + +This method doesn't support the [OData query parameters](/graph/query-parameters) to customize the response. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer \{token\}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and an [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + + +``` http +GET https://graph.microsoft.com/beta/applications/2a665ec0-9d8b-43ed-9fa3-2b4c5d6e7f80/microsoft.graph.agentIdentityBlueprint/communicationConfiguration +``` + +### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#applications('2a665ec0-9d8b-43ed-9fa3-2b4c5d6e7f80')/microsoft.graph.agentIdentityBlueprint/communicationConfiguration/$entity", + "isOverridableAtAgentIdLevel": true, + "endpointConfiguration": { + "configurationType": "apiBased", + "apiBased": { + "callbackUri": "https://agent.contoso.com/api/messages" + }, + "botBased": null + }, + "teamworkConfiguration": { + "groupChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + }, + "channelConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + }, + "oneOnOneChatConfiguration": { + "messageNotificationMode": "allMessages" + }, + "meetingChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + } + } +} +``` diff --git a/api-reference/beta/api/agentidentityblueprint-update-communicationconfiguration.md b/api-reference/beta/api/agentidentityblueprint-update-communicationconfiguration.md new file mode 100644 index 00000000000..72a15bbf2bb --- /dev/null +++ b/api-reference/beta/api/agentidentityblueprint-update-communicationconfiguration.md @@ -0,0 +1,139 @@ +--- +title: "Update communicationConfiguration" +description: "Replace the communication configuration of an agent identity blueprint." +author: "sthapliyal" +ms.date: 07/28/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: apiPageType +--- + +# Update communicationConfiguration + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Replace the [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md) of an [agentIdentityBlueprint](../resources/agentidentityblueprint.md). This operation is a full replace: the request replaces the entire configuration object with the supplied body. + +> [!NOTE] +> When you set the **endpointConfiguration**, we recommend that you use the `apiBased` [agentEndpointConfigurationType](../resources/enums.md#agentendpointconfigurationtype-values) rather than `botBased`. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/agentidentityblueprint-update-communicationconfiguration-permissions.md)] + +## HTTP request + + +``` http +PUT /applications/{agentIdentityBlueprintId}/microsoft.graph.agentIdentityBlueprint/communicationConfiguration +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer \{token\}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a full JSON representation of the [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md) object. Because this operation is a full replace, include all properties you want to persist; properties that are omitted are cleared. + +|Property|Type|Description| +|:---|:---|:---| +|isOverridableAtAgentIdLevel|Boolean|Indicates whether individual agent instances created from this blueprint can override the **endpointConfiguration**. Optional.| +|endpointConfiguration|[agentEndpointConfiguration](../resources/agentendpointconfiguration.md)|The endpoint binding (bot ID or callback URI) that the agent uses to receive messages. Optional.| +|teamworkConfiguration|[agentTeamworkConfiguration](../resources/agentteamworkconfiguration.md)|The per-conversation-context message notification settings that agents use. Optional.| + +## Response + +If successful, this method returns a `200 OK` response code and an updated [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + + +``` http +PUT https://graph.microsoft.com/beta/applications/2a665ec0-9d8b-43ed-9fa3-2b4c5d6e7f80/microsoft.graph.agentIdentityBlueprint/communicationConfiguration +Content-Type: application/json + +{ + "isOverridableAtAgentIdLevel": false, + "endpointConfiguration": { + "configurationType": "apiBased", + "apiBased": { + "callbackUri": "https://agent.contoso.com/api/messages" + } + }, + "teamworkConfiguration": { + "groupChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + }, + "channelConfiguration": { + "messageNotificationMode": "allMessages" + }, + "oneOnOneChatConfiguration": { + "messageNotificationMode": "allMessages" + }, + "meetingChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + } + } +} +``` + +### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#applications('2a665ec0-9d8b-43ed-9fa3-2b4c5d6e7f80')/microsoft.graph.agentIdentityBlueprint/communicationConfiguration/$entity", + "isOverridableAtAgentIdLevel": false, + "endpointConfiguration": { + "configurationType": "apiBased", + "apiBased": { + "callbackUri": "https://agent.contoso.com/api/messages" + }, + "botBased": null + }, + "teamworkConfiguration": { + "groupChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + }, + "channelConfiguration": { + "messageNotificationMode": "allMessages" + }, + "oneOnOneChatConfiguration": { + "messageNotificationMode": "allMessages" + }, + "meetingChatConfiguration": { + "messageNotificationMode": "atMentionedMessagesOnly" + } + } +} +``` diff --git a/api-reference/beta/includes/permissions/agentcommunicationconfiguration-reset-permissions.md b/api-reference/beta/includes/permissions/agentcommunicationconfiguration-reset-permissions.md new file mode 100644 index 00000000000..f3189bc9b61 --- /dev/null +++ b/api-reference/beta/includes/permissions/agentcommunicationconfiguration-reset-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|AgentCommunicationConfiguration.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|AgentCommunicationConfiguration.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/agentidentity-get-communicationconfiguration-permissions.md b/api-reference/beta/includes/permissions/agentidentity-get-communicationconfiguration-permissions.md new file mode 100644 index 00000000000..f3189bc9b61 --- /dev/null +++ b/api-reference/beta/includes/permissions/agentidentity-get-communicationconfiguration-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|AgentCommunicationConfiguration.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|AgentCommunicationConfiguration.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/agentidentity-update-communicationconfiguration-permissions.md b/api-reference/beta/includes/permissions/agentidentity-update-communicationconfiguration-permissions.md new file mode 100644 index 00000000000..f3189bc9b61 --- /dev/null +++ b/api-reference/beta/includes/permissions/agentidentity-update-communicationconfiguration-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|AgentCommunicationConfiguration.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|AgentCommunicationConfiguration.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/agentidentityblueprint-get-communicationconfiguration-permissions.md b/api-reference/beta/includes/permissions/agentidentityblueprint-get-communicationconfiguration-permissions.md new file mode 100644 index 00000000000..f3189bc9b61 --- /dev/null +++ b/api-reference/beta/includes/permissions/agentidentityblueprint-get-communicationconfiguration-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|AgentCommunicationConfiguration.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|AgentCommunicationConfiguration.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/agentidentityblueprint-update-communicationconfiguration-permissions.md b/api-reference/beta/includes/permissions/agentidentityblueprint-update-communicationconfiguration-permissions.md new file mode 100644 index 00000000000..f3189bc9b61 --- /dev/null +++ b/api-reference/beta/includes/permissions/agentidentityblueprint-update-communicationconfiguration-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|AgentCommunicationConfiguration.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|AgentCommunicationConfiguration.ReadWrite.All|Not available.| diff --git a/api-reference/beta/resources/agentblueprintapibasedendpointconfigurationdetails.md b/api-reference/beta/resources/agentblueprintapibasedendpointconfigurationdetails.md new file mode 100644 index 00000000000..eb0cf466c8d --- /dev/null +++ b/api-reference/beta/resources/agentblueprintapibasedendpointconfigurationdetails.md @@ -0,0 +1,45 @@ +--- +title: "agentBlueprintApiBasedEndpointConfigurationDetails resource type" +description: "Represents the API-based endpoint details for an agent, including the callback URI that Teams posts message events to." +author: "sthapliyal" +ms.date: 07/28/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: resourcePageType +--- + +# agentBlueprintApiBasedEndpointConfigurationDetails resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the API-based endpoint details for an agent, including the callback URI that Teams posts message events to. + +This complex type is used by the **apiBased** property of [agentEndpointConfiguration](../resources/agentendpointconfiguration.md). + +## Methods + +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|callbackUri|String|The absolute HTTPS URI that Teams posts agent message events to.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.agentBlueprintApiBasedEndpointConfigurationDetails", + "callbackUri": "String" +} +``` diff --git a/api-reference/beta/resources/agentblueprintbotbasedendpointconfigurationdetails.md b/api-reference/beta/resources/agentblueprintbotbasedendpointconfigurationdetails.md new file mode 100644 index 00000000000..cb365a1ef88 --- /dev/null +++ b/api-reference/beta/resources/agentblueprintbotbasedendpointconfigurationdetails.md @@ -0,0 +1,45 @@ +--- +title: "agentBlueprintBotBasedEndpointConfigurationDetails resource type" +description: "Represents the bot-based endpoint details for an agent, including the bot ID that Teams uses to deliver messages." +author: "sthapliyal" +ms.date: 07/28/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: resourcePageType +--- + +# agentBlueprintBotBasedEndpointConfigurationDetails resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the bot-based endpoint details for an agent, including the bot ID that Teams uses to deliver messages. + +This complex type is used by the **botBased** property of [agentEndpointConfiguration](../resources/agentendpointconfiguration.md). + +## Methods + +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|botId|String|The identifier of the bot that Teams uses to deliver messages to the agent through the Bot Framework.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.agentBlueprintBotBasedEndpointConfigurationDetails", + "botId": "String" +} +``` diff --git a/api-reference/beta/resources/agentcommunicationconfiguration.md b/api-reference/beta/resources/agentcommunicationconfiguration.md new file mode 100644 index 00000000000..a519b42df19 --- /dev/null +++ b/api-reference/beta/resources/agentcommunicationconfiguration.md @@ -0,0 +1,54 @@ +--- +title: "agentCommunicationConfiguration resource type" +description: "Represents the communication configuration for an agent, including the endpoint binding and Teams message notification settings that agents use to receive messages." +author: "sthapliyal" +ms.date: 07/28/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: resourcePageType +--- + +# agentCommunicationConfiguration resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the communication configuration for an agent, including the endpoint binding (bot ID or callback URI) and the Teams message notification settings that agents use to receive messages. + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|**Agent identity blueprint**||| +|[Get](../api/agentidentityblueprint-get-communicationconfiguration.md)|[agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md)|Read the communication configuration of an [agentIdentityBlueprint](../resources/agentidentityblueprint.md).| +|[Update](../api/agentidentityblueprint-update-communicationconfiguration.md)|[agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md)|Replace the communication configuration of an [agentIdentityBlueprint](../resources/agentidentityblueprint.md).| +|**Agent identity**||| +|[Get](../api/agentidentity-get-communicationconfiguration.md)|[agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md)|Read the communication configuration of an [agentIdentity](../resources/agentidentity.md).| +|[Update](../api/agentidentity-update-communicationconfiguration.md)|[agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md)|Replace the communication configuration of an [agentIdentity](../resources/agentidentity.md).| +|[reset](../api/agentcommunicationconfiguration-reset.md)|[agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md)|Reset the communication configuration override for an agent identity, which restores effective configuration resolution to the agent blueprint level, and returns the blueprint's communication configuration as the new effective configuration.| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|endpointConfiguration|[agentEndpointConfiguration](../resources/agentendpointconfiguration.md)|The endpoint binding (bot ID or callback URI) that the agent uses to receive messages.| +|isOverridableAtAgentIdLevel|Boolean|Indicates whether individual agent instances created from this blueprint can override the `endpointConfiguration`. When `true`, each instance can override it; when `false`, every instance inherits it. Not nullable.| +|teamworkConfiguration|[agentTeamworkConfiguration](../resources/agentteamworkconfiguration.md)|The per-conversation-context message notification settings (group chat, channel, one-on-one chat, and meeting chat) that agents use.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.agentCommunicationConfiguration", + "isOverridableAtAgentIdLevel": "Boolean", + "endpointConfiguration": {"@odata.type": "microsoft.graph.agentEndpointConfiguration"}, + "teamworkConfiguration": {"@odata.type": "microsoft.graph.agentTeamworkConfiguration"} +} +``` diff --git a/api-reference/beta/resources/agentconversationconfiguration.md b/api-reference/beta/resources/agentconversationconfiguration.md new file mode 100644 index 00000000000..d4dc1df8c5f --- /dev/null +++ b/api-reference/beta/resources/agentconversationconfiguration.md @@ -0,0 +1,45 @@ +--- +title: "agentConversationConfiguration resource type" +description: "Represents the message notification settings for an agent within a specific Teams conversation context." +author: "sthapliyal" +ms.date: 07/28/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: resourcePageType +--- + +# agentConversationConfiguration resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the message notification settings for an agent within a specific Teams conversation context. + +This complex type is used by the **channelConfiguration**, **groupChatConfiguration**, **meetingChatConfiguration**, and **oneOnOneChatConfiguration** properties of [agentTeamworkConfiguration](../resources/agentteamworkconfiguration.md). + +## Methods + +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|messageNotificationMode|[agentMessageNotificationMode](enums.md#agentmessagenotificationmode-values)|Controls which messages in the conversation context the agent is notified about. The possible values are: `atMentionedMessagesOnly`, `allMessages`, `unknownFutureValue`. Not nullable.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.agentConversationConfiguration", + "messageNotificationMode": "String" +} +``` diff --git a/api-reference/beta/resources/agentendpointconfiguration.md b/api-reference/beta/resources/agentendpointconfiguration.md new file mode 100644 index 00000000000..16c94fae762 --- /dev/null +++ b/api-reference/beta/resources/agentendpointconfiguration.md @@ -0,0 +1,49 @@ +--- +title: "agentEndpointConfiguration resource type" +description: "Represents the endpoint binding that an agent uses to receive messages, either through a bot or an API callback." +author: "sthapliyal" +ms.date: 07/28/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: resourcePageType +--- + +# agentEndpointConfiguration resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the endpoint binding that an agent uses to receive messages, either through a bot or an API callback. + +This complex type is configured in the **endpointConfiguration** property of [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md). + +## Methods + +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|apiBased|[agentBlueprintApiBasedEndpointConfigurationDetails](../resources/agentblueprintapibasedendpointconfigurationdetails.md)|The API-based endpoint details. Populated when `configurationType` is `apiBased`; carries the callback URI that Teams posts to. Must be null when `configurationType` is `botBased`.| +|botBased|[agentBlueprintBotBasedEndpointConfigurationDetails](../resources/agentblueprintbotbasedendpointconfigurationdetails.md)|The bot-based endpoint details. Populated when `configurationType` is `botBased`; carries the bot ID that Teams messages. Must be null when `configurationType` is `apiBased`.| +|configurationType|[agentEndpointConfigurationType](enums.md#agentendpointconfigurationtype-values)|The discriminator that indicates which endpoint variant is in effect. The possible values are: `apiBased`, `botBased`, `unknownFutureValue`. Not nullable.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.agentEndpointConfiguration", + "configurationType": "String", + "botBased": {"@odata.type": "microsoft.graph.agentBlueprintBotBasedEndpointConfigurationDetails"}, + "apiBased": {"@odata.type": "microsoft.graph.agentBlueprintApiBasedEndpointConfigurationDetails"} +} +``` diff --git a/api-reference/beta/resources/agentidentity.md b/api-reference/beta/resources/agentidentity.md index ec39a528c22..1d2f796bfcf 100644 --- a/api-reference/beta/resources/agentidentity.md +++ b/api-reference/beta/resources/agentidentity.md @@ -28,6 +28,10 @@ This resource is an open type that allows additional properties beyond those doc |[Get](../api/agentidentity-get.md)|[agentIdentity](../resources/agentidentity.md)|Read the properties and relationships of [agentIdentity](../resources/agentidentity.md) object.| |[Update](../api/agentidentity-update.md)|[agentIdentity](../resources/agentidentity.md)|Update the properties of an agentIdentity object.| |[Delete](../api/agentidentity-delete.md)|None|Delete an agentIdentity object.| +|**Communication configuration**||| +|[Get communicationConfiguration](../api/agentidentity-get-communicationconfiguration.md)|[agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md)|Get the effective communication configuration for this agent identity.| +|[Update communicationConfiguration](../api/agentidentity-update-communicationconfiguration.md)|[agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md)|Update the communication configuration override for this agent identity.| +|[reset](../api/agentcommunicationconfiguration-reset.md)|[agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md)|Reset the communication configuration override for this agent identity, restoring effective configuration resolution to the agent blueprint level.| |**App role assignments**||| |[List appRoleAssignedTo](../api/serviceprincipal-list-approleassignedto.md)|[appRoleAssignment](../resources/approleassignment.md) collection|Get the users, groups, and agent identities assigned app roles for this agent identity.| |[List appRoleAssignments](../api/serviceprincipal-list-approleassignments.md)|[appRoleAssignment](../resources/approleassignment.md) collection|Get the app roles that this agent identity is assigned.| @@ -83,6 +87,7 @@ This resource is an open type that allows additional properties beyond those doc |:---|:---|:---| |appRoleAssignedTo|[appRoleAssignment](../resources/approleassignment.md) collection|App role assignments for this app or service, granted to users, groups, and other agent identities. Supports `$expand`. Inherited from [microsoft.graph.servicePrincipal](../resources/serviceprincipal.md)| |appRoleAssignments|[appRoleAssignment](../resources/approleassignment.md) collection|App role assignment for another app or service, granted to this agent identity. Supports `$expand`. Inherited from [microsoft.graph.servicePrincipal](../resources/serviceprincipal.md)| +|communicationConfiguration|[agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md)|The effective communication configuration for this agent identity. Represents the agent identity-level override that resolves on top of the configuration inherited from the agent identity blueprint.| |createdObjects|[directoryObject](../resources/directoryobject.md) collection|Directory objects created by this agent identity. Read-only. Nullable. Inherited from [microsoft.graph.servicePrincipal](../resources/serviceprincipal.md)| |inheritedAppRoleAssignments|[appRoleAssignment](../resources/approleassignment.md) collection|Application role assignments that this agent identity inherits from its parent Agent Identity Blueprint service principal. Read-only. Nullable.| |inheritedOauth2PermissionGrants|[oAuth2PermissionGrant](../resources/oauth2permissiongrant.md) collection|Delegated permission grants that this agent identity inherits from its parent Agent Identity Blueprint service principal. Read-only. Nullable.| @@ -122,4 +127,3 @@ The following JSON representation shows the resource type. Only a subset of all ] } ``` - diff --git a/api-reference/beta/resources/agentidentityblueprint.md b/api-reference/beta/resources/agentidentityblueprint.md index 957c0ad1bdc..3d6963befd1 100644 --- a/api-reference/beta/resources/agentidentityblueprint.md +++ b/api-reference/beta/resources/agentidentityblueprint.md @@ -40,6 +40,9 @@ This resource is an open type that allows additional properties beyond those doc |[Update federated identity credential](../api/federatedidentitycredential-update.md)|None|Update the properties of a [federatedIdentityCredential](../resources/federatedidentitycredential.md) object.| |[Upsert federated identity credential](../api/federatedidentitycredential-upsert.md)|[federatedIdentityCredential](../resources/federatedidentitycredential.md)|Create a new [federatedIdentityCredential](../resources/federatedidentitycredential.md) if it doesn't exist, or update the properties of an existing [federatedIdentityCredential](../resources/federatedidentitycredential.md) object.| |[Delete federated identity credential](../api/federatedidentitycredential-delete.md)|None|Delete a [federatedIdentityCredential](../resources/federatedidentitycredential.md) object.| +|**Communication configuration**||| +|[Get communicationConfiguration](../api/agentidentityblueprint-get-communicationconfiguration.md)|[agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md)|Get the default communication configuration for this agent identity blueprint.| +|[Update communicationConfiguration](../api/agentidentityblueprint-update-communicationconfiguration.md)|[agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md)|Update the default communication configuration for this agent identity blueprint.| |**Deleted items**||| |[List](../api/directory-deleteditems-list.md) | [directoryObject](directoryobject.md) collection | Retrieve a list of recently deleted agent identities. | |[Get](../api/directory-deleteditems-get.md) | [directoryObject](directoryobject.md) | Retrieve the properties of a recently deleted agent identity. | @@ -101,6 +104,7 @@ This resource is an open type that allows additional properties beyond those doc |Relationship|Type|Description| |:---|:---|:---| |appManagementPolicies|[appManagementPolicy](../resources/appmanagementpolicy.md) collection|The appManagementPolicy applied to this agent identity blueprint. Inherited from [microsoft.graph.application](../resources/application.md)| +|communicationConfiguration|[agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md)|The default communication configuration for agent identities created from this agent identity blueprint. Agent identities inherit this configuration unless they define their own override.| |federatedIdentityCredentials|[federatedIdentityCredential](../resources/federatedidentitycredential.md) collection|Federated identities for agent identity blueprints. Inherited from [microsoft.graph.application](../resources/application.md)| |inheritablePermissions|[inheritablePermission](../resources/inheritablepermission.md) collection|Defines scopes of a resource application that may be automatically granted to agent identities without additional consent.| |owners|[directoryObject](../resources/directoryobject.md) collection|Directory objects that are owners of this agent identity blueprint. The owners are a set of nonadmin users or service principals allowed to modify this object. Read-only. Nullable. Inherited from [microsoft.graph.application](../resources/application.md)| diff --git a/api-reference/beta/resources/agentteamworkconfiguration.md b/api-reference/beta/resources/agentteamworkconfiguration.md new file mode 100644 index 00000000000..504c15cae5c --- /dev/null +++ b/api-reference/beta/resources/agentteamworkconfiguration.md @@ -0,0 +1,51 @@ +--- +title: "agentTeamworkConfiguration resource type" +description: "Represents the per-conversation-context message notification settings that an agent uses across Teams conversation types." +author: "sthapliyal" +ms.date: 07/28/2026 +ms.localizationpriority: medium +ms.subservice: "teams" +doc_type: resourcePageType +--- + +# agentTeamworkConfiguration resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the per-conversation-context message notification settings that an agent uses across Teams conversation types (group chat, channel, one-on-one chat, and meeting chat). + +This complex type is configured in the **teamworkConfiguration** property of [agentCommunicationConfiguration](../resources/agentcommunicationconfiguration.md). + +## Methods + +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|channelConfiguration|[agentConversationConfiguration](../resources/agentconversationconfiguration.md)|The message notification settings that the agent uses in channels.| +|groupChatConfiguration|[agentConversationConfiguration](../resources/agentconversationconfiguration.md)|The message notification settings that the agent uses in group chats.| +|meetingChatConfiguration|[agentConversationConfiguration](../resources/agentconversationconfiguration.md)|The message notification settings that the agent uses in meeting chats.| +|oneOnOneChatConfiguration|[agentConversationConfiguration](../resources/agentconversationconfiguration.md)|The message notification settings that the agent uses in one-on-one chats.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.agentTeamworkConfiguration", + "groupChatConfiguration": {"@odata.type": "microsoft.graph.agentConversationConfiguration"}, + "channelConfiguration": {"@odata.type": "microsoft.graph.agentConversationConfiguration"}, + "oneOnOneChatConfiguration": {"@odata.type": "microsoft.graph.agentConversationConfiguration"}, + "meetingChatConfiguration": {"@odata.type": "microsoft.graph.agentConversationConfiguration"} +} +``` diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index c6de616ec34..8e5fc4a4639 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -6206,6 +6206,22 @@ Possible values for user account types (group membership), per Windows definitio |applyNotSupported| |unknownFutureValue| +### agentEndpointConfigurationType values + +|Member| +|:---| +|apiBased| +|botBased| +|unknownFutureValue| + +### agentMessageNotificationMode values + +|Member| +|:---| +|atMentionedMessagesOnly| +|allMessages| +|unknownFutureValue| + ### mlClassificationMatchTolerance values |Member| diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index b1b7acbd897..69fba982cc6 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -131,7 +131,21 @@ { "name": "Agent identity blueprint", "resources": [ + "agentCommunicationConfiguration", "inheritablePermission" + ], + "complexTypes": [ + "agentBlueprintApiBasedEndpointConfigurationDetails", + "agentBlueprintBotBasedEndpointConfigurationDetails", + "agentConversationConfiguration", + "agentEndpointConfiguration", + "agentTeamworkConfiguration" + ] + }, + { + "name": "Agent identity", + "resources": [ + "agentCommunicationConfiguration" ] } ] diff --git a/changelog/Microsoft.Teams.GraphSvc.json b/changelog/Microsoft.Teams.GraphSvc.json index 81958d6ecc0..421053a65de 100644 --- a/changelog/Microsoft.Teams.GraphSvc.json +++ b/changelog/Microsoft.Teams.GraphSvc.json @@ -1,5 +1,135 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Enumeration", + "ChangedApiName": "agentEndpointConfigurationType", + "ChangeType": "Addition", + "Description": "Added the **agentEndpointConfigurationType** enumeration type.", + "Target": "agentEndpointConfigurationType" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Enumeration", + "ChangedApiName": "agentMessageNotificationMode", + "ChangeType": "Addition", + "Description": "Added the **agentMessageNotificationMode** enumeration type.", + "Target": "agentMessageNotificationMode" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Resource", + "ChangedApiName": "agentBlueprintApiBasedEndpointConfigurationDetails", + "ChangeType": "Addition", + "Description": "Added the [agentBlueprintApiBasedEndpointConfigurationDetails](https://learn.microsoft.com/en-us/graph/api/resources/agentblueprintapibasedendpointconfigurationdetails?view=graph-rest-beta) resource.", + "Target": "agentBlueprintApiBasedEndpointConfigurationDetails" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Resource", + "ChangedApiName": "agentBlueprintBotBasedEndpointConfigurationDetails", + "ChangeType": "Addition", + "Description": "Added the [agentBlueprintBotBasedEndpointConfigurationDetails](https://learn.microsoft.com/en-us/graph/api/resources/agentblueprintbotbasedendpointconfigurationdetails?view=graph-rest-beta) resource.", + "Target": "agentBlueprintBotBasedEndpointConfigurationDetails" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Resource", + "ChangedApiName": "agentConversationConfiguration", + "ChangeType": "Addition", + "Description": "Added the [agentConversationConfiguration](https://learn.microsoft.com/en-us/graph/api/resources/agentconversationconfiguration?view=graph-rest-beta) resource.", + "Target": "agentConversationConfiguration" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Resource", + "ChangedApiName": "agentEndpointConfiguration", + "ChangeType": "Addition", + "Description": "Added the [agentEndpointConfiguration](https://learn.microsoft.com/en-us/graph/api/resources/agentendpointconfiguration?view=graph-rest-beta) resource.", + "Target": "agentEndpointConfiguration" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Resource", + "ChangedApiName": "agentTeamworkConfiguration", + "ChangeType": "Addition", + "Description": "Added the [agentTeamworkConfiguration](https://learn.microsoft.com/en-us/graph/api/resources/agentteamworkconfiguration?view=graph-rest-beta) resource.", + "Target": "agentTeamworkConfiguration" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Resource", + "ChangedApiName": "agentCommunicationConfiguration", + "ChangeType": "Addition", + "Description": "Added the [agentCommunicationConfiguration](https://learn.microsoft.com/en-us/graph/api/resources/agentcommunicationconfiguration?view=graph-rest-beta) resource.", + "Target": "agentCommunicationConfiguration" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Relationship", + "ChangedApiName": "communicationConfiguration", + "ChangeType": "Addition", + "Description": "Added the **communicationConfiguration** relationship to the [agentIdentity](https://learn.microsoft.com/en-us/graph/api/resources/agentidentity?view=graph-rest-beta) resource.", + "Target": "agentIdentity" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Relationship", + "ChangedApiName": "communicationConfiguration", + "ChangeType": "Addition", + "Description": "Added the **communicationConfiguration** relationship to the [agentIdentityBlueprint](https://learn.microsoft.com/en-us/graph/api/resources/agentidentityblueprint?view=graph-rest-beta) resource.", + "Target": "agentIdentityBlueprint" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Method", + "ChangedApiName": "reset", + "ChangeType": "Addition", + "Description": "Added the [reset](https://learn.microsoft.com/en-us/graph/api/agentcommunicationconfiguration-reset?view=graph-rest-beta) method to the [agentCommunicationConfiguration](https://learn.microsoft.com/en-us/graph/api/resources/agentcommunicationconfiguration?view=graph-rest-beta) resource.", + "Target": "agentCommunicationConfiguration" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Method", + "ChangedApiName": "get communicationConfiguration", + "ChangeType": "Addition", + "Description": "Added the [get communicationConfiguration](https://learn.microsoft.com/en-us/graph/api/agentidentity-get-communicationconfiguration?view=graph-rest-beta) method to the [agentIdentity](https://learn.microsoft.com/en-us/graph/api/resources/agentidentity?view=graph-rest-beta) resource.", + "Target": "agentIdentity" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Method", + "ChangedApiName": "update communicationConfiguration", + "ChangeType": "Addition", + "Description": "Added the [update communicationConfiguration](https://learn.microsoft.com/en-us/graph/api/agentidentity-update-communicationconfiguration?view=graph-rest-beta) method to the [agentIdentity](https://learn.microsoft.com/en-us/graph/api/resources/agentidentity?view=graph-rest-beta) resource.", + "Target": "agentIdentity" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Method", + "ChangedApiName": "get communicationConfiguration", + "ChangeType": "Addition", + "Description": "Added the [get communicationConfiguration](https://learn.microsoft.com/en-us/graph/api/agentidentityblueprint-get-communicationconfiguration?view=graph-rest-beta) method to the [agentIdentityBlueprint](https://learn.microsoft.com/en-us/graph/api/resources/agentidentityblueprint?view=graph-rest-beta) resource.", + "Target": "agentIdentityBlueprint" + }, + { + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "ApiChange": "Method", + "ChangedApiName": "update communicationConfiguration", + "ChangeType": "Addition", + "Description": "Added the [update communicationConfiguration](https://learn.microsoft.com/en-us/graph/api/agentidentityblueprint-update-communicationconfiguration?view=graph-rest-beta) method to the [agentIdentityBlueprint](https://learn.microsoft.com/en-us/graph/api/resources/agentidentityblueprint?view=graph-rest-beta) resource.", + "Target": "agentIdentityBlueprint" + } + ], + "Id": "1c84438a-5a7f-4b92-a99d-430e2780a1d7", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-24T00:00:00.0000000Z", + "WorkloadArea": "Teamwork and communications", + "SubArea": "Messaging" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index aa9dbdf12a3..a736e0a3f0c 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -84,6 +84,7 @@ Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources ### Teamwork and communications | Messaging +- Added the [agentCommunicationConfiguration](/graph/api/resources/agentcommunicationconfiguration?view=graph-rest-beta&preserve-view=true) resource type and related methods to configure how agents send and receive messages in Microsoft Teams. Define default communication settings on an [agentIdentityBlueprint](/graph/api/resources/agentidentityblueprint?view=graph-rest-beta&preserve-view=true) and override them for a specific agent on [agentIdentity](/graph/api/resources/agentidentity?view=graph-rest-beta&preserve-view=true). - Added the [reorder sections](/graph/api/teamworksection-reorder?view=graph-rest-beta&preserve-view=true) and [reorder section items](/graph/api/teamworksectionitem-reorder?view=graph-rest-beta&preserve-view=true) actions. Use these actions to apply a complete custom order to a user's sections or to the items in a user-defined section. ## July 2026: New and generally available From 03b74fd1b7d039bef0617848305b91957317c505 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Tue, 25 Aug 2026 10:42:11 -0600 Subject: [PATCH 083/189] Update reference TOC (#29490) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/toc/agents/toc.yml | 62 +++++++++++++++++++++++++ api-reference/beta/toc/security/toc.yml | 10 +++- 2 files changed, 70 insertions(+), 2 deletions(-) diff --git a/api-reference/beta/toc/agents/toc.yml b/api-reference/beta/toc/agents/toc.yml index 06c0b23b7cc..2a186f39dbb 100644 --- a/api-reference/beta/toc/agents/toc.yml +++ b/api-reference/beta/toc/agents/toc.yml @@ -44,6 +44,12 @@ items: href: ../../api/federatedidentitycredential-upsert.md - name: Delete federated identity credential href: ../../api/federatedidentitycredential-delete.md + - name: Communication configuration + items: + - name: Get communicationConfiguration + href: ../../api/agentidentityblueprint-get-communicationconfiguration.md + - name: Update communicationConfiguration + href: ../../api/agentidentityblueprint-update-communicationconfiguration.md - name: Deleted items items: - name: List @@ -76,6 +82,24 @@ items: href: ../../api/agentidentityblueprint-setverifiedpublisher.md - name: Unset href: ../../api/agentidentityblueprint-unsetverifiedpublisher.md + - name: Agent communication configuration + items: + - name: Agent communication configuration + href: ../../resources/agentcommunicationconfiguration.md + - name: Agent identity blueprint + items: + - name: Get + href: ../../api/agentidentityblueprint-get-communicationconfiguration.md + - name: Update + href: ../../api/agentidentityblueprint-update-communicationconfiguration.md + - name: Agent identity + items: + - name: Get + href: ../../api/agentidentity-get-communicationconfiguration.md + - name: Update + href: ../../api/agentidentity-update-communicationconfiguration.md + - name: reset + href: ../../api/agentcommunicationconfiguration-reset.md - name: Inheritable permission items: - name: Inheritable permission @@ -90,6 +114,18 @@ items: href: ../../api/inheritablepermission-update.md - name: Delete href: ../../api/agentidentityblueprint-delete-inheritablepermissions.md + - name: Complex types + items: + - name: Agent blueprint API based endpoint configuration details + href: ../../resources/agentblueprintapibasedendpointconfigurationdetails.md + - name: Agent blueprint bot based endpoint configuration details + href: ../../resources/agentblueprintbotbasedendpointconfigurationdetails.md + - name: Agent conversation configuration + href: ../../resources/agentconversationconfiguration.md + - name: Agent endpoint configuration + href: ../../resources/agentendpointconfiguration.md + - name: Agent teamwork configuration + href: ../../resources/agentteamworkconfiguration.md - name: Agent identity blueprint principal items: - name: Agent identity blueprint principal @@ -172,6 +208,14 @@ items: href: ../../api/agentidentity-update.md - name: Delete href: ../../api/agentidentity-delete.md + - name: Communication configuration + items: + - name: Get communicationConfiguration + href: ../../api/agentidentity-get-communicationconfiguration.md + - name: Update communicationConfiguration + href: ../../api/agentidentity-update-communicationconfiguration.md + - name: reset + href: ../../api/agentcommunicationconfiguration-reset.md - name: App role assignments items: - name: List appRoleAssignedTo @@ -228,6 +272,24 @@ items: href: ../../api/agentidentity-post-sponsors.md - name: Remove sponsors href: ../../api/agentidentity-delete-sponsors.md + - name: Agent communication configuration + items: + - name: Agent communication configuration + href: ../../resources/agentcommunicationconfiguration.md + - name: Agent identity blueprint + items: + - name: Get + href: ../../api/agentidentityblueprint-get-communicationconfiguration.md + - name: Update + href: ../../api/agentidentityblueprint-update-communicationconfiguration.md + - name: Agent identity + items: + - name: Get + href: ../../api/agentidentity-get-communicationconfiguration.md + - name: Update + href: ../../api/agentidentity-update-communicationconfiguration.md + - name: reset + href: ../../api/agentcommunicationconfiguration-reset.md - name: Agent registry (preview) items: - name: Agent registry diff --git a/api-reference/beta/toc/security/toc.yml b/api-reference/beta/toc/security/toc.yml index ddada434a96..6747bf057b0 100644 --- a/api-reference/beta/toc/security/toc.yml +++ b/api-reference/beta/toc/security/toc.yml @@ -34,10 +34,12 @@ items: href: ../../api/security-alert-get.md - name: Update href: ../../api/security-alert-update.md - - name: Move alerts - href: ../../api/security-alert-movealerts.md + - name: Create alert + href: ../../api/security-alert-createalert.md - name: Create comment href: ../../api/security-alert-post-comments.md + - name: Move alerts + href: ../../api/security-alert-movealerts.md - name: Alert evidence href: ../../resources/security-alertevidence.md - name: Incident @@ -78,8 +80,12 @@ items: items: - name: AI agent evidence href: ../../resources/security-aiagentevidence.md + - name: Create alert input + href: ../../resources/security-createalertinput.md - name: DNS evidence href: ../../resources/security-dnsevidence.md + - name: Entity definition + href: ../../resources/security-entitydefinition.md - name: Entity definition input href: ../../resources/security-entitydefinitioninput.md - name: File hash evidence From e6ab4c5dcebc245df6602f42b45c3413c5a5f91d Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Tue, 25 Aug 2026 10:45:43 -0600 Subject: [PATCH 084/189] Update generated files with build 235643 (#29489) Co-authored-by: Microsoft Graph DevX Tooling --- ...accessreviewstage-acceptrecommendations.md | 4 ++ .../agentcommunicationconfiguration-reset.md | 7 +++ ...identity-get-communicationconfiguration.md | 7 +++ ...ntity-update-communicationconfiguration.md | 7 +++ ...lueprint-get-communicationconfiguration.md | 7 +++ ...print-update-communicationconfiguration.md | 7 +++ .../auditlogroot-getsummarizedmsisignins.md | 4 ++ ...root-getsummarizednoninteractivesignins.md | 4 ++ ...ot-getsummarizedserviceprincipalsignins.md | 4 ++ .../auditlogroot-list-auditactivitytypes.md | 4 ++ ...uditlogroot-list-signineventsappsummary.md | 4 ++ .../auditlogroot-list-signineventssummary.md | 4 ++ ...resourceaccountkeyauthenticationmethods.md | 20 +++++++ .../api/azureadpremiumlicenseinsight-get.md | 4 ++ .../beta/api/chat-delete-targetedmessages.md | 4 ++ .../beta/api/correlatedidentity-get.md | 4 ++ .../api/directory-list-remotetenantgroups.md | 4 ++ api-reference/beta/api/drive-get.md | 31 +++++++++++ api-reference/beta/api/driveitem-lock.md | 8 +++ .../beta/api/driveitem-releaselock.md | 4 ++ .../beta/api/filestoragecontainer-get.md | 27 +++++++++ api-reference/beta/api/groupanalytics-get.md | 4 ++ .../api/identityanalyticsroot-list-groups.md | 8 +++ .../beta/api/identitycorrelation-get.md | 4 ++ .../identitycorrelation-list-identities.md | 4 ++ ...nance-run-list-subjectprocessingresults.md | 4 ++ ...ygovernance-subjectprocessingresult-get.md | 4 ++ ...titygovernance-workflow-activateandwait.md | 4 ++ ...itygovernance-workflow-cancelprocessing.md | 4 ++ ...titygovernance-workflow-clearquarantine.md | 4 ++ ...governance-workflow-previewtaskfailures.md | 8 +++ ...titygovernance-workflow-previewworkflow.md | 4 ++ .../networkaccess-reports-usageprofiling.md | 4 ++ ...onedriveforbusinessbrowsesession-browse.md | 14 +++++ api-reference/beta/api/plannergoal-get.md | 20 +++++++ .../beta/api/plannerplan-list-goals.md | 20 +++++++ .../beta/api/remotetenantgroup-get.md | 4 ++ ...t-getmicrosoft365copilotusageuserdetail.md | 8 +++ ...-getmicrosoft365copilotusercountsummary.md | 8 +++ ...ot-getmicrosoft365copilotusercounttrend.md | 8 +++ ...oftappsfilestoragecontainerusagesummary.md | 12 ++++ .../api/reportroot-getsharepointapiusage.md | 48 ++++++++++++++++ .../beta/api/reportroot-list-correlations.md | 4 ++ ...ceaccountkeyauthenticationmethod-delete.md | 20 +++++++ ...ourceaccountkeyauthenticationmethod-get.md | 20 +++++++ .../beta/api/security-alert-createalert.md | 14 +++++ .../beta/api/security-alert-movealerts.md | 4 ++ .../security-autoauditingconfiguration-get.md | 4 ++ ...security-casemanagement-activity-delete.md | 4 ++ .../security-casemanagement-activity-get.md | 4 ++ ...security-casemanagement-activity-update.md | 4 ++ ...emanagement-attachment-download-content.md | 31 +++++++++++ .../security-casemanagement-attachment-get.md | 4 ++ ...curity-casemanagement-attachment-update.md | 4 ++ ...asemanagement-attachment-upload-content.md | 23 ++++++++ .../api/security-casemanagement-case-get.md | 4 ++ ...ity-casemanagement-case-list-activities.md | 4 ++ ...ty-casemanagement-case-list-attachments.md | 4 ++ ...rity-casemanagement-case-list-relations.md | 4 ++ ...security-casemanagement-case-list-tasks.md | 4 ++ ...ity-casemanagement-case-post-activities.md | 4 ++ ...ty-casemanagement-case-post-attachments.md | 4 ++ ...rity-casemanagement-case-post-relations.md | 4 ++ ...security-casemanagement-case-post-tasks.md | 4 ++ .../security-casemanagement-case-update.md | 8 +++ ...asemanagement-casetypeconfiguration-get.md | 4 ++ ...casetypeconfiguration-list-customfields.md | 4 ++ ...ent-casetypeconfiguration-list-statuses.md | 4 ++ ...asemanagement-customfielddefinition-get.md | 4 ++ ...security-casemanagement-relation-delete.md | 31 +++++++++++ .../security-casemanagement-relation-get.md | 31 +++++++++++ ...security-casemanagement-relation-update.md | 4 ++ ...ity-casemanagement-statusdefinition-get.md | 4 ++ .../security-casemanagement-task-delete.md | 31 +++++++++++ .../api/security-casemanagement-task-get.md | 4 ++ .../security-casemanagement-task-update.md | 4 ++ ...ecurity-casemanagementroot-delete-cases.md | 4 ++ .../security-casemanagementroot-list-cases.md | 4 ++ ...agementroot-list-casetypeconfigurations.md | 4 ++ .../security-casemanagementroot-post-cases.md | 4 ++ ...rity-ediscoveryholdpolicy-disablepolicy.md | 4 ++ ...urity-ediscoveryholdpolicy-enablepolicy.md | 4 ++ ...curity-ediscoveryholdpolicy-retrypolicy.md | 4 ++ .../beta/api/security-environment-get.md | 4 ++ ...identitycontainer-list-sensorcandidates.md | 4 ++ ...-identitycontainer-list-sensormigration.md | 4 ++ .../api/security-incident-mergeincidents.md | 4 ++ .../api/security-security-gethuntingschema.md | 4 ++ .../beta/api/security-security-list-zones.md | 4 ++ .../beta/api/security-security-post-zones.md | 4 ++ ...security-securitycopilot-evaluation-get.md | 4 ++ .../security-securitycopilot-prompt-get.md | 4 ++ ...securitycopilot-prompt-list-evaluations.md | 4 ++ ...securitycopilot-prompt-post-evaluations.md | 4 ++ .../security-securitycopilot-session-get.md | 4 ++ ...ty-securitycopilot-session-list-prompts.md | 4 ++ ...ty-securitycopilot-session-post-prompts.md | 4 ++ ...security-securitycopilot-session-update.md | 4 ++ ...-securitycopilot-workspace-list-plugins.md | 4 ++ ...securitycopilot-workspace-list-sessions.md | 4 ++ ...securitycopilot-workspace-post-sessions.md | 4 ++ .../api/security-sensorcandidate-activate.md | 4 ++ ...sorcandidateactivationconfiguration-get.md | 4 ++ .../api/security-sensormigration-migrate.md | 4 ++ .../beta/api/security-zone-delete.md | 4 ++ api-reference/beta/api/security-zone-get.md | 4 ++ .../api/security-zone-list-environments.md | 4 ++ .../api/security-zone-post-environments.md | 4 ++ .../beta/api/security-zone-update.md | 4 ++ .../api/securitycopilot-list-workspaces.md | 4 ++ ...etricsforconditionalaccessblockedsignin.md | 4 -- ...onalaccesscompliantdevicessigninsuccess.md | 4 -- ...tionalaccessmanageddevicessigninsuccess.md | 4 -- ...eactivity-getmetricsformfasigninfailure.md | 4 -- ...eactivity-getmetricsformfasigninsuccess.md | 4 -- ...activity-getmetricsforsamlsigninsuccess.md | 4 -- .../api/sharepointbrowsesession-browse.md | 14 +++++ ...intreportsettings-disableapiusagereport.md | 4 ++ ...ointreportsettings-enableapiusagereport.md | 4 ++ ...portsettings-list-apiusagereportmetrics.md | 4 ++ .../teamworkmessaging-list-customemojis.md | 4 ++ .../teamworkmessaging-post-customemojis.md | 4 ++ .../beta/api/teamworksection-delete.md | 4 ++ api-reference/beta/api/teamworksection-get.md | 12 ++++ .../beta/api/teamworksection-list-items.md | 4 ++ .../beta/api/teamworksection-post-items.md | 8 +++ .../beta/api/teamworksection-update.md | 8 +++ .../beta/api/teamworksectionitem-delete.md | 4 ++ .../beta/api/teamworksectionitem-move.md | 4 ++ .../beta/api/unifiedroot-list-definitions.md | 4 ++ .../beta/api/unifiedroot-post-definitions.md | 4 ++ api-reference/beta/api/user-list-sponsorof.md | 8 +++ .../api/userteamwork-deletetargetedmessage.md | 4 ++ ...teamwork-getallretainedtargetedmessages.md | 4 ++ .../userteamwork-getalltargetedmessages.md | 8 +++ .../beta/api/userteamwork-list-sections.md | 8 +++ .../beta/api/userteamwork-post-sections.md | 4 ++ ...verifiedidprofile-from--csharp-snippets.md | 51 +++++------------ ...keyauthenticationmethod-csharp-snippets.md | 13 +++++ .../get-drive-settings-csharp-snippets.md | 16 ++++++ ...tainer-datalocationcode-csharp-snippets.md | 16 ++++++ .../csharp/get-plannergoal-csharp-snippets.md | 13 +++++ ...keyauthenticationmethod-csharp-snippets.md | 13 +++++ ...keyauthenticationmethod-csharp-snippets.md | 13 +++++ .../plannerplan-get-goals-csharp-snippets.md | 13 +++++ ...-create-case-attachment-csharp-snippets.md | 7 --- ...emanagement-create-case-csharp-snippets.md | 27 ++++++++- ...nt-create-case-relation-csharp-snippets.md | 6 -- ...agement-delete-relation-csharp-snippets.md | 13 +++++ ...emanagement-delete-task-csharp-snippets.md | 13 +++++ ...load-attachment-content-csharp-snippets.md | 13 +++++ ...management-get-relation-csharp-snippets.md | 13 +++++ ...emanagement-update-case-csharp-snippets.md | 13 +++++ ...nt-update-incident-case-csharp-snippets.md | 1 - ...agement-update-relation-csharp-snippets.md | 9 +-- ...load-attachment-content-csharp-snippets.md | 15 +++++ ...pdate-verifiedidprofile-csharp-snippets.md | 51 +++++------------ ...ate-verifiedidprofile-from--go-snippets.md | 34 +++++------- ...ountkeyauthenticationmethod-go-snippets.md | 22 ++++++++ .../go/get-drive-settings-go-snippets.md | 29 ++++++++++ ...econtainer-datalocationcode-go-snippets.md | 29 ++++++++++ .../go/get-plannergoal-go-snippets.md | 22 ++++++++ ...ountkeyauthenticationmethod-go-snippets.md | 22 ++++++++ ...ountkeyauthenticationmethod-go-snippets.md | 22 ++++++++ .../go/plannerplan-get-goals-go-snippets.md | 22 ++++++++ ...ment-create-case-attachment-go-snippets.md | 8 --- ...-casemanagement-create-case-go-snippets.md | 21 ++++++- ...gement-create-case-relation-go-snippets.md | 4 -- ...emanagement-delete-relation-go-snippets.md | 22 ++++++++ ...-casemanagement-delete-task-go-snippets.md | 22 ++++++++ ...download-attachment-content-go-snippets.md | 22 ++++++++ ...casemanagement-get-relation-go-snippets.md | 22 ++++++++ ...-casemanagement-update-case-go-snippets.md | 9 +++ ...gement-update-incident-case-go-snippets.md | 2 - ...emanagement-update-relation-go-snippets.md | 4 -- ...t-upload-attachment-content-go-snippets.md | 23 ++++++++ .../update-verifiedidprofile-go-snippets.md | 40 ++++++-------- ...e-verifiedidprofile-from--java-snippets.md | 26 ++++----- ...ntkeyauthenticationmethod-java-snippets.md | 14 +++++ .../java/get-drive-settings-java-snippets.md | 16 ++++++ ...ontainer-datalocationcode-java-snippets.md | 16 ++++++ .../java/get-plannergoal-java-snippets.md | 14 +++++ ...ntkeyauthenticationmethod-java-snippets.md | 14 +++++ ...ntkeyauthenticationmethod-java-snippets.md | 14 +++++ .../plannerplan-get-goals-java-snippets.md | 14 +++++ ...nt-create-case-attachment-java-snippets.md | 6 -- ...asemanagement-create-case-java-snippets.md | 18 +++++- ...ment-create-case-relation-java-snippets.md | 3 - ...anagement-delete-relation-java-snippets.md | 14 +++++ ...asemanagement-delete-task-java-snippets.md | 14 +++++ ...wnload-attachment-content-java-snippets.md | 14 +++++ ...semanagement-get-relation-java-snippets.md | 14 +++++ ...asemanagement-update-case-java-snippets.md | 8 +++ ...ment-update-incident-case-java-snippets.md | 1 - ...anagement-update-relation-java-snippets.md | 6 +- ...upload-attachment-content-java-snippets.md | 15 +++++ .../update-verifiedidprofile-java-snippets.md | 28 ++++------ ...configuration-reset-javascript-snippets.md | 17 ++++++ ...-createalert-linked-javascript-snippets.md | 38 +++++++++++++ ...ealert-new-incident-javascript-snippets.md | 42 ++++++++++++++ ...iguration-blueprint-javascript-snippets.md | 17 ++++++ ...figuration-identity-javascript-snippets.md | 17 ++++++ ...thisbrowseoptimized-javascript-snippets.md | 21 +++++++ ...owseoptimizedfilter-javascript-snippets.md | 22 ++++++++ ...ate-case-attachment-javascript-snippets.md | 8 +-- ...agement-create-case-javascript-snippets.md | 17 +++++- ...reate-case-relation-javascript-snippets.md | 3 +- ...ent-delete-relation-javascript-snippets.md | 17 ++++++ ...agement-delete-task-javascript-snippets.md | 17 ++++++ ...attachment-content-javascript-snippets.md} | 6 +- ...gement-get-relation-javascript-snippets.md | 17 ++++++ ...agement-update-case-javascript-snippets.md | 8 ++- ...pdate-incident-case-javascript-snippets.md | 3 +- ...ent-update-relation-javascript-snippets.md | 4 +- ...-attachment-content-javascript-snippets.md | 19 +++++++ ...thisbrowseoptimized-javascript-snippets.md | 21 +++++++ ...owseoptimizedfilter-javascript-snippets.md | 22 ++++++++ ...iguration-blueprint-javascript-snippets.md | 41 ++++++++++++++ ...figuration-identity-javascript-snippets.md | 41 ++++++++++++++ ...te-verifiedidprofile-from--php-snippets.md | 30 +++++----- ...untkeyauthenticationmethod-php-snippets.md | 16 ++++++ .../php/get-drive-settings-php-snippets.md | 22 ++++++++ ...container-datalocationcode-php-snippets.md | 22 ++++++++ .../php/get-plannergoal-php-snippets.md | 16 ++++++ ...untkeyauthenticationmethod-php-snippets.md | 16 ++++++ ...untkeyauthenticationmethod-php-snippets.md | 16 ++++++ .../php/plannerplan-get-goals-php-snippets.md | 16 ++++++ ...ent-create-case-attachment-php-snippets.md | 9 --- ...casemanagement-create-case-php-snippets.md | 18 +++++- ...ement-create-case-relation-php-snippets.md | 4 -- ...management-delete-relation-php-snippets.md | 16 ++++++ ...casemanagement-delete-task-php-snippets.md | 16 ++++++ ...ownload-attachment-content-php-snippets.md | 16 ++++++ ...asemanagement-get-relation-php-snippets.md | 16 ++++++ ...casemanagement-update-case-php-snippets.md | 11 ++++ ...ement-update-incident-case-php-snippets.md | 1 - ...management-update-relation-php-snippets.md | 9 +-- .../update-verifiedidprofile-php-snippets.md | 30 +++++----- ...ceptrecommendations-powershell-snippets.md | 11 ++++ ...ctionitem-community-powershell-snippets.md | 15 +++++ ...teamworksectionitem-powershell-snippets.md | 15 +++++ ...ummarizedmsisignins-powershell-snippets.md | 11 ++++ ...interactivesignins-powershell-snippets.md} | 2 +- ...iceprincipalsignins-powershell-snippets.md | 11 ++++ ...e-environment-from--powershell-snippets.md | 16 ++++++ ...te-evaluation-from--powershell-snippets.md | 14 +++++ ...create-prompt-from--powershell-snippets.md | 17 ++++++ ...reate-session-from--powershell-snippets.md | 16 ++++++ ...teamworkcustomemoji-powershell-snippets.md | 16 ++++++ ...ate-teamworksection-powershell-snippets.md | 19 +++++++ ...fiedroot-definition-powershell-snippets.md | 55 +++++++++++++++++++ .../create-zone-from--powershell-snippets.md | 34 ++++++++++++ ...targetedchatmessage-powershell-snippets.md | 11 ++++ ...ete-teamworksection-powershell-snippets.md | 12 ++++ ...teamworksectionitem-powershell-snippets.md | 12 ++++ .../delete-zone-powershell-snippets.md | 11 ++++ .../driveitem-lock-powershell-snippets.md | 15 +++++ ...veitem-lock-refresh-powershell-snippets.md | 15 +++++ ...iveitem-releaselock-powershell-snippets.md | 11 ++++ ...cythisdisablepolicy-powershell-snippets.md | 11 ++++ ...icythisenablepolicy-powershell-snippets.md | 11 ++++ ...licythisretrypolicy-powershell-snippets.md | 11 ++++ ...ditingconfiguration-powershell-snippets.md | 11 ++++ ...miumlicenseinsight-powershell-snippets.md} | 2 +- ...-correlatedidentity-powershell-snippets.md | 11 ++++ .../get-drive-settings-powershell-snippets.md | 11 ++++ ...get-environment-aws-powershell-snippets.md | 11 ++++ .../get-evaluation-powershell-snippets.md | 11 ++++ .../get-groupanalytics-powershell-snippets.md | 11 ++++ ...identitycorrelation-powershell-snippets.md | 11 ++++ ...tainerusagesummary-powershell-snippets.md} | 2 +- ...gesummary-with-apps-powershell-snippets.md | 11 ++++ ...agesummary-with-geo-powershell-snippets.md | 11 ++++ .../get-prompt-powershell-snippets.md | 11 ++++ ...t-remotetenantgroup-powershell-snippets.md | 11 ++++ ...vationconfiguration-powershell-snippets.md | 11 ++++ .../get-session-powershell-snippets.md | 11 ++++ ...et-sponsorof-filter-powershell-snippets.md | 11 ++++ .../get-sponsorof-powershell-snippets.md | 11 ++++ ...ection-expand-items-powershell-snippets.md | 11 ++++ ...get-teamworksection-powershell-snippets.md | 11 ++++ ...system-expand-items-powershell-snippets.md | 11 ++++ .../get-zone-powershell-snippets.md | 11 ++++ ...ectprocessingresult-powershell-snippets.md | 11 ++++ ...ctprocessingresults-powershell-snippets.md | 11 ++++ ...lprocessing-success-powershell-snippets.md | 22 ++++++++ ...skfailures-failures-powershell-snippets.md | 11 ++++ ...failures-nofailures-powershell-snippets.md | 11 ++++ ...low-previewworkflow-powershell-snippets.md | 24 ++++++++ ...iusagereportmetrics-powershell-snippets.md | 11 ++++ ...-auditactivitytype-powershell-snippets.md} | 2 +- ...-correlatedidentity-powershell-snippets.md | 11 ++++ .../list-environment-powershell-snippets.md | 11 ++++ .../list-evaluation-powershell-snippets.md | 11 ++++ ...ytics-filter-guests-powershell-snippets.md | 11 ++++ ...ist-groupanalytics-powershell-snippets.md} | 2 +- ...identitycorrelation-powershell-snippets.md | 11 ++++ .../list-plugin-powershell-snippets.md | 11 ++++ .../list-prompt-powershell-snippets.md | 11 ++++ ...t-remotetenantgroup-powershell-snippets.md | 11 ++++ ...ist-sensorcandidate-powershell-snippets.md | 11 ++++ ...ist-sensormigration-powershell-snippets.md | 11 ++++ .../list-session-powershell-snippets.md | 11 ++++ ...ignineventsactivity-powershell-snippets.md | 11 ++++ ...ineventsappactivity-powershell-snippets.md | 11 ++++ ...teamworkcustomemoji-powershell-snippets.md | 11 ++++ ...eamworksectionitems-powershell-snippets.md | 11 ++++ ...ctions-expand-items-powershell-snippets.md | 11 ++++ ...st-teamworksections-powershell-snippets.md | 11 ++++ ...iedroot-definitions-powershell-snippets.md | 11 ++++ .../list-workspace-powershell-snippets.md | 11 ++++ .../list-zone-powershell-snippets.md | 11 ++++ ...usageuserdetail-csv-powershell-snippets.md | 11 ++++ ...sageuserdetail-json-powershell-snippets.md | 11 ++++ ...sercountsummary-csv-powershell-snippets.md | 11 ++++ ...ercountsummary-json-powershell-snippets.md | 11 ++++ ...usercounttrend-csv-powershell-snippets.md} | 2 +- ...usercounttrend-json-powershell-snippets.md | 11 ++++ ...epointapiusage-json-powershell-snippets.md | 11 ++++ ...ointapiusage-nodata-powershell-snippets.md | 11 ++++ ...sthisusageprofiling-powershell-snippets.md | 11 ++++ ...ty-alert-movealerts-powershell-snippets.md | 21 +++++++ ...reate-case-activity-powershell-snippets.md | 16 ++++++ ...ate-case-attachment-powershell-snippets.md | 19 +++++++ ...agement-create-case-powershell-snippets.md | 41 ++++++++++++++ ...reate-case-relation-powershell-snippets.md | 16 ++++++ ...nt-create-case-task-powershell-snippets.md | 23 ++++++++ ...ent-delete-activity-powershell-snippets.md | 11 ++++ ...agement-delete-case-powershell-snippets.md | 11 ++++ ...ent-delete-relation-powershell-snippets.md | 11 ++++ ...agement-delete-task-powershell-snippets.md | 11 ++++ ...-attachment-content-powershell-snippets.md | 11 ++++ ...gement-get-activity-powershell-snippets.md | 11 ++++ ...ment-get-attachment-powershell-snippets.md | 11 ++++ ...management-get-case-powershell-snippets.md | 11 ++++ ...setypeconfiguration-powershell-snippets.md | 11 ++++ ...stomfielddefinition-powershell-snippets.md | 11 ++++ ...gement-get-relation-powershell-snippets.md | 11 ++++ ...et-statusdefinition-powershell-snippets.md | 11 ++++ ...management-get-task-powershell-snippets.md | 11 ++++ ...ist-case-activities-powershell-snippets.md | 11 ++++ ...st-case-attachments-powershell-snippets.md | 11 ++++ ...list-case-relations-powershell-snippets.md | 11 ++++ ...ent-list-case-tasks-powershell-snippets.md | 11 ++++ ...nagement-list-cases-powershell-snippets.md | 11 ++++ ...etypeconfigurations-powershell-snippets.md | 11 ++++ ...t-list-customfields-powershell-snippets.md | 11 ++++ ...ement-list-statuses-powershell-snippets.md | 11 ++++ ...ent-update-activity-powershell-snippets.md | 16 ++++++ ...t-update-attachment-powershell-snippets.md | 16 ++++++ ...agement-update-case-powershell-snippets.md | 28 ++++++++++ ...pdate-incident-case-powershell-snippets.md | 20 +++++++ ...ent-update-relation-powershell-snippets.md | 16 ++++++ ...agement-update-task-powershell-snippets.md | 23 ++++++++ ...ty-gethuntingschema-powershell-snippets.md | 11 ++++ ...dent-mergeincidents-powershell-snippets.md | 20 +++++++ ...ndidatethisactivate-powershell-snippets.md | 17 ++++++ ...ormigration-migrate-powershell-snippets.md | 18 ++++++ ...sableapiusagereport-powershell-snippets.md | 15 +++++ ...nableapiusagereport-powershell-snippets.md | 15 +++++ ...orksectionitem-move-powershell-snippets.md | 15 +++++ .../update-session-powershell-snippets.md | 16 ++++++ ...section-displayname-powershell-snippets.md | 15 +++++ ...orksection-sorttype-powershell-snippets.md | 15 +++++ .../update-zone-powershell-snippets.md | 16 ++++++ ...letetargetedmessage-powershell-snippets.md | 17 ++++++ ...nedtargetedmessages-powershell-snippets.md | 11 ++++ ...etedmessages-filter-powershell-snippets.md | 11 ++++ ...alltargetedmessages-powershell-snippets.md | 11 ++++ ...low-activateandwait-powershell-snippets.md | 28 ++++++++++ ...thisclearquarantine-powershell-snippets.md | 11 ++++ ...verifiedidprofile-from--python-snippets.md | 33 ++++++----- ...keyauthenticationmethod-python-snippets.md | 14 +++++ .../get-drive-settings-python-snippets.md | 23 ++++++++ ...tainer-datalocationcode-python-snippets.md | 23 ++++++++ .../python/get-plannergoal-python-snippets.md | 14 +++++ ...keyauthenticationmethod-python-snippets.md | 14 +++++ ...keyauthenticationmethod-python-snippets.md | 14 +++++ .../plannerplan-get-goals-python-snippets.md | 14 +++++ ...-create-case-attachment-python-snippets.md | 9 --- ...emanagement-create-case-python-snippets.md | 20 ++++++- ...nt-create-case-relation-python-snippets.md | 3 - ...agement-delete-relation-python-snippets.md | 14 +++++ ...emanagement-delete-task-python-snippets.md | 14 +++++ ...load-attachment-content-python-snippets.md | 14 +++++ ...management-get-relation-python-snippets.md | 14 +++++ ...emanagement-update-case-python-snippets.md | 10 ++++ ...nt-update-incident-case-python-snippets.md | 1 - ...agement-update-relation-python-snippets.md | 8 +-- ...load-attachment-content-python-snippets.md | 15 +++++ ...pdate-verifiedidprofile-python-snippets.md | 33 ++++++----- ...sspackageresource-delete-uploadsessions.md | 4 ++ ...cesspackageresource-list-uploadsessions.md | 4 ++ ...cesspackageresource-post-uploadsessions.md | 4 ++ ...cessreviewinstance-batchrecorddecisions.md | 4 -- ...omdataprovidedresourceuploadsession-get.md | 4 ++ ...ataprovidedresourceuploadsession-update.md | 4 ++ .../api/directory-list-remotetenantgroups.md | 4 ++ ...ntrarecoveryservices-recovery-list-jobs.md | 1 - ...ecoveryservices-recovery-list-snapshots.md | 1 - .../entrarecoveryservices-recoveryjob-get.md | 1 - ...recoveryservices-recoveryjobbase-cancel.md | 1 - ...recoveryservices-recoverypreviewjob-get.md | 1 - .../api/entrarecoveryservices-snapshot-get.md | 1 - ...veryservices-snapshot-list-recoveryjobs.md | 1 - ...vices-snapshot-list-recoverypreviewjobs.md | 1 - .../v1.0/api/mailbox-list-folders.md | 54 ++++++++++++++++++ .../v1.0/api/mailbox-post-folders.md | 7 +++ api-reference/v1.0/api/mailboxfolder-delta.md | 27 +++++++++ api-reference/v1.0/api/mailboxfolder-get.md | 27 +++++++++ .../api/mailboxfolder-list-childfolders.md | 27 +++++++++ .../v1.0/api/mailboxfolder-update.md | 7 +++ ...ncpolicytemplate-resettodefaultsettings.md | 4 ++ ...gurationtemplate-resettodefaultsettings.md | 4 ++ .../v1.0/api/remotetenantgroup-get.md | 4 ++ api-reference/v1.0/api/sitepage-publish.md | 7 +++ api-reference/v1.0/api/user-list-sponsorof.md | 8 +++ ...nttownhallregistrationconfiguration-get.md | 4 ++ ...r-with-query-parameters-csharp-snippets.md | 2 +- ...older-with-query-parameters-go-snippets.md | 2 +- ...der-with-query-parameters-java-snippets.md | 2 +- .../publish-sitepage-javascript-snippets.md | 16 ++++++ ...lder-with-query-parameters-php-snippets.md | 2 +- ...atchrecorddecisions-powershell-snippets.md | 17 ------ ...uploadsession-from--powershell-snippets.md | 20 +++++++ ...sourceuploadsession-powershell-snippets.md | 11 ++++ ...sourceuploadsession-powershell-snippets.md | 11 ++++ ...t-remotetenantgroup-powershell-snippets.md | 11 ++++ ...et-sponsorof-filter-powershell-snippets.md | 11 ++++ .../get-sponsorof-powershell-snippets.md | 11 ++++ ...rationconfiguration-powershell-snippets.md | 11 ++++ ...sourceuploadsession-powershell-snippets.md | 11 ++++ ...t-remotetenantgroup-powershell-snippets.md | 11 ++++ ...ettodefaultsettings-powershell-snippets.md | 11 ++++ ...ettodefaultsettings-powershell-snippets.md | 11 ++++ ...sourceuploadsession-powershell-snippets.md | 15 +++++ ...r-with-query-parameters-python-snippets.md | 2 +- .../applications-authenticationbehaviors.md | 6 +- 438 files changed, 4739 insertions(+), 398 deletions(-) create mode 100644 api-reference/beta/includes/snippets/csharp/delete-resourceaccountkeyauthenticationmethod-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/get-drive-settings-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/get-filestoragecontainer-datalocationcode-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/get-plannergoal-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/get-resourceaccountkeyauthenticationmethod-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/list-resourceaccountkeyauthenticationmethod-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/plannerplan-get-goals-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/security-casemanagement-delete-relation-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/security-casemanagement-delete-task-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/security-casemanagement-download-attachment-content-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/security-casemanagement-get-relation-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/csharp/security-casemanagement-upload-attachment-content-csharp-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/delete-resourceaccountkeyauthenticationmethod-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/get-drive-settings-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/get-filestoragecontainer-datalocationcode-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/get-plannergoal-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/get-resourceaccountkeyauthenticationmethod-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/list-resourceaccountkeyauthenticationmethod-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/plannerplan-get-goals-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/security-casemanagement-delete-relation-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/security-casemanagement-delete-task-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/security-casemanagement-download-attachment-content-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/security-casemanagement-get-relation-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/go/security-casemanagement-upload-attachment-content-go-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/delete-resourceaccountkeyauthenticationmethod-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/get-drive-settings-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/get-filestoragecontainer-datalocationcode-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/get-plannergoal-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/get-resourceaccountkeyauthenticationmethod-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/list-resourceaccountkeyauthenticationmethod-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/plannerplan-get-goals-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/security-casemanagement-delete-relation-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/security-casemanagement-delete-task-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/security-casemanagement-download-attachment-content-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/security-casemanagement-get-relation-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/java/security-casemanagement-upload-attachment-content-java-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/agentcommunicationconfiguration-reset-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/alert-createalert-linked-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/alert-createalert-new-incident-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/get-agentcommunicationconfiguration-blueprint-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/get-agentcommunicationconfiguration-identity-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/onedriveforbusinessbrowsesessionthisbrowseoptimized-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/onedriveforbusinessbrowsesessionthisbrowseoptimizedfilter-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/security-casemanagement-delete-relation-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/security-casemanagement-delete-task-javascript-snippets.md rename api-reference/{v1.0/includes/snippets/javascript/list-mailboxfolder-with-query-parameters-javascript-snippets.md => beta/includes/snippets/javascript/security-casemanagement-download-attachment-content-javascript-snippets.md} (50%) create mode 100644 api-reference/beta/includes/snippets/javascript/security-casemanagement-get-relation-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/security-casemanagement-upload-attachment-content-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/sharepointbrowsesessionthisbrowseoptimized-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/sharepointbrowsesessionthisbrowseoptimizedfilter-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/update-agentcommunicationconfiguration-blueprint-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/javascript/update-agentcommunicationconfiguration-identity-javascript-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/delete-resourceaccountkeyauthenticationmethod-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/get-drive-settings-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/get-filestoragecontainer-datalocationcode-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/get-plannergoal-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/get-resourceaccountkeyauthenticationmethod-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/list-resourceaccountkeyauthenticationmethod-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/plannerplan-get-goals-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/security-casemanagement-delete-relation-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/security-casemanagement-delete-task-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/security-casemanagement-download-attachment-content-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/php/security-casemanagement-get-relation-php-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/accessreviewstage-acceptrecommendations-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/add-teamworksectionitem-community-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/add-teamworksectionitem-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/auditlogrootthisgetsummarizedmsisignins-powershell-snippets.md rename api-reference/beta/includes/snippets/powershell/{serviceactivitythisgetmetricsforconditionalaccessmanageddevicessigninsuccess-powershell-snippets.md => auditlogrootthisgetsummarizednoninteractivesignins-powershell-snippets.md} (59%) create mode 100644 api-reference/beta/includes/snippets/powershell/auditlogrootthisgetsummarizedserviceprincipalsignins-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/create-environment-from--powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/create-evaluation-from--powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/create-prompt-from--powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/create-session-from--powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/create-teamworkcustomemoji-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/create-teamworksection-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/create-unifiedroot-definition-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/create-zone-from--powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/delete-targetedchatmessage-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/delete-teamworksection-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/delete-teamworksectionitem-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/delete-zone-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/driveitem-lock-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/driveitem-lock-refresh-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/driveitem-releaselock-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/ediscoveryholdpolicythisdisablepolicy-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/ediscoveryholdpolicythisenablepolicy-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/ediscoveryholdpolicythisretrypolicy-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-autoauditingconfiguration-powershell-snippets.md rename api-reference/beta/includes/snippets/powershell/{serviceactivitythisgetmetricsformfasigninsuccess-powershell-snippets.md => get-azureadpremiumlicenseinsight-powershell-snippets.md} (69%) create mode 100644 api-reference/beta/includes/snippets/powershell/get-correlatedidentity-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-drive-settings-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-environment-aws-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-evaluation-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-groupanalytics-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-identitycorrelation-powershell-snippets.md rename api-reference/beta/includes/snippets/powershell/{serviceactivitythisgetmetricsforconditionalaccessblockedsignin-powershell-snippets.md => get-microsoftappsfilestoragecontainerusagesummary-powershell-snippets.md} (64%) create mode 100644 api-reference/beta/includes/snippets/powershell/get-microsoftappsfilestoragecontainerusagesummary-with-apps-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-microsoftappsfilestoragecontainerusagesummary-with-geo-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-prompt-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-remotetenantgroup-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-sensorcandidateactivationconfiguration-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-session-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-sponsorof-filter-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-sponsorof-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-teamworksection-expand-items-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-teamworksection-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-teamworksection-system-expand-items-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/get-zone-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/lifecycleworkflows-get-subjectprocessingresult-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/lifecycleworkflows-list-run-subjectprocessingresults-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/lifecycleworkflows-workflow-cancelprocessing-success-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/lifecycleworkflows-workflow-previewtaskfailures-failures-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/lifecycleworkflows-workflow-previewtaskfailures-nofailures-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/lifecycleworkflows-workflow-previewworkflow-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-apiusagereportmetrics-powershell-snippets.md rename api-reference/beta/includes/snippets/powershell/{serviceactivitythisgetmetricsformfasigninfailure-powershell-snippets.md => list-auditactivitytype-powershell-snippets.md} (69%) create mode 100644 api-reference/beta/includes/snippets/powershell/list-correlatedidentity-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-environment-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-evaluation-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-groupanalytics-filter-guests-powershell-snippets.md rename api-reference/beta/includes/snippets/powershell/{serviceactivitythisgetmetricsforsamlsigninsuccess-powershell-snippets.md => list-groupanalytics-powershell-snippets.md} (69%) create mode 100644 api-reference/beta/includes/snippets/powershell/list-identitycorrelation-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-plugin-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-prompt-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-remotetenantgroup-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-sensorcandidate-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-sensormigration-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-session-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-signineventsactivity-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-signineventsappactivity-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-teamworkcustomemoji-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-teamworksectionitems-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-teamworksections-expand-items-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-teamworksections-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-unifiedroot-definitions-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-workspace-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/list-zone-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/reportroot-getmicrosoft365copilotusageuserdetail-csv-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/reportroot-getmicrosoft365copilotusageuserdetail-json-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/reportroot-getmicrosoft365copilotusercountsummary-csv-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/reportroot-getmicrosoft365copilotusercountsummary-json-powershell-snippets.md rename api-reference/beta/includes/snippets/powershell/{serviceactivitythisgetmetricsforconditionalaccesscompliantdevicessigninsuccess-powershell-snippets.md => reportroot-getmicrosoft365copilotusercounttrend-csv-powershell-snippets.md} (59%) create mode 100644 api-reference/beta/includes/snippets/powershell/reportroot-getmicrosoft365copilotusercounttrend-json-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/reportroot-getsharepointapiusage-json-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/reportroot-getsharepointapiusage-nodata-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/reportsthisusageprofiling-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-alert-movealerts-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-create-case-activity-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-create-case-attachment-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-create-case-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-create-case-relation-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-create-case-task-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-delete-activity-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-delete-case-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-delete-relation-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-delete-task-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-download-attachment-content-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-get-activity-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-get-attachment-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-get-case-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-get-casetypeconfiguration-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-get-customfielddefinition-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-get-relation-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-get-statusdefinition-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-get-task-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-list-case-activities-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-list-case-attachments-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-list-case-relations-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-list-case-tasks-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-list-cases-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-list-casetypeconfigurations-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-list-customfields-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-list-statuses-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-update-activity-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-update-attachment-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-update-case-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-update-incident-case-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-update-relation-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-casemanagement-update-task-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-gethuntingschema-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/security-incident-mergeincidents-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/sensorcandidatethisactivate-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/sensormigration-migrate-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/sharepointreportsettings-disableapiusagereport-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/sharepointreportsettings-enableapiusagereport-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/teamworksectionitem-move-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/update-session-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/update-teamworksection-displayname-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/update-teamworksection-sorttype-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/update-zone-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/userteamwork-deletetargetedmessage-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/userteamwork-getallretainedtargetedmessages-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/userteamwork-getalltargetedmessages-filter-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/userteamwork-getalltargetedmessages-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/workflow-activateandwait-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/powershell/workflowthisclearquarantine-powershell-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/delete-resourceaccountkeyauthenticationmethod-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/get-drive-settings-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/get-filestoragecontainer-datalocationcode-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/get-plannergoal-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/get-resourceaccountkeyauthenticationmethod-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/list-resourceaccountkeyauthenticationmethod-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/plannerplan-get-goals-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/security-casemanagement-delete-relation-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/security-casemanagement-delete-task-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/security-casemanagement-download-attachment-content-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/security-casemanagement-get-relation-python-snippets.md create mode 100644 api-reference/beta/includes/snippets/python/security-casemanagement-upload-attachment-content-python-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/javascript/publish-sitepage-javascript-snippets.md delete mode 100644 api-reference/v1.0/includes/snippets/powershell/accessreviewinstance-batchrecorddecisions-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/create-customdataprovidedresourceuploadsession-from--powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/delete-customdataprovidedresourceuploadsession-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/get-customdataprovidedresourceuploadsession-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/get-remotetenantgroup-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/get-sponsorof-filter-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/get-sponsorof-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/get-virtualeventtownhallregistrationconfiguration-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-customdataprovidedresourceuploadsession-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/list-remotetenantgroup-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-powershell-snippets.md create mode 100644 api-reference/v1.0/includes/snippets/powershell/update-customdataprovidedresourceuploadsession-powershell-snippets.md diff --git a/api-reference/beta/api/accessreviewstage-acceptrecommendations.md b/api-reference/beta/api/accessreviewstage-acceptrecommendations.md index 44a11548524..6c71061821a 100644 --- a/api-reference/beta/api/accessreviewstage-acceptrecommendations.md +++ b/api-reference/beta/api/accessreviewstage-acceptrecommendations.md @@ -84,6 +84,10 @@ POST https://graph.microsoft.com/beta/identityGovernance/accessReviews/definitio [!INCLUDE [sample-code](../includes/snippets/php/accessreviewstage-acceptrecommendations-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/accessreviewstage-acceptrecommendations-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/accessreviewstage-acceptrecommendations-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/beta/api/agentcommunicationconfiguration-reset.md b/api-reference/beta/api/agentcommunicationconfiguration-reset.md index cbf218dd05d..7b0609d59df 100644 --- a/api-reference/beta/api/agentcommunicationconfiguration-reset.md +++ b/api-reference/beta/api/agentcommunicationconfiguration-reset.md @@ -56,6 +56,7 @@ If successful, this action returns a `200 OK` response code and an [agentCommuni The following example shows a request. +# [HTTP](#tab/http) ```msgraph-interactive GET /drives/b!t18F8ybsHUq1z3LTz8xvZqP8zaSWjkFNhsME-Fepo75dTf9vQKfeRblBZjoSQrd7?$select=id,settings ``` +# [C#](#tab/csharp) +[!INCLUDE [sample-code](../includes/snippets/csharp/get-drive-settings-csharp-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Go](#tab/go) +[!INCLUDE [sample-code](../includes/snippets/go/get-drive-settings-go-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Java](#tab/java) +[!INCLUDE [sample-code](../includes/snippets/java/get-drive-settings-java-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [JavaScript](#tab/javascript) +[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PHP](#tab/php) +[!INCLUDE [sample-code](../includes/snippets/php/get-drive-settings-php-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/get-drive-settings-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +# [Python](#tab/python) +[!INCLUDE [sample-code](../includes/snippets/python/get-drive-settings-python-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + #### Response The following example shows the response. diff --git a/api-reference/beta/api/driveitem-lock.md b/api-reference/beta/api/driveitem-lock.md index f52c17fa824..d3fc7fd2632 100644 --- a/api-reference/beta/api/driveitem-lock.md +++ b/api-reference/beta/api/driveitem-lock.md @@ -130,6 +130,10 @@ Content-Type: application/json [!INCLUDE [sample-code](../includes/snippets/php/driveitem-lock-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/driveitem-lock-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/driveitem-lock-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] @@ -201,6 +205,10 @@ Content-Type: application/json [!INCLUDE [sample-code](../includes/snippets/php/driveitem-lock-refresh-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/driveitem-lock-refresh-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/driveitem-lock-refresh-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/beta/api/driveitem-releaselock.md b/api-reference/beta/api/driveitem-releaselock.md index e37fdd53223..8fcc705eaa0 100644 --- a/api-reference/beta/api/driveitem-releaselock.md +++ b/api-reference/beta/api/driveitem-releaselock.md @@ -108,6 +108,10 @@ POST https://graph.microsoft.com/beta/drives/{drive-id}/items/{item-id}/releaseL [!INCLUDE [sample-code](../includes/snippets/php/driveitem-releaselock-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/driveitem-releaselock-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/driveitem-releaselock-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/beta/api/filestoragecontainer-get.md b/api-reference/beta/api/filestoragecontainer-get.md index a2b6a6c7d1a..c6c2929ab46 100644 --- a/api-reference/beta/api/filestoragecontainer-get.md +++ b/api-reference/beta/api/filestoragecontainer-get.md @@ -129,6 +129,7 @@ The **dataLocationCode** property isn't returned by default. The following examp #### Request The following example shows a request. +# [HTTP](#tab/http) ```http POST https://graph.microsoft.com/v1.0/sites/{siteId}/pages/{pageId}/microsoft.graph.sitePage/publish ``` +# [JavaScript](#tab/javascript) +[!INCLUDE [sample-code](../includes/snippets/javascript/publish-sitepage-javascript-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + +--- + ### Response The following example shows the response. diff --git a/api-reference/v1.0/api/user-list-sponsorof.md b/api-reference/v1.0/api/user-list-sponsorof.md index 94a2264dbb9..3efc04e2a80 100644 --- a/api-reference/v1.0/api/user-list-sponsorof.md +++ b/api-reference/v1.0/api/user-list-sponsorof.md @@ -88,6 +88,10 @@ GET https://graph.microsoft.com/v1.0/users/025e5e3e-e5b7-4eb4-ba1f-4e5b0579f1a2/ [!INCLUDE [sample-code](../includes/snippets/php/get-sponsorof-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/get-sponsorof-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/get-sponsorof-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] @@ -166,6 +170,10 @@ ConsistencyLevel: eventual [!INCLUDE [sample-code](../includes/snippets/php/get-sponsorof-filter-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/get-sponsorof-filter-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/get-sponsorof-filter-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/v1.0/api/virtualeventtownhallregistrationconfiguration-get.md b/api-reference/v1.0/api/virtualeventtownhallregistrationconfiguration-get.md index 92e94bc0848..99c0fd0149b 100644 --- a/api-reference/v1.0/api/virtualeventtownhallregistrationconfiguration-get.md +++ b/api-reference/v1.0/api/virtualeventtownhallregistrationconfiguration-get.md @@ -87,6 +87,10 @@ GET https://graph.microsoft.com/v1.0/solutions/virtualEvents/townhalls/88b245ac- [!INCLUDE [sample-code](../includes/snippets/php/get-virtualeventtownhallregistrationconfiguration-php-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +# [PowerShell](#tab/powershell) +[!INCLUDE [sample-code](../includes/snippets/powershell/get-virtualeventtownhallregistrationconfiguration-powershell-snippets.md)] +[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] + # [Python](#tab/python) [!INCLUDE [sample-code](../includes/snippets/python/get-virtualeventtownhallregistrationconfiguration-python-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] diff --git a/api-reference/v1.0/includes/snippets/csharp/list-mailboxfolder-with-query-parameters-csharp-snippets.md b/api-reference/v1.0/includes/snippets/csharp/list-mailboxfolder-with-query-parameters-csharp-snippets.md index c418ec9d844..40f4ffac9f7 100644 --- a/api-reference/v1.0/includes/snippets/csharp/list-mailboxfolder-with-query-parameters-csharp-snippets.md +++ b/api-reference/v1.0/includes/snippets/csharp/list-mailboxfolder-with-query-parameters-csharp-snippets.md @@ -10,7 +10,7 @@ description: "Automatically generated file. DO NOT MODIFY" var result = await graphClient.Admin.Exchange.Mailboxes["{mailbox-id}"].Folders.GetAsync((requestConfiguration) => { requestConfiguration.QueryParameters.Filter = "type eq 'IPF.Appointment'"; - requestConfiguration.QueryParameters.Select = new string []{ "displayName","type" }; + requestConfiguration.QueryParameters.Select = new string []{ "displayName","type","wellKnownName" }; requestConfiguration.QueryParameters.Top = 5; }); diff --git a/api-reference/v1.0/includes/snippets/go/list-mailboxfolder-with-query-parameters-go-snippets.md b/api-reference/v1.0/includes/snippets/go/list-mailboxfolder-with-query-parameters-go-snippets.md index d9176094b74..9e1087f7c97 100644 --- a/api-reference/v1.0/includes/snippets/go/list-mailboxfolder-with-query-parameters-go-snippets.md +++ b/api-reference/v1.0/includes/snippets/go/list-mailboxfolder-with-query-parameters-go-snippets.md @@ -21,7 +21,7 @@ requestTop := int32(5) requestParameters := &graphadmin.ExchangeMailboxesItemFoldersRequestBuilderGetQueryParameters{ Filter: &requestFilter, - Select: [] string {"displayName","type"}, + Select: [] string {"displayName","type","wellKnownName"}, Top: &requestTop, } configuration := &graphadmin.ExchangeMailboxesItemFoldersRequestBuilderGetRequestConfiguration{ diff --git a/api-reference/v1.0/includes/snippets/java/list-mailboxfolder-with-query-parameters-java-snippets.md b/api-reference/v1.0/includes/snippets/java/list-mailboxfolder-with-query-parameters-java-snippets.md index f9e5d3cb61d..29841394bb4 100644 --- a/api-reference/v1.0/includes/snippets/java/list-mailboxfolder-with-query-parameters-java-snippets.md +++ b/api-reference/v1.0/includes/snippets/java/list-mailboxfolder-with-query-parameters-java-snippets.md @@ -10,7 +10,7 @@ GraphServiceClient graphClient = new GraphServiceClient(requestAdapter); MailboxFolderCollectionResponse result = graphClient.admin().exchange().mailboxes().byMailboxId("{mailbox-id}").folders().get(requestConfiguration -> { requestConfiguration.queryParameters.filter = "type eq 'IPF.Appointment'"; - requestConfiguration.queryParameters.select = new String []{"displayName", "type"}; + requestConfiguration.queryParameters.select = new String []{"displayName", "type", "wellKnownName"}; requestConfiguration.queryParameters.top = 5; }); diff --git a/api-reference/v1.0/includes/snippets/javascript/publish-sitepage-javascript-snippets.md b/api-reference/v1.0/includes/snippets/javascript/publish-sitepage-javascript-snippets.md new file mode 100644 index 00000000000..3baf94c6a01 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/javascript/publish-sitepage-javascript-snippets.md @@ -0,0 +1,16 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```javascript + +const options = { + authProvider, +}; + +const client = Client.init(options); + +await client.api('/sites/{siteId}/pages/{pageId}/microsoft.graph.sitePage/publish') + .post(); + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/php/list-mailboxfolder-with-query-parameters-php-snippets.md b/api-reference/v1.0/includes/snippets/php/list-mailboxfolder-with-query-parameters-php-snippets.md index 02ee2573715..144763b0de4 100644 --- a/api-reference/v1.0/includes/snippets/php/list-mailboxfolder-with-query-parameters-php-snippets.md +++ b/api-reference/v1.0/includes/snippets/php/list-mailboxfolder-with-query-parameters-php-snippets.md @@ -14,7 +14,7 @@ $graphServiceClient = new GraphServiceClient($tokenRequestContext, $scopes); $requestConfiguration = new FoldersRequestBuilderGetRequestConfiguration(); $queryParameters = FoldersRequestBuilderGetRequestConfiguration::createQueryParameters(); $queryParameters->filter = "type eq 'IPF.Appointment'"; -$queryParameters->select = ["displayName","type"]; +$queryParameters->select = ["displayName","type","wellKnownName"]; $queryParameters->top = 5; $requestConfiguration->queryParameters = $queryParameters; diff --git a/api-reference/v1.0/includes/snippets/powershell/accessreviewinstance-batchrecorddecisions-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/accessreviewinstance-batchrecorddecisions-powershell-snippets.md deleted file mode 100644 index 6ee912428b0..00000000000 --- a/api-reference/v1.0/includes/snippets/powershell/accessreviewinstance-batchrecorddecisions-powershell-snippets.md +++ /dev/null @@ -1,17 +0,0 @@ ---- -description: "Automatically generated file. DO NOT MODIFY" ---- - -```powershell - -Import-Module Microsoft.Graph.Identity.Governance - -$params = @{ - decision = "Approve" - justification = "All principals with access need continued access to the resource (Marketing Group) as all the principals are on the marketing team" - resourceId = "a5c51e59-3fcd-4a37-87a1-835c0c21488a" -} - -Invoke-MgBatchIdentityGovernanceAccessReviewDefinitionInstanceRecordDecision -AccessReviewScheduleDefinitionId $accessReviewScheduleDefinitionId -AccessReviewInstanceId $accessReviewInstanceId -BodyParameter $params - -``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/create-customdataprovidedresourceuploadsession-from--powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/create-customdataprovidedresourceuploadsession-from--powershell-snippets.md new file mode 100644 index 00000000000..31293a36b4e --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/create-customdataprovidedresourceuploadsession-from--powershell-snippets.md @@ -0,0 +1,20 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Identity.Governance + +$params = @{ + "@odata.type" = "#microsoft.graph.customDataProvidedResourceAccessReviewUploadSession" + data = @{ + "@odata.type" = "#microsoft.graph.customDataProvidedResourcePayloads.accessReviewContextData" + reviewDefinitionId = "9e4b1c6f-2a3d-4f8e-9b7a-5c1e2d3f4a6b" + reviewInstanceId = "15eeb4df-8a4d-4f8e-9b7a-6b3e1c7f5a9d" + } +} + +New-MgEntitlementManagementCatalogResourceUploadSession -AccessPackageCatalogId $accessPackageCatalogId -AccessPackageResourceId $accessPackageResourceId -BodyParameter $params + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/delete-customdataprovidedresourceuploadsession-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/delete-customdataprovidedresourceuploadsession-powershell-snippets.md new file mode 100644 index 00000000000..66a4638529c --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/delete-customdataprovidedresourceuploadsession-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Identity.Governance + +Remove-MgEntitlementManagementCatalogResourceUploadSession -AccessPackageCatalogId $accessPackageCatalogId -AccessPackageResourceId $accessPackageResourceId -CustomDataProvidedResourceUploadSessionId $customDataProvidedResourceUploadSessionId + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/get-customdataprovidedresourceuploadsession-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/get-customdataprovidedresourceuploadsession-powershell-snippets.md new file mode 100644 index 00000000000..4d9a3461b7b --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/get-customdataprovidedresourceuploadsession-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Identity.Governance + +Get-MgEntitlementManagementCatalogResourceUploadSession -AccessPackageCatalogId $accessPackageCatalogId -AccessPackageResourceId $accessPackageResourceId -CustomDataProvidedResourceUploadSessionId $customDataProvidedResourceUploadSessionId + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/get-remotetenantgroup-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/get-remotetenantgroup-powershell-snippets.md new file mode 100644 index 00000000000..c5e340f1e5f --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/get-remotetenantgroup-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Identity.DirectoryManagement + +Get-MgDirectoryRemoteTenantGroup -RemoteTenantGroupId $remoteTenantGroupId + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/get-sponsorof-filter-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/get-sponsorof-filter-powershell-snippets.md new file mode 100644 index 00000000000..997cfd1be9e --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/get-sponsorof-filter-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Users + +Get-MgUserSponsorOf -UserId $userId -Filter "microsoft.graph.user/userType eq 'Guest'" + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/get-sponsorof-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/get-sponsorof-powershell-snippets.md new file mode 100644 index 00000000000..0d28d9c96dc --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/get-sponsorof-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Users + +Get-MgUserSponsorOf -UserId $userId + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/get-virtualeventtownhallregistrationconfiguration-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/get-virtualeventtownhallregistrationconfiguration-powershell-snippets.md new file mode 100644 index 00000000000..009cfcc675f --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/get-virtualeventtownhallregistrationconfiguration-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Bookings + +Get-MgVirtualEventTownhallRegistrationConfiguration -VirtualEventTownhallId $virtualEventTownhallId + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/list-customdataprovidedresourceuploadsession-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/list-customdataprovidedresourceuploadsession-powershell-snippets.md new file mode 100644 index 00000000000..2393c5030b3 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/list-customdataprovidedresourceuploadsession-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Identity.Governance + +Get-MgEntitlementManagementCatalogResourceUploadSession -AccessPackageCatalogId $accessPackageCatalogId -AccessPackageResourceId $accessPackageResourceId + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/list-remotetenantgroup-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/list-remotetenantgroup-powershell-snippets.md new file mode 100644 index 00000000000..8cfb5b85633 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/list-remotetenantgroup-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Identity.DirectoryManagement + +Get-MgDirectoryRemoteTenantGroup + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-powershell-snippets.md new file mode 100644 index 00000000000..9271bc30480 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/multitenantorganizationidentitysyncpolicytemplatethisresettodefaultsettings-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Identity.SignIns + +Reset-MgPolicyCrossTenantAccessPolicyTemplateMultiTenantOrganizationIdentitySynchronizationToDefaultSetting + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-powershell-snippets.md new file mode 100644 index 00000000000..9a5d4a128d4 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/multitenantorganizationpartnerconfigurationtemplatethisresettodefaultsettings-powershell-snippets.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Identity.SignIns + +Reset-MgPolicyCrossTenantAccessPolicyTemplateMultiTenantOrganizationPartnerConfigurationToDefaultSetting + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/powershell/update-customdataprovidedresourceuploadsession-powershell-snippets.md b/api-reference/v1.0/includes/snippets/powershell/update-customdataprovidedresourceuploadsession-powershell-snippets.md new file mode 100644 index 00000000000..fc0e6b47a40 --- /dev/null +++ b/api-reference/v1.0/includes/snippets/powershell/update-customdataprovidedresourceuploadsession-powershell-snippets.md @@ -0,0 +1,15 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +--- + +```powershell + +Import-Module Microsoft.Graph.Identity.Governance + +$params = @{ + isUploadDone = $true +} + +Update-MgEntitlementManagementCatalogResourceUploadSession -AccessPackageCatalogId $accessPackageCatalogId -AccessPackageResourceId $accessPackageResourceId -CustomDataProvidedResourceUploadSessionId $customDataProvidedResourceUploadSessionId -BodyParameter $params + +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/snippets/python/list-mailboxfolder-with-query-parameters-python-snippets.md b/api-reference/v1.0/includes/snippets/python/list-mailboxfolder-with-query-parameters-python-snippets.md index 7ea1c3c53ac..52cad6feedb 100644 --- a/api-reference/v1.0/includes/snippets/python/list-mailboxfolder-with-query-parameters-python-snippets.md +++ b/api-reference/v1.0/includes/snippets/python/list-mailboxfolder-with-query-parameters-python-snippets.md @@ -11,7 +11,7 @@ from kiota_abstractions.base_request_configuration import RequestConfiguration # To initialize your graph_client, see https://learn.microsoft.com/en-us/graph/sdks/create-client?from=snippets&tabs=python query_params = FoldersRequestBuilder.FoldersRequestBuilderGetQueryParameters( filter = "type eq 'IPF.Appointment'", - select = ["displayName","type"], + select = ["displayName","type","wellKnownName"], top = 5, ) diff --git a/concepts/applications-authenticationbehaviors.md b/concepts/applications-authenticationbehaviors.md index 94cde88cfeb..53e16840799 100644 --- a/concepts/applications-authenticationbehaviors.md +++ b/concepts/applications-authenticationbehaviors.md @@ -215,7 +215,7 @@ Content-Type: application/json } } ``` -If successful, these requests return a `204 No Content` response. + # [C#](#tab/csharp) [!INCLUDE [sample-code](../includes/snippets/csharp/beta/update-authenticationbehaviors-coopenforcement-true-option2-csharp-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] @@ -318,7 +318,7 @@ Content-Type: application/json } } ``` -If successful, these requests return a `204 No Content` response. A COOP Report-Only header might still be present. After the application or owning platform is remediated, set the property to `true` for controlled validation or reset it to `null` to use the service default. + # [C#](#tab/csharp) [!INCLUDE [sample-code](../includes/snippets/csharp/beta/update-authenticationbehaviors-coopenforcement-false-option2-csharp-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] @@ -421,7 +421,7 @@ Content-Type: application/json } } ``` -If successful, these requests return a `204 No Content` response. To confirm the reset state, read the application with `$select=id,appId,authenticationBehaviors`. If the application has no other explicit authentication behavior, **authenticationBehaviors** is `null`. If another authentication behavior is configured, the complex object remains present and **coopEnforcement** is omitted. + # [C#](#tab/csharp) [!INCLUDE [sample-code](../includes/snippets/csharp/beta/update-authenticationbehaviors-coopenforcement-null-option2-csharp-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] From 77c1f2fab96fafd80e82754a2490b618041735d9 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Tue, 25 Aug 2026 10:49:04 -0600 Subject: [PATCH 085/189] Update generated permissions tables with build 235519 (#29488) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/api/security-alert-createalert.md | 6 +----- .../permissions/security-alert-createalert-permissions.md | 3 ++- 2 files changed, 3 insertions(+), 6 deletions(-) diff --git a/api-reference/beta/api/security-alert-createalert.md b/api-reference/beta/api/security-alert-createalert.md index 7c7b4a0f3b4..cab68025a29 100644 --- a/api-reference/beta/api/security-alert-createalert.md +++ b/api-reference/beta/api/security-alert-createalert.md @@ -20,11 +20,7 @@ Create a Microsoft 365 Defender alert by invoking a bound action on the `alerts_ Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/security-alert-createalert-permissions.md)] ## HTTP request diff --git a/api-reference/beta/includes/permissions/security-alert-createalert-permissions.md b/api-reference/beta/includes/permissions/security-alert-createalert-permissions.md index 0876f570802..b1696812ad2 100644 --- a/api-reference/beta/includes/permissions/security-alert-createalert-permissions.md +++ b/api-reference/beta/includes/permissions/security-alert-createalert-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|SecurityAlert.Create.All|SecurityAlert.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|SecurityAlert.Create.All|SecurityAlert.ReadWrite.All| + From a658f5c5c26b48fcc3e328c4837144b184c7c0fe Mon Sep 17 00:00:00 2001 From: Hao Qian <25972866+HaoQian-MS@users.noreply.github.com> Date: Wed, 26 Aug 2026 01:14:21 +0800 Subject: [PATCH 086/189] User/haoqian/permission (#29473) * Update places beta API RBAC note Clarified role assignment requirements for delegated access and removed fixed known issue. * Update places v1.0 API RBAC note Clarified role assignment requirements for delegated access and removed fixed known issue. * Clarify Entra role-assignable groups Co-authored-by: HaoQian-MS <25972866+HaoQian-MS@users.noreply.github.com> * Clarify v1.0 Entra role-assignable groups Co-authored-by: HaoQian-MS <25972866+HaoQian-MS@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> --- .../rbac-for-apis/rbac-places-apis-update-known-issue.md | 4 +--- .../rbac-for-apis/rbac-places-apis-update-known-issue.md | 4 +--- 2 files changed, 2 insertions(+), 6 deletions(-) diff --git a/api-reference/beta/includes/rbac-for-apis/rbac-places-apis-update-known-issue.md b/api-reference/beta/includes/rbac-for-apis/rbac-places-apis-update-known-issue.md index 355c7043469..a68c4bfd0b1 100644 --- a/api-reference/beta/includes/rbac-for-apis/rbac-places-apis-update-known-issue.md +++ b/api-reference/beta/includes/rbac-for-apis/rbac-places-apis-update-known-issue.md @@ -4,8 +4,6 @@ ms.topic: include --- > [!IMPORTANT] -> For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. *Exchange Administrator* is the least privileged role supported for this operation. +> For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. *Exchange Administrator* is the least privileged role supported for this operation. In Microsoft Entra ID, administrative roles can be assigned directly to individual users or through [role-assignable groups](/entra/identity/role-based-access-control/groups-concept); other groups can't be used for role assignments. In contrast, the Microsoft 365 admin center supports assigning administrative roles either directly to users or through groups. > > When using application permissions, you must configure the required `TenantPlacesManagement` role (to manage Places) and the `MailRecipient` role (to manage users and mailboxes). For more information on how to configure these roles, see [Role Based Access Control for Applications in Exchange Online](/exchange/permissions-exo/application-rbac). -> -> **Known issue:** Update requests may still succeed even when the required delegated Microsoft Entra role or application RBAC role assignments are missing, but can result in unexpected behaviors. diff --git a/api-reference/v1.0/includes/rbac-for-apis/rbac-places-apis-update-known-issue.md b/api-reference/v1.0/includes/rbac-for-apis/rbac-places-apis-update-known-issue.md index 355c7043469..a68c4bfd0b1 100644 --- a/api-reference/v1.0/includes/rbac-for-apis/rbac-places-apis-update-known-issue.md +++ b/api-reference/v1.0/includes/rbac-for-apis/rbac-places-apis-update-known-issue.md @@ -4,8 +4,6 @@ ms.topic: include --- > [!IMPORTANT] -> For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. *Exchange Administrator* is the least privileged role supported for this operation. +> For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. *Exchange Administrator* is the least privileged role supported for this operation. In Microsoft Entra ID, administrative roles can be assigned directly to individual users or through [role-assignable groups](/entra/identity/role-based-access-control/groups-concept); other groups can't be used for role assignments. In contrast, the Microsoft 365 admin center supports assigning administrative roles either directly to users or through groups. > > When using application permissions, you must configure the required `TenantPlacesManagement` role (to manage Places) and the `MailRecipient` role (to manage users and mailboxes). For more information on how to configure these roles, see [Role Based Access Control for Applications in Exchange Online](/exchange/permissions-exo/application-rbac). -> -> **Known issue:** Update requests may still succeed even when the required delegated Microsoft Entra role or application RBAC role assignments are missing, but can result in unexpected behaviors. From 6ff7036cca995364c29c4d6889fc1fe22efe8023 Mon Sep 17 00:00:00 2001 From: masonw1211 <31712004+masonw1211@users.noreply.github.com> Date: Tue, 25 Aug 2026 13:42:27 -0400 Subject: [PATCH 087/189] =?UTF-8?q?Document=20Lifecycle=20Workflows=20subj?= =?UTF-8?q?ect=20and=20provisioning=20APIs=20(GA=20promot=E2=80=A6=20(#293?= =?UTF-8?q?24)?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit * Document Lifecycle Workflows subject and provisioning APIs (GA promotion + beta additions) Promotes the provisioning-workflows / workflow-subject surface to v1.0 (GA) and documents net-new beta additions for work item 50614 (schema PRs 16379578 / 16515665). Beta: subjectType enum, directoryObjectWorkflowSubject, subjectSummary + summary method, subjectProcessingResult.subjectType, workflowBase.targetSubjectType. v1.0 GA: full workflowSubject hierarchy, subjectProcessingResult entity + summary method, activateAndWait + awaitedWorkflowProcessingResult, provisioningAttributeMapping, attributeSetEntry, customTaskExtensionResponseData + replyMode/targetSubject, subjectProcessingResults navigations, taskProcessingResult.workflowSubject, customTaskExtensionReplyMode enum, and extensibility enum members. Includes changelog, What's New, and v1.0 TOC updates. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7eac9e19-b180-4728-a516-5a7d42c3cc12 * Fix docs PR validation errors for workflowSubject promotion - Add missing permission includes (beta + v1.0 subjectProcessingResult summary; v1.0 activateAndWait) resolving include-not-found errors - Promote List (from run) and Get subjectProcessingResult method pages to v1.0 with HTTP-only examples and permission includes - Remove invalid 'List (from taskReport)' Methods-table row from v1.0 subjectProcessingResult (taskReport has no subjectProcessingResults nav in v1.0) Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7eac9e19-b180-4728-a516-5a7d42c3cc12 * Correct subjectProcessingResult summary permissions in docs The summary(startDateTime,endDateTime) function reads reports data and is permissioned the same as the sibling list/get paths. Replace the placeholder 'Not supported' rows with LifecycleWorkflows-Reports.Read.All (least) and LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All (higher) for both beta and v1.0, matching the newly onboarded permission path. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7eac9e19-b180-4728-a516-5a7d42c3cc12 * Limit directoryObjectWorkflowSubject description to user Lifecycle workflows only operate on users as directory object subjects, not groups. Remove the group reference from the beta and v1.0 directoryObjectWorkflowSubject resource descriptions. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7eac9e19-b180-4728-a516-5a7d42c3cc12 * Refine Lifecycle Workflows subject wording in What's New Avoid implying that workflows process any directory object type. Describe the new schema as a broader, extensible subject model and use user as the example directory object subject. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7eac9e19-b180-4728-a516-5a7d42c3cc12 * Address docs review: changelog GUIDs/datetime/URLs, enum evolvability, Methods sections, ms.date, permissions newlines, enum member sync Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7eac9e19-b180-4728-a516-5a7d42c3cc12 * Fix changelog broken links: add /en-us/ prefix to new entry URLs * Address round-2 review: remove OData params from scalar summary; add mover/extensibility + Prefer-header note to lifecycle category enum consumers Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 7eac9e19-b180-4728-a516-5a7d42c3cc12 * Clean up Lifecycle Workflows announcements Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 3a8b6fa2-d482-4a85-aec9-bf0c687d30c1 * Address Lifecycle Workflows review feedback Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 3a8b6fa2-d482-4a85-aec9-bf0c687d30c1 * Fix Lifecycle Workflows changelog links Use the v1.0 view format recognized by the changelog link checker for documentation pages added in this pull request. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 3a8b6fa2-d482-4a85-aec9-bf0c687d30c1 * fixes * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * fixes * fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Mason Wolff Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Copilot-Session: 7eac9e19-b180-4728-a516-5a7d42c3cc12 Copilot-Session: 3a8b6fa2-d482-4a85-aec9-bf0c687d30c1 --- ...ernance-subjectprocessingresult-summary.md | 101 +++++++ ...ectprocessingresult-summary-permissions.md | 11 + .../resources/enums-identitygovernance.md | 17 +- ...vernance-directoryobjectworkflowsubject.md | 48 ++++ ...ntitygovernance-subjectprocessingresult.md | 5 +- .../identitygovernance-subjectsummary.md | 54 ++++ .../beta/resources/identitygovernance-task.md | 2 +- .../identitygovernance-taskdefinition.md | 2 +- ...ygovernance-topworkflowsinsightssummary.md | 2 +- .../resources/identitygovernance-workflow.md | 2 +- .../identitygovernance-workflowbase.md | 8 +- .../identitygovernance-workflowsubject.md | 6 +- .../identitygovernance-workflowtemplate.md | 2 +- .../identitygovernance-workflowversion.md | 2 +- .../beta/toc/identity-and-access/toc.yml | 2 + ...nance-run-list-subjectprocessingresults.md | 106 ++++++++ ...ygovernance-subjectprocessingresult-get.md | 104 +++++++ ...ernance-subjectprocessingresult-summary.md | 99 +++++++ ...titygovernance-workflow-activateandwait.md | 124 +++++++++ ...st-subjectprocessingresults-permissions.md | 11 + ...subjectprocessingresult-get-permissions.md | 11 + ...ectprocessingresult-summary-permissions.md | 11 + ...ce-workflow-activateandwait-permissions.md | 11 + .../resources/enums-identitygovernance.md | 24 ++ .../identitygovernance-attributesetentry.md | 47 ++++ ...ernance-awaitedworkflowprocessingresult.md | 53 ++++ .../identitygovernance-customtaskextension.md | 4 +- ...vernance-customtaskextensioncalloutdata.md | 9 +- ...ernance-customtaskextensionresponsedata.md | 55 ++++ ...vernance-directoryobjectworkflowsubject.md | 46 ++++ ...governance-provisioningattributemapping.md | 44 +++ ...nance-provisioningobjectworkflowsubject.md | 53 ++++ .../v1.0/resources/identitygovernance-run.md | 3 +- ...ntitygovernance-subjectprocessingresult.md | 81 ++++++ .../identitygovernance-subjectsummary.md | 52 ++++ .../v1.0/resources/identitygovernance-task.md | 2 +- .../identitygovernance-taskdefinition.md | 2 +- ...identitygovernance-taskprocessingresult.md | 6 +- ...ygovernance-topworkflowsinsightssummary.md | 2 +- .../resources/identitygovernance-workflow.md | 4 +- .../identitygovernance-workflowbase.md | 6 +- .../identitygovernance-workflowsubject.md | 54 ++++ .../identitygovernance-workflowtemplate.md | 2 +- .../identitygovernance-workflowversion.md | 2 +- .../v1.0/toc/identity-and-access/toc.yml | 30 ++ api-reference/v1.0/toc/toc.mapping.json | 11 + changelog/Microsoft.AAD.LCM.json | 256 +++++++++++++++++- concepts/whats-new-overview.md | 18 +- 48 files changed, 1575 insertions(+), 32 deletions(-) create mode 100644 api-reference/beta/api/identitygovernance-subjectprocessingresult-summary.md create mode 100644 api-reference/beta/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md create mode 100644 api-reference/beta/resources/identitygovernance-directoryobjectworkflowsubject.md create mode 100644 api-reference/beta/resources/identitygovernance-subjectsummary.md create mode 100644 api-reference/v1.0/api/identitygovernance-run-list-subjectprocessingresults.md create mode 100644 api-reference/v1.0/api/identitygovernance-subjectprocessingresult-get.md create mode 100644 api-reference/v1.0/api/identitygovernance-subjectprocessingresult-summary.md create mode 100644 api-reference/v1.0/api/identitygovernance-workflow-activateandwait.md create mode 100644 api-reference/v1.0/includes/permissions/identitygovernance-run-list-subjectprocessingresults-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-get-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/identitygovernance-workflow-activateandwait-permissions.md create mode 100644 api-reference/v1.0/resources/identitygovernance-attributesetentry.md create mode 100644 api-reference/v1.0/resources/identitygovernance-awaitedworkflowprocessingresult.md create mode 100644 api-reference/v1.0/resources/identitygovernance-customtaskextensionresponsedata.md create mode 100644 api-reference/v1.0/resources/identitygovernance-directoryobjectworkflowsubject.md create mode 100644 api-reference/v1.0/resources/identitygovernance-provisioningattributemapping.md create mode 100644 api-reference/v1.0/resources/identitygovernance-provisioningobjectworkflowsubject.md create mode 100644 api-reference/v1.0/resources/identitygovernance-subjectprocessingresult.md create mode 100644 api-reference/v1.0/resources/identitygovernance-subjectsummary.md create mode 100644 api-reference/v1.0/resources/identitygovernance-workflowsubject.md diff --git a/api-reference/beta/api/identitygovernance-subjectprocessingresult-summary.md b/api-reference/beta/api/identitygovernance-subjectprocessingresult-summary.md new file mode 100644 index 00000000000..709d8b2562b --- /dev/null +++ b/api-reference/beta/api/identitygovernance-subjectprocessingresult-summary.md @@ -0,0 +1,101 @@ +--- +title: "subjectProcessingResult: summary" +description: "Provide a summary of a subjectProcessingResult for a lifecycle workflow." +author: "masonwolff" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# subjectProcessingResult: summary + +Namespace: microsoft.graph.identityGovernance + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Provide a [subjectSummary](../resources/identitygovernance-subjectsummary.md) for [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) objects over a specified time period. Because the number of subject processing results returned by the list API can be overwhelming, this summary allows administrators to get a quick overview based on counts. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md)] + +[!INCLUDE [rbac-lifecycle-workflows-apis-read](../includes/rbac-for-apis/rbac-lifecycle-workflows-apis-read.md)] + +## HTTP request + + +```http +GET /identityGovernance/lifecycleWorkflows/workflows/{workflowId}/runs/{runId}/subjectProcessingResults/summary(startDateTime={TimeStamp},endDateTime={TimeStamp}) +``` + +## Function parameters + +In the request URL, provide the following query parameters with values. + +|Parameter|Type|Description| +|:---|:---|:---| +|startDateTime|DateTimeOffset|The start date and time of the subject processing result summary. Required.| +|endDateTime|DateTimeOffset|The end date and time of the subject processing result summary. Required.| + +## Optional query parameters + +This method doesn't support OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|****** Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this function returns a `200 OK` response code and a [microsoft.graph.identityGovernance.subjectSummary](../resources/identitygovernance-subjectsummary.md) in the response body. + +## Examples + +### Request + +The following example shows a request. + + +```msgraph-interactive +GET https://graph.microsoft.com/beta/identityGovernance/lifecycleWorkflows/workflows/14879e66-9ea9-48d0-804d-8fea672d0341/runs/40efc576-8100-46eb-92c1-73eb43bb09a4/subjectProcessingResults/summary(startDateTime=2026-05-06T00:00:00Z,endDateTime=2026-05-13T00:00:00Z) +``` + +### Response + +The following example shows the response. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#microsoft.graph.identityGovernance.subjectSummary", + "failedTasks": 3, + "failedSubjects": 2, + "successfulSubjects": 48, + "totalTasks": 150, + "totalSubjects": 50 +} +``` diff --git a/api-reference/beta/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md b/api-reference/beta/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md new file mode 100644 index 00000000000..6029e997810 --- /dev/null +++ b/api-reference/beta/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| diff --git a/api-reference/beta/resources/enums-identitygovernance.md b/api-reference/beta/resources/enums-identitygovernance.md index 35b232f68ed..17abb621861 100644 --- a/api-reference/beta/resources/enums-identitygovernance.md +++ b/api-reference/beta/resources/enums-identitygovernance.md @@ -12,6 +12,8 @@ ms.date: 04/02/2024 Namespace: microsoft.graph.identityGovernance +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + ### activationTaskScopeType values |Member| @@ -62,8 +64,9 @@ Namespace: microsoft.graph.identityGovernance |:---| |joiner| |leaver| -|extensibility| |unknownFutureValue| +|mover| +|extensibility| ### lifecycleWorkflowCategory values @@ -73,8 +76,9 @@ Namespace: microsoft.graph.identityGovernance |:---| |joiner| |leaver| -|extensibility| |unknownFutureValue| +|mover| +|extensibility| ### valueType values @@ -90,6 +94,15 @@ Namespace: microsoft.graph.identityGovernance |unknownFutureValue| +### subjectType values + +|Member| +|:---| +|user| +|agentIdentity| +|unknownFutureValue| +|provisioningObject| + ### workflowExecutionType values diff --git a/api-reference/beta/resources/identitygovernance-directoryobjectworkflowsubject.md b/api-reference/beta/resources/identitygovernance-directoryobjectworkflowsubject.md new file mode 100644 index 00000000000..cd34caebdd1 --- /dev/null +++ b/api-reference/beta/resources/identitygovernance-directoryobjectworkflowsubject.md @@ -0,0 +1,48 @@ +--- +title: "directoryObjectWorkflowSubject resource type" +description: "Represents a directory object as a subject for lifecycle workflow activation." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# directoryObjectWorkflowSubject resource type + +Namespace: microsoft.graph.identityGovernance + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a [directory object](../resources/directoryobject.md), such as a [user](../resources/user.md), as a subject for lifecycle workflow activation. Use this type when a lifecycle workflow processes an existing directory object; the **directoryObject** relationship returns the specific object being processed. + +Inherits from [workflowSubject](../resources/identitygovernance-workflowsubject.md). + +## Methods + +None. + +## Properties + +None. + +## Relationships + +|Relationship|Type|Description| +|:---|:---|:---| +|directoryObject|[microsoft.graph.directoryObject](../resources/directoryobject.md)|The directory object that's being processed by the lifecycle workflow. The runtime type is the specific derived type of the object, for example, [user](../resources/user.md).| + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.identityGovernance.directoryObjectWorkflowSubject" +} +``` diff --git a/api-reference/beta/resources/identitygovernance-subjectprocessingresult.md b/api-reference/beta/resources/identitygovernance-subjectprocessingresult.md index 078b596644f..9da38066b6f 100644 --- a/api-reference/beta/resources/identitygovernance-subjectprocessingresult.md +++ b/api-reference/beta/resources/identitygovernance-subjectprocessingresult.md @@ -2,7 +2,7 @@ title: "subjectProcessingResult resource type" description: "Represents the processing results for a single subject in a lifecycle workflow run." author: "masonwolff" -ms.date: 05/26/2026 +ms.date: 07/22/2026 ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType @@ -25,6 +25,7 @@ Inherits from [entity](../resources/entity.md). |[List (from run)](../api/identitygovernance-run-list-subjectprocessingresults.md)|[microsoft.graph.identityGovernance.subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) collection|Get a list of the subjectProcessingResult objects and their properties from a run.| |[List (from taskReport)](../api/identitygovernance-taskreport-list-subjectprocessingresults.md)|[microsoft.graph.identityGovernance.subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) collection|Get a list of the subjectProcessingResult objects and their properties from a taskReport.| |[Get](../api/identitygovernance-subjectprocessingresult-get.md)|[microsoft.graph.identityGovernance.subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md)|Read the properties and relationships of a subjectProcessingResult object.| +|[Summary](../api/identitygovernance-subjectprocessingresult-summary.md)|[microsoft.graph.identityGovernance.subjectSummary](../resources/identitygovernance-subjectsummary.md)|Get a [subjectSummary](../resources/identitygovernance-subjectsummary.md) of subjectProcessingResult objects over a specified time period.| ## Properties @@ -37,6 +38,7 @@ Inherits from [entity](../resources/entity.md). |scheduledDateTime|DateTimeOffset|The date and time when processing was scheduled. Read-only.| |startedDateTime|DateTimeOffset|The date and time when processing started. Read-only.| |subject|[microsoft.graph.identityGovernance.workflowSubject](../resources/identitygovernance-workflowsubject.md)|The subject for which tasks were processed. Read-only.| +|subjectType|microsoft.graph.identityGovernance.subjectType|The type of subject for which tasks were processed. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `user`, `agentIdentity`, `unknownFutureValue`, `provisioningObject`. Use the `Prefer: include-unknown-enum-members` request header to get the following value from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `provisioningObject`. Read-only. Supports `$filter` (`eq`, `ne`).| |totalTasksCount|Int32|The total number of tasks in the workflow. Read-only.| |totalUnprocessedTasksCount|Int32|The count of tasks that have not yet been processed. Read-only.| |workflowExecutionType|microsoft.graph.identityGovernance.workflowExecutionType|The workflow execution type. The possible values are: `scheduled`, `onDemand`, `unknownFutureValue`, `activatedWithScope`, `extensibilityOnDemand`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `activatedWithScope`, `extensibilityOnDemand`. Read-only. Supports `$filter` (`eq`, `ne`).| @@ -74,6 +76,7 @@ The following JSON representation shows the resource type. "totalUnprocessedTasksCount": "Integer", "workflowExecutionType": "String", "workflowVersion": "Integer", + "subjectType": "String", "subject": { "@odata.type": "microsoft.graph.identityGovernance.workflowSubject" } diff --git a/api-reference/beta/resources/identitygovernance-subjectsummary.md b/api-reference/beta/resources/identitygovernance-subjectsummary.md new file mode 100644 index 00000000000..d723acf9c3d --- /dev/null +++ b/api-reference/beta/resources/identitygovernance-subjectsummary.md @@ -0,0 +1,54 @@ +--- +title: "subjectSummary resource type" +description: "A summary of subject processing results for a specified time period. This summary allows the administrator to get a quick overview based on counts." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# subjectSummary resource type + +Namespace: microsoft.graph.identityGovernance + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +A summary of subject processing results for a specified time period. This summary allows the administrator to get a quick overview based on counts. It's returned by the [summary](../api/identitygovernance-subjectprocessingresult-summary.md) function on a collection of [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) objects. + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|failedSubjects|Int32|The number of subjects with at least one failed task in a subject summary.| +|failedTasks|Int32|The number of failed tasks for subjects in a subject summary.| +|successfulSubjects|Int32|The number of subjects where all tasks succeeded in a subject summary.| +|totalSubjects|Int32|The total number of subjects in a subject summary.| +|totalTasks|Int32|The total tasks of subjects in a subject summary.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.identityGovernance.subjectSummary", + "failedSubjects": "Integer", + "failedTasks": "Integer", + "successfulSubjects": "Integer", + "totalSubjects": "Integer", + "totalTasks": "Integer" +} +``` diff --git a/api-reference/beta/resources/identitygovernance-task.md b/api-reference/beta/resources/identitygovernance-task.md index 8a1f600e225..5e56ae04f0d 100644 --- a/api-reference/beta/resources/identitygovernance-task.md +++ b/api-reference/beta/resources/identitygovernance-task.md @@ -34,7 +34,7 @@ Inherits from [entity](../resources/entity.md). |Property|Type|Description| |:---|:---|:---| |arguments|[microsoft.graph.keyValuePair](../resources/keyvaluepair.md) collection|Arguments included within the task.
For guidance to configure this property, see [Configure the arguments for built-in Lifecycle Workflow tasks](/graph/identitygovernance-lifecycleworkflows-task-arguments). Required.| -|category|microsoft.graph.identityGovernance.lifecycleTaskCategory|The category of the task. The possible values are: `joiner`, `leaver`, `unknownFutureValue`. This property is multi-valued and the same task can apply to both `joiner` and `leaver` categories.

Supports `$filter`(`eq`, `ne`).| +|category|microsoft.graph.identityGovernance.lifecycleTaskCategory|The category of the task. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`. This property is multi-valued and the same task can apply to both `joiner` and `leaver` categories.

Supports `$filter`(`eq`, `ne`).| |continueOnError|Boolean|A Boolean value that specifies whether, if this task fails, the workflow stops, and subsequent tasks aren't run. Optional.| |description|String|A string that describes the purpose of the task for administrative use. Optional.| |displayName|String|A unique string that identifies the task. Required.

Supports `$filter`(`eq`, `ne`) and `orderBy`.| diff --git a/api-reference/beta/resources/identitygovernance-taskdefinition.md b/api-reference/beta/resources/identitygovernance-taskdefinition.md index b4b135fbe27..e5cb89f2ee1 100644 --- a/api-reference/beta/resources/identitygovernance-taskdefinition.md +++ b/api-reference/beta/resources/identitygovernance-taskdefinition.md @@ -29,7 +29,7 @@ Inherits from [entity](../resources/entity.md). |Property|Type|Description| |:---|:---|:---| -|category|microsoft.graph.identityGovernance.lifecycleTaskCategory|The category of the HR function that the tasks created using this definition can be used with. The possible values are: `joiner`, `leaver`, `mover`, `unknownFutureValue`. This is a multi-valued enumeration whose allowed combinations are `joiner`, `joiner,leaver`, or `leaver`.

Supports `$filter`(`eq`, `ne`, `has`) and `$orderby`. | +|category|microsoft.graph.identityGovernance.lifecycleTaskCategory|The category of the HR function that the tasks created using this definition can be used with. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`.

Supports `$filter`(`eq`, `ne`, `has`) and `$orderby`. | |continueOnError|Boolean|Defines if the workflow will continue if the task has an error.| |description|String|The description of the taskDefinition.| |displayName|String|The display name of the taskDefinition.

Supports `$filter`(`eq`, `ne`) and `$orderby`.| diff --git a/api-reference/beta/resources/identitygovernance-topworkflowsinsightssummary.md b/api-reference/beta/resources/identitygovernance-topworkflowsinsightssummary.md index 309a8656971..94e82de35d8 100644 --- a/api-reference/beta/resources/identitygovernance-topworkflowsinsightssummary.md +++ b/api-reference/beta/resources/identitygovernance-topworkflowsinsightssummary.md @@ -26,7 +26,7 @@ Represents a summary of the workflows that are processed the most, or the _top w |successfulUsers|Int32|Count of successful users processed by the workflow.| |totalRuns|Int32|Count of total runs of workflow.| |totalUsers|Int32|Total number of users processed by the workflow.| -|workflowCategory|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the workflow. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`.| +|workflowCategory|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the workflow. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`.| |workflowDisplayName|String|The name of the workflow.| |workflowId|String|The workflow ID.| |workflowVersion|Int32|The version of the workflow that was a top workflow ran.| diff --git a/api-reference/beta/resources/identitygovernance-workflow.md b/api-reference/beta/resources/identitygovernance-workflow.md index e7d5ec29482..7ad167b970f 100644 --- a/api-reference/beta/resources/identitygovernance-workflow.md +++ b/api-reference/beta/resources/identitygovernance-workflow.md @@ -47,7 +47,7 @@ Inherits from [workflowBase](../resources/identitygovernance-workflowbase.md). |Property|Type|Description| |:---|:---|:---| -|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the HR function supported by the workflows created using this template. A workflow can only belong to one category. The possible values are: `joiner`, `leaver`, `mover`,`unknownFutureValue`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md). Required.

Supports `$filter`(`eq`,`ne`) and `$orderby`| +|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the HR function supported by the workflows created using this template. A workflow can only belong to one category. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md). Required.

Supports `$filter`(`eq`,`ne`) and `$orderby`| |createdDateTime|DateTimeOffset|When the `workflow` was created. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).

Supports `$filter`(`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderby`.| |deletedDateTime|DateTimeOffset|When the workflow was deleted.

Supports `$filter`(`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderby`.| |description|String|The description of the `workflow`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md). Optional.| diff --git a/api-reference/beta/resources/identitygovernance-workflowbase.md b/api-reference/beta/resources/identitygovernance-workflowbase.md index 22160d04a35..795d3dfd5a0 100644 --- a/api-reference/beta/resources/identitygovernance-workflowbase.md +++ b/api-reference/beta/resources/identitygovernance-workflowbase.md @@ -5,7 +5,7 @@ author: "AlexFilipin" ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType -ms.date: 03/21/2024 +ms.date: 07/22/2026 --- # workflowBase resource type @@ -27,7 +27,7 @@ None. |Property|Type|Description| |:---|:---|:---| -|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the workflow. The possible values are: `joiner`, `leaver`, `mover`, `unknownFutureValue`.| +|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the workflow. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`.| |createdDateTime|DateTimeOffset|When a workflow was created.| |description|String|A string that describes the purpose of the workflow.| |displayName|String|A string to identify the workflow.| @@ -35,6 +35,7 @@ None. |isEnabled|Boolean|Determines whether the workflow is enabled or disabled. If this setting is `true`, the workflow can be run on demand or on schedule when **isSchedulingEnabled** is `true`.| |isSchedulingEnabled|Boolean|If `true`, the Lifecycle Workflow engine executes the workflow based on the schedule defined by tenant settings. Can't be `true` for a disabled workflow (where **isEnabled** is `false`).| |lastModifiedDateTime|DateTimeOffset|When the workflow was last modified.| +|targetSubjectType|microsoft.graph.identityGovernance.subjectType|The type of subject that the workflow targets. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `user`, `agentIdentity`, `unknownFutureValue`, `provisioningObject`. Use the `Prefer: include-unknown-enum-members` request header to get the following value from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `provisioningObject`.| ## Relationships @@ -67,6 +68,7 @@ The following JSON representation shows the resource type. }, "isEnabled": "Boolean", "isSchedulingEnabled": "Boolean", - "lastModifiedDateTime": "String (timestamp)" + "lastModifiedDateTime": "String (timestamp)", + "targetSubjectType": "String" } ``` diff --git a/api-reference/beta/resources/identitygovernance-workflowsubject.md b/api-reference/beta/resources/identitygovernance-workflowsubject.md index 07a961f169e..9439afff8d0 100644 --- a/api-reference/beta/resources/identitygovernance-workflowsubject.md +++ b/api-reference/beta/resources/identitygovernance-workflowsubject.md @@ -2,7 +2,7 @@ title: "workflowSubject resource type" description: "Represents an abstract base type for subjects that can be activated in identity governance lifecycle workflows." author: "masonwolff" -ms.date: 05/26/2026 +ms.date: 07/22/2026 ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType @@ -22,7 +22,9 @@ Represents an abstract base type for subjects that can be activated in identity - **targetSubject** property of [customTaskExtensionCalloutData](../resources/identitygovernance-customtaskextensioncalloutdata.md) - **targetSubject** property of [customTaskExtensionResponseData](../resources/identitygovernance-customtaskextensionresponsedata.md) -This is an abstract type. It cannot be instantiated directly. Use the derived type [provisioningObjectWorkflowSubject](../resources/identitygovernance-provisioningobjectworkflowsubject.md) to create a workflow subject for provisioning scenarios. +This is an abstract type. It cannot be instantiated directly. Use one of the following derived types: +- [directoryObjectWorkflowSubject](../resources/identitygovernance-directoryobjectworkflowsubject.md) to represent an existing directory object, such as a user, as the workflow subject. +- [provisioningObjectWorkflowSubject](../resources/identitygovernance-provisioningobjectworkflowsubject.md) to represent a provisioning object as the workflow subject. ## Properties diff --git a/api-reference/beta/resources/identitygovernance-workflowtemplate.md b/api-reference/beta/resources/identitygovernance-workflowtemplate.md index 48c176c5d67..0793435449f 100644 --- a/api-reference/beta/resources/identitygovernance-workflowtemplate.md +++ b/api-reference/beta/resources/identitygovernance-workflowtemplate.md @@ -31,7 +31,7 @@ Inherits from [entity](../resources/entity.md). |Property|Type|Description| |:---|:---|:---| -|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the workflow template. The possible values are: `joiner`, `leaver`, `mover`.

Supports `$filter`(`eq`, `ne`) and `$orderby`.| +|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the workflow template. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`.

Supports `$filter`(`eq`, `ne`) and `$orderby`.| |description|String|The description of the `workflowTemplate`.| |displayName|String|The display name of the `workflowTemplate`.

Supports `$filter`(`eq`, `ne`) and `$orderby`.| |executionConditions|[microsoft.graph.identityGovernance.workflowExecutionConditions](../resources/identitygovernance-workflowexecutionconditions.md)|Conditions describing when to execute the workflow and the criteria to identify in-scope subject set.| diff --git a/api-reference/beta/resources/identitygovernance-workflowversion.md b/api-reference/beta/resources/identitygovernance-workflowversion.md index 06caf202cbc..0ff14b01d93 100644 --- a/api-reference/beta/resources/identitygovernance-workflowversion.md +++ b/api-reference/beta/resources/identitygovernance-workflowversion.md @@ -32,7 +32,7 @@ Inherits from [workflowBase](../resources/identitygovernance-workflowbase.md). |Property|Type|Description| |:---|:---|:---| -|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the HR function supported by the workflows created using this template. A workflow can only belong to one category. The possible values are: `joiner`, `leaver`, `mover`, `unknownFutureValue`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).

Supports `$filter`(`eq`,`ne`) and `$orderby`| +|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the HR function supported by the workflows created using this template. A workflow can only belong to one category. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).

Supports `$filter`(`eq`,`ne`) and `$orderby`| |createdDateTime|DateTimeOffset|The date time when the `workflow` was versioned. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).

Supports `$filter`(`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderby`.| |description|String|The description of the `workflowversion`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).| |displayName|String|The display name of the `workflowversion`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).

Supports `$filter`(`eq`, `ne`) and `orderby`.| diff --git a/api-reference/beta/toc/identity-and-access/toc.yml b/api-reference/beta/toc/identity-and-access/toc.yml index 9cb9b042f75..a29a293bc31 100644 --- a/api-reference/beta/toc/identity-and-access/toc.yml +++ b/api-reference/beta/toc/identity-and-access/toc.yml @@ -1383,6 +1383,8 @@ items: href: ../../api/identitygovernance-taskreport-list-subjectprocessingresults.md - name: Get href: ../../api/identitygovernance-subjectprocessingresult-get.md + - name: Summary + href: ../../api/identitygovernance-subjectprocessingresult-summary.md - name: Task processing result items: - name: Task processing result diff --git a/api-reference/v1.0/api/identitygovernance-run-list-subjectprocessingresults.md b/api-reference/v1.0/api/identitygovernance-run-list-subjectprocessingresults.md new file mode 100644 index 00000000000..3a1a3e224f4 --- /dev/null +++ b/api-reference/v1.0/api/identitygovernance-run-list-subjectprocessingresults.md @@ -0,0 +1,106 @@ +--- +title: "List subjectProcessingResults" +description: "Get a list of subjectProcessingResult objects for a specific workflow run." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +--- + +# List subjectProcessingResults + +Namespace: microsoft.graph.identityGovernance + +Get a list of the [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) objects for a specific workflow [run](../resources/identitygovernance-run.md). Each result represents the processing outcome for a single subject. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/identitygovernance-run-list-subjectprocessingresults-permissions.md)] + +## HTTP request + + +``` http +GET /identityGovernance/lifecycleWorkflows/workflows/{workflowId}/runs/{runId}/subjectProcessingResults +``` + +## Optional query parameters + +This method supports the `$count`, `$filter`, `$orderby`, and `$expand` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|****** Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + + +```msgraph-interactive +GET https://graph.microsoft.com/v1.0/identityGovernance/lifecycleWorkflows/workflows/14879a93-6b91-4153-b7e6-5df4a7b7c5c8/runs/e831ffea-4156-482a-b431-e26f94d0a3dc/subjectProcessingResults +``` + +### Response + +The following example shows the response. + +> [!NOTE] +> The response object shown here might be shortened for readability. + + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#identityGovernance/lifecycleWorkflows/workflows('14879a93-6b91-4153-b7e6-5df4a7b7c5c8')/runs('e831ffea-4156-482a-b431-e26f94d0a3dc')/subjectProcessingResults", + "value": [ + { + "id": "6c6d9550-4adc-117f-b307-ee188d511d67", + "completedDateTime": "2026-05-15T10:35:00Z", + "failedTasksCount": 0, + "processingStatus": "completed", + "scheduledDateTime": "2026-05-15T10:30:00Z", + "startedDateTime": "2026-05-15T10:30:15Z", + "totalTasksCount": 3, + "totalUnprocessedTasksCount": 0, + "workflowExecutionType": "extensibilityOnDemand", + "workflowVersion": 1, + "subject": { + "@odata.type": "#microsoft.graph.identityGovernance.provisioningObjectWorkflowSubject", + "id": "b74f0fae-b1f3-4c96-9bf0-d4d8a8e37cbe", + "attributeSetEntries": [] + } + } + ] +} +``` diff --git a/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-get.md b/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-get.md new file mode 100644 index 00000000000..42b1c6e7096 --- /dev/null +++ b/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-get.md @@ -0,0 +1,104 @@ +--- +title: "Get subjectProcessingResult" +description: "Read the properties and relationships of a subjectProcessingResult object." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +--- + +# Get subjectProcessingResult + +Namespace: microsoft.graph.identityGovernance + +Read the properties and relationships of a [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) object for a workflow run. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/identitygovernance-subjectprocessingresult-get-permissions.md)] + +## HTTP request + + +``` http +GET /identityGovernance/lifecycleWorkflows/workflows/{workflowId}/runs/{runId}/subjectProcessingResults/{subjectProcessingResultId} +``` + +## Optional query parameters + +This method supports the `$expand` OData query parameter to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|****** Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) object in the response body. + +## Examples + +### Example 1: Get a subjectProcessingResult + +#### Request + +The following example shows a request. + + +```msgraph-interactive +GET https://graph.microsoft.com/v1.0/identityGovernance/lifecycleWorkflows/workflows/14879a93-6b91-4153-b7e6-5df4a7b7c5c8/runs/e831ffea-4156-482a-b431-e26f94d0a3dc/subjectProcessingResults/6c6d9550-4adc-117f-b307-ee188d511d67 +``` + +#### Response + +The following example shows the response. + +> [!NOTE] +> The response object shown here might be shortened for readability. + + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#identityGovernance/lifecycleWorkflows/workflows('14879a93-6b91-4153-b7e6-5df4a7b7c5c8')/runs('e831ffea-4156-482a-b431-e26f94d0a3dc')/subjectProcessingResults/$entity", + "id": "6c6d9550-4adc-117f-b307-ee188d511d67", + "completedDateTime": "2026-05-15T10:35:00Z", + "failedTasksCount": 0, + "processingStatus": "completed", + "scheduledDateTime": "2026-05-15T10:30:00Z", + "startedDateTime": "2026-05-15T10:30:15Z", + "totalTasksCount": 3, + "totalUnprocessedTasksCount": 0, + "workflowExecutionType": "extensibilityOnDemand", + "workflowVersion": 1, + "subject": { + "@odata.type": "#microsoft.graph.identityGovernance.provisioningObjectWorkflowSubject", + "id": "b74f0fae-b1f3-4c96-9bf0-d4d8a8e37cbe", + "attributeSetEntries": [] + } +} +``` diff --git a/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-summary.md b/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-summary.md new file mode 100644 index 00000000000..b9ba508545d --- /dev/null +++ b/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-summary.md @@ -0,0 +1,99 @@ +--- +title: "subjectProcessingResult: summary" +description: "The summary of subjectProcessingResult for a lifecycle workflow." +author: "masonwolff" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# subjectProcessingResult: summary + +Namespace: microsoft.graph.identityGovernance + +Provide a [subjectSummary](../resources/identitygovernance-subjectsummary.md) for [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) objects over a specified time period. Because the number of subject processing results returned by the list API can be overwhelming, this summary allows administrators to get a quick overview based on counts. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md)] + +[!INCLUDE [rbac-lifecycle-workflows-apis-read](../includes/rbac-for-apis/rbac-lifecycle-workflows-apis-read.md)] + +## HTTP request + + +```http +GET /identityGovernance/lifecycleWorkflows/workflows/{workflowId}/runs/{runId}/subjectProcessingResults/summary(startDateTime={TimeStamp},endDateTime={TimeStamp}) +``` + +## Function parameters + +In the request URL, provide the following query parameters with values. + +|Parameter|Type|Description| +|:---|:---|:---| +|startDateTime|DateTimeOffset|The start date and time of the subject processing result summary. Required.| +|endDateTime|DateTimeOffset|The end date and time of the subject processing result summary. Required.| + +## Optional query parameters + +This method doesn't support OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|****** Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this function returns a `200 OK` response code and a [microsoft.graph.identityGovernance.subjectSummary](../resources/identitygovernance-subjectsummary.md) in the response body. + +## Examples + +### Request + +The following example shows a request. + + +```msgraph-interactive +GET https://graph.microsoft.com/v1.0/identityGovernance/lifecycleWorkflows/workflows/14879e66-9ea9-48d0-804d-8fea672d0341/runs/40efc576-8100-46eb-92c1-73eb43bb09a4/subjectProcessingResults/summary(startDateTime=2026-05-06T00:00:00Z,endDateTime=2026-05-13T00:00:00Z) +``` + +### Response + +The following example shows the response. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#microsoft.graph.identityGovernance.subjectSummary", + "failedTasks": 3, + "failedSubjects": 2, + "successfulSubjects": 48, + "totalTasks": 150, + "totalSubjects": 50 +} +``` diff --git a/api-reference/v1.0/api/identitygovernance-workflow-activateandwait.md b/api-reference/v1.0/api/identitygovernance-workflow-activateandwait.md new file mode 100644 index 00000000000..95c8d586870 --- /dev/null +++ b/api-reference/v1.0/api/identitygovernance-workflow-activateandwait.md @@ -0,0 +1,124 @@ +--- +title: "workflow: activateAndWait" +description: "Activate a lifecycle workflow for a specified subject and synchronously wait for execution to complete." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +--- + +# workflow: activateAndWait + +Namespace: microsoft.graph.identityGovernance + +Activate a [lifecycle workflow](../resources/identitygovernance-workflow.md) for a specified subject and synchronously wait for execution to complete. This action returns an [awaitedWorkflowProcessingResult](../resources/identitygovernance-awaitedworkflowprocessingresult.md) with the execution outcome. Use this action when you need immediate confirmation of workflow completion, for example when provisioning a non-user subject. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/identitygovernance-workflow-activateandwait-permissions.md)] + +## HTTP request + + +``` http +POST /identityGovernance/lifecycleWorkflows/workflows/{workflowId}/activateAndWait +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the parameters. + +The following table lists the parameters that are required when you call this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|subject|[microsoft.graph.identityGovernance.workflowSubject](../resources/identitygovernance-workflowsubject.md)|The subject for which to activate the workflow. Must include the `@odata.type` property to specify the derived type (for example, `#microsoft.graph.identityGovernance.provisioningObjectWorkflowSubject`). Required.| + +## Response + +If successful, this action returns a `200 OK` response code and an [awaitedWorkflowProcessingResult](../resources/identitygovernance-awaitedworkflowprocessingresult.md) in the response body. + +## Examples + +### Request + +The following example shows a request. + + +``` http +POST https://graph.microsoft.com/v1.0/identityGovernance/lifecycleWorkflows/workflows/14879a93-6b91-4153-b7e6-5df4a7b7c5c8/activateAndWait +Content-Type: application/json + +{ + "subject": { + "@odata.type": "#microsoft.graph.identityGovernance.provisioningObjectWorkflowSubject", + "id": "b74f0fae-b1f3-4c96-9bf0-d4d8a8e37cbe", + "attributeSetEntries": [ + { + "name": "department", + "value": "Engineering" + }, + { + "name": "jobTitle", + "value": "Software Engineer" + } + ] + } +} +``` + +### Response + +The following example shows the response. + +> [!NOTE] +> The response object shown here might be shortened for readability. + + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#microsoft.graph.identityGovernance.awaitedWorkflowProcessingResult", + "processingStatus": "completed", + "statusReasons": [], + "subject": { + "@odata.type": "#microsoft.graph.identityGovernance.provisioningObjectWorkflowSubject", + "id": "b74f0fae-b1f3-4c96-9bf0-d4d8a8e37cbe", + "attributeSetEntries": [ + { + "name": "department", + "value": "Engineering" + }, + { + "name": "jobTitle", + "value": "Software Engineer" + } + ] + } +} +``` diff --git a/api-reference/v1.0/includes/permissions/identitygovernance-run-list-subjectprocessingresults-permissions.md b/api-reference/v1.0/includes/permissions/identitygovernance-run-list-subjectprocessingresults-permissions.md new file mode 100644 index 00000000000..6029e997810 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/identitygovernance-run-list-subjectprocessingresults-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-get-permissions.md b/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-get-permissions.md new file mode 100644 index 00000000000..6029e997810 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md b/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md new file mode 100644 index 00000000000..6029e997810 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/identitygovernance-workflow-activateandwait-permissions.md b/api-reference/v1.0/includes/permissions/identitygovernance-workflow-activateandwait-permissions.md new file mode 100644 index 00000000000..a805565954e --- /dev/null +++ b/api-reference/v1.0/includes/permissions/identitygovernance-workflow-activateandwait-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|LifecycleWorkflows-Workflow.Activate|LifecycleWorkflows-Workflow.ReadWrite.All, LifecycleWorkflows.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|LifecycleWorkflows-Workflow.Activate|LifecycleWorkflows-Workflow.ReadWrite.All, LifecycleWorkflows.ReadWrite.All| diff --git a/api-reference/v1.0/resources/enums-identitygovernance.md b/api-reference/v1.0/resources/enums-identitygovernance.md index 3f8b49f9cac..1f81bd23f8f 100644 --- a/api-reference/v1.0/resources/enums-identitygovernance.md +++ b/api-reference/v1.0/resources/enums-identitygovernance.md @@ -36,6 +36,15 @@ Namespace: microsoft.graph.identityGovernance |failed| |unknownFutureValue| +### customTaskExtensionReplyMode values + +|Member| +|:---| +|none| +|callback| +|response| +|unknownFutureValue| + ### lifecycleTaskCategory values @@ -45,6 +54,8 @@ Namespace: microsoft.graph.identityGovernance |joiner| |leaver| |unknownFutureValue| +|mover| +|extensibility| ### lifecycleWorkflowCategory values @@ -55,6 +66,8 @@ Namespace: microsoft.graph.identityGovernance |joiner| |leaver| |unknownFutureValue| +|mover| +|extensibility| ### valueType values @@ -69,6 +82,16 @@ Namespace: microsoft.graph.identityGovernance |unknownFutureValue| +### subjectType values + +The **subjectType** enumeration is an evolvable enumeration marked with the `IsFlags` attribute. Use the `Prefer: include-unknown-enum-members` request header to get the following value in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `provisioningObject`. + +|Member| +|:---| +|user| +|unknownFutureValue| +|provisioningObject| + ### workflowExecutionType values @@ -80,6 +103,7 @@ Namespace: microsoft.graph.identityGovernance |unknownFutureValue| |activatedWithScope| |preview| +|extensibilityOnDemand| ### workflowTriggerTimeBasedAttribute values diff --git a/api-reference/v1.0/resources/identitygovernance-attributesetentry.md b/api-reference/v1.0/resources/identitygovernance-attributesetentry.md new file mode 100644 index 00000000000..6462ebc4f87 --- /dev/null +++ b/api-reference/v1.0/resources/identitygovernance-attributesetentry.md @@ -0,0 +1,47 @@ +--- +title: "attributeSetEntry resource type" +description: "Represents a key-value pair in an attribute set, used to define the attributes of a provisioning object subject." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# attributeSetEntry resource type + +Namespace: microsoft.graph.identityGovernance + +Represents a key-value pair in an attribute set. This object is configured in the **attributeSetEntries** property of the [provisioningObjectWorkflowSubject](../resources/identitygovernance-provisioningobjectworkflowsubject.md) resource. + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|name|String|The name (key) of the attribute.| +|value|String|The value of the attribute.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.identityGovernance.attributeSetEntry", + "name": "String", + "value": "String" +} +``` diff --git a/api-reference/v1.0/resources/identitygovernance-awaitedworkflowprocessingresult.md b/api-reference/v1.0/resources/identitygovernance-awaitedworkflowprocessingresult.md new file mode 100644 index 00000000000..78888c9c015 --- /dev/null +++ b/api-reference/v1.0/resources/identitygovernance-awaitedworkflowprocessingresult.md @@ -0,0 +1,53 @@ +--- +title: "awaitedWorkflowProcessingResult resource type" +description: "Represents the result of a workflow execution that waits for completion." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# awaitedWorkflowProcessingResult resource type + +Namespace: microsoft.graph.identityGovernance + +Represents the result of a workflow execution that waits for completion. This type is returned by the [activateAndWait](../api/identitygovernance-workflow-activateandwait.md) action on the [workflow](../resources/identitygovernance-workflow.md) resource. + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|processingStatus|[microsoft.graph.identityGovernance.lifecycleWorkflowProcessingStatus](../resources/enums-identitygovernance-lifecycleworkflowprocessingstatus.md)|The processing status of the workflow execution. | +|statusReasons|String collection|A collection of reasons for the current processing status. May be empty.| +|subject|[microsoft.graph.identityGovernance.workflowSubject](../resources/identitygovernance-workflowsubject.md)|The subject that was processed by the workflow.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.identityGovernance.awaitedWorkflowProcessingResult", + "processingStatus": "String", + "statusReasons": [ + "String" + ], + "subject": { + "@odata.type": "microsoft.graph.identityGovernance.workflowSubject" + } +} +``` diff --git a/api-reference/v1.0/resources/identitygovernance-customtaskextension.md b/api-reference/v1.0/resources/identitygovernance-customtaskextension.md index 74d6bb61518..1fce3b940a2 100644 --- a/api-reference/v1.0/resources/identitygovernance-customtaskextension.md +++ b/api-reference/v1.0/resources/identitygovernance-customtaskextension.md @@ -41,6 +41,7 @@ For more information about using custom task extensions, refer to the links in t |endpointConfiguration|[microsoft.graph.customExtensionEndpointConfiguration](../resources/customextensionendpointconfiguration.md)|Details for allowing the custom task extension to call the logic app. Inherited from [customCalloutExtension](../resources/customcalloutextension.md).| |id|String| Inherited from [entity](../resources/entity.md).

Supports `$filter`(`eq`, `ne`) and `$orderby`.| |lastModifiedDateTime|DateTimeOffset|When the custom extension was last modified.

Supports `$filter`(`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderby`.| +|replyMode|microsoft.graph.identityGovernance.customTaskExtensionReplyMode|Specifies how the custom task extension replies to the lifecycle workflows service. The possible values are: `none`, `callback`, `response`, `unknownFutureValue`.| ## Relationships @@ -79,7 +80,8 @@ The following JSON representation shows the resource type. "@odata.type": "microsoft.graph.customExtensionCallbackConfiguration" }, "createdDateTime": "String (timestamp)", - "lastModifiedDateTime": "String (timestamp)" + "lastModifiedDateTime": "String (timestamp)", + "replyMode": "String" } ``` diff --git a/api-reference/v1.0/resources/identitygovernance-customtaskextensioncalloutdata.md b/api-reference/v1.0/resources/identitygovernance-customtaskextensioncalloutdata.md index 57e084516eb..5d8245f27cc 100644 --- a/api-reference/v1.0/resources/identitygovernance-customtaskextensioncalloutdata.md +++ b/api-reference/v1.0/resources/identitygovernance-customtaskextensioncalloutdata.md @@ -18,7 +18,9 @@ Inherits from [customExtensionData](../resources/customextensiondata.md). ## Properties -None. +|Property|Type|Description| +|:---|:---|:---| +|targetSubject|[microsoft.graph.identityGovernance.workflowSubject](../resources/identitygovernance-workflowsubject.md)|The target subject for workflow execution.| ## Relationships @@ -40,6 +42,9 @@ The following JSON representation shows the resource type. --> ``` json { - "@odata.type": "#microsoft.graph.identityGovernance.customTaskExtensionCalloutData" + "@odata.type": "#microsoft.graph.identityGovernance.customTaskExtensionCalloutData", + "targetSubject": { + "@odata.type": "microsoft.graph.identityGovernance.workflowSubject" + } } ``` diff --git a/api-reference/v1.0/resources/identitygovernance-customtaskextensionresponsedata.md b/api-reference/v1.0/resources/identitygovernance-customtaskextensionresponsedata.md new file mode 100644 index 00000000000..42f6a911eef --- /dev/null +++ b/api-reference/v1.0/resources/identitygovernance-customtaskextensionresponsedata.md @@ -0,0 +1,55 @@ +--- +title: "customTaskExtensionResponseData resource type" +description: "Represents the data returned from custom task extensions in response to a callout." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# customTaskExtensionResponseData resource type + +Namespace: microsoft.graph.identityGovernance + +Represents the data returned from [customTaskExtension](../resources/identitygovernance-customtaskextension.md) callouts. This object is configured in the **data** property of the [customExtensionCalloutResponse](../resources/customextensioncalloutresponse.md) resource. + +Inherits from [customExtensionData](../resources/customextensiondata.md). + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|operationStatus|microsoft.graph.identityGovernance.customTaskExtensionOperationStatus|The operation status reported by the custom task extension. The possible values are: `completed`, `failed`, `unknownFutureValue`.| +|statusReasons|String collection|A collection of status reason strings. May be empty.| +|targetSubject|[microsoft.graph.identityGovernance.workflowSubject](../resources/identitygovernance-workflowsubject.md)|The workflow subject that was processed by the custom task extension.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.identityGovernance.customTaskExtensionResponseData", + "operationStatus": "String", + "targetSubject": { + "@odata.type": "microsoft.graph.identityGovernance.workflowSubject" + }, + "statusReasons": [ + "String" + ] +} +``` diff --git a/api-reference/v1.0/resources/identitygovernance-directoryobjectworkflowsubject.md b/api-reference/v1.0/resources/identitygovernance-directoryobjectworkflowsubject.md new file mode 100644 index 00000000000..8361a493acd --- /dev/null +++ b/api-reference/v1.0/resources/identitygovernance-directoryobjectworkflowsubject.md @@ -0,0 +1,46 @@ +--- +title: "directoryObjectWorkflowSubject resource type" +description: "Represents a directory object as a subject for lifecycle workflow activation." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# directoryObjectWorkflowSubject resource type + +Namespace: microsoft.graph.identityGovernance + +Represents a [directory object](../resources/directoryobject.md), such as a [user](../resources/user.md), as a subject for lifecycle workflow activation. Use this type when a lifecycle workflow processes an existing directory object; the **directoryObject** relationship returns the specific object being processed. + +Inherits from [workflowSubject](../resources/identitygovernance-workflowsubject.md). + +## Methods + +None. + +## Properties + +None. + +## Relationships + +|Relationship|Type|Description| +|:---|:---|:---| +|directoryObject|[microsoft.graph.directoryObject](../resources/directoryobject.md)|The directory object that's being processed by the lifecycle workflow. The runtime type is the specific derived type of the object, for example, [user](../resources/user.md).| + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.identityGovernance.directoryObjectWorkflowSubject" +} +``` diff --git a/api-reference/v1.0/resources/identitygovernance-provisioningattributemapping.md b/api-reference/v1.0/resources/identitygovernance-provisioningattributemapping.md new file mode 100644 index 00000000000..8e50a6a81dc --- /dev/null +++ b/api-reference/v1.0/resources/identitygovernance-provisioningattributemapping.md @@ -0,0 +1,44 @@ +--- +title: "provisioningAttributeMapping resource type" +description: "Represents execution conditions for provisioning workflows that use attribute mapping." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# provisioningAttributeMapping resource type + +Namespace: microsoft.graph.identityGovernance + +Represents execution conditions for provisioning workflows that use attribute mapping. This object is configured in the **executionConditions** property of the [workflow](../resources/identitygovernance-workflow.md), [workflowTemplate](../resources/identitygovernance-workflowtemplate.md), and [workflowVersion](../resources/identitygovernance-workflowversion.md) resources when workflows execute based on attribute-based criteria. + +Inherits from [workflowExecutionConditions](../resources/identitygovernance-workflowexecutionconditions.md). + +## Methods + +None. + +## Properties + +None. This type inherits all properties from the base type [workflowExecutionConditions](../resources/identitygovernance-workflowexecutionconditions.md). For the list of available properties, see the [workflowExecutionConditions properties](../resources/identitygovernance-workflowexecutionconditions.md#properties) table. + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.identityGovernance.provisioningAttributeMapping" +} +``` diff --git a/api-reference/v1.0/resources/identitygovernance-provisioningobjectworkflowsubject.md b/api-reference/v1.0/resources/identitygovernance-provisioningobjectworkflowsubject.md new file mode 100644 index 00000000000..2ccb81e6e47 --- /dev/null +++ b/api-reference/v1.0/resources/identitygovernance-provisioningobjectworkflowsubject.md @@ -0,0 +1,53 @@ +--- +title: "provisioningObjectWorkflowSubject resource type" +description: "Represents a provisioning object as a subject for lifecycle workflow activation." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# provisioningObjectWorkflowSubject resource type + +Namespace: microsoft.graph.identityGovernance + +Represents a provisioning object as a subject for lifecycle workflow activation. Use this type when activating workflows via the [activateAndWait](../api/identitygovernance-workflow-activateandwait.md) action for non-user provisioning subjects. + +Inherits from [workflowSubject](../resources/identitygovernance-workflowsubject.md). + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|attributeSetEntries|[microsoft.graph.identityGovernance.attributeSetEntry](../resources/identitygovernance-attributesetentry.md) collection|The attribute set entries representing the subject's attributes. Each entry is a key-value pair.| +|id|String|The identifier of the provisioning object subject.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.identityGovernance.provisioningObjectWorkflowSubject", + "id": "String", + "attributeSetEntries": [ + { + "@odata.type": "microsoft.graph.identityGovernance.attributeSetEntry" + } + ] +} +``` diff --git a/api-reference/v1.0/resources/identitygovernance-run.md b/api-reference/v1.0/resources/identitygovernance-run.md index 1f18409093b..218e8817fe1 100644 --- a/api-reference/v1.0/resources/identitygovernance-run.md +++ b/api-reference/v1.0/resources/identitygovernance-run.md @@ -51,9 +51,10 @@ Inherits from [entity](../resources/entity.md). |Relationship|Type|Description| |:---|:---|:---| |reprocessedRuns|[microsoft.graph.identityGovernance.run](../resources/identitygovernance-run.md) collection|The related reprocessed workflow run.| -|userProcessingResults|[microsoft.graph.identityGovernance.userProcessingResult](../resources/identitygovernance-userprocessingresult.md) collection|The associated individual user execution.| +|subjectProcessingResults|[microsoft.graph.identityGovernance.subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) collection|The processing results for each subject in this workflow run.| |taskProcessingResults|[microsoft.graph.identityGovernance.taskProcessingResult](../resources/identitygovernance-taskprocessingresult.md) collection|The related taskProcessingResults.| |taskReports|[microsoft.graph.identityGovernance.taskReport](../resources/identitygovernance-taskreport.md) collection|The related taskProcessingReports.| +|userProcessingResults|[microsoft.graph.identityGovernance.userProcessingResult](../resources/identitygovernance-userprocessingresult.md) collection|The associated individual user execution.| ## JSON representation diff --git a/api-reference/v1.0/resources/identitygovernance-subjectprocessingresult.md b/api-reference/v1.0/resources/identitygovernance-subjectprocessingresult.md new file mode 100644 index 00000000000..eaae5512e8a --- /dev/null +++ b/api-reference/v1.0/resources/identitygovernance-subjectprocessingresult.md @@ -0,0 +1,81 @@ +--- +title: "subjectProcessingResult resource type" +description: "Represents the processing results for a single subject in a lifecycle workflow run." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# subjectProcessingResult resource type + +Namespace: microsoft.graph.identityGovernance + +Represents the processing results for a single subject (for example, a provisioning object) in a lifecycle workflow run. This resource mirrors [userProcessingResult](../resources/identitygovernance-userprocessingresult.md) but uses a [workflowSubject](../resources/identitygovernance-workflowsubject.md)-typed **subject** property to support non-user subjects. + +Inherits from [entity](../resources/entity.md). + +## Methods + +|Method|Return type|Description| +|:---|:---|:---| +|[List (from run)](../api/identitygovernance-run-list-subjectprocessingresults.md)|[microsoft.graph.identityGovernance.subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) collection|Get a list of the subjectProcessingResult objects and their properties from a run.| +|[Get](../api/identitygovernance-subjectprocessingresult-get.md)|[microsoft.graph.identityGovernance.subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md)|Read the properties and relationships of a subjectProcessingResult object.| +|[Summary](../api/identitygovernance-subjectprocessingresult-summary.md)|[microsoft.graph.identityGovernance.subjectSummary](../resources/identitygovernance-subjectsummary.md)|Get a [subjectSummary](../resources/identitygovernance-subjectsummary.md) of subjectProcessingResult objects over a specified time period.| + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|completedDateTime|DateTimeOffset|The date and time when the subject processing completed. Read-only.| +|failedTasksCount|Int32|The count of tasks that failed for the subject. Read-only.| +|id|String|The unique identifier for the subject processing result. Inherited from [entity](../resources/entity.md). Read-only.| +|processingStatus|[microsoft.graph.identityGovernance.lifecycleWorkflowProcessingStatus](../resources/enums-identitygovernance-lifecycleworkflowprocessingstatus.md)|The overall processing status for the subject. Read-only. Supports `$filter` (`eq`, `ne`).| +|scheduledDateTime|DateTimeOffset|The date and time when processing was scheduled. Read-only.| +|startedDateTime|DateTimeOffset|The date and time when processing started. Read-only.| +|subject|[microsoft.graph.identityGovernance.workflowSubject](../resources/identitygovernance-workflowsubject.md)|The subject for which tasks were processed. Read-only.| +|subjectType|microsoft.graph.identityGovernance.subjectType|The type of subject for which tasks were processed. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `user`, `unknownFutureValue`, `provisioningObject`. Use the `Prefer: include-unknown-enum-members` request header to get the following value from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `provisioningObject`. Read-only. Supports `$filter` (`eq`, `ne`).| +|totalTasksCount|Int32|The total number of tasks in the workflow. Read-only.| +|totalUnprocessedTasksCount|Int32|The count of tasks that have not yet been processed. Read-only.| +|workflowExecutionType|microsoft.graph.identityGovernance.workflowExecutionType|The workflow execution type. The possible values are: `scheduled`, `onDemand`, `unknownFutureValue`, `activatedWithScope`, `preview`, `extensibilityOnDemand`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `activatedWithScope`, `preview`, `extensibilityOnDemand`. Read-only. Supports `$filter` (`eq`, `ne`).| +|workflowVersion|Int32|The version of the workflow at the time of execution. Read-only.| + +## Relationships + +|Relationship|Type|Description| +|:---|:---|:---| +|reprocessedRuns|[microsoft.graph.identityGovernance.run](../resources/identitygovernance-run.md) collection|The reprocessed runs associated with this subject processing result.| +|taskProcessingResults|[microsoft.graph.identityGovernance.taskProcessingResult](../resources/identitygovernance-taskprocessingresult.md) collection|The task-level processing results for this subject. Read-only.| + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.identityGovernance.subjectProcessingResult", + "id": "String (identifier)", + "completedDateTime": "String (timestamp)", + "failedTasksCount": "Integer", + "processingStatus": "String", + "scheduledDateTime": "String (timestamp)", + "startedDateTime": "String (timestamp)", + "totalTasksCount": "Integer", + "totalUnprocessedTasksCount": "Integer", + "workflowExecutionType": "String", + "workflowVersion": "Integer", + "subjectType": "String", + "subject": { + "@odata.type": "microsoft.graph.identityGovernance.workflowSubject" + } +} +``` diff --git a/api-reference/v1.0/resources/identitygovernance-subjectsummary.md b/api-reference/v1.0/resources/identitygovernance-subjectsummary.md new file mode 100644 index 00000000000..c3199f4a19f --- /dev/null +++ b/api-reference/v1.0/resources/identitygovernance-subjectsummary.md @@ -0,0 +1,52 @@ +--- +title: "subjectSummary resource type" +description: "A summary of subject processing results for a specified time period. This summary allows the administrator to get a quick overview based on counts." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# subjectSummary resource type + +Namespace: microsoft.graph.identityGovernance + +A summary of subject processing results for a specified time period. This summary allows the administrator to get a quick overview based on counts. It's returned by the [summary](../api/identitygovernance-subjectprocessingresult-summary.md) function on a collection of [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) objects. + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|failedSubjects|Int32|The number of subjects with at least one failed task in a subject summary.| +|failedTasks|Int32|The number of failed tasks for subjects in a subject summary.| +|successfulSubjects|Int32|The number of subjects where all tasks succeeded in a subject summary.| +|totalSubjects|Int32|The total number of subjects in a subject summary.| +|totalTasks|Int32|The total tasks of subjects in a subject summary.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.identityGovernance.subjectSummary", + "failedSubjects": "Integer", + "failedTasks": "Integer", + "successfulSubjects": "Integer", + "totalSubjects": "Integer", + "totalTasks": "Integer" +} +``` diff --git a/api-reference/v1.0/resources/identitygovernance-task.md b/api-reference/v1.0/resources/identitygovernance-task.md index 6eea171d0ea..0a679935f5d 100644 --- a/api-reference/v1.0/resources/identitygovernance-task.md +++ b/api-reference/v1.0/resources/identitygovernance-task.md @@ -31,7 +31,7 @@ Inherits from [entity](../resources/entity.md). |Property|Type|Description| |:---|:---|:---| |arguments|[microsoft.graph.keyValuePair](../resources/keyvaluepair.md) collection|Arguments included within the task.
For guidance to configure this property, see [Configure the arguments for built-in Lifecycle Workflow tasks](/graph/identitygovernance-lifecycleworkflows-task-arguments). Required.| -|category|microsoft.graph.identityGovernance.lifecycleTaskCategory|The category of the task. The possible values are: `joiner`, `leaver`, `unknownFutureValue`. This property is multi-valued and the same task can apply to both `joiner` and `leaver` categories.

Supports `$filter`(`eq`, `ne`).| +|category|microsoft.graph.identityGovernance.lifecycleTaskCategory|The category of the task. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`. This property is multi-valued and the same task can apply to both `joiner` and `leaver` categories.

Supports `$filter`(`eq`, `ne`).| |continueOnError|Boolean|A Boolean value that specifies whether, if this task fails, the workflow stops, and subsequent tasks aren't run. Optional.| |description|String|A string that describes the purpose of the task for administrative use. Optional.| |displayName|String|A unique string that identifies the task. Required.

Supports `$filter`(`eq`, `ne`) and `orderBy`.| diff --git a/api-reference/v1.0/resources/identitygovernance-taskdefinition.md b/api-reference/v1.0/resources/identitygovernance-taskdefinition.md index bf5238af36c..e5c17b0dc9c 100644 --- a/api-reference/v1.0/resources/identitygovernance-taskdefinition.md +++ b/api-reference/v1.0/resources/identitygovernance-taskdefinition.md @@ -27,7 +27,7 @@ Inherits from [entity](../resources/entity.md). |Property|Type|Description| |:---|:---|:---| -|category|microsoft.graph.identityGovernance.lifecycleTaskCategory|The category of the HR function that the tasks created using this definition can be used with. The possible values are: `joiner`, `mover`, `leaver`, `unknownFutureValue`. This is a multi-valued enumeration whose allowed combinations are `joiner`, `joiner,leaver`, or `leaver`.

Supports `$filter`(`eq`, `ne`, `has`) and `$orderby`. | +|category|microsoft.graph.identityGovernance.lifecycleTaskCategory|The category of the HR function that the tasks created using this definition can be used with. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`.

Supports `$filter`(`eq`, `ne`, `has`) and `$orderby`. | |continueOnError|Boolean|Defines if the workflow will continue if the task has an error.| |description|String|The description of the taskDefinition.| |displayName|String|The display name of the taskDefinition.

Supports `$filter`(`eq`, `ne`) and `$orderby`.| diff --git a/api-reference/v1.0/resources/identitygovernance-taskprocessingresult.md b/api-reference/v1.0/resources/identitygovernance-taskprocessingresult.md index ea60ab64681..f847fcaf481 100644 --- a/api-reference/v1.0/resources/identitygovernance-taskprocessingresult.md +++ b/api-reference/v1.0/resources/identitygovernance-taskprocessingresult.md @@ -33,6 +33,7 @@ Inherits from [entity](../resources/entity.md). |processingInfo|String|Additional human-readable context about the task processing outcome. This property contains information about edge cases where the task completed successfully but the expected action wasn't performed because the target was already in the desired state, such as when the user was already a member of the specified group. Returns `null` when no additional context is needed. Nullable.| |processingStatus|[microsoft.graph.identityGovernance.lifecycleWorkflowProcessingStatus](../resources/enums-identitygovernance-lifecycleworkflowprocessingstatus.md)|Describes the execution status of the `taskProcessingResult`.

Supports `$filter`(`eq`, `ne`) and `$orderby`.| |startedDateTime|DateTimeOffset|The date time when taskProcessingResult execution started. Value is `null` if task execution hasn't started yet.

Supports `$filter`(`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderby`.| +|workflowSubject|[microsoft.graph.identityGovernance.workflowSubject](../resources/identitygovernance-workflowsubject.md)|The workflow subject associated with this task processing result. Populated for extensibility and provisioning workflows.| ## Relationships @@ -61,6 +62,9 @@ The following JSON representation shows the resource type. "failureReason": "String", "processingInfo": "String", "processingStatus": "String", - "startedDateTime": "String (timestamp)" + "startedDateTime": "String (timestamp)", + "workflowSubject": { + "@odata.type": "microsoft.graph.identityGovernance.workflowSubject" + } } ``` diff --git a/api-reference/v1.0/resources/identitygovernance-topworkflowsinsightssummary.md b/api-reference/v1.0/resources/identitygovernance-topworkflowsinsightssummary.md index ecd55f9a159..7c588766cf7 100644 --- a/api-reference/v1.0/resources/identitygovernance-topworkflowsinsightssummary.md +++ b/api-reference/v1.0/resources/identitygovernance-topworkflowsinsightssummary.md @@ -24,7 +24,7 @@ Represents a summary of the workflows that are processed the most, or the _top w |successfulUsers|Int32|Count of successful users processed by the workflow.| |totalRuns|Int32|Count of total runs of workflow.| |totalUsers|Int32|Total number of users processed by the workflow.| -|workflowCategory|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the workflow. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`.| +|workflowCategory|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the workflow. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`.| |workflowDisplayName|String|The name of the workflow.| |workflowId|String|The workflow ID.| |workflowVersion|Int32|The version of the workflow that was a top workflow ran.| diff --git a/api-reference/v1.0/resources/identitygovernance-workflow.md b/api-reference/v1.0/resources/identitygovernance-workflow.md index 135cecbbdfd..00f368bb037 100644 --- a/api-reference/v1.0/resources/identitygovernance-workflow.md +++ b/api-reference/v1.0/resources/identitygovernance-workflow.md @@ -29,6 +29,7 @@ Inherits from [workflowBase](../resources/identitygovernance-workflowbase.md). |[Delete](../api/identitygovernance-workflow-delete.md)|None|Deletes a [workflow](../resources/identitygovernance-workflow.md) object.| |[Activate](../api/identitygovernance-workflow-activate.md)|None|Run a workflow on-demand.| |[Activate with scope](../api/identitygovernance-workflow-activatewithscope.md)|None|Run a workflow on-demand with a specific scope.| +|[Activate and wait](../api/identitygovernance-workflow-activateandwait.md)|[microsoft.graph.identityGovernance.awaitedWorkflowProcessingResult](../resources/identitygovernance-awaitedworkflowprocessingresult.md)|Activate a workflow for a subject and synchronously wait for completion.| |[List users in scope](../api/workflow-list-executionscope.md)|[microsoft.graph.user](../resources/user.md) collection|Get a list of users who are in the scope of the execution conditions of a [workflow](../resources/identitygovernance-workflow.md) object.| |[Clear quarantine](../api/identitygovernance-workflow-clearquarantine.md)|[microsoft.graph.identityGovernance.workflow](../resources/identitygovernance-workflow.md)|Release a quarantined workflow so that it resumes processing.| |[Preview task failures](../api/identitygovernance-workflow-previewtaskfailures.md)|[microsoft.graph.identityGovernance.previewFailedTask](../resources/identitygovernance-previewfailedtask.md) collection|Validate the tasks configured in a workflow to check for configuration errors.| @@ -43,7 +44,7 @@ Inherits from [workflowBase](../resources/identitygovernance-workflowbase.md). |Property|Type|Description| |:---|:---|:---| -|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the HR function supported by the workflows created using this template. A workflow can only belong to one category. The possible values are: `joiner`, `leaver`, `mover`, `unknownFutureValue`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md). Required.

Supports `$filter`(`eq`,`ne`) and `$orderby`| +|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the HR function supported by the workflows created using this template. A workflow can only belong to one category. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md). Required.

Supports `$filter`(`eq`,`ne`) and `$orderby`| |createdDateTime|DateTimeOffset|When the `workflow` was created. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).

Supports `$filter`(`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderby`.| |deletedDateTime|DateTimeOffset|When the workflow was deleted.

Supports `$filter`(`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderby`.| |description|String|The description of the `workflow`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md). Optional.| @@ -68,6 +69,7 @@ Inherits from [workflowBase](../resources/identitygovernance-workflowbase.md). |lastModifiedBy|[user](../resources/user.md)|The user who last modified the [workflow](../resources/identitygovernance-workflow.md) object. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).

Supports `$filter`(`eq`, `ne`) and `$expand`.| |previewScope|[microsoft.graph.directoryObject](../resources/directoryobject.md) collection|The preview scope for the workflow.| |runs|[microsoft.graph.identityGovernance.run](../resources/identitygovernance-run.md) collection|Workflow runs.| +|subjectProcessingResults|[microsoft.graph.identityGovernance.subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) collection|Per-subject workflow execution results.| |taskReports|[microsoft.graph.identityGovernance.taskReport](../resources/identitygovernance-taskreport.md) collection|Represents the aggregation of task execution data for tasks within a [workflow](../resources/identitygovernance-workflow.md) object.| |tasks|[microsoft.graph.identityGovernance.task](../resources/identitygovernance-task.md) collection|Represents the configured tasks to execute and their execution sequence within a [workflow](../resources/identitygovernance-workflow.md) object. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md). Required.| |userProcessingResults|[microsoft.graph.identityGovernance.userProcessingResult](../resources/identitygovernance-userprocessingresult.md) collection|Per-user workflow execution results.| diff --git a/api-reference/v1.0/resources/identitygovernance-workflowbase.md b/api-reference/v1.0/resources/identitygovernance-workflowbase.md index a6d91d76383..dce308743e7 100644 --- a/api-reference/v1.0/resources/identitygovernance-workflowbase.md +++ b/api-reference/v1.0/resources/identitygovernance-workflowbase.md @@ -25,7 +25,7 @@ None. |Property|Type|Description| |:---|:---|:---| -|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the workflow. The possible values are: `joiner`, `leaver`, `mover`, `unknownFutureValue`.| +|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the workflow. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`.| |createdDateTime|DateTimeOffset|When a workflow was created.| |description|String|A string that describes the purpose of the workflow.| |displayName|String|A string to identify the workflow.| @@ -33,6 +33,7 @@ None. |isEnabled|Boolean|Whether the workflow is enabled or disabled. If this setting is `true`, the workflow can be run on demand or on schedule when **isSchedulingEnabled** is `true`.| |isSchedulingEnabled|Boolean|If `true`, the Lifecycle Workflow engine executes the workflow based on the schedule defined by tenant settings. Can't be `true` for a disabled workflow (where **isEnabled** is `false`).| |lastModifiedDateTime|DateTimeOffset|When the workflow was last modified.| +|targetSubjectType|microsoft.graph.identityGovernance.subjectType|The type of subject that the workflow targets. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `user`, `unknownFutureValue`, `provisioningObject`. Use the `Prefer: include-unknown-enum-members` request header to get the following value from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `provisioningObject`.| ## Relationships @@ -65,6 +66,7 @@ The following JSON representation shows the resource type. }, "isEnabled": "Boolean", "isSchedulingEnabled": "Boolean", - "lastModifiedDateTime": "String (timestamp)" + "lastModifiedDateTime": "String (timestamp)", + "targetSubjectType": "String" } ``` diff --git a/api-reference/v1.0/resources/identitygovernance-workflowsubject.md b/api-reference/v1.0/resources/identitygovernance-workflowsubject.md new file mode 100644 index 00000000000..fb5bae66eee --- /dev/null +++ b/api-reference/v1.0/resources/identitygovernance-workflowsubject.md @@ -0,0 +1,54 @@ +--- +title: "workflowSubject resource type" +description: "Represents an abstract base type for subjects that can be activated in identity governance lifecycle workflows." +author: "masonwolff" +ms.date: 07/22/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# workflowSubject resource type + +Namespace: microsoft.graph.identityGovernance + +Represents an abstract base type for subjects that can be activated in identity governance lifecycle workflows. The derived types of this object are configured in the following resources: +- **subject** property of [awaitedWorkflowProcessingResult](../resources/identitygovernance-awaitedworkflowprocessingresult.md) +- **subject** property of [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) +- **workflowSubject** property of [taskProcessingResult](../resources/identitygovernance-taskprocessingresult.md) +- **targetSubject** property of [customTaskExtensionCallbackData](../resources/identitygovernance-customtaskextensioncallbackdata.md) +- **targetSubject** property of [customTaskExtensionCalloutData](../resources/identitygovernance-customtaskextensioncalloutdata.md) +- **targetSubject** property of [customTaskExtensionResponseData](../resources/identitygovernance-customtaskextensionresponsedata.md) + +This is an abstract type. It cannot be instantiated directly. Use one of the following derived types: +- [directoryObjectWorkflowSubject](../resources/identitygovernance-directoryobjectworkflowsubject.md) to represent an existing directory object, such as a user, as the workflow subject. +- [provisioningObjectWorkflowSubject](../resources/identitygovernance-provisioningobjectworkflowsubject.md) to represent a provisioning object as the workflow subject. + +Instances of these derived types are differentiated by the `@odata.type` property. + +## Methods + +None. + +## Properties + +None. + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.identityGovernance.workflowSubject" +} +``` diff --git a/api-reference/v1.0/resources/identitygovernance-workflowtemplate.md b/api-reference/v1.0/resources/identitygovernance-workflowtemplate.md index a9a98ee0405..13feadd0b4c 100644 --- a/api-reference/v1.0/resources/identitygovernance-workflowtemplate.md +++ b/api-reference/v1.0/resources/identitygovernance-workflowtemplate.md @@ -29,7 +29,7 @@ Inherits from [entity](../resources/entity.md). |Property|Type|Description| |:---|:---|:---| -|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the workflow template. The possible values are: `joiner`, `mover`, `leaver`,`unknownFutureValue`.

Supports `$filter`(`eq`, `ne`) and `$orderby`.| +|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the workflow template. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`.

Supports `$filter`(`eq`, `ne`) and `$orderby`.| |description|String|The description of the `workflowTemplate`.| |displayName|String|The display name of the `workflowTemplate`.

Supports `$filter`(`eq`, `ne`) and `$orderby`.| |executionConditions|[microsoft.graph.identityGovernance.workflowExecutionConditions](../resources/identitygovernance-workflowexecutionconditions.md)|Conditions describing when to execute the workflow and the criteria to identify in-scope subject set.| diff --git a/api-reference/v1.0/resources/identitygovernance-workflowversion.md b/api-reference/v1.0/resources/identitygovernance-workflowversion.md index 3d22675d638..43e700df229 100644 --- a/api-reference/v1.0/resources/identitygovernance-workflowversion.md +++ b/api-reference/v1.0/resources/identitygovernance-workflowversion.md @@ -30,7 +30,7 @@ Inherits from [workflowBase](../resources/identitygovernance-workflowbase.md). |Property|Type|Description| |:---|:---|:---| -|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the HR function supported by the workflows created using this template. A workflow can only belong to one category. The possible values are: `joiner`, `leaver`, `mover`,`unknownFutureValue`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).

Supports `$filter`(`eq`,`ne`) and `$orderby`| +|category|microsoft.graph.identityGovernance.lifecycleWorkflowCategory|The category of the HR function supported by the workflows created using this template. A workflow can only belong to one category. The possible values are: `joiner`, `leaver`, `unknownFutureValue`, `mover`, `extensibility`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mover`, `extensibility`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).

Supports `$filter`(`eq`,`ne`) and `$orderby`| |createdDateTime|DateTimeOffset|The date time when the `workflow` was versioned. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).

Supports `$filter`(`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderby`.| |description|String|The description of the `workflowversion`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).| |displayName|String|The display name of the `workflowversion`. Inherited from [workflowBase](../resources/identitygovernance-workflowbase.md).

Supports `$filter`(`eq`, `ne`) and `orderby`.| diff --git a/api-reference/v1.0/toc/identity-and-access/toc.yml b/api-reference/v1.0/toc/identity-and-access/toc.yml index c581df9a373..3b2bc75d5f4 100644 --- a/api-reference/v1.0/toc/identity-and-access/toc.yml +++ b/api-reference/v1.0/toc/identity-and-access/toc.yml @@ -921,6 +921,8 @@ items: href: ../../api/identitygovernance-workflow-activate.md - name: Activate with scope href: ../../api/identitygovernance-workflow-activatewithscope.md + - name: Activate and wait + href: ../../api/identitygovernance-workflow-activateandwait.md - name: List users in scope href: ../../api/workflow-list-executionscope.md - name: Clear quarantine @@ -984,6 +986,16 @@ items: href: ../../api/identitygovernance-userprocessingresult-list-reprocessedruns.md - name: Remove reprocessedRuns href: ../../api/identitygovernance-userprocessingresult-delete-reprocessedruns.md + - name: Subject processing result + items: + - name: Subject processing result + href: ../../resources/identitygovernance-subjectprocessingresult.md + - name: List (from run) + href: ../../api/identitygovernance-run-list-subjectprocessingresults.md + - name: Get + href: ../../api/identitygovernance-subjectprocessingresult-get.md + - name: Summary + href: ../../api/identitygovernance-subjectprocessingresult-summary.md - name: Task report items: - name: Task report @@ -1066,6 +1078,24 @@ items: href: ../../api/identitygovernance-insights-workflowsprocessedsummary.md - name: Get workflows processed by category href: ../../api/identitygovernance-insights-workflowsprocessedbycategory.md + - name: Complex types + items: + - name: Attribute set entry + href: ../../resources/identitygovernance-attributesetentry.md + - name: Awaited workflow processing result + href: ../../resources/identitygovernance-awaitedworkflowprocessingresult.md + - name: Custom task extension response data + href: ../../resources/identitygovernance-customtaskextensionresponsedata.md + - name: Directory object workflow subject + href: ../../resources/identitygovernance-directoryobjectworkflowsubject.md + - name: Provisioning attribute mapping + href: ../../resources/identitygovernance-provisioningattributemapping.md + - name: Provisioning object workflow subject + href: ../../resources/identitygovernance-provisioningobjectworkflowsubject.md + - name: Subject summary + href: ../../resources/identitygovernance-subjectsummary.md + - name: Workflow subject + href: ../../resources/identitygovernance-workflowsubject.md - name: Privileged Identity Management items: - name: PIM for Microsoft Entra roles diff --git a/api-reference/v1.0/toc/toc.mapping.json b/api-reference/v1.0/toc/toc.mapping.json index e949cae47ae..bc4d2ac403b 100644 --- a/api-reference/v1.0/toc/toc.mapping.json +++ b/api-reference/v1.0/toc/toc.mapping.json @@ -950,6 +950,16 @@ "microsoft.graph.identityGovernance.lifecycleManagementSettings", "microsoft.graph.identitygovernance.insights" ], + "complexTypes": [ + "microsoft.graph.identityGovernance.attributeSetEntry", + "microsoft.graph.identityGovernance.awaitedWorkflowProcessingResult", + "microsoft.graph.identityGovernance.customTaskExtensionResponseData", + "microsoft.graph.identityGovernance.directoryObjectWorkflowSubject", + "microsoft.graph.identityGovernance.provisioningAttributeMapping", + "microsoft.graph.identityGovernance.provisioningObjectWorkflowSubject", + "microsoft.graph.identityGovernance.subjectSummary", + "microsoft.graph.identityGovernance.workflowSubject" + ], "childNodes": [ { "name": "Workflow", @@ -966,6 +976,7 @@ ], "resources": [ "microsoft.graph.identityGovernance.userProcessingResult", + "microsoft.graph.identityGovernance.subjectProcessingResult", "microsoft.graph.identityGovernance.taskReport", "microsoft.graph.identityGovernance.run", "microsoft.graph.identityGovernance.taskProcessingResult" diff --git a/changelog/Microsoft.AAD.LCM.json b/changelog/Microsoft.AAD.LCM.json index af706170b07..ae2c99172ce 100644 --- a/changelog/Microsoft.AAD.LCM.json +++ b/changelog/Microsoft.AAD.LCM.json @@ -3,18 +3,268 @@ { "ChangeList": [ { - "Id": "10cda337-0c4a-42dc-99ed-c5fc73a4a8e6", + "Id": "2b8c920e-e91a-4362-82e2-f923a43f96a8", "ApiChange": "Resource", "ChangedApiName": "guestSponsorTrigger", "ChangeType": "Addition", "Description": "Added the [guestSponsorTrigger](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-guestsponsortrigger?view=graph-rest-beta) resource.", "Target": "guestSponsorTrigger" + }, + { + "Id": "2b8c920e-e91a-4362-82e2-f923a43f96a8", + "ApiChange": "Enumeration", + "ChangedApiName": "subjectType", + "ChangeType": "Addition", + "Description": "Added the **subjectType** enumeration type.", + "Target": "subjectType" + }, + { + "Id": "2b8c920e-e91a-4362-82e2-f923a43f96a8", + "ApiChange": "Resource", + "ChangedApiName": "directoryObjectWorkflowSubject", + "ChangeType": "Addition", + "Description": "Added the [directoryObjectWorkflowSubject](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-directoryobjectworkflowsubject?view=graph-rest-beta) resource.", + "Target": "directoryObjectWorkflowSubject" + }, + { + "Id": "2b8c920e-e91a-4362-82e2-f923a43f96a8", + "ApiChange": "Resource", + "ChangedApiName": "subjectSummary", + "ChangeType": "Addition", + "Description": "Added the [subjectSummary](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-subjectsummary?view=graph-rest-beta) resource.", + "Target": "subjectSummary" + }, + { + "Id": "2b8c920e-e91a-4362-82e2-f923a43f96a8", + "ApiChange": "Property", + "ChangedApiName": "subjectType", + "ChangeType": "Addition", + "Description": "Added the **subjectType** property to the [subjectProcessingResult](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-subjectprocessingresult?view=graph-rest-beta) resource.", + "Target": "subjectProcessingResult" + }, + { + "Id": "2b8c920e-e91a-4362-82e2-f923a43f96a8", + "ApiChange": "Property", + "ChangedApiName": "targetSubjectType", + "ChangeType": "Addition", + "Description": "Added the **targetSubjectType** property to the [workflowBase](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-workflowbase?view=graph-rest-beta) resource.", + "Target": "workflowBase" + }, + { + "Id": "2b8c920e-e91a-4362-82e2-f923a43f96a8", + "ApiChange": "Method", + "ChangedApiName": "summary", + "ChangeType": "Addition", + "Description": "Added the [summary](https://learn.microsoft.com/en-us/graph/api/identitygovernance-subjectprocessingresult-summary?view=graph-rest-beta) method to the [subjectProcessingResult](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-subjectprocessingresult?view=graph-rest-beta) resource.", + "Target": "subjectProcessingResult" } ], - "Id": "10cda337-0c4a-42dc-99ed-c5fc73a4a8e6", + "Id": "2b8c920e-e91a-4362-82e2-f923a43f96a8", "Cloud": "Prod", "Version": "beta", - "CreatedDateTime": "2026-07-08T18:45:29.2658039Z", + "CreatedDateTime": "2026-08-25T00:00:00.0000000Z", + "WorkloadArea": "Identity and access", + "SubArea": "Governance" + }, + { + "ChangeList": [ + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Enumeration", + "ChangedApiName": "customTaskExtensionReplyMode", + "ChangeType": "Addition", + "Description": "Added the **customTaskExtensionReplyMode** enumeration type.", + "Target": "customTaskExtensionReplyMode" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Member", + "ChangedApiName": "extensibility", + "ChangeType": "Addition", + "Description": "Added the `extensibility` member to the **lifecycleTaskCategory** enumeration.", + "Target": "lifecycleTaskCategory" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Member", + "ChangedApiName": "extensibility", + "ChangeType": "Addition", + "Description": "Added the `extensibility` member to the **lifecycleWorkflowCategory** enumeration.", + "Target": "lifecycleWorkflowCategory" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Enumeration", + "ChangedApiName": "subjectType", + "ChangeType": "Addition", + "Description": "Added the **subjectType** enumeration type.", + "Target": "subjectType" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Member", + "ChangedApiName": "extensibilityOnDemand", + "ChangeType": "Addition", + "Description": "Added the `extensibilityOnDemand` member to the **workflowExecutionType** enumeration.", + "Target": "workflowExecutionType" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Resource", + "ChangedApiName": "attributeSetEntry", + "ChangeType": "Addition", + "Description": "Added the [attributeSetEntry](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-attributesetentry?view=graph-rest-v1.0) resource.", + "Target": "attributeSetEntry" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Resource", + "ChangedApiName": "awaitedWorkflowProcessingResult", + "ChangeType": "Addition", + "Description": "Added the [awaitedWorkflowProcessingResult](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-awaitedworkflowprocessingresult?view=graph-rest-v1.0) resource.", + "Target": "awaitedWorkflowProcessingResult" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Property", + "ChangedApiName": "targetSubject", + "ChangeType": "Addition", + "Description": "Added the **targetSubject** property to the [customTaskExtensionCalloutData](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-customtaskextensioncalloutdata?view=graph-rest-v1.0) resource.", + "Target": "customTaskExtensionCalloutData" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Resource", + "ChangedApiName": "customTaskExtensionResponseData", + "ChangeType": "Addition", + "Description": "Added the [customTaskExtensionResponseData](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-customtaskextensionresponsedata?view=graph-rest-v1.0) resource.", + "Target": "customTaskExtensionResponseData" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Resource", + "ChangedApiName": "directoryObjectWorkflowSubject", + "ChangeType": "Addition", + "Description": "Added the [directoryObjectWorkflowSubject](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-directoryobjectworkflowsubject?view=graph-rest-1.0) resource.", + "Target": "directoryObjectWorkflowSubject" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Resource", + "ChangedApiName": "provisioningAttributeMapping", + "ChangeType": "Addition", + "Description": "Added the [provisioningAttributeMapping](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-provisioningattributemapping?view=graph-rest-v1.0) resource.", + "Target": "provisioningAttributeMapping" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Resource", + "ChangedApiName": "provisioningObjectWorkflowSubject", + "ChangeType": "Addition", + "Description": "Added the [provisioningObjectWorkflowSubject](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-provisioningobjectworkflowsubject?view=graph-rest-v1.0) resource.", + "Target": "provisioningObjectWorkflowSubject" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Resource", + "ChangedApiName": "subjectSummary", + "ChangeType": "Addition", + "Description": "Added the [subjectSummary](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-subjectsummary?view=graph-rest-1.0) resource.", + "Target": "subjectSummary" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Resource", + "ChangedApiName": "workflowSubject", + "ChangeType": "Addition", + "Description": "Added the [workflowSubject](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-workflowsubject?view=graph-rest-v1.0) resource.", + "Target": "workflowSubject" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Property", + "ChangedApiName": "replyMode", + "ChangeType": "Addition", + "Description": "Added the **replyMode** property to the [customTaskExtension](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-customtaskextension?view=graph-rest-v1.0) resource.", + "Target": "customTaskExtension" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Relationship", + "ChangedApiName": "subjectProcessingResults", + "ChangeType": "Addition", + "Description": "Added the **subjectProcessingResults** relationship to the [run](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-run?view=graph-rest-v1.0) resource.", + "Target": "run" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Resource", + "ChangedApiName": "subjectProcessingResult", + "ChangeType": "Addition", + "Description": "Added the [subjectProcessingResult](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-subjectprocessingresult?view=graph-rest-v1.0) resource.", + "Target": "subjectProcessingResult" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Property", + "ChangedApiName": "workflowSubject", + "ChangeType": "Addition", + "Description": "Added the **workflowSubject** property to the [taskProcessingResult](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-taskprocessingresult?view=graph-rest-v1.0) resource.", + "Target": "taskProcessingResult" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Relationship", + "ChangedApiName": "subjectProcessingResults", + "ChangeType": "Addition", + "Description": "Added the **subjectProcessingResults** relationship to the [workflow](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-workflow?view=graph-rest-v1.0) resource.", + "Target": "workflow" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Property", + "ChangedApiName": "targetSubjectType", + "ChangeType": "Addition", + "Description": "Added the **targetSubjectType** property to the [workflowBase](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-workflowbase?view=graph-rest-v1.0) resource.", + "Target": "workflowBase" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Method", + "ChangedApiName": "activateAndWait", + "ChangeType": "Addition", + "Description": "Added the [activateAndWait](https://learn.microsoft.com/en-us/graph/api/identitygovernance-workflow-activateandwait?view=graph-rest-v1.0) method to the [workflow](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-workflow?view=graph-rest-v1.0) resource.", + "Target": "workflow" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Method", + "ChangedApiName": "Get", + "ChangeType": "Addition", + "Description": "Added the [Get](https://learn.microsoft.com/en-us/graph/api/identitygovernance-subjectprocessingresult-get?view=graph-rest-v1.0) method to the [subjectProcessingResult](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-subjectprocessingresult?view=graph-rest-v1.0) resource.", + "Target": "subjectProcessingResult" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Method", + "ChangedApiName": "List", + "ChangeType": "Addition", + "Description": "Added the [List](https://learn.microsoft.com/en-us/graph/api/identitygovernance-run-list-subjectprocessingresults?view=graph-rest-v1.0) method to the [subjectProcessingResult](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-subjectprocessingresult?view=graph-rest-v1.0) resource.", + "Target": "subjectProcessingResult" + }, + { + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "ApiChange": "Method", + "ChangedApiName": "summary", + "ChangeType": "Addition", + "Description": "Added the [summary](https://learn.microsoft.com/en-us/graph/api/identitygovernance-subjectprocessingresult-summary?view=graph-rest-1.0) method to the [subjectProcessingResult](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-subjectprocessingresult?view=graph-rest-v1.0) resource.", + "Target": "subjectProcessingResult" + } + ], + "Id": "34ecbc2b-0f65-4e25-a242-4cf33a471329", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-25T00:00:00.0000000Z", "WorkloadArea": "Identity and access", "SubArea": "Governance" }, diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index a736e0a3f0c..738c5a2548e 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -31,6 +31,17 @@ Added the [recovery](/graph/api/resources/entrarecoveryservices-recovery) resour ### Identity and access | Governance +Promoted the **Lifecycle Workflows provisioning and workflow subject** APIs from beta to v1.0, introducing a broader, extensible subject model for workflows and surfacing per-subject processing results. The promoted surface includes: + +- [workflowSubject](/graph/api/resources/identitygovernance-workflowsubject) base type and its [provisioningObjectWorkflowSubject](/graph/api/resources/identitygovernance-provisioningobjectworkflowsubject) and [directoryObjectWorkflowSubject](/graph/api/resources/identitygovernance-directoryobjectworkflowsubject) derived types +- [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult) resource with the **subjectProcessingResults** navigation property on the [run](/graph/api/resources/identitygovernance-run) and [workflow](/graph/api/resources/identitygovernance-workflow) resources +- [subjectSummary](/graph/api/resources/identitygovernance-subjectsummary) resource and the [summary](/graph/api/identitygovernance-subjectprocessingresult-summary) method on the [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult) resource +- [activateAndWait](/graph/api/identitygovernance-workflow-activateandwait) action on the [workflow](/graph/api/resources/identitygovernance-workflow) resource, returning the [awaitedWorkflowProcessingResult](/graph/api/resources/identitygovernance-awaitedworkflowprocessingresult) resource +- [provisioningAttributeMapping](/graph/api/resources/identitygovernance-provisioningattributemapping) and [attributeSetEntry](/graph/api/resources/identitygovernance-attributesetentry) resources +- [customTaskExtensionResponseData](/graph/api/resources/identitygovernance-customtaskextensionresponsedata) resource, the **replyMode** property on [customTaskExtension](/graph/api/resources/identitygovernance-customtaskextension), and the **targetSubject** property on [customTaskExtensionCalloutData](/graph/api/resources/identitygovernance-customtaskextensioncalloutdata) +- **targetSubjectType** property on [workflowBase](/graph/api/resources/identitygovernance-workflowbase) and **workflowSubject** property on [taskProcessingResult](/graph/api/resources/identitygovernance-taskprocessingresult) +- [subjectType](/graph/api/resources/enums-identitygovernance#subjecttype-values) and [customTaskExtensionReplyMode](/graph/api/resources/enums-identitygovernance#customtaskextensionreplymode-values) enumerations, along with the `extensibility` and `extensibilityOnDemand` enumeration members + Added the [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) resource type and methods to [create](/graph/api/entitlementmanagement-post-externaloriginresourceconnectors), [list](/graph/api/entitlementmanagement-list-externaloriginresourceconnectors), [get](/graph/api/externaloriginresourceconnector-get), [update](/graph/api/externaloriginresourceconnector-update), and [delete](/graph/api/externaloriginresourceconnector-delete) connections from Microsoft Entra entitlement management to SAP Identity Access Governance (SAP IAG). For an SAP IAG connector, specify the SAP IAG endpoint, OAuth token endpoint, and client ID, along with the Azure subscription, resource group, key vault, and secret that identify where its client secret is stored. The connector is associated with an access package resource so that entitlement management can provision access to resources in SAP IAG through access packages. - Added the **reviewerId** and **scopeType** properties to [accessReviewReviewerScope](/graph/api/resources/accessreviewreviewerscope) to specify a reviewer directly or as a well-known scope instead of through a query. @@ -121,6 +132,7 @@ Added the **allowOnPremUpdateOfOnPremisesObjectIdentifierEnabled** property to t - [customDataProvidedResourceUploadStatus](/graph/api/resources/enums#customdataprovidedresourceuploadstatus-values) enumeration Added support for user-centric (catalog-scope) access reviews through the **unified** relationship on the [accessReviewSet](/graph/api/resources/accessreviewset) resource. Use it to create and manage reviews that evaluate a principal's access across all groups and applications in an entitlement management catalog from a single review, and to accept recommendations or record decisions in bulk within a review stage. + ### Teamwork and communications | Calls and online meetings - Added the **meetingType** and **cloudVideoInteropInfo** properties to the [onlineMeetingBase](/graph/api/resources/onlinemeetingbase) resource to help determine the type of an online meeting and retrieve Cloud Video Interop settings. @@ -200,10 +212,12 @@ Added the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?vi - Added the [endUserSettings](/graph/api/resources/endusersettings) resource type and related methods for configuring access package suggestion behavior, including related people insight levels and approver detail visibility. - Added the [cancelProcessing](/graph/api/identitygovernance-workflow-cancelprocessing) method to the [workflow](/graph/api/resources/identitygovernance-workflow) resource to cancel workflow runs that are currently in progress or queued. - Added workflow preview operations to the [workflow](/graph/api/resources/identitygovernance-workflow) resource type in Lifecycle Workflows, enabling you to validate tasks and run workflows in preview mode without affecting production users. -- Added support for automatically quarantining Lifecycle Workflows to stop a workflow from processing more users than expected. Configure thresholds using the **quarantineConfiguration** property on [lifecycleManagementSettings](/graph/api/resources/identitygovernance-lifecyclemanagementsettings), and clear a quarantine by calling [clearQuarantine](/graph/api/identitygovernance-workflow-clearquarantine). +- Added support for automatically quarantining Lifecycle Workflows to stop a workflow from processing more users than expected. Configure thresholds using the **quarantineConfiguration** property on [lifecycleManagementSettings](/graph/api/resources/identitygovernance-lifecyclemanagementsettings?view=graph-rest-beta&preserve-view=true), and clear a quarantine by calling [clearQuarantine](/graph/api/identitygovernance-workflow-clearquarantine?view=graph-rest-beta&preserve-view=true). - Added the [externalSapAcConnectionInfo](/graph/api/resources/externalsapacconnectioninfo) complex type, along with the supporting [authenticationInfo](/graph/api/resources/authenticationinfo) and [clientCredentialAuthenticationInfo](/graph/api/resources/clientcredentialauthenticationinfo) types, to configure connections from Microsoft Entra entitlement management to SAP Access Control (AC) systems. Set these on the **connectionInfo** property of an [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) when its **connectorType** is `sapAc`. - Added the [guestSponsorTrigger](/graph/api/resources/identitygovernance-guestsponsortrigger?view=graph-rest-beta&preserve-view=true) resource type to initiate lifecycle workflows when guest users have fewer than the required number of sponsors. -- Added support for automatically quarantining Lifecycle Workflows to stop a workflow from processing more users than expected. Configure thresholds using the **quarantineConfiguration** property on [lifecycleManagementSettings](/graph/api/resources/identitygovernance-lifecyclemanagementsettings?view=graph-rest-beta&preserve-view=true), and clear a quarantine by calling [clearQuarantine](/graph/api/identitygovernance-workflow-clearquarantine?view=graph-rest-beta&preserve-view=true). +- Added the [directoryObjectWorkflowSubject](/graph/api/resources/identitygovernance-directoryobjectworkflowsubject?view=graph-rest-beta&preserve-view=true) resource type, a subtype of [workflowSubject](/graph/api/resources/identitygovernance-workflowsubject?view=graph-rest-beta&preserve-view=true), so that a subject processing result can represent a directory object, such as a user, that a Lifecycle Workflow processes. +- Added the [subjectSummary](/graph/api/resources/identitygovernance-subjectsummary?view=graph-rest-beta&preserve-view=true) resource type and the [summary](/graph/api/identitygovernance-subjectprocessingresult-summary?view=graph-rest-beta&preserve-view=true) method to the [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult?view=graph-rest-beta&preserve-view=true) resource to get an aggregate count of subject processing results over a specified time period. +- Added the **subjectType** enumeration type and the **subjectType** property on the [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult?view=graph-rest-beta&preserve-view=true) resource, along with the **targetSubjectType** property on the [workflowBase](/graph/api/resources/identitygovernance-workflowbase?view=graph-rest-beta&preserve-view=true) resource, to indicate the kind of subject that a workflow targets. - Added the **parameters** property to the [accessPackageAssignmentRequest](/graph/api/resources/accesspackageassignmentrequest?view=graph-rest-beta&preserve-view=true) resource, typed as the new [accessPackageAssignmentRequestParameters](/graph/api/resources/accesspackageassignmentrequestparameters?view=graph-rest-beta&preserve-view=true) complex type, to bypass the approval requirement configured on the access package policy when creating an assignment request. ### Identity and access | Identity and sign-in From fec1251548e5ced314e55e8a14e31aa430e1f925 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Wed, 26 Aug 2026 09:29:58 -0600 Subject: [PATCH 088/189] Update generated permissions tables with build 236201 (#29500) Co-authored-by: Microsoft Graph DevX Tooling --- ...titygovernance-subjectprocessingresult-summary-permissions.md | 1 + ...tygovernance-run-list-subjectprocessingresults-permissions.md | 1 + ...identitygovernance-subjectprocessingresult-get-permissions.md | 1 + ...titygovernance-subjectprocessingresult-summary-permissions.md | 1 + .../identitygovernance-workflow-activateandwait-permissions.md | 1 + 5 files changed, 5 insertions(+) diff --git a/api-reference/beta/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md b/api-reference/beta/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md index 6029e997810..15e125d003e 100644 --- a/api-reference/beta/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md +++ b/api-reference/beta/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| + diff --git a/api-reference/v1.0/includes/permissions/identitygovernance-run-list-subjectprocessingresults-permissions.md b/api-reference/v1.0/includes/permissions/identitygovernance-run-list-subjectprocessingresults-permissions.md index 6029e997810..15e125d003e 100644 --- a/api-reference/v1.0/includes/permissions/identitygovernance-run-list-subjectprocessingresults-permissions.md +++ b/api-reference/v1.0/includes/permissions/identitygovernance-run-list-subjectprocessingresults-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| + diff --git a/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-get-permissions.md b/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-get-permissions.md index 6029e997810..15e125d003e 100644 --- a/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-get-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| + diff --git a/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md b/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md index 6029e997810..15e125d003e 100644 --- a/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md +++ b/api-reference/v1.0/includes/permissions/identitygovernance-subjectprocessingresult-summary-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|LifecycleWorkflows-Reports.Read.All|LifecycleWorkflows.Read.All, LifecycleWorkflows.ReadWrite.All| + diff --git a/api-reference/v1.0/includes/permissions/identitygovernance-workflow-activateandwait-permissions.md b/api-reference/v1.0/includes/permissions/identitygovernance-workflow-activateandwait-permissions.md index a805565954e..648432b11ff 100644 --- a/api-reference/v1.0/includes/permissions/identitygovernance-workflow-activateandwait-permissions.md +++ b/api-reference/v1.0/includes/permissions/identitygovernance-workflow-activateandwait-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|LifecycleWorkflows-Workflow.Activate|LifecycleWorkflows-Workflow.ReadWrite.All, LifecycleWorkflows.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|LifecycleWorkflows-Workflow.Activate|LifecycleWorkflows-Workflow.ReadWrite.All, LifecycleWorkflows.ReadWrite.All| + From 32dfe6dc5c66e88d18f3962542f0c69c1b8682cb Mon Sep 17 00:00:00 2001 From: Jason Johnston Date: Wed, 26 Aug 2026 14:24:24 -0400 Subject: [PATCH 089/189] Fixed or removed invalid hostnames (#29506) --- ...sstenantaccesspolicyconfigurationpartner-restore.md | 3 +-- .../crosstenantidentitysyncpolicypartner-restore.md | 1 - ...oathtokenauthenticationmethoddevice-put-assignto.md | 2 +- api-reference/beta/api/plannertask-delta.md | 2 -- api-reference/beta/api/policydeletableitem-get.md | 10 ++++------ api-reference/beta/api/policydeletableitem-list.md | 6 ++---- 6 files changed, 8 insertions(+), 16 deletions(-) diff --git a/api-reference/beta/api/crosstenantaccesspolicyconfigurationpartner-restore.md b/api-reference/beta/api/crosstenantaccesspolicyconfigurationpartner-restore.md index 6b88f1e18b7..a9ee76df766 100644 --- a/api-reference/beta/api/crosstenantaccesspolicyconfigurationpartner-restore.md +++ b/api-reference/beta/api/crosstenantaccesspolicyconfigurationpartner-restore.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Restore a deleted [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) object. +Restore a deleted [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) object. [!INCLUDE [national-cloud-support](../../includes/global-only.md)] @@ -115,7 +115,6 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.context": "https://graph.microsoft-ppe.com/testppebetadeleteapis/$metadata#microsoft.graph.crossTenantAccessPolicyConfigurationPartner", "tenantId": "01d0e717-bc90-46ba-94a9-71b4a811fddb", "deletedDateTime": "2025-06-18T22:58:04Z", "displayName": null, diff --git a/api-reference/beta/api/crosstenantidentitysyncpolicypartner-restore.md b/api-reference/beta/api/crosstenantidentitysyncpolicypartner-restore.md index 3ae1c1032dd..83048fcf1cb 100644 --- a/api-reference/beta/api/crosstenantidentitysyncpolicypartner-restore.md +++ b/api-reference/beta/api/crosstenantidentitysyncpolicypartner-restore.md @@ -117,7 +117,6 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.context": "https://graph.microsoft-ppe.com/testppebetadeleteapis/$metadata#microsoft.graph.crossTenantIdentitySyncPolicyPartner", "tenantId": "01d0e717-bc90-46ba-94a9-71b4a811fddb", "displayName": null, "deletedDateTime": "2025-06-18T23:14:25Z", diff --git a/api-reference/beta/api/hardwareoathtokenauthenticationmethoddevice-put-assignto.md b/api-reference/beta/api/hardwareoathtokenauthenticationmethoddevice-put-assignto.md index 428cbfe98bf..7525e6f15a2 100644 --- a/api-reference/beta/api/hardwareoathtokenauthenticationmethoddevice-put-assignto.md +++ b/api-reference/beta/api/hardwareoathtokenauthenticationmethoddevice-put-assignto.md @@ -65,7 +65,7 @@ You can specify the following properties when creating a **user**. |Property|Type|Description| |:---|:---|:---| -|odata.id|String|A link to the user entity with using objectId as key. Example: "https://graph.microsoft-ppe.com/beta/users/{usersId}"| +|odata.id|String|A link to the user entity with using objectId as key. Example: `https://graph.microsoft.com/beta/users/{usersId}`| ## Response diff --git a/api-reference/beta/api/plannertask-delta.md b/api-reference/beta/api/plannertask-delta.md index 8ed9986562d..70f56ee4903 100644 --- a/api-reference/beta/api/plannertask-delta.md +++ b/api-reference/beta/api/plannertask-delta.md @@ -215,7 +215,6 @@ Content-Type: application/json }, "id": "aSOQ0mveu06bTSkfnJQay2QAIn_l", "version": "1-Task @@@@@@@@@@@@@@@H", - "details@odata.context": "https://tasks.officeppe.com/taskApi/V3.0/$metadata#plans('-W4K7hIak0WlAwgJCn1sEWQABgjH')/tasks('aSOQ0mveu06bTSkfnJQay2QAIn_l')/details/$entity", "details": { "@odata.etag": "W/\"JzEtVGFza0RldGFpbHMgQEBAQEBAQEBAQEBAQEBARCc=\"", "description": "", @@ -381,7 +380,6 @@ Content-Type: application/json }, "id": "aSOQ0mveu06bTSkfnJQay2QAIn_l", "version": "1-Task @@@@@@@@@@@@@@@H", - "details@odata.context": "https://tasks.officeppe.com/taskApi/V3.0/$metadata#plans('-W4K7hIak0WlAwgJCn1sEWQABgjH')/tasks('aSOQ0mveu06bTSkfnJQay2QAIn_l')/details/$entity", "details": { "@odata.etag": "W/\"JzEtVGFza0RldGFpbHMgQEBAQEBAQEBAQEBAQEBARCc=\"", "description": "", diff --git a/api-reference/beta/api/policydeletableitem-get.md b/api-reference/beta/api/policydeletableitem-get.md index d31ba72cfa0..9ded9071f33 100644 --- a/api-reference/beta/api/policydeletableitem-get.md +++ b/api-reference/beta/api/policydeletableitem-get.md @@ -32,8 +32,8 @@ Choose the permission or permissions marked as least privileged for this API. Us "blockType": "permissions", "name": "policydeletableitem-get-permissions", "requestUrls": ["GET /policies/deletedItems/crossTenantPartners/{id}", "GET /policies/deletedItems/crossTenantSyncPolicyPartners/{id}"], - "mergePermissions": true - + "mergePermissions": true + } --> [!INCLUDE [permissions-table](../includes/permissions/policydeletableitem-get-permissions.md)] @@ -46,8 +46,8 @@ Choose the permission or permissions marked as least privileged for this API. Us "blockType": "permissions", "name": "policydeletableitem-get-permissions", "requestUrls": ["GET /identity/conditionalAccess/deletedItems/policies/{id}", "GET /identity/conditionalAccess/deletedItems/namedLocations/{id}"], - "mergePermissions": true - + "mergePermissions": true + } --> [!INCLUDE [permissions-table](../includes/permissions/policydeletableitem-get-2-permissions.md)] @@ -172,7 +172,6 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.context": "https://graph.microsoft-ppe.com/testppebetadeleteapis/$metadata#policies/deletedItems/crossTenantPartners/$entity", "tenantId": "01d0e717-bc90-46ba-94a9-71b4a811fddb", "deletedDateTime": "2025-06-18T22:58:04Z", "displayName": null, @@ -262,7 +261,6 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.context": "https://graph.microsoft-ppe.com/testppebetadeleteapis/$metadata#policies/deletedItems/crossTenantSyncPolicyPartners/$entity", "tenantId": "01d0e717-bc90-46ba-94a9-71b4a811fddb", "displayName": null, "deletedDateTime": "2025-06-18T23:11:01Z", diff --git a/api-reference/beta/api/policydeletableitem-list.md b/api-reference/beta/api/policydeletableitem-list.md index 930d73423ea..0202e4b5846 100644 --- a/api-reference/beta/api/policydeletableitem-list.md +++ b/api-reference/beta/api/policydeletableitem-list.md @@ -32,8 +32,8 @@ Choose the permission or permissions marked as least privileged for this API. Us "blockType": "permissions", "name": "policydeletableitem-list-permissions", "requestUrls": ["GET /policies/deletedItems/crossTenantPartners", "GET /policies/deletedItems/crossTenantSyncPolicyPartners"], - "mergePermissions": true - + "mergePermissions": true + } --> [!INCLUDE [permissions-table](../includes/permissions/policydeletableitem-list-permissions.md)] @@ -172,7 +172,6 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.context": "https://graph.microsoft-ppe.com/testppebetadeleteapis/$metadata#policies/deletedItems/crossTenantPartners", "value": [ { "tenantId": "01d0e717-bc90-46ba-94a9-71b4a811fddb", @@ -293,7 +292,6 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.context": "https://graph.microsoft-ppe.com/testppebetadeleteapis/$metadata#policies/deletedItems/crossTenantSyncPolicyPartners", "value": [ { "tenantId": "01d0e717-bc90-46ba-94a9-71b4a811fddb", From 4e3c161095bb079f31fc340605e649bd399b1664 Mon Sep 17 00:00:00 2001 From: Celeste de Guzman <16906646+CelesteDG@users.noreply.github.com> Date: Wed, 26 Aug 2026 16:49:31 -0700 Subject: [PATCH 090/189] Update legacy alerts API retirement date (#29502) * Update legacy alerts API retirement date Ported from microsoftgraph/microsoft-graph-docs-contrib#10007. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Add revised alerts API retirement date to What's New Ported from microsoftgraph/microsoft-graph-docs-contrib#10029. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --------- Co-authored-by: Mor Moverman <312480154+mormov@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --- concepts/alertsv1-alertsv2-migration.md | 6 +++--- concepts/whats-new-overview.md | 4 ++++ 2 files changed, 7 insertions(+), 3 deletions(-) diff --git a/concepts/alertsv1-alertsv2-migration.md b/concepts/alertsv1-alertsv2-migration.md index 3d0d0cecb73..b2819734acd 100644 --- a/concepts/alertsv1-alertsv2-migration.md +++ b/concepts/alertsv1-alertsv2-migration.md @@ -12,12 +12,12 @@ ms.topic: upgrade-and-migration-article # Migrate from legacy alerts to the alerts and incidents API -The legacy Microsoft Graph security alerts API available through the `/security/alerts` endpoint is deprecated and will be retired on **August 31, 2026**. If your app currently uses the legacy alerts API to retrieve, monitor, or manage security alerts, you should migrate to the new [alerts and incidents API](/graph/api/resources/security-alert) in Microsoft 365 Defender, available through the `/security/alerts_v2` endpoint. +The legacy Microsoft Graph security alerts API available through the `/security/alerts` endpoint is deprecated and will be retired on **October 15, 2026**. If your app currently uses the legacy alerts API to retrieve, monitor, or manage security alerts, you should migrate to the new [alerts and incidents API](/graph/api/resources/security-alert) in Microsoft 365 Defender, available through the `/security/alerts_v2` endpoint. This article describes the key differences between the two APIs, provides a field mapping reference, and outlines the steps to migrate your app. > [!IMPORTANT] -> - After August 31, 2026, the legacy `/security/alerts` endpoint will stop returning data. Migrate your apps before this deadline to avoid disruption to your security operations workflows. +> - After October 15, 2026, the legacy `/security/alerts` endpoint will stop returning data. Migrate your apps before this deadline to avoid disruption to your security operations workflows. > > - The new alerts and incidents API is **not** a direct, one-to-one replacement for the legacy alerts API. It surfaces alerts that are part of the Microsoft 365 Defender ecosystem. Alerts from sources that aren't integrated with Microsoft 365 Defender—such as a Microsoft Sentinel workspace that isn't connected to the Microsoft Defender portal, or standalone and tuned alerts—aren't returned by the new API. Review the [known differences and limitations](#known-differences-and-limitations) section before you begin your migration. @@ -103,7 +103,7 @@ Before you change any code, identify all integrations, scripts, connectors, and If you use Microsoft Sentinel, connect your workspace to the Microsoft Defender portal and confirm that relevant detections are promoted into incidents. Without this integration, Sentinel-generated alerts don't appear in the v2 API. -While you prepare for onboarding, use the [Sentinel REST API](/rest/api/loganalytics/) to retrieve Sentinel alerts. Be aware that standalone Sentinel alerts aren't supported in the new API model, and the Sentinel REST API will be retired in the future. Prioritize Defender portal onboarding ahead of the August 31, 2026 deadline. +While you prepare for onboarding, use the [Sentinel REST API](/rest/api/loganalytics/) to retrieve Sentinel alerts. Be aware that standalone Sentinel alerts aren't supported in the new API model, and the Sentinel REST API will be retired in the future. Prioritize Defender portal onboarding ahead of the October 15, 2026 deadline. For more information, see [Connect Microsoft Sentinel to the Microsoft Defender portal](/unified-secops/microsoft-sentinel-onboard) and [Transition your Microsoft Sentinel environment to the Defender portal](/azure/sentinel/move-to-defender). diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 738c5a2548e..bbe679d91cd 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -59,6 +59,10 @@ Added support for managing Microsoft 365 cross-tenant capabilities in cross-tena Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources/mailboxfolder) resource type in v1.0. Use this property to identify folders created by Outlook by using a locale-independent name. +### Security + +Updated the retirement date for the legacy Microsoft Graph [security alerts API](/graph/api/resources/alert) from August 31, 2026 to October 15, 2026. + ### Teamwork and communications | Calls and online meetings - Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) and [getAllTranscripts](/graph/api/onlinemeeting-getalltranscripts) methods to document a service-update issue that can cause paginated requests to return an empty collection followed by duplicate items. From 3457c6cd6ab08da212a962f1e21672ddfa80c14a Mon Sep 17 00:00:00 2001 From: Javier Alvarez <106613044+javieralvarezchiang@users.noreply.github.com> Date: Wed, 26 Aug 2026 17:23:36 -0700 Subject: [PATCH 091/189] Adds propagation note to application permission grants (#29495) * Adds propagation note to application permission grants * fixes --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../filestoragecontainertypeapppermissiongrant-update.md | 3 ++- ...rtyperegistration-delete-applicationpermissiongrants.md | 3 ++- ...nertyperegistration-post-applicationpermissiongrants.md | 7 ++++--- .../api/filestoragecontainertyperegistration-update.md | 5 +++-- .../filestoragecontainertypeapppermissiongrant-update.md | 3 ++- ...rtyperegistration-delete-applicationpermissiongrants.md | 3 ++- ...nertyperegistration-post-applicationpermissiongrants.md | 7 ++++--- .../api/filestoragecontainertyperegistration-update.md | 5 +++-- 8 files changed, 22 insertions(+), 14 deletions(-) diff --git a/api-reference/beta/api/filestoragecontainertypeapppermissiongrant-update.md b/api-reference/beta/api/filestoragecontainertypeapppermissiongrant-update.md index a075428b494..7ae772cadfd 100644 --- a/api-reference/beta/api/filestoragecontainertypeapppermissiongrant-update.md +++ b/api-reference/beta/api/filestoragecontainertypeapppermissiongrant-update.md @@ -29,9 +29,10 @@ Choose the permission or permissions marked as least privileged for this API. Us --> [!INCLUDE [permissions-table](../includes/permissions/filestoragecontainertypeapppermissiongrant-update-permissions.md)] ->**Note:** +> [!NOTE] > * When delegated tokens are used, either the SharePoint Embedded admin role or the Global admin role is required. > * If the `FileStorageContainerTypeReg.Selected` permission is used, changes are limited to [registrations](../resources/filestoragecontainertyperegistration.md) owned by the application that makes the call. +> * Updated permission grants may take up to one hour to propagate. ## HTTP request diff --git a/api-reference/beta/api/filestoragecontainertyperegistration-delete-applicationpermissiongrants.md b/api-reference/beta/api/filestoragecontainertyperegistration-delete-applicationpermissiongrants.md index acdf5d0b6b4..46fd484d888 100644 --- a/api-reference/beta/api/filestoragecontainertyperegistration-delete-applicationpermissiongrants.md +++ b/api-reference/beta/api/filestoragecontainertyperegistration-delete-applicationpermissiongrants.md @@ -29,9 +29,10 @@ Choose the permission or permissions marked as least privileged for this API. Us --> [!INCLUDE [permissions-table](../includes/permissions/filestoragecontainertyperegistration-delete-applicationpermissiongrants-permissions.md)] ->**Note:** +> [!NOTE] > * When delegated tokens are used, either the SharePoint Embedded admin role or the Global admin role is required. > * If the `FileStorageContainerTypeReg.Selected` permission is used, changes are limited to [registrations](../resources/filestoragecontainertyperegistration.md) owned by the application that makes the call. +> * Deleted permission grants may take up to one hour to propagate. ## HTTP request diff --git a/api-reference/beta/api/filestoragecontainertyperegistration-post-applicationpermissiongrants.md b/api-reference/beta/api/filestoragecontainertyperegistration-post-applicationpermissiongrants.md index df199f92ab0..98b3e7071c7 100644 --- a/api-reference/beta/api/filestoragecontainertyperegistration-post-applicationpermissiongrants.md +++ b/api-reference/beta/api/filestoragecontainertyperegistration-post-applicationpermissiongrants.md @@ -27,9 +27,10 @@ Choose the permission or permissions marked as least privileged for this API. Us --> [!INCLUDE [permissions-table](../includes/permissions/filestoragecontainertyperegistration-post-applicationpermissiongrants-permissions.md)] ->**Note:** +> [!NOTE] > * When delegated tokens are used, either the SharePoint Embedded admin role or the Global admin role is required. > * If the `FileStorageContainerTypeReg.Selected` permission is used, changes are limited to [registrations](../resources/filestoragecontainertyperegistration.md) owned by the application that makes the call. +> * Created permission grants may take up to one hour to propagate. ## HTTP request @@ -56,8 +57,8 @@ You can specify the following properties when you create a **fileStorageContaine |Property|Type|Description| |:---|:---|:---| -|applicationPermissions|fileStorageContainerTypeAppPermission collection|Allowed [permissions](/sharepoint/dev/embedded/development/auth#container-type-application-permissions) when you use application tokens. The possible values are: `none`, `readContent`, `writeContent`, `manageContent`, `create`, `delete`, `read`, `write`, `enumeratePermissions`, `addPermissions`, `updatePermissions`, `deletePermissions`, `deleteOwnPermission`, `managePermissions`, `full`, `unknownFutureValue`. Optional.| -|delegatedPermissions|fileStorageContainerTypeAppPermission collection|Allowed [permissions](/sharepoint/dev/embedded/development/auth#container-type-application-permissions) when you use delegated tokens. The possible values are: `none`, `readContent`, `writeContent`, `manageContent`, `create`, `delete`, `read`, `write`, `enumeratePermissions`, `addPermissions`, `updatePermissions`, `deletePermissions`, `deleteOwnPermission`, `managePermissions`, `full`, `unknownFutureValue`. Optional.| +|applicationPermissions|fileStorageContainerTypeAppPermission collection|Allowed [permissions](/sharepoint/dev/embedded/development/auth#grant-container-type-application-permissions) when you use application tokens. The possible values are: `none`, `readContent`, `writeContent`, `manageContent`, `create`, `delete`, `read`, `write`, `enumeratePermissions`, `addPermissions`, `updatePermissions`, `deletePermissions`, `deleteOwnPermission`, `managePermissions`, `full`, `unknownFutureValue`. Optional.| +|delegatedPermissions|fileStorageContainerTypeAppPermission collection|Allowed [permissions](/sharepoint/dev/embedded/development/auth#grant-container-type-application-permissions) when you use delegated tokens. The possible values are: `none`, `readContent`, `writeContent`, `manageContent`, `create`, `delete`, `read`, `write`, `enumeratePermissions`, `addPermissions`, `updatePermissions`, `deletePermissions`, `deleteOwnPermission`, `managePermissions`, `full`, `unknownFutureValue`. Optional.| ## Response diff --git a/api-reference/beta/api/filestoragecontainertyperegistration-update.md b/api-reference/beta/api/filestoragecontainertyperegistration-update.md index 2eb7b5fec6b..ea7c2eecae8 100644 --- a/api-reference/beta/api/filestoragecontainertyperegistration-update.md +++ b/api-reference/beta/api/filestoragecontainertyperegistration-update.md @@ -20,6 +20,7 @@ Update the properties of a [fileStorageContainerTypeRegistration](../resources/f > * [The settings in the fileStorageContainerType](../resources/filestoragecontainertypesettings.md) control which [settings](../resources/filestoragecontainertyperegistrationsettings.md) can be updated. > * The updated settings change the behavior of new **fileStorageContainer** objects, but existing containers might require their [settings](../resources/filestoragecontainer.md) to be updated directly. Some settings can't be updated at all, for example, changing the storage capability. > * Agent-related settings have additional restrictions when overriding them in a consuming tenant. An override for `agent.chatEmbedAllowedHosts` must be a subset of the value defined in the [owning container type](../resources/filestoragecontainertype.md). For example, if the owning container type sets `agent.chatEmbedAllowedHosts` to `["https://contoso.com", "https://localhost:5000"]`, an override can be either `["https://contoso.com"]`, `["https://localhost:5000"]`, or even `[]`. However, the setting cannot be overridden to `["https://fabrikam.com"]`. Learn more about [SharePoint Embedded agent](/sharepoint/dev/embedded/development/declarative-agent/spe-da-adv) +> * Updated settings and permission grants may take up to one hour to propagate. ETag is used for optimistic concurrency control. It must match the value from [Create](./filestorage-post-containertyperegistrations.md), [Get](./filestoragecontainertyperegistration-get.md) or the previous Update. @@ -36,7 +37,7 @@ Choose the permission or permissions marked as least privileged for this API. Us --> [!INCLUDE [permissions-table](../includes/permissions/filestoragecontainertyperegistration-update-permissions.md)] ->**Note:** +> [!NOTE] > * When delegated tokens are used, either the SharePoint Embedded admin role or the Global admin role is required. > * If the `FileStorageContainerTypeReg.Selected` permission is used, changes are limited to [registrations](../resources/filestoragecontainertyperegistration.md) owned by the application that makes the call. @@ -64,7 +65,7 @@ PATCH /storage/fileStorage/containerTypeRegistrations/{fileStorageContainerTypeR |Property|Type|Description| |:---|:---|:---| |settings|[fileStorageContainerTypeRegistrationSettings](../resources/filestoragecontainertyperegistrationsettings.md)|fileStorageContainerTypeRegistration settings. The subset that can be updated depends on the overridable settings in the [fileStorageContainerTypeSettings](../resources/filestoragecontainertypesettings.md). Optional.| -|applicationPermissionGrants|[fileStorageContainerTypeAppPermissionGrant](../resources/fileStorageContainerTypeAppPermissionGrant.md) collection|define the access privileges of applications on containers of a specific fileStorageContainerType. Optional.| +|applicationPermissionGrants|[fileStorageContainerTypeAppPermissionGrant](../resources/filestoragecontainertypeapppermissiongrant.md) collection|define the access privileges of applications on containers of a specific fileStorageContainerType. Optional.| |etag|String|Used for optimistic concurrency control. Must match the value returned from a [Create](filestorage-post-containertyperegistrations.md) or [Get](filestoragecontainertyperegistration-get.md) request. Required.| diff --git a/api-reference/v1.0/api/filestoragecontainertypeapppermissiongrant-update.md b/api-reference/v1.0/api/filestoragecontainertypeapppermissiongrant-update.md index bbc894d4595..fd30412cbaf 100644 --- a/api-reference/v1.0/api/filestoragecontainertypeapppermissiongrant-update.md +++ b/api-reference/v1.0/api/filestoragecontainertypeapppermissiongrant-update.md @@ -27,9 +27,10 @@ Choose the permission or permissions marked as least privileged for this API. Us --> [!INCLUDE [permissions-table](../includes/permissions/filestoragecontainertypeapppermissiongrant-update-permissions.md)] ->**Note:** +> [!NOTE] > * When delegated tokens are used, either the SharePoint Embedded admin role or the Global admin role is required. > * If the `FileStorageContainerTypeReg.Selected` permission is used, changes are limited to [registrations](../resources/filestoragecontainertyperegistration.md) owned by the application that makes the call. +> * Updated permission grants may take up to one hour to propagate. ## HTTP request diff --git a/api-reference/v1.0/api/filestoragecontainertyperegistration-delete-applicationpermissiongrants.md b/api-reference/v1.0/api/filestoragecontainertyperegistration-delete-applicationpermissiongrants.md index 5b4c006155a..7f112ddc210 100644 --- a/api-reference/v1.0/api/filestoragecontainertyperegistration-delete-applicationpermissiongrants.md +++ b/api-reference/v1.0/api/filestoragecontainertyperegistration-delete-applicationpermissiongrants.md @@ -27,9 +27,10 @@ Choose the permission or permissions marked as least privileged for this API. Us --> [!INCLUDE [permissions-table](../includes/permissions/filestoragecontainertyperegistration-delete-applicationpermissiongrants-permissions.md)] ->**Note:** +> [!NOTE] > * When delegated tokens are used, either the SharePoint Embedded admin role or the Global admin role is required. > * If the `FileStorageContainerTypeReg.Selected` permission is used, changes are limited to [registrations](../resources/filestoragecontainertyperegistration.md) owned by the application that makes the call. +> * Deleted permission grants may take up to one hour to propagate. ## HTTP request diff --git a/api-reference/v1.0/api/filestoragecontainertyperegistration-post-applicationpermissiongrants.md b/api-reference/v1.0/api/filestoragecontainertyperegistration-post-applicationpermissiongrants.md index a22db6232c1..4fa39e11ba4 100644 --- a/api-reference/v1.0/api/filestoragecontainertyperegistration-post-applicationpermissiongrants.md +++ b/api-reference/v1.0/api/filestoragecontainertyperegistration-post-applicationpermissiongrants.md @@ -25,9 +25,10 @@ Choose the permission or permissions marked as least privileged for this API. Us --> [!INCLUDE [permissions-table](../includes/permissions/filestoragecontainertyperegistration-post-applicationpermissiongrants-permissions.md)] ->**Note:** +> [!NOTE] > * When delegated tokens are used, either the SharePoint Embedded admin role or the Global admin role is required. > * If the `FileStorageContainerTypeReg.Selected` permission is used, changes are limited to [registrations](../resources/filestoragecontainertyperegistration.md) owned by the application that makes the call. +> * Created permission grants may take up to one hour to propagate. ## HTTP request @@ -54,8 +55,8 @@ You can specify the following properties when you create a **fileStorageContaine |Property|Type|Description| |:---|:---|:---| -|applicationPermissions|fileStorageContainerTypeAppPermission collection|Allowed [permissions](/sharepoint/dev/embedded/development/auth#container-type-application-permissions) when you use application tokens. The possible values are: `none`, `readContent`, `writeContent`, `manageContent`, `create`, `delete`, `read`, `write`, `enumeratePermissions`, `addPermissions`, `updatePermissions`, `deletePermissions`, `deleteOwnPermission`, `managePermissions`, `full`, `unknownFutureValue`. Optional.| -|delegatedPermissions|fileStorageContainerTypeAppPermission collection|Allowed [permissions](/sharepoint/dev/embedded/development/auth#container-type-application-permissions) when you use delegated tokens. The possible values are: `none`, `readContent`, `writeContent`, `manageContent`, `create`, `delete`, `read`, `write`, `enumeratePermissions`, `addPermissions`, `updatePermissions`, `deletePermissions`, `deleteOwnPermission`, `managePermissions`, `full`, `unknownFutureValue`. Optional.| +|applicationPermissions|fileStorageContainerTypeAppPermission collection|Allowed [permissions](/sharepoint/dev/embedded/development/auth#grant-container-type-application-permissions) when you use application tokens. The possible values are: `none`, `readContent`, `writeContent`, `manageContent`, `create`, `delete`, `read`, `write`, `enumeratePermissions`, `addPermissions`, `updatePermissions`, `deletePermissions`, `deleteOwnPermission`, `managePermissions`, `full`, `unknownFutureValue`. Optional.| +|delegatedPermissions|fileStorageContainerTypeAppPermission collection|Allowed [permissions](/sharepoint/dev/embedded/development/auth#grant-container-type-application-permissions) when you use delegated tokens. The possible values are: `none`, `readContent`, `writeContent`, `manageContent`, `create`, `delete`, `read`, `write`, `enumeratePermissions`, `addPermissions`, `updatePermissions`, `deletePermissions`, `deleteOwnPermission`, `managePermissions`, `full`, `unknownFutureValue`. Optional.| ## Response diff --git a/api-reference/v1.0/api/filestoragecontainertyperegistration-update.md b/api-reference/v1.0/api/filestoragecontainertyperegistration-update.md index 892fdeed80b..41d45056793 100644 --- a/api-reference/v1.0/api/filestoragecontainertyperegistration-update.md +++ b/api-reference/v1.0/api/filestoragecontainertyperegistration-update.md @@ -18,6 +18,7 @@ Update the properties of a [fileStorageContainerTypeRegistration](../resources/f > * [The settings in the fileStorageContainerType](../resources/filestoragecontainertypesettings.md) control which [settings](../resources/filestoragecontainertyperegistrationsettings.md) can be updated. > * The updated settings change the behavior of new **fileStorageContainer** objects, but existing containers might require their [settings](../resources/filestoragecontainer.md) to be updated directly. Some settings can't be updated at all, for example, changing the storage capability. > * Agent-related settings have additional restrictions when overriding them in a consuming tenant. An override for `agent.chatEmbedAllowedHosts` must be a subset of the value defined in the [owning container type](../resources/filestoragecontainertype.md). For example, if the owning container type sets `agent.chatEmbedAllowedHosts` to `["https://contoso.com", "https://localhost:5000"]`, an override can be either `["https://contoso.com"]`, `["https://localhost:5000"]`, or even `[]`. However, the setting cannot be overridden to `["https://fabrikam.com"]`. Learn more about [SharePoint Embedded agent](/sharepoint/dev/embedded/development/declarative-agent/spe-da-adv) +> * Updated settings and permission grants may take up to one hour to propagate. ETag is used for optimistic concurrency control. It must match the value from [Create](./filestorage-post-containertyperegistrations.md), [Get](./filestoragecontainertyperegistration-get.md) or the previous Update. @@ -34,7 +35,7 @@ Choose the permission or permissions marked as least privileged for this API. Us --> [!INCLUDE [permissions-table](../includes/permissions/filestoragecontainertyperegistration-update-permissions.md)] ->**Note:** +> [!NOTE] > * When delegated tokens are used, either the SharePoint Embedded admin role or the Global admin role is required. > * If the `FileStorageContainerTypeReg.Selected` permission is used, changes are limited to [registrations](../resources/filestoragecontainertyperegistration.md) owned by the application that makes the call. @@ -62,7 +63,7 @@ PATCH /storage/fileStorage/containerTypeRegistrations/{fileStorageContainerTypeR |Property|Type|Description| |:---|:---|:---| |settings|[fileStorageContainerTypeRegistrationSettings](../resources/filestoragecontainertyperegistrationsettings.md)|fileStorageContainerTypeRegistration settings. The subset that can be updated depends on the overridable settings in the [fileStorageContainerTypeSettings](../resources/filestoragecontainertypesettings.md). Optional.| -|applicationPermissionGrants|[fileStorageContainerTypeAppPermissionGrant](../resources/fileStorageContainerTypeAppPermissionGrant.md) collection|define the access privileges of applications on containers of a specific fileStorageContainerType. Optional.| +|applicationPermissionGrants|[fileStorageContainerTypeAppPermissionGrant](../resources/filestoragecontainertypeapppermissiongrant.md) collection|define the access privileges of applications on containers of a specific fileStorageContainerType. Optional.| |etag|String|Used for optimistic concurrency control. Must match the value returned from a [Create](filestorage-post-containertyperegistrations.md) or [Get](filestoragecontainertyperegistration-get.md) request. Required.| From 5742fffc07b0bbdb590653c3135db3226cf67217 Mon Sep 17 00:00:00 2001 From: Danipocket <88507770+Danipocket@users.noreply.github.com> Date: Thu, 27 Aug 2026 13:23:52 -0600 Subject: [PATCH 092/189] Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- .../beta/resources/crosstenant-migration-overview.md | 4 +--- 1 file changed, 1 insertion(+), 3 deletions(-) diff --git a/api-reference/beta/resources/crosstenant-migration-overview.md b/api-reference/beta/resources/crosstenant-migration-overview.md index 7909355068b..2a48ad7c959 100644 --- a/api-reference/beta/resources/crosstenant-migration-overview.md +++ b/api-reference/beta/resources/crosstenant-migration-overview.md @@ -43,9 +43,7 @@ Organizations often need to consolidate or reorganize Microsoft 365 environments ## Permissions -Permissions vary by operation. For List and Get operations, `CrossTenantContentMigration.Read.All` is the least privileged permission and `CrossTenantContentMigration.ReadWrite.All` is a higher privileged permission. All other operations require `CrossTenantContentMigration.ReadWrite.All`. - -Delegated permissions for work or school accounts and application permissions are supported. Delegated permissions for personal Microsoft accounts aren't supported. +Permissions vary by operation. For the least-privileged permissions and supported permission types (delegated vs. application) for each operation, see the **Permissions** section of the corresponding API operation. > [!NOTE] > For delegated access, the signed-in user must also be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference) or a custom role that grants the permissions required for the operation. For the exact permissions and supported roles, see the **Permissions** section of each API operation. From 7abb0e5b0afb43d2c74be64b74dc9b11cd797c63 Mon Sep 17 00:00:00 2001 From: cparker-msft <4155756+cparker-msft@users.noreply.github.com> Date: Thu, 27 Aug 2026 15:36:11 -0400 Subject: [PATCH 093/189] docs: promote mailboxItem delete API to v1.0 (#29458) * docs: promote mailboxItem delete API to v1.0 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: f40032e3-f710-4c42-8c05-e15c51a694f6 * Remove note on archive mailbox redirects Removed note about archive mailboxes with autoexpanded folders from the mailbox folder delete items documentation. * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update reference TOC * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Cameron Parker (from Dev Box) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Copilot-Session: f40032e3-f710-4c42-8c05-e15c51a694f6 --- .../v1.0/api/mailboxfolder-delete-items.md | 123 ++++++++++++++++++ .../mailboxfolder-delete-items-permissions.md | 11 ++ api-reference/v1.0/resources/mailboxfolder.md | 1 + api-reference/v1.0/resources/mailboxitem.md | 1 + .../toc/mailbox-import-and-export/toc.yml | 4 + changelog/Microsoft.Exchange.json | 18 +++ concepts/whats-new-overview.md | 3 +- 7 files changed, 160 insertions(+), 1 deletion(-) create mode 100644 api-reference/v1.0/api/mailboxfolder-delete-items.md create mode 100644 api-reference/v1.0/includes/permissions/mailboxfolder-delete-items-permissions.md diff --git a/api-reference/v1.0/api/mailboxfolder-delete-items.md b/api-reference/v1.0/api/mailboxfolder-delete-items.md new file mode 100644 index 00000000000..5fb7935706c --- /dev/null +++ b/api-reference/v1.0/api/mailboxfolder-delete-items.md @@ -0,0 +1,123 @@ +--- +title: "Delete mailboxItem" +description: "Delete a mailboxItem from a mailboxFolder in a mailbox." +author: "cparker-msft" +ms.date: 08/18/2026 +ms.localizationpriority: medium +ms.subservice: "outlook" +doc_type: apiPageType +--- + +# Delete mailboxItem + +Namespace: microsoft.graph + +Delete a [mailboxItem](../resources/mailboxitem.md) from a [mailboxFolder](../resources/mailboxfolder.md) in a mailbox. + +Use the **disposalType** query parameter to specify whether to soft-delete or hard-delete the item. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/mailboxfolder-delete-items-permissions.md)] + +## HTTP request + + +```http +DELETE /admin/exchange/mailboxes/{mailboxId}/folders/{mailboxFolderId}/items/{mailboxItemId}?disposalType={disposalType} +``` + +## Query parameters + +In the request URL, provide the following required query parameter. + +|Parameter|Type|Description| +|:---|:---|:---| +|disposalType|String|Required. The type of delete operation to perform. The possible values are: `softDelete`, `hardDelete`. Use `softDelete` to follow Exchange soft-delete semantics, or `hardDelete` to permanently delete the item.| + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|****** Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `204 No Content` response code. + +> [!NOTE] +> When you use `hardDelete`, the Exchange service permanently deletes the item only when it's customer data that isn't protected by a legal hold, retention policy, audit, compliance, or system-item restriction. Otherwise, the request fails with a `403 Forbidden` error. + +## Examples + +### Example 1: Soft-delete a mailbox item + +The following example shows how to soft-delete a mailbox item in a folder by using `disposalType=softDelete`. + +#### Request + +The following example shows a request. + + +```http +DELETE https://graph.microsoft.com/v1.0/admin/exchange/mailboxes/MBX:e0648f21@aab09c93/folders/inbox/items/AAMkADk0MzI?disposalType=softDelete +``` + +#### Response + +The following example shows the response. + + +```http +HTTP/1.1 204 No Content +``` + +### Example 2: Hard-delete a mailbox item + +The following example shows how to hard-delete an eligible mailbox item in Recoverable Items by using `disposalType=hardDelete`. + +#### Request + +The following example shows a request. + + +```http +DELETE https://graph.microsoft.com/v1.0/admin/exchange/mailboxes/MBX:e0648f21@aab09c93/folders/recoverableitemsdeletions/items/AAMkADk0MzI?disposalType=hardDelete +``` + +#### Response + +The following example shows the response. + + +```http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/includes/permissions/mailboxfolder-delete-items-permissions.md b/api-reference/v1.0/includes/permissions/mailboxfolder-delete-items-permissions.md new file mode 100644 index 00000000000..3a52913d0dd --- /dev/null +++ b/api-reference/v1.0/includes/permissions/mailboxfolder-delete-items-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|MailboxItem.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|MailboxItem.ReadWrite.All|Not available.| diff --git a/api-reference/v1.0/resources/mailboxfolder.md b/api-reference/v1.0/resources/mailboxfolder.md index 59e77fc763c..fc338503d3e 100644 --- a/api-reference/v1.0/resources/mailboxfolder.md +++ b/api-reference/v1.0/resources/mailboxfolder.md @@ -27,6 +27,7 @@ This resource supports [delta query](/graph/delta-query-overview) to track incre |[Get delta](../api/mailboxfolder-delta.md)|[mailboxFolder](../resources/mailboxfolder.md) collection|Get a set of [mailboxFolder](../resources/mailboxfolder.md) objects that were added, deleted, or removed from the user's mailbox.| |[List child mailbox folders](../api/mailboxfolder-list-childfolders.md)|[mailboxFolder](../resources/mailboxfolder.md) collection|Get the [mailboxFolder](../resources/mailboxfolder.md) collection under the specified **mailboxFolder** in a mailbox.| |[List items in folder](../api/mailboxfolder-list-items.md)|[mailboxItem](../resources/mailboxitem.md) collection|Get the [mailboxItem](../resources/mailboxitem.md) collection within a specified [mailboxFolder](../resources/mailboxfolder.md) in a mailbox.| +|[Delete item in folder](../api/mailboxfolder-delete-items.md)|None|Delete a [mailboxItem](../resources/mailboxitem.md) from a [mailboxFolder](../resources/mailboxfolder.md) in a mailbox.| |**Extended properties**| | | |[Create single-value property](../api/singlevaluelegacyextendedproperty-post-singlevalueextendedproperties.md)|[mailboxFolder](../resources/mailboxfolder.md)|Create one or more single-value extended properties in a new or existing mailbox folder.| |[Get single-value property](../api/singlevaluelegacyextendedproperty-get.md)|[mailboxFolder](../resources/mailboxfolder.md)|Get mailbox folders that contain a single-value extended property by using `$expand` or `$filter`.| diff --git a/api-reference/v1.0/resources/mailboxitem.md b/api-reference/v1.0/resources/mailboxitem.md index a7fcedf9422..15649d7ded1 100644 --- a/api-reference/v1.0/resources/mailboxitem.md +++ b/api-reference/v1.0/resources/mailboxitem.md @@ -23,6 +23,7 @@ Inherits from [outlookItem](../resources/outlookitem.md). |:---|:---|:---| |[List](../api/mailboxfolder-list-items.md)|[mailboxItem](../resources/mailboxitem.md) collection|Get the [mailboxItem](../resources/mailboxitem.md) collection within a specified [mailboxFolder](../resources/mailboxfolder.md) in a mailbox.| |[Get](../api/mailboxitem-get.md)|[mailboxItem](../resources/mailboxitem.md)|Read the properties and relationships of a [mailboxItem](../resources/mailboxitem.md) object.| +|[Delete](../api/mailboxfolder-delete-items.md)|None|Delete a [mailboxItem](../resources/mailboxitem.md) from a [mailboxFolder](../resources/mailboxfolder.md) in a mailbox.| |[Get delta](../api/mailboxitem-delta.md)|[mailboxItem](../resources/mailboxitem.md) collection|Get a set of [mailboxItem](../resources/mailboxitem.md) objects that were added, deleted, or updated in a specified [mailboxFolder](../resources/mailboxfolder.md).| |**Extended properties**| | | |[Get single-value property](../api/singlevaluelegacyextendedproperty-get.md)|[mailboxItem](../resources/mailboxitem.md)|Get mailbox items that contain a single-value extended property by using `$expand` or `$filter`.| diff --git a/api-reference/v1.0/toc/mailbox-import-and-export/toc.yml b/api-reference/v1.0/toc/mailbox-import-and-export/toc.yml index dadbb108302..d3e26989a76 100644 --- a/api-reference/v1.0/toc/mailbox-import-and-export/toc.yml +++ b/api-reference/v1.0/toc/mailbox-import-and-export/toc.yml @@ -20,6 +20,8 @@ items: href: ../../api/mailboxfolder-list-items.md - name: Get href: ../../api/mailboxitem-get.md + - name: Delete + href: ../../api/mailboxfolder-delete-items.md - name: Get delta href: ../../api/mailboxitem-delta.md - name: Extended properties @@ -48,6 +50,8 @@ items: href: ../../api/mailboxfolder-list-childfolders.md - name: List items in folder href: ../../api/mailboxfolder-list-items.md + - name: Delete item in folder + href: ../../api/mailboxfolder-delete-items.md - name: Extended properties items: - name: Create single-value property diff --git a/changelog/Microsoft.Exchange.json b/changelog/Microsoft.Exchange.json index 644a2dd3f08..1e9c070f436 100644 --- a/changelog/Microsoft.Exchange.json +++ b/changelog/Microsoft.Exchange.json @@ -1,5 +1,23 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "2859715f-1970-42dd-8668-05c4cd054cc9", + "ApiChange": "Method", + "ChangedApiName": "Delete", + "ChangeType": "Addition", + "Description": "Added the [Delete](https://learn.microsoft.com/en-us/graph/api/mailboxfolder-delete-items?view=graph-rest-1.0) method to the [mailboxItem](https://learn.microsoft.com/en-us/graph/api/resources/mailboxItem?view=graph-rest-1.0) resource.", + "Target": "mailboxItem" + } + ], + "Id": "2859715f-1970-42dd-8668-05c4cd054cc9", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-27T19:05:45.2261413Z", + "WorkloadArea": "Mailbox import and export", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index bbe679d91cd..55dc2a5dc40 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -57,7 +57,8 @@ Added support for managing Microsoft 365 cross-tenant capabilities in cross-tena ### Mailbox import and export -Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources/mailboxfolder) resource type in v1.0. Use this property to identify folders created by Outlook by using a locale-independent name. +- Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources/mailboxfolder) resource type in v1.0. Use this property to identify folders created by Outlook by using a locale-independent name. +- Added the [Delete mailboxItem](/graph/api/mailboxfolder-delete-items) method to the [mailboxItem](/graph/api/resources/mailboxitem) resource type in v1.0. Use this method to delete an individual mailbox item from a mailbox folder with Exchange soft-delete or hard-delete semantics. ### Security From 623ac4a8d805bc435906dbc1dac980845b37fe31 Mon Sep 17 00:00:00 2001 From: Ross McAllister <10053959+rmca14@users.noreply.github.com> Date: Thu, 27 Aug 2026 14:31:24 -0700 Subject: [PATCH 094/189] Remove line break tag (#29510) --- .github/workflows/stale.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/stale.yml b/.github/workflows/stale.yml index 761368eb60e..7d1719fe5bd 100644 --- a/.github/workflows/stale.yml +++ b/.github/workflows/stale.yml @@ -34,7 +34,7 @@ jobs:

If you have a question, post on the MSEC Documentation Excellence Program [Ask an Admin](https://teams.microsoft.com/l/channel/19%3A0cdb9988d02e4f78bef37d571686ec5b%40thread.tacv2/Ask%20an%20Admin?groupId=8b6faa31-5d02-4e94-90eb-f1944d5c40fd&tenantId=72f988bf-86f1-41af-91ab-2d7cd011db47) Teams channel. close-pr-message: > -
This pull request has been inactive for 130 days. At this time we're closing the PR. + This pull request has been inactive for 130 days. At this time we're closing the PR.

If you decide to continue working on your changes, you can reopen the PR and continue working. Thank you!
From 77e468919454b9da4a6cdd3124897dd1ba7a8d56 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Fri, 28 Aug 2026 14:53:46 +0000 Subject: [PATCH 095/189] Update generated permissions tables with build 236939 (#29514) Co-authored-by: Microsoft Graph DevX Tooling --- .../permissions/mailboxfolder-delete-items-permissions.md | 1 + 1 file changed, 1 insertion(+) diff --git a/api-reference/v1.0/includes/permissions/mailboxfolder-delete-items-permissions.md b/api-reference/v1.0/includes/permissions/mailboxfolder-delete-items-permissions.md index 3a52913d0dd..9f31612bbca 100644 --- a/api-reference/v1.0/includes/permissions/mailboxfolder-delete-items-permissions.md +++ b/api-reference/v1.0/includes/permissions/mailboxfolder-delete-items-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|MailboxItem.ReadWrite|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|MailboxItem.ReadWrite.All|Not available.| + From 40d6678fd753a45aa0d8bd060779dc1602e7293c Mon Sep 17 00:00:00 2001 From: Celeste de Guzman <16906646+CelesteDG@users.noreply.github.com> Date: Fri, 28 Aug 2026 12:05:26 -0700 Subject: [PATCH 096/189] Clarify role assignment requirements for delegated scenarios (#29516) Ports the change from microsoftgraph/microsoft-graph-docs-contrib#10030. Co-authored-by: Yuan Karppanen <46729835+yyuank@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: e5a42631-965d-48c7-863d-51a4606d9b60 --- .../v1.0/includes/users-passwordprofile-permissions.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/api-reference/v1.0/includes/users-passwordprofile-permissions.md b/api-reference/v1.0/includes/users-passwordprofile-permissions.md index fddfcfb1bda..a0e5d15aa47 100644 --- a/api-reference/v1.0/includes/users-passwordprofile-permissions.md +++ b/api-reference/v1.0/includes/users-passwordprofile-permissions.md @@ -7,7 +7,7 @@ ms.topic: include - *User-PasswordProfile.ReadWrite.All* is the least privileged permission to update the **passwordProfile** property. -- In delegated scenarios, the calling app must be assigned a supported permission *and* a supported Microsoft Entra role. +- In delegated scenarios, the calling app must be assigned a supported permission *and* the signed in user assigned with supported Microsoft Entra role. - *Privileged Authentication Administrator* is the least privileged role that's allowed to update this property for *all* administrators in the tenant. - In general, the signed-in user must have a higher privileged administrator role as indicated in [Who can reset passwords](/graph/api/resources/users#who-can-reset-passwords). - In app-only scenarios using Microsoft Graph application permissions, *User-PasswordProfile.ReadWrite.All* is the least privileged permission. From 4a9839ac5cd1094741ce81ff85b00321fbe31f50 Mon Sep 17 00:00:00 2001 From: "learn-build-service-prod[bot]" <113403604+learn-build-service-prod[bot]@users.noreply.github.com> Date: Fri, 28 Aug 2026 14:20:09 -0600 Subject: [PATCH 097/189] Resolve syncing conflicts from repo_sync_working_branch to main (#29509) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit * Use contractions in post-post-attachments * Use contractions in printdocument-createuploadsession * Use contractions in printer-update * Use contractions in printjob-cancel * Use contractions in projectrome-put-activity * Use contractions in qrcode-get * Use contractions in reportroot-getemailactivitycounts * Use contractions in reportroot-getemailactivityusercounts * Use contractions in reportroot-getemailactivityuserdetail * Use contractions in reportroot-getemailappusageappsusercounts * Use contractions in reportroot-getemailappusageusercounts * Use contractions in reportroot-getemailappusageuserdetail * Use contractions in reportroot-getm365appplatformusercounts * Use contractions in reportroot-getm365appusercounts * Use contractions in reportroot-getm365appuserdetail * Use contractions in reportroot-getmailboxusagedetail * Use contractions in reportroot-getmailboxusagemailboxcounts * Use contractions in reportroot-getmailboxusagequotastatusmailboxcounts * Use contractions in reportroot-getmailboxusagestorage * Use contractions in reportroot-getoffice365activationcounts * Use contractions in reportroot-getoffice365activationsuserdetail * Use contractions in reportroot-getoffice365activeusercounts * Use contractions in reportroot-getoffice365activeuserdetail * Use contractions in reportroot-getoffice365groupsactivitycounts * Use contractions in reportroot-getoffice365groupsactivitydetail * Use contractions in reportroot-getoffice365groupsactivityfilecounts * Use contractions in reportroot-getoffice365groupsactivitystorage * Use contractions in reportroot-getoffice365servicesusercounts * Use contractions in reportroot-getonedriveactivityfilecounts * Use contractions in reportroot-getonedriveactivityusercounts * Use contractions in reportroot-getonedriveactivityuserdetail * Use contractions in reportroot-getonedriveusageaccountcounts * Use contractions in reportroot-getonedriveusageaccountdetail * Use contractions in reportroot-getonedriveusagefilecounts * Use contractions in reportroot-getsharepointactivityfilecounts * Use contractions in reportroot-getsharepointactivitypages * Use contractions in reportroot-getsharepointactivityuserdetail * Use contractions in reportroot-getsharepointsiteusagedetail * Use contractions in reportroot-getsharepointsiteusagefilecounts * Use contractions in reportroot-getsharepointsiteusagepages * Use contractions in reportroot-getsharepointsiteusagesitecounts * Use contractions in reportroot-getsharepointsiteusagestorage * Use contractions in reportroot-getskypeforbusinessactivitycounts * Use contractions in reportroot-getskypeforbusinessactivityusercounts * Use contractions in reportroot-getskypeforbusinessactivityuserdetail * Use contractions in reportroot-getskypeforbusinessdeviceusagedistributionusercounts * Use contractions in reportroot-getskypeforbusinessdeviceusageuserdetail * Use contractions in reportroot-getskypeforbusinessorganizeractivityminutecounts * Use contractions in reportroot-getskypeforbusinessparticipantactivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivitycounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityusercounts * Use contractions in reportroot-getteamsdeviceusageusercounts * Use contractions in reportroot-getteamsuseractivityusercounts * Use contractions in reportroot-getteamsuseractivityuserdetail * Use contractions in reportroot-getyammeractivitycounts * Use contractions in reportroot-getyammeractivityusercounts * Use contractions in reportroot-getyammeractivityuserdetail * Use contractions in reportroot-getyammerdeviceusagedistributionusercounts * Use contractions in reportroot-getyammerdeviceusageusercounts * Use contractions in reportroot-getyammerdeviceusageuserdetail * Use contractions in reportroot-getyammergroupsactivitycounts * Use contractions in reportroot-getyammergroupsactivitydetail * Use contractions in riskdetection-get * Use contractions in riskyuser-get * Use contractions in schedulinggroup-delete * Use contractions in schemaextension-delete * Use contractions in security-ediscoverysearch-list-lastestimatestatisticsoperation * Use contractions in security-host-list-childhostpairs * Use contractions in security-host-list-parenthostpairs * Use contractions in security-hostpair-get * Use contractions in security-threatintelligence-list-sslcertificates * Use contractions in servicehealthissue-get * Use contractions in servicehealthissue-incidentreport * Use contractions in serviceprincipal-get * Use contractions in serviceupdatemessage-get * Use contractions in sharedwithchannelteaminfo-get * Use contractions in sharedwithchannelteaminfo-list-allowedmembers * Use contractions in simulationautomation-get * Use contractions in simulation-get * Use contractions in singlevaluelegacyextendedproperty-get * Use contractions in sitepage-publish * Use contractions in sitepage-update * Use contractions in site-search * Use contractions in subjectrightsrequest-list-notes * Use contractions in subscribedsku-list * Use contractions in synchronization-synchronizationschema-delete * Use contractions in synchronization-synchronizationschema-update * Use contractions in teamsapp-delete * Use contractions in teamsapp-publish * Use contractions in teamsapp-update * Use contractions in teamworktag-get * Use contractions in tenantappmanagementpolicy-update * Use contractions in tenantdatasecurityandgovernance-processcontentasync * Use contractions in timeoffrequest-get * Use contractions in todotask-delta * Use contractions in todotask-list-checklistitems * Use contractions in todotask-post-attachments * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-list-calendarview * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistration-list * Use contractions in virtualeventregistration-list-sessions * Use contractions in virtualeventwebinar-post-registrations * Use contractions in webpart-delete * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Update simulation-update.md for requirement around simuation state (#9936) * Update simulation-update.md for requirement around simuation state Clarified simulation state as draft as required and updated description. * Minor fixes --------- Co-authored-by: Faith Moraa Ombongi * Remove license-type availability banner from Graph beta eDiscovery overview Replaces preview/SKU-specific note in ediscovery-ediscoveryapioverview.md with neutral guidance pointing to Microsoft Purview eDiscovery documentation. Addresses customer confusion (IcM 51000001064141) about creating searches in standard eDiscovery cases via Graph. * Fix Read-only capitalization in appscope.md * Fix Read-only capitalization in azureactivedirectorytenant.md * Fix Read-only capitalization in channel.md * Fix Read-only capitalization in chatmessage.md * Fix Read-only capitalization in cloudpc.md * Fix Read-only capitalization in conditionalaccesspolicy.md * Fix Read-only capitalization in connectedorganizationmembers.md * Fix Read-only capitalization in crosscloudazureactivedirectorytenant.md * Fix Read-only capitalization in customaccesspackageworkflowextension.md * Fix Read-only capitalization in delegatedadminrelationship.md * Fix Read-only capitalization in directoryrole.md * Fix Read-only capitalization in externaldomainfederation.md * Fix Read-only capitalization in groupmembers.md * Fix Read-only capitalization in insights-shared.md * Fix Read-only capitalization in insights-trending.md * Fix Read-only capitalization in insights-used.md * Fix Read-only capitalization in passwordsinglesignonfield.md * Fix Read-only capitalization in plannerroster.md * Fix Read-only capitalization in reminder.md * Fix Read-only capitalization in serviceannouncement.md * Fix Read-only capitalization in singleuser.md * Fix Read-only capitalization in teamstab.md * Fix Read-only capitalization in translationpreferences.md * Fix Read-only capitalization in unifiedroleeligibilityscheduleinstance.md * Fix Read-only capitalization in accesspackageresourcerequest.md * Fix Read-only capitalization in accesspackageassignmentpolicy.md * Fix Read-only capitalization in azureactivedirectorytenant.md * Fix Read-only capitalization in channel.md * Fix Read-only capitalization in chatmessage.md * Fix Read-only capitalization in conditionalaccesspolicy.md * Fix Read-only capitalization in crosscloudazureactivedirectorytenant.md * Fix Read-only capitalization in delegatedadminrelationship.md * Fix Read-only capitalization in directoryrole.md * Fix Read-only capitalization in domainidentitysource.md * Fix Read-only capitalization in externaldomainfederation.md * Fix Read-only capitalization in insights-shared.md * Fix Read-only capitalization in insights-trending.md * Fix Read-only capitalization in reminder.md * Fix Read-only capitalization in serviceannouncement.md * Fix Read-only capitalization in rbacapplication-post-roleassignmentschedulerequests.md * Fix Read-only capitalization in rbacapplication-post-roleeligibilityschedulerequests.md * Fix Read-only capitalization in rbacapplication-rolescheduleinstances.md * Fix Read-only capitalization in rbacapplication-roleschedules.md * Fix Read-only capitalization in rbacapplication-post-roleassignmentschedulerequests.md * Fix Read-only capitalization in rbacapplication-post-roleeligibilityschedulerequests.md * Fix Read-only capitalization in rbacapplication-rolescheduleinstances.md * Fix Read-only capitalization in rbacapplication-roleschedules.md * Simplify description for protectionRule addition (#9944) * Repo sync for protected branch (#9945) * Resolve syncing conflicts from repo_sync_working_branch to main (#29086) * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-get * Use contractions in user-list-calendarview * Use contractions in user-list-events * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in user-list-people * Use contractions in user-list-permissiongrants * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualendpoint-list-serviceplans * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistrationconfiguration-post-questions * Use contractions in virtualmachinewithawsstoragebucketaccessfinding-get * Use contractions in windowsupdates-deploymentaudience-updateaudiencebyid * Use contractions in windowsupdates-updatableasset-enrollassets * Use contractions in windowsupdates-updatableassetgroup-addmembers * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Use contractions in accessreviewinstance-update * Use contractions in accessreviewscheduledefinition-update * Use contractions in accessreviewset-post-definitions * Use contractions in accessreviewstage-update * Use contractions in agentidentityblueprint-list * Use contractions in agentidentity-list * Use contractions in agreementfile-get * Use contractions in agreementfile-list-localizations * Use contractions in allowedvalue-get * Use contractions in application-addkey * Use contractions in application-post-applications * Use contractions in application-removekey * Use contractions in application-update * Use contractions in approval-get * Use contractions in approval-list-stages * Use contractions in approvalstage-get * Use contractions in associatedteaminfo-list * Use contractions in attachment-createuploadsession * Use contractions in authenticationcombinationconfiguration-get * Use contractions in authenticationcontextclassreference-get * Use contractions in authenticationeventlistener-get * Use contractions in authentication-list-methods * Use contractions in authenticationmethod-get * Use contractions in authenticationmethodmodedetail-get * Use contractions in authenticationmethodspolicy-get * Use contractions in authenticationstrengthpolicy-get * Use contractions in authenticationstrengthpolicy-list-combinationconfigurations * Use contractions in authenticationstrengthpolicy-usage * Use contractions in authenticationstrengthroot-list-authenticationmethodmodes * Use contractions in backuprestoreroot-list-onedriveforbusinessbrowsesessions * Use contractions in backuprestoreroot-list-sharepointbrowsesessions * Use contractions in basesitepage-list * Use contractions in bitlocker-list-recoverykeys * Use contractions in bookingappointment-update * Use contractions in bookingbusiness-list * Use contractions in bookingcustomer-get * Use contractions in bundle-removeitem * Use contractions in bundle-update * Use contractions in calendar-list-calendarview * Use contractions in call-keepalive * Use contractions in call-list-participants * Use contractions in call-reject * Use contractions in channel-get-members * Use contractions in chat-delete * Use contractions in chat-get * Use contractions in chat-get-members * Use contractions in chat-list-members * Use contractions in contenttype-delete * Use contractions in conversationmember-list * Use contractions in directory-list-customsecurityattributedefinitions * Use contractions in directoryobject-delta * Use contractions in domain-delete * Use contractions in domain-get-rootdomain * Use contractions in domain-list-federationconfiguration * Use contractions in drive-get-specialfolder * Use contractions in driveitem-copy * Use contractions in driveitem-createlink * Use contractions in driveitem-search * Use contractions in driveitemversion-get * Use contractions in educationclass-delta * Use contractions in educationclass-post * Use contractions in entitlementmanagementsettings-get * Use contractions in externalauthenticationmethodconfiguration-get * Use contractions in externalconnectors-externalgroup-update * Use contractions in externalconnectors-externalitem-get * Use contractions in externalconnectors-schema-get * Use contractions in fido2authenticationmethod-list * Use contractions in group-delta * Use contractions in group-list-acceptedsenders * Use contractions in group-list-calendarview * Use contractions in group-post-members * Use contractions in group-update * Use contractions in identitygovernance-insights-workflowsprocessedsummary * Use contractions in identitygovernance-task-get * Use contractions in identitygovernance-workflowtemplate-get * Use contractions in identityuserflowattributeassignment-update * Use contractions in inferenceclassification-list-overrides * Use contractions in internaldomainfederation-get * Use contractions in learningcourseactivity-update * Use contractions in list-get * Use contractions in listitem-delete * Use contractions in listitem-update * Use contractions in mailfolder-list-childfolders * Use contractions in message-createreply * Use contractions in message-createreplyall * Use contractions in message-delta * Use contractions in message-reply * Use contractions in message-replyall * Use contractions in offershiftrequest-get * Use contractions in onlinemeeting-createorget * Use contractions in orgcontact-delta * Use contractions in outlookuser-supportedtimezones * Use contractions in permissiongrantpolicy-update * Use contractions in permission-update * Use contractions in phoneauthenticationmethod-update * Use contractions in plannerassignedtotaskboardtaskformat-update * Use contractions in post-post-attachments * Use contractions in printdocument-createuploadsession * Use contractions in printer-update * Use contractions in printjob-cancel * Use contractions in projectrome-put-activity * Use contractions in qrcode-get * Use contractions in reportroot-getemailactivitycounts * Use contractions in reportroot-getemailactivityusercounts * Use contractions in reportroot-getemailactivityuserdetail * Use contractions in reportroot-getemailappusageappsusercounts * Use contractions in reportroot-getemailappusageusercounts * Use contractions in reportroot-getemailappusageuserdetail * Use contractions in reportroot-getm365appplatformusercounts * Use contractions in reportroot-getm365appusercounts * Use contractions in reportroot-getm365appuserdetail * Use contractions in reportroot-getmailboxusagedetail * Use contractions in reportroot-getmailboxusagemailboxcounts * Use contractions in reportroot-getmailboxusagequotastatusmailboxcounts * Use contractions in reportroot-getmailboxusagestorage * Use contractions in reportroot-getoffice365activationcounts * Use contractions in reportroot-getoffice365activationsuserdetail * Use contractions in reportroot-getoffice365activeusercounts * Use contractions in reportroot-getoffice365activeuserdetail * Use contractions in reportroot-getoffice365groupsactivitycounts * Use contractions in reportroot-getoffice365groupsactivitydetail * Use contractions in reportroot-getoffice365groupsactivityfilecounts * Use contractions in reportroot-getoffice365groupsactivitystorage * Use contractions in reportroot-getoffice365servicesusercounts * Use contractions in reportroot-getonedriveactivityfilecounts * Use contractions in reportroot-getonedriveactivityusercounts * Use contractions in reportroot-getonedriveactivityuserdetail * Use contractions in reportroot-getonedriveusageaccountcounts * Use contractions in reportroot-getonedriveusageaccountdetail * Use contractions in reportroot-getonedriveusagefilecounts * Use contractions in reportroot-getsharepointactivityfilecounts * Use contractions in reportroot-getsharepointactivitypages * Use contractions in reportroot-getsharepointactivityuserdetail * Use contractions in reportroot-getsharepointsiteusagedetail * Use contractions in reportroot-getsharepointsiteusagefilecounts * Use contractions in reportroot-getsharepointsiteusagepages * Use contractions in reportroot-getsharepointsiteusagesitecounts * Use contractions in reportroot-getsharepointsiteusagestorage * Use contractions in reportroot-getskypeforbusinessactivitycounts * Use contractions in reportroot-getskypeforbusinessactivityusercounts * Use contractions in reportroot-getskypeforbusinessactivityuserdetail * Use contractions in reportroot-getskypeforbusinessdeviceusagedistributionusercounts * Use contractions in reportroot-getskypeforbusinessdeviceusageuserdetail * Use contractions in reportroot-getskypeforbusinessorganizeractivityminutecounts * Use contractions in reportroot-getskypeforbusinessparticipantactivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivitycounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityusercounts * Use contractions in reportroot-getteamsdeviceusageusercounts * Use contractions in reportroot-getteamsuseractivityusercounts * Use contractions in reportroot-getteamsuseractivityuserdetail * Use contractions in reportroot-getyammeractivitycounts * Use contractions in reportroot-getyammeractivityusercounts * Use contractions in reportroot-getyammeractivityuserdetail * Use contractions in reportroot-getyammerdeviceusagedistributionusercounts * Use contractions in reportroot-getyammerdeviceusageusercounts * Use contractions in reportroot-getyammerdeviceusageuserdetail * Use contractions in reportroot-getyammergroupsactivitycounts * Use contractions in reportroot-getyammergroupsactivitydetail * Use contractions in riskdetection-get * Use contractions in riskyuser-get * Use contractions in schedulinggroup-delete * Use contractions in schemaextension-delete * Use contractions in security-ediscoverysearch-list-lastestimatestatisticsoperation * Use contractions in security-host-list-childhostpairs * Use contractions in security-host-list-parenthostpairs * Use contractions in security-hostpair-get * Use contractions in security-threatintelligence-list-sslcertificates * Use contractions in servicehealthissue-get * Use contractions in servicehealthissue-incidentreport * Use contractions in serviceprincipal-get * Use contractions in serviceupdatemessage-get * Use contractions in sharedwithchannelteaminfo-get * Use contractions in sharedwithchannelteaminfo-list-allowedmembers * Use contractions in simulationautomation-get * Use contractions in simulation-get * Use contractions in singlevaluelegacyextendedproperty-get * Use contractions in sitepage-publish * Use contractions in sitepage-update * Use contractions in site-search * Use contractions in subjectrightsrequest-list-notes * Use contractions in subscribedsku-list * Use contractions in synchronization-synchronizationschema-delete * Use contractions in synchronization-synchronizationschema-update * Use contractions in teamsapp-delete * Use contractions in teamsapp-publish * Use contractions in teamsapp-update * Use contractions in teamworktag-get * Use contractions in tenantappmanagementpolicy-update * Use contractions in tenantdatasecurityandgovernance-processcontentasync * Use contractions in timeoffrequest-get * Use contractions in todotask-delta * Use contractions in todotask-list-checklistitems * Use contractions in todotask-post-attachments * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-list-calendarview * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistration-list * Use contractions in virtualeventregistration-list-sessions * Use contractions in virtualeventwebinar-post-registrations * Use contractions in webpart-delete * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Auto Publish – main to live - 2026-06-12 00:30 UTC (#29054) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identity APIs (#28984) Updated important notes regarding agent identity blueprints and roles. * Add mdai service source to security alerts (#28897) * Add MDAI service source * fix name * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Harel Damti Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add conflictBehavior support to fileStorageContainer POST permissions (#28918) * Add conflictBehavior support to fileStorageContainer POST permissions Added @microsoft.graph.conflictBehavior annotation parameter to Create permission API for both beta and v1.0. Supports 'fail' (default, returns 409 Conflict) and 'replace' (updates existing role) values. - Updated beta and v1.0 POST permissions docs with path parameters, conflictBehavior details, and replace example - Added changelog entries for beta and v1.0 - Updated What's New for May 2026 * Fix dataLocation query parameter - remove incorrect $ prefix The $ prefix only applies to OData keywords like \, \, \. Custom query parameters like dataLocation should not have the prefix. * Fix validation issues - absolute links and broken references - Convert absolute learn.microsoft.com link to relative link in fileStorageContainer docs - Fix broken alertsv1-alertsv2-migration link to point to security-alert resource - Remove broken migrationMode enum link * Format conflictBehavior description - add space before parentheses * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-post-permissions.md * Update filestoragecontainer-post-permissions.md * Update api-reference/v1.0/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Update api-reference/beta/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Clarify Example 1 as new permission creation Label the first sample as Example 1 and update request/response subheadings for consistency with Example 2 in beta and v1.0 docs. * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add behavioral guidance and hidden membership notes to checkMemberGroups (#28976) * docs: add behavioral guidance and hidden membership notes to checkMemberGroups Add IMPORTANT alert documenting single-request evaluation semantics and partial results behavior for access-restricted groups. Add NOTE about latency expectations. Add hidden membership permission requirements (Member.Read.Hidden for app-only, group membership for delegated). Applies to both v1.0 and beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add passwordSubmit member to authenticationEventType enum (beta) (#28973) * Add passwordSubmit member to authenticationEventType enum (beta) Documents the new `passwordSubmit` (value 6) member added to the `authenticationEventType` enum in the Microsoft.AAD.Reporting beta schema. This enables OnPasswordSubmit event listeners and custom authentication extension handlers (Reports > Identity and access reports). Files updated: - api-reference/beta/resources/enums.md - added passwordSubmit row - api-reference/beta/resources/appliedauthenticationeventlistener.md - updated eventType value lists - changelog/Microsoft.AAD.Reporting.json - added changelog entry to clear AGS PR 15884845 warning - concepts/whats-new-overview.md - announced in May 2026 What's New Related AGS PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/15884845 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update changelog/Microsoft.AAD.Reporting.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify IANA Time Zone Database format for schedule timeZone (#28734) * Clarify IANA Time Zone Database format for schedule timeZone Graph Shifts expects timeZone on a schedule to use the IANA Time Zone Database (also called the Olson database or tz database) format, e.g. America/Chicago. The existing property description just says "tz database format" which is easy to miss; the API page for PUT /teams/{id}/schedule doesn't mention it at all. - api-reference/{v1.0,beta}/resources/schedule.md: expand the timeZone property description with the full "IANA Time Zone Database" name and an example value. - api-reference/{v1.0,beta}/api/team-put-schedule.md: add a NOTE in the Request body section calling out the timeZone format requirement. Co-Authored-By: Claude Opus 4.7 (1M context) * Rework timeZone wording to be more actionable Feedback was that the previous wording ("must be specified in IANA Time Zone Database format...") is formal but doesn't actually tell a developer what to put. Rework to: - Use active voice ("Set timeZone to..." instead of "must be specified in"). - Show the Area/Location pattern via two examples (America/Chicago, Europe/London) instead of one. - Link to the canonical list on Wikipedia, matching the existing pattern already used for IANA time zones in concepts/toolkit/components/agenda.md and for other standards (E.164, ISO 4217, ISO 3166-1 alpha-2) in call-records reference docs. Co-Authored-By: Claude Opus 4.7 (1M context) * Drop redundant Olson/tz database aliases from timeZone wording The Wikipedia link we point to is already titled "List of tz database time zones", so readers who know the format by that name still find it via the link text. Matches the agenda.md precedent in this repo, which says "IANA time zone" without the alias list. Co-Authored-By: Claude Opus 4.7 (1M context) * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update team-put-schedule.md --------- Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update fileStorageContainer permission docs for alternate keys (#28916) * Update fileStorageContainer permission docs for alternate keys and add v1.0 get permissions topic * Update example header for permission retrieval * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @MSFT-Andrea * Update filestoragecontainer-get-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-delete-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-update-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Rename filestoragecontainer-get-permission-permissions.md to filestoragecontainer-get-permissions-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.FileServices.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Changelog fix. --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add reviewer delegation support for access reviews (beta) + merge main conflict resolution (#28838) * Update beta access review delegation docs Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2c320825-53af-40dd-8f42-ed52df5ae12d Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: clarify reviewer example scope Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2b4147b8-b521-4a17-a5da-ea987c630d6f Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * rephrasing to focus on “reviewer delegation support” and link only to the primary entry point(s) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * split this into two ChangeList items (same record Id) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix guid Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: reorder access review decision item properties Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/bfc67a32-3878-4761-a3e1-f45633867fa3 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: align access review example formatting Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2318bcb0-67e7-4003-b7c5-8a8861253004 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: remove partial tab groups from access review examples Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/159d921e-8a7e-4ace-b801-1dc77de9bcbc Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: add full tab scaffolding to new access review examples for consistency Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/3dfef0f6-7ffa-45e4-bac0-f35fce549486 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * Remove manually inserted code snippets Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: snippet-gen-pull-automation[bot] <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: lilealdai <118565463+lilealdai@users.noreply.github.com> Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot <198982749+Copilot@users.noreply.github.com> Co-authored-by: Helge Solheim Co-authored-by: Helge Solheim Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: milanevk Co-authored-by: shlipsey3 <66325782+shlipsey3@users.noreply.github.com> Co-authored-by: hareldamti <94783416+hareldamti@users.noreply.github.com> Co-authored-by: Harel Damti Co-authored-by: ashyasingh <74160572+ashyasingh@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: diadabal <105948420+diadabal@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Raul Fernandes Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * Update simulation-update.md for requirement around simuation state (#9936) * Update simulation-update.md for requirement around simuation state Clarified simulation state as draft as required and updated description. * Minor fixes --------- Co-authored-by: Faith Moraa Ombongi * Publish main to live - reconcile divergence 2026-06-17 Sets live content identical to main to clear the squash-induced divergence. No manual live hotfixes existed. * Reconcile live to main (unblock auto-publish #29094) (#29095) * Publish main to live - reconcile divergence (refresh 2026-06-17 18:25) Sets live content identical to current main. main is authoritative; no live-only hotfixes. * Update tenantappmanagementpolicy-get.md --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Merge to publish. (#29097) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identity APIs (#28984) Updated important notes regarding agent identity blueprints and roles. * Add mdai service source to security alerts (#28897) * Add MDAI service source * fix name * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Harel Damti Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add conflictBehavior support to fileStorageContainer POST permissions (#28918) * Add conflictBehavior support to fileStorageContainer POST permissions Added @microsoft.graph.conflictBehavior annotation parameter to Create permission API for both beta and v1.0. Supports 'fail' (default, returns 409 Conflict) and 'replace' (updates existing role) values. - Updated beta and v1.0 POST permissions docs with path parameters, conflictBehavior details, and replace example - Added changelog entries for beta and v1.0 - Updated What's New for May 2026 * Fix dataLocation query parameter - remove incorrect $ prefix The $ prefix only applies to OData keywords like \, \, \. Custom query parameters like dataLocation should not have the prefix. * Fix validation issues - absolute links and broken references - Convert absolute learn.microsoft.com link to relative link in fileStorageContainer docs - Fix broken alertsv1-alertsv2-migration link to point to security-alert resource - Remove broken migrationMode enum link * Format conflictBehavior description - add space before parentheses * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-post-permissions.md * Update filestoragecontainer-post-permissions.md * Update api-reference/v1.0/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Update api-reference/beta/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Clarify Example 1 as new permission creation Label the first sample as Example 1 and update request/response subheadings for consistency with Example 2 in beta and v1.0 docs. * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add behavioral guidance and hidden membership notes to checkMemberGroups (#28976) * docs: add behavioral guidance and hidden membership notes to checkMemberGroups Add IMPORTANT alert documenting single-request evaluation semantics and partial results behavior for access-restricted groups. Add NOTE about latency expectations. Add hidden membership permission requirements (Member.Read.Hidden for app-only, group membership for delegated). Applies to both v1.0 and beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add passwordSubmit member to authenticationEventType enum (beta) (#28973) * Add passwordSubmit member to authenticationEventType enum (beta) Documents the new `passwordSubmit` (value 6) member added to the `authenticationEventType` enum in the Microsoft.AAD.Reporting beta schema. This enables OnPasswordSubmit event listeners and custom authentication extension handlers (Reports > Identity and access reports). Files updated: - api-reference/beta/resources/enums.md - added passwordSubmit row - api-reference/beta/resources/appliedauthenticationeventlistener.md - updated eventType value lists - changelog/Microsoft.AAD.Reporting.json - added changelog entry to clear AGS PR 15884845 warning - concepts/whats-new-overview.md - announced in May 2026 What's New Related AGS PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/15884845 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update changelog/Microsoft.AAD.Reporting.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify IANA Time Zone Database format for schedule timeZone (#28734) * Clarify IANA Time Zone Database format for schedule timeZone Graph Shifts expects timeZone on a schedule to use the IANA Time Zone Database (also called the Olson database or tz database) format, e.g. America/Chicago. The existing property description just says "tz database format" which is easy to miss; the API page for PUT /teams/{id}/schedule doesn't mention it at all. - api-reference/{v1.0,beta}/resources/schedule.md: expand the timeZone property description with the full "IANA Time Zone Database" name and an example value. - api-reference/{v1.0,beta}/api/team-put-schedule.md: add a NOTE in the Request body section calling out the timeZone format requirement. Co-Authored-By: Claude Opus 4.7 (1M context) * Rework timeZone wording to be more actionable Feedback was that the previous wording ("must be specified in IANA Time Zone Database format...") is formal but doesn't actually tell a developer what to put. Rework to: - Use active voice ("Set timeZone to..." instead of "must be specified in"). - Show the Area/Location pattern via two examples (America/Chicago, Europe/London) instead of one. - Link to the canonical list on Wikipedia, matching the existing pattern already used for IANA time zones in concepts/toolkit/components/agenda.md and for other standards (E.164, ISO 4217, ISO 3166-1 alpha-2) in call-records reference docs. Co-Authored-By: Claude Opus 4.7 (1M context) * Drop redundant Olson/tz database aliases from timeZone wording The Wikipedia link we point to is already titled "List of tz database time zones", so readers who know the format by that name still find it via the link text. Matches the agenda.md precedent in this repo, which says "IANA time zone" without the alias list. Co-Authored-By: Claude Opus 4.7 (1M context) * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update team-put-schedule.md --------- Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update fileStorageContainer permission docs for alternate keys (#28916) * Update fileStorageContainer permission docs for alternate keys and add v1.0 get permissions topic * Update example header for permission retrieval * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @MSFT-Andrea * Update filestoragecontainer-get-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-delete-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-update-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Rename filestoragecontainer-get-permission-permissions.md to filestoragecontainer-get-permissions-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.FileServices.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Changelog fix. --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add reviewer delegation support for access reviews (beta) + merge main conflict resolution (#28838) * Update beta access review delegation docs Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2c320825-53af-40dd-8f42-ed52df5ae12d Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: clarify reviewer example scope Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2b4147b8-b521-4a17-a5da-ea987c630d6f Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * rephrasing to focus on “reviewer delegation support” and link only to the primary entry point(s) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * split this into two ChangeList items (same record Id) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix guid Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: reorder access review decision item properties Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/bfc67a32-3878-4761-a3e1-f45633867fa3 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: align access review example formatting Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2318bcb0-67e7-4003-b7c5-8a8861253004 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: remove partial tab groups from access review examples Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/159d921e-8a7e-4ace-b801-1dc77de9bcbc Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: add full tab scaffolding to new access review examples for consistency Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/3dfef0f6-7ffa-45e4-bac0-f35fce549486 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * Remove manually inserted code snippets Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC (#29058) Co-authored-by: Microsoft Graph DevX Tooling * Update profilePropertySetting docs (#29038) * Updated according to KnutB's spec * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update peopleadminsettings-list-profilepropertysettings.md * Update profilepropertysetting.md * Move extended Delete description from resource table to API topic * Apply suggestion from @MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222741 (#29057) Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 222558 (#29051) Co-authored-by: Microsoft Graph DevX Tooling * Revise traceRouteHop availability in callRecord docs (#29055) * Revise traceRouteHop availability in callRecord docs * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update whats-new-overview.md (#29010) * Update whats-new-overview.md * Update whats-new-overview.md --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update pull request template to remove documentation plan requirement (#29069) Removed the requirement to attach the documentation plan for AI-assisted docs authoring. * 2026-06-15: Automated permissions reference update (#29068) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 222982 (#29067) Co-authored-by: Microsoft Graph DevX Tooling * Update whats-new-overview.md (#29064) * Update whats-new-overview.md * Update whats-new-overview.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add tenantId property to userAccount resource (#28845) * Add tenantId field to security user account resource Added tenantId field to user account resource details. * Update userAccount resource date and add tenantId * Update date for security userAccount resource * Update changelog with new API changes Added new changelog entries for tenantId and categories properties in userAccount resource. * Apply review suggestions: update changelog dates and add What's New entry for tenantId on userAccount * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi --------- Co-authored-by: Faith Moraa Ombongi Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Add mergeIncidents and moveAlerts v1.0 API docs (#28851) * Add mergeIncidents and moveAlerts v1.0 API docs Add v1.0 documentation for security action endpoints: - API pages: security-incident-mergeincidents.md, security-alert-movealerts.md - Resource pages: security-mergeresponse.md, security-correlationreason.md - Permission and RBAC include files - Update security-incident.md and security-alert.md Methods tables - Update v1.0 toc.mapping.json with new complex types - Add v1.0 changelog entries for all new artifacts Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Fix comments * Apply suggestion from @FaithOmbongi * Update what's new --------- Co-authored-by: Harel Damti Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi * Update reference TOC (#29071) Co-authored-by: Microsoft Graph DevX Tooling * Update people doc (#29023) * Updated people & workplace intelligence document according to Knut Brandrud's proposal reviewed within our team. * Minor typo Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address review comments in social intelligence overview * Apply remaining review thread doc fixes * minor date fix Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * date --------- Co-authored-by: Helge Solheim Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add isVisible property to lpc v1.0 (#28915) * Add isVisible property to lpc v1.0 * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update Microsoft.People.json * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @Danipocket --------- Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply simulation-update v1.0 PR #9936 changes to beta file (#29077) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Remove unsupported expand query from getRetentionLabel docs (#29080) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated files with build 223158 (#29075) Co-authored-by: Microsoft Graph DevX Tooling * Resolve syncing conflicts from repo_sync_working_branch to main (#29076) * Enhance clarity in API documentation by updating request and response example phrasing across multiple files * Apply suggestions from code review Co-authored-by: Jarbas Horst * Fix trailing pipe tables 1.0 (#9930) * Fix trailing pipe formatting in b2xidentityuserflow-post-userattributeassignments * Fix trailing pipe formatting in basesitepage-delete * Fix trailing pipe formatting in bundle-update * Fix trailing pipe formatting in call-redirect * Fix trailing pipe formatting in cloudclipboardroot-list-items * Fix trailing pipe formatting in contact-update * Fix trailing pipe formatting in driveitem-createlink * Fix trailing pipe formatting in driveitem-delta * Fix trailing pipe formatting in driveitem-get-content-format * Fix trailing pipe formatting in driveitem-invite * Fix trailing pipe formatting in driveitem-preview * Fix trailing pipe formatting in itemactivitystat-getactivitybyinterval * Fix trailing pipe formatting in listitem-delete * Fix trailing pipe formatting in listitem-update * Fix trailing pipe formatting in permission-grant * Fix trailing pipe formatting in security-host-list-passivedns * Fix trailing pipe formatting in site-list * Fix trailing pipe formatting in tablecolumncollection-add * Fix trailing pipe formatting in user-findmeetingtimes * Apply suggestions from code review Co-authored-by: Jarbas Horst --------- Co-authored-by: Jarbas Horst * Fix missing closing codeblock beta (#9919) * Fix formatting of HTTP request example in accesspackageresource-list-uploadsessions.md * Fix missing closing code block in security-labelsroot-delete-citations.md * Fix missing closing code block in singlevaluelegacyextendedproperty-get.md * Fix missing closing code block in usersettings-list-windows.md * Fix missing closing code block in webapplicationfirewallprovider-verify.md * Fix missing closing code block in windowssetting-get.md * Fix missing closing code block in windowssetting-list-instances.md * fix(beta api): close malformed http code fence in windowssettinginstance-get * Apply suggestions from code review Co-authored-by: Jarbas Horst --------- Co-authored-by: Jarbas Horst * Update synchronization-synchronization-list-templates.md (#9922) Update headings from H3 to H2. * Update https://github.com/microsoftgraph/microsoft-graph-docs-contrib/edit/main/api-reference/v1.0/api/synchronization-synchronizationtemplate-get.md (#9923) Update headings from H3 to H2. * Update synchronization-synchronizationtemplate-update.md (#9924) Update headings from H3 to H2. * Update eventmessage-post-attachments.md (#9926) Updated the header hierarchy to align with https://github.com/microsoftgraph/microsoft-graph-docs-contrib/blob/main/api-reference/v1.0/api/message-post-attachments.md * Update event-post-attachments.md (#9925) Updated the header hierarchy to align with https://github.com/microsoftgraph/microsoft-graph-docs-contrib/blob/main/api-reference/v1.0/api/message-post-attachments.md * Update educationassignment-list-resources.md (#9927) Update formatting * Update provisioningobjectsummary-list.md (#9928) Fix typo in error response example section * Fix trailing pipe tables beta (#9929) * Fix trailing pipe formatting in b2cidentityuserflow-post-userattributeassignments * Fix trailing pipe formatting in b2xidentityuserflow-post-userattributeassignments * Fix trailing pipe formatting in basesitepage-delete * Fix trailing pipe formatting in bookingbusiness-update * Fix trailing pipe formatting in bundle-update * Fix trailing pipe formatting in call-redirect * Fix trailing pipe formatting in cloudpc-retrievecloudpccountbystatus * Fix trailing pipe formatting in contact-update * Fix trailing pipe formatting in contenttype-associatewithhubsites * Fix trailing pipe formatting in customdataprovidedresourceuploadsession-uploadfile * Fix trailing pipe formatting in driveitem-createlink * Fix trailing pipe formatting in driveitem-delta * Fix trailing pipe formatting in driveitem-get-content-format * Fix trailing pipe formatting in driveitem-invite * Fix trailing pipe formatting in driveitem-preview * Fix trailing pipe formatting in ediscovery-noncustodialdatasource-post * Fix trailing pipe formatting in get-device-command-status * Fix trailing pipe formatting in governancerolesetting-update * Fix trailing pipe formatting in industrydata-inboundapiflow-post * Fix trailing pipe formatting in itemactivity-getbyinterval * Fix trailing pipe formatting in listitem-createlink * Fix trailing pipe formatting in listitem-delete * Fix trailing pipe formatting in listitem-update * Fix trailing pipe formatting in message-createreply * Fix trailing pipe formatting in networkaccess-reports-getdestinationsummaries * Fix trailing pipe formatting in networkaccess-reports-getdeviceusagesummary * Fix trailing pipe formatting in pagetemplate-delete * Fix trailing pipe formatting in permission-grant * Fix trailing pipe formatting in rbacapplication-post-roleassignmentschedulerequests * Fix trailing pipe formatting in security-collaborationroot-list-analyzedemails * Fix trailing pipe formatting in security-host-list-passivedns * Fix trailing pipe formatting in send-device-command * Fix trailing pipe formatting in site-list * Fix trailing pipe formatting in team-sendactivitynotification * Fix trailing pipe formatting in termstore-relation-post * Fix trailing pipe formatting in user-list-devices * Fix trailing pipe formatting in user-sendmail * Fix trailing pipe formatting in webpart-delete --------- Co-authored-by: Jarbas Horst * Fix missing closing codeblock 1.0 (#9920) * Fix missing closing http fence in security-auditlogquery-list-records * Fix missing closing http fence in userprotectionscopecontainer-compute * Fix missing closing http fence in usersettings-list-windows --------- Co-authored-by: Jarbas Horst * Update date range (#9931) When requesting a date over 28 days the API returns: "Invalid date value specified: 2026-04-06. Only support data for the past 28 days." * Correct date range for email activity report (#9932) https://github.com/microsoftgraph/microsoft-graph-docs-contrib/pull/9931/changes * Change user ID to placeholder in processContent API (#9921) * Change user ID to placeholder in processContent API Updated user ID placeholder in processContent API calls. * Update userdatasecurityandgovernance-processcontent.md Updated example user ID in processContent API calls. * Auto Publish – main to live - 2026-06-12 00:30 UTC (#29054) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identit… * cross-tenant migration APIs fixes (#9949) * Update security-retentionlabel-get.md (#9948) Remove extra space char * Bump actions/checkout from 6 to 7 (#9942) Bumps [actions/checkout](https://github.com/actions/checkout) from 6 to 7. - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](https://github.com/actions/checkout/compare/v6...v7) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * Move natl. cloiud availability info for MCP Server to prominent spot in Overvew (#9954) * Fixes duplicated news (#9957) Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update site-follow.md (#9952) Updated user ID in the follow site API request example, because it was not a valid GUID format. * Repo sync for protected branch (#9955) * Update generated permissions tables with build 224763 (#29173) Co-authored-by: Microsoft Graph DevX Tooling * Confirm merge from repo_sync_working_branch to main to sync with https://github.com/microsoftgraph/microsoft-graph-docs-contrib (branch main) (#29172) * Use contractions in bookingcustomer-get * Use contractions in bundle-removeitem * Use contractions in bundle-update * Use contractions in calendar-list-calendarview * Use contractions in call-keepalive * Use contractions in call-list-participants * Use contractions in call-reject * Use contractions in channel-get-members * Use contractions in chat-delete * Use contractions in chat-get * Use contractions in chat-get-members * Use contractions in chat-list-members * Use contractions in contenttype-delete * Use contractions in conversationmember-list * Use contractions in directory-list-customsecurityattributedefinitions * Use contractions in directoryobject-delta * Use contractions in domain-delete * Use contractions in domain-get-rootdomain * Use contractions in domain-list-federationconfiguration * Use contractions in drive-get-specialfolder * Use contractions in driveitem-copy * Use contractions in driveitem-createlink * Use contractions in driveitem-search * Use contractions in driveitemversion-get * Use contractions in educationclass-delta * Use contractions in educationclass-post * Use contractions in entitlementmanagementsettings-get * Use contractions in externalauthenticationmethodconfiguration-get * Use contractions in externalconnectors-externalgroup-update * Use contractions in externalconnectors-externalitem-get * Use contractions in externalconnectors-schema-get * Use contractions in fido2authenticationmethod-list * Use contractions in group-delta * Use contractions in group-list-acceptedsenders * Use contractions in group-list-calendarview * Use contractions in group-post-members * Use contractions in group-update * Use contractions in identitygovernance-insights-workflowsprocessedsummary * Use contractions in identitygovernance-task-get * Use contractions in identitygovernance-workflowtemplate-get * Use contractions in identityuserflowattributeassignment-update * Use contractions in inferenceclassification-list-overrides * Use contractions in internaldomainfederation-get * Use contractions in learningcourseactivity-update * Use contractions in list-get * Use contractions in listitem-delete * Use contractions in listitem-update * Use contractions in mailfolder-list-childfolders * Use contractions in message-createreply * Use contractions in message-createreplyall * Use contractions in message-delta * Use contractions in message-reply * Use contractions in message-replyall * Use contractions in offershiftrequest-get * Use contractions in onlinemeeting-createorget * Use contractions in orgcontact-delta * Use contractions in outlookuser-supportedtimezones * Use contractions in permissiongrantpolicy-update * Use contractions in permission-update * Use contractions in phoneauthenticationmethod-update * Use contractions in plannerassignedtotaskboardtaskformat-update * Use contractions in post-post-attachments * Use contractions in printdocument-createuploadsession * Use contractions in printer-update * Use contractions in printjob-cancel * Use contractions in projectrome-put-activity * Use contractions in qrcode-get * Use contractions in reportroot-getemailactivitycounts * Use contractions in reportroot-getemailactivityusercounts * Use contractions in reportroot-getemailactivityuserdetail * Use contractions in reportroot-getemailappusageappsusercounts * Use contractions in reportroot-getemailappusageusercounts * Use contractions in reportroot-getemailappusageuserdetail * Use contractions in reportroot-getm365appplatformusercounts * Use contractions in reportroot-getm365appusercounts * Use contractions in reportroot-getm365appuserdetail * Use contractions in reportroot-getmailboxusagedetail * Use contractions in reportroot-getmailboxusagemailboxcounts * Use contractions in reportroot-getmailboxusagequotastatusmailboxcounts * Use contractions in reportroot-getmailboxusagestorage * Use contractions in reportroot-getoffice365activationcounts * Use contractions in reportroot-getoffice365activationsuserdetail * Use contractions in reportroot-getoffice365activeusercounts * Use contractions in reportroot-getoffice365activeuserdetail * Use contractions in reportroot-getoffice365groupsactivitycounts * Use contractions in reportroot-getoffice365groupsactivitydetail * Use contractions in reportroot-getoffice365groupsactivityfilecounts * Use contractions in reportroot-getoffice365groupsactivitystorage * Use contractions in reportroot-getoffice365servicesusercounts * Use contractions in reportroot-getonedriveactivityfilecounts * Use contractions in reportroot-getonedriveactivityusercounts * Use contractions in reportroot-getonedriveactivityuserdetail * Use contractions in reportroot-getonedriveusageaccountcounts * Use contractions in reportroot-getonedriveusageaccountdetail * Use contractions in reportroot-getonedriveusagefilecounts * Use contractions in reportroot-getsharepointactivityfilecounts * Use contractions in reportroot-getsharepointactivitypages * Use contractions in reportroot-getsharepointactivityuserdetail * Use contractions in reportroot-getsharepointsiteusagedetail * Use contractions in reportroot-getsharepointsiteusagefilecounts * Use contractions in reportroot-getsharepointsiteusagepages * Use contractions in reportroot-getsharepointsiteusagesitecounts * Use contractions in reportroot-getsharepointsiteusagestorage * Use contractions in reportroot-getskypeforbusinessactivitycounts * Use contractions in reportroot-getskypeforbusinessactivityusercounts * Use contractions in reportroot-getskypeforbusinessactivityuserdetail * Use contractions in reportroot-getskypeforbusinessdeviceusagedistributionusercounts * Use contractions in reportroot-getskypeforbusinessdeviceusageuserdetail * Use contractions in reportroot-getskypeforbusinessorganizeractivityminutecounts * Use contractions in reportroot-getskypeforbusinessparticipantactivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivitycounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityusercounts * Use contractions in reportroot-getteamsdeviceusageusercounts * Use contractions in reportroot-getteamsuseractivityusercounts * Use contractions in reportroot-getteamsuseractivityuserdetail * Use contractions in reportroot-getyammeractivitycounts * Use contractions in reportroot-getyammeractivityusercounts * Use contractions in reportroot-getyammeractivityuserdetail * Use contractions in reportroot-getyammerdeviceusagedistributionusercounts * Use contractions in reportroot-getyammerdeviceusageusercounts * Use contractions in reportroot-getyammerdeviceusageuserdetail * Use contractions in reportroot-getyammergroupsactivitycounts * Use contractions in reportroot-getyammergroupsactivitydetail * Use contractions in riskdetection-get * Use contractions in riskyuser-get * Use contractions in schedulinggroup-delete * Use contractions in schemaextension-delete * Use contractions in security-ediscoverysearch-list-lastestimatestatisticsoperation * Use contractions in security-host-list-childhostpairs * Use contractions in security-host-list-parenthostpairs * Use contractions in security-hostpair-get * Use contractions in security-threatintelligence-list-sslcertificates * Use contractions in servicehealthissue-get * Use contractions in servicehealthissue-incidentreport * Use contractions in serviceprincipal-get * Use contractions in serviceupdatemessage-get * Use contractions in sharedwithchannelteaminfo-get * Use contractions in sharedwithchannelteaminfo-list-allowedmembers * Use contractions in simulationautomation-get * Use contractions in simulation-get * Use contractions in singlevaluelegacyextendedproperty-get * Use contractions in sitepage-publish * Use contractions in sitepage-update * Use contractions in site-search * Use contractions in subjectrightsrequest-list-notes * Use contractions in subscribedsku-list * Use contractions in synchronization-synchronizationschema-delete * Use contractions in synchronization-synchronizationschema-update * Use contractions in teamsapp-delete * Use contractions in teamsapp-publish * Use contractions in teamsapp-update * Use contractions in teamworktag-get * Use contractions in tenantappmanagementpolicy-update * Use contractions in tenantdatasecurityandgovernance-processcontentasync * Use contractions in timeoffrequest-get * Use contractions in todotask-delta * Use contractions in todotask-list-checklistitems * Use contractions in todotask-post-attachments * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-list-calendarview * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistration-list * Use contractions in virtualeventregistration-list-sessions * Use contractions in virtualeventwebinar-post-registrations * Use contractions in webpart-delete * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Update simulation-update.md for requirement around simuation state (#9936) * Update simulation-update.md for requirement around simuation state Clarified simulation state as draft as required and updated description. * Minor fixes --------- Co-authored-by: Faith Moraa Ombongi * Remove license-type availability banner from Graph beta eDiscovery overview Replaces preview/SKU-specific note in ediscovery-ediscoveryapioverview.md with neutral guidance pointing to Microsoft Purview eDiscovery documentation. Addresses customer confusion (IcM 51000001064141) about creating searches in standard eDiscovery cases via Graph. * Fix Read-only capitalization in appscope.md * Fix Read-only capitalization in azureactivedirectorytenant.md * Fix Read-only capitalization in channel.md * Fix Read-only capitalization in chatmessage.md * Fix Read-only capitalization in cloudpc.md * Fix Read-only capitalization in conditionalaccesspolicy.md * Fix Read-only capitalization in connectedorganizationmembers.md * Fix Read-only capitalization in crosscloudazureactivedirectorytenant.md * Fix Read-only capitalization in customaccesspackageworkflowextension.md * Fix Read-only capitalization in delegatedadminrelationship.md * Fix Read-only capitalization in directoryrole.md * Fix Read-only capitalization in externaldomainfederation.md * Fix Read-only capitalization in groupmembers.md * Fix Read-only capitalization in insights-shared.md * Fix Read-only capitalization in insights-trending.md * Fix Read-only capitalization in insights-used.md * Fix Read-only capitalization in passwordsinglesignonfield.md * Fix Read-only capitalization in plannerroster.md * Fix Read-only capitalization in reminder.md * Fix Read-only capitalization in serviceannouncement.md * Fix Read-only capitalization in singleuser.md * Fix Read-only capitalization in teamstab.md * Fix Read-only capitalization in translationpreferences.md * Fix Read-only capitalization in unifiedroleeligibilityscheduleinstance.md * Fix Read-only capitalization in accesspackageresourcerequest.md * Fix Read-only capitalization in accesspackageassignmentpolicy.md * Fix Read-only capitalization in azureactivedirectorytenant.md * Fix Read-only capitalization in channel.md * Fix Read-only capitalization in chatmessage.md * Fix Read-only capitalization in conditionalaccesspolicy.md * Fix Read-only capitalization in crosscloudazureactivedirectorytenant.md * Fix Read-only capitalization in delegatedadminrelationship.md * Fix Read-only capitalization in directoryrole.md * Fix Read-only capitalization in domainidentitysource.md * Fix Read-only capitalization in externaldomainfederation.md * Fix Read-only capitalization in insights-shared.md * Fix Read-only capitalization in insights-trending.md * Fix Read-only capitalization in reminder.md * Fix Read-only capitalization in serviceannouncement.md * Fix Read-only capitalization in rbacapplication-post-roleassignmentschedulerequests.md * Fix Read-only capitalization in rbacapplication-post-roleeligibilityschedulerequests.md * Fix Read-only capitalization in rbacapplication-rolescheduleinstances.md * Fix Read-only capitalization in rbacapplication-roleschedules.md * Fix Read-only capitalization in rbacapplication-post-roleassignmentschedulerequests.md * Fix Read-only capitalization in rbacapplication-post-roleeligibilityschedulerequests.md * Fix Read-only capitalization in rbacapplication-rolescheduleinstances.md * Fix Read-only capitalization in rbacapplication-roleschedules.md * Simplify description for protectionRule addition (#9944) * Repo sync for protected branch (#9945) * Resolve syncing conflicts from repo_sync_working_branch to main (#29086) * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-get * Use contractions in user-list-calendarview * Use contractions in user-list-events * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in user-list-people * Use contractions in user-list-permissiongrants * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualendpoint-list-serviceplans * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistrationconfiguration-post-questions * Use contractions in virtualmachinewithawsstoragebucketaccessfinding-get * Use contractions in windowsupdates-deploymentaudience-updateaudiencebyid * Use contractions in windowsupdates-updatableasset-enrollassets * Use contractions in windowsupdates-updatableassetgroup-addmembers * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Use contractions in accessreviewinstance-update * Use contractions in accessreviewscheduledefinition-update * Use contractions in accessreviewset-post-definitions * Use contractions in accessreviewstage-update * Use contractions in agentidentityblueprint-list * Use contractions in agentidentity-list * Use contractions in agreementfile-get * Use contractions in agreementfile-list-localizations * Use contractions in allowedvalue-get * Use contractions in application-addkey * Use contractions in application-post-applications * Use contractions in application-removekey * Use contractions in application-update * Use contractions in approval-get * Use contractions in approval-list-stages * Use contractions in approvalstage-get * Use contractions in associatedteaminfo-list * Use contractions in attachment-createuploadsession * Use contractions in authenticationcombinationconfiguration-get * Use contractions in authenticationcontextclassreference-get * Use contractions in authenticationeventlistener-get * Use contractions in authentication-list-methods * Use contractions in authenticationmethod-get * Use contractions in authenticationmethodmodedetail-get * Use contractions in authenticationmethodspolicy-get * Use contractions in authenticationstrengthpolicy-get * Use contractions in authenticationstrengthpolicy-list-combinationconfigurations * Use contractions in authenticationstrengthpolicy-usage * Use contractions in authenticationstrengthroot-list-authenticationmethodmodes * Use contractions in backuprestoreroot-list-onedriveforbusinessbrowsesessions * Use contractions in backuprestoreroot-list-sharepointbrowsesessions * Use contractions in basesitepage-list * Use contractions in bitlocker-list-recoverykeys * Use contractions in bookingappointment-update * Use contractions in bookingbusiness-list * Use contractions in bookingcustomer-get * Use contractions in bundle-removeitem * Use contractions in bundle-update * Use contractions in calendar-list-calendarview * Use contractions in call-keepalive * Use contractions in call-list-participants * Use contractions in call-reject * Use contractions in channel-get-members * Use contractions in chat-delete * Use contractions in chat-get * Use contractions in chat-get-members * Use contractions in chat-list-members * Use contractions in contenttype-delete * Use contractions in conversationmember-list * Use contractions in directory-list-customsecurityattributedefinitions * Use contractions in directoryobject-delta * Use contractions in domain-delete * Use contractions in domain-get-rootdomain * Use contractions in domain-list-federationconfiguration * Use contractions in drive-get-specialfolder * Use contractions in driveitem-copy * Use contractions in driveitem-createlink * Use contractions in driveitem-search * Use contractions in driveitemversion-get * Use contractions in educationclass-delta * Use contractions in educationclass-post * Use contractions in entitlementmanagementsettings-get * Use contractions in externalauthenticationmethodconfiguration-get * Use contractions in externalconnectors-externalgroup-update * Use contractions in externalconnectors-externalitem-get * Use contractions in externalconnectors-schema-get * Use contractions in fido2authenticationmethod-list * Use contractions in group-delta * Use contractions in group-list-acceptedsenders * Use contractions in group-list-calendarview * Use contractions in group-post-members * Use contractions in group-update * Use contractions in identitygovernance-insights-workflowsprocessedsummary * Use contractions in identitygovernance-task-get * Use contractions in identitygovernance-workflowtemplate-get * Use contractions in identityuserflowattributeassignment-update * Use contractions in inferenceclassification-list-overrides * Use contractions in internaldomainfederation-get * Use contractions in learningcourseactivity-update * Use contractions in list-get * Use contractions in listitem-delete * Use contractions in listitem-update * Use contractions in mailfolder-list-childfolders * Use contractions in message-createreply * Use contractions in message-createreplyall * Use contractions in message-delta * Use contractions in message-reply * Use contractions in message-replyall * Use contractions in offershiftrequest-get * Use contractions in onlinemeeting-createorget * Use contractions in orgcontact-delta * Use contractions in outlookuser-supportedtimezones * Use contractions in permissiongrantpolicy-update * Use contractions in permission-update * Use contractions in phoneauthenticationmethod-update * Use contractions in plannerassignedtotaskboardtaskformat-update * Use contractions in post-post-attachments * Use contractions in printdocument-createuploadsession * Use contractions in printer-update * Use contractions in printjob-cancel * Use contractions in projectrome-put-activity * Use contractions in qrcode-get * Use contractions in reportroot-getemailactivitycounts * Use contractions in reportroot-getemailactivityusercounts * Use contractions in reportroot-getemailactivityuserdetail * Use contractions in reportroot-getemailappusageappsusercounts * Use contractions in reportroot-getemailappusageusercounts * Use contractions in reportroot-getemailappusageuserdetail * Use contractions in reportroot-getm365appplatformusercounts * Use contractions in reportroot-getm365appusercounts * Use contractions in reportroot-getm365appuserdetail * Use contractions in reportroot-getmailboxusagedetail * Use contractions in reportroot-getmailboxusagemailboxcounts * Use contractions in reportroot-getmailboxusagequotastatusmailboxcounts * Use contractions in reportroot-getmailboxusagestorage * Use contractions in reportroot-getoffice365activationcounts * Use contractions in reportroot-getoffice365activationsuserdetail * Use contractions in reportroot-getoffice365activeusercounts * Use contractions in reportroot-getoffice365activeuserdetail * Use contractions in reportroot-getoffice365groupsactivitycounts * Use contractions in reportroot-getoffice365groupsactivitydetail * Use contractions in reportroot-getoffice365groupsactivityfilecounts * Use contractions in reportroot-getoffice365groupsactivitystorage * Use contractions in reportroot-getoffice365servicesusercounts * Use contractions in reportroot-getonedriveactivityfilecounts * Use contractions in reportroot-getonedriveactivityusercounts * Use contractions in reportroot-getonedriveactivityuserdetail * Use contractions in reportroot-getonedriveusageaccountcounts * Use contractions in reportroot-getonedriveusageaccountdetail * Use contractions in reportroot-getonedriveusagefilecounts * Use contractions in reportroot-getsharepointactivityfilecounts * Use contractions in reportroot-getsharepointactivitypages * Use contractions in reportroot-getsharepointactivityuserdetail * Use contractions in reportroot-getsharepointsiteusagedetail * Use contractions in reportroot-getsharepointsiteusagefilecounts * Use contractions in reportroot-getsharepointsiteusagepages * Use contractions in reportroot-getsharepointsiteusagesitecounts * Use contractions in reportroot-getsharepointsiteusagestorage * Use contractions in reportroot-getskypeforbusinessactivitycounts * Use contractions in reportroot-getskypeforbusinessactivityusercounts * Use contractions in reportroot-getskypeforbusinessactivityuserdetail * Use contractions in reportroot-getskypeforbusinessdeviceusagedistributionusercounts * Use contractions in reportroot-getskypeforbusinessdeviceusageuserdetail * Use contractions in reportroot-getskypeforbusinessorganizeractivityminutecounts * Use contractions in reportroot-getskypeforbusinessparticipantactivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivitycounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityusercounts * Use contractions in reportroot-getteamsdeviceusageusercounts * Use contractions in reportroot-getteamsuseractivityusercounts * Use contractions in reportroot-getteamsuseractivityuserdetail * Use contractions in reportroot-getyammeractivitycounts * Use contractions in reportroot-getyammeractivityusercounts * Use contractions in reportroot-getyammeractivityuserdetail * Use contractions in reportroot-getyammerdeviceusagedistributionusercounts * Use contractions in reportroot-getyammerdeviceusageusercounts * Use contractions in reportroot-getyammerdeviceusageuserdetail * Use contractions in reportroot-getyammergroupsactivitycounts * Use contractions in reportroot-getyammergroupsactivitydetail * Use contractions in riskdetection-get * Use contractions in riskyuser-get * Use contractions in schedulinggroup-delete * Use contractions in schemaextension-delete * Use contractions in security-ediscoverysearch-list-lastestimatestatisticsoperation * Use contractions in security-host-list-childhostpairs * Use contractions in security-host-list-parenthostpairs * Use contractions in security-hostpair-get * Use contractions in security-threatintelligence-list-sslcertificates * Use contractions in servicehealthissue-get * Use contractions in servicehealthissue-incidentreport * Use contractions in serviceprincipal-get * Use contractions in serviceupdatemessage-get * Use contractions in sharedwithchannelteaminfo-get * Use contractions in sharedwithchannelteaminfo-list-allowedmembers * Use contractions in simulationautomation-get * Use contractions in simulation-get * Use contractions in singlevaluelegacyextendedproperty-get * Use contractions in sitepage-publish * Use contractions in sitepage-update * Use contractions in site-search * Use contractions in subjectrightsrequest-list-notes * Use contractions in subscribedsku-list * Use contractions in synchronization-synchronizationschema-delete * Use contractions in synchronization-synchronizationschema-update * Use contractions in teamsapp-delete * Use contractions in teamsapp-publish * Use contractions in teamsapp-update * Use contractions in teamworktag-get * Use contractions in tenantappmanagementpolicy-update * Use contractions in tenantdatasecurityandgovernance-processcontentasync * Use contractions in timeoffrequest-get * Use contractions in todotask-delta * Use contractions in todotask-list-checklistitems * Use contractions in todotask-post-attachments * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-list-calendarview * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistration-list * Use contractions in virtualeventregistration-list-sessions * Use contractions in virtualeventwebinar-post-registrations * Use contractions in webpart-delete * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Auto Publish – main to live - 2026-06-12 00:30 UTC (#29054) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identity APIs (#28984) Updated important notes regarding agent identity blueprints and roles. * Add mdai service source to security alerts (#28897) * Add MDAI service source * fix name * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Harel Damti Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add conflictBehavior support to fileStorageContainer POST permissions (#28918) * Add conflictBehavior support to fileStorageContainer POST permissions Added @microsoft.graph.conflictBehavior annotation parameter to Create permission API for both beta and v1.0. Supports 'fail' (default, returns 409 Conflict) and 'replace' (updates existing role) values. - Updated beta and v1.0 POST permissions docs with path parameters, conflictBehavior details, and replace example - Added changelog entries for beta and v1.0 - Updated What's New for May 2026 * Fix dataLocation query parameter - remove incorrect $ prefix The $ prefix only applies to OData keywords like \, \, \. Custom query parameters like dataLocation should not have the prefix. * Fix validation issues - absolute links and broken references - Convert absolute learn.microsoft.com link to relative link in fileStorageContainer docs - Fix broken alertsv1-alertsv2-migration link to point to security-alert resource - Remove broken migrationMode enum link * Format conflictBehavior description - add space before parentheses * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-post-permissions.md * Update filestoragecontainer-post-permissions.md * Update api-reference/v1.0/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Update api-reference/beta/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Clarify Example 1 as new permission creation Label the first sample as Example 1 and update request/response subheadings for consistency with Example 2 in beta and v1.0 docs. * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add behavioral guidance and hidden membership notes to checkMemberGroups (#28976) * docs: add behavioral guidance and hidden membership notes to checkMemberGroups Add IMPORTANT alert documenting single-request evaluation semantics and partial results behavior for access-restricted groups. Add NOTE about latency expectations. Add hidden membership permission requirements (Member.Read.Hidden for app-only, group membership for delegated). Applies to both v1.0 and beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add passwordSubmit member to authenticationEventType enum (beta) (#28973) * Add passwordSubmit member to authenticationEventType enum (beta) Documents the new `passwordSubmit` (value 6) member added to the `authenticationEventType` enum in the Microsoft.AAD.Reporting beta schema. This enables OnPasswordSubmit event listeners and custom authentication extension handlers (Reports > Identity and access reports). Files updated: - api-reference/beta/resources/enums.md - added passwordSubmit row - api-reference/beta/resources/appliedauthenticationeventlistener.md - updated eventType value lists - changelog/Microsoft.AAD.Reporting.json - added changelog entry to clear AGS PR 15884845 warning - concepts/whats-new-overview.md - announced in May 2026 What's New Related AGS PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/15884845 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update changelog/Microsoft.AAD.Reporting.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify IANA Time Zone Database format for schedule timeZone (#28734) * Clarify IANA Time Zone Database format for schedule timeZone Graph Shifts expects timeZone on a schedule to use the IANA Time Zone Database (also called the Olson database or tz database) format, e.g. America/Chicago. The existing property description just says "tz database format" which is easy to miss; the API page for PUT /teams/{id}/schedule doesn't mention it at all. - api-reference/{v1.0,beta}/resources/schedule.md: expand the timeZone property description with the full "IANA Time Zone Database" name and an example value. - api-reference/{v1.0,beta}/api/team-put-schedule.md: add a NOTE in the Request body section calling out the timeZone format requirement. Co-Authored-By: Claude Opus 4.7 (1M context) * Rework timeZone wording to be more actionable Feedback was that the previous wording ("must be specified in IANA Time Zone Database format...") is formal but doesn't actually tell a developer what to put. Rework to: - Use active voice ("Set timeZone to..." instead of "must be specified in"). - Show the Area/Location pattern via two examples (America/Chicago, Europe/London) instead of one. - Link to the canonical list on Wikipedia, matching the existing pattern already used for IANA time zones in concepts/toolkit/components/agenda.md and for other standards (E.164, ISO 4217, ISO 3166-1 alpha-2) in call-records reference docs. Co-Authored-By: Claude Opus 4.7 (1M context) * Drop redundant Olson/tz database aliases from timeZone wording The Wikipedia link we point to is already titled "List of tz database time zones", so readers who know the format by that name still find it via the link text. Matches the agenda.md precedent in this repo, which says "IANA time zone" without the alias list. Co-Authored-By: Claude Opus 4.7 (1M context) * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update team-put-schedule.md --------- Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update fileStorageContainer permission docs for alternate keys (#28916) * Update fileStorageContainer permission docs for alternate keys and add v1.0 get permissions topic * Update example header for permission retrieval * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @MSFT-Andrea * Update filestoragecontainer-get-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-delete-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-update-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Rename filestoragecontainer-get-permission-permissions.md to filestoragecontainer-get-permissions-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.FileServices.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Changelog fix. --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add reviewer delegation support for access reviews (beta) + merge main conflict resolution (#28838) * Update beta access review delegation docs Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2c320825-53af-40dd-8f42-ed52df5ae12d Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: clarify reviewer example scope Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2b4147b8-b521-4a17-a5da-ea987c630d6f Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * rephrasing to focus on “reviewer delegation support” and link only to the primary entry point(s) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * split this into two ChangeList items (same record Id) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix guid Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: reorder access review decision item properties Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/bfc67a32-3878-4761-a3e1-f45633867fa3 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: align access review example formatting Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2318bcb0-67e7-4003-b7c5-8a8861253004 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: remove partial tab groups from access review examples Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/159d921e-8a7e-4ace-b801-1dc77de9bcbc Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: add full tab scaffolding to new access review examples for consistency Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/3dfef0f6-7ffa-45e4-bac0-f35fce549486 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * Remove manually inserted code snippets Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: snippet-gen-pull-automation[bot] <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: lilealdai <118565463+lilealdai@users.noreply.github.com> Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot <198982749+Copilot@users.noreply.github.com> Co-authored-by: Helge Solheim Co-authored-by: Helge Solheim Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: milanevk Co-authored-by: shlipsey3 <66325782+shlipsey3@users.noreply.github.com> Co-authored-by: hareldamti <94783416+hareldamti@users.noreply.github.com> Co-authored-by: Harel Damti Co-authored-by: ashyasingh <74160572+ashyasingh@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: diadabal <105948420+diadabal@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Raul Fernandes Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * Update simulation-update.md for requirement around simuation state (#9936) * Update simulation-update.md for requirement around simuation state Clarified simulation state as draft as required and updated description. * Minor fixes --------- Co-authored-by: Faith Moraa Ombongi * Publish main to live - reconcile divergence 2026-06-17 Sets live content identical to main to clear the squash-induced divergence. No manual live hotfixes existed. * Reconcile live to main (unblock auto-publish #29094) (#29095) * Publish main to live - reconcile divergence (refresh 2026-06-17 18:25) Sets live content identical to current main. main is authoritative; no live-only hotfixes. * Update tenantappmanagementpolicy-get.md --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Merge to publish. (#29097) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identity APIs (#28984) Updated important notes regarding agent identity blueprints and roles. * Add mdai service source to security alerts (#28897) * Add MDAI service source * fix name * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Harel Damti Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add conflictBehavior support to fileStorageContainer POST permissions (#28918) * Add conflictBehavior support to fileStorageContainer POST permissions Added @microsoft.graph.conflictBehavior annotation parameter to Create permission API for both beta and v1.0. Supports 'fail' (default, returns 409 Conflict) and 'replace' (updates existing role) values. - Updated beta and v1.0 POST permissions docs with path parameters, conflictBehavior details, and replace example - Added changelog entries for beta and v1.0 - Updated What's New for May 2026 * Fix dataLocation query parameter - remove incorrect $ prefix The $ prefix only applies to OData keywords like \, \, \. Custom query parameters like dataLocation should not have the prefix. * Fix validation issues - absolute links and broken references - Convert absolute learn.microsoft.com link to relative link in fileStorageContainer docs - Fix broken alertsv1-alertsv2-migration link to point to security-alert resource - Remove broken migrationMode enum link * Format conflictBehavior description - add space before parentheses * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-post-permissions.md * Update filestoragecontainer-post-permissions.md * Update api-reference/v1.0/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Update api-reference/beta/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Clarify Example 1 as new permission creation Label the first sample as Example 1 and update request/response subheadings for consistency with Example 2 in beta and v1.0 docs. * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add behavioral guidance and hidden membership notes to checkMemberGroups (#28976) * docs: add behavioral guidance and hidden membership notes to checkMemberGroups Add IMPORTANT alert documenting single-request evaluation semantics and partial results behavior for access-restricted groups. Add NOTE about latency expectations. Add hidden membership permission requirements (Member.Read.Hidden for app-only, group membership for delegated). Applies to both v1.0 and beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add passwordSubmit member to authenticationEventType enum (beta) (#28973) * Add passwordSubmit member to authenticationEventType enum (beta) Documents the new `passwordSubmit` (value 6) member added to the `authenticationEventType` enum in the Microsoft.AAD.Reporting beta schema. This enables OnPasswordSubmit event listeners and custom authentication extension handlers (Reports > Identity and access reports). Files updated: - api-reference/beta/resources/enums.md - added passwordSubmit row - api-reference/beta/resources/appliedauthenticationeventlistener.md - updated eventType value lists - changelog/Microsoft.AAD.Reporting.json - added changelog entry to clear AGS PR 15884845 warning - concepts/whats-new-overview.md - announced in May 2026 What's New Related AGS PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/15884845 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update changelog/Microsoft.AAD.Reporting.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify IANA Time Zone Database format for schedule timeZone (#28734) * Clarify IANA Time Zone Database format for schedule timeZone Graph Shifts expects timeZone on a schedule to use the IANA Time Zone Database (also called the Olson database or tz database) format, e.g. America/Chicago. The existing property description just says "tz database format" which is easy to miss; the API page for PUT /teams/{id}/schedule doesn't mention it at all. - api-reference/{v1.0,beta}/resources/schedule.md: expand the timeZone property description with the full "IANA Time Zone Database" name and an example value. - api-reference/{v1.0,beta}/api/team-put-schedule.md: add a NOTE in the Request body section calling out the timeZone format requirement. Co-Authored-By: Claude Opus 4.7 (1M context) * Rework timeZone wording to be more actionable Feedback was that the previous wording ("must be specified in IANA Time Zone Database format...") is formal but doesn't actually tell a developer what to put. Rework to: - Use active voice ("Set timeZone to..." instead of "must be specified in"). - Show the Area/Location pattern via two examples (America/Chicago, Europe/London) instead of one. - Link to the canonical list on Wikipedia, matching the existing pattern already used for IANA time zones in concepts/toolkit/components/agenda.md and for other standards (E.164, ISO 4217, ISO 3166-1 alpha-2) in call-records reference docs. Co-Authored-By: Claude Opus 4.7 (1M context) * Drop redundant Olson/tz database aliases from timeZone wording The Wikipedia link we point to is already titled "List of tz database time zones", so readers who know the format by that name still find it via the link text. Matches the agenda.md precedent in this repo, which says "IANA time zone" without the alias list. Co-Authored-By: Claude Opus 4.7 (1M context) * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update team-put-schedule.md --------- Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update fileStorageContainer permission docs for alternate keys (#28916) * Update fileStorageContainer permission docs for alternate keys and add v1.0 get permissions topic * Update example header for permission retrieval * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @MSFT-Andrea * Update filestoragecontainer-get-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-delete-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-update-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Rename filestoragecontainer-get-permission-permissions.md to filestoragecontainer-get-permissions-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.FileServices.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Changelog fix. --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add reviewer delegation support for access reviews (beta) + merge main conflict resolution (#28838) * Update beta access review delegation docs Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2c320825-53af-40dd-8f42-ed52df5ae12d Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: clarify reviewer example scope Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2b4147b8-b521-4a17-a5da-ea987c630d6f Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * rephrasing to focus on “reviewer delegation support” and link only to the primary entry point(s) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * split this into two ChangeList items (same record Id) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix guid Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: reorder access review decision item properties Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/bfc67a32-3878-4761-a3e1-f45633867fa3 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: align access review example formatting Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2318bcb0-67e7-4003-b7c5-8a8861253004 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: remove partial tab groups from access review examples Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/159d921e-8a7e-4ace-b801-1dc77de9bcbc Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: add full tab scaffolding to new access review examples for consistency Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/3dfef0f6-7ffa-45e4-bac0-f35fce549486 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * Remove manually inserted code snippets Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC (#29058) Co-authored-by: Microsoft Graph DevX Tooling * Update profilePropertySetting docs (#29038) * Updated according to KnutB's spec * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update peopleadminsettings-list-profilepropertysettings.md * Update profilepropertysetting.md * Move extended Delete description from resource table to API topic * Apply suggestion from @MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222741 (#29057) Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 222558 (#29051) Co-authored-by: Microsoft Graph DevX Tooling * Revise traceRouteHop availability in callRecord docs (#29055) * Revise traceRouteHop availability in callRecord docs * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update whats-new-overview.md (#29010) * Update whats-new-overview.md * Update whats-new-overview.md --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update pull request template to remove documentation plan requirement (#29069) Removed the requirement to attach the documentation plan for AI-assisted docs authoring. * 2026-06-15: Automated permissions reference update (#29068) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 222982 (#29067) Co-authored-by: Microsoft Graph DevX Tooling * Update whats-new-overview.md (#29064) * Update whats-new-overview.md * Update whats-new-overview.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add tenantId property to userAccount resource (#28845) * Add tenantId field to security user account resource Added tenantId field to user account resource details. * Update userAccount resource date and add tenantId * Update date for security userAccount resource * Update changelog with new API changes Added new changelog entries for tenantId and categories properties in userAccount resource. * Apply review suggestions: update changelog dates and add What's New entry for tenantId on userAccount * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi --------- Co-authored-by: Faith Moraa Ombongi Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Add mergeIncidents and moveAlerts v1.0 API docs (#28851) * Add mergeIncidents and moveAlerts v1.0 API docs … * Add warning against storing sensitive data in auditable directory objects (#9963) * Add warning against storing sensitive data in auditable directory objects Activity, audit, and sign-in logs capture request details that can include sensitive values stored on directory objects. Advise customers not to store secrets/tokens in directory attributes and point to Azure Key Vault. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update microsoft-graph-activity-logs-overview.md --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Faith ombongi patch 4 (#9967) * Update microsoft-entra-conditionalaccesspolicy.md * Fix formatting for SignInFrequencyType and PersistentBrowserMode * Update microsoft-entra-conditionalaccesspolicy.md * Update microsoft-entra-conditionalaccesspolicy.md * Update termsExpiration description for clarity Clarified the description of the termsExpiration resource type to specify it relates to a terms of use agreement. * Update agreementfiledata.md * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi * Update beta agreement resource descriptions --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update listitem-create.md (#9969) Updated the headers in Example section to clarify request and response. * Update listitem-delete.md (#9968) Updated the headers in Example section to clarify request and response. * Update FIDO2 authentication method documentation (#9986) Removed deprecated note and updated HTTP request section. * Repo sync for protected branch (#9995) * Add Update and Delete API documentation (#29255) * added docs for update and delete * removed national cloud support and reverted toc.yml changes * change and what's new * addressed comments * updated date * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * fixes. * changelog fix. * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix * added rbac * updated description of resourceId --------- Co-authored-by: Lavanya Sharma Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update reference TOC (#29331) Co-authored-by: Microsoft Graph DevX Tooling * Fixing documentation gaps - update item size limit to 30 MB in API do… (#29126) * Fixing documentation gaps - update item size limit to 30 MB in API documentation Updated the item size limit from 4 MB to 30 MB for request body when ingesting and indexing items. Adjusted contextual note to reflect the new limit. * Clarify item size limit note in API documentation Updated note on item size limit to clarify the relationship between original file size and parsed content. * Increase payload size limit for externalItem Updated the payload size limit for externalItem in the request body from 4 MB to 30 MB. * docs: note 30 MB payload limit in v1 externalItem create API * Align connectors overview externalItem size limit to 30 MB * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add cloudPC: shareSnapshot API reference doc (#29066) * Add share snapshot action doc * Fix doc * Fix permission doc * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add permission description * response boundary * Add changelog and api reference * Fix conflict * Fix the doc failure * Use general graph api link instad of the language specific one * Remove new page link * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Confirm merge from repo_sync_working_branch to main to sync with https://github.com/microsoftgraph/microsoft-graph-docs-contrib (branch main) (#29333) * Use contractions in reportroot-getemailappusageusercounts * Use contractions in reportroot-getemailappusageuserdetail * Use contractions in reportroot-getm365appplatformusercounts * Use contractions in reportroot-getm365appusercounts * Use contractions in reportroot-getm365appuserdetail * Use contractions in reportroot-getmailboxusagedetail * Use contractions in reportroot-getmailboxusagemailboxcounts * Use contractions in reportroot-getmailboxusagequotastatusmailboxcounts * Use contractions in reportroot-getmailboxusagestorage * Use contractions in reportroot-getoffice365activationcounts * Use contractions in reportroot-getoffice365activationsuserdetail * Use contractions in reportroot-getoffice365activeusercounts * Use contractions in reportroot-getoffice365activeuserdetail * Use contractions in reportroot-getoffice365groupsactivitycounts * Use contractions in reportroot-getoffice365groupsactivitydetail * Use contractions in reportroot-getoffice365groupsactivityfilecounts * Use contractions in reportroot-getoffice365groupsactivitystorage * Use contractions in reportroot-getoffice365servicesusercounts * Use contractions in reportroot-getonedriveactivityfilecounts * Use contractions in reportroot-getonedriveactivityusercounts * Use contractions in reportroot-getonedriveactivityuserdetail * Use contractions in reportroot-getonedriveusageaccountcounts * Use contractions in reportroot-getonedriveusageaccountdetail * Use contractions in reportroot-getonedriveusagefilecounts * Use contractions in reportroot-getsharepointactivityfilecounts * Use contractions in reportroot-getsharepointactivitypages * Use contractions in reportroot-getsharepointactivityuserdetail * Use contractions in reportroot-getsharepointsiteusagedetail * Use contractions in reportroot-getsharepointsiteusagefilecounts * Use contractions in reportroot-getsharepointsiteusagepages * Use contractions in reportroot-getsharepointsiteusagesitecounts * Use contractions in reportroot-getsharepointsiteusagestorage * Use contractions in reportroot-getskypeforbusinessactivitycounts * Use contractions in reportroot-getskypeforbusinessactivityusercounts * Use contractions in reportroot-getskypeforbusinessactivityuserdetail * Use contractions in reportroot-getskypeforbusinessdeviceusagedistributionusercounts * Use contractions in reportroot-getskypeforbusinessdeviceusageuserdetail * Use contractions in reportroot-getskypeforbusinessorganizeractivityminutecounts * Use contractions in reportroot-getskypeforbusinessparticipantactivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivitycounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityusercounts * Use contractions in reportroot-getteamsdeviceusageusercounts * Use contractions in reportroot-getteamsuseractivityusercounts * Use contractions in reportroot-getteamsuseractivityuserdetail * Use contractions in reportroot-getyammeractivitycounts * Use contractions in reportroot-getyammeractivityusercounts * Use contractions in reportroot-getyammeractivityuserdetail * Use contractions in reportroot-getyammerdeviceusagedistributionusercounts * Use contractions in reportroot-getyammerdeviceusageusercounts * Use contractions in reportroot-getyammerdeviceusageuserdetail * Use contractions in reportroot-getyammergroupsactivitycounts * Use contractions in reportroot-getyammergroupsactivitydetail * Use contractions in riskdetection-get * Use contractions in riskyuser-get * Use contractions in schedulinggroup-delete * Use contractions in schemaextension-delete * Use contractions in security-ediscoverysearch-list-lastestimatestatisticsoperation * Use contractions in security-host-list-childhostpairs * Use contractions in security-host-list-parenthostpairs * Use contractions in security-hostpair-get * Use contractions in security-threatintelligence-list-sslcertificates * Use contractions in servicehealthissue-get * Use contractions in servicehealthissue-incidentreport * Use contractions in serviceprincipal-get * Use contractions in serviceupdatemessage-get * Use contractions in sharedwithchannelteaminfo-get * Use contractions in sharedwithchannelteaminfo-list-allowedmembers * Use contractions in simulationautomation-get * Use contractions in simulation-get * Use contractions in singlevaluelegacyextendedproperty-get * Use contractions in sitepage-publish * Use contractions in sitepage-update * Use contractions in site-search * Use contractions in subjectrightsrequest-list-notes * Use contractions in subscribedsku-list * Use contractions in synchronization-synchronizationschema-delete * Use contractions in synchronization-synchronizationschema-update * Use contractions in teamsapp-delete * Use contractions in teamsapp-publish * Use contractions in teamsapp-update * Use contractions in teamworktag-get * Use contractions in tenantappmanagementpolicy-update * Use contractions in tenantdatasecurityandgovernance-processcontentasync * Use contractions in timeoffrequest-get * Use contractions in todotask-delta * Use contractions in todotask-list-checklistitems * Use contractions in todotask-post-attachments * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-list-calendarview * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistration-list * Use contractions in virtualeventregistration-list-sessions * Use contractions in virtualeventwebinar-post-registrations * Use contractions in webpart-delete * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Update simulation-update.md for requirement around simuation state (#9936) * Update simulation-update.md for requirement around simuation state Clarified simulation state as draft as required and updated description. * Minor fixes --------- Co-authored-by: Faith Moraa Ombongi * Remove license-type availability banner from Graph beta eDiscovery overview Replaces preview/SKU-specific note in ediscovery-ediscoveryapioverview.md with neutral guidance pointing to Microsoft Purview eDiscovery documentation. Addresses customer confusion (IcM 51000001064141) about creating searches in standard eDiscovery cases via Graph. * Fix Read-only capitalization in appscope.md * Fix Read-only capitalization in azureactivedirectorytenant.md * Fix Read-only capitalization in channel.md * Fix Read-only capitalization in chatmessage.md * Fix Read-only capitalization in cloudpc.md * Fix Read-only capitalization in conditionalaccesspolicy.md * Fix Read-only capitalization in connectedorganizationmembers.md * Fix Read-only capitalization in crosscloudazureactivedirectorytenant.md * Fix Read-only capitalization in customaccesspackageworkflowextension.md * Fix Read-only capitalization in delegatedadminrelationship.md * Fix Read-only capitalization in directoryrole.md * Fix Read-only capitalization in externaldomainfederation.md * Fix Read-only capitalization in groupmembers.md * Fix Read-only capitalization in insights-shared.md * Fix Read-only capitalization in insights-trending.md * Fix Read-only capitalization in insights-used.md * Fix Read-only capitalization in passwordsinglesignonfield.md * Fix Read-only capitalization in plannerroster.md * Fix Read-only capitalization in reminder.md * Fix Read-only capitalization in serviceannouncement.md * Fix Read-only capitalization in singleuser.md * Fix Read-only capitalization in teamstab.md * Fix Read-only capitalization in translationpreferences.md * Fix Read-only capitalization in unifiedroleeligibilityscheduleinstance.md * Fix Read-only capitalization in accesspackageresourcerequest.md * Fix Read-only capitalization in accesspackageassignmentpolicy.md * Fix Read-only capitalization in azureactivedirectorytenant.md * Fix Read-only capitalization in channel.md * Fix Read-only capitalization in chatmessage.md * Fix Read-only capitalization in conditionalaccesspolicy.md * Fix Read-only capitalization in crosscloudazureactivedirectorytenant.md * Fix Read-only capitalization in delegatedadminrelationship.md * Fix Read-only capitalization in directoryrole.md * Fix Read-only capitalization in domainidentitysource.md * Fix Read-only capitalization in externaldomainfederation.md * Fix Read-only capitalization in insights-shared.md * Fix Read-only capitalization in insights-trending.md * Fix Read-only capitalization in reminder.md * Fix Read-only capitalization in serviceannouncement.md * Fix Read-only capitalization in rbacapplication-post-roleassignmentschedulerequests.md * Fix Read-only capitalization in rbacapplication-post-roleeligibilityschedulerequests.md * Fix Read-only capitalization in rbacapplication-rolescheduleinstances.md * Fix Read-only capitalization in rbacapplication-roleschedules.md * Fix Read-only capitalization in rbacapplication-post-roleassignmentschedulerequests.md * Fix Read-only capitalization in rbacapplication-post-roleeligibilityschedulerequests.md * Fix Read-only capitalization in rbacapplication-rolescheduleinstances.md * Fix Read-only capitalization in rbacapplication-roleschedules.md * Simplify description for protectionRule addition (#9944) * Repo sync for protected branch (#9945) * Resolve syncing conflicts from repo_sync_working_branch to main (#29086) * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-get * Use contractions in user-list-calendarview * Use contractions in user-list-events * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in user-list-people * Use contractions in user-list-permissiongrants * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualendpoint-list-serviceplans * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistrationconfiguration-post-questions * Use contractions in virtualmachinewithawsstoragebucketaccessfinding-get * Use contractions in windowsupdates-deploymentaudience-updateaudiencebyid * Use contractions in windowsupdates-updatableasset-enrollassets * Use contractions in windowsupdates-updatableassetgroup-addmembers * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Use contractions in accessreviewinstance-update * Use contractions in accessreviewscheduledefinition-update * Use contractions in accessreviewset-post-definitions * Use contractions in accessreviewstage-update * Use contractions in agentidentityblueprint-list * Use contractions in agentidentity-list * Use contractions in agreementfile-get * Use contractions in agreementfile-list-localizations * Use contractions in allowedvalue-get * Use contractions in application-addkey * Use contractions in application-post-applications * Use contractions in application-removekey * Use contractions in application-update * Use contractions in approval-get * Use contractions in approval-list-stages * Use contractions in approvalstage-get * Use contractions in associatedteaminfo-list * Use contractions in attachment-createuploadsession * Use contractions in authenticationcombinationconfiguration-get * Use contractions in authenticationcontextclassreference-get * Use contractions in authenticationeventlistener-get * Use contractions in authentication-list-methods * Use contractions in authenticationmethod-get * Use contractions in authenticationmethodmodedetail-get * Use contractions in authenticationmethodspolicy-get * Use contractions in authenticationstrengthpolicy-get * Use contractions in authenticationstrengthpolicy-list-combinationconfigurations * Use contractions in authenticationstrengthpolicy-usage * Use contractions in authenticationstrengthroot-list-authenticationmethodmodes * Use contractions in backuprestoreroot-list-onedriveforbusinessbrowsesessions * Use contractions in backuprestoreroot-list-sharepointbrowsesessions * Use contractions in basesitepage-list * Use contractions in bitlocker-list-recoverykeys * Use contractions in bookingappointment-update * Use contractions in bookingbusiness-list * Use contractions in bookingcustomer-get * Use contractions in bundle-removeitem * Use contractions in bundle-update * Use contractions in calendar-list-calendarview * Use contractions in call-keepalive * Use contractions in call-list-participants * Use contractions in call-reject * Use contractions in channel-get-members * Use contractions in chat-delete * Use contractions in chat-get * Use contractions in chat-get-members * Use contractions in chat-list-members * Use contractions in contenttype-delete * Use contractions in conversationmember-list * Use contractions in directory-list-customsecurityattributedefinitions * Use contractions in directoryobject-delta * Use contractions in domain-delete * Use contractions in domain-get-rootdomain * Use contractions in domain-list-federationconfiguration * Use contractions in drive-get-specialfolder * Use contractions in driveitem-copy * Use contractions in driveitem-createlink * Use contractions in driveitem-search * Use contractions in driveitemversion-get * Use contractions in educationclass-delta * Use contractions in educationclass-post * Use contractions in entitlementmanagementsettings-get * Use contractions in externalauthenticationmethodconfiguration-get * Use contractions in externalconnectors-externalgroup-update * Use contractions in externalconnectors-externalitem-get * Use contractions in externalconnectors-schema-get * Use contractions in fido2authenticationmethod-list * Use contractions in group-delta * Use contractions in group-list-acceptedsenders * Use contractions in group-list-calendarview * Use contractions in group-post-members * Use contractions in group-update * Use contractions in identitygovernance-insights-workflowsprocessedsummary * Use contractions in identitygovernance-task-get * Use contractions in identitygovernance-workflowtemplate-get * Use contractions in identityuserflowattributeassignment-update * Use contractions in inferenceclassification-list-overrides * Use contractions in internaldomainfederation-get * Use contractions in learningcourseactivity-update * Use contractions in list-get * Use contractions in listitem-delete * Use contractions in listitem-update * Use contractions in mailfolder-list-childfolders * Use contractions in message-createreply * Use contractions in message-createreplyall * Use contractions in message-delta * Use contractions in message-reply * Use contractions in message-replyall * Use contractions in offershiftrequest-get * Use contractions in onlinemeeting-createorget * Use contractions in orgcontact-delta * Use contractions in outlookuser-supportedtimezones * Use contractions in permissiongrantpolicy-update * Use contractions in permission-update * Use contractions in phoneauthenticationmethod-update * Use contractions in plannerassignedtotaskboardtaskformat-update * Use contractions in post-post-attachments * Use contractions in printdocument-createuploadsession * Use contractions in printer-update * Use contractions in printjob-cancel * Use contractions in projectrome-put-activity * Use contractions in qrcode-get * Use contractions in reportroot-getemailactivitycounts * Use contractions in reportroot-getemailactivityusercounts * Use contractions in reportroot-getemailactivityuserdetail * Use contractions in reportroot-getemailappusageappsusercounts * Use contractions in reportroot-getemailappusageusercounts * Use contractions in reportroot-getemailappusageuserdetail * Use contractions in reportroot-getm365appplatformusercounts * Use contractions in reportroot-getm365appusercounts * Use contractions in reportroot-getm365appuserdetail * Use contractions in reportroot-getmailboxusagedetail * Use contractions in reportroot-getmailboxusagemailboxcounts * Use contractions in reportroot-getmailboxusagequotastatusmailboxcounts * Use contractions in reportroot-getmailboxusagestorage * Use contractions in reportroot-getoffice365activationcounts * Use contractions in reportroot-getoffice365activationsuserdetail * Use contractions in reportroot-getoffice365activeusercounts * Use contractions in reportroot-getoffice365activeuserdetail * Use contractions in reportroot-getoffice365groupsactivitycounts * Use contractions in reportroot-getoffice365groupsactivitydetail * Use contractions in reportroot-getoffice365groupsactivityfilecounts * Use contractions in reportroot-getoffice365groupsactivitystorage * Use contractions in reportroot-getoffice365servicesusercounts * Use contractions in reportroot-getonedriveactivityfilecounts * Use contractions in reportroot-getonedriveactivityusercounts * Use contractions in reportroot-getonedriveactivityuserdetail * Use contractions in reportroot-getonedriveusageaccountcounts * Use contractions in reportroot-getonedriveusageaccountdetail * Use contractions in reportroot-getonedriveusagefilecounts * Use contractions in reportroot-getsharepointactivityfilecounts * Use contractions in reportroot-getsharepointactivitypages * Use contractions in reportroot-getsharepointactivityuserdetail * Use contractions in reportroot-getsharepointsiteusagedetail * Use contractions in reportroot-getsharepointsiteusagefilecounts * Use contractions in reportroot-getsharepointsiteusagepages * Use contractions in reportroot-getsharepointsiteusagesitecounts * Use contractions in reportroot-getsharepointsiteusagestorage * Use contractions in reportroot-getskypeforbusinessactivitycounts * Use contractions in reportroot-getskypeforbusinessactivityusercounts * Use contractions in reportroot-getskypeforbusinessactivityuserdetail * Use contractions in reportroot-getskypeforbusinessdeviceusagedistributionusercounts * Use contractions in reportroot-getskypeforbusinessdeviceusageuserdetail * Use contractions in reportroot-getskypeforbusinessorganizeractivityminutecounts * Use contractions in reportroot-getskypeforbusinessparticipantactivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivitycounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityminutecounts * Use contractions in reportroot-getskypeforbusinesspeertopeeractivityusercounts * Use contractions in reportroot-getteamsdeviceusageusercounts * Use contractions in reportroot-getteamsuseractivityusercounts * Use contractions in reportroot-getteamsuseractivityuserdetail * Use contractions in reportroot-getyammeractivitycounts * Use contractions in reportroot-getyammeractivityusercounts * Use contractions in reportroot-getyammeractivityuserdetail * Use contractions in reportroot-getyammerdeviceusagedistributionusercounts * Use contractions in reportroot-getyammerdeviceusageusercounts * Use contractions in reportroot-getyammerdeviceusageuserdetail * Use contractions in reportroot-getyammergroupsactivitycounts * Use contractions in reportroot-getyammergroupsactivitydetail * Use contractions in riskdetection-get * Use contractions in riskyuser-get * Use contractions in schedulinggroup-delete * Use contractions in schemaextension-delete * Use contractions in security-ediscoverysearch-list-lastestimatestatisticsoperation * Use contractions in security-host-list-childhostpairs * Use contractions in security-host-list-parenthostpairs * Use contractions in security-hostpair-get * Use contractions in security-threatintelligence-list-sslcertificates * Use contractions in servicehealthissue-get * Use contractions in servicehealthissue-incidentreport * Use contractions in serviceprincipal-get * Use contractions in serviceupdatemessage-get * Use contractions in sharedwithchannelteaminfo-get * Use contractions in sharedwithchannelteaminfo-list-allowedmembers * Use contractions in simulationautomation-get * Use contractions in simulation-get * Use contractions in singlevaluelegacyextendedproperty-get * Use contractions in sitepage-publish * Use contractions in sitepage-update * Use contractions in site-search * Use contractions in subjectrightsrequest-list-notes * Use contractions in subscribedsku-list * Use contractions in synchronization-synchronizationschema-delete * Use contractions in synchronization-synchronizationschema-update * Use contractions in teamsapp-delete * Use contractions in teamsapp-publish * Use contractions in teamsapp-update * Use contractions in teamworktag-get * Use contractions in tenantappmanagementpolicy-update * Use contractions in tenantdatasecurityandgovernance-processcontentasync * Use contractions in timeoffrequest-get * Use contractions in todotask-delta * Use contractions in todotask-list-checklistitems * Use contractions in todotask-post-attachments * Use contractions in userdatasecurityandgovernance-processcontent * Use contractions in user-delta * Use contractions in user-findmeetingtimes * Use contractions in user-list-calendarview * Use contractions in user-list-mailfolders * Use contractions in user-list-messages * Use contractions in userregistrationdetails-get * Use contractions in user-sendmail * Use contractions in verticalsection-update * Use contractions in virtualeventregistrationconfiguration-list-questions * Use contractions in virtualeventregistration-list * Use contractions in virtualeventregistration-list-sessions * Use contractions in virtualeventwebinar-post-registrations * Use contractions in webpart-delete * Use contractions in workbook-tablerowoperationresult * Use contractions in x509certificateauthenticationmethodconfiguration-get * Auto Publish – main to live - 2026-06-12 00:30 UTC (#29054) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identity APIs (#28984) Updated important notes regarding agent identity blueprints and roles. * Add mdai service source to security alerts (#28897) * Add MDAI service source * fix name * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Harel Damti Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add conflictBehavior support to fileStorageContainer POST permissions (#28918) * Add conflictBehavior support to fileStorageContainer POST permissions Added @microsoft.graph.conflictBehavior annotation parameter to Create permission API for both beta and v1.0. Supports 'fail' (default, returns 409 Conflict) and 'replace' (updates existing role) values. - Updated beta and v1.0 POST permissions docs with path parameters, conflictBehavior details, and replace example - Added changelog entries for beta and v1.0 - Updated What's New for May 2026 * Fix dataLocation query parameter - remove incorrect $ prefix The $ prefix only applies to OData keywords like \, \, \. Custom query parameters like dataLocation should not have the prefix. * Fix validation issues - absolute links and broken references - Convert absolute learn.microsoft.com link to relative link in fileStorageContainer docs - Fix broken alertsv1-alertsv2-migration link to point to security-alert resource - Remove broken migrationMode enum link * Format conflictBehavior description - add space before parentheses * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-post-permissions.md * Update filestoragecontainer-post-permissions.md * Update api-reference/v1.0/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Update api-reference/beta/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Clarify Example 1 as new permission creation Label the first sample as Example 1 and update request/response subheadings for consistency with Example 2 in beta and v1.0 docs. * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add behavioral guidance and hidden membership notes to checkMemberGroups (#28976) * docs: add behavioral guidance and hidden membership notes to checkMemberGroups Add IMPORTANT alert documenting single-request evaluation semantics and partial results behavior for access-restricted groups. Add NOTE about latency expectations. Add hidden membership permission requirements (Member.Read.Hidden for app-only, group membership for delegated). Applies to both v1.0 and beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add passwordSubmit member to authenticationEventType enum (beta) (#28973) * Add passwordSubmit member to authenticationEventType enum (beta) Documents the new `passwordSubmit` (value 6) member added to the `authenticationEventType` enum in the Microsoft.AAD.Reporting beta schema. This enables OnPasswordSubmit event listeners and custom authentication extension handlers (Reports > Identity and access reports). Files updated: - api-reference/beta/resources/enums.md - added passwordSubmit row - api-reference/beta/resources/appliedauthenticationeventlistener.md - updated eventType value lists - changelog/Microsoft.AAD.Reporting.json - added changelog entry to clear AGS PR 15884845 warning - concepts/whats-new-overview.md - announced in May 2026 What's New Related AGS PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/15884845 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update changelog/Microsoft.AAD.Reporting.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify IANA Time Zone Database format for schedule timeZone (#28734) * Clarify IANA Time Zone Database format for schedule timeZone Graph Shifts expects timeZone on a schedule to use the IANA Time Zone Database (also called the Olson database or tz database) format, e.g. America/Chicago. The existing property description just says "tz database format" which is easy to miss; the API page for PUT /teams/{id}/schedule doesn't mention it at all. - api-reference/{v1.0,beta}/resources/schedule.md: expand the timeZone property description with the full "IANA Time Zone Database" name and an example value. - api-reference/{v1.0,beta}/api/team-put-schedule.md: add a NOTE in the Request body section calling out the timeZone format requirement. Co-Authored-By: Claude Opus 4.7 (1M context) * Rework timeZone wording to be more actionable Feedback was that the previous wording ("must be specified in IANA Time Zone Database format...") is formal but doesn't actually tell a developer what to put. Rework to: - Use active voice ("Set timeZone to..." instead of "must be specified in"). - Show the Area/Location pattern via two examples (America/Chicago, Europe/London) instead of one. - Link to the canonical list on Wikipedia, matching the existing pattern already used for IANA time zones in concepts/toolkit/components/agenda.md and for other standards (E.164, ISO 4217, ISO 3166-1 alpha-2) in call-records reference docs. Co-Authored-By: Claude Opus 4.7 (1M context) * Drop redundant Olson/tz database aliases from timeZone wording The Wikipedia link we point to is already titled "List of tz database time zones", so readers who know the format by that name still find it via the link text. Matches the agenda.md precedent in this repo, which says "IANA time zone" without the alias list. Co-Authored-By: Claude Opus 4.7 (1M context) * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update team-put-schedule.md --------- Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update fileStorageContainer permission docs for alternate keys (#28916) * Update fileStorageContainer permission docs for alternate keys and add v1.0 get permissions topic * Update example header for permission retrieval * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @MSFT-Andrea * Update filestoragecontainer-get-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-delete-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-update-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Rename filestoragecontainer-get-permission-permissions.md to filestoragecontainer-get-permissions-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.FileServices.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Changelog fix. --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add reviewer delegation support for access reviews (beta) + merge main conflict resolution (#28838) * Update beta access review delegation docs Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2c320825-53af-40dd-8f42-ed52df5ae12d Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: clarify reviewer example scope Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2b4147b8-b521-4a17-a5da-ea987c630d6f Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * rephrasing to focus on “reviewer delegation support” and link only to the primary entry point(s) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * split this into two ChangeList items (same record Id) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix guid Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: reorder access review decision item properties Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/bfc67a32-3878-4761-a3e1-f45633867fa3 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: align access review example formatting Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2318bcb0-67e7-4003-b7c5-8a8861253004 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: remove partial tab groups from access review examples Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/159d921e-8a7e-4ace-b801-1dc77de9bcbc Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: add full tab scaffolding to new access review examples for consistency Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/3dfef0f6-7ffa-45e4-bac0-f35fce549486 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * Remove manually inserted code snippets Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: snippet-gen-pull-automation[bot] <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: lilealdai <118565463+lilealdai@users.noreply.github.com> Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot <198982749+Copilot@users.noreply.github.com> Co-authored-by: Helge Solheim Co-authored-by: Helge Solheim Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: milanevk Co-authored-by: shlipsey3 <66325782+shlipsey3@users.noreply.github.com> Co-authored-by: hareldamti <94783416+hareldamti@users.noreply.github.com> Co-authored-by: Harel Damti Co-authored-by: ashyasingh <74160572+ashyasingh@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: diadabal <105948420+diadabal@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Raul Fernandes Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * Update simulation-update.md for requirement around simuation state (#9936) * Update simulation-update.md for requirement around simuation state Clarified simulation state as draft as required and updated description. * Minor fixes --------- Co-authored-by: Faith Moraa Ombongi * Publish main to live - reconcile divergence 2026-06-17 Sets live content identical to main to clear the squash-induced divergence. No manual live hotfixes existed. * Reconcile live to main (unblock auto-publish #29094) (#29095) * Publish main to live - reconcile divergence (refresh 2026-06-17 18:25) Sets live content identical to current main. main is authoritative; no live-only hotfixes. * Update tenantappmanagementpolicy-get.md --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Merge to publish. (#29097) * Permissions tables update (#29044) * Update generated permissions tables with build 222443 * Update synchronization-synchronizationtemplate-get-permissions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Raise filestoragecontainer upsert limit to 40 (#29041) * Raise filestoragecontainer upsert limit to 40 * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Snippets Update (#29037) * Update generated files with build 222239 * Update backuprestoreroot-post-sharepointrestoresessions.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename Tenants governance IA labels (#29036) Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222221 (#29035) Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update cloud support status (#29031) * Update cloud support status * Update security-alert-post-manualalert.md --------- Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * 2026-06-08: Automated permissions reference update (#29029) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Add people data sources page (#29033) * Add people data sources page and TOC entry * minor * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update concepts/people-data-sources.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update profile property setting docs (#29032) * Update profile property setting docs * docs: address profile source precedence review feedback * docs: clarify profile property setting guidance * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update profilepriority-configure-profilepropertysetting.md * Update profilepriority-configure-profilepropertysetting.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update social-intel-concept-overview.md * Update whats-new-overview.md --------- Co-authored-by: Helge Solheim Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixed mentioning the least privileged role for tenant app management policies (#29024) * Revise RBAC notes for agent identity APIs (#28984) Updated important notes regarding agent identity blueprints and roles. * Add mdai service source to security alerts (#28897) * Add MDAI service source * fix name * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Harel Damti Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add conflictBehavior support to fileStorageContainer POST permissions (#28918) * Add conflictBehavior support to fileStorageContainer POST permissions Added @microsoft.graph.conflictBehavior annotation parameter to Create permission API for both beta and v1.0. Supports 'fail' (default, returns 409 Conflict) and 'replace' (updates existing role) values. - Updated beta and v1.0 POST permissions docs with path parameters, conflictBehavior details, and replace example - Added changelog entries for beta and v1.0 - Updated What's New for May 2026 * Fix dataLocation query parameter - remove incorrect $ prefix The $ prefix only applies to OData keywords like \, \, \. Custom query parameters like dataLocation should not have the prefix. * Fix validation issues - absolute links and broken references - Convert absolute learn.microsoft.com link to relative link in fileStorageContainer docs - Fix broken alertsv1-alertsv2-migration link to point to security-alert resource - Remove broken migrationMode enum link * Format conflictBehavior description - add space before parentheses * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-post-permissions.md * Update filestoragecontainer-post-permissions.md * Update api-reference/v1.0/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Update api-reference/beta/api/filestoragecontainer-post-permissions.md Co-authored-by: MSFT-Andrea * Clarify Example 1 as new permission creation Label the first sample as Example 1 and update request/response subheadings for consistency with Example 2 in beta and v1.0 docs. * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add behavioral guidance and hidden membership notes to checkMemberGroups (#28976) * docs: add behavioral guidance and hidden membership notes to checkMemberGroups Add IMPORTANT alert documenting single-request evaluation semantics and partial results behavior for access-restricted groups. Add NOTE about latency expectations. Add hidden membership permission requirements (Member.Read.Hidden for app-only, group membership for delegated). Applies to both v1.0 and beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add passwordSubmit member to authenticationEventType enum (beta) (#28973) * Add passwordSubmit member to authenticationEventType enum (beta) Documents the new `passwordSubmit` (value 6) member added to the `authenticationEventType` enum in the Microsoft.AAD.Reporting beta schema. This enables OnPasswordSubmit event listeners and custom authentication extension handlers (Reports > Identity and access reports). Files updated: - api-reference/beta/resources/enums.md - added passwordSubmit row - api-reference/beta/resources/appliedauthenticationeventlistener.md - updated eventType value lists - changelog/Microsoft.AAD.Reporting.json - added changelog entry to clear AGS PR 15884845 warning - concepts/whats-new-overview.md - announced in May 2026 What's New Related AGS PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/15884845 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update changelog/Microsoft.AAD.Reporting.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify IANA Time Zone Database format for schedule timeZone (#28734) * Clarify IANA Time Zone Database format for schedule timeZone Graph Shifts expects timeZone on a schedule to use the IANA Time Zone Database (also called the Olson database or tz database) format, e.g. America/Chicago. The existing property description just says "tz database format" which is easy to miss; the API page for PUT /teams/{id}/schedule doesn't mention it at all. - api-reference/{v1.0,beta}/resources/schedule.md: expand the timeZone property description with the full "IANA Time Zone Database" name and an example value. - api-reference/{v1.0,beta}/api/team-put-schedule.md: add a NOTE in the Request body section calling out the timeZone format requirement. Co-Authored-By: Claude Opus 4.7 (1M context) * Rework timeZone wording to be more actionable Feedback was that the previous wording ("must be specified in IANA Time Zone Database format...") is formal but doesn't actually tell a developer what to put. Rework to: - Use active voice ("Set timeZone to..." instead of "must be specified in"). - Show the Area/Location pattern via two examples (America/Chicago, Europe/London) instead of one. - Link to the canonical list on Wikipedia, matching the existing pattern already used for IANA time zones in concepts/toolkit/components/agenda.md and for other standards (E.164, ISO 4217, ISO 3166-1 alpha-2) in call-records reference docs. Co-Authored-By: Claude Opus 4.7 (1M context) * Drop redundant Olson/tz database aliases from timeZone wording The Wikipedia link we point to is already titled "List of tz database time zones", so readers who know the format by that name still find it via the link text. Matches the agenda.md precedent in this repo, which says "IANA time zone" without the alias list. Co-Authored-By: Claude Opus 4.7 (1M context) * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update whats-new-overview.md * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update team-put-schedule.md --------- Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update fileStorageContainer permission docs for alternate keys (#28916) * Update fileStorageContainer permission docs for alternate keys and add v1.0 get permissions topic * Update example header for permission retrieval * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestion from @MSFT-Andrea * Update filestoragecontainer-get-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-delete-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update filestoragecontainer-update-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Rename filestoragecontainer-get-permission-permissions.md to filestoragecontainer-get-permissions-permissions.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update Microsoft.FileServices.json * Update whats-new-overview.md * Apply suggestion from @MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Changelog fix. --------- Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add reviewer delegation support for access reviews (beta) + merge main conflict resolution (#28838) * Update beta access review delegation docs Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2c320825-53af-40dd-8f42-ed52df5ae12d Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: clarify reviewer example scope Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2b4147b8-b521-4a17-a5da-ea987c630d6f Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> * rephrasing to focus on “reviewer delegation support” and link only to the primary entry point(s) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * split this into two ChangeList items (same record Id) Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix guid Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * docs: reorder access review decision item properties Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/bfc67a32-3878-4761-a3e1-f45633867fa3 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: align access review example formatting Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/2318bcb0-67e7-4003-b7c5-8a8861253004 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: remove partial tab groups from access review examples Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/159d921e-8a7e-4ace-b801-1dc77de9bcbc Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * docs: add full tab scaffolding to new access review examples for consistency Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/3dfef0f6-7ffa-45e4-bac0-f35fce549486 Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> * Remove manually inserted code snippets Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC (#29058) Co-authored-by: Microsoft Graph DevX Tooling * Update profilePropertySetting docs (#29038) * Updated according to KnutB's spec * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update peopleadminsettings-list-profilepropertysettings.md * Update profilepropertysetting.md * Move extended Delete description from resource table to API topic * Apply suggestion from @MSFT-Andrea * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Helge Solheim Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update generated permissions tables with build 222741 (#29057) Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 222558 (#29051) Co-authored-by: Microsoft Graph DevX Tooling * Revise traceRouteHop availability in callRecord docs (#29055) * Revise traceRouteHop availability in callRecord docs * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update whats-new-overview.md (#29010) * Update whats-new-overview.md * Update whats-new-overview.md --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update pull request template to remove documentation plan requirement (#29069) Removed the requirement to attach the documentation plan for AI-assisted docs authoring. * 2026-06-15: Automated permissions reference update (#29068) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 222982 (#29067) Co-authored-by: Microsoft Graph DevX Tooling * Update whats-new-overview.md (#29064) * Update whats-new-overview.md * Update whats-new-overview.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add tenantId property to userAccount resource (#28845) * Add tenantId field to security user account resource Added tenantId field to user account resource details. * Update userAccount resource date and add tenantId * Update date for security userAccount resource * Update changelog with new API changes Added new changelog entries for tenantId and categories properties in userAccount resource. * Apply review suggestions: update changelog dates and add What's New entry for tenantId on userAccount * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi * Apply suggestions from code review Co-authored-by: Faith Moraa Ombongi --------- Co-authored-by: Faith Moraa Ombongi Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Add mergeIncidents and moveAlerts v1.0 API docs (#28851) * Add mergeIncidents and moveAlerts v1.0 API docs Add v1.0 documentation for security action endpoints: - API pages: security-incident-mergeincidents.md, security-alert-movealerts.md - Resource pages: security-mergeresponse.md, security-correlationreason.md - Permission and RBAC include files - Update security-incident.md and security-alert.md Methods tables - Update v1.0 toc.mapping.json with new complex types - Add v1.0 changelog entries for all new artifacts Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Fix comments * Apply suggestion from @FaithOmbongi * Update what's new --------- Co-authored-by: Harel Damti Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi * Update reference TOC (#29071) Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 228331 (#29348) Co-authored-by: Microsoft Graph DevX Tooling * 2026-07-27: Automated permissions reference update (#29347) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Bump microsoftgraph/eol-blocker from 1.0.14 to 1.0.15 (#29353) Bumps [microsoftgraph/eol-blocker](https://github.com/microsoftgraph/eol-blocker) from 1.0.14 to 1.0.15. - [Release notes](https://github.com/microsoftgraph/eol-blocker/releases) - [Commits](https://github.com/microsoftgraph/eol-blocker/compare/v1.0.14...v1.0.15) --- updated-dependencies: - dependency-name: microsoftgraph/eol-blocker dependency-version: 1.0.15 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * Bump actions/checkout from 6 to 7 (#29351) Bumps [actions/checkout](https://github.com/actions/checkout) from 6 to 7. - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](https://github.com/actions/checkout/compare/v6...v7) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: '7' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * Bump actions/setup-dotnet from 5 to 6 (#29352) Bumps [actions/setup-dotnet](https://github.com/actions/setup-dotnet) from 5 to 6. - [Release notes](https://github.com/actions/setup-dotnet/releases) - [Commits](https://github.com/actions/setup-dotnet/compare/v5...v6) --- updated-dependencies: - dependency-name: actions/setup-dotnet dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * Add eDiscovery legalHold enablePolicy and disablePolicy actions (beta) (#29138) * Add eDiscovery legalHold enablePolicy and disablePolicy beta docs Document the enablePolicy and disablePolicy actions on ediscoveryHoldPolicy (beta), update the resource Methods table, changelog, and What's New. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Refine enablePolicy/disablePolicy descriptions to remove custodian/noncustodial wording Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Address eDiscovery docs PR comments Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Address What’s New broken link comment Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Address non-blocking eDiscovery review comments Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Normalize eDiscovery API page dates Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Fix eDiscovery changelog invalid method links Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Move eDiscovery What’s New entry to July Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Omkar Vedak Co-authored-by: Reeza Ali <223746809+ReezaAli149@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba * Users/mea/support custom emoji api (#29047) * random commit * doc changes for custom emoji api * fix errors * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update customemojifromidentityset.md * fix errors * fix errors * fix errors * Update teamwork.md * Update teamworkmessaging.md * Apply suggestions from code review Co-authored-by: MSFT-Andrea * address comments * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update reference TOC * address comments * fix errors * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: MSFT-Andrea Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling * New beta and v1 documentation for remotetenantgroups (#29256) * Add remoteTenantGroup resource and related methods to directory API - Introduced remoteTenantGroup resource type with properties and methods. - Added List and Get methods for remoteTenantGroup in both beta and v1.0 APIs. - Updated directory resource documentation to include remoteTenantGroups. - Updated permissions files for new remoteTenantGroup API. - Updated changelog and what's new overview for July 2026. * Update remoteTenantGroup docs with links and clearer description Clarify remoteTenantGroup semantics for partner/governing tenants and add an explicit resource link from the list API description. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Fix API Doctor validation errors in remoteTenantGroup resource docs - Fix openType field: change from string 'id' to boolean false in JSON schema metadata - Fix broken link: correct typo in governance relationship resource link (tenantgovernancesservices -> tenantgovernanceservices) - Applies to both beta and v1.0 resource files Resolves API Doctor errors: - Unable to parse code block metadata - Could not convert string to boolean: id - FileNotFound for governance relationship link - Unable to locate remoteTenantGroup definition Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update v1.0 remoteTenantGroup governance link to point to beta resource Change governance relationship link in v1.0 remoteTenantGroup resource to point to the beta API docs (../../beta/resources/...) since the governance relationship resource only exists in beta. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update author field from hafowler_microsoft to hafowler * Remove beta governance link from v1.0 remoteTenantGroup description Remove reference to tenantgovernanceservices-governancerelationship (beta-only resource) from the v1.0 remoteTenantGroup resource description to comply with doc set validation rules. Keep reference to delegatedadminrelationship which exists in v1.0. * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix malformed changelog JSON structure Repair object boundaries and ChangeList wrapper in Microsoft.DirectoryServices changelog so the file parses as valid JSON in validation. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * fix invalid changelog links * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Updated doc. * Update reference TOC * Address remote tenant group review feedback Complete beta and v1.0 changelog coverage, correct the preview timestamp, and add properly ordered What's New entries. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2c84644e-9eac-4852-8b71-4fe72d27dcf6 * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * fix --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Copilot-Session: 2c84644e-9eac-4852-8b71-4fe72d27dcf6 * Add Microsoft apps file storage container usage reporting APIs (#29160) * Add Microsoft apps file storage container usage reporting APIs * Fix changelog Cloud property: Prod -> prd * Remove preserve-view parameter from changelog URLs * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Correcting the ChangedApiName Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add new usage complex types to TOC mapping * resolving comments * Removing unnecessary section Removed the section on managing SharePoint API usage report metrics, including resource type and related methods. * Fix API Doctor validation: add @odata.type to response examples in microsoftAppsFileStorageContainerUsageSummary * updating toc * updating toc * updating md file * Fix formatting in toc.mapping.json * Removing formatting changes * Fix formatting in toc.mapping.json for Maps section * Fix formatting in toc.mapping.json * Fix formatting of resources in toc.mapping.json * updating md file * updating md file * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * minor updates * Fix alphabetical order of H3 sections in What's New * Remove entries from generated toc.yml (DO NOT EDIT file) * Remove complex type entries from generated toc.yml (DO NOT EDIT file) * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Applying formatting fixes Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix API Doctor validation errors in getMicrosoftAppsFileStorageContainerUsageSummary examples * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix microsoftAppsFileStorageContainerAppUsage as entity/resource type * Align microsoftAppsFileStorageContainerGeoUsage as resource type * Fix: move usageByDataLocation from Relationships to Properties * Restore usageByDataLocation relationship documentation * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC * added missing changelog entries * modified changelog' * Fix broken link in changelog: restore correct getMicrosoftAppsFileStorageContainerUsageSummary URL * modified changelog' * Fix changelog: use microsoftAppsFileStorageContainerUsageSummary as ChangedApiName * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * fix: correct malformed changelog JSON entry * fixes --------- Co-authored-by: anjkumari Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling * Update reference TOC (#29357) Co-authored-by: Microsoft Graph DevX Tooling * Update generated files with build 228651 (#29356) Co-authored-by: Microsoft Graph DevX Tooling * Update generated permissions tables with build 228628 (#29355) Co-authored-by: Microsoft Graph DevX Tooling * Mark displayName and description as required for beta create externalOriginResourceConnector (#29334) * Mark displayName and description as required for beta create externalOriginResourceConnector Update the beta 'Create externalOriginResourceConnector' doc to mark displayName and description as required, matching the schema change (Nullable=false) and the enforced API validation that rejects null or empty values on create. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 * Potential fix for pull request finding Done Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: v-kumapanka Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 * Document Tenant Governance related tenant beta updates (#29267) * Document Tenant Governance related tenant beta updates - Add isMicrosoftInfrastructure property to relatedTenant resource - Add investigationActionStep and investigationActionUrl resource types - Add investigationHints relationship to the four related tenant metrics resources - Update changelog and What's New Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Document nested $expand requirement for investigationHints The investigationHints collection is returned only when requested via nested $expand (for example $expand=b2BRegistrationMetrics(=investigationHints)), per the API review proposal. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Expand descriptions for investigationActionStep and investigationActionUrl Add detail to the resource and property descriptions based on the API review proposal, including the recommendations pattern, step ordering, displayName directive format, and url template placeholder behavior. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Address PR review feedback - Move What's New entry to 'New in preview only' (beta-only) and rewrite as capability bullets; rename heading to 'Related tenants | Tenant governance' and keep H3 headings alphabetical. - Apply reviewer-suggested changelog CreatedDateTime values. - Document nested \\\ support and add an investigationHints example on the relatedTenant resource. - Add investigationActionStep and investigationActionUrl to the beta TOC under the Tenant governance complexTypes node. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * fixes. * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix What's New H3 heading: rename and reposition Tenants | Tenant governance * Updates. * Update * Fixes. * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Rename investigationActionStep/Url to actionStep/actionUrl to match prod beta schema The published beta metadata (graph.microsoft.com/beta/$metadata) exposes these tenantGovernanceServices types as actionStep and actionUrl, not investigationActionStep/investigationActionUrl. Align the docs (resource pages, metrics references, related tenant, TOC mapping, and changelog) with the shipped type names so the generated reference links resolve. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 31ffca83-d180-4175-bc31-653b9b0c3ce9 * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC * fix --------- Co-authored-by: Akhil Potturi Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Copilot-Session: 31ffca83-d180-4175-bc31-653b9b0c3ce9 * Add transferPrincipalOwnership action to fileStorageContainer (beta) (#29135) * Add transferPrincipalOwnership action to fileStorageContainer (beta) - Add new API method: filestoragecontainer-transferprincipalownership - Add permissions include file - Update fileStorageContainer Methods table - Update changelog (Microsoft.FileServices.json) - Update What's New for June 2026 * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * updating toc * updating the md file * Minor update. * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fixing the cloud availability section Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix June 2026 What's New heading order * Removing the manual entry Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix changelog ordering for FileServices entry * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix invalid JSON in changelog/Microsoft.FileServices.json caused by bad merge * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC * Fix malformed FileServices changelog JSON * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: anjkumari Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling * Add snapshotResetMode property to cloudPcProvisioningPolicy beta documentation (#28954) * Add snapshotResetMode to Cloud PC provisioning policy docs * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Fix review feedback: table intro text, Optional. formatting, add changelog and What's New Agent-Logs-Url: https://github.com/microsoftgraph/microsoft-graph-docs/sessions/8c5a44d0-3919-416b-a54b-74c897d08ca5 Co-authored-by: xintaoz-MS <287594766+xintaoz-MS@users.noreply.github.com> * Mark each property as Required./Optional. in create provisioning policy tables (beta + v1.0) * Address PR review feedback in changelog and v1.0 docs * Update intro text to clarify request body table is not exhaustive * Fix changelog record indentation alignment * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * fix * fix --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update generated permissions tables with build 229009 (#29364) Co-authored-by: Microsoft Graph DevX Tooling * Adjust delivery latency for driveItem and list (#29359) Updated delivery latency for driveItem and list notifications to reflect new 6-hour limits. * Promote item and listItem permissions to v1.0 (#29025) * Address comments * Address comments * Fix whats-new-overview.d * Fix changelog * Update reference TOC * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: tmarwendo Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * docs: add case type configuration API reference (beta) (#29309) * docs: add case type configuration API reference (beta) Adds beta API reference for the case management type-configuration discovery surface (statuses and custom fields) under microsoft.graph.security.caseManagement. Source schema PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/16360307 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f * docs: correct query params on caseTypeConfigurations root nav The root caseTypeConfigurations navigation only annotates SelectSupport and CountRestrictions in the CSDL (no Filterable/Sortable/Top/Skip), unlike the customFields/statuses navs. Limit documented query params to \ and \. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f * docs: add changelog and What's New entries for case type configuration Adds a changelog record (9 additions: caseTypeConfigurations relationship + 8 resource types) and a Security | Case management What's New (preview) entry, matching the repo requirement that schema additions include both. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f * docs: address AI review feedback on case type configuration docs - Add \ to caseTypeConfiguration get/list query params and relationship descriptions (containment navs, no ExpandRestrictions in CSDL) - Fix statusDefinition get: 'properties and relationships' -> 'properties' (customStatuses is a complex-type property, not a relationship) - Move new changelog record to first position per repo authoring guidance - Set changelog SubArea to 'Case management' to match the What's New heading Kept customStatusDefinition in toc.mapping.json: complex types are included there per the existing merged convention for this workload (valueProperty, customFieldValue, etc.). Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f * docs: align example ids to GUID pseudo-values and clarify caseTypeConfigurations $expand - Use GUID-style example values for statusDefinition.id, customStatusId, customFieldDefinition.id, and defaultStatusId to match the approved API review; keep caseTypeConfiguration.id as the friendly case-type key. - Update single-GET request URLs to match the GUID keys. - Clarify the caseTypeConfigurations relationship supports \ of the statuses and customFields relationships. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f * docs: address content review feedback on case type configuration - Restore Bearer {token}. Authorization header value on 6 API pages - Make changelog record and ChangeList item ids unique; set CreatedDateTime to midnight UTC - Expand customStatuses inline complex type in statusDefinition JSON representation - Nest derived custom-field types under the base in TOC; drop inline customStatusDefinition from toc.yml and toc.mapping.json - Add \/\ callouts on filterable/sortable scalar properties of statusDefinition and customFieldDefinition Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 93481e9f-e15b-4b9f-a032-3ec79e3b1e4a * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f Copilot-Session: 93481e9f-e15b-4b9f-a032-3ec79e3b1e4a --------- Signed-off-by: dependabot[bot] Co-authored-by: snippet-gen-pull-automation[bot] <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Omkar Vedak <33565662+OmkarVedak@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Omkar Vedak Co-authored-by: Reeza Ali <223746809+ReezaAli149@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: mehakagarwal Co-authored-by: MSFT-Andrea Co-authored-by: Hannah Fowler <56096128+hafowler@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: learn-build-service-prod[bot] <113403604+learn-build-service-prod[bot]@users.noreply.github.com> Co-authored-by: 12Anjalikumari Co-authored-by: anjkumari Co-authored-by: v-kumapanka-microsoft Co-authored-by: v-kumapanka Co-authored-by: Akhil Potturi <207085874+akhil-potturi@users.noreply.github.com> Co-authored-by: Akhil Potturi Co-authored-by: xintaoz <287594766+xintaoz-MS@users.noreply.github.com> Co-authored-by: Chris Hackmann Co-authored-by: tmarwendo-microsoft <195011042+tmarwendo-microsoft@users.noreply.github.com> Co-authored-by: tmarwendo Co-authored-by: ms-noamlandress <63061287+NoamLandress@users.noreply.github.com> Co-authored-by: Jason Johnston Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba Copilot-Session: 2c84644e-9eac-4852-8b71-4fe72d27dcf6 Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 Copilot-Session: 31ffca83-d180-4175-bc31-653b9b0c3ce9 Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f Copilot-Session: 93481e9f-e15b-4b9f-a032-3ec79e3b1e4a * Update legacy alerts deprecation include dates (#10012) * Update beta legacy alerts deprecation date * Update v1.0 legacy alerts deprecation date * Resolve syncing conflicts from repo_sync_working_branch to main (#10011) * Delete API Doctor pipeline config (#29390) * Update security-auditrecordtypedictionary.md * Delete apidoctor.validation.yml * 2026-08-03: Automated permissions reference update (#29382) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling * Update Verified ID profile beta documentation (#29327) * Update Verified ID profile beta documentation * Address Verified ID documentation review feedback * Fix unpublished Verified ID changelog links * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fixes. * What's new * Update reference TOC * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address remaining Verified ID review comments * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Tim Larson Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> * Add resourceAccountKeyAuthenticationMethod to beta (#29283) * Add resourceAccountKeyAuthenticationMethod resource and operations for beta - Added resourceAccountKeyAuthenticationMethod resource type - Added List, Get, and Delete API operations - Updated authentication resource with resourceAccountKeyAuthenticationMethods relationship - Updated authenticationMethod base type with new derived type - Added permissions files for all three operations - Updated changelog and What's New - Updated TOC mapping * Resolve merge conflict in whats-new-overview.md * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Jane Xing <296623908+janexingms@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling * Clarify SharePoint Embedded sharing parameter support (#29392) Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: abd60c1b-0218-41c5-8db8-2a04993db572 * Update subscription-update.md with renewal guidance (#29326) * Update subscription-update.md with renewal guidance Added note about handling expired subscriptions and proactive renewal. * Update subscription-update.md with 404 handling note Added note about handling 404 Not Found response for subscriptions. * Revise 404 response note in subscription-update.md Updated note on 404 response for subscription updates. * Revise 404 response note in subscription-update.md Updated note on 404 response for subscription updates to include lifecycle notifications link. * Update note format for subscription update response * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Clarify 404 response handling for subscriptions Updated note on 404 response for subscription updates to clarify the need for creating a new subscription and added links to relevant documentation. * Fix link in 404 response note for subscriptions Updated the note about 404 response for subscriptions to include a link to the correct lifecycle notifications documentation. * Fix link to lifecycle notifications in subscription update Updated the lifecycle notifications link to the correct path. --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Planner Goals API docs (#29321) * Add Planner Goals API documentation Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Refine Planner Goals API documentation Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Correct Planner Goals documentation semantics Align goal defaults and relationship behavior with the service implementation, and preserve existing topic metadata. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Fix Planner Goals date examples Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Address Planner Goals review feedback Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Normalize Planner resource links Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Address Planner Goals documentation review Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Fix Planner Goals changelog link Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * Update reference TOC * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Jaden Stetler Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 * docs: document mailboxFolder wellKnownName in beta (#29280) * docs: document mailboxFolder wellKnownName in beta Adds the beta mailboxFolder property documentation, updates all mailboxFolder response examples, and adds the Exchange changelog and July 2026 preview entry. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 * docs: address Copilot review feedback Normalizes mailboxFolder delta response URLs and aligns the list-folders $select example with its response payload. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Cameron Parker (from Dev Box) Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 --------- Co-authored-by: Jason Johnston Co-authored-by: snippet-gen-pull-automation[bot] <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Tim Larson <50213291+tilarso@users.noreply.github.com> Co-authored-by: Tim Larson Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Akshat Goel <47198486+akgoel23@users.noreply.github.com> Co-authored-by: Jane Xing <296623908+janexingms@users.noreply.github.com> Co-authored-by: Dan Winter Co-authored-by: jessieli-ad Co-authored-by: Jaden Stetler <301517737+jadenstetler@users.noreply.github.com> Co-authored-by: Jaden Stetler Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: cparker-msft <4155756+cparker-msft@users.noreply.github.com> Co-authored-by: Cameron Parker (from Dev Box) Co-authored-by: learn-build-service-prod[bot] <113403604+learn-build-service-prod[bot]@users.noreply.github.com> Copilot-Session: abd60c1b-0218-41c5-8db8-2a04993db572 Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 * Replaced confirmedUserActivity with confirmedActivity across alertDetermination enum references (#10015) * Update security-alert-update.md * Update security-incident-update.md * Update security-incident-update.md * Update security-incident.md * Update security-incident.md * Update security-alert.md * Update security-alert.md * Fix example intro sentences beta (#10016) * docs: update api-reference/beta/api/accesspackage-delete-accesspackageresourcerolescopes.md * docs: update api-reference/beta/api/authenticationcontextclassreference-update.md * docs: update api-reference/beta/api/bookingbusiness-list-calendarview.md * docs: update api-reference/beta/api/certificatebasedauthconfiguration-delete.md * docs: update api-reference/beta/api/chart-delete.md * docs: update api-reference/beta/api/chart-image.md * docs: update api-reference/beta/api/chart-setdata.md * docs: update api-reference/beta/api/chart-setposition.md * docs: update api-reference/beta/api/chartcollection-add.md * docs: update api-reference/beta/api/chartcollection-itemat.md * docs: update api-reference/beta/api/chartfill-clear.md * docs: update api-reference/beta/api/chartfill-setsolidcolor.md * docs: update api-reference/beta/api/chartlineformat-clear.md * docs: update api-reference/beta/api/chartpointscollection-itemat.md * docs: update api-reference/beta/api/chartseriescollection-itemat.md * docs: update api-reference/beta/api/checklistitem-get.md * docs: update api-reference/beta/api/checklistitem-update.md * docs: update api-reference/beta/api/connector-list-memberof.md * docs: update api-reference/beta/api/connectorgroup-list.md * docs: update api-reference/beta/api/conversationthread-reply.md * docs: update api-reference/beta/api/directory-post-customsecurityattributedefinitions.md * docs: update api-reference/beta/api/directoryobject-delta.md * docs: update api-reference/beta/api/driveitem-delta.md * docs: update api-reference/beta/api/driveitem-list-versions.md * docs: update api-reference/beta/api/event-accept.md * docs: update api-reference/beta/api/event-cancel.md * docs: update api-reference/beta/api/event-decline.md * docs: update api-reference/beta/api/event-dismissreminder.md * docs: update api-reference/beta/api/event-forward.md * docs: update api-reference/beta/api/event-post-attachments.md * docs: update api-reference/beta/api/event-snoozereminder.md * docs: update api-reference/beta/api/event-tentativelyaccept.md * docs: update api-reference/beta/api/group-delta.md * docs: update api-reference/beta/api/group-get.md * docs: update api-reference/beta/api/identitycontainer-post-b2cuserflows.md * docs: update api-reference/beta/api/identityuserflow-get.md * docs: update api-reference/beta/api/listitem-create.md * docs: update api-reference/beta/api/listitem-update.md * docs: update api-reference/beta/api/mailfolder-copy.md * docs: update api-reference/beta/api/mailfolder-move.md * docs: update api-reference/beta/api/message-copy.md * docs: update api-reference/beta/api/message-move.md * docs: update api-reference/beta/api/message-post-attachments.md * docs: update api-reference/beta/api/message-send.md * docs: update api-reference/beta/api/message-unsubscribe.md * docs: update api-reference/beta/api/nameditem-add.md * docs: update api-reference/beta/api/nameditem-addformulalocal.md * docs: update api-reference/beta/api/nameditem-range.md * docs: update api-reference/beta/api/networkaccess-conditionalaccesssettings-get.md * docs: update api-reference/beta/api/notebook-copynotebook.md * docs: update api-reference/beta/api/notifications-post.md * docs: update api-reference/beta/api/orgcontact-delta.md * docs: update api-reference/beta/api/outlooktask-post-attachments.md * docs: update api-reference/beta/api/outlookuser-supportedlanguages.md * docs: update api-reference/beta/api/personname-update.md * docs: update api-reference/beta/api/post-forward.md * docs: update api-reference/beta/api/post-reply.md * docs: update api-reference/beta/api/printershare-get.md * docs: update api-reference/beta/api/profile-list-accounts.md * docs: update api-reference/beta/api/profile-list-educationalactivities.md * docs: update api-reference/beta/api/profile-list-interests.md * docs: update api-reference/beta/api/profile-list-languages.md * docs: update api-reference/beta/api/profile-list-names.md * docs: update api-reference/beta/api/profile-list-positions.md * docs: update api-reference/beta/api/profile-list-projects.md * docs: update api-reference/beta/api/profile-list-skills.md * docs: update api-reference/beta/api/profile-list-webaccounts.md * docs: update api-reference/beta/api/profile-list-websites.md * docs: update api-reference/beta/api/projectrome-get-recent-activities.md * docs: update api-reference/beta/api/publishedresource-update.md * docs: update api-reference/beta/api/range-boundingrect.md * docs: update api-reference/beta/api/range-cell.md * docs: update api-reference/beta/api/range-clear.md * docs: update api-reference/beta/api/range-column.md * docs: update api-reference/beta/api/range-delete.md * docs: update api-reference/beta/api/range-entirecolumn.md * docs: update api-reference/beta/api/range-entirerow.md * docs: update api-reference/beta/api/range-insert.md * docs: update api-reference/beta/api/range-intersection.md * docs: update api-reference/beta/api/range-lastcell.md * docs: update api-reference/beta/api/range-lastcolumn.md * docs: update api-reference/beta/api/range-lastrow.md * docs: update api-reference/beta/api/range-merge.md * docs: update api-reference/beta/api/range-offsetrange.md * docs: update api-reference/beta/api/range-row.md * docs: update api-reference/beta/api/range-usedrange.md * docs: update api-reference/beta/api/rangebordercollection-itemat.md * docs: update api-reference/beta/api/rangefill-clear.md * docs: update api-reference/beta/api/rangeformat-autofitcolumns.md * docs: update api-reference/beta/api/rangeformat-autofitrows.md * docs: update api-reference/beta/api/rangesort-apply.md * docs: update api-reference/beta/api/reportroot-getazureadapplicationsigninsummary.md * docs: update api-reference/beta/api/reportroot-getbrowserdistributionusercounts.md * docs: update api-reference/beta/api/reportroot-getbrowserusercounts.md * docs: update api-reference/beta/api/reportroot-getformsuseractivityuserdetail.md * docs: update api-reference/beta/api/reportroot-getoffice365groupsactivitydetail.md * docs: update api-reference/beta/api/reportroot-getoffice365servicesusercounts.md * docs: update api-reference/beta/api/reportroot-getsharepointsiteusagedetail.md * docs: update api-reference/beta/api/reportroot-getteamsuseractivitytotaldistributioncounts.md * docs: update api-reference/beta/api/schedule-share.md * docs: update api-reference/beta/api/schemaextension-get.md * docs: update api-reference/beta/api/section-copytonotebook.md * docs: update api-reference/beta/api/section-copytosectiongroup.md * docs: update api-reference/beta/api/security-emailthreatsubmission-get.md * docs: update api-reference/beta/api/security-emailthreatsubmissionpolicy-get.md * docs: update api-reference/beta/api/serviceprincipal-delete-delegatedpermissionclassifications.md * docs: update api-reference/beta/api/servicestoragequotabreakdown-get.md * docs: update api-reference/beta/api/synchronization-synchronization-list-templates.md * docs: update api-reference/beta/api/synchronization-synchronizationjob-pause.md * docs: update api-reference/beta/api/table-clearfilters.md * docs: update api-reference/beta/api/table-converttorange.md * docs: update api-reference/beta/api/table-databodyrange.md * docs: update api-reference/beta/api/table-delete.md * docs: update api-reference/beta/api/table-headerrowrange.md * docs: update api-reference/beta/api/table-post-rows.md * docs: update api-reference/beta/api/table-reapplyfilters.md * docs: update api-reference/beta/api/table-totalrowrange.md * docs: update api-reference/beta/api/tablecollection-add.md * docs: update api-reference/beta/api/tablecolumn-databodyrange.md * docs: update api-reference/beta/api/tablecolumn-delete.md * docs: update api-reference/beta/api/tablecolumn-headerrowrange.md * docs: update api-reference/beta/api/tablecolumn-range.md * docs: update api-reference/beta/api/tablecolumn-totalrowrange.md * docs: update api-reference/beta/api/tablecolumncollection-add.md * docs: update api-reference/beta/api/tablecolumncollection-itemat.md * docs: update api-reference/beta/api/tablerow-delete.md * docs: update api-reference/beta/api/tablerow-range.md * docs: update api-reference/beta/api/tablerowcollection-itemat.md * docs: update api-reference/beta/api/tablesort-apply.md * docs: update api-reference/beta/api/tablesort-clear.md * docs: update api-reference/beta/api/tablesort-reapply.md * docs: update api-reference/beta/api/team-completemigration.md * docs: update api-reference/beta/api/team-post.md * docs: update api-reference/beta/api/tiindicators-list.md * docs: update api-reference/beta/api/unifiedstoragequota-list-services.md * docs: update api-reference/beta/api/user-delta.md * docs: update api-reference/beta/api/user-findmeetingtimes.md * docs: update api-reference/beta/api/user-post-notifications.md * docs: update api-reference/beta/api/user-reminderview.md * docs: update api-reference/beta/api/usersettings-update.md * docs: update api-reference/beta/api/workbookpivottable-refresh.md * docs: update api-reference/beta/api/workbookpivottable-refreshall.md * docs: update api-reference/beta/api/workbookrange-columnsafter.md * docs: update api-reference/beta/api/workbookrange-columnsbefore.md * docs: update api-reference/beta/api/workbookrange-rowsabove.md * docs: update api-reference/beta/api/workbookrange-rowsbelow.md * docs: update api-reference/beta/api/workbookrange-visibleview.md * docs: update api-reference/beta/api/workbookrangeview-itemat.md * docs: update api-reference/beta/api/workbookrangeview-range.md * docs: update api-reference/beta/api/workforceintegration-update.md * docs: update api-reference/beta/api/worksheet-cell.md * docs: update api-reference/beta/api/worksheet-delete.md * docs: update api-reference/beta/api/worksheet-range.md * docs: update api-reference/beta/api/worksheet-usedrange.md * docs: update api-reference/beta/api/worksheetprotection-protect.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update tiindicators-list.md --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Signed-off-by: dependabot[bot] Co-authored-by: Jarbas Horst <26866873+JarbasHorst@users.noreply.github.com> Co-authored-by: Learn Build Service GitHub App Co-authored-by: Vipul <84970543+VipulMSFT@users.noreply.github.com> Co-authored-by: Faith Moraa Ombongi Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Nick Robinson Co-authored-by: learn-build-service-prod[bot] <113403604+learn-build-service-prod[bot]@users.noreply.github.com> Co-authored-by: snippet-gen-pull-automation[bot] <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: lilealdai <118565463+lilealdai@users.noreply.github.com> Co-authored-by: Li Dai Co-authored-by: MSFT-Andrea Co-authored-by: Copilot <198982749+Copilot@users.noreply.github.com> Co-authored-by: Helge Solheim Co-authored-by: Helge Solheim Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: milanevk Co-authored-by: shlipsey3 <66325782+shlipsey3@users.noreply.github.com> Co-authored-by: hareldamti <94783416+hareldamti@users.noreply.github.com> Co-authored-by: Harel Damti Co-authored-by: ashyasingh <74160572+ashyasingh@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: diadabal <105948420+diadabal@users.noreply.github.com> Co-authored-by: Raul Fernandes Co-authored-by: NORTHAMERICA\raulfer Co-authored-by: Claude Opus 4.7 (1M context) Co-authored-by: corey284 <281061362+corey284@users.noreply.github.com> Co-authored-by: FaithOmbongi <14026935+FaithOmbongi@users.noreply.github.com> Co-authored-by: Shlomo Sagir <51323195+shsagir@users.noreply.github.com> Co-authored-by: Matthew M. Co-authored-by: Yuvalabiri <154335961+Yuvalabiri@users.noreply.github.com> Co-authored-by: Ruth Waithera Co-authored-by: Jarbas Horst Co-authored-by: Jarbas Horst Co-authored-by: Ryutaro Koma Co-authored-by: Micah Warren <26724012+MicahWW@users.noreply.github.com> Co-authored-by: masonw1211 <31712004+masonw1211@users.noreply.github.com> Co-authored-by: Mason Wolff Co-authored-by: srinivaspadala-msft Co-authored-by: Anton Vanco <254866915+antonvano@users.noreply.github.com> Co-authored-by: Copilot Co-authored-by: Samuel Mwangi Co-authored-by: Samuel Mwangi (from Dev Box) Co-authored-by: Kimani Mwangi Co-authored-by: Hiro7 <75809971+garchiro7@users.noreply.github.com> Co-authored-by: Simran Moolchandaney <66736756+simoolchandaney@users.noreply.github.com> Co-authored-by: Simran Moolchandaney (from Dev Box) Co-authored-by: Jason Johnston Co-authored-by: myra-ramdenbourg <108485108+myra-ramdenbourg@users.noreply.github.com> Co-authored-by: Alexander Filipin Co-authored-by: Alexander Filipin Co-authored-by: Eunice Waweru <73849846+msewaweru@users.noreply.github.com> Co-authored-by: Ortagus Winfrey <85191667+OWinfreyATL@users.noreply.github.com> Co-authored-by: prasadpatil111 <284865846+prasadpatil111@users.noreply.github.com> Co-authored-by: Prasad Patil Co-authored-by: VISHNU VARDHAN PACHVA <67050501+Vishnu369@users.noreply.github.com> Co-authored-by: Vishnu Vardhan Pachva Co-authored-by: Reeza Ali <223746809+ReezaAli149@users.noreply.github.com> Co-authored-by: Yossi Bruss <287477490+yossibruss-ms@users.noreply.github.com> Co-authored-by: Yossi Bruss Co-authored-by: Yossi Bruss Co-authored-by: aditiijj Co-authored-by: Aditi Jain Co-authored-by: aditiijj <232662544+aditiijj@users.noreply.github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Martin Machacek Co-authored-by: danny1718 Co-authored-by: Danni Zhao Co-authored-by: angiechen22 <111081743+angiechen22@users.noreply.github.com> Co-authored-by: Daniela Bonilla Montero <92937694+Danielabom@users.noreply.github.com> Co-authored-by: Daniela Bonilla Montero Co-authored-by: araqueno Co-authored-by: araqueno <118419398+araqueno@users.noreply.github.com> Co-authored-by: Ch@ps <61343268+Subham-RKB@users.noreply.github.com> Co-authored-by: schapagain Co-authored-by: ireneren0123 Co-authored-by: Irene Ren Co-authored-by: Nnachtomy Co-authored-by: Nnachtomy <258772109+Nnachtomy@users.noreply.github.com> Co-authored-by: Amar Koni <160498064+akgraph@users.noreply.github.com> Co-authored-by: Amar Koni (from Dev Box) Co-authored-by: Luca Spolidoro [MSFT] Co-authored-by: egreenberg14 <140207119+egreenberg14@users.noreply.github.com> Co-authored-by: Hana Kim <216798255+hanki71@users.noreply.github.com> Co-authored-by: lasharma6199068 <278895872+lasharma6199068@users.noreply.github.com> Co-authored-by: Lavanya Sharma Co-authored-by: bala5765 Co-authored-by: wanggang-microsoft Co-authored-by: ebasseri <39064520+ebasseri@users.noreply.github.com> Co-authored-by: Sanjoyan <46829904+SanjoyanM@users.noreply.github.com> Co-authored-by: Diego Luces Co-authored-by: mbhargav9 <173299643+mbhargav9@users.noreply.github.com> Co-authored-by: Prateek Taneja <46925972+prtanej@users.noreply.github.com> Co-authored-by: alexcotsalas <116087923+alexcotsalas@users.noreply.github.com> Co-authored-by: Omkar Vedak <33565662+OmkarVedak@users.noreply.github.com> Co-authored-by: Omkar Vedak Co-authored-by: mehakagarwal Co-authored-by: Hannah Fowler <56096128+hafowler@users.noreply.github.com> Co-authored-by: 12Anjalikumari Co-authored-by: anjkumari Co-authored-by: v-kumapanka-microsoft Co-authored-by: v-kumapanka Co-authored-by: Akhil Potturi <207085874+akhil-potturi@users.noreply.github.com> Co-authored-by: Akhil Potturi Co-authored-by: xintaoz <287594766+xintaoz-MS@users.noreply.github.com> Co-authored-by: Chris Hackmann Co-authored-by: tmarwendo-microsoft <195011042+tmarwendo-microsoft@users.noreply.github.com> Co-authored-by: tmarwendo Co-authored-by: ms-noamlandress <63061287+NoamLandress@users.noreply.github.com> Co-authored-by: Mor Moverman <312480154+mormov@users.noreply.github.com> Co-authored-by: Tim Larson <50213291+tilarso@users.noreply.github.com> Co-authored-by: Tim Larson Co-authored-by: Akshat Goel <47198486+akgoel23@users.noreply.github.com> Co-authored-by: Jane Xing <296623908+janexingms@users.noreply.github.com> Co-authored-by: Dan Winter Co-authored-by: jessieli-ad Co-authored-by: Jaden Stetler <301517737+jadenstetler@users.noreply.github.com> Co-authored-by: Jaden Stetler Co-authored-by: cparker-msft <4155756+cparker-msft@users.noreply.github.com> Co-authored-by: Cameron Parker (from Dev Box) Copilot-Session: 06e09f9c-858b-4c3b-92f8-981e8e5878ba Copilot-Session: 2c84644e-9eac-4852-8b71-4fe72d27dcf6 Copilot-Session: 6efff4f3-ad8e-4e8f-9c4d-bbefd6b14d90 Copilot-Session: 31ffca83-d180-4175-bc31-653b9b0c3ce9 Copilot-Session: a9b8f5f4-dfa4-4574-9fc2-d0673fdd963f Copilot-Session: 93481e9f-e15b-4b9f-a032-3ec79e3b1e4a Copilot-Session: abd60c1b-0218-41c5-8db8-2a04993db572 Copilot-Session: dd5093a7-acb7-4175-a0bc-ed8776d80937 Copilot-Session: eb8c0708-334d-4b2e-b314-f7e409dae4c8 --- ...-delete-accesspackageresourcerolescopes.md | 4 +- ...resourceaccountkeyauthenticationmethods.md | 25 ------- ...henticationcontextclassreference-update.md | 4 +- .../api/bookingbusiness-list-calendarview.md | 6 +- ...ertificatebasedauthconfiguration-delete.md | 4 +- api-reference/beta/api/chart-delete.md | 4 +- api-reference/beta/api/chart-image.md | 2 +- api-reference/beta/api/chart-setdata.md | 4 +- api-reference/beta/api/chart-setposition.md | 2 +- api-reference/beta/api/chartcollection-add.md | 2 +- .../beta/api/chartcollection-itemat.md | 2 +- api-reference/beta/api/chartfill-clear.md | 2 +- .../beta/api/chartfill-setsolidcolor.md | 2 +- .../beta/api/chartlineformat-clear.md | 2 +- .../beta/api/chartpointscollection-itemat.md | 2 +- .../beta/api/chartseriescollection-itemat.md | 2 +- api-reference/beta/api/checklistitem-get.md | 4 +- .../beta/api/checklistitem-update.md | 4 +- .../beta/api/connector-list-memberof.md | 6 +- api-reference/beta/api/connectorgroup-list.md | 6 +- .../beta/api/conversationthread-reply.md | 2 +- ...post-customsecurityattributedefinitions.md | 2 +- .../beta/api/directoryobject-delta.md | 8 +-- api-reference/beta/api/driveitem-delta.md | 4 +- .../beta/api/driveitem-list-versions.md | 4 +- api-reference/beta/api/event-accept.md | 2 +- api-reference/beta/api/event-cancel.md | 2 +- api-reference/beta/api/event-decline.md | 2 +- .../beta/api/event-dismissreminder.md | 2 +- api-reference/beta/api/event-forward.md | 2 +- .../beta/api/event-post-attachments.md | 4 +- .../beta/api/event-snoozereminder.md | 2 +- .../beta/api/event-tentativelyaccept.md | 2 +- api-reference/beta/api/group-delta.md | 6 +- api-reference/beta/api/group-get.md | 8 +-- .../identitycontainer-post-b2cuserflows.md | 12 ++-- .../beta/api/identityuserflow-get.md | 4 +- api-reference/beta/api/listitem-create.md | 2 +- api-reference/beta/api/listitem-update.md | 2 +- api-reference/beta/api/mailfolder-copy.md | 2 +- api-reference/beta/api/mailfolder-move.md | 2 +- api-reference/beta/api/message-copy.md | 2 +- api-reference/beta/api/message-move.md | 2 +- .../beta/api/message-post-attachments.md | 2 +- api-reference/beta/api/message-send.md | 2 +- api-reference/beta/api/message-unsubscribe.md | 2 +- api-reference/beta/api/nameditem-add.md | 2 +- .../beta/api/nameditem-addformulalocal.md | 2 +- api-reference/beta/api/nameditem-range.md | 2 +- ...orkaccess-conditionalaccesssettings-get.md | 4 +- .../beta/api/notebook-copynotebook.md | 2 +- api-reference/beta/api/notifications-post.md | 2 +- api-reference/beta/api/orgcontact-delta.md | 6 +- .../beta/api/outlooktask-post-attachments.md | 2 +- .../api/outlookuser-supportedlanguages.md | 2 +- api-reference/beta/api/personname-update.md | 4 +- api-reference/beta/api/plannergoal-get.md | 25 ------- .../beta/api/plannerplan-list-goals.md | 24 ------- api-reference/beta/api/post-forward.md | 2 +- api-reference/beta/api/post-reply.md | 2 +- api-reference/beta/api/printershare-get.md | 3 +- .../beta/api/profile-list-accounts.md | 4 +- .../api/profile-list-educationalactivities.md | 4 +- .../beta/api/profile-list-interests.md | 4 +- .../beta/api/profile-list-languages.md | 4 +- api-reference/beta/api/profile-list-names.md | 4 +- .../beta/api/profile-list-positions.md | 4 +- .../beta/api/profile-list-projects.md | 4 +- api-reference/beta/api/profile-list-skills.md | 4 +- .../beta/api/profile-list-webaccounts.md | 4 +- .../beta/api/profile-list-websites.md | 4 +- .../api/projectrome-get-recent-activities.md | 4 +- .../beta/api/publishedresource-update.md | 4 +- api-reference/beta/api/range-boundingrect.md | 2 +- api-reference/beta/api/range-cell.md | 2 +- api-reference/beta/api/range-clear.md | 2 +- api-reference/beta/api/range-column.md | 2 +- api-reference/beta/api/range-delete.md | 4 +- api-reference/beta/api/range-entirecolumn.md | 2 +- api-reference/beta/api/range-entirerow.md | 2 +- api-reference/beta/api/range-insert.md | 2 +- api-reference/beta/api/range-intersection.md | 2 +- api-reference/beta/api/range-lastcell.md | 2 +- api-reference/beta/api/range-lastcolumn.md | 2 +- api-reference/beta/api/range-lastrow.md | 2 +- api-reference/beta/api/range-merge.md | 2 +- api-reference/beta/api/range-offsetrange.md | 2 +- api-reference/beta/api/range-row.md | 2 +- api-reference/beta/api/range-usedrange.md | 2 +- .../beta/api/rangebordercollection-itemat.md | 2 +- api-reference/beta/api/rangefill-clear.md | 2 +- .../beta/api/rangeformat-autofitcolumns.md | 2 +- .../beta/api/rangeformat-autofitrows.md | 2 +- api-reference/beta/api/rangesort-apply.md | 2 +- ...root-getazureadapplicationsigninsummary.md | 4 +- ...rtroot-getbrowserdistributionusercounts.md | 8 +-- .../api/reportroot-getbrowserusercounts.md | 8 +-- ...portroot-getformsuseractivityuserdetail.md | 8 +-- ...rtroot-getoffice365groupsactivitydetail.md | 8 +-- ...portroot-getoffice365servicesusercounts.md | 8 +-- ...reportroot-getsharepointsiteusagedetail.md | 8 +-- ...eamsuseractivitytotaldistributioncounts.md | 8 +-- ...ceaccountkeyauthenticationmethod-delete.md | 25 ------- ...ourceaccountkeyauthenticationmethod-get.md | 26 -------- api-reference/beta/api/schedule-share.md | 4 +- api-reference/beta/api/schemaextension-get.md | 6 +- .../beta/api/section-copytonotebook.md | 2 +- .../beta/api/section-copytosectiongroup.md | 2 +- .../beta/api/security-alert-update.md | 2 +- .../api/security-emailthreatsubmission-get.md | 4 +- ...ecurity-emailthreatsubmissionpolicy-get.md | 4 +- .../beta/api/security-incident-update.md | 2 +- ...lete-delegatedpermissionclassifications.md | 4 +- .../api/servicestoragequotabreakdown-get.md | 4 +- ...nization-synchronization-list-templates.md | 4 +- ...ynchronization-synchronizationjob-pause.md | 4 +- api-reference/beta/api/table-clearfilters.md | 2 +- .../beta/api/table-converttorange.md | 2 +- api-reference/beta/api/table-databodyrange.md | 2 +- api-reference/beta/api/table-delete.md | 2 +- .../beta/api/table-headerrowrange.md | 2 +- api-reference/beta/api/table-post-rows.md | 2 +- .../beta/api/table-reapplyfilters.md | 2 +- api-reference/beta/api/table-totalrowrange.md | 2 +- api-reference/beta/api/tablecollection-add.md | 2 +- .../beta/api/tablecolumn-databodyrange.md | 2 +- api-reference/beta/api/tablecolumn-delete.md | 2 +- .../beta/api/tablecolumn-headerrowrange.md | 2 +- api-reference/beta/api/tablecolumn-range.md | 2 +- .../beta/api/tablecolumn-totalrowrange.md | 2 +- .../beta/api/tablecolumncollection-add.md | 2 +- .../beta/api/tablecolumncollection-itemat.md | 2 +- api-reference/beta/api/tablerow-delete.md | 2 +- api-reference/beta/api/tablerow-range.md | 2 +- .../beta/api/tablerowcollection-itemat.md | 2 +- api-reference/beta/api/tablesort-apply.md | 2 +- api-reference/beta/api/tablesort-clear.md | 2 +- api-reference/beta/api/tablesort-reapply.md | 2 +- .../beta/api/team-completemigration.md | 4 +- api-reference/beta/api/team-post.md | 2 +- api-reference/beta/api/tiindicators-list.md | 7 +- .../api/unifiedstoragequota-list-services.md | 4 +- api-reference/beta/api/user-delta.md | 6 +- .../beta/api/user-findmeetingtimes.md | 2 +- .../beta/api/user-post-notifications.md | 2 +- api-reference/beta/api/user-reminderview.md | 2 +- api-reference/beta/api/usersettings-update.md | 2 +- .../beta/api/workbookpivottable-refresh.md | 2 +- .../beta/api/workbookpivottable-refreshall.md | 2 +- .../beta/api/workbookrange-columnsafter.md | 2 +- .../beta/api/workbookrange-columnsbefore.md | 2 +- .../beta/api/workbookrange-rowsabove.md | 2 +- .../beta/api/workbookrange-rowsbelow.md | 2 +- .../beta/api/workbookrange-visibleview.md | 2 +- .../beta/api/workbookrangeview-itemat.md | 2 +- .../beta/api/workbookrangeview-range.md | 2 +- .../beta/api/workforceintegration-update.md | 3 +- api-reference/beta/api/worksheet-cell.md | 2 +- api-reference/beta/api/worksheet-delete.md | 2 +- api-reference/beta/api/worksheet-range.md | 2 +- api-reference/beta/api/worksheet-usedrange.md | 2 +- .../beta/api/worksheetprotection-protect.md | 2 +- .../beta/resources/security-alert.md | 2 +- .../beta/resources/security-incident.md | 2 +- .../v1.0/api/security-incident-update.md | 2 +- .../v1.0/resources/security-alert.md | 2 +- .../v1.0/resources/security-incident.md | 2 +- concepts/whats-new-overview.md | 66 ++++++++++++++++++- 168 files changed, 316 insertions(+), 370 deletions(-) diff --git a/api-reference/beta/api/accesspackage-delete-accesspackageresourcerolescopes.md b/api-reference/beta/api/accesspackage-delete-accesspackageresourcerolescopes.md index b77d8d7fecc..2c1ccd3308c 100644 --- a/api-reference/beta/api/accesspackage-delete-accesspackageresourcerolescopes.md +++ b/api-reference/beta/api/accesspackage-delete-accesspackageresourcerolescopes.md @@ -53,7 +53,7 @@ If successful, this method returns a 200-series response code. It doesn't return ### Request -Here's an example of the request. +The following example shows a request. diff --git a/api-reference/beta/api/chart-image.md b/api-reference/beta/api/chart-image.md index 4c1a1b2081b..a3b8f4b2dfd 100644 --- a/api-reference/beta/api/chart-image.md +++ b/api-reference/beta/api/chart-image.md @@ -51,7 +51,7 @@ In the request body, provide a JSON object with the following parameters. If successful, this method returns `200 OK` response code and base-64 image string in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/chart-setdata.md b/api-reference/beta/api/chart-setdata.md index be8f246f564..fab75163ef6 100644 --- a/api-reference/beta/api/chart-setdata.md +++ b/api-reference/beta/api/chart-setdata.md @@ -50,7 +50,7 @@ In the request body, provide a JSON object with the following parameters. If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here's an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. @@ -96,7 +96,7 @@ Content-type: application/json --- ### Response -The following example shows the response. +The following example shows the response. diff --git a/api-reference/beta/api/chart-setposition.md b/api-reference/beta/api/chart-setposition.md index 13e59b2b262..d5738a301e2 100644 --- a/api-reference/beta/api/chart-setposition.md +++ b/api-reference/beta/api/chart-setposition.md @@ -50,7 +50,7 @@ In the request body, provide a JSON object with the following parameters. If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here's an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/chartcollection-add.md b/api-reference/beta/api/chartcollection-add.md index 461cc569cce..cc1d7c46832 100644 --- a/api-reference/beta/api/chartcollection-add.md +++ b/api-reference/beta/api/chartcollection-add.md @@ -51,7 +51,7 @@ In the request body, provide a JSON object with the following parameters. If successful, this method returns `200 OK` response code and [workbookChart](../resources/workbookchart.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/chartcollection-itemat.md b/api-reference/beta/api/chartcollection-itemat.md index 00dfee87a1c..3f1805789f2 100644 --- a/api-reference/beta/api/chartcollection-itemat.md +++ b/api-reference/beta/api/chartcollection-itemat.md @@ -54,7 +54,7 @@ Don't supply a request body for this method. If successful, this method returns `200 OK` response code and [workbookChart](../resources/workbookchart.md) object in the response body. ## Example -Here's an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/chartfill-clear.md b/api-reference/beta/api/chartfill-clear.md index 91cebc6af8a..fa1226ef4b6 100644 --- a/api-reference/beta/api/chartfill-clear.md +++ b/api-reference/beta/api/chartfill-clear.md @@ -48,7 +48,7 @@ POST /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/charts/{name}/le If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here's an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/chartfill-setsolidcolor.md b/api-reference/beta/api/chartfill-setsolidcolor.md index 90373265eb3..43ded7b0702 100644 --- a/api-reference/beta/api/chartfill-setsolidcolor.md +++ b/api-reference/beta/api/chartfill-setsolidcolor.md @@ -53,7 +53,7 @@ In the request body, provide a JSON object with the following parameters. If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here's an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/chartlineformat-clear.md b/api-reference/beta/api/chartlineformat-clear.md index b8e9318fa41..b5872b7eb82 100644 --- a/api-reference/beta/api/chartlineformat-clear.md +++ b/api-reference/beta/api/chartlineformat-clear.md @@ -48,7 +48,7 @@ POST /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/charts/{name}/ax If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here's an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/chartpointscollection-itemat.md b/api-reference/beta/api/chartpointscollection-itemat.md index 1afc711b9ab..133b9bd9518 100644 --- a/api-reference/beta/api/chartpointscollection-itemat.md +++ b/api-reference/beta/api/chartpointscollection-itemat.md @@ -54,7 +54,7 @@ Don't supply a request body for this method. If successful, this method returns `200 OK` response code and [workbookChartPoint](../resources/workbookchartpoint.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/chartseriescollection-itemat.md b/api-reference/beta/api/chartseriescollection-itemat.md index dfaf88c1af1..c23932ccb4d 100644 --- a/api-reference/beta/api/chartseriescollection-itemat.md +++ b/api-reference/beta/api/chartseriescollection-itemat.md @@ -54,7 +54,7 @@ Don't supply a request body for this method. If successful, this method returns `200 OK` response code and [workbookChartSeries](../resources/workbookchartseries.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/checklistitem-get.md b/api-reference/beta/api/checklistitem-get.md index 0f1b2752c14..ed674305ece 100644 --- a/api-reference/beta/api/checklistitem-get.md +++ b/api-reference/beta/api/checklistitem-get.md @@ -71,7 +71,7 @@ If successful, this method returns a `200 OK` response code and a [checklistItem ### Request 1 -Here is an example to get a **checklistItem** associated to a **todoTask**. +The following example shows how to get a **checklistItem** associated to a **todoTask**. # [HTTP](#tab/http) @@ -95,7 +95,7 @@ GET /me/drive/items/{item-id}/versions ### Response -Here's an example of the response that includes a collection of versions: +The following example shows the response that includes a collection of versions. diff --git a/api-reference/beta/api/event-accept.md b/api-reference/beta/api/event-accept.md index 26c31a9beb6..94c59dd52a8 100644 --- a/api-reference/beta/api/event-accept.md +++ b/api-reference/beta/api/event-accept.md @@ -58,7 +58,7 @@ In the request body, provide a JSON object with the following parameters. If successful, this method returns `202 Accepted` response code. It doesn't return anything in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/event-cancel.md b/api-reference/beta/api/event-cancel.md index cd5d81abcd8..d010d88e67e 100644 --- a/api-reference/beta/api/event-cancel.md +++ b/api-reference/beta/api/event-cancel.md @@ -68,7 +68,7 @@ In the request body, provide a JSON object with the following parameters. If successful, this method returns `202 Accepted` response code. It doesn't return anything in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/event-decline.md b/api-reference/beta/api/event-decline.md index 7e72b5b2c14..a14d9cd01fc 100644 --- a/api-reference/beta/api/event-decline.md +++ b/api-reference/beta/api/event-decline.md @@ -75,7 +75,7 @@ This action returns HTTP 400 if one or both of the following occur: ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request diff --git a/api-reference/beta/api/event-dismissreminder.md b/api-reference/beta/api/event-dismissreminder.md index b0f024b7c3c..13a2496c80b 100644 --- a/api-reference/beta/api/event-dismissreminder.md +++ b/api-reference/beta/api/event-dismissreminder.md @@ -54,7 +54,7 @@ If successful, this method returns a `200 OK` response code. It doesn't return a ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/event-forward.md b/api-reference/beta/api/event-forward.md index 5eeeb1e9d10..b36dfa68359 100644 --- a/api-reference/beta/api/event-forward.md +++ b/api-reference/beta/api/event-forward.md @@ -66,7 +66,7 @@ In the request body, provide a JSON object with the following parameters. If successful, this method returns `202 Accepted` response code. It doesn't return anything in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/event-post-attachments.md b/api-reference/beta/api/event-post-attachments.md index 142260cfcb2..3fdd95c6f4f 100644 --- a/api-reference/beta/api/event-post-attachments.md +++ b/api-reference/beta/api/event-post-attachments.md @@ -146,7 +146,7 @@ Content-Length: 735 ### Request -Here is an example which attaches an event with another event as an item attachment. +The following example shows a request that attaches an event with another event as an item attachment. # [HTTP](#tab/http) @@ -301,7 +301,7 @@ Content-type: application/json ### Response -Here is an example of a full response. +The following example shows a full response. ```http @@ -126,7 +126,7 @@ Here's an example that returns JSON. #### Request -Here's an example of a request. +The following example shows a request. ```http @@ -127,7 +127,7 @@ Here's an example that returns JSON. #### Request -Here's an example of a request. +The following example shows a request. ```http @@ -127,7 +127,7 @@ Here's an example that returns JSON. #### Request -Here's an example of a request. +The following example shows a request. @@ -165,7 +165,7 @@ Here's an example that returns JSON. #### Request -Here's an example of the request. +The following example shows a request. @@ -152,7 +152,7 @@ Here's an example that returns JSON. #### Request -Here's an example of the request. +The following example shows a request. @@ -151,7 +151,7 @@ Here's an example that returns JSON. #### Request -Here's an example of the request. +The following example shows a request. @@ -140,7 +140,7 @@ Here's an example that returns JSON. #### Request -Here's an example of the request. +The following example shows a request. diff --git a/api-reference/beta/api/table-clearfilters.md b/api-reference/beta/api/table-clearfilters.md index 1d0b10a480b..8ab80a8f19e 100644 --- a/api-reference/beta/api/table-clearfilters.md +++ b/api-reference/beta/api/table-clearfilters.md @@ -46,7 +46,7 @@ POST /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|name} If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/table-converttorange.md b/api-reference/beta/api/table-converttorange.md index ebcb12d6620..f33244841ab 100644 --- a/api-reference/beta/api/table-converttorange.md +++ b/api-reference/beta/api/table-converttorange.md @@ -46,7 +46,7 @@ POST /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|name} If successful, this method returns `200 OK` response code and [workbookRange](../resources/workbookrange.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/table-databodyrange.md b/api-reference/beta/api/table-databodyrange.md index 00e412b6f1d..6414479eb84 100644 --- a/api-reference/beta/api/table-databodyrange.md +++ b/api-reference/beta/api/table-databodyrange.md @@ -46,7 +46,7 @@ GET /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|name}/ If successful, this method returns `200 OK` response code and [workbookRange](../resources/workbookrange.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/table-delete.md b/api-reference/beta/api/table-delete.md index 5c12e2708c7..3649118b1bd 100644 --- a/api-reference/beta/api/table-delete.md +++ b/api-reference/beta/api/table-delete.md @@ -46,7 +46,7 @@ DELETE /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|nam If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here's an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/table-headerrowrange.md b/api-reference/beta/api/table-headerrowrange.md index 07d258911b0..d456e859fde 100644 --- a/api-reference/beta/api/table-headerrowrange.md +++ b/api-reference/beta/api/table-headerrowrange.md @@ -46,7 +46,7 @@ GET /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|name}/ If successful, this method returns `200 OK` response code and [workbookRange](../resources/workbookrange.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/table-post-rows.md b/api-reference/beta/api/table-post-rows.md index f73e0d63823..9c0b98edd5c 100644 --- a/api-reference/beta/api/table-post-rows.md +++ b/api-reference/beta/api/table-post-rows.md @@ -144,7 +144,7 @@ For async features, the user usually needs to issue 2-3 requests. This request, #### Request -Here's an example of the async request. Note that `202 Accepted` will only happen when the request takes a long time to respond. If the request is completed quickly, it works like a regular sync request, falling back to [Example 1](#example-1-add-two-rows-to-a-table). +The following example shows the async request. Note that `202 Accepted` only happens when the request takes a long time to respond. If the request is completed quickly, it works like a regular sync request, falling back to [Example 1](#example-1-add-two-rows-to-a-table). diff --git a/api-reference/beta/api/table-reapplyfilters.md b/api-reference/beta/api/table-reapplyfilters.md index 2ee2e20f6c5..ea4e70b68dc 100644 --- a/api-reference/beta/api/table-reapplyfilters.md +++ b/api-reference/beta/api/table-reapplyfilters.md @@ -46,7 +46,7 @@ POST /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|name} If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/table-totalrowrange.md b/api-reference/beta/api/table-totalrowrange.md index 940cfd03c4e..13a6e2de26a 100644 --- a/api-reference/beta/api/table-totalrowrange.md +++ b/api-reference/beta/api/table-totalrowrange.md @@ -46,7 +46,7 @@ GET /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|name}/ If successful, this method returns `200 OK` response code and [workbookRange](../resources/workbookrange.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablecollection-add.md b/api-reference/beta/api/tablecollection-add.md index 2c9cbfc364f..fbdc00adf38 100644 --- a/api-reference/beta/api/tablecollection-add.md +++ b/api-reference/beta/api/tablecollection-add.md @@ -56,7 +56,7 @@ In the request body, provide a JSON object with the following parameters. If successful, this method returns `200 OK` response code and [workbookTable](../resources/workbooktable.md) object in the response body. ## Example -Here's an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablecolumn-databodyrange.md b/api-reference/beta/api/tablecolumn-databodyrange.md index d179b0d2264..9d3b63d4cae 100644 --- a/api-reference/beta/api/tablecolumn-databodyrange.md +++ b/api-reference/beta/api/tablecolumn-databodyrange.md @@ -46,7 +46,7 @@ GET /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|name}/ If successful, this method returns `200 OK` response code and [workbookRange](../resources/workbookrange.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablecolumn-delete.md b/api-reference/beta/api/tablecolumn-delete.md index 0a6e59dee23..2b9549c656a 100644 --- a/api-reference/beta/api/tablecolumn-delete.md +++ b/api-reference/beta/api/tablecolumn-delete.md @@ -46,7 +46,7 @@ DELETE /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|nam If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablecolumn-headerrowrange.md b/api-reference/beta/api/tablecolumn-headerrowrange.md index fae62b02bea..1b1112b624a 100644 --- a/api-reference/beta/api/tablecolumn-headerrowrange.md +++ b/api-reference/beta/api/tablecolumn-headerrowrange.md @@ -46,7 +46,7 @@ GET /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|name}/ If successful, this method returns `200 OK` response code and [workbookRange](../resources/workbookrange.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablecolumn-range.md b/api-reference/beta/api/tablecolumn-range.md index 0f07c292429..c676fc1b76b 100644 --- a/api-reference/beta/api/tablecolumn-range.md +++ b/api-reference/beta/api/tablecolumn-range.md @@ -46,7 +46,7 @@ GET /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|name}/ If successful, this method returns `200 OK` response code and [workbookRange](../resources/workbookrange.md)) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablecolumn-totalrowrange.md b/api-reference/beta/api/tablecolumn-totalrowrange.md index 118248778e0..e06dc2d4bc6 100644 --- a/api-reference/beta/api/tablecolumn-totalrowrange.md +++ b/api-reference/beta/api/tablecolumn-totalrowrange.md @@ -46,7 +46,7 @@ GET /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|name}/ If successful, this method returns `200 OK` response code and [workbookRange](../resources/workbookrange.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablecolumncollection-add.md b/api-reference/beta/api/tablecolumncollection-add.md index b0165ab2adf..db221f92358 100644 --- a/api-reference/beta/api/tablecolumncollection-add.md +++ b/api-reference/beta/api/tablecolumncollection-add.md @@ -52,7 +52,7 @@ In the request body, provide a JSON object with the following parameters. If successful, this method returns `200 OK` response code and [workbookTableColumn](../resources/workbooktablecolumn.md) object in the response body. ## Example -Here's an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablecolumncollection-itemat.md b/api-reference/beta/api/tablecolumncollection-itemat.md index 0acacb3b8d7..cc8655ffc48 100644 --- a/api-reference/beta/api/tablecolumncollection-itemat.md +++ b/api-reference/beta/api/tablecolumncollection-itemat.md @@ -56,7 +56,7 @@ Don't supply a request body for this method. If successful, this method returns `200 OK` response code and [workbookTableColumn](../resources/workbooktablecolumn.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablerow-delete.md b/api-reference/beta/api/tablerow-delete.md index 1bb859ebe00..9988fe5bf17 100644 --- a/api-reference/beta/api/tablerow-delete.md +++ b/api-reference/beta/api/tablerow-delete.md @@ -46,7 +46,7 @@ DELETE /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|nam If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablerow-range.md b/api-reference/beta/api/tablerow-range.md index 4252dc529b9..6b01e80066d 100644 --- a/api-reference/beta/api/tablerow-range.md +++ b/api-reference/beta/api/tablerow-range.md @@ -53,7 +53,7 @@ Don't supply a request body for this method. If successful, this method returns `200 OK` response code and [workbookRange](../resources/workbookrange.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablerowcollection-itemat.md b/api-reference/beta/api/tablerowcollection-itemat.md index 14d7936407b..2623b450d8f 100644 --- a/api-reference/beta/api/tablerowcollection-itemat.md +++ b/api-reference/beta/api/tablerowcollection-itemat.md @@ -56,7 +56,7 @@ Don't supply a request body for this method. If successful, this method returns `200 OK` response code and [workbookTableRow](../resources/workbooktablerow.md) object in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablesort-apply.md b/api-reference/beta/api/tablesort-apply.md index 29c9446ae8e..9dec6dff82d 100644 --- a/api-reference/beta/api/tablesort-apply.md +++ b/api-reference/beta/api/tablesort-apply.md @@ -53,7 +53,7 @@ In the request body, provide a JSON object with the following parameters. If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablesort-clear.md b/api-reference/beta/api/tablesort-clear.md index 70a9e0b07b2..26638adfebf 100644 --- a/api-reference/beta/api/tablesort-clear.md +++ b/api-reference/beta/api/tablesort-clear.md @@ -46,7 +46,7 @@ POST /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|name} If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here's an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/tablesort-reapply.md b/api-reference/beta/api/tablesort-reapply.md index 9c0f511a53c..431d0fb6206 100644 --- a/api-reference/beta/api/tablesort-reapply.md +++ b/api-reference/beta/api/tablesort-reapply.md @@ -46,7 +46,7 @@ POST /me/drive/root:/{item-path}:/workbook/worksheets/{id|name}/tables/{id|name} If successful, this method returns `200 OK` response code. It doesn't return anything in the response body. ## Example -Here is an example of how to call this API. +The following example shows how to call this API. ### Request The following example shows a request. diff --git a/api-reference/beta/api/team-completemigration.md b/api-reference/beta/api/team-completemigration.md index 0999b2da4b8..ec3b62e8f1f 100644 --- a/api-reference/beta/api/team-completemigration.md +++ b/api-reference/beta/api/team-completemigration.md @@ -51,7 +51,7 @@ If successful, this method returns a `204 No Content` response code. It doesn't ### Request -Here's an example of the request. +The following example shows a request. @@ -101,7 +101,7 @@ POST https://graph.microsoft.com/beta/teams/57fb72d0-d811-46f4-8947-305e6072eaa5 ### Response -Here's an example of the response. +The following example shows the response. + +```http +DELETE /me/notes/{id}/attachments/{id} +DELETE /users/{id | userPrincipalName}/notes/{id}/attachments/{id} +``` + Attachments for a [post](../resources/post.md) in a [thread](../resources/conversationthread.md) thta belongs to a [conversation](../resources/conversation.md) of a group. ```http @@ -103,9 +113,13 @@ Don't supply a request body for this method. If successful, this method returns a `204 No Content` response code. It doesn't return anything in the response body. -## Example -### Request -The following example shows a request to delete an attachment on an event. +## Examples + +### Example 1: Delete an event attachment +The following example shows how to delete an attachment on an [event](../resources/event.md). +#### Request + +The following example shows a request. # [HTTP](#tab/http) + +```http +HTTP/1.1 204 No Content +``` + +### Example 2: Delete a note attachment +The following example shows how to delete an attachment on a [note](../resources/note.md). + +#### Request + +The following example shows a request. + + +```http +DELETE https://graph.microsoft.com/v1.0/me/notes/AAMkAGI2THVSAAA=/attachments/AAMkAGI2attach2 +``` + +#### Response + The following example shows the response. +[!INCLUDE [permissions-table](../includes/permissions/note-delete-permissions.md)] + +## HTTP request + + +``` http +DELETE /me/notes/{note-id} +DELETE /users/{id | userPrincipalName}/notes/{note-id} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|If-Match|The **changeKey** value for the note is used for optimistic concurrency control. Optional. We recommend that you use this header to avoid conflicts.| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `204 No Content` response code. + +If the `If-Match` header doesn't match the current **changeKey**, this method returns a `412 Precondition Failed` response code. + +## Examples + +### Request + +The following example shows a request. + +``` http +DELETE https://graph.microsoft.com/v1.0/me/notes/AAMkAGI2THVSAAA= +If-Match: "CQAAABYAAABG" +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/api/note-delta.md b/api-reference/v1.0/api/note-delta.md new file mode 100644 index 00000000000..adb02f2b3dc --- /dev/null +++ b/api-reference/v1.0/api/note-delta.md @@ -0,0 +1,166 @@ +--- +title: "note: delta" +description: "Get a set of note objects that were added, updated, or deleted in the user's Notes folder since the last delta query." +author: "rajeshvulla" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "outlook" +doc_type: apiPageType +--- + +# note: delta + +Namespace: microsoft.graph + +Get a set of [note](../resources/note.md) objects that were added, updated, or deleted in the user's *Notes* folder since the last delta query. A **delta** function call for notes is similar to a GET request, except that by appropriately applying [state tokens](/graph/delta-query-overview) in one or more of these calls, you can query for incremental changes in the notes. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/note-delta-permissions.md)] + +## HTTP request + + +``` http +GET /me/notes/delta +GET /users/{id | userPrincipalName}/notes/delta +``` + +## Query parameters + +Tracking changes in notes incurs a round of one or more **delta** function calls. If you use any query parameter (other than `$deltatoken` and `$skiptoken`), you must specify it in the initial **delta** request. Microsoft Graph automatically encodes any specified parameters into the token portion of the **@odata.nextLink** or **@odata.deltaLink** URL provided in the response. + +| Query parameter | Type | Description | +|:---|:---|:---| +| $deltatoken | String | A [state token](/graph/delta-query-overview) returned in the **@odata.deltaLink** URL of the previous **delta** function call, indicating the completion of that round of change tracking. Save and apply the entire **@odata.deltaLink** URL, including this token, in the first request of the next round of change tracking for that collection.| +| $skiptoken | String | A [state token](/graph/delta-query-overview) returned in the **@odata.nextLink** URL of the previous **delta** function call, indicating further changes to be tracked. | + +This method also supports the `$select`, `$filter`, `$orderby`, and `$top` OData query parameters to help customize the response. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [note](../resources/note.md) objects in the response body. The response also includes an **@odata.nextLink** URL or an **@odata.deltaLink** URL. + +- If an **@odata.nextLink** URL is returned, more pages of data remain to be retrieved. The application continues making requests using the **@odata.nextLink** URL until an **@odata.deltaLink** URL is included in the response. +- If an **@odata.deltaLink** URL is returned, no more pages of data remain to be returned. Save the **@odata.deltaLink** URL for use in the next **delta** call. + +## Examples + +### Example 1: Initial sync request + +The following example shows the initial sync request to get all notes. + +#### Request +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/me/notes/delta +``` + +#### Response +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#users('user-id')/notes", + "@odata.deltaLink": "https://graph.microsoft.com/v1.0/me/notes/delta?$deltatoken=abc123def456", + "value": [ + { + "id": "AAMkAGI2THVSAAA=", + "changeKey": "CQAAABYAAABE", + "createdDateTime": "2024-01-15T10:00:00Z", + "lastModifiedDateTime": "2024-01-20T11:00:00Z", + "categories": [], + "subject": "Updated Note", + "body": { + "contentType": "html", + "content": "Updated content" + }, + "bodyPreview": "Updated content", + "isDeleted": false, + "hasAttachments": false + } + ] +} +``` + +### Example 2: Subsequent delta request + +The following example shows a subsequent sync request using the delta token from the previous response. New, updated, and deleted notes are returned. + +#### Request +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/me/notes/delta?$deltatoken=abc123def456 +``` + +#### Response +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#users('user-id')/notes", + "@odata.deltaLink": "https://graph.microsoft.com/v1.0/me/notes/delta?$deltatoken=xyz789new", + "value": [ + { + "id": "AAMkAGI2NEWITEM=", + "changeKey": "CQAAABYAAABF", + "subject": "New Note", + "bodyPreview": "New content", + "createdDateTime": "2024-01-21T08:00:00Z", + "lastModifiedDateTime": "2024-01-21T08:00:00Z" + }, + { + "@removed": { + "reason": "deleted" + }, + "id": "AAMkAGI2DELETED=" + } + ] +} +``` diff --git a/api-reference/v1.0/api/note-get.md b/api-reference/v1.0/api/note-get.md new file mode 100644 index 00000000000..66d61191cb3 --- /dev/null +++ b/api-reference/v1.0/api/note-get.md @@ -0,0 +1,163 @@ +--- +title: "Get note" +description: "Read the properties and relationships of a note object." +author: "rajeshvulla" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "outlook" +doc_type: apiPageType +--- + +# Get note + +Namespace: microsoft.graph + +Read the properties and relationships of a [note](../resources/note.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/note-get-permissions.md)] + +## HTTP request + + +``` http +GET /me/notes/{note-id} +GET /users/{id | userPrincipalName}/notes/{note-id} +``` + +## Optional query parameters + +This method supports the `$select` and `$expand` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +Use `$expand=attachments` to include file attachments in the response. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [note](../resources/note.md) object in the response body. + +## Examples + +### Example 1: Get a note +The following example shows how to get a [note](../resources/note.md) object. + +#### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/me/notes/AAMkAGI2THVSAAA= +``` + +#### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#users('user-id')/notes/$entity", + "id": "AAMkAGI2THVSAAA=", + "changeKey": "CQAAABYAAABE", + "createdDateTime": "2024-01-20T10:30:00Z", + "lastModifiedDateTime": "2024-01-20T10:30:00Z", + "categories": [], + "subject": "Project Ideas", + "body": { + "contentType": "html", + "content": "

Consider implementing automated testing framework

" + }, + "bodyPreview": "Consider implementing automated testing framework", + "isDeleted": false, + "hasAttachments": false +} +``` + +### Example 2: Get a note with attachments +The following example shows how to get a [note](../resources/note.md) object using `$expand` to include attachments. + +#### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/me/notes/AAMkAGI2THVSAAA=?$expand=attachments +``` + +#### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#users('user-id')/notes/$entity", + "id": "AAMkAGI2THVSAAA=", + "changeKey": "CQAAABYAAABE", + "createdDateTime": "2024-01-15T14:00:00Z", + "lastModifiedDateTime": "2024-01-15T14:30:00Z", + "categories": [], + "subject": "Meeting Whiteboard", + "body": { + "contentType": "html", + "content": "

Key discussion points:

" + }, + "bodyPreview": "Key discussion points:", + "isDeleted": false, + "hasAttachments": true, + "attachments": [ + { + "@odata.type": "#microsoft.graph.fileAttachment", + "id": "AAMkAGI2attach1", + "name": "whiteboard.png", + "contentType": "image/png", + "size": 45678, + "isInline": true, + "contentId": "image001", + "lastModifiedDateTime": "2024-01-15T14:30:00Z" + } + ] +} +``` diff --git a/api-reference/v1.0/api/note-list-attachments.md b/api-reference/v1.0/api/note-list-attachments.md new file mode 100644 index 00000000000..e3e874bcf64 --- /dev/null +++ b/api-reference/v1.0/api/note-list-attachments.md @@ -0,0 +1,105 @@ +--- +title: "List note attachments" +description: "Get the list of file attachments associated with a note." +author: "rajeshvulla" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "outlook" +doc_type: apiPageType +--- + +# List note attachments + +Namespace: microsoft.graph + +Get the list of file attachments associated with a [note](../resources/note.md). Only inline image attachments (image/png, image/jpeg, image/gif, or image/bmp) are supported, with a maximum size of 3 MB per attachment. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/note-list-attachments-permissions.md)] + +## HTTP request + + +``` http +GET /me/notes/{note-id}/attachments +GET /users/{id | userPrincipalName}/notes/{note-id}/attachments +``` + +## Optional query parameters + +This method supports the `$filter`, `$select`, and `$expand` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +You can use the `$expand` query parameter to include all of the note attachments inline with the rest of the note properties. For example: + +``` http +GET https://graph.microsoft.com/v1.0/me/notes/{note-id}?$expand=attachments +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [attachment](../resources/attachment.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/me/notes/AAMkAGI2THVSAAA=/attachments +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.fileAttachment", + "id": "AAMkAGI2attach1", + "name": "whiteboard.png", + "contentType": "image/png", + "size": 45678, + "isInline": true, + "contentId": "image001", + "lastModifiedDateTime": "2024-01-15T14:30:00Z" + } + ] +} +``` diff --git a/api-reference/v1.0/api/note-post-attachments.md b/api-reference/v1.0/api/note-post-attachments.md new file mode 100644 index 00000000000..0a60792fbe4 --- /dev/null +++ b/api-reference/v1.0/api/note-post-attachments.md @@ -0,0 +1,113 @@ +--- +title: "Create attachment" +description: "Create a fileAttachment object, which adds an inline image attachment to a note." +author: "rajeshvulla" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "outlook" +doc_type: apiPageType +--- + +# Create attachment + +Namespace: microsoft.graph + +Create a [fileAttachment](../resources/fileattachment.md) object, which adds an inline image attachment to a [note](../resources/note.md). Only image file types (image/png, image/jpeg, image/gif, or image/bmp) are supported, with a maximum size of 3 MB per attachment. Use the **contentId** property to reference the attachment in the HTML body of a note by using ``. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/note-post-attachments-permissions.md)] + +## HTTP request + + +``` http +POST /me/notes/{note-id}/attachments +POST /users/{id | userPrincipalName}/notes/{note-id}/attachments +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the [fileAttachment](../resources/fileattachment.md) object. + +You can specify the following properties when you create an attachment. + +|Property|Type|Description| +|:---|:---|:---| +|@odata.type|String|The OData type of the attachment resource. Required. Set to `#microsoft.graph.fileAttachment`.| +|name|String|The file name of the attachment. Required.| +|contentType|String|The MIME type of the attachment. Must be an image type: `image/png`, `image/jpeg`, `image/gif`, or `image/bmp`. Required.| +|contentBytes|String|The base64-encoded contents of the file. Required.| +|contentId|String|The ID used for referencing the attachment in the HTML body via `cid:`. Required.| +|isInline|Boolean|Indicates whether the attachment is an inline attachment. Must be set to `true` for note attachments. Required.| + +## Response + +If successful, this method returns a `201 Created` response code and an [attachment](../resources/attachment.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/me/notes/AAMkAGI2THVSAAA=/attachments +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.fileAttachment", + "name": "screenshot.png", + "contentType": "image/png", + "contentBytes": "iVBORw0KGgoAAAANSUhEUgAAAAUA...", + "contentId": "screenshot-001", + "isInline": true +} +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.fileAttachment", + "id": "AAMkAGI2attach2", + "name": "screenshot.png", + "contentType": "image/png", + "size": 12456, + "isInline": true, + "contentId": "screenshot-001", + "lastModifiedDateTime": "2024-01-29T11:30:00Z" +} +``` diff --git a/api-reference/v1.0/api/note-update.md b/api-reference/v1.0/api/note-update.md new file mode 100644 index 00000000000..d3875db1434 --- /dev/null +++ b/api-reference/v1.0/api/note-update.md @@ -0,0 +1,116 @@ +--- +title: "Update note" +description: "Update the properties of a note object." +author: "rajeshvulla" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "outlook" +doc_type: apiPageType +--- + +# Update note + +Namespace: microsoft.graph + +Update the properties of a [note](../resources/note.md) object. Supports optimistic concurrency control via the `If-Match` header with the **changeKey** value for the note. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/note-update-permissions.md)] + +## HTTP request + + +``` http +PATCH /me/notes/{note-id} +PATCH /users/{id | userPrincipalName}/notes/{note-id} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| +|If-Match|The **changeKey** value for the note is used for optimistic concurrency control. Optional. We recommend that you use this header to avoid conflicts.| + +## Request body + +[!INCLUDE [table-intro](../../includes/update-property-table-intro.md)] + +|Property|Type|Description| +|:---|:---|:---| +|body|[itemBody](../resources/itembody.md)|The content of the note. Supports `text` or `html` content types. Optional.| +|categories|String collection|The categories associated with the note. Optional.| +|subject|String|The title of the note. Optional.| + +## Response + +If successful, this method returns a `200 OK` response code and an updated [note](../resources/note.md) object in the response body. + +If the `If-Match` header doesn't match the current **changeKey**, this method returns a `412 Precondition Failed` response code. + +## Examples + +### Request + +The following example shows a request. + +``` http +PATCH https://graph.microsoft.com/v1.0/me/notes/AAMkAGI2THVSAAA= +Content-Type: application/json +If-Match: "CQAAABYAAABE" + +{ + "subject": "Updated Meeting Notes - Jan 28", + "body": { + "contentType": "html", + "content": "

Updated Standup

  • Task 1 completed
  • Task 2 in progress
" + } +} +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#users('user-id')/notes/$entity", + "id": "AAMkAGI2THVSAAA=", + "changeKey": "CQAAABYAAABG", + "createdDateTime": "2024-01-15T10:30:00Z", + "lastModifiedDateTime": "2024-01-28T09:45:00Z", + "categories": [], + "subject": "Updated Meeting Notes - Jan 28", + "body": { + "contentType": "html", + "content": "

Updated Standup

  • Task 1 completed
  • Task 2 in progress
" + }, + "bodyPreview": "Updated Standup Task 1 completed Task 2 in progress", + "isDeleted": false, + "hasAttachments": false +} +``` diff --git a/api-reference/v1.0/api/opentypeextension-delete.md b/api-reference/v1.0/api/opentypeextension-delete.md index 16053147eab..0179a524dc0 100644 --- a/api-reference/v1.0/api/opentypeextension-delete.md +++ b/api-reference/v1.0/api/opentypeextension-delete.md @@ -30,6 +30,7 @@ Depending on the resource you're deleting the extension from and the permission | [group event](../resources/event.md) | Group.ReadWrite.All | Not supported | Not supported | | [group post](../resources/post.md) | Group.ReadWrite.All | Not supported | Group.ReadWrite.All | | [message](../resources/message.md) | Mail.ReadWrite | Mail.ReadWrite | Mail.ReadWrite | +| [note](../resources/note.md) | ShortNotes.ReadWrite | ShortNotes.ReadWrite | ShortNotes.ReadWrite.All | | [organization](../resources/organization.md) | Organization.ReadWrite.All | Not supported | Organization.ReadWrite.All | | [personal contact](../resources/contact.md) | Contacts.ReadWrite | Contacts.ReadWrite | Contacts.ReadWrite | | [todoTask](../resources/todotask.md) | Tasks.ReadWrite | Tasks.ReadWrite | Tasks.ReadWrite.All | @@ -48,6 +49,7 @@ DELETE /groups/{id}/extensions/{extensionId} DELETE /groups/{id}/events/{id}/extensions/{extensionId} DELETE /groups/{id}/threads/{id}/posts/{id}/extensions/{extensionId} DELETE /users/{id|userPrincipalName}/messages/{id}/extensions/{extensionId} +DELETE /users/{userId|userPrincipalName}/notes/{noteId}/extensions/{extensionId} DELETE /organization/{Id}/extensions/{extensionId} DELETE /users/{id|userPrincipalName}/contacts/{id}/extensions/{extensionId} DELETE /users/{id|userPrincipalName}/extensions/{extensionId} diff --git a/api-reference/v1.0/api/opentypeextension-get.md b/api-reference/v1.0/api/opentypeextension-get.md index 53f0fb227d6..47e4aac0ce4 100644 --- a/api-reference/v1.0/api/opentypeextension-get.md +++ b/api-reference/v1.0/api/opentypeextension-get.md @@ -20,7 +20,7 @@ The following table lists the three scenarios where you can get an open extensio |**GET scenario**|**Supported resources**|**Response body**| |:-----|:-----|:-----| -|Get a specific extension from a known resource instance.| [Device](../resources/device.md), [event](../resources/event.md), [group](../resources/group.md), [group event](../resources/event.md), [group post](../resources/post.md), [message](../resources/message.md), [organization](../resources/organization.md), [personal contact](../resources/contact.md), [user](../resources/user.md), [todoTask](../resources/todotask.md), [todoTaskList](../resources/todotasklist.md). | Open extension only.| +|Get a specific extension from a known resource instance.| [Device](../resources/device.md), [event](../resources/event.md), [group](../resources/group.md), [group event](../resources/event.md), [group post](../resources/post.md), [message](../resources/message.md), [note](../resources/note.md), [organization](../resources/organization.md), [personal contact](../resources/contact.md), [user](../resources/user.md), [todoTask](../resources/todotask.md), [todoTaskList](../resources/todotasklist.md). | Open extension only.| |Get a known resource instance expanded with a specific extension.|Device, event, group, group event, group post, message, organization, personal contact, user, todoTask, todoTaskList. |A resource instance expanded with the open extension.| |Find and expand resource instances with a specific extension. |Event, group event, group post, message, personal contact, task, task list.|Resource instances expanded with the open extension.| @@ -38,6 +38,7 @@ Depending on the resource that contains the extension and the permission type (d | [group event](../resources/event.md) | Group.Read.All | Not supported | Not supported | | [group post](../resources/post.md) | Group.Read.All | Not supported | Group.Read.All | | [message](../resources/message.md) | Mail.Read | Mail.Read | Mail.Read | +| [note](../resources/note.md) | ShortNotes.Read | ShortNotes.Read | ShortNotes.Read.All | | [organization](../resources/organization.md) | User.Read | Not supported | Organization.Read.All | | [personal contact](../resources/contact.md) | Contacts.Read | Contacts.Read | Contacts.Read | | [todoTask](../resources/todotask.md) | Tasks.ReadWrite | Tasks.ReadWrite | Tasks.ReadWrite.All | @@ -61,6 +62,7 @@ GET /groups/{Id}/extensions/{extensionId} GET /groups/{Id}/events/{Id}/extensions/{extensionId} GET /groups/{Id}/threads/{Id}/posts/{Id}/extensions/{extensionId} GET /users/{Id|userPrincipalName}/messages/{Id}/extensions/{extensionId} +GET /users/{userId|userPrincipalName}/notes/{noteId}/extensions/{extensionId} GET /organization/{Id}/extensions/{extensionId} GET /users/{Id|userPrincipalName}/contacts/{Id}/extensions/{extensionId} GET /users/{Id|userPrincipalName}/extensions/{extensionId} diff --git a/api-reference/v1.0/api/opentypeextension-post-opentypeextension.md b/api-reference/v1.0/api/opentypeextension-post-opentypeextension.md index 6f3d82723c7..d638f14736b 100644 --- a/api-reference/v1.0/api/opentypeextension-post-opentypeextension.md +++ b/api-reference/v1.0/api/opentypeextension-post-opentypeextension.md @@ -32,6 +32,7 @@ Depending on the resource you're creating, the extension and the permission type | [group event](../resources/event.md) | Group.ReadWrite.All | Not supported | Not supported | | [group post](../resources/post.md) | Group.ReadWrite.All | Not supported | Group.ReadWrite.All | | [message](../resources/message.md) | Mail.ReadWrite | Mail.ReadWrite | Mail.ReadWrite | +| [note](../resources/note.md) | ShortNotes.ReadWrite | ShortNotes.ReadWrite | ShortNotes.ReadWrite.All | | [organization](../resources/organization.md) | Organization.ReadWrite.All | Not supported | Organization.ReadWrite.All | | [personal contact](../resources/contact.md) | Contacts.ReadWrite | Contacts.ReadWrite | Contacts.ReadWrite | | [todoTask](../resources/todotask.md) | Tasks.ReadWrite | Tasks.ReadWrite | Tasks.ReadWrite.All | @@ -50,6 +51,7 @@ Use the same REST request that you use to create the instance. ```http POST /users/{id|userPrincipalName}/events POST /users/{id|userPrincipalName}/messages +POST /users/{id|userPrincipalName}/notes POST /groups/{id}/events POST /groups/{id}/threads/{id}/posts/{id}/reply POST /users/{id|userPrincipalName}/contacts @@ -74,6 +76,7 @@ POST /groups/{id}/extensions POST /groups/{id}/events/{id}/extensions POST /groups/{id}/threads/{id}/posts/{id}/extensions POST /users/{id|userPrincipalName}/messages/{id}/extensions +POST /users/{id|userPrincipalName}/notes/{id}/extensions POST /organization/{id}/extensions POST /users/{id|userPrincipalName}/contacts/{id}/extensions POST /users/{id|userPrincipalName}/extensions diff --git a/api-reference/v1.0/api/opentypeextension-update.md b/api-reference/v1.0/api/opentypeextension-update.md index ad72383ab83..7153dc44828 100644 --- a/api-reference/v1.0/api/opentypeextension-update.md +++ b/api-reference/v1.0/api/opentypeextension-update.md @@ -34,6 +34,7 @@ Depending on the resource that the extension was created in and the permission t | [group event](../resources/event.md) | Group.ReadWrite.All | Not supported | Not supported | | [group post](../resources/post.md) | Group.ReadWrite.All | Not supported | Group.ReadWrite.All | | [message](../resources/message.md) | Mail.ReadWrite | Mail.ReadWrite | Mail.ReadWrite | +| [note](../resources/note.md) | ShortNotes.ReadWrite | ShortNotes.ReadWrite | ShortNotes.ReadWrite.All | | [organization](../resources/organization.md) | Organization.ReadWrite.All | Not supported | Organization.ReadWrite.All | | [personal contact](../resources/contact.md) | Contacts.ReadWrite | Contacts.ReadWrite | Contacts.ReadWrite | | [todoTask](../resources/todotask.md) | Tasks.ReadWrite | Tasks.ReadWrite | Tasks.ReadWrite.All | @@ -52,6 +53,7 @@ PATCH /groups/{id}/extensions/{extensionId} PATCH /groups/{id}/events/{id}/extensions/{extensionId} PATCH /groups/{id}/threads/{id}/posts/{id}/extensions/{extensionId} PATCH /users/{id|userPrincipalName}/messages/{id}/extensions/{extensionId} +PATCH /users/{id|userPrincipalName}/notes/{id}/extensions/{extensionId} PATCH /organization/{Id}/extensions/{extensionId} PATCH /users/{id|userPrincipalName}/contacts/{id}/extensions/{extensionId} PATCH /users/{id|userPrincipalName}/extensions/{extensionId} diff --git a/api-reference/v1.0/api/singlevaluelegacyextendedproperty-get.md b/api-reference/v1.0/api/singlevaluelegacyextendedproperty-get.md index f90d92d59fb..b4416a53fee 100644 --- a/api-reference/v1.0/api/singlevaluelegacyextendedproperty-get.md +++ b/api-reference/v1.0/api/singlevaluelegacyextendedproperty-get.md @@ -37,6 +37,7 @@ The following user resources are supported: - [mailboxItem](../resources/mailboxitem.md) - [mailFolder](../resources/mailfolder.md) - [message](../resources/message.md) +- [note](../resources/note.md) As well as the following group resources: @@ -65,6 +66,7 @@ Depending on the resource you're getting the extended property from and the perm | [mailboxItem](../resources/mailboxitem.md) | MailboxItem.Read | Not supported. | MailboxItem.Read.All | | [mailFolder](../resources/mailfolder.md) | Mail.Read | Mail.Read | Mail.Read | | [message](../resources/message.md) | Mail.Read | Mail.Read | Mail.Read | +| [note](../resources/note.md) | ShortNotes.Read | ShortNotes.Read | ShortNotes.Read.All | ## HTTP request @@ -229,6 +231,15 @@ GET /admin/exchange/mailboxes/{mailboxId}/folders/{mailboxFolderId}/items/{mailb [!INCLUDE [me-apis-sign-in-note](../includes/me-apis-sign-in-note.md)] +Get **note** instances: + +```http +GET /me/notes?$filter=singleValueExtendedProperties/Any(ep: ep/id eq '{id_value}' and ep/value eq '{property_value}') +GET /users/{id|userPrincipalName}/notes?$filter=singleValueExtendedProperties/Any(ep: ep/id eq '{id_value}' and ep/value eq '{property_value}') +``` + +[!INCLUDE [me-apis-sign-in-note](../includes/me-apis-sign-in-note.md)] + Get a **mailboxFolder** instance: ```http diff --git a/api-reference/v1.0/api/singlevaluelegacyextendedproperty-post-singlevalueextendedproperties.md b/api-reference/v1.0/api/singlevaluelegacyextendedproperty-post-singlevalueextendedproperties.md index b0d857b76e7..ee50cee3d66 100644 --- a/api-reference/v1.0/api/singlevaluelegacyextendedproperty-post-singlevalueextendedproperties.md +++ b/api-reference/v1.0/api/singlevaluelegacyextendedproperty-post-singlevalueextendedproperties.md @@ -23,6 +23,7 @@ The following user resources are supported: - [mailboxFolder](../resources/mailboxfolder.md) - [mailFolder](../resources/mailfolder.md) - [message](../resources/message.md) +- [note](../resources/note.md) The following group resources: @@ -50,6 +51,7 @@ Depending on the resource you're creating the extended property in and the permi | [mailboxFolder](../resources/mailboxfolder.md) | MailboxFolder.Read | Not supported. | MailboxFolder.Read.All | | [mailFolder](../resources/mailfolder.md) | Mail.ReadWrite | Mail.ReadWrite | Mail.ReadWrite | | [message](../resources/message.md) | Mail.ReadWrite | Mail.ReadWrite | Mail.ReadWrite | +| [note](../resources/note.md) | ShortNotes.ReadWrite | ShortNotes.ReadWrite | ShortNotes.ReadWrite.All | ## HTTP request You can create extended properties in a new or existing resource instance. @@ -87,6 +89,9 @@ POST /users/{id|userPrincipalName}/contactFolders POST /admin/exchange/mailboxes/{mailboxId}/folders +POST /me/notes +POST /users/{id|userPrincipalName}/notes + POST /groups/{id}/events POST /groups/{id}/threads/{id}/posts/{id}/reply @@ -127,6 +132,9 @@ PATCH /users/{id|userPrincipalName}/contactFolders/{id} PATCH /admin/exchange/mailboxes/{mailboxId}/folders/{mailboxFolderId} +PATCH /me/notes/{id} +PATCH /users/{id|userPrincipalName}/notes/{id} + PATCH /groups/{id}/events/{id} ``` diff --git a/api-reference/v1.0/api/user-list-notes.md b/api-reference/v1.0/api/user-list-notes.md new file mode 100644 index 00000000000..d8050928129 --- /dev/null +++ b/api-reference/v1.0/api/user-list-notes.md @@ -0,0 +1,112 @@ +--- +title: "List notes" +description: "Get a list of the note objects in the user's Notes folder." +author: "rajeshvulla" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "outlook" +doc_type: apiPageType +--- + +# List notes + +Namespace: microsoft.graph + +Get a list of the [note](../resources/note.md) objects in the user's *Notes* folder. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/user-list-notes-permissions.md)] + +## HTTP request + + +``` http +GET /me/notes +GET /users/{id | userPrincipalName}/notes +``` + +## Optional query parameters + +This method supports the `$select`, `$filter`, `$orderby`, `$top`, `$skip`, and `$count` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +The following properties support `$filter`: + +- **subject**: `eq`, `ne`, `startsWith` +- **createdDateTime**: `eq`, `ne`, `ge`, `le`, `gt`, `lt` +- **lastModifiedDateTime**: `eq`, `ne`, `ge`, `le`, `gt`, `lt` +- **hasAttachments**: `eq` + +The following properties support `$orderby`: **createdDateTime**, **lastModifiedDateTime**, and **subject**. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [note](../resources/note.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/me/notes?$select=id,subject,bodyPreview,lastModifiedDateTime&$orderby=lastModifiedDateTime desc&$top=20 +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#users('user-id')/notes(id,subject,bodyPreview,lastModifiedDateTime)", + "@odata.nextLink": "https://graph.microsoft.com/v1.0/me/notes?$select=id,subject,bodyPreview,lastModifiedDateTime&$orderby=lastModifiedDateTime+desc&$top=20&$skiptoken=abc123", + "value": [ + { + "id": "AAMkAGI2THVSAAA=", + "subject": "Team Standup - Jan 20", + "bodyPreview": "Completed tasks: Feature A, Feature B. In progress: Feature C", + "lastModifiedDateTime": "2024-01-20T09:15:00Z" + }, + { + "id": "AAMkAGI2THVSAAB=", + "subject": "Shopping List", + "bodyPreview": "Milk, Eggs, Bread, Coffee", + "lastModifiedDateTime": "2024-01-19T18:30:00Z" + } + ] +} +``` diff --git a/api-reference/v1.0/api/user-post-notes.md b/api-reference/v1.0/api/user-post-notes.md new file mode 100644 index 00000000000..35f07b5a3df --- /dev/null +++ b/api-reference/v1.0/api/user-post-notes.md @@ -0,0 +1,114 @@ +--- +title: "Create note" +description: "Create a new note in the user's Notes folder." +author: "rajeshvulla" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "outlook" +doc_type: apiPageType +--- + +# Create note + +Namespace: microsoft.graph + +Create a new [note](../resources/note.md) in the user's *Notes* folder. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/user-post-notes-permissions.md)] + +## HTTP request + + +``` http +POST /me/notes +POST /users/{id | userPrincipalName}/notes +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the [note](../resources/note.md) object. + +You can specify the following properties when you create a **note**. + +|Property|Type|Description| +|:---|:---|:---| +|body|[itemBody](../resources/itembody.md)|The content of the note. Supports `text` or `html` content types. Required.| +|categories|String collection|The categories associated with the note. Optional.| +|subject|String|The title of the note. Optional.| + +## Response + +If successful, this method returns a `201 Created` response code and a [note](../resources/note.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/me/notes +Content-Type: application/json + +{ + "subject": "Project Ideas", + "body": { + "contentType": "html", + "content": "

Consider implementing automated testing framework

" + } +} +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#users('user-id')/notes/$entity", + "id": "AAMkAGI2THVSAAA=", + "changeKey": "CQAAABYAAABE", + "createdDateTime": "2024-01-20T10:30:00Z", + "lastModifiedDateTime": "2024-01-20T10:30:00Z", + "categories": [], + "subject": "Project Ideas", + "body": { + "contentType": "html", + "content": "

Consider implementing automated testing framework

" + }, + "bodyPreview": "Consider implementing automated testing framework", + "isDeleted": false, + "hasAttachments": false +} +``` diff --git a/api-reference/v1.0/includes/permissions/note-delete-permissions.md b/api-reference/v1.0/includes/permissions/note-delete-permissions.md new file mode 100644 index 00000000000..d1ccf4efec5 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/note-delete-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|ShortNotes.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|ShortNotes.ReadWrite|Not available.| +|Application|ShortNotes.ReadWrite.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/note-delta-permissions.md b/api-reference/v1.0/includes/permissions/note-delta-permissions.md new file mode 100644 index 00000000000..99a0df78cd4 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/note-delta-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|ShortNotes.Read|ShortNotes.ReadWrite| +|Delegated (personal Microsoft account)|ShortNotes.Read|ShortNotes.ReadWrite| +|Application|ShortNotes.Read.All|ShortNotes.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/note-get-permissions.md b/api-reference/v1.0/includes/permissions/note-get-permissions.md new file mode 100644 index 00000000000..99a0df78cd4 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/note-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|ShortNotes.Read|ShortNotes.ReadWrite| +|Delegated (personal Microsoft account)|ShortNotes.Read|ShortNotes.ReadWrite| +|Application|ShortNotes.Read.All|ShortNotes.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/note-list-attachments-permissions.md b/api-reference/v1.0/includes/permissions/note-list-attachments-permissions.md new file mode 100644 index 00000000000..99a0df78cd4 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/note-list-attachments-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|ShortNotes.Read|ShortNotes.ReadWrite| +|Delegated (personal Microsoft account)|ShortNotes.Read|ShortNotes.ReadWrite| +|Application|ShortNotes.Read.All|ShortNotes.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/note-post-attachments-permissions.md b/api-reference/v1.0/includes/permissions/note-post-attachments-permissions.md new file mode 100644 index 00000000000..d1ccf4efec5 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/note-post-attachments-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|ShortNotes.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|ShortNotes.ReadWrite|Not available.| +|Application|ShortNotes.ReadWrite.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/note-update-permissions.md b/api-reference/v1.0/includes/permissions/note-update-permissions.md new file mode 100644 index 00000000000..d1ccf4efec5 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/note-update-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|ShortNotes.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|ShortNotes.ReadWrite|Not available.| +|Application|ShortNotes.ReadWrite.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/user-list-notes-permissions.md b/api-reference/v1.0/includes/permissions/user-list-notes-permissions.md new file mode 100644 index 00000000000..99a0df78cd4 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/user-list-notes-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|ShortNotes.Read|ShortNotes.ReadWrite| +|Delegated (personal Microsoft account)|ShortNotes.Read|ShortNotes.ReadWrite| +|Application|ShortNotes.Read.All|ShortNotes.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/user-post-notes-permissions.md b/api-reference/v1.0/includes/permissions/user-post-notes-permissions.md new file mode 100644 index 00000000000..d1ccf4efec5 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/user-post-notes-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|ShortNotes.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|ShortNotes.ReadWrite|Not available.| +|Application|ShortNotes.ReadWrite.All|Not available.| diff --git a/api-reference/v1.0/resources/extended-properties-overview.md b/api-reference/v1.0/resources/extended-properties-overview.md index aa2a980a9fb..04fbe4c6dc6 100644 --- a/api-reference/v1.0/resources/extended-properties-overview.md +++ b/api-reference/v1.0/resources/extended-properties-overview.md @@ -24,6 +24,7 @@ You can use extended properties REST API to store or get such custom data in the - [mailboxItem](../resources/mailboxitem.md) - [mailFolder](../resources/mailfolder.md) - [message](../resources/message.md) +- [note](../resources/note.md) Or, in the following Microsoft 365 group resources: diff --git a/api-reference/v1.0/resources/mail-api-overview.md b/api-reference/v1.0/resources/mail-api-overview.md index f328a77d671..21677cb84b8 100644 --- a/api-reference/v1.0/resources/mail-api-overview.md +++ b/api-reference/v1.0/resources/mail-api-overview.md @@ -50,6 +50,7 @@ The Microsoft Graph API also provides methods and actions that support common us |:----------|:---------------|:---------| | **User-centric actions** | | | | Draft, read, reply, forward, send, update, or delete messages | [message](../resources/message.md) | [Methods of message](../resources/message.md#methods) | +| Create, read, update, or delete notes with optional inline image attachments | [note](../resources/note.md) | [Methods of note](../resources/note.md#methods) | | Delegate another user to send messages on behalf of the mailbox owner | [message](../resources/message.md) | Setting the **from** and **sender** properties in a [message](../resources/message.md) | | Let user view more important messages first | [inferenceClassificationOverride](../resources/inferenceclassificationoverride.md) | [Focused Inbox](../resources/manage-focused-inbox.md) | | Query for messages and get them in a search folder | [mailSearchFolder](../resources/mailsearchfolder.md) | [Methods of mailSearchFolder](../resources/mailsearchfolder.md#methods) | diff --git a/api-reference/v1.0/resources/multivaluelegacyextendedproperty.md b/api-reference/v1.0/resources/multivaluelegacyextendedproperty.md index c531089d775..241752be3c0 100644 --- a/api-reference/v1.0/resources/multivaluelegacyextendedproperty.md +++ b/api-reference/v1.0/resources/multivaluelegacyextendedproperty.md @@ -21,8 +21,8 @@ open extensions or extended properties, and how to specify extended properties. | Method | Return Type |Description| |:---------------|:--------|:----------| -|[Create multi-value property](../api/multivaluelegacyextendedproperty-post-multivalueextendedproperties.md) | A supported resource instance: [message](../resources/message.md), [mailFolder](../resources/mailfolder.md), [event](../resources/event.md), [calendar](../resources/calendar.md), [contact](../resources/contact.md), [contactFolder](../resources/contactfolder.md), or [mailboxFolder](../resources/mailboxfolder.md). Group [post](../resources/post.md) or [mailboxItem](../resources/mailboxitem.md) isn't supported. | Create a **multiValueLegacyExtendedProperty** in a new or existing instance of a supported resource. | -|[Get multi-value property](../api/multivaluelegacyextendedproperty-get.md) |A supported resource instance ([message](../resources/message.md), [mailFolder](../resources/mailfolder.md), [event](../resources/event.md), [calendar](../resources/calendar.md), [contact](../resources/contact.md), [contactFolder](../resources/contactfolder.md), [mailboxItem](../resources/mailboxitem.md), [mailboxFolder](../resources/mailboxfolder.md), or group [post](../resources/post.md)) expanded with a [multiValueLegacyExtendedProperty](multivaluelegacyextendedproperty.md) object. |Get a resource instance with an extended property using `$expand`.| +|[Create multi-value property](../api/multivaluelegacyextendedproperty-post-multivalueextendedproperties.md) | A supported resource instance: [message](../resources/message.md), [mailFolder](../resources/mailfolder.md), [note](../resources/note.md), [event](../resources/event.md), [calendar](../resources/calendar.md), [contact](../resources/contact.md), [contactFolder](../resources/contactfolder.md), or [mailboxFolder](../resources/mailboxfolder.md). Group [post](../resources/post.md) or [mailboxItem](../resources/mailboxitem.md) isn't supported. | Create a **multiValueLegacyExtendedProperty** in a new or existing instance of a supported resource. | +|[Get multi-value property](../api/multivaluelegacyextendedproperty-get.md) |A supported resource instance ([message](../resources/message.md), [mailFolder](../resources/mailfolder.md), [note](../resources/note.md), [event](../resources/event.md), [calendar](../resources/calendar.md), [contact](../resources/contact.md), [contactFolder](../resources/contactfolder.md), [mailboxItem](../resources/mailboxitem.md), [mailboxFolder](../resources/mailboxfolder.md), or group [post](../resources/post.md)) expanded with a [multiValueLegacyExtendedProperty](multivaluelegacyextendedproperty.md) object. |Get a resource instance with an extended property using `$expand`.| ## Properties | Property | Type |Description| diff --git a/api-reference/v1.0/resources/note.md b/api-reference/v1.0/resources/note.md new file mode 100644 index 00000000000..314a2732ee5 --- /dev/null +++ b/api-reference/v1.0/resources/note.md @@ -0,0 +1,88 @@ +--- +title: "note resource type" +description: "Represents a simple note in the user's Notes folder." +author: "rajeshvulla" +ms.date: 08/07/2026 +ms.localizationpriority: medium +ms.subservice: "outlook" +doc_type: resourcePageType +toc.title: "note" +--- + +# note resource type + +Namespace: microsoft.graph + +Represents a simple note in the user's *Notes* folder. Notes support text content with optional inline image attachments, and are suitable for quick capture scenarios. + +Inherits from [outlookItem](../resources/outlookitem.md). + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[List](../api/user-list-notes.md)|[note](../resources/note.md) collection|Get a list of the [note](../resources/note.md) objects in the user's *Notes* folder.| +|[Create](../api/user-post-notes.md)|[note](../resources/note.md)|Create a new [note](../resources/note.md) in the user's *Notes* folder.| +|[Get](../api/note-get.md)|[note](../resources/note.md)|Read the properties and relationships of a [note](../resources/note.md) object.| +|[Update](../api/note-update.md)|[note](../resources/note.md)|Update the properties of a [note](../resources/note.md) object.| +|[Delete](../api/note-delete.md)|None|Delete a [note](../resources/note.md) object.| +|[Get delta](../api/note-delta.md)|[note](../resources/note.md) collection|Get a set of [note](../resources/note.md) objects that were added, updated, or deleted in the user's *Notes* folder since the last delta query.| +|[List attachments](../api/note-list-attachments.md)|[attachment](../resources/attachment.md) collection|Get the list of file attachments associated with a [note](../resources/note.md).| +|[Create attachment](../api/note-post-attachments.md)|[attachment](../resources/attachment.md)|Create a [fileAttachment](../resources/fileattachment.md) object, which adds an inline image attachment to a [note](../resources/note.md).| +|[Delete attachment](../api/attachment-delete.md)|None|Delete an inline image attachment from a [note](../resources/note.md).| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|body|[itemBody](../resources/itembody.md)|The content of the note. Supports `text` or `html` content types.| +|bodyPreview|String|Auto-generated preview of the note body content (first ~255 characters, plain text). Read-only.| +|categories|String collection|The categories associated with the note. Inherited from [outlookItem](../resources/outlookitem.md).| +|changeKey|String|Version identifier used for optimistic concurrency control via the `If-Match` header. Read-only. Inherited from [outlookItem](../resources/outlookitem.md).| +|createdDateTime|DateTimeOffset|The date and time when the note was created. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Supports `$filter` (`eq`, `ne`, `ge`, `le`, `gt`, `lt`). Read-only. Inherited from [outlookItem](../resources/outlookitem.md).| +|hasAttachments|Boolean|Indicates whether the note has file attachments. Supports `$filter` (`eq`). Read-only.| +|id|String|The unique identifier for the note. Read-only. Inherited from [outlookItem](../resources/outlookitem.md).| +|isDeleted|Boolean|Indicates whether the note is soft-deleted. Read-only.| +|lastModifiedDateTime|DateTimeOffset|The date and time when the note was last modified. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Supports `$filter` (`eq`, `ne`, `ge`, `le`, `gt`, `lt`) and `$orderby`. Read-only. Inherited from [outlookItem](../resources/outlookitem.md).| +|subject|String|The title of the note. Supports `$filter` (`eq`, `ne`, `startsWith`) and `$orderby`.| + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|attachments|[attachment](../resources/attachment.md) collection|The file attachments for the note. Only inline image attachments (image/png, image/jpeg, image/gif, or image/bmp) are supported, with a maximum size of 3 MB per attachment. Use `$expand` to retrieve attachments.| +|extensions|[extension](../resources/extension.md) collection|The collection of open extensions defined for the note.| +|multiValueExtendedProperties|[multiValueLegacyExtendedProperty](../resources/multivaluelegacyextendedproperty.md) collection|The collection of multi-value extended properties defined for the note.| +|singleValueExtendedProperties|[singleValueLegacyExtendedProperty](../resources/singlevaluelegacyextendedproperty.md) collection|The collection of single-value extended properties defined for the note.| + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.note", + "id": "String (identifier)", + "createdDateTime": "String (timestamp)", + "lastModifiedDateTime": "String (timestamp)", + "changeKey": "String", + "categories": [ + "String" + ], + "subject": "String", + "body": { + "@odata.type": "microsoft.graph.itemBody" + }, + "bodyPreview": "String", + "isDeleted": "Boolean", + "hasAttachments": "Boolean" +} +``` diff --git a/api-reference/v1.0/resources/opentypeextension.md b/api-reference/v1.0/resources/opentypeextension.md index 7056804fd44..a9666add275 100644 --- a/api-reference/v1.0/resources/opentypeextension.md +++ b/api-reference/v1.0/resources/opentypeextension.md @@ -27,6 +27,7 @@ The following resources support open extension: + [device](/graph/api/resources/device) + [event](/graph/api/resources/event) for both user and group calendars + [message](/graph/api/resources/message) ++ [note](note.md) + [organization](/graph/api/resources/organization) + [post](/graph/api/resources/post) + [todoTask](todotask.md) @@ -56,7 +57,7 @@ exposes at https://graph.microsoft.com/v1.0/$metadata. | Method | Return Type | Description | |:---------------|:--------|:----------| -|[Create](../api/opentypeextension-post-opentypeextension.md) | [openTypeExtension](../resources/opentypeextension.md)(in an existing resource instance), or a new [todoTask](todotask.md), [todoTaskList](todotasklist.md)[contact](contact.md), [event](event.md), [message](message.md), [post](post.md), [todoTask](todotask.md), or [todoTaskList](todotasklist.md) that contains an openTypeExtension object. | Create an openTypeExtension object in an existing or new resource instance.| +|[Create](../api/opentypeextension-post-opentypeextension.md) | [openTypeExtension](../resources/opentypeextension.md)(in an existing resource instance), or a new [todoTask](todotask.md), [todoTaskList](todotasklist.md), [contact](contact.md), [event](event.md), [message](message.md), [note](note.md), or [post](post.md) that contains an openTypeExtension object. | Create an openTypeExtension object in an existing or new resource instance.| |[Get](../api/opentypeextension-get.md) | [openTypeExtension](opentypeextension.md) |Read properties and relationships of openTypeExtension object.| |[Update](../api/opentypeextension-update.md) | [openTypeExtension](opentypeextension.md) |Update openTypeExtension object. | |[Delete](../api/opentypeextension-delete.md) | None |Delete openTypeExtension object. | diff --git a/api-reference/v1.0/resources/singlevaluelegacyextendedproperty.md b/api-reference/v1.0/resources/singlevaluelegacyextendedproperty.md index 35958c82061..3111672d5ec 100644 --- a/api-reference/v1.0/resources/singlevaluelegacyextendedproperty.md +++ b/api-reference/v1.0/resources/singlevaluelegacyextendedproperty.md @@ -22,8 +22,8 @@ open extensions or extended properties, and how to specify extended properties. | Method | Return Type |Description| |:---------------|:--------|:----------| -|[Create single-value property](../api/singlevaluelegacyextendedproperty-post-singlevalueextendedproperties.md) | A supported resource instance: [message](../resources/message.md), [mailFolder](../resources/mailfolder.md), [event](../resources/event.md), [calendar](../resources/calendar.md), [contact](../resources/contact.md), [contactFolder](../resources/contactfolder.md), or [mailboxFolder](../resources/mailboxfolder.md). Group [post](../resources/post.md) and [mailboxItem](../resources/mailboxitem.md) isn't supported. | Create a **singleValueLegacyExtendedProperty** in a new or existing instance of a supported resource. | -|[Get single-value property](../api/singlevaluelegacyextendedproperty-get.md) |One or a collection of supported resource instance ([message](../resources/message.md), [mailFolder](../resources/mailfolder.md), [event](../resources/event.md), [calendar](../resources/calendar.md), [contact](../resources/contact.md), [contactFolder](../resources/contactfolder.md), [mailboxItem](../resources/mailboxitem.md), [mailboxFolder](../resources/mailboxfolder.md), or group [post](../resources/post.md)), or one such instance expanded with a [singleValueLegacyExtendedProperty](singlevaluelegacyextendedproperty.md) object. |Get a resource instance with an extended property using `$expand` or `$filter`.| +|[Create single-value property](../api/singlevaluelegacyextendedproperty-post-singlevalueextendedproperties.md) | A supported resource instance: [message](../resources/message.md), [mailFolder](../resources/mailfolder.md), [note](../resources/note.md), [event](../resources/event.md), [calendar](../resources/calendar.md), [contact](../resources/contact.md), [contactFolder](../resources/contactfolder.md), or [mailboxFolder](../resources/mailboxfolder.md). Group [post](../resources/post.md) and [mailboxItem](../resources/mailboxitem.md) isn't supported. | Create a **singleValueLegacyExtendedProperty** in a new or existing instance of a supported resource. | +|[Get single-value property](../api/singlevaluelegacyextendedproperty-get.md) |One or a collection of supported resource instance ([message](../resources/message.md), [mailFolder](../resources/mailfolder.md), [note](../resources/note.md), [event](../resources/event.md), [calendar](../resources/calendar.md), [contact](../resources/contact.md), [contactFolder](../resources/contactfolder.md), [mailboxItem](../resources/mailboxitem.md), [mailboxFolder](../resources/mailboxfolder.md), or group [post](../resources/post.md)), or one such instance expanded with a [singleValueLegacyExtendedProperty](singlevaluelegacyextendedproperty.md) object. |Get a resource instance with an extended property using `$expand` or `$filter`.| ## Properties | Property | Type |Description| diff --git a/api-reference/v1.0/resources/user.md b/api-reference/v1.0/resources/user.md index 67237e5e7c5..b6be2c3076d 100644 --- a/api-reference/v1.0/resources/user.md +++ b/api-reference/v1.0/resources/user.md @@ -105,6 +105,8 @@ This resource supports: | [Create rule](../api/mailfolder-post-messagerules.md) | [messageRule](messagerule.md) | Create a messageRule object by specifying a set of conditions and actions. | | [Send mail](../api/user-sendmail.md) | None | Send the message specified in the request body. | | [Get mail tips](../api/user-getmailtips.md) | [mailTips](mailtips.md) collection | Return the MailTips of one or more recipients as available to the signed-in user. | +| [List notes](../api/user-list-notes.md) | [note](note.md) collection | Get a list of the [note](note.md) objects in the user's *Notes* folder. | +| [Create note](../api/user-post-notes.md) | [note](note.md) | Create a new [note](note.md) in the user's *Notes* folder. | | **Notes** | | | | [List notebooks](../api/onenote-list-notebooks.md) | [notebook](notebook.md) collection | Retrieve a list of notebook objects. | | [Create notebook](../api/onenote-post-notebooks.md) | [notebook](notebook.md) | Create a new OneNote notebook. | @@ -329,6 +331,7 @@ For example: Cameron is the administrator of a directory for an elementary schoo |manager|[directoryObject](directoryobject.md)|The user or contact that is this user's manager. Read-only. Supports `$expand`.| |memberOf|[directoryObject](directoryobject.md) collection|The groups and directory roles that the user is a member of. Read-only. Nullable. Supports `$expand`. | |messages|[message](message.md) collection|The messages in a mailbox or folder. Read-only. Nullable.| +|notes|[note](note.md) collection|The notes in the user's *Notes* folder. Read-only. Nullable.| |onenote|[onenote](onenote.md)| Read-only.| |onlineMeetings|[onlineMeeting](onlinemeeting.md) collection| Information about a meeting, including the URL used to join a meeting, the attendees list, and the description. | |outlook|[outlookUser](outlookuser.md)| Read-only.| diff --git a/api-reference/v1.0/toc/mail/toc.yml b/api-reference/v1.0/toc/mail/toc.yml index 75b2e6151d1..63e41811ba0 100644 --- a/api-reference/v1.0/toc/mail/toc.yml +++ b/api-reference/v1.0/toc/mail/toc.yml @@ -170,6 +170,28 @@ items: href: ../../api/messagerule-update.md - name: Delete rule href: ../../api/messagerule-delete.md +- name: note + items: + - name: note + href: ../../resources/note.md + - name: List + href: ../../api/user-list-notes.md + - name: Create + href: ../../api/user-post-notes.md + - name: Get + href: ../../api/note-get.md + - name: Update + href: ../../api/note-update.md + - name: Delete + href: ../../api/note-delete.md + - name: Get delta + href: ../../api/note-delta.md + - name: List attachments + href: ../../api/note-list-attachments.md + - name: Create attachment + href: ../../api/note-post-attachments.md + - name: Delete attachment + href: ../../api/attachment-delete.md - name: Message trace items: - name: Message trace diff --git a/api-reference/v1.0/toc/toc.mapping.json b/api-reference/v1.0/toc/toc.mapping.json index bc4d2ac403b..a85a318b8fb 100644 --- a/api-reference/v1.0/toc/toc.mapping.json +++ b/api-reference/v1.0/toc/toc.mapping.json @@ -1323,6 +1323,7 @@ "mailFolder", "mailSearchFolder", "messageRule", + "note", "exchangeMessageTrace" ], "childNodes": [ diff --git a/api-reference/v1.0/toc/users/toc.yml b/api-reference/v1.0/toc/users/toc.yml index 3ef466f7e5e..2402c04aeaf 100644 --- a/api-reference/v1.0/toc/users/toc.yml +++ b/api-reference/v1.0/toc/users/toc.yml @@ -166,6 +166,10 @@ items: href: ../../api/user-sendmail.md - name: Get mail tips href: ../../api/user-getmailtips.md + - name: List notes + href: ../../api/user-list-notes.md + - name: Create note + href: ../../api/user-post-notes.md - name: Notes items: - name: List notebooks diff --git a/changelog/Microsoft.Exchange.json b/changelog/Microsoft.Exchange.json index 1e9c070f436..028aad74c31 100644 --- a/changelog/Microsoft.Exchange.json +++ b/changelog/Microsoft.Exchange.json @@ -1,5 +1,31 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "c2ee4c0c-8407-5e61-b6d6-efbd9b92b5af", + "ApiChange": "Resource", + "ChangedApiName": "note", + "ChangeType": "Addition", + "Description": "Added the [note](https://learn.microsoft.com/en-us/graph/api/resources/note?view=graph-rest-v1.0) resource and associated methods.", + "Target": "note" + }, + { + "Id": "c2ee4c0c-8407-5e61-b6d6-efbd9b92b5af", + "ApiChange": "Relationship", + "ChangedApiName": "notes", + "ChangeType": "Addition", + "Description": "Added the **notes** relationship to the [user](https://learn.microsoft.com/en-us/graph/api/resources/user?view=graph-rest-v1.0) resource.", + "Target": "user" + } + ], + "Id": "c2ee4c0c-8407-5e61-b6d6-efbd9b92b5af", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-09-01T04:37:15.9215878Z", + "WorkloadArea": "Mail", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 99fb36daeaf..3b8f6f2e1f7 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -55,6 +55,10 @@ Added the [externalOriginResourceConnector](/graph/api/resources/externaloriginr Added support for managing Microsoft 365 cross-tenant capabilities in cross-tenant access policies. Use the [m365CapabilityBase](/graph/api/resources/m365capabilitybase) resource and the **m365Capabilities** relationship to manage which Microsoft 365 experiences—such as calendar sharing, MailTips, places booking, and cross-tenant migration—are enabled between tenants. For the default policy, you can [list](/graph/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities), [create](/graph/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities), and [update](/graph/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities) capabilities. For partner policies, you can [list](/graph/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities), [create](/graph/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities), [update](/graph/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities), and [delete](/graph/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities) capabilities. +### Mail + +- Added the [note](/graph/api/resources/note) resource type and methods to [list](/graph/api/user-list-notes), [create](/graph/api/user-post-notes), [get](/graph/api/note-get), [update](/graph/api/note-update), and [delete](/graph/api/note-delete) quick-capture notes in a user's _Notes_ folder. Use [delta query](/graph/api/note-delta) to synchronize notes that were added, updated, or deleted since the previous request. You can also [list](/graph/api/note-list-attachments), [add](/graph/api/note-post-attachments), and [delete](/graph/api/attachment-delete) inline image attachments, and use open or legacy extended properties to store custom data on a note. + ### Mailbox import and export - Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources/mailboxfolder) resource type in v1.0. Use this property to identify folders created by Outlook by using a locale-independent name. From 129a510b6efe2e7a1390b40b8034e8f313464a0a Mon Sep 17 00:00:00 2001 From: yanxin880526 <327348556@qq.com> Date: Wed, 2 Sep 2026 06:13:13 +0800 Subject: [PATCH 101/189] Add provisioningConfiguration property with domainJoinType to cloudPC resource (beta) (#29330) * Add provisioningConfiguration property with domainJoinType to cloudPC resource (beta) * Update changelog for comments * Fix * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix * Update Microsoft.CloudManagedDesktop.json * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix * Fix * fixes * Apply suggestion from @Danipocket --------- Co-authored-by: Xin Yan Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- api-reference/beta/resources/cloudpc.md | 4 +- .../cloudpcprovisioningconfiguration.md | 43 ++++++++++++++++ api-reference/beta/toc/toc.mapping.json | 1 + changelog/Microsoft.CloudManagedDesktop.json | 50 ++++++++++++++++--- concepts/whats-new-overview.md | 1 + 5 files changed, 90 insertions(+), 9 deletions(-) create mode 100644 api-reference/beta/resources/cloudpcprovisioningconfiguration.md diff --git a/api-reference/beta/resources/cloudpc.md b/api-reference/beta/resources/cloudpc.md index 7910a513e5d..c16002ce2e5 100644 --- a/api-reference/beta/resources/cloudpc.md +++ b/api-reference/beta/resources/cloudpc.md @@ -61,6 +61,7 @@ Represents a cloud-managed virtual desktop. This Cloud PC is also enrolled in In |aadDeviceId|String|The Microsoft Entra device ID of the Cloud PC.| |allotmentDisplayName|String|The allotment name divides tenant licenses into smaller batches or groups that help restrict the number of licenses available for use in a specific assignment. When the **provisioningType** is `dedicated`, the allotment name is `null`. Read-only.| |connectivityResult|[cloudPcConnectivityResult](../resources/cloudpcconnectivityresult.md)|The connectivity health check result of a Cloud PC, including the updated timestamp and whether the Cloud PC can be connected.| +|connectionSetting|[cloudPcConnectionSetting](../resources/cloudpcconnectionsetting.md)|The connection setting of the Cloud PC. Possible values: `enableSingleSignOn`. Read-only.| |deviceRegionName|String|The name of the geographical region where the Cloud PC is currently provisioned. For example, `westus3`, `eastus2`, and `southeastasia`. Read-only.| |disasterRecoveryCapability|[cloudPcDisasterRecoveryCapability](../resources/cloudpcdisasterrecoverycapability.md)|The disaster recovery status of the Cloud PC, including the primary region, secondary region, and capability type. The default value is `null` that indicates that the disaster recovery setting is disabled. To receive a response with the **disasterRecoveryCapability** property, `$select` and `$filter` it by `disasterRecoveryCapability/{subProperty}` in the request URL. For more information, see [Example 3: List Cloud PCs filtered by disaster recovery capability type](../api/virtualendpoint-list-cloudpcs.md#example-3-list-cloud-pcs-filtered-by-disaster-recovery-capability-type). Read-only. | |diskEncryptionState|[cloudPcDiskEncryptionState](#cloudpcdiskencryptionstate-values)|The disk encryption applied to the Cloud PC. Possible values: `notAvailable`, `notEncrypted`, `encryptedUsingPlatformManagedKey`, `encryptedUsingCustomerManagedKey`, and `unknownFutureValue`.| @@ -81,6 +82,7 @@ Represents a cloud-managed virtual desktop. This Cloud PC is also enrolled in In |powerState|[cloudPcPowerState](#cloudpcpowerstate-values)|The power state of a Cloud PC. The possible values are: `running`, `poweredOff`, `unknown`. This property only supports shift work Cloud PCs.| |productType|[cloudPcProductType](#cloudpcproducttype-values)|The product type of the Cloud PC. The possible values are: `enterprise`, `frontline`, `devBox`, `powerAutomate`, `business`, `unknownFutureValue`. For the available service plans and pricing for `enterprise`, `frontline`, and `business`, see [Windows 365 for business](https://www.microsoft.com/windows-365). For pricing information for `devBox`, see [Microsoft Dev Box pricing](https://azure.microsoft.com/pricing/details/dev-box#pricing). For the available plans and pricing for `powerAutomate`, see [Power Automate pricing](https://www.microsoft.com/en-us/power-platform/products/power-automate/pricing#compare-plans). The default value is `enterprise`. Supports `$filter` and `$select`. For more information, see [Example 4: List Cloud PCs filtered by product type](../api/virtualendpoint-list-cloudpcs.md#example-4-list-cloud-pcs-filtered-by-product-type). Read-only. | |provisionedDateTime|DateTimeOffset|The latest provisioned date and time, automatically generated and assigned during the initial provisioning or any subsequent reprovisioning of the Cloud PC. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`.| +|provisioningConfiguration|[cloudPcProvisioningConfiguration](../resources/cloudpcprovisioningconfiguration.md)|The policy-derived configuration of the Cloud PC. Contains properties inherited from the provisioning policy that were applied during the most recent provisioning or reprovisioning. Returned only when explicitly selected with `$select`. Read-only.| |provisioningPolicyId|String|The provisioning policy ID of the Cloud PC.| |provisioningPolicyName|String|The provisioning policy that is applied during the provisioning of Cloud PCs.| |provisioningType|[cloudPcProvisioningType](../resources/cloudpcprovisioningpolicy.md#cloudpcprovisioningtype-values)|The type of licenses to be used when provisioning Cloud PCs using this policy. The possible values are: `dedicated`, `shared`, `unknownFutureValue`, `sharedByUser`, `sharedByEntraGroup`, `reserve`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `sharedByUser`, `sharedByEntraGroup`, `reserve`. The default value is `dedicated`. The `shared` member is deprecated and will stop returning on April 30, 2027; going forward, use the `sharedByUser` member. | @@ -91,7 +93,6 @@ Represents a cloud-managed virtual desktop. This Cloud PC is also enrolled in In |sharedDeviceDetail|[cloudPcFrontlineSharedDeviceDetail](../resources/cloudpcfrontlineshareddevicedetail.md)|Indicates the Cloud PC device details associated with the frontline shared service plan, including the user's UPN and the session start date and time.| |status|[cloudPcStatus](#cloudpcstatus-values)|The status of the Cloud PC. The possible values are: `notProvisioned`, `provisioning`, `provisioned`, `inGracePeriod`, `deprovisioning`, `failed`, `provisionedWithWarnings`, `resizing`, `restoring`, `pendingProvision`, `unknownFutureValue`, `movingRegion`, `resizePendingLicense`, `modifyingSingleSignOn`, `refreshPolicyConfiguration`, and `preparing`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `movingRegion`, `resizePendingLicense`, `modifyingSingleSignOn`, `refreshPolicyConfiguration`, and `preparing`.| |statusDetail|[cloudPcStatusDetail](../resources/cloudpcstatusdetail.md)|Indicates the detailed status associated with Cloud PC, including error/warning code, error/warning message, additionalInformation. For example, `{ "code": "internalServerError", "message": "There was an error during the Cloud PC upgrade. Please contact support.", "additionalInformation": null }`. | -|connectionSetting|[cloudPcConnectionSetting](../resources/cloudpcconnectionsetting.md)|The connection setting of the Cloud PC. Possible values: `enableSingleSignOn`. Read-only.| |userAccountType|[cloudPcUserAccountType](../resources/cloudpcorganizationsettings.md#cloudpcuseraccounttype-values)|The account type of the user on provisioned Cloud PCs. The possible values are: `standardUser`, `administrator`, `unknownFutureValue`.| |userExperienceType|[cloudPcUserExperienceType](../resources/cloudpcprovisioningpolicy.md#cloudpcuserexperiencetype-values)|Specifies the type of cloud object the end user can access. The possible values are: `cloudPc`, `cloudApp`, `unknownFutureValue`. When set to `cloudPc`, it indicates that the end user can access the entire desktop. When set to `cloudApp`, it indicates that the end user can only access cloud apps published under the associated provisioning policy. Since the cloud app experience also creates Cloud PC devices that appear in the Cloud PC device list, this property helps differentiate them. The default value is `cloudPc`. This property is defined in the provisioning policy.| |userDetail|[cloudPcEntraUserDetail](../resources/cloudpcentrauserdetail.md)|The user details (for example, ID and display name) for the user associated with a Reserve Cloud PC assignment. Read-only.| @@ -207,6 +208,7 @@ The following JSON representation shows the resource type. "powerState": "String", "productType": "String", "provisionedDateTime": "String (timestamp)", + "provisioningConfiguration": {"@odata.type": "microsoft.graph.cloudPcProvisioningConfiguration"}, "provisioningPolicyId": "String", "provisioningPolicyName": "String", "provisioningType": "String", diff --git a/api-reference/beta/resources/cloudpcprovisioningconfiguration.md b/api-reference/beta/resources/cloudpcprovisioningconfiguration.md new file mode 100644 index 00000000000..ef7a89e4cc0 --- /dev/null +++ b/api-reference/beta/resources/cloudpcprovisioningconfiguration.md @@ -0,0 +1,43 @@ +--- +title: "cloudPcProvisioningConfiguration resource type" +description: "Represents the policy-derived configuration applied to a Cloud PC during provisioning." +author: "danipocket" +ms.localizationpriority: medium +ms.subservice: "cloud-pc" +doc_type: resourcePageType +ms.date: 07/22/2026 +--- + +# cloudPcProvisioningConfiguration resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the policy-derived configuration applied to a Cloud PC during provisioning. Contains properties inherited from the provisioning policy that were applied during the most recent provisioning or reprovisioning. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|domainJoinType|[cloudPcDomainJoinType](../resources/cloudpcdomainjoinconfiguration.md#cloudpcdomainjointype-values)|Specifies the method by which the Cloud PC is joined to Microsoft Entra ID. The possible values are: `azureADJoin`, `hybridAzureADJoin`, `unknownFutureValue`. Read-only.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.cloudPcProvisioningConfiguration", + "domainJoinType": "String" +} +``` diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 69fba982cc6..87235328944 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -688,6 +688,7 @@ "cloudPcPartnerAgentInstallResult", "cloudPcPolicyPendingApplyStatusResult", "cloudPcPoolCapabilityConfiguration", + "cloudPcProvisioningConfiguration", "cloudPcProvisioningPolicyAssignment", "cloudPcProvisioningPolicyAutopatch", "cloudPcRegionGroupConfiguration", diff --git a/changelog/Microsoft.CloudManagedDesktop.json b/changelog/Microsoft.CloudManagedDesktop.json index 18a752ae3a3..e6b8aad4051 100644 --- a/changelog/Microsoft.CloudManagedDesktop.json +++ b/changelog/Microsoft.CloudManagedDesktop.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "a3f7c2e1-9d84-4b6a-8e2f-1c5d7a3b9e04", + "ApiChange": "Resource", + "ChangedApiName": "cloudPcProvisioningConfiguration", + "ChangeType": "Addition", + "Description": "Added the [cloudPcProvisioningConfiguration](https://learn.microsoft.com/en-us/graph/api/resources/cloudpcprovisioningconfiguration?view=graph-rest-beta) resource.", + "Target": "cloudPcProvisioningConfiguration" + }, + { + "Id": "a3f7c2e1-9d84-4b6a-8e2f-1c5d7a3b9e04", + "ApiChange": "Property", + "ChangedApiName": "provisioningConfiguration", + "ChangeType": "Addition", + "Description": "Added the **provisioningConfiguration** property to the [cloudPC](https://learn.microsoft.com/en-us/graph/api/resources/cloudpc?view=graph-rest-beta) resource.", + "Target": "cloudPC" + }, + { + "Id": "a3f7c2e1-9d84-4b6a-8e2f-1c5d7a3b9e04", + "ApiChange": "Property", + "ChangedApiName": "domainJoinType", + "ChangeType": "Addition", + "Description": "Added the **domainJoinType** property to the [cloudPcProvisioningConfiguration](https://learn.microsoft.com/en-us/graph/api/resources/cloudpcprovisioningconfiguration?view=graph-rest-beta) resource.", + "Target": "cloudPcProvisioningConfiguration" + } + ], + "Id": "a3f7c2e1-9d84-4b6a-8e2f-1c5d7a3b9e04", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-01T00:00:00.0000000Z", + "WorkloadArea": "Device and app management", + "SubArea": "Cloud PC" + }, { "ChangeList": [ { @@ -7,23 +41,23 @@ "ApiChange": "Property", "ChangedApiName": "snapshotResetMode", "ChangeType": "Addition", - "Description": "Added the **snapshotResetMode** property to the [cloudPcProvisioningPolicy](https://learn.microsoft.com/en-us/graph/api/resources/cloudpcprovisioningpolicy?view=graph-rest-beta&preserve-view=true) resource.", + "Description": "Added the **snapshotResetMode** property to the [cloudPcProvisioningPolicy](https://learn.microsoft.com/en-us/graph/api/resources/cloudpcprovisioningpolicy?view=graph-rest-beta) resource.", "Target": "cloudPcProvisioningPolicy" }, { - "Id": "b3813e0c-1e96-4d6e-8162-cf5c4c5a9063", - "ApiChange": "Enumeration", - "ChangedApiName": "cloudPcSnapshotResetMode", - "ChangeType": "Addition", - "Description": "Added the [cloudPcSnapshotResetMode](https://learn.microsoft.com/en-us/graph/api/resources/cloudpcprovisioningpolicy?view=graph-rest-beta&preserve-view=true#cloudpcsnapshotresetmode-values) enumeration type.", - "Target": "cloudPcSnapshotResetMode" + "Id": "b3813e0c-1e96-4d6e-8162-cf5c4c5a9063", + "ApiChange": "Enumeration", + "ChangedApiName": "cloudPcSnapshotResetMode", + "ChangeType": "Addition", + "Description": "Added the [cloudPcSnapshotResetMode](https://learn.microsoft.com/en-us/graph/api/resources/cloudpcprovisioningpolicy?view=graph-rest-beta#cloudpcsnapshotresetmode-values) enumeration type.", + "Target": "cloudPcSnapshotResetMode" } ], "Id": "b3813e0c-1e96-4d6e-8162-cf5c4c5a9063", "Cloud": "Prod", "Version": "beta", "CreatedDateTime": "2026-07-28T00:00:00.000Z", - "WorkloadArea": "Devices and app management", + "WorkloadArea": "Device and app management", "SubArea": "Cloud PC" }, { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 3b8f6f2e1f7..1daa5e936c7 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -175,6 +175,7 @@ Added the **vapidPublicKey**, **webPushEncryptionP256dhPublicKey**, and **webPus ### Device and app management | Cloud PC +- Added the **provisioningConfiguration** property to the [cloudPC](/graph/api/resources/cloudpc?view=graph-rest-beta&preserve-view=true) resource. Use it to retrieve the policy-derived configuration that was applied during provisioning, including the domain join type. - Updated [retrieveCloudPcTroubleshootReports](/graph/api/cloudpcreports-retrievecloudpctroubleshootreports?view=graph-rest-beta&preserve-view=true) on the [cloudPcReports](/graph/api/resources/cloudpcreports?view=graph-rest-beta&preserve-view=true) resource to support new troubleshooting report types across tenant, configuration, user and device, and view data table scopes. - [Create](/graph/api/virtualendpoint-post-cloudapps?view=graph-rest-beta&preserve-view=true) or [delete](/graph/api/cloudpccloudapp-delete?view=graph-rest-beta&preserve-view=true) a [cloud app](/graph/api/resources/cloudpccloudapp?view=graph-rest-beta&preserve-view=true). - Extended the **appDetail** property on [cloudPcCloudApp](/graph/api/resources/cloudpccloudapp?view=graph-rest-beta&preserve-view=true) to support the [cloudPcAutomaticDiscoveredAppDetail](/graph/api/resources/cloudpcautomaticdiscoveredappdetail?view=graph-rest-beta&preserve-view=true) type for apps automatically discovered from the *start* menu, and the [cloudPcFilePathAppDetail](/graph/api/resources/cloudpcfilepathappdetail) type for apps manually created when a file path is specified. From 070ad6fbb3a109013a68658c7571ce4f5ecf9612 Mon Sep 17 00:00:00 2001 From: adamben04 <109113430+adamben04@users.noreply.github.com> Date: Tue, 1 Sep 2026 15:53:02 -0700 Subject: [PATCH 102/189] Document coopEnforcement on authenticationBehaviors for v1.0 GA (#29471) * Document coopEnforcement on authenticationBehaviors for Graph v1.0 GA - Add v1.0 resource page (promoted from beta, no deviations) - Update how-to for v1.0 endpoints; remove beta-only limitation note - Changelog DirectoryServices v1.0 addition - Whats-new link no longer forces beta view Pairs with AGS PR 16882574. Do not treat as live until v1.0 metadata publishes. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: b941943f-9aee-484e-bf0e-a09c1772b1b0 * Address Celeste content review on coopEnforcement v1.0 docs - Add authenticationBehaviors to v1.0 application.md properties + JSON - Add authenticationBehaviors to v1.0 toc.mapping.json complexTypes - Restore changelog from main; add only v1.0 coopEnforcement entry (same Id) - Keep historical beta changelog entry; no historical CreatedDateTime edits - Restore how-to from main; dual v1.0/beta note; v1.0 HTTP; keep SDK includes - Add GA What's New entry; keep beta preview entry with beta view link - Resource page: Methods None; national-cloud note near top Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: b941943f-9aee-484e-bf0e-a09c1772b1b0 * fixes * Update applications-authenticationbehaviors.md * Update reference TOC * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update Microsoft.DirectoryServices.json * Document coopEnforcement on authenticationBehaviors for Graph v1.0 GA - Add v1.0 resource page (promoted from beta, no deviations) - Update how-to for v1.0 endpoints; remove beta-only limitation note - Changelog DirectoryServices v1.0 addition - Whats-new link no longer forces beta view Pairs with AGS PR 16882574. Do not treat as live until v1.0 metadata publishes. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: b941943f-9aee-484e-bf0e-a09c1772b1b0 * Address Celeste content review on coopEnforcement v1.0 docs - Add authenticationBehaviors to v1.0 application.md properties + JSON - Add authenticationBehaviors to v1.0 toc.mapping.json complexTypes - Restore changelog from main; add only v1.0 coopEnforcement entry (same Id) - Keep historical beta changelog entry; no historical CreatedDateTime edits - Restore how-to from main; dual v1.0/beta note; v1.0 HTTP; keep SDK includes - Add GA What's New entry; keep beta preview entry with beta view link - Resource page: Methods None; national-cloud note near top Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: b941943f-9aee-484e-bf0e-a09c1772b1b0 * Apply suggestion from @Danipocket --------- Co-authored-by: Adam Benazouz Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Copilot-Session: b941943f-9aee-484e-bf0e-a09c1772b1b0 --- api-reference/v1.0/resources/application.md | 2 + .../v1.0/resources/authenticationbehaviors.md | 56 ++ api-reference/v1.0/toc/applications/toc.yml | 4 + api-reference/v1.0/toc/toc.mapping.json | 3 + changelog/Microsoft.DirectoryServices.json | 156 +++--- .../applications-authenticationbehaviors.md | 515 +----------------- concepts/whats-new-overview.md | 5 + 7 files changed, 188 insertions(+), 553 deletions(-) create mode 100644 api-reference/v1.0/resources/authenticationbehaviors.md diff --git a/api-reference/v1.0/resources/application.md b/api-reference/v1.0/resources/application.md index ced572a7453..780b48344a6 100644 --- a/api-reference/v1.0/resources/application.md +++ b/api-reference/v1.0/resources/application.md @@ -69,6 +69,7 @@ This resource supports: | appId | String | The unique identifier for the application that is assigned to an application by Microsoft Entra ID. Not nullable. Read-only. Alternate key. Supports `$filter` (`eq`). | | applicationTemplateId | String | Unique identifier of the [applicationTemplate](../resources/applicationtemplate.md). Supports `$filter` (`eq`, `not`, `ne`). Read-only. `null` if the app wasn't created from an application template.| | appRoles | [appRole](approle.md) collection | The collection of roles defined for the application. With [app role assignments](approleassignment.md), these roles can be assigned to users, groups, or service principals associated with other applications. Not nullable. | +|authenticationBehaviors|[authenticationBehaviors](../resources/authenticationbehaviors.md)| The set of breaking change behaviors related to token issuance that are configured for the application. Authentication behaviors are unset by default (`null`) and must be explicitly enabled or disabled. Nullable. Returned only on `$select`. Requires `$select` to retrieve.

For more information about authentication behaviors, see [Manage application authenticationBehaviors](/graph/applications-authenticationbehaviors).| |certification|[certification](certification.md)|Specifies the certification status of the application.| |createdByAppId|String|The **appId** of the application that created this application. Set internally by Microsoft Entra ID. Read-only.| | createdDateTime | DateTimeOffset | The date and time the application was registered. The DateTimeOffset type represents date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`. Read-only.

Supports `$filter` (`eq`, `ne`, `not`, `ge`, `le`, `in`, and `eq` on `null` values) and `$orderby`. | @@ -159,6 +160,7 @@ The following JSON representation shows the resource type. "appId": "String", "applicationTemplateId": "String", "appRoles": [{"@odata.type": "microsoft.graph.appRole"}], + "authenticationBehaviors": {"@odata.type": "microsoft.graph.authenticationBehaviors"}, "certification": {"@odata.type": "microsoft.graph.certification"}, "createdByAppId": "String", "createdDateTime": "String (timestamp)", diff --git a/api-reference/v1.0/resources/authenticationbehaviors.md b/api-reference/v1.0/resources/authenticationbehaviors.md new file mode 100644 index 00000000000..19be43ce9b0 --- /dev/null +++ b/api-reference/v1.0/resources/authenticationbehaviors.md @@ -0,0 +1,56 @@ +--- +title: "authenticationBehaviors resource type" +description: "Authentication behaviors provide applications flexibility in adopting breaking-change behaviors related to token issuance." +author: "medhir" +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +ms.date: 08/20/2026 +--- + +# authenticationBehaviors resource type + +Namespace: microsoft.graph + +Describes the authentication behaviors set in the context of an [application](application.md). Authentication behaviors are Boolean flags that provide applications flexibility in adopting breaking-change behaviors related to token issuance. These updated token issuance behaviors can be related to security mitigations, security improvements, or feature deprecations. + +Applications can adopt new breaking changes by enabling a behavior (set the behavior to `true`), or continue using preexisting behavior by disabling it (by setting the behavior to `false`). For more information about managing authentication behaviors, see [Manage application authenticationBehaviors](/graph/applications-authenticationbehaviors). + +> [!NOTE] +> The **coopEnforcement** property isn't available in national cloud deployments. It's available only for the global service. + +## Methods +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|blockAzureADGraphAccess|Boolean| If `false`, allows the app to have extended access to Azure AD Graph until August 31, 2025 when Azure AD Graph is fully retired. For more information on Azure AD retirement updates, see [June 2024 update on Azure AD Graph API retirement](https://techcommunity.microsoft.com/t5/microsoft-entra-blog/june-2024-update-on-azure-ad-graph-api-retirement/ba-p/4094534).| +|coopEnforcement|Boolean|Indicates whether Cross-Origin-Opener-Policy (COOP) headers are enforced on browser-based authentication responses for the application. Set to `true` to enable enforcement, `false` to temporarily suppress enforcement, or `null` to use the service default. For how-to guidance, see [Control Cross-Origin-Opener-Policy enforcement](/graph/applications-authenticationbehaviors#control-cross-origin-opener-policy-enforcement).| +|removeUnverifiedEmailClaim|Boolean| If `true`, removes the `email` claim from tokens sent to an application when the email address's domain can't be verified. | +|requireClientServicePrincipal|Boolean| If `true`, requires multitenant applications to have a service principal in the resource tenant as part of authorization checks before they're granted access tokens. This property is only modifiable for multitenant resource applications that rely on access from clients without a service principal and had this behavior as set to `false` by Microsoft. Tenant administrators should respond to security advisories sent through Azure Health Service events and the Microsoft 365 message center.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.authenticationBehaviors", + "blockAzureADGraphAccess": "Boolean", + "coopEnforcement": "Boolean", + "removeUnverifiedEmailClaim": "Boolean", + "requireClientServicePrincipal": "Boolean" +} +``` + +## Related content + +- [How-to: Manage application authenticationBehaviors](/graph/applications-authenticationbehaviors) +- [Control Cross-Origin-Opener-Policy enforcement](/graph/applications-authenticationbehaviors#control-cross-origin-opener-policy-enforcement) diff --git a/api-reference/v1.0/toc/applications/toc.yml b/api-reference/v1.0/toc/applications/toc.yml index e56c06074cb..4257e01dc10 100644 --- a/api-reference/v1.0/toc/applications/toc.yml +++ b/api-reference/v1.0/toc/applications/toc.yml @@ -156,6 +156,10 @@ items: href: ../../api/tokenlifetimepolicy-delete.md - name: List applied to applications href: ../../api/tokenlifetimepolicy-list-appliesto.md + - name: Complex types + items: + - name: Authentication behaviors + href: ../../resources/authenticationbehaviors.md - name: Application template items: - name: Application template diff --git a/api-reference/v1.0/toc/toc.mapping.json b/api-reference/v1.0/toc/toc.mapping.json index a85a318b8fb..f5f00057c40 100644 --- a/api-reference/v1.0/toc/toc.mapping.json +++ b/api-reference/v1.0/toc/toc.mapping.json @@ -33,6 +33,9 @@ "extensionProperty", "federatedIdentityCredential" ], + "complexTypes": [ + "authenticationBehaviors" + ], "childNodes": [ { "name": "Policies", diff --git a/changelog/Microsoft.DirectoryServices.json b/changelog/Microsoft.DirectoryServices.json index 8f9c3801e1d..08a9f10d15e 100644 --- a/changelog/Microsoft.DirectoryServices.json +++ b/changelog/Microsoft.DirectoryServices.json @@ -1,5 +1,31 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "4e821702-9d41-46ca-b95d-e64f37c2361f", + "ApiChange": "Resource", + "ChangedApiName": "authenticationBehaviors", + "ChangeType": "Addition", + "Description": "Added the [authenticationBehaviors](https://learn.microsoft.com/en-us/graph/api/resources/authenticationbehaviors?view=graph-rest-1.0) resource type.", + "Target": "authenticationBehaviors" + }, + { + "Id": "4e821702-9d41-46ca-b95d-e64f37c2361f", + "ApiChange": "Property", + "ChangedApiName": "authenticationBehaviors", + "ChangeType": "Addition", + "Description": "Added the **authenticationBehaviors** property to the [application](https://learn.microsoft.com/en-us/graph/api/resources/application?view=graph-rest-1.0) resource.", + "Target": "application" + } + ], + "Id": "4e821702-9d41-46ca-b95d-e64f37c2361f", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-09-01T00:00:00.0000000Z", + "WorkloadArea": "Applications", + "SubArea": "Application management" + }, { "ChangeList": [ { @@ -150,7 +176,7 @@ "Id": "f1a1c4e2-9b3d-4a7e-8c2f-1d4e6a8b9c0d", "Cloud": "Prod", "Version": "beta", - "CreatedDateTime": "2026-07-15T20:15:00.0000000Z", + "CreatedDateTime": "2026-07-15T20:15:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -184,7 +210,7 @@ "Id": "1322d67b-062b-4bf1-94ff-e352030120aa", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2026-07-08T00:00:00.0000000Z", + "CreatedDateTime": "2026-07-08T00:00:00Z", "WorkloadArea": "Groups", "SubArea": "" }, @@ -236,7 +262,7 @@ "Id": "a1b2c3d4-e5f6-7890-abcd-ef1234567890", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2026-07-03T00:00:00.0000000Z", + "CreatedDateTime": "2026-07-03T00:00:00Z", "WorkloadArea": "Users", "SubArea": "" }, @@ -998,7 +1024,7 @@ "Id": "a1b2c3d4-e5f6-4a7b-8c9d-0e1f2a3b4c5d", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2026-01-13T00:00:00.0000000Z", + "CreatedDateTime": "2026-01-13T00:00:00Z", "WorkloadArea": "Groups", "SubArea": "" }, @@ -1108,7 +1134,7 @@ "Id": "ff464a5e-0f4e-4dbc-bded-d0437c83fe65", "Cloud": "Prod", "Version": "beta", - "CreatedDateTime": "2026-04-23T00:00:00.000Z", + "CreatedDateTime": "2026-04-23T00:00:00Z", "WorkloadArea": "Tenants", "SubArea": "Cross-tenant access" }, @@ -1212,7 +1238,7 @@ "Id": "a0f2cefd-9f4c-4d53-a662-2f2ba2202b5d", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2025-09-04T19:55:00.0000000Z", + "CreatedDateTime": "2025-09-04T19:55:00Z", "WorkloadArea": "Applications", "SubArea": "" }, @@ -1230,7 +1256,7 @@ "Id": "6660c8ae-bef6-48f8-b2b5-d0c315b9eb43", "Cloud": "Prod", "Version": "beta", - "CreatedDateTime": "2025-09-04T19:55:00.0000000Z", + "CreatedDateTime": "2025-09-04T19:55:00Z", "WorkloadArea": "Applications", "SubArea": "" }, @@ -1314,7 +1340,7 @@ "Id": "953a488b-df04-494e-a18e-3ae9c92e0a9b", "Cloud": "Prod", "Version": "beta", - "CreatedDateTime": "2025-08-22T00:00:00.0000000Z", + "CreatedDateTime": "2025-08-22T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Identity and sign-in" }, @@ -1856,7 +1882,7 @@ "Id": "e535cb78-71cd-4e70-86e1-99b689bb30a4", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2024-10-21T00:00:00.000Z", + "CreatedDateTime": "2024-10-21T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -2072,7 +2098,7 @@ "Id": "cf36e724-9cf6-4325-b375-0f64652d11d5", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2025-06-26T00:00:00.000Z", + "CreatedDateTime": "2025-06-26T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -2106,7 +2132,7 @@ "Id": "3ea44add-bba5-48f7-9c74-1f1588d988d5", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2024-10-29T00:00:00.000Z", + "CreatedDateTime": "2024-10-29T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -2140,7 +2166,7 @@ "Id": "36220714-8e43-47b9-a677-d466f08333b5", "Cloud": "Prod", "Version": "beta", - "CreatedDateTime": "2024-07-31T00:00:00.000Z", + "CreatedDateTime": "2024-07-31T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -2174,7 +2200,7 @@ "Id": "1cbe4b09-55a8-4248-91c4-10d641f6b0cb", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2024-09-16T00:00:00.000Z", + "CreatedDateTime": "2024-09-16T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -2942,7 +2968,7 @@ "Id": "774986b3-d401-40fe-ac0e-e2a8e0b66d22", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2024-04-23T00:00:00.000Z", + "CreatedDateTime": "2024-04-23T00:00:00Z", "WorkloadArea": "Tenants", "SubArea": "Multitenant organization" }, @@ -3290,7 +3316,7 @@ "Id": "8f05b5ef-fbdd-4990-a11f-ed8493585072", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2023-08-18T00:00:00.000Z", + "CreatedDateTime": "2023-08-18T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -3506,7 +3532,7 @@ "Id": "12f096a3-6bd8-49db-8753-24c9272a288b", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2023-06-09T00:00:00.000Z", + "CreatedDateTime": "2023-06-09T00:00:00Z", "WorkloadArea": "Identity and Access", "SubArea": "Directory management" }, @@ -3654,7 +3680,7 @@ "Id": "550c269a-e3c6-43e8-b3b7-cc251dbf755e", "Cloud": "Prod", "Version": "beta", - "CreatedDateTime": "2023-08-24T00:00:00.000Z", + "CreatedDateTime": "2023-08-24T00:00:00Z", "WorkloadArea": "Tenants", "SubArea": "Multitenant organization" }, @@ -3840,7 +3866,7 @@ "Id": "70fbd967-1f31-4c82-8532-8db6ec6e9007", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2023-05-11T00:00:00.000Z", + "CreatedDateTime": "2023-05-11T00:00:00Z", "WorkloadArea": "Tenants", "SubArea": "Cross-tenant access" }, @@ -4084,7 +4110,7 @@ "Id": "2dca7e8b-c8af-45c1-9fa6-f108e93d8562", "Cloud": "prd", "Version": "v1.0", - "CreatedDateTime": "2023-03-22T09:02:13.750Z", + "CreatedDateTime": "2023-03-22T09:02:13.75Z", "WorkloadArea": "Identity and access", "SubArea": "Identity and sign-in" }, @@ -4110,7 +4136,7 @@ "Id": "ebcb5d06-adbe-48b2-bd6d-46e5f6b3d759", "Cloud": "prd", "Version": "v1.0", - "CreatedDateTime": "2023-03-22T00:00:00.750Z", + "CreatedDateTime": "2023-03-22T00:00:00.75Z", "WorkloadArea": "Applications", "SubArea": "" }, @@ -4152,7 +4178,7 @@ "Id": "081f222d-0ccd-42bd-aff6-3455f608f9d5", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2023-02-17T00:00:00.750Z", + "CreatedDateTime": "2023-02-17T00:00:00.75Z", "WorkloadArea": "Identity and access", "SubArea": "Identity and sign-in" }, @@ -4396,7 +4422,7 @@ "Id": "19cc5fe8-13f2-4257-93c6-7ff1ca8581d5", "Cloud": "Prod", "Version": "beta", - "CreatedDateTime": "2023-01-23T00:00:00.000Z", + "CreatedDateTime": "2023-01-23T00:00:00Z", "WorkloadArea": "Tenants", "SubArea": "Cross-tenant access" }, @@ -4544,7 +4570,7 @@ "Id": "707d79e1-4543-4938-ae9c-044c46dacc30", "Cloud": "Prod", "Version": "v1.0", - "CreatedDateTime": "2022-09-08T00:00:00.0000000Z", + "CreatedDateTime": "2022-09-08T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -4570,7 +4596,7 @@ "Id": "37dcf6ec-0705-446c-928d-dd3309c6afed", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2023-09-01T00:00:00.000Z", + "CreatedDateTime": "2023-09-01T00:00:00Z", "WorkloadArea": "Identity and Access", "SubArea": "Directory management" }, @@ -4858,7 +4884,7 @@ "Id": "b02837fc-7288-4c68-90d5-81d06df2a58f", "Cloud": "prd", "Version": "v1.0", - "CreatedDateTime": "2022-11-16T00:00:00.000Z", + "CreatedDateTime": "2022-11-16T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -4884,7 +4910,7 @@ "Id": "39294ea4-803b-4343-8cef-2b9ed4d1a86b", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2022-11-18T00:00:00.000Z", + "CreatedDateTime": "2022-11-18T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -4910,7 +4936,7 @@ "Id": "57605124-495d-44fe-82ed-98dff8bb9c17", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2022-07-13T00:00:00.000Z", + "CreatedDateTime": "2022-07-13T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -4936,7 +4962,7 @@ "Id": "cab24518-1fdb-44a8-997b-2a6a07e8e15c", "Cloud": "prd", "Version": "v1.0", - "CreatedDateTime": "2022-07-13T00:00:00.000Z", + "CreatedDateTime": "2022-07-13T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -5304,7 +5330,7 @@ "Id": "3502cca7-ee24-4cbe-8d84-0210e9be406e", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2022-06-09T00:00:00.000Z", + "CreatedDateTime": "2022-06-09T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -5760,7 +5786,7 @@ "Id": "daa9406f-39d6-48fc-aaa4-452a7494b05c", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2022-11-04T00:00:00.000Z", + "CreatedDateTime": "2022-11-04T00:00:00Z", "WorkloadArea": "Identity and Access", "SubArea": "Directory management" }, @@ -5812,7 +5838,7 @@ "Id": "37231272-8d44-4c8e-8d75-0758790a53a9", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2022-02-25T00:00:00.000Z", + "CreatedDateTime": "2022-02-25T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -6028,7 +6054,7 @@ "Id": "1c8b1db6-2c25-402f-9bcd-3f5f0fae5a53", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2022-02-24T00:00:00.000Z", + "CreatedDateTime": "2022-02-24T00:00:00Z", "WorkloadArea": "Identity and Access", "SubArea": "Directory management" }, @@ -6576,7 +6602,7 @@ "Id": "68e26d5b-6671-460f-9783-1139f53cc92c", "Cloud": "prd", "Version": "v1.0", - "CreatedDateTime": "2021-12-06T00:00:00.000Z", + "CreatedDateTime": "2021-12-06T00:00:00Z", "WorkloadArea": "Identity and Access", "SubArea": "Governance" }, @@ -6620,7 +6646,7 @@ "Id": "4bf37336-391f-4ce3-909b-03314160aade", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-12-01T00:00:00.000Z", + "CreatedDateTime": "2021-12-01T00:00:00Z", "WorkloadArea": "Identity and Access", "SubArea": "Directory management" }, @@ -6690,7 +6716,7 @@ "Id": "4bf37336-391f-4ce3-909b-03314160aade", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-11-03T00:00:00.000Z", + "CreatedDateTime": "2021-11-03T00:00:00Z", "WorkloadArea": "Identity and Access", "SubArea": "Directory management" }, @@ -7692,7 +7718,7 @@ "Id": "2dca7e8b-c8af-45c1-9fa6-f108e93d8562", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-07-15T09:02:13.750Z", + "CreatedDateTime": "2021-07-15T09:02:13.75Z", "WorkloadArea": "Identity and access", "SubArea": "Identity and sign-in" }, @@ -7718,7 +7744,7 @@ "Id": "ebcb5d06-adbe-48b2-bd6d-46e5f6b3d759", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-07-15T09:02:13.750Z", + "CreatedDateTime": "2021-07-15T09:02:13.75Z", "WorkloadArea": "Applications", "SubArea": "" }, @@ -7760,7 +7786,7 @@ "Id": "224526a5-09a4-4895-9b8b-40e8984a4111", "Cloud": "prd", "Version": "v1.0", - "CreatedDateTime": "2021-07-17T00:00:00.000Z", + "CreatedDateTime": "2021-07-17T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Identity and sign-in" }, @@ -7830,7 +7856,7 @@ "Id": "e114cd2d-6d20-498d-a61e-623baee7e0f1", "Cloud": "prd", "Version": "v1.0", - "CreatedDateTime": "2021-07-07T08:55:18.080Z", + "CreatedDateTime": "2021-07-07T08:55:18.08Z", "WorkloadArea": "User", "SubArea": "" }, @@ -7848,7 +7874,7 @@ "Id": "557dafe0-9914-4346-a608-ee46032a0f7a", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-06-30T08:55:18.080Z", + "CreatedDateTime": "2021-06-30T08:55:18.08Z", "WorkloadArea": "User", "SubArea": "" }, @@ -7890,7 +7916,7 @@ "Id": "ac09e214-414c-43f1-a407-651f69f2cef3", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-06-25T09:02:13.750Z", + "CreatedDateTime": "2021-06-25T09:02:13.75Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -7984,7 +8010,7 @@ "Id": "31a0a04f-7706-4c72-94b7-752932a6592e", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-06-23T08:55:18.080Z", + "CreatedDateTime": "2021-06-23T08:55:18.08Z", "WorkloadArea": "Identity and access", "SubArea": "Applications" }, @@ -8138,7 +8164,7 @@ "Id": "55cd90a5-69ec-11eb-9359-06bda5ccc16f", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-03-18T09:02:13.750Z", + "CreatedDateTime": "2021-03-18T09:02:13.75Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -8156,7 +8182,7 @@ "Id": "55cfd9a0-69ec-11eb-9359-06bda5ccc16f", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-03-18T09:02:13.750Z", + "CreatedDateTime": "2021-03-18T09:02:13.75Z", "WorkloadArea": "Applications", "SubArea": "" }, @@ -8232,7 +8258,7 @@ "Id": "55cd90a5-69ec-11eb-9359-06bda5ccc16f", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-03-18T09:02:13.750Z", + "CreatedDateTime": "2021-03-18T09:02:13.75Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -8250,7 +8276,7 @@ "Id": "55cfd9a0-69ec-11eb-9359-06bda5ccc16f", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-03-18T09:02:13.750Z", + "CreatedDateTime": "2021-03-18T09:02:13.75Z", "WorkloadArea": "Applications", "SubArea": "" }, @@ -8384,7 +8410,7 @@ "Id": "55cd90a5-69ec-11eb-9359-06bda5ccc16f", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-03-18T09:02:13.750Z", + "CreatedDateTime": "2021-03-18T09:02:13.75Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -8402,7 +8428,7 @@ "Id": "55cfd9a0-69ec-11eb-9359-06bda5ccc16f", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-03-18T09:02:13.750Z", + "CreatedDateTime": "2021-03-18T09:02:13.75Z", "WorkloadArea": "Applications", "SubArea": "" }, @@ -8560,7 +8586,7 @@ "Id": "55cfd9a0-69ec-11eb-9359-06bda5ccc16f", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-04-28T09:02:13.750Z", + "CreatedDateTime": "2021-04-28T09:02:13.75Z", "WorkloadArea": "Identity and access", "SubArea": "Governance" }, @@ -8900,7 +8926,7 @@ "Id": "55cd90a5-69ec-11eb-9359-06bda5ccc16f", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-03-18T09:02:13.750Z", + "CreatedDateTime": "2021-03-18T09:02:13.75Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -8918,7 +8944,7 @@ "Id": "55cfd9a0-69ec-11eb-9359-06bda5ccc16f", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-03-18T09:02:13.750Z", + "CreatedDateTime": "2021-03-18T09:02:13.75Z", "WorkloadArea": "Applications", "SubArea": "" }, @@ -9146,7 +9172,7 @@ "Id": "55cd90a5-69ec-11eb-9359-06bda5ccc16f", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-03-18T09:02:13.750Z", + "CreatedDateTime": "2021-03-18T09:02:13.75Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -9164,7 +9190,7 @@ "Id": "55cfd9a0-69ec-11eb-9359-06bda5ccc16f", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-03-18T09:02:13.750Z", + "CreatedDateTime": "2021-03-18T09:02:13.75Z", "WorkloadArea": "Applications", "SubArea": "" }, @@ -9214,7 +9240,7 @@ "Id": "977c9220-77aa-11eb-8d30-85f45032d4a1", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-03-10T20:46:53.460Z", + "CreatedDateTime": "2021-03-10T20:46:53.46Z", "WorkloadArea": "Identity and access", "SubArea": "Governance" }, @@ -9512,7 +9538,7 @@ "Id": "87dc25a5-fe55-454f-ad6f-b6d2c30ea9a4", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-03-05T08:55:18.080Z", + "CreatedDateTime": "2021-03-05T08:55:18.08Z", "WorkloadArea": "Identity and access", "SubArea": "Applications" }, @@ -9546,7 +9572,7 @@ "Id": "82e48b8e-d525-4d36-870e-452e677f22d3", "Cloud": "prd", "Version": "v1.0", - "CreatedDateTime": "2021-03-05T08:55:18.080Z", + "CreatedDateTime": "2021-03-05T08:55:18.08Z", "WorkloadArea": "Identity and access", "SubArea": "Applications" }, @@ -9620,7 +9646,7 @@ "Id": "a179abf1-70d3-435a-889b-ec860ca0aad1", "Cloud": "prd", "Version": "v1.0", - "CreatedDateTime": "2021-03-19T00:00:00.000Z", + "CreatedDateTime": "2021-03-19T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Identity and sign-in" }, @@ -9742,7 +9768,7 @@ "Id": "399dec32-117c-4129-b943-47a6f1d3033b", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-02-05T00:00:00.000Z", + "CreatedDateTime": "2021-02-05T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": " Governance" }, @@ -9816,7 +9842,7 @@ "Id": "c234b9d1-140b-11eb-baa1-5b13c31fb2cd", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-02-11T00:00:00.000Z", + "CreatedDateTime": "2021-02-11T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, @@ -9940,7 +9966,7 @@ "Id": "78f63c95-8c9e-4438-ad45-63f6174a4e33", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-01-12T00:00:00.000Z", + "CreatedDateTime": "2021-01-12T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "" }, @@ -10334,7 +10360,7 @@ "Id": "e7715044-f69b-4fd9-a3df-acf3ced878fe", "Cloud": "prd", "Version": "v1.0", - "CreatedDateTime": "2020-10-01T00:00:00.000Z", + "CreatedDateTime": "2020-10-01T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Identity and sign-in" }, @@ -10352,7 +10378,7 @@ "Id": "7f60a6f2-3d32-49ea-9b9b-193b5a94d637", "Cloud": "prd", "Version": "v1.0", - "CreatedDateTime": "2020-10-01T00:00:00.000Z", + "CreatedDateTime": "2020-10-01T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Application" }, @@ -13708,7 +13734,7 @@ "Id": "224526a5-09a4-4895-9b8b-40e8984a1111", "Cloud": "prd", "Version": "beta", - "CreatedDateTime": "2021-06-29T00:00:00.000Z", + "CreatedDateTime": "2021-06-29T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Identity and sign-in" }, @@ -13888,7 +13914,7 @@ "Id": "224526a5-09a4-4895-9b8b-40e8984a4144", "Cloud": "prd", "Version": "v1.0", - "CreatedDateTime": "2021-11-09T00:00:00.000Z", + "CreatedDateTime": "2021-11-09T00:00:00Z", "WorkloadArea": "Identity and access", "SubArea": "Identity and sign-in" }, @@ -16172,7 +16198,7 @@ "Id": "c327d619-2141-4517-b546-a89ffaf3929e", "Cloud": "Prod", "Version": "beta", - "CreatedDateTime": "2026-06-23T07:49:43.0000000Z", + "CreatedDateTime": "2026-06-23T07:49:43Z", "WorkloadArea": "Agents", "SubArea": "Agent identities" }, diff --git a/concepts/applications-authenticationbehaviors.md b/concepts/applications-authenticationbehaviors.md index 53e16840799..18ecc5529a8 100644 --- a/concepts/applications-authenticationbehaviors.md +++ b/concepts/applications-authenticationbehaviors.md @@ -14,7 +14,7 @@ ms.date: 08/29/2025 # Manage application authenticationBehaviors -The [**authenticationBehaviors**](/graph/api/resources/authenticationbehaviors?view=graph-rest-beta&preserve-view=true) property of the [application](/graph/api/resources/application?view=graph-rest-beta&preserve-view=true) object lets you configure breaking change behaviors related to token issuance. Applications can adopt new breaking changes by enabling a behavior or continue using pre-existing behavior by disabling it. +The [**authenticationBehaviors**](/graph/api/resources/authenticationbehaviors) property of the [application](/graph/api/resources/application) object lets you configure breaking change behaviors related to token issuance. Applications can adopt new breaking changes by enabling a behavior or continue using pre-existing behavior by disabling it. You can configure the following behaviors: @@ -24,94 +24,33 @@ You can configure the following behaviors: - Require multitenant applications to have a service principal in the resource tenant as part of authorization checks before they're granted access tokens. > [!NOTE] -> The authenticationBehaviors property of the application object is currently available in `beta` only. - +> The **authenticationBehaviors** property (including **coopEnforcement**) is available in Microsoft Graph v1.0 and beta for the global service. **coopEnforcement** isn't available in national cloud deployments. ## Read the authenticationBehaviors setting for an application The **authenticationBehaviors** property is returned only on `$select` requests. To read the property and other specified properties of all apps in the tenant, run the following sample request. The request returns a `200 OK` response code and a JSON representation of the application object that shows only the selected properties. -# [HTTP](#tab/http) ```msgraph-interactive -GET https://graph.microsoft.com/beta/applications?$select=id,displayName,appId,authenticationBehaviors +GET https://graph.microsoft.com/v1.0/applications?$select=id,displayName,appId,authenticationBehaviors ``` - -# [C#](#tab/csharp) -[!INCLUDE [sample-code](../includes/snippets/csharp/beta/list-applications-authenticationbehaviors-csharp-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [sample-code](../includes/snippets/go/beta/list-applications-authenticationbehaviors-go-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [sample-code](../includes/snippets/java/beta/list-applications-authenticationbehaviors-java-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/list-applications-authenticationbehaviors-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [sample-code](../includes/snippets/php/beta/list-applications-authenticationbehaviors-php-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [sample-code](../includes/snippets/powershell/beta/list-applications-authenticationbehaviors-powershell-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [sample-code](../includes/snippets/python/beta/list-applications-authenticationbehaviors-python-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - --- To read only the **authenticationBehaviors** property for a single app, run the following sample request. -# [HTTP](#tab/http) ```msgraph-interactive -GET https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors +GET https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors ``` - -# [C#](#tab/csharp) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/get-application-authenticationbehaviors-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - --- You can also use the **appId** property as follows: @@ -122,7 +61,7 @@ You can also use the **appId** property as follows: }--> ```http -GET https://graph.microsoft.com/beta/applications(appId='37bf1fd4-78b0-4fea-ac2d-6c82829e9365')/authenticationBehaviors +GET https://graph.microsoft.com/v1.0/applications(appId='37bf1fd4-78b0-4fea-ac2d-6c82829e9365')/authenticationBehaviors ``` ## Control Cross-Origin-Opener-Policy enforcement @@ -150,14 +89,14 @@ The following examples explicitly enable COOP enforcement for an application. #### Option 1 This pattern for specifying the property in the request URL allows you to update *only* the specified property in the request. -# [HTTP](#tab/http) + ```http -PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors +PATCH https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors Content-Type: application/json { @@ -165,48 +104,19 @@ Content-Type: application/json } ``` -# [C#](#tab/csharp) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-coopenforcement-true-option1-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - --- #### Option 2 This pattern for specifying the property in the request body lets you update other peer properties in the same request. -# [HTTP](#tab/http) ```http -PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e +PATCH https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e Content-Type: application/json { @@ -215,34 +125,7 @@ Content-Type: application/json } } ``` - -# [C#](#tab/csharp) -[!INCLUDE [sample-code](../includes/snippets/csharp/beta/update-authenticationbehaviors-coopenforcement-true-option2-csharp-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [sample-code](../includes/snippets/go/beta/update-authenticationbehaviors-coopenforcement-true-option2-go-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [sample-code](../includes/snippets/java/beta/update-authenticationbehaviors-coopenforcement-true-option2-java-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-coopenforcement-true-option2-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [sample-code](../includes/snippets/php/beta/update-authenticationbehaviors-coopenforcement-true-option2-php-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [sample-code](../includes/snippets/powershell/beta/update-authenticationbehaviors-coopenforcement-true-option2-powershell-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [sample-code](../includes/snippets/python/beta/update-authenticationbehaviors-coopenforcement-true-option2-python-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +If successful, these requests return a `204 No Content` response. --- @@ -253,14 +136,14 @@ The following examples explicitly suppress COOP enforcement while the applicatio #### Option 1 This pattern for specifying the property in the request URL allows you to update *only* the specified property in the request. -# [HTTP](#tab/http) + ```http -PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors +PATCH https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors Content-Type: application/json { @@ -268,48 +151,19 @@ Content-Type: application/json } ``` -# [C#](#tab/csharp) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-coopenforcement-false-option1-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - --- #### Option 2 This pattern for specifying the property in the request body lets you update other peer properties in the same request. -# [HTTP](#tab/http) ```http -PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e +PATCH https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e Content-Type: application/json { @@ -318,34 +172,7 @@ Content-Type: application/json } } ``` - -# [C#](#tab/csharp) -[!INCLUDE [sample-code](../includes/snippets/csharp/beta/update-authenticationbehaviors-coopenforcement-false-option2-csharp-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [sample-code](../includes/snippets/go/beta/update-authenticationbehaviors-coopenforcement-false-option2-go-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [sample-code](../includes/snippets/java/beta/update-authenticationbehaviors-coopenforcement-false-option2-java-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-coopenforcement-false-option2-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [sample-code](../includes/snippets/php/beta/update-authenticationbehaviors-coopenforcement-false-option2-php-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [sample-code](../includes/snippets/powershell/beta/update-authenticationbehaviors-coopenforcement-false-option2-powershell-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [sample-code](../includes/snippets/python/beta/update-authenticationbehaviors-coopenforcement-false-option2-python-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +If successful, these requests return a `204 No Content` response. A COOP Report-Only header might still be present. After the application or owning platform is remediated, set the property to `true` for controlled validation or reset it to `null` to use the service default. --- @@ -356,63 +183,33 @@ The following examples remove the explicit override. #### Option 1 This pattern for specifying the property in the request URL allows you to update *only* the specified property in the request. -# [HTTP](#tab/http) + ```http -PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors +PATCH https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors Content-Type: application/json { "coopEnforcement": null } ``` - -# [C#](#tab/csharp) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-coopenforcement-null-option1-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - --- #### Option 2 This pattern for specifying the property in the request body lets you update other peer properties in the same request. -# [HTTP](#tab/http) ```http -PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e +PATCH https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e Content-Type: application/json { @@ -421,34 +218,7 @@ Content-Type: application/json } } ``` - -# [C#](#tab/csharp) -[!INCLUDE [sample-code](../includes/snippets/csharp/beta/update-authenticationbehaviors-coopenforcement-null-option2-csharp-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [sample-code](../includes/snippets/go/beta/update-authenticationbehaviors-coopenforcement-null-option2-go-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [sample-code](../includes/snippets/java/beta/update-authenticationbehaviors-coopenforcement-null-option2-java-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-coopenforcement-null-option2-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [sample-code](../includes/snippets/php/beta/update-authenticationbehaviors-coopenforcement-null-option2-php-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [sample-code](../includes/snippets/powershell/beta/update-authenticationbehaviors-coopenforcement-null-option2-powershell-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [sample-code](../includes/snippets/python/beta/update-authenticationbehaviors-coopenforcement-null-option2-python-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] +If successful, these requests return a `204 No Content` response. To confirm the reset state, read the application with `$select=id,appId,authenticationBehaviors`. If the application has no other explicit authentication behavior, **authenticationBehaviors** is `null`. If another authentication behavior is configured, the complex object remains present and **coopEnforcement** is omitted. --- @@ -468,14 +238,14 @@ Today, the default behavior is to remove email addresses with unverified domain #### Option 1 This pattern for specifying the property in the request URL allows you to update *only* the specified property in the request. -# [HTTP](#tab/http) + ```http -PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors +PATCH https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors Content-Type: application/json { @@ -483,48 +253,19 @@ Content-Type: application/json } ``` -# [C#](#tab/csharp) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-removeunverifiedemailclaim-true-option1-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - --- #### Option 2 This pattern for specifying the property in the request body lets you update other peer properties in the same request. -# [HTTP](#tab/http) ```http -PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e +PATCH https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e Content-Type: application/json { @@ -534,48 +275,19 @@ Content-Type: application/json } ``` -# [C#](#tab/csharp) -[!INCLUDE [sample-code](../includes/snippets/csharp/beta/update-authenticationbehaviors-removeunverifiedemailclaim-true-option2-csharp-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [sample-code](../includes/snippets/go/beta/update-authenticationbehaviors-removeunverifiedemailclaim-true-option2-go-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [sample-code](../includes/snippets/java/beta/update-authenticationbehaviors-removeunverifiedemailclaim-true-option2-java-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-removeunverifiedemailclaim-true-option2-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [sample-code](../includes/snippets/php/beta/update-authenticationbehaviors-removeunverifiedemailclaim-true-option2-php-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [sample-code](../includes/snippets/powershell/beta/update-authenticationbehaviors-removeunverifiedemailclaim-true-option2-powershell-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [sample-code](../includes/snippets/python/beta/update-authenticationbehaviors-removeunverifiedemailclaim-true-option2-python-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - --- ### Accept email addresses with unverified domain owners in claims #### Option 1 -# [HTTP](#tab/http) ```http -PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors +PATCH https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors Content-Type: application/json { @@ -583,46 +295,17 @@ Content-Type: application/json } ``` -# [C#](#tab/csharp) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-removeunverifiedemailclaim-false-option1-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - --- #### Option 2 -# [HTTP](#tab/http) ```http -PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e +PATCH https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e Content-Type: application/json { @@ -632,95 +315,36 @@ Content-Type: application/json } ``` -# [C#](#tab/csharp) -[!INCLUDE [sample-code](../includes/snippets/csharp/beta/update-authenticationbehaviors-removeunverifiedemailclaim-false-option2-csharp-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [sample-code](../includes/snippets/go/beta/update-authenticationbehaviors-removeunverifiedemailclaim-false-option2-go-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [sample-code](../includes/snippets/java/beta/update-authenticationbehaviors-removeunverifiedemailclaim-false-option2-java-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-removeunverifiedemailclaim-false-option2-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [sample-code](../includes/snippets/php/beta/update-authenticationbehaviors-removeunverifiedemailclaim-false-option2-php-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [sample-code](../includes/snippets/powershell/beta/update-authenticationbehaviors-removeunverifiedemailclaim-false-option2-powershell-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [sample-code](../includes/snippets/python/beta/update-authenticationbehaviors-removeunverifiedemailclaim-false-option2-python-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - --- ### Restore the default behavior #### Option 1 -# [HTTP](#tab/http) ```http -PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors +PATCH https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/authenticationBehaviors Content-Type: application/json { "removeUnverifiedEmailClaim": null } ``` - -# [C#](#tab/csharp) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-removeunverifiedemailclaim-null-false-option1-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - --- #### Option 2 -# [HTTP](#tab/http) ```http -PATCH https://graph.microsoft.com/beta/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/ +PATCH https://graph.microsoft.com/v1.0/applications/03ef14b0-ca33-4840-8f4f-d6e91916010e/ Content-Type: application/json { @@ -730,34 +354,6 @@ Content-Type: application/json } ``` -# [C#](#tab/csharp) -[!INCLUDE [sample-code](../includes/snippets/csharp/beta/update-authenticationbehaviors-removeunverifiedemailclaim-null-false-option2-csharp-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [sample-code](../includes/snippets/go/beta/update-authenticationbehaviors-removeunverifiedemailclaim-null-false-option2-go-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [sample-code](../includes/snippets/java/beta/update-authenticationbehaviors-removeunverifiedemailclaim-null-false-option2-java-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-removeunverifiedemailclaim-null-false-option2-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [sample-code](../includes/snippets/php/beta/update-authenticationbehaviors-removeunverifiedemailclaim-null-false-option2-php-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [sample-code](../includes/snippets/powershell/beta/update-authenticationbehaviors-removeunverifiedemailclaim-null-false-option2-powershell-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [sample-code](../includes/snippets/python/beta/update-authenticationbehaviors-removeunverifiedemailclaim-null-false-option2-python-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - --- ## Allow extended Azure AD Graph access until August 31, 2025 @@ -768,13 +364,12 @@ The following request shows how to update an app to enable extended Azure AD Gra #### Option 1 -# [HTTP](#tab/http) ```http -PATCH https://graph.microsoft.com/beta/applications/5c142e6f-0bd3-4e58-b510-8a106704f44f/authenticationBehaviors +PATCH https://graph.microsoft.com/v1.0/applications/5c142e6f-0bd3-4e58-b510-8a106704f44f/authenticationBehaviors Content-Type: application/json { @@ -782,45 +377,16 @@ Content-Type: application/json } ``` -# [C#](#tab/csharp) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-blockazureadgraphaccess-option1-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [snippet-not-available](../includes/snippets/snippet-not-available.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - --- #### Option 2 -# [HTTP](#tab/http) ```http -PATCH https://graph.microsoft.com/beta/applications/5c142e6f-0bd3-4e58-b510-8a106704f44f +PATCH https://graph.microsoft.com/v1.0/applications/5c142e6f-0bd3-4e58-b510-8a106704f44f Content-Type: application/json { @@ -830,38 +396,11 @@ Content-Type: application/json } ``` -# [C#](#tab/csharp) -[!INCLUDE [sample-code](../includes/snippets/csharp/beta/update-authenticationbehaviors-blockazureadgraphaccess-option2-csharp-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Go](#tab/go) -[!INCLUDE [sample-code](../includes/snippets/go/beta/update-authenticationbehaviors-blockazureadgraphaccess-option2-go-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Java](#tab/java) -[!INCLUDE [sample-code](../includes/snippets/java/beta/update-authenticationbehaviors-blockazureadgraphaccess-option2-java-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [JavaScript](#tab/javascript) -[!INCLUDE [sample-code](../includes/snippets/javascript/beta/update-authenticationbehaviors-blockazureadgraphaccess-option2-javascript-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PHP](#tab/php) -[!INCLUDE [sample-code](../includes/snippets/php/beta/update-authenticationbehaviors-blockazureadgraphaccess-option2-php-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [PowerShell](#tab/powershell) -[!INCLUDE [sample-code](../includes/snippets/powershell/beta/update-authenticationbehaviors-blockazureadgraphaccess-option2-powershell-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] - -# [Python](#tab/python) -[!INCLUDE [sample-code](../includes/snippets/python/beta/update-authenticationbehaviors-blockazureadgraphaccess-option2-python-snippets.md)] -[!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] --- ## Related content -- [authenticationBehaviors resource type](/graph/api/resources/authenticationbehaviors?view=graph-rest-beta&preserve-view=true) +- [authenticationBehaviors resource type](/graph/api/resources/authenticationbehaviors) - [Migrate away from using email claims for user identification or authorization](/entra/identity-platform/migrate-off-email-claim-authorization) - [The false identifier anti-pattern](https://techcommunity.microsoft.com/t5/microsoft-entra-azure-ad-blog/the-false-identifier-anti-pattern/ba-p/3846013) diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 1daa5e936c7..5dee5f5a53d 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -20,6 +20,11 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what ## August 2026: New and generally available +### Applications + +- Added the [authenticationBehaviors](/graph/api/resources/authenticationbehaviors) resource type and the **coopEnforcement** property to the v1.0 endpoint. Application owners can use the property to explicitly test Cross-Origin-Opener-Policy enforcement, temporarily suppress enforcement while remediating an incompatible browser authentication flow, or return to the service default. The property is available in the global service only and isn't available in national cloud deployments. +- Added the **authenticationBehaviors** property to the [application](/graph/api/resources/application) resource type in v1.0. Returned only on `$select`. + ### Files - Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer) resource type to create or update up to 20 columnDefinition objects in a single request. From 2d8762d4a822e4a1c2b0f7c0f8ce89d195748710 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Wed, 2 Sep 2026 09:07:34 -0600 Subject: [PATCH 103/189] Update reference TOC (#29530) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/toc/device-and-app-management/toc.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/api-reference/beta/toc/device-and-app-management/toc.yml b/api-reference/beta/toc/device-and-app-management/toc.yml index b152af55982..10c46d5e0d8 100644 --- a/api-reference/beta/toc/device-and-app-management/toc.yml +++ b/api-reference/beta/toc/device-and-app-management/toc.yml @@ -747,6 +747,8 @@ items: href: ../../resources/cloudpcpolicypendingapplystatusresult.md - name: Cloud PC pool capability configuration href: ../../resources/cloudpcpoolcapabilityconfiguration.md + - name: Cloud PC provisioning configuration + href: ../../resources/cloudpcprovisioningconfiguration.md - name: Cloud PC provisioning policy assignment href: ../../resources/cloudpcprovisioningpolicyassignment.md - name: Cloud PC provisioning policy autopatch From 44eae425028d78aac5c8ca9dfc4520970b4d2951 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Wed, 2 Sep 2026 09:11:43 -0600 Subject: [PATCH 104/189] Update generated permissions tables with build 238288 (#29529) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/v1.0/api/note-delete.md | 6 +----- api-reference/v1.0/api/note-delta.md | 6 +----- api-reference/v1.0/api/note-get.md | 6 +----- api-reference/v1.0/api/note-list-attachments.md | 6 +----- api-reference/v1.0/api/note-post-attachments.md | 6 +----- api-reference/v1.0/api/note-update.md | 6 +----- api-reference/v1.0/api/user-list-notes.md | 6 +----- api-reference/v1.0/api/user-post-notes.md | 6 +----- .../v1.0/includes/permissions/note-delete-permissions.md | 7 ++++--- .../v1.0/includes/permissions/note-delta-permissions.md | 7 ++++--- .../v1.0/includes/permissions/note-get-permissions.md | 7 ++++--- .../permissions/note-list-attachments-permissions.md | 7 ++++--- .../permissions/note-post-attachments-permissions.md | 7 ++++--- .../v1.0/includes/permissions/note-update-permissions.md | 7 ++++--- .../includes/permissions/user-list-notes-permissions.md | 7 ++++--- .../includes/permissions/user-post-notes-permissions.md | 7 ++++--- 16 files changed, 40 insertions(+), 64 deletions(-) diff --git a/api-reference/v1.0/api/note-delete.md b/api-reference/v1.0/api/note-delete.md index e7aaa72c6fa..779ce7cabad 100644 --- a/api-reference/v1.0/api/note-delete.md +++ b/api-reference/v1.0/api/note-delete.md @@ -18,11 +18,7 @@ Delete a [note](../resources/note.md) object. Supports optimistic concurrency co Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/note-delete-permissions.md)] ## HTTP request diff --git a/api-reference/v1.0/api/note-delta.md b/api-reference/v1.0/api/note-delta.md index adb02f2b3dc..8c4912d5339 100644 --- a/api-reference/v1.0/api/note-delta.md +++ b/api-reference/v1.0/api/note-delta.md @@ -18,11 +18,7 @@ Get a set of [note](../resources/note.md) objects that were added, updated, or d Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/note-delta-permissions.md)] ## HTTP request diff --git a/api-reference/v1.0/api/note-get.md b/api-reference/v1.0/api/note-get.md index 66d61191cb3..f75eda97de6 100644 --- a/api-reference/v1.0/api/note-get.md +++ b/api-reference/v1.0/api/note-get.md @@ -18,11 +18,7 @@ Read the properties and relationships of a [note](../resources/note.md) object. Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/note-get-permissions.md)] ## HTTP request diff --git a/api-reference/v1.0/api/note-list-attachments.md b/api-reference/v1.0/api/note-list-attachments.md index e3e874bcf64..e727e580147 100644 --- a/api-reference/v1.0/api/note-list-attachments.md +++ b/api-reference/v1.0/api/note-list-attachments.md @@ -18,11 +18,7 @@ Get the list of file attachments associated with a [note](../resources/note.md). Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/note-list-attachments-permissions.md)] ## HTTP request diff --git a/api-reference/v1.0/api/note-post-attachments.md b/api-reference/v1.0/api/note-post-attachments.md index 0a60792fbe4..ec960c1a161 100644 --- a/api-reference/v1.0/api/note-post-attachments.md +++ b/api-reference/v1.0/api/note-post-attachments.md @@ -18,11 +18,7 @@ Create a [fileAttachment](../resources/fileattachment.md) object, which adds an Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/note-post-attachments-permissions.md)] ## HTTP request diff --git a/api-reference/v1.0/api/note-update.md b/api-reference/v1.0/api/note-update.md index d3875db1434..b82aa685fcc 100644 --- a/api-reference/v1.0/api/note-update.md +++ b/api-reference/v1.0/api/note-update.md @@ -18,11 +18,7 @@ Update the properties of a [note](../resources/note.md) object. Supports optimis Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/note-update-permissions.md)] ## HTTP request diff --git a/api-reference/v1.0/api/user-list-notes.md b/api-reference/v1.0/api/user-list-notes.md index d8050928129..aae5685f8b7 100644 --- a/api-reference/v1.0/api/user-list-notes.md +++ b/api-reference/v1.0/api/user-list-notes.md @@ -18,11 +18,7 @@ Get a list of the [note](../resources/note.md) objects in the user's *Notes* fol Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/user-list-notes-permissions.md)] ## HTTP request diff --git a/api-reference/v1.0/api/user-post-notes.md b/api-reference/v1.0/api/user-post-notes.md index 35f07b5a3df..453d2d1b6f5 100644 --- a/api-reference/v1.0/api/user-post-notes.md +++ b/api-reference/v1.0/api/user-post-notes.md @@ -18,11 +18,7 @@ Create a new [note](../resources/note.md) in the user's *Notes* folder. Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/user-post-notes-permissions.md)] ## HTTP request diff --git a/api-reference/v1.0/includes/permissions/note-delete-permissions.md b/api-reference/v1.0/includes/permissions/note-delete-permissions.md index d1ccf4efec5..4f798e9a736 100644 --- a/api-reference/v1.0/includes/permissions/note-delete-permissions.md +++ b/api-reference/v1.0/includes/permissions/note-delete-permissions.md @@ -1,5 +1,5 @@ ---- -description: Automatically generated file. DO NOT MODIFY +--- +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|ShortNotes.ReadWrite|Not available.| |Delegated (personal Microsoft account)|ShortNotes.ReadWrite|Not available.| -|Application|ShortNotes.ReadWrite.All|Not available.| +|Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/note-delta-permissions.md b/api-reference/v1.0/includes/permissions/note-delta-permissions.md index 99a0df78cd4..732ac41aceb 100644 --- a/api-reference/v1.0/includes/permissions/note-delta-permissions.md +++ b/api-reference/v1.0/includes/permissions/note-delta-permissions.md @@ -1,5 +1,5 @@ ---- -description: Automatically generated file. DO NOT MODIFY +--- +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|ShortNotes.Read|ShortNotes.ReadWrite| |Delegated (personal Microsoft account)|ShortNotes.Read|ShortNotes.ReadWrite| -|Application|ShortNotes.Read.All|ShortNotes.ReadWrite.All| +|Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/note-get-permissions.md b/api-reference/v1.0/includes/permissions/note-get-permissions.md index 99a0df78cd4..732ac41aceb 100644 --- a/api-reference/v1.0/includes/permissions/note-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/note-get-permissions.md @@ -1,5 +1,5 @@ ---- -description: Automatically generated file. DO NOT MODIFY +--- +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|ShortNotes.Read|ShortNotes.ReadWrite| |Delegated (personal Microsoft account)|ShortNotes.Read|ShortNotes.ReadWrite| -|Application|ShortNotes.Read.All|ShortNotes.ReadWrite.All| +|Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/note-list-attachments-permissions.md b/api-reference/v1.0/includes/permissions/note-list-attachments-permissions.md index 99a0df78cd4..732ac41aceb 100644 --- a/api-reference/v1.0/includes/permissions/note-list-attachments-permissions.md +++ b/api-reference/v1.0/includes/permissions/note-list-attachments-permissions.md @@ -1,5 +1,5 @@ ---- -description: Automatically generated file. DO NOT MODIFY +--- +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|ShortNotes.Read|ShortNotes.ReadWrite| |Delegated (personal Microsoft account)|ShortNotes.Read|ShortNotes.ReadWrite| -|Application|ShortNotes.Read.All|ShortNotes.ReadWrite.All| +|Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/note-post-attachments-permissions.md b/api-reference/v1.0/includes/permissions/note-post-attachments-permissions.md index d1ccf4efec5..4f798e9a736 100644 --- a/api-reference/v1.0/includes/permissions/note-post-attachments-permissions.md +++ b/api-reference/v1.0/includes/permissions/note-post-attachments-permissions.md @@ -1,5 +1,5 @@ ---- -description: Automatically generated file. DO NOT MODIFY +--- +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|ShortNotes.ReadWrite|Not available.| |Delegated (personal Microsoft account)|ShortNotes.ReadWrite|Not available.| -|Application|ShortNotes.ReadWrite.All|Not available.| +|Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/note-update-permissions.md b/api-reference/v1.0/includes/permissions/note-update-permissions.md index d1ccf4efec5..4f798e9a736 100644 --- a/api-reference/v1.0/includes/permissions/note-update-permissions.md +++ b/api-reference/v1.0/includes/permissions/note-update-permissions.md @@ -1,5 +1,5 @@ ---- -description: Automatically generated file. DO NOT MODIFY +--- +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|ShortNotes.ReadWrite|Not available.| |Delegated (personal Microsoft account)|ShortNotes.ReadWrite|Not available.| -|Application|ShortNotes.ReadWrite.All|Not available.| +|Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/user-list-notes-permissions.md b/api-reference/v1.0/includes/permissions/user-list-notes-permissions.md index 99a0df78cd4..732ac41aceb 100644 --- a/api-reference/v1.0/includes/permissions/user-list-notes-permissions.md +++ b/api-reference/v1.0/includes/permissions/user-list-notes-permissions.md @@ -1,5 +1,5 @@ ---- -description: Automatically generated file. DO NOT MODIFY +--- +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|ShortNotes.Read|ShortNotes.ReadWrite| |Delegated (personal Microsoft account)|ShortNotes.Read|ShortNotes.ReadWrite| -|Application|ShortNotes.Read.All|ShortNotes.ReadWrite.All| +|Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/user-post-notes-permissions.md b/api-reference/v1.0/includes/permissions/user-post-notes-permissions.md index d1ccf4efec5..4f798e9a736 100644 --- a/api-reference/v1.0/includes/permissions/user-post-notes-permissions.md +++ b/api-reference/v1.0/includes/permissions/user-post-notes-permissions.md @@ -1,5 +1,5 @@ ---- -description: Automatically generated file. DO NOT MODIFY +--- +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|ShortNotes.ReadWrite|Not available.| |Delegated (personal Microsoft account)|ShortNotes.ReadWrite|Not available.| -|Application|ShortNotes.ReadWrite.All|Not available.| +|Application|Not supported.|Not supported.| + From ae0b902f77d6a1d66a86cad1c4fd91e3f1d98c56 Mon Sep 17 00:00:00 2001 From: Jack Schedel Date: Wed, 2 Sep 2026 15:37:08 -0400 Subject: [PATCH 105/189] LCW TimebasedTriggerV2 Public Preview (#29420) * [Public Preview] Add TimeBasedTriggerV2 lifecycle workflow trigger Document the TimeBasedTriggerV2 resource hierarchy, create-workflow examples, changelog entry, and What's New announcement. * Fix TimeBasedTriggerV2 example metadata Close the administrative-scope tab group before the new examples and identify validation responses as microsoft.graph.error for API Doctor. * fix changelog * Add TimeBasedTriggerV2 resources to beta TOC Make the six new Lifecycle Workflows complex-type topics discoverable in the beta TOC mapping. * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address TimeBasedTriggerV2 documentation review Add required Methods sections, refine resource property descriptions and cross-links, normalize changelog metadata, and remove validation-error walkthroughs from the API reference. * Fix TimeBasedTriggerV2 changelog links Restore the required en-us locale segment in the six new resource URLs so changelog link validation can resolve them. * Fix TimeBasedTriggerV2 What's New link Point the announcement to the published beta Create workflow operation instead of the unpublished supporting complex type. * Update reference TOC * Address TimeBasedTriggerV2 review feedback Use locale-neutral changelog URLs, restore unrelated changelog indentation, update resource dates, and clarify that derived operators support different eventTiming subsets. * Update reference TOC * Fix duplicate August What's New section Merge the TimeBasedTriggerV2 announcement into the existing August preview section and correct the Cloud PC Learn URL. * Order August preview before GA updates Place the August 2026 preview section above the generally available section while keeping the TimeBasedTriggerV2 announcement under preview. * Document TimeBasedTriggerV2 enum sentinel Add the schema-defined unknownFutureValue member across eventTiming documentation and make the What's New entry a discoverable bullet. * Restore overwritten lifecycle workflow changelog Retain the guestSponsorTrigger record from main after inserting the TimeBasedTriggerV2 changelog entry. * Restore locale in TimeBasedTriggerV2 changelog links * fix guids * uuid update pt2 * fix merge * test fix * remove drop build * fixes * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Restore generated changelog timestamp * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * fixes * fix * Apply suggestion from @Danipocket * fix --------- Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- ...ecycleworkflowscontainer-post-workflows.md | 485 ++++++++++++++++++ .../resources/enums-identitygovernance.md | 9 +- .../identitygovernance-operatorbetween.md | 50 ++ .../identitygovernance-operatorequalto.md | 48 ++ ...ntitygovernance-operatorlessthanequalto.md | 48 ++ ...ygovernance-timebasedattributetriggerv2.md | 48 ++ ...titygovernance-workflowexecutiontrigger.md | 3 +- ...rnance-workflowexecutiontriggeroperator.md | 48 ++ ...rnance-workflowtriggertimebasedoperator.md | 54 ++ .../beta/toc/identity-and-access/toc.yml | 14 + api-reference/beta/toc/toc.mapping.json | 8 + changelog/Microsoft.AAD.LCM.json | 66 +++ concepts/whats-new-overview.md | 4 + 13 files changed, 883 insertions(+), 2 deletions(-) create mode 100644 api-reference/beta/resources/identitygovernance-operatorbetween.md create mode 100644 api-reference/beta/resources/identitygovernance-operatorequalto.md create mode 100644 api-reference/beta/resources/identitygovernance-operatorlessthanequalto.md create mode 100644 api-reference/beta/resources/identitygovernance-timebasedattributetriggerv2.md create mode 100644 api-reference/beta/resources/identitygovernance-workflowexecutiontriggeroperator.md create mode 100644 api-reference/beta/resources/identitygovernance-workflowtriggertimebasedoperator.md diff --git a/api-reference/beta/api/identitygovernance-lifecycleworkflowscontainer-post-workflows.md b/api-reference/beta/api/identitygovernance-lifecycleworkflowscontainer-post-workflows.md index 94e77d45e15..ff83f11480c 100644 --- a/api-reference/beta/api/identitygovernance-lifecycleworkflowscontainer-post-workflows.md +++ b/api-reference/beta/api/identitygovernance-lifecycleworkflowscontainer-post-workflows.md @@ -582,3 +582,488 @@ Content-Type: application/json ] } ``` + +### Example 5: Create a workflow that runs seven days before a hire date + +#### Request + +The following example creates a workflow that runs exactly seven days before a user's hire date. + + +```http +POST https://graph.microsoft.com/beta/identityGovernance/lifecycleWorkflows/workflows +Content-Type: application/json + +{ + "displayName": "Pre-hire onboarding: 7 days before hire", + "isEnabled": true, + "isSchedulingEnabled": true, + "executionConditions": { + "@odata.type": "#microsoft.graph.identityGovernance.triggerAndScopeBasedConditions", + "scope": { + "@odata.type": "#microsoft.graph.identityGovernance.ruleBasedSubjectSet", + "rule": "(department eq 'Engineering')" + }, + "trigger": { + "@odata.type": "#microsoft.graph.identityGovernance.timeBasedAttributeTriggerV2", + "attribute": "employeeHireDate", + "operator": { + "@odata.type": "#microsoft.graph.identityGovernance.operatorEqualTo", + "eventTiming": "before", + "offsetInDays": 7 + } + } + }, + "tasks": [ + { + "isEnabled": true, + "taskDefinitionId": "1b555e50-7f65-41d5-b514-5894a026d10d", + "displayName": "Generate TAP And Send Email" + } + ] +} +``` + +#### Response + +The following example shows the response. + + +```http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#identityGovernance/lifecycleWorkflows/workflows/$entity", + "id": "c35e0d2a-8725-4aa1-b132-6b21a80635b5", + "displayName": "Pre-hire onboarding: 7 days before hire", + "isEnabled": true, + "isSchedulingEnabled": true, + "version": 1 +} +``` + +### Example 6: Create a workflow for users within 60 days after a leave date + +#### Request + +The following example creates a workflow that scopes users whose leave date was 60 days ago or fewer. + + +```http +POST https://graph.microsoft.com/beta/identityGovernance/lifecycleWorkflows/workflows +Content-Type: application/json + +{ + "displayName": "Post-leave compliance: within 60 days after leave", + "isEnabled": true, + "isSchedulingEnabled": true, + "executionConditions": { + "@odata.type": "#microsoft.graph.identityGovernance.triggerAndScopeBasedConditions", + "scope": { + "@odata.type": "#microsoft.graph.identityGovernance.ruleBasedSubjectSet", + "rule": "(department eq 'Finance')" + }, + "trigger": { + "@odata.type": "#microsoft.graph.identityGovernance.timeBasedAttributeTriggerV2", + "attribute": "employeeLeaveDateTime", + "operator": { + "@odata.type": "#microsoft.graph.identityGovernance.operatorLessThanEqualTo", + "eventTiming": "after", + "offsetInDays": 60 + } + } + }, + "tasks": [ + { + "isEnabled": true, + "taskDefinitionId": "1b555e50-7f65-41d5-b514-5894a026d10d", + "displayName": "Run Post-Leave Compliance Check" + } + ] +} +``` + +#### Response + +The following example shows the response. + + +```http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#identityGovernance/lifecycleWorkflows/workflows/$entity", + "id": "83d68cba-56c0-4412-8bf7-1af2befc1333", + "displayName": "Post-leave compliance: within 60 days after leave", + "isEnabled": true, + "isSchedulingEnabled": true, + "version": 1 +} +``` + +### Example 7: Create a workflow for users hired between 7 and 30 days ago + +#### Request + +The following example creates a workflow that scopes users hired more than seven days and fewer than 30 days ago. + + +```http +POST https://graph.microsoft.com/beta/identityGovernance/lifecycleWorkflows/workflows +Content-Type: application/json + +{ + "displayName": "Post-hire check-in: 7 to 30 days after hire", + "isEnabled": true, + "isSchedulingEnabled": true, + "executionConditions": { + "@odata.type": "#microsoft.graph.identityGovernance.triggerAndScopeBasedConditions", + "scope": { + "@odata.type": "#microsoft.graph.identityGovernance.ruleBasedSubjectSet", + "rule": "(department eq 'Engineering')" + }, + "trigger": { + "@odata.type": "#microsoft.graph.identityGovernance.timeBasedAttributeTriggerV2", + "attribute": "employeeHireDate", + "operator": { + "@odata.type": "#microsoft.graph.identityGovernance.operatorBetween", + "eventTiming": "after", + "greaterThanOffsetInDays": 7, + "lessThanOffsetInDays": 30 + } + } + }, + "tasks": [ + { + "isEnabled": true, + "taskDefinitionId": "1b555e50-7f65-41d5-b514-5894a026d10d", + "displayName": "Send Onboarding Check-in Survey" + } + ] +} +``` + +#### Response + +The following example shows the response. + + +```http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#identityGovernance/lifecycleWorkflows/workflows/$entity", + "id": "445ffc46-3ccc-4e1a-bac9-aef675ee8d18", + "displayName": "Post-hire check-in: 7 to 30 days after hire", + "isEnabled": true, + "isSchedulingEnabled": true, + "version": 1 +} +``` + +### Example 8: Create a workflow for users between 3 and 14 days before a leave date + +#### Request + +The following example creates a workflow that scopes users whose leave date is more than three days and fewer than 14 days in the future. + + +```http +POST https://graph.microsoft.com/beta/identityGovernance/lifecycleWorkflows/workflows +Content-Type: application/json + +{ + "displayName": "Pre-leave prep: 3 to 14 days before leave", + "isEnabled": true, + "isSchedulingEnabled": true, + "executionConditions": { + "@odata.type": "#microsoft.graph.identityGovernance.triggerAndScopeBasedConditions", + "scope": { + "@odata.type": "#microsoft.graph.identityGovernance.ruleBasedSubjectSet", + "rule": "(department eq 'Engineering')" + }, + "trigger": { + "@odata.type": "#microsoft.graph.identityGovernance.timeBasedAttributeTriggerV2", + "attribute": "employeeLeaveDateTime", + "operator": { + "@odata.type": "#microsoft.graph.identityGovernance.operatorBetween", + "eventTiming": "before", + "greaterThanOffsetInDays": 3, + "lessThanOffsetInDays": 14 + } + } + }, + "tasks": [ + { + "isEnabled": true, + "taskDefinitionId": "1b555e50-7f65-41d5-b514-5894a026d10d", + "displayName": "Transfer Ownership of Shared Resources" + } + ] +} +``` + +#### Response + +The following example shows the response. + + +```http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#identityGovernance/lifecycleWorkflows/workflows/$entity", + "id": "6bc1a524-6df8-4cfd-ac6d-caf9f88b3702", + "displayName": "Pre-leave prep: 3 to 14 days before leave", + "isEnabled": true, + "isSchedulingEnabled": true, + "version": 1 +} +``` + +### Example 9: Create a workflow that runs on a hire date + +#### Request + +The following example creates a workflow that runs on a user's hire date. When `offsetInDays` is `0`, `eventTiming` must be set to `on`. + + +```http +POST https://graph.microsoft.com/beta/identityGovernance/lifecycleWorkflows/workflows +Content-Type: application/json + +{ + "displayName": "Day-of-hire: enable account and grant access", + "isEnabled": true, + "isSchedulingEnabled": true, + "executionConditions": { + "@odata.type": "#microsoft.graph.identityGovernance.triggerAndScopeBasedConditions", + "scope": { + "@odata.type": "#microsoft.graph.identityGovernance.ruleBasedSubjectSet", + "rule": "(department eq 'Engineering')" + }, + "trigger": { + "@odata.type": "#microsoft.graph.identityGovernance.timeBasedAttributeTriggerV2", + "attribute": "employeeHireDate", + "operator": { + "@odata.type": "#microsoft.graph.identityGovernance.operatorEqualTo", + "eventTiming": "on", + "offsetInDays": 0 + } + } + }, + "tasks": [ + { + "isEnabled": true, + "taskDefinitionId": "6fc52c9d-398b-4571-8c4c-57c8ea85daac", + "displayName": "Enable User Account" + } + ] +} +``` + +#### Response + +The following example shows the response. + + +```http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#identityGovernance/lifecycleWorkflows/workflows/$entity", + "id": "275fb885-528a-46f1-b5cf-cfdfb7069824", + "displayName": "Day-of-hire: enable account and grant access", + "isEnabled": true, + "isSchedulingEnabled": true, + "version": 1 +} +``` + +### Example 10: Create a workflow that runs 30 days after a leave date + +#### Request + +The following example creates a workflow that runs exactly 30 days after a user's leave date. + + +```http +POST https://graph.microsoft.com/beta/identityGovernance/lifecycleWorkflows/workflows +Content-Type: application/json + +{ + "displayName": "Post-leave cleanup: 30 days after leave", + "isEnabled": true, + "isSchedulingEnabled": true, + "executionConditions": { + "@odata.type": "#microsoft.graph.identityGovernance.triggerAndScopeBasedConditions", + "scope": { + "@odata.type": "#microsoft.graph.identityGovernance.ruleBasedSubjectSet", + "rule": "(department eq 'Engineering')" + }, + "trigger": { + "@odata.type": "#microsoft.graph.identityGovernance.timeBasedAttributeTriggerV2", + "attribute": "employeeLeaveDateTime", + "operator": { + "@odata.type": "#microsoft.graph.identityGovernance.operatorEqualTo", + "eventTiming": "after", + "offsetInDays": 30 + } + } + }, + "tasks": [ + { + "isEnabled": true, + "taskDefinitionId": "8d18588d-9ad3-4c0f-99d0-ec215f0e3dff", + "displayName": "Delete User Account" + } + ] +} +``` + +#### Response + +The following example shows the response. + + +```http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#identityGovernance/lifecycleWorkflows/workflows/$entity", + "id": "83b77dc5-751d-4640-b628-69d949b09bac", + "displayName": "Post-leave cleanup: 30 days after leave", + "isEnabled": true, + "isSchedulingEnabled": true, + "version": 1 +} +``` + +### Example 11: Create a workflow for users within 14 days of a leave date + +#### Request + +The following example creates a workflow that scopes users whose leave date is 14 days or fewer in the future. + + +```http +POST https://graph.microsoft.com/beta/identityGovernance/lifecycleWorkflows/workflows +Content-Type: application/json + +{ + "displayName": "Pre-leave: within 14 days of leave", + "isEnabled": true, + "isSchedulingEnabled": true, + "executionConditions": { + "@odata.type": "#microsoft.graph.identityGovernance.triggerAndScopeBasedConditions", + "scope": { + "@odata.type": "#microsoft.graph.identityGovernance.ruleBasedSubjectSet", + "rule": "(department eq 'Engineering')" + }, + "trigger": { + "@odata.type": "#microsoft.graph.identityGovernance.timeBasedAttributeTriggerV2", + "attribute": "employeeLeaveDateTime", + "operator": { + "@odata.type": "#microsoft.graph.identityGovernance.operatorLessThanEqualTo", + "eventTiming": "before", + "offsetInDays": 14 + } + } + }, + "tasks": [ + { + "isEnabled": true, + "taskDefinitionId": "1b555e50-7f65-41d5-b514-5894a026d10d", + "displayName": "Send Offboarding Reminder to Manager" + } + ] +} +``` + +#### Response + +The following example shows the response. + + +```http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#identityGovernance/lifecycleWorkflows/workflows/$entity", + "id": "b784cf0f-1b6e-4e04-bb24-d2af0261514d", + "displayName": "Pre-leave: within 14 days of leave", + "isEnabled": true, + "isSchedulingEnabled": true, + "version": 1 +} +``` diff --git a/api-reference/beta/resources/enums-identitygovernance.md b/api-reference/beta/resources/enums-identitygovernance.md index 17abb621861..03369c7fc53 100644 --- a/api-reference/beta/resources/enums-identitygovernance.md +++ b/api-reference/beta/resources/enums-identitygovernance.md @@ -5,7 +5,7 @@ doc_type: enumPageType ms.localizationpriority: medium ms.subservice: "entra-id-governance" author: "AlexFilipin" -ms.date: 04/02/2024 +ms.date: 08/12/2026 --- # Identity governance enum values @@ -168,7 +168,14 @@ Namespace: microsoft.graph.identityGovernance |multipleConditionsExceeded| |unknownFutureValue| +### workflowTriggerOperatorEventTiming values +|Member| +|:---| +|before| +|after| +|on| +|unknownFutureValue| +```json +{ + "@odata.type": "#microsoft.graph.identityGovernance.operatorBetween", + "eventTiming": "String", + "greaterThanOffsetInDays": "Integer", + "lessThanOffsetInDays": "Integer" +} +``` diff --git a/api-reference/beta/resources/identitygovernance-operatorequalto.md b/api-reference/beta/resources/identitygovernance-operatorequalto.md new file mode 100644 index 00000000000..13ce34c3fcd --- /dev/null +++ b/api-reference/beta/resources/identitygovernance-operatorequalto.md @@ -0,0 +1,48 @@ +--- +title: "operatorEqualTo resource type" +description: "Represents a time-based operator that matches a user's date attribute at an exact offset from the current date." +author: "jackschedel" +ms.date: 08/10/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# operatorEqualTo resource type + +Namespace: microsoft.graph.identityGovernance + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a [workflowTriggerTimeBasedOperator](../resources/identitygovernance-workflowtriggertimebasedoperator.md) that matches users whose date attribute is exactly **offsetInDays** days from the current date. + +Inherits from [workflowTriggerTimeBasedOperator](../resources/identitygovernance-workflowtriggertimebasedoperator.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|eventTiming|microsoft.graph.identityGovernance.workflowTriggerOperatorEventTiming|Specifies whether the operator evaluates dates before, after, or on the date in the user attribute. The possible values are: `before`, `after`, `on`, `unknownFutureValue`. When **offsetInDays** is `0`, this value must be `on`; otherwise, use `before` or `after`. Inherited from [workflowTriggerTimeBasedOperator](../resources/identitygovernance-workflowtriggertimebasedoperator.md).| +|offsetInDays|Int32|The exact number of days between the current date and the date in the user attribute. The value must be a nonnegative integer.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +```json +{ + "@odata.type": "#microsoft.graph.identityGovernance.operatorEqualTo", + "eventTiming": "String", + "offsetInDays": "Integer" +} +``` diff --git a/api-reference/beta/resources/identitygovernance-operatorlessthanequalto.md b/api-reference/beta/resources/identitygovernance-operatorlessthanequalto.md new file mode 100644 index 00000000000..ec98a024c08 --- /dev/null +++ b/api-reference/beta/resources/identitygovernance-operatorlessthanequalto.md @@ -0,0 +1,48 @@ +--- +title: "operatorLessThanEqualTo resource type" +description: "Represents a time-based operator that matches a user's date attribute within an offset from the current date." +author: "jackschedel" +ms.date: 08/10/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# operatorLessThanEqualTo resource type + +Namespace: microsoft.graph.identityGovernance + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a [workflowTriggerTimeBasedOperator](../resources/identitygovernance-workflowtriggertimebasedoperator.md) that matches users whose date attribute is within **offsetInDays** days of the current date. + +Inherits from [workflowTriggerTimeBasedOperator](../resources/identitygovernance-workflowtriggertimebasedoperator.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|eventTiming|microsoft.graph.identityGovernance.workflowTriggerOperatorEventTiming|Specifies whether the operator evaluates dates before, after, or on the date in the user attribute. The possible values are: `before`, `after`, `on`, `unknownFutureValue`. When **offsetInDays** is `0`, this value must be `on`; otherwise, use `before` or `after`. Inherited from [workflowTriggerTimeBasedOperator](../resources/identitygovernance-workflowtriggertimebasedoperator.md).| +|offsetInDays|Int32|The maximum number of days between the current date and the date in the user attribute. The value must be a nonnegative integer.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +```json +{ + "@odata.type": "#microsoft.graph.identityGovernance.operatorLessThanEqualTo", + "eventTiming": "String", + "offsetInDays": "Integer" +} +``` diff --git a/api-reference/beta/resources/identitygovernance-timebasedattributetriggerv2.md b/api-reference/beta/resources/identitygovernance-timebasedattributetriggerv2.md new file mode 100644 index 00000000000..e337421c1f6 --- /dev/null +++ b/api-reference/beta/resources/identitygovernance-timebasedattributetriggerv2.md @@ -0,0 +1,48 @@ +--- +title: "timeBasedAttributeTriggerV2 resource type" +description: "Represents an extensible time-based trigger that evaluates a user's date attribute to initiate a lifecycle workflow." +author: "jackschedel" +ms.date: 08/10/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# timeBasedAttributeTriggerV2 resource type + +Namespace: microsoft.graph.identityGovernance + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents an extensible time-based trigger that evaluates a user's date attribute by using a configurable operator to initiate a [lifecycle workflow](../resources/identitygovernance-workflow.md). + +Inherits from [workflowExecutionTrigger](../resources/identitygovernance-workflowexecutiontrigger.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|attribute|String|The name of the date-type user attribute to evaluate, such as `employeeHireDate` or `employeeLeaveDateTime`.| +|operator|[microsoft.graph.identityGovernance.workflowExecutionTriggerOperator](../resources/identitygovernance-workflowexecutiontriggeroperator.md)|The operator that determines how to evaluate the date attribute.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +```json +{ + "@odata.type": "#microsoft.graph.identityGovernance.timeBasedAttributeTriggerV2", + "attribute": "String", + "operator": {"@odata.type": "microsoft.graph.identityGovernance.workflowExecutionTriggerOperator"} +} +``` diff --git a/api-reference/beta/resources/identitygovernance-workflowexecutiontrigger.md b/api-reference/beta/resources/identitygovernance-workflowexecutiontrigger.md index 6227b5d7832..aea1230ca82 100644 --- a/api-reference/beta/resources/identitygovernance-workflowexecutiontrigger.md +++ b/api-reference/beta/resources/identitygovernance-workflowexecutiontrigger.md @@ -5,7 +5,7 @@ author: "AlexFilipin" ms.localizationpriority: medium ms.subservice: "entra-id-governance" doc_type: resourcePageType -ms.date: 10/21/2024 +ms.date: 08/10/2026 --- # workflowExecutionTrigger resource type @@ -18,6 +18,7 @@ The derived types of this abstract object are configured in the **trigger** prop + [userInactivityTrigger](../resources/identitygovernance-userinactivitytrigger.md) + [timeBasedAttributeTrigger](../resources/identitygovernance-timebasedattributetrigger.md) ++ [timeBasedAttributeTriggerV2](../resources/identitygovernance-timebasedattributetriggerv2.md) + [attributeChangeTrigger](../resources/identitygovernance-attributechangetrigger.md) + [membershipChangeTrigger](../resources/identitygovernance-membershipchangetrigger.md) + [guestSponsorTrigger](../resources/identitygovernance-guestsponsortrigger.md) diff --git a/api-reference/beta/resources/identitygovernance-workflowexecutiontriggeroperator.md b/api-reference/beta/resources/identitygovernance-workflowexecutiontriggeroperator.md new file mode 100644 index 00000000000..b5219c95e6c --- /dev/null +++ b/api-reference/beta/resources/identitygovernance-workflowexecutiontriggeroperator.md @@ -0,0 +1,48 @@ +--- +title: "workflowExecutionTriggerOperator resource type" +description: "Represents an abstract operator used to evaluate a workflow execution trigger." +author: "jackschedel" +ms.date: 08/10/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# workflowExecutionTriggerOperator resource type + +Namespace: microsoft.graph.identityGovernance + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents an abstract operator used by a [timeBasedAttributeTriggerV2](../resources/identitygovernance-timebasedattributetriggerv2.md) to evaluate a user's date attribute. This type can't be instantiated directly. + +Configure this type in the **operator** property of [timeBasedAttributeTriggerV2](../resources/identitygovernance-timebasedattributetriggerv2.md). + +The following type is derived from this type: + +- [workflowTriggerTimeBasedOperator](../resources/identitygovernance-workflowtriggertimebasedoperator.md) + +The type of an operator is differentiated by its `@odata.type` property. + +## Properties + +None. + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +```json +{ + "@odata.type": "#microsoft.graph.identityGovernance.workflowExecutionTriggerOperator" +} +``` diff --git a/api-reference/beta/resources/identitygovernance-workflowtriggertimebasedoperator.md b/api-reference/beta/resources/identitygovernance-workflowtriggertimebasedoperator.md new file mode 100644 index 00000000000..00dbd60e93d --- /dev/null +++ b/api-reference/beta/resources/identitygovernance-workflowtriggertimebasedoperator.md @@ -0,0 +1,54 @@ +--- +title: "workflowTriggerTimeBasedOperator resource type" +description: "Represents an abstract time-based operator used to evaluate a user's date attribute." +author: "jackschedel" +ms.date: 08/10/2026 +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +--- + +# workflowTriggerTimeBasedOperator resource type + +Namespace: microsoft.graph.identityGovernance + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents an abstract [workflowExecutionTriggerOperator](../resources/identitygovernance-workflowexecutiontriggeroperator.md) that evaluates a user's date attribute relative to the current date. This type can't be instantiated directly. + +Configure this type in the **operator** property of [timeBasedAttributeTriggerV2](../resources/identitygovernance-timebasedattributetriggerv2.md). + +The following types are derived from this type: + +- [operatorBetween](../resources/identitygovernance-operatorbetween.md) +- [operatorEqualTo](../resources/identitygovernance-operatorequalto.md) +- [operatorLessThanEqualTo](../resources/identitygovernance-operatorlessthanequalto.md) + +The type of an operator is differentiated by its `@odata.type` property. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|eventTiming|microsoft.graph.identityGovernance.workflowTriggerOperatorEventTiming|Specifies whether the operator evaluates dates before, after, or on the date in the user attribute. The possible values are: `before`, `after`, `on`, `unknownFutureValue`. Each derived type defines the values it supports.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +```json +{ + "@odata.type": "#microsoft.graph.identityGovernance.workflowTriggerTimeBasedOperator", + "eventTiming": "String" +} +``` diff --git a/api-reference/beta/toc/identity-and-access/toc.yml b/api-reference/beta/toc/identity-and-access/toc.yml index a29a293bc31..9d596297696 100644 --- a/api-reference/beta/toc/identity-and-access/toc.yml +++ b/api-reference/beta/toc/identity-and-access/toc.yml @@ -1469,6 +1469,20 @@ items: href: ../../api/identitygovernance-insights-workflowsprocessedsummary.md - name: Get workflows processed by category href: ../../api/identitygovernance-insights-workflowsprocessedbycategory.md + - name: Complex types + items: + - name: Operator between + href: ../../resources/identitygovernance-operatorbetween.md + - name: Operator equal to + href: ../../resources/identitygovernance-operatorequalto.md + - name: Operator less than equal to + href: ../../resources/identitygovernance-operatorlessthanequalto.md + - name: Time based attribute trigger v2 + href: ../../resources/identitygovernance-timebasedattributetriggerv2.md + - name: Workflow execution trigger operator + href: ../../resources/identitygovernance-workflowexecutiontriggeroperator.md + - name: Workflow trigger time based operator + href: ../../resources/identitygovernance-workflowtriggertimebasedoperator.md - name: Privileged Identity Management iteration 3 items: - name: PIM for Microsoft Entra roles diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 87235328944..36f9f28ba00 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -1458,6 +1458,14 @@ "microsoft.graph.identityGovernance.lifecycleManagementSettings", "microsoft.graph.identitygovernance.insights" ], + "complexTypes": [ + "microsoft.graph.identityGovernance.operatorBetween", + "microsoft.graph.identityGovernance.operatorEqualTo", + "microsoft.graph.identityGovernance.operatorLessThanEqualTo", + "microsoft.graph.identityGovernance.timeBasedAttributeTriggerV2", + "microsoft.graph.identityGovernance.workflowExecutionTriggerOperator", + "microsoft.graph.identityGovernance.workflowTriggerTimeBasedOperator" + ], "childNodes": [ { "name": "Workflow", diff --git a/changelog/Microsoft.AAD.LCM.json b/changelog/Microsoft.AAD.LCM.json index ae2c99172ce..b53c97ac7fa 100644 --- a/changelog/Microsoft.AAD.LCM.json +++ b/changelog/Microsoft.AAD.LCM.json @@ -1,5 +1,71 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "4c398855-256b-4118-b5a4-34cf46c00aa2", + "ApiChange": "Enumeration", + "ChangedApiName": "workflowTriggerOperatorEventTiming", + "ChangeType": "Addition", + "Description": "Added the **workflowTriggerOperatorEventTiming** enumeration type.", + "Target": "workflowTriggerOperatorEventTiming" + }, + { + "Id": "4c398855-256b-4118-b5a4-34cf46c00aa2", + "ApiChange": "Resource", + "ChangedApiName": "operatorBetween", + "ChangeType": "Addition", + "Description": "Added the [operatorBetween](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-operatorbetween?view=graph-rest-beta) resource.", + "Target": "operatorBetween" + }, + { + "Id": "4c398855-256b-4118-b5a4-34cf46c00aa2", + "ApiChange": "Resource", + "ChangedApiName": "operatorEqualTo", + "ChangeType": "Addition", + "Description": "Added the [operatorEqualTo](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-operatorequalto?view=graph-rest-beta) resource.", + "Target": "operatorEqualTo" + }, + { + "Id": "4c398855-256b-4118-b5a4-34cf46c00aa2", + "ApiChange": "Resource", + "ChangedApiName": "operatorLessThanEqualTo", + "ChangeType": "Addition", + "Description": "Added the [operatorLessThanEqualTo](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-operatorlessthanequalto?view=graph-rest-beta) resource.", + "Target": "operatorLessThanEqualTo" + }, + { + "Id": "4c398855-256b-4118-b5a4-34cf46c00aa2", + "ApiChange": "Resource", + "ChangedApiName": "timeBasedAttributeTriggerV2", + "ChangeType": "Addition", + "Description": "Added the [timeBasedAttributeTriggerV2](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-timebasedattributetriggerv2?view=graph-rest-beta) resource.", + "Target": "timeBasedAttributeTriggerV2" + }, + { + "Id": "4c398855-256b-4118-b5a4-34cf46c00aa2", + "ApiChange": "Resource", + "ChangedApiName": "workflowExecutionTriggerOperator", + "ChangeType": "Addition", + "Description": "Added the [workflowExecutionTriggerOperator](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-workflowexecutiontriggeroperator?view=graph-rest-beta) resource.", + "Target": "workflowExecutionTriggerOperator" + }, + { + "Id": "4c398855-256b-4118-b5a4-34cf46c00aa2", + "ApiChange": "Resource", + "ChangedApiName": "workflowTriggerTimeBasedOperator", + "ChangeType": "Addition", + "Description": "Added the [workflowTriggerTimeBasedOperator](https://learn.microsoft.com/en-us/graph/api/resources/identitygovernance-workflowtriggertimebasedoperator?view=graph-rest-beta) resource.", + "Target": "workflowTriggerTimeBasedOperator" + } + ], + "Id": "4c398855-256b-4118-b5a4-34cf46c00aa2", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-02T23:14:26.6914738Z", + "WorkloadArea": "Identity and access", + "SubArea": "Governance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 5dee5f5a53d..20ed638379b 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -89,6 +89,10 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] - Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns?view=graph-rest-beta&preserve-view=true) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource type to create or update up to 20 columnDefinition objects in a single request. - Added the **appliedByUser** parameter to the [assignSensitivityLabel](/graph/api/driveitem-assignsensitivitylabel?view=graph-rest-beta&preserve-view=true) action on the [driveItem](/graph/api/resources/driveitem?view=graph-rest-beta&preserve-view=true) resource. This parameter allows app-only callers to specify the user identity on whose behalf the sensitivity label is applied, enabling label assignment for SharePoint Embedded containers. +### Identity and access | Governance + +- Added support for configurable time-based lifecycle workflow triggers through the [timeBasedAttributeTriggerV2](/graph/api/resources/identitygovernance-timebasedattributetriggerv2?view=graph-rest-beta&preserve-view=true) resource. Select a date-type user attribute and configure an operator to run workflows on an exact date, within a rolling window, or between two offsets before or after that date. + ### Mail - Changed the **members** property on the [distributionList](/graph/api/resources/distributionlist?view=graph-rest-beta&preserve-view=true) resource to an expandable relationship. Use `$expand=members` with the [Get distribution list](/graph/api/distributionlist-get?view=graph-rest-beta&preserve-view=true) method instead of the removed standalone methods for listing and getting members. From f3503afca8cc72e48a34ddf91f6e865e03d06b3f Mon Sep 17 00:00:00 2001 From: Ritika Date: Thu, 3 Sep 2026 03:01:43 +0530 Subject: [PATCH 106/189] Enhanced Restore Reports Feature (#28020) * draft * updated changelog * misc * draft * suggested changes * misc * revised doc * fixing validation errors * minor change * suggestions from acrolinx * fix json * adding back backupreport base type * ficing backupreport resource * Update backupreport-getstatisticsbypolicy.md * Update backupreport-getstatisticsbypolicy-permissions.md * Update backuprestoreroot.md * Update backupcountstatistics.md * Update backupcountstatistics.md * Update backuppolicyreport.md * Update backupreport.md * Update Microsoft.EnhancedRestore.json * Update toc.mapping.json * Update reference TOC * Update whats-new-overview.md * addressing review comments * correct permissions * correcting permissions and enhancing api definition * Apply suggestion from @Danipocket * Update backuppolicyreport.md * Update api-reference/beta/api/backupreport-getstatisticsbypolicy.md go back to previous state. Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * review comments addressed * resolve error during merge * Apply suggestions from code review * Update whats-new-overview.md * adding the deleted change log since csdl build is failing * Apply suggestions from code review * fixes * fix * fix --------- Co-authored-by: Jarbas Horst Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../api/backupreport-getstatisticsbypolicy.md | 109 ++++++++++++++ ...eport-getstatisticsbypolicy-permissions.md | 11 ++ .../beta/resources/backupcountstatistics.md | 57 ++++++++ .../beta/resources/backuppolicyreport.md | 43 ++++++ api-reference/beta/resources/backupreport.md | 50 +++++++ .../beta/resources/backuprestoreroot.md | 1 + api-reference/beta/toc/backup-storage/toc.yml | 10 ++ api-reference/beta/toc/toc.mapping.json | 3 + changelog/Microsoft.EnhancedRestore.json | 50 +++++++ concepts/whats-new-overview.md | 138 +----------------- 10 files changed, 341 insertions(+), 131 deletions(-) create mode 100644 api-reference/beta/api/backupreport-getstatisticsbypolicy.md create mode 100644 api-reference/beta/includes/permissions/backupreport-getstatisticsbypolicy-permissions.md create mode 100644 api-reference/beta/resources/backupcountstatistics.md create mode 100644 api-reference/beta/resources/backuppolicyreport.md create mode 100644 api-reference/beta/resources/backupreport.md diff --git a/api-reference/beta/api/backupreport-getstatisticsbypolicy.md b/api-reference/beta/api/backupreport-getstatisticsbypolicy.md new file mode 100644 index 00000000000..cbfaada5c91 --- /dev/null +++ b/api-reference/beta/api/backupreport-getstatisticsbypolicy.md @@ -0,0 +1,109 @@ +--- +title: "backupReport: getStatisticsByPolicy" +description: "Get the statistics that correspond to the specified policy ID of a backupPolicyReport." +author: "rigera" +ms.date: 01/09/2026 +ms.localizationpriority: medium +ms.subservice: "m365-backup-storage" +doc_type: apiPageType +--- + +# backupReport: getStatisticsByPolicy + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Get the statistics that correspond to the specified policy ID of a [backupPolicyReport](../resources/backuppolicyreport.md). + +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/backupreport-getstatisticsbypolicy-permissions.md)] + +## HTTP request + + +``` http +GET /solutions/backupRestore/reports/getStatisticsByPolicy(policyId='{backupPolicyId}') +``` + +## Function parameters +In the request URL, provide the following query parameters with values. + +|Parameter|Type|Description| +|:---|:---|:---| +|`policyId`|String|The ID of the backup policy for which the report is requested. Required.| + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this function returns a `200 OK` response code and a [backupPolicyReport](../resources/backuppolicyreport.md) in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/beta/solutions/backupRestore/reports/getStatisticsByPolicy(policyId='98a71fd2-00f7-413f-a908-370acfb2983f') +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#microsoft.graph.backupPolicyReport", + "backupPolicyId": "98a71fd2-00f7-413f-a908-370acfb2983f", + "displayName": "Exchange Policy - Inadvertent data loss", + "countStatistics": { + "total": 5, + "protectedInProgress": 0, + "unprotectedInProgress": 0, + "protectedCompleted": 0, + "unprotectedCompleted": 0, + "protectedFailed": 5, + "unprotectedFailed": 0, + "removed": null, + "offboardRequested": 0, + "lastComputedDateTime": "2026-01-16T09:48:48.5534369Z" + } +} +``` diff --git a/api-reference/beta/includes/permissions/backupreport-getstatisticsbypolicy-permissions.md b/api-reference/beta/includes/permissions/backupreport-getstatisticsbypolicy-permissions.md new file mode 100644 index 00000000000..d7ae0fa3b4e --- /dev/null +++ b/api-reference/beta/includes/permissions/backupreport-getstatisticsbypolicy-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|BackupRestore-Configuration.Read.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|BackupRestore-Configuration.Read.All|Not available.| diff --git a/api-reference/beta/resources/backupcountstatistics.md b/api-reference/beta/resources/backupcountstatistics.md new file mode 100644 index 00000000000..6e5adcf07e9 --- /dev/null +++ b/api-reference/beta/resources/backupcountstatistics.md @@ -0,0 +1,57 @@ +--- +title: "backupCountStatistics resource type" +description: "Represents the count of artifacts in each of the protection stages." +author: "rigera" +ms.date: 01/09/2026 +ms.localizationpriority: medium +ms.subservice: "m365-backup-storage" +doc_type: resourcePageType +--- + +# backupCountStatistics resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the count of artifacts in each of the protection stages. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|lastComputedDateTime|DateTimeOffset|The date and time when this metric was calculated. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`. | +|offboardRequested|Int32|The count of artifacts in **offboardRequested** state. This metric captures artifacts in protection‑unit–level offboarding and artifacts offboarded due to an unhealthy billing profile.| +|protectedCompleted|Int32|The count of artifacts in protected state.| +|protectedFailed|Int32|The count of artifacts whose protection was attempted but failed. These artifacts typically have unprotected as their status.| +|protectedInProgress|Int32|The count of artifacts whose protection attempt is currently in progress. This metric applies to artifacts for which the process to start or resume taking backups is still required.| +|removed|Int32|The count of artifacts not associated with any policy. This property is always `null` for a policy-level report. Nullable.| +|total|Int32|The count of artifacts in the specified entity. The currently supported entity is a backup policy.| +|unprotectedCompleted|Int32|The count of artifacts that are no longer actively protected. These artifacts have historical restore points, but no new backups are being taken.| +|unprotectedFailed|Int32|The count of artifacts for which unprotection was attempted but didn't complete. These artifacts are typically in the protected state.| +|unprotectedInProgress|Int32|The count of artifacts for which unprotection is currently in progress.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.backupCountStatistics", + "lastComputedDateTime": "String (timestamp)", + "offboardRequested": "Int32", + "protectedCompleted": "Int32", + "protectedFailed": "Int32", + "protectedInProgress": "Int32", + "removed": "Int32", + "total": "Int32", + "unprotectedCompleted": "Int32", + "unprotectedFailed": "Int32", + "unprotectedInProgress": "Int32" +} +``` diff --git a/api-reference/beta/resources/backuppolicyreport.md b/api-reference/beta/resources/backuppolicyreport.md new file mode 100644 index 00000000000..7dce9eb116a --- /dev/null +++ b/api-reference/beta/resources/backuppolicyreport.md @@ -0,0 +1,43 @@ +--- +title: "backupPolicyReport resource type" +description: "Represents a report that corresponds to a backup policy." +author: "rigera" +ms.date: 01/09/2026 +ms.localizationpriority: medium +ms.subservice: "m365-backup-storage" +doc_type: resourcePageType +--- + +# backupPolicyReport resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a report that corresponds to a backup policy. This report contains metrics like backup count statistics which shows the number of artifacts in various stages of protection. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|backupPolicyId|String|The ID of the backup policy.| +|countStatistics|[backupCountStatistics](../resources/backupcountstatistics.md)|The count of artifacts in various protection stages.| +|displayName|String|The display name of the backup policy.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.backupPolicyReport", + "backupPolicyId": "String", + "countStatistics": {"@odata.type": "microsoft.graph.backupCountStatistics"}, + "displayName": "String" +} +``` diff --git a/api-reference/beta/resources/backupreport.md b/api-reference/beta/resources/backupreport.md new file mode 100644 index 00000000000..9bfc3576b37 --- /dev/null +++ b/api-reference/beta/resources/backupreport.md @@ -0,0 +1,50 @@ +--- +title: "backupReport resource type" +description: "Represents an abstract backup report." +author: "rigera" +ms.date: 01/16/2026 +ms.localizationpriority: medium +ms.subservice: "m365-backup-storage" +doc_type: resourcePageType +--- + +# backupReport resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents an abstract backup report. This resource can't be instantiated directly. + +Inherits from [entity](../resources/entity.md). + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[Get statistics by policy](../api/backupreport-getstatisticsbypolicy.md)|[backupPolicyReport](../resources/backuppolicyreport.md)|Get the statistics that correspond to the specified policy ID of a [backupPolicyReport](../resources/backuppolicyreport.md).| + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|id|String|The unique identifier for the backup report. Inherited from [entity](../resources/entity.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.backupReport", + "id": "String (identifier)" +} +``` diff --git a/api-reference/beta/resources/backuprestoreroot.md b/api-reference/beta/resources/backuprestoreroot.md index c1174bec850..8ea1c39e559 100644 --- a/api-reference/beta/resources/backuprestoreroot.md +++ b/api-reference/beta/resources/backuprestoreroot.md @@ -54,6 +54,7 @@ Represents the Microsoft 365 Backup Storage service in a tenant. |oneDriveForBusinessRestoreSessions|[oneDriveForBusinessRestoreSession](../resources/onedriveforbusinessrestoresession.md) collection|The list of OneDrive for Business restore sessions available in the tenant.| |protectionPolicies|[protectionPolicyBase](../resources/protectionpolicybase.md) collection|List of protection policies in the tenant.| |protectionUnits|[protectionUnitBase](../resources/protectionunitbase.md) collection|List of protection units in the tenant.| +|reports|[backupReport](../resources/backupreport.md)|Report corresponding to a protection policy.| |restorePoints|[restorePoint](../resources/restorepoint.md) collection|List of restore points in the tenant.| |restoreSessions|[restoreSessionBase](../resources/restoresessionbase.md) collection|List of restore sessions in the tenant.| |serviceApps|[serviceApp](../resources/serviceapp.md) collection|List of Backup Storage apps in the tenant.| diff --git a/api-reference/beta/toc/backup-storage/toc.yml b/api-reference/beta/toc/backup-storage/toc.yml index 9de80b6036b..b379d3f33a8 100644 --- a/api-reference/beta/toc/backup-storage/toc.yml +++ b/api-reference/beta/toc/backup-storage/toc.yml @@ -2,6 +2,12 @@ # GENERATED FILE - DO NOT EDIT # items: +- name: Backup report + items: + - name: Backup report + href: ../../resources/backupreport.md + - name: Get statistics by policy + href: ../../api/backupreport-getstatisticsbypolicy.md - name: Backup restore items: - name: Backup restore @@ -443,6 +449,10 @@ items: items: - name: Artifact query href: ../../resources/artifactquery.md + - name: Backup count statistics + href: ../../resources/backupcountstatistics.md + - name: Backup policy report + href: ../../resources/backuppolicyreport.md - name: Browse query response item href: ../../resources/browsequeryresponseitem.md - name: Notification recipients diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 36f9f28ba00..c89d9f07b83 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -190,6 +190,7 @@ "Enhanced Restore" ], "resources": [ + "backupReport", "backupRestoreRoot", "emailNotificationsSetting", "exclusionUnitBase", @@ -291,6 +292,8 @@ ], "complexTypes": [ "artifactQuery", + "backupCountStatistics", + "backupPolicyReport", "browseQueryResponseItem", "notificationRecipients", "protectionPolicyArtifactCount", diff --git a/changelog/Microsoft.EnhancedRestore.json b/changelog/Microsoft.EnhancedRestore.json index eb8cd276859..1602dc6d306 100644 --- a/changelog/Microsoft.EnhancedRestore.json +++ b/changelog/Microsoft.EnhancedRestore.json @@ -1,5 +1,55 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "2de8d8e2-93f6-4445-8b33-3213e55fafa1", + "ApiChange": "Resource", + "ChangedApiName": "backupCountStatistics", + "ChangeType": "Addition", + "Description": "Added the [backupCountStatistics](https://learn.microsoft.com/en-us/graph/api/resources/backupcountstatistics?view=graph-rest-beta) resource type.", + "Target": "backupCountStatistics" + }, + { + "Id": "2de8d8e2-93f6-4445-8b33-3213e55fafa1", + "ApiChange": "Resource", + "ChangedApiName": "backupPolicyReport", + "ChangeType": "Addition", + "Description": "Added the [backupPolicyReport](https://learn.microsoft.com/en-us/graph/api/resources/backuppolicyreport?view=graph-rest-beta) resource type.", + "Target": "backupPolicyReport" + }, + { + "Id": "2de8d8e2-93f6-4445-8b33-3213e55fafa1", + "ApiChange": "Resource", + "ChangedApiName": "backupReport", + "ChangeType": "Addition", + "Description": "Added the [backupReport](https://learn.microsoft.com/en-us/graph/api/resources/backupreport?view=graph-rest-beta) resource and an associated method.", + "Target": "backupReport" + }, + { + "Id": "2de8d8e2-93f6-4445-8b33-3213e55fafa1", + "ApiChange": "Relationship", + "ChangedApiName": "reports", + "ChangeType": "Addition", + "Description": "Added the **reports** relationship to the [backupRestoreRoot](https://learn.microsoft.com/en-us/graph/api/resources/backuprestoreroot?view=graph-rest-beta) resource.", + "Target": "backupRestoreRoot" + }, + { + "Id": "2de8d8e2-93f6-4445-8b33-3213e55fafa1", + "ApiChange": "Method", + "ChangedApiName": "getStatisticsByPolicy", + "ChangeType": "Addition", + "Description": "Added the [getStatisticsByPolicy](https://learn.microsoft.com/en-us/graph/api/backupreport-getstatisticsbypolicy?view=graph-rest-beta) method to the [backupReport](https://learn.microsoft.com/en-us/graph/api/resources/backupreport?view=graph-rest-beta) resource.", + "Target": "backupReport" + } + ], + "Id": "2de8d8e2-93f6-4445-8b33-3213e55fafa1", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-02T07:45:34.3794328Z", + "WorkloadArea": "Backup and recovery", + "SubArea": "Microsoft 365 backup and storage" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 20ed638379b..edd0af2b4ad 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -3,7 +3,7 @@ title: "What's new in Microsoft Graph" description: "Find out what's new in Microsoft Graph APIs, SDKs, documentation, and other resources." author: "lauragra" ms.localizationpriority: high -ms.date: 08/20/2026 +ms.date: 09/02/2026 ms.topic: whats-new --- @@ -18,6 +18,12 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what > [!IMPORTANT] > Features in _preview_ status are subject to change without notice, and might not be promoted to generally available (GA) status. Don't use preview features in production apps. +## September 2026: New in preview only + +### Backup storage + +Added the [getStatisticsByPolicy](/graph/api/backupreport-getstatisticsbypolicy?view=graph-rest-beta&preserve-view=true) method to retrieve policy-level protection statistics for Microsoft 365 Backup Storage. Use the report to monitor protected and unprotected artifacts across completed, in-progress, and failed states, review offboarding activity, and determine when the metrics were last calculated. + ## August 2026: New and generally available ### Applications @@ -301,136 +307,6 @@ The **timeZone** property of the [schedule](/graph/api/resources/schedule) resou Application permissions for the [user: translateExchangeIds](/graph/api/user-translateexchangeids) API are supported only for request URLs that identify a user in the path. -## June 2026: New and generally available - -### Applications | Service principal - -Evaluate applications in the Microsoft Entra application gallery by using the [applicationTemplate](/graph/api/resources/applicationtemplate) resource type, including the **riskScore** and **riskFactors** properties for risk assessment. - -### Files | Reports - -- Added the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to the [reportRoot](/graph/api/resources/reportroot?view=graph-rest-beta&preserve-view=true) resource to retrieve aggregated OneDrive and SharePoint API usage metrics for a tenant, including egress usage and throttling metrics. -- [Upsert](/graph/api/filestoragecontainer-patch-permissions) (create or update) up to 40 permissions on a [fileStorageContainer](/graph/api/resources/filestoragecontainer) in a single request. The limit increased from 10 to 40 [permission](/graph/api/resources/permission) objects per request. - -### Groups - -- Added the **accessType**, **isFavorite**, **unseenConversationsCount**, and **unseenMessagesCount** properties to the [group](/graph/api/resources/group) resource. Use these properties to manage access settings and track conversation activity for Microsoft 365 groups. Added the **groupAccessType** enumeration type to support the **accessType** property on the [group](/graph/api/resources/group) resource. - -### Identity and access | Directory management - -- Added the [deviceRegistrationPolicy](/graph/api/resources/deviceregistrationpolicy) resource type and related methods to manage the policy that controls device registration quota restrictions, additional authentication, and authorization policies for your Microsoft Entra tenant. -- Added the [Get](/graph/api/accesspackagesubject-get) and [Update](/graph/api/accesspackagesubject-update) methods to the [accessPackageSubject](/graph/api/resources/accesspackagesubject) resource type to manage the subject lifecycle of external directory users in Microsoft Entra entitlement management. -- Added the **type** property to the [accessPackageResourceRole](/graph/api/resources/accesspackageresourcerole) resource to indicate whether an Azure resource role is active or eligible, enabling PIM-based role assignments for Azure resources in access packages. -- Added the [accessPackageSuggestion](/graph/api/resources/accesspackagesuggestion) resource type and related methods for discovering suggested access packages based on related people insights and assignment history. Use the [filterByCurrentUser](/graph/api/accesspackagesuggestions-filterbycurrentuser) function to retrieve personalized suggestions. -- Added the **approverInformationVisibility** property to the [accessPackageApprovalStage](/graph/api/resources/accesspackageapprovalstage) resource to control whether approver information is visible to requestors. -- Added the [endUserSettings](/graph/api/resources/endusersettings) resource type and related methods for configuring access package suggestion behavior, including related people insight levels and approver detail visibility. -- Added workflow preview operations to the [workflow](/graph/api/resources/identitygovernance-workflow) resource type in Lifecycle Workflows, enabling you to validate tasks and run workflows in preview mode without affecting production users. -- Added the [customDataProvidedResourceUploadSession](/graph/api/resources/customdataprovidedresourceuploadsession) resource type and related methods for uploading external access data (Bring Your Own Data) for access reviews. -- Added the [customDataProvidedResource](/graph/api/resources/customdataprovidedresource) resource type, an access package resource that represents an external application whose access data is provided through the Bring Your Own Data (BYOD) flow for catalog user access reviews. - -### Identity and access | Identity and sign-in - -- Added the [onVerifiedIdClaimValidationCustomExtension](/graph/api/resources/onverifiedidclaimvalidationcustomextension) and [onVerifiedIdClaimValidationListener](/graph/api/resources/onverifiedidclaimvalidationlistener) resource types and associated methods to support custom logic for claim validation from Verified ID credential presentations during authentication flows through Microsoft Entra custom authentication extensions in External ID. -- Added claim validation and match-confidence capabilities to [Verified ID profiles](/graph/api/resources/verifiedidprofile), enabling stronger claim verification and more flexible matching. -- Enhanced the [x509CertificateAuthenticationMethodConfiguration](/graph/api/resources/x509certificateauthenticationmethodconfiguration) resource type with the following capabilities for certificate-based authentication (CBA): - - Scoping CBA to specific certificate authorities and restricting which groups of users can authenticate using certificates from those CAs. - - Controlling whether issuer hints are sent to the client to filter the certificates shown in the certificate picker. -- Updated the **targetedAuthenticationMethod** property of the [authenticationMethodsRegistrationCampaignIncludeTarget](/graph/api/resources/authenticationmethodsregistrationcampaignincludetarget) resource to support `Fido2` in addition to `microsoftAuthenticator` for authentication method registration campaigns. Organizations can now use registration campaigns to nudge users to register and sign in with phishing-resistant passkeys (FIDO2). - -### Mailbox import and export - -- Added the [Overview of the mailbox import and export APIs in Microsoft Graph](/graph/mailbox-import-export-concept-overview) to help you build solutions for mailbox import and export scenarios. - -### People and workplace intelligence | Places - -- Added the **servicePlans** property to the [desk](/graph/api/resources/desk) resource to manage the service plans associated with workspace desks. -- Added the **placeId** property to the [place](/graph/api/resources/place) resource to provide a stable identifier across place types. - -### Security | Alerts and incidents - -- Added the migration guide [Migrate from legacy alerts to the alerts and incidents API](/graph/alertsv1-alertsv2-migration) to help you transition your apps from the deprecated Microsoft Graph security alerts v1 API to the new alerts and incidents API. -- Extended the [alertEvidence](/graph/api/resources/security-alertevidence) base type with additional derived types to provide detailed context about various artifacts involved in [security alerts](/graph/api/resources/security-alert). - -### Teamwork and communications | Calls and online meetings - -Detect and report synthetic (AI-generated) media in meeting calls using the [reportSyntheticMedia](/graph/api/participant-reportsyntheticmedia?view=graph-rest-beta&preserve-view=true) method on the [participant](/graph/api/resources/participant?view=graph-rest-beta&preserve-view=true) resource. Certified detection bots can analyze audio, video, or multimodal content in real time and report detections with confidence scores, severity levels, and detailed metadata. When a detection is reported, the service populates the **syntheticMediaDetection** property on the participant with a [syntheticMediaDetectionInfo](/graph/api/resources/syntheticmediadetectioninfo?view=graph-rest-beta&preserve-view=true) object, allowing all meeting participants to see and respond to the detection through roster updates. This capability helps organizations identify and mitigate risks from deepfake media, voice cloning, and other AI-generated content in collaborative scenarios. -- Added the [plannerHistoryItem](/graph/api/resources/plannerhistoryitem?view=graph-rest-beta&preserve-view=true) resource type and [List historyItems](/graph/api/plannerplan-list-historyitems?view=graph-rest-beta&preserve-view=true) method to audit task changes within a Planner plan. Track when tasks are created, updated, deleted, or moved, and filter by **occurredDateTime** to retrieve changes within specific time ranges. -- Added the [plannerGoal](/graph/api/resources/plannergoal?view=graph-rest-beta&preserve-view=true) resource type and related read methods for viewing goals in a Planner plan and understanding which goals are associated with each task. - -### Teamwork and communications | Graph API controls - -Updated Microsoft Graph documentation for transcript APIs to add guidance on tenant administrator controls that govern transcript access and speaker attribution. For more information, see [Get change notifications for transcripts and recordings using Microsoft Graph](teams-changenotifications-callrecording-and-calltranscript.md). - -### Teamwork and communications | Messaging - -- Added the **citations** property to the [chatMessage](/graph/api/resources/chatmessage?view=graph-rest-beta&preserve-view=true) resource type to represent inline citations that reference external sources cited in bot-generated messages. - -### Teamwork and communications | Shift management - -The **timeZone** property of the [schedule](/graph/api/resources/schedule) resource must be set to an IANA time zone name, such as `America/Chicago` or `Europe/London`. For more information, see [Create or replace schedule](/graph/api/team-put-schedule). - -### Users - -Application permissions for the [user: translateExchangeIds](/graph/api/user-translateexchangeids) API are supported only for request URLs that identify a user in the path. - -## June 2026: New and generally available - -### Applications | Service principal - -Evaluate applications in the Microsoft Entra application gallery by using the [applicationTemplate](/graph/api/resources/applicationtemplate) resource type, including the **riskScore** and **riskFactors** properties for risk assessment. - -### Files | Reports - -- Added the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to the [reportRoot](/graph/api/resources/reportroot?view=graph-rest-beta&preserve-view=true) resource to retrieve aggregated OneDrive and SharePoint API usage metrics for a tenant, including egress usage and throttling metrics. -- [Upsert](/graph/api/filestoragecontainer-patch-permissions) (create or update) up to 40 permissions on a [fileStorageContainer](/graph/api/resources/filestoragecontainer) in a single request. The limit increased from 10 to 40 [permission](/graph/api/resources/permission) objects per request. - -### Groups - -- Added the **accessType**, **isFavorite**, **unseenConversationsCount**, and **unseenMessagesCount** properties to the [group](/graph/api/resources/group) resource. Use these properties to manage access settings and track conversation activity for Microsoft 365 groups. Added the **groupAccessType** enumeration type to support the **accessType** property on the [group](/graph/api/resources/group) resource. - -### Identity and access | Directory management - -- Added the [deviceRegistrationPolicy](/graph/api/resources/deviceregistrationpolicy) resource type and related methods to manage the policy that controls device registration quota restrictions, additional authentication, and authorization policies for your Microsoft Entra tenant. -- Added the [Get](/graph/api/accesspackagesubject-get) and [Update](/graph/api/accesspackagesubject-update) methods to the [accessPackageSubject](/graph/api/resources/accesspackagesubject) resource type to manage the subject lifecycle of external directory users in Microsoft Entra entitlement management. -- Added the **type** property to the [accessPackageResourceRole](/graph/api/resources/accesspackageresourcerole) resource to indicate whether an Azure resource role is active or eligible, enabling PIM-based role assignments for Azure resources in access packages. -- Added the [accessPackageSuggestion](/graph/api/resources/accesspackagesuggestion) resource type and related methods for discovering suggested access packages based on related people insights and assignment history. Use the [filterByCurrentUser](/graph/api/accesspackagesuggestions-filterbycurrentuser) function to retrieve personalized suggestions. -- Added the **approverInformationVisibility** property to the [accessPackageApprovalStage](/graph/api/resources/accesspackageapprovalstage) resource to control whether approver information is visible to requestors. -- Added the [endUserSettings](/graph/api/resources/endusersettings) resource type and related methods for configuring access package suggestion behavior, including related people insight levels and approver detail visibility. -- Added workflow preview operations to the [workflow](/graph/api/resources/identitygovernance-workflow) resource type in Lifecycle Workflows, enabling you to validate tasks and run workflows in preview mode without affecting production users. -- Added the [customDataProvidedResourceUploadSession](/graph/api/resources/customdataprovidedresourceuploadsession) resource type and related methods for uploading external access data (Bring Your Own Data) for access reviews. -- Added the [customDataProvidedResource](/graph/api/resources/customdataprovidedresource) resource type, an access package resource that represents an external application whose access data is provided through the Bring Your Own Data (BYOD) flow for catalog user access reviews. - -### Identity and access | Identity and sign-in - -- Added the [onVerifiedIdClaimValidationCustomExtension](/graph/api/resources/onverifiedidclaimvalidationcustomextension) and [onVerifiedIdClaimValidationListener](/graph/api/resources/onverifiedidclaimvalidationlistener) resource types and associated methods to support custom logic for claim validation from Verified ID credential presentations during authentication flows through Microsoft Entra custom authentication extensions in External ID. -- Added claim validation and match-confidence capabilities to [Verified ID profiles](/graph/api/resources/verifiedidprofile), enabling stronger claim verification and more flexible matching. -- Enhanced the [x509CertificateAuthenticationMethodConfiguration](/graph/api/resources/x509certificateauthenticationmethodconfiguration) resource type with the following capabilities for certificate-based authentication (CBA): - - Scoping CBA to specific certificate authorities and restricting which groups of users can authenticate using certificates from those CAs. - - Controlling whether issuer hints are sent to the client to filter the certificates shown in the certificate picker. -- Updated the **targetedAuthenticationMethod** property of the [authenticationMethodsRegistrationCampaignIncludeTarget](/graph/api/resources/authenticationmethodsregistrationcampaignincludetarget) resource to support `Fido2` in addition to `microsoftAuthenticator` for authentication method registration campaigns. Organizations can now use registration campaigns to nudge users to register and sign in with phishing-resistant passkeys (FIDO2). - -### Mailbox import and export - -- Added the [Overview of the mailbox import and export APIs in Microsoft Graph](/graph/mailbox-import-export-concept-overview) to help you build solutions for mailbox import and export scenarios. - -### People and workplace intelligence | Places - -- Added the **servicePlans** property to the [desk](/graph/api/resources/desk) resource to manage the service plans associated with workspace desks. -- Added the **placeId** property to the [place](/graph/api/resources/place) resource to provide a stable identifier across place types. - -### Security | Alerts and incidents - -- Added the migration guide [Migrate from legacy alerts to the alerts and incidents API](/graph/alertsv1-alertsv2-migration) to help you transition your apps from the deprecated Microsoft Graph security alerts v1 API to the new alerts and incidents API. -- Extended the [alertEvidence](/graph/api/resources/security-alertevidence) base type with additional derived types to provide detailed context about various artifacts involved in [security alerts](/graph/api/resources/security-alert). - -### Security | Audit log query - -- Added [auditData](/graph/api/resources/security-auditdata) derived types to represent audit records for Microsoft 365 workloads, including Exchange, SharePoint, Microsoft Teams, Microsoft Entra ID, Compliance DLP, Microsoft Purview, Copilot, Sentinel, Viva Glint, Defender, Power Platform, Dragon Copilot, Fabric, and others. Added the **dynamicProperties** property of type **auditRecordTypeDictionary** to the **auditData** resource to enable dynamic audit event properties. Added corresponding members to the [auditLogRecordType](/graph/api/resources/security-auditlogrecordtype) enumeration. - -### Teamwork and communications | Messaging - -Added the [chatMessageBody](/graph/api/resources/chatmessagebody?view=graph-rest-beta&preserve-view=true) resource type to support Teams-specific message content formats, including `markdown`. - ## Contribute to Microsoft Graph Are there scenarios you'd like Microsoft Graph to support? From 6b788135ee714b9b36522351abbe9f3f3f5c0ba5 Mon Sep 17 00:00:00 2001 From: ms-linxin <153484892+ms-linxin@users.noreply.github.com> Date: Thu, 3 Sep 2026 07:29:38 +0800 Subject: [PATCH 107/189] Add cloudPC DR status updates and align related docs (#28757) * Add failoverInProgress/failbackInProgress status and isDisasterRecoveryActive to cloudPC * Add changelog for failoverInProgress/failbackInProgress and isDisasterRecoveryActive * Address Cloud PC review feedback in docs * Fix isDisasterRecoveryActive description to clarify DR region state * Address Cloud PC doc review comments * Normalize Cloud PC status enum ordering * Refine Cloud PC DR documentation wording * Clarify Cloud PC whats-new entry * Fix Cloud PC changelog link casing * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update cloudpc.md * Update cloudpcstatussummary.md * Apply suggestion from @MSFT-Andrea * Apply suggestion from @Danipocket * Update Microsoft.CloudManagedDesktop.json * Apply suggestion from @Danipocket * Update whats-new-overview.md * fixes --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- api-reference/beta/resources/cloudpc.md | 11 ++++-- .../beta/resources/cloudpcstatussummary.md | 2 +- changelog/Microsoft.CloudManagedDesktop.json | 34 +++++++++++++++++++ concepts/whats-new-overview.md | 29 +++++++++------- 4 files changed, 59 insertions(+), 17 deletions(-) diff --git a/api-reference/beta/resources/cloudpc.md b/api-reference/beta/resources/cloudpc.md index c16002ce2e5..bf5f7a354c2 100644 --- a/api-reference/beta/resources/cloudpc.md +++ b/api-reference/beta/resources/cloudpc.md @@ -70,6 +70,7 @@ Represents a cloud-managed virtual desktop. This Cloud PC is also enrolled in In |groupDetail|[cloudPcEntraGroupDetail](../resources/cloudpcentragroupdetail.md)|The Microsoft Entra group details (for example, ID and display name) for the Entra ID group associated with the user's Reserve Cloud PC assignment. Read-only.| |id|String|The unique identifier for the Cloud PC. Read-only.| |imageDisplayName|String|Name of the OS image that's on the Cloud PC.| +|isDisasterRecoveryActive|Boolean|Indicates whether the Cloud PC currently runs in its disaster recovery region after a failover event. `true` if the Cloud PC is currently running in its disaster recovery region; otherwise, `false`. Read-only.| |lastLoginResult|[cloudPcLoginResult](../resources/cloudpcloginresult.md)|The last login result of the Cloud PC. For example, `{ "time": "2014-01-01T00:00:00Z"}`.| |lastLogoffDateTime|DateTimeOffset|The date and time when the user last logged off from the Cloud PC session. Returns `null` if the user has never established a session or if a session is currently active. The timestamp is shown in ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`. Read-only. Returned only when explicitly selected with `$select`.| |lastModifiedDateTime|DateTimeOffset|The last modified date and time of the Cloud PC. The Timestamp type represents date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2014, is `2014-01-01T00:00:00Z`.| @@ -91,7 +92,7 @@ Represents a cloud-managed virtual desktop. This Cloud PC is also enrolled in In |servicePlanName|String|The service plan name of the Cloud PC.| |servicePlanType|[cloudPcServicePlanType](../resources/cloudpcserviceplan.md#cloudpcserviceplantype-values)|The service plan type of the Cloud PC.| |sharedDeviceDetail|[cloudPcFrontlineSharedDeviceDetail](../resources/cloudpcfrontlineshareddevicedetail.md)|Indicates the Cloud PC device details associated with the frontline shared service plan, including the user's UPN and the session start date and time.| -|status|[cloudPcStatus](#cloudpcstatus-values)|The status of the Cloud PC. The possible values are: `notProvisioned`, `provisioning`, `provisioned`, `inGracePeriod`, `deprovisioning`, `failed`, `provisionedWithWarnings`, `resizing`, `restoring`, `pendingProvision`, `unknownFutureValue`, `movingRegion`, `resizePendingLicense`, `modifyingSingleSignOn`, `refreshPolicyConfiguration`, and `preparing`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `movingRegion`, `resizePendingLicense`, `modifyingSingleSignOn`, `refreshPolicyConfiguration`, and `preparing`.| +|status|[cloudPcStatus](#cloudpcstatus-values)|The status of the Cloud PC. The possible values are: `notProvisioned`, `provisioning`, `provisioned`, `inGracePeriod`, `deprovisioning`, `failed`, `provisionedWithWarnings`, `resizing`, `restoring`, `pendingProvision`, `unknownFutureValue`, `movingRegion`, `resizePendingLicense`, `modifyingSingleSignOn`, `refreshPolicyConfiguration`, `preparing`, `failoverInProgress`, `failbackInProgress`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `movingRegion`, `resizePendingLicense`, `modifyingSingleSignOn`, `refreshPolicyConfiguration`, `preparing`, `failoverInProgress`, `failbackInProgress`.| |statusDetail|[cloudPcStatusDetail](../resources/cloudpcstatusdetail.md)|Indicates the detailed status associated with Cloud PC, including error/warning code, error/warning message, additionalInformation. For example, `{ "code": "internalServerError", "message": "There was an error during the Cloud PC upgrade. Please contact support.", "additionalInformation": null }`. | |userAccountType|[cloudPcUserAccountType](../resources/cloudpcorganizationsettings.md#cloudpcuseraccounttype-values)|The account type of the user on provisioned Cloud PCs. The possible values are: `standardUser`, `administrator`, `unknownFutureValue`.| |userExperienceType|[cloudPcUserExperienceType](../resources/cloudpcprovisioningpolicy.md#cloudpcuserexperiencetype-values)|Specifies the type of cloud object the end user can access. The possible values are: `cloudPc`, `cloudApp`, `unknownFutureValue`. When set to `cloudPc`, it indicates that the end user can access the entire desktop. When set to `cloudApp`, it indicates that the end user can only access cloud apps published under the associated provisioning policy. Since the cloud app experience also creates Cloud PC devices that appear in the Cloud PC device list, this property helps differentiate them. The default value is `cloudPc`. This property is defined in the provisioning policy.| @@ -120,7 +121,7 @@ Represents a cloud-managed virtual desktop. This Cloud PC is also enrolled in In |unknown|The Cloud PC status is unknown.| ### cloudPcStatus values -The following table lists the members of an [evolvable enumeration](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations). You must use the `Prefer: include-unknown-enum-members` request header to get the following values in this evolvable enum: `movingRegion`, `resizePendingLicense`, `modifyingSingleSignOn`, `preparing`. + |Member|Description| |:---|:---| @@ -132,14 +133,16 @@ The following table lists the members of an [evolvable enumeration](/graph/best- |failed|The operation on Cloud PC failed.| |provisionedWithWarnings|The Cloud PC is provisioned and end users can access it with some warnings. The user can continue to use this Cloud PC.| |resizing|The Cloud PC is resizing.| -|pendingProvision|The provisioning is pending on the Cloud PC. In this case, the number of Cloud PCs in the grace period is more than the number of total available licenses. | |restoring|The Cloud PC is restoring.| +|pendingProvision|The provisioning is pending on the Cloud PC. In this case, the number of Cloud PCs in the grace period is more than the number of total available licenses. | |unknownFutureValue|Evolvable enumeration sentinel value. Don't use.| |movingRegion|Indicates that the Cloud PC is being moved from one region to another.| |resizePendingLicense|Indicates that the Cloud PC resize process was initiated but can't be completed because the target license hasn't been identified. It's currently awaiting customer action to resolve the licensing issue.| |modifyingSingleSignOn|Indicates that the Cloud PC is updating the single sign on setting.| |refreshPolicyConfiguration|Indicates that the Cloud PC is in the process of refreshing the new policy configurations.| |preparing|Indicates that the Cloud PC is preparing with IT admin defined configuration (Applications, Configuration and Security), appears after provisioning status.​ Only apply to Frontline Shared devices.| +|failoverInProgress|Indicates that failover to the disaster recovery region is in progress for the Cloud PC.| +|failbackInProgress|Indicates that failback to the primary region is in progress for the Cloud PC.| ### frontlineCloudPcAccessState values @@ -196,6 +199,8 @@ The following JSON representation shows the resource type. "groupDetail": {"@odata.type": "microsoft.graph.cloudPcEntraGroupDetail"}, "id": "String (identifier)", "imageDisplayName": "String", + "isDisasterRecoveryActive": "Boolean", + "lastLoginResult": "String", "lastLoginResult": {"@odata.type": "microsoft.graph.cloudPcLoginResult"}, "lastLogoffDateTime": "String (timestamp)", "lastModifiedDateTime": "String (timestamp)", diff --git a/api-reference/beta/resources/cloudpcstatussummary.md b/api-reference/beta/resources/cloudpcstatussummary.md index 7116fafacc1..4a2420ba52c 100644 --- a/api-reference/beta/resources/cloudpcstatussummary.md +++ b/api-reference/beta/resources/cloudpcstatussummary.md @@ -25,7 +25,7 @@ None. |Property|Type|Description| |:---|:---|:---| |count|Int32|The count of Cloud PCs with this status.| -|status|[cloudPcStatus](../resources/cloudpc.md#cloudpcstatus-values)|The status of the Cloud PC. The possible values are: `notProvisioned`, `provisioning`, `provisioned`, `inGracePeriod`, `deprovisioning`, `failed`, `provisionedWithWarnings`, `resizing`, `restoring`, `pendingProvision`, `unknownFutureValue`, `movingRegion`, `resizePendingLicense`, `modifyingSingleSignOn`,`refreshPolicyConfiguration`, and `preparing`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `movingRegion`, `resizePendingLicense`, `modifyingSingleSignOn`, `refreshPolicyConfiguration`, and `preparing`.| +|status|[cloudPcStatus](../resources/cloudpc.md#cloudpcstatus-values)|The status of the Cloud PC. The possible values are: `notProvisioned`, `provisioning`, `provisioned`, `inGracePeriod`, `deprovisioning`, `failed`, `provisionedWithWarnings`, `resizing`, `restoring`, `pendingProvision`, `unknownFutureValue`, `movingRegion`, `resizePendingLicense`, `modifyingSingleSignOn`, `refreshPolicyConfiguration`, `preparing`, `failoverInProgress`, `failbackInProgress`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `movingRegion`, `resizePendingLicense`, `modifyingSingleSignOn`, `refreshPolicyConfiguration`, `preparing`, `failoverInProgress`, `failbackInProgress`.| ## Relationships diff --git a/changelog/Microsoft.CloudManagedDesktop.json b/changelog/Microsoft.CloudManagedDesktop.json index e6b8aad4051..f3c076de2e7 100644 --- a/changelog/Microsoft.CloudManagedDesktop.json +++ b/changelog/Microsoft.CloudManagedDesktop.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "c362529e-81b7-44d4-82bd-8aac5181a8e5", + "ApiChange": "Property", + "ChangedApiName": "isDisasterRecoveryActive", + "ChangeType": "Addition", + "Description": "Added the **isDisasterRecoveryActive** property to the [cloudPC](https://learn.microsoft.com/en-us/graph/api/resources/cloudpc?view=graph-rest-beta) resource.", + "Target": "cloudPC" + }, + { + "Id": "c362529e-81b7-44d4-82bd-8aac5181a8e5", + "ApiChange": "Member", + "ChangedApiName": "failoverInProgress", + "ChangeType": "Addition", + "Description": "Added the `failoverInProgress` member to the **cloudPcStatus** enumeration.", + "Target": "cloudPcStatus" + }, + { + "Id": "c362529e-81b7-44d4-82bd-8aac5181a8e5", + "ApiChange": "Member", + "ChangedApiName": "failbackInProgress", + "ChangeType": "Addition", + "Description": "Added the `failbackInProgress` member to the **cloudPcStatus** enumeration.", + "Target": "cloudPcStatus" + } + ], + "Id": "c362529e-81b7-44d4-82bd-8aac5181a8e5", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-02T00:00:00.0000000Z", + "WorkloadArea": "Device and app management", + "SubArea": "Cloud PC" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index edd0af2b4ad..df74625480c 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -24,6 +24,11 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what Added the [getStatisticsByPolicy](/graph/api/backupreport-getstatisticsbypolicy?view=graph-rest-beta&preserve-view=true) method to retrieve policy-level protection statistics for Microsoft 365 Backup Storage. Use the report to monitor protected and unprotected artifacts across completed, in-progress, and failed states, review offboarding activity, and determine when the metrics were last calculated. +### Device and app management | Cloud PC + +- Added the **isDisasterRecoveryActive** property to the [cloudPC](/graph/api/resources/cloudpc?view=graph-rest-beta&preserve-view=true) resource to indicate whether the Cloud PC currently runs in its disaster recovery region after a failover event. +- Use `failoverInProgress` and `failbackInProgress` as supported values for the **status** property on the [cloudPC](/graph/api/resources/cloudpc?view=graph-rest-beta&preserve-view=true) and [cloudPcStatusSummary](/graph/api/resources/cloudpcstatussummary?view=graph-rest-beta&preserve-view=true) resources. + ## August 2026: New and generally available ### Applications @@ -42,19 +47,17 @@ Added the [recovery](/graph/api/resources/entrarecoveryservices-recovery) resour ### Identity and access | Governance -Promoted the **Lifecycle Workflows provisioning and workflow subject** APIs from beta to v1.0, introducing a broader, extensible subject model for workflows and surfacing per-subject processing results. The promoted surface includes: - -- [workflowSubject](/graph/api/resources/identitygovernance-workflowsubject) base type and its [provisioningObjectWorkflowSubject](/graph/api/resources/identitygovernance-provisioningobjectworkflowsubject) and [directoryObjectWorkflowSubject](/graph/api/resources/identitygovernance-directoryobjectworkflowsubject) derived types -- [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult) resource with the **subjectProcessingResults** navigation property on the [run](/graph/api/resources/identitygovernance-run) and [workflow](/graph/api/resources/identitygovernance-workflow) resources -- [subjectSummary](/graph/api/resources/identitygovernance-subjectsummary) resource and the [summary](/graph/api/identitygovernance-subjectprocessingresult-summary) method on the [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult) resource -- [activateAndWait](/graph/api/identitygovernance-workflow-activateandwait) action on the [workflow](/graph/api/resources/identitygovernance-workflow) resource, returning the [awaitedWorkflowProcessingResult](/graph/api/resources/identitygovernance-awaitedworkflowprocessingresult) resource -- [provisioningAttributeMapping](/graph/api/resources/identitygovernance-provisioningattributemapping) and [attributeSetEntry](/graph/api/resources/identitygovernance-attributesetentry) resources -- [customTaskExtensionResponseData](/graph/api/resources/identitygovernance-customtaskextensionresponsedata) resource, the **replyMode** property on [customTaskExtension](/graph/api/resources/identitygovernance-customtaskextension), and the **targetSubject** property on [customTaskExtensionCalloutData](/graph/api/resources/identitygovernance-customtaskextensioncalloutdata) -- **targetSubjectType** property on [workflowBase](/graph/api/resources/identitygovernance-workflowbase) and **workflowSubject** property on [taskProcessingResult](/graph/api/resources/identitygovernance-taskprocessingresult) -- [subjectType](/graph/api/resources/enums-identitygovernance#subjecttype-values) and [customTaskExtensionReplyMode](/graph/api/resources/enums-identitygovernance#customtaskextensionreplymode-values) enumerations, along with the `extensibility` and `extensibilityOnDemand` enumeration members - -Added the [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) resource type and methods to [create](/graph/api/entitlementmanagement-post-externaloriginresourceconnectors), [list](/graph/api/entitlementmanagement-list-externaloriginresourceconnectors), [get](/graph/api/externaloriginresourceconnector-get), [update](/graph/api/externaloriginresourceconnector-update), and [delete](/graph/api/externaloriginresourceconnector-delete) connections from Microsoft Entra entitlement management to SAP Identity Access Governance (SAP IAG). For an SAP IAG connector, specify the SAP IAG endpoint, OAuth token endpoint, and client ID, along with the Azure subscription, resource group, key vault, and secret that identify where its client secret is stored. The connector is associated with an access package resource so that entitlement management can provision access to resources in SAP IAG through access packages. - +- Promoted the **Lifecycle Workflows provisioning and workflow subject** APIs from beta to v1.0, introducing a broader, extensible subject model for workflows and surfacing per-subject processing results. The promoted surface includes: + + - [workflowSubject](/graph/api/resources/identitygovernance-workflowsubject) base type and its [provisioningObjectWorkflowSubject](/graph/api/resources/identitygovernance-provisioningobjectworkflowsubject) and [directoryObjectWorkflowSubject](/graph/api/resources/identitygovernance-directoryobjectworkflowsubject) derived types + - [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult) resource with the **subjectProcessingResults** navigation property on the [run](/graph/api/resources/identitygovernance-run) and [workflow](/graph/api/resources/identitygovernance-workflow) resources + - [subjectSummary](/graph/api/resources/identitygovernance-subjectsummary) resource and the [summary](/graph/api/identitygovernance-subjectprocessingresult-summary) method on the [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult) resource + - [activateAndWait](/graph/api/identitygovernance-workflow-activateandwait) action on the [workflow](/graph/api/resources/identitygovernance-workflow) resource, returning the [awaitedWorkflowProcessingResult](/graph/api/resources/identitygovernance-awaitedworkflowprocessingresult) resource + - [provisioningAttributeMapping](/graph/api/resources/identitygovernance-provisioningattributemapping) and [attributeSetEntry](/graph/api/resources/identitygovernance-attributesetentry) resources + - [customTaskExtensionResponseData](/graph/api/resources/identitygovernance-customtaskextensionresponsedata) resource, the **replyMode** property on [customTaskExtension](/graph/api/resources/identitygovernance-customtaskextension), and the **targetSubject** property on [customTaskExtensionCalloutData](/graph/api/resources/identitygovernance-customtaskextensioncalloutdata) + - **targetSubjectType** property on [workflowBase](/graph/api/resources/identitygovernance-workflowbase) and **workflowSubject** property on [taskProcessingResult](/graph/api/resources/identitygovernance-taskprocessingresult) + - [subjectType](/graph/api/resources/enums-identitygovernance#subjecttype-values) and [customTaskExtensionReplyMode](/graph/api/resources/enums-identitygovernance#customtaskextensionreplymode-values) enumerations, along with the `extensibility` and `extensibilityOnDemand` enumeration members +- Added the [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) resource type and methods to [create](/graph/api/entitlementmanagement-post-externaloriginresourceconnectors), [list](/graph/api/entitlementmanagement-list-externaloriginresourceconnectors), [get](/graph/api/externaloriginresourceconnector-get), [update](/graph/api/externaloriginresourceconnector-update), and [delete](/graph/api/externaloriginresourceconnector-delete) connections from Microsoft Entra entitlement management to SAP Identity Access Governance (SAP IAG). For an SAP IAG connector, specify the SAP IAG endpoint, OAuth token endpoint, and client ID, along with the Azure subscription, resource group, key vault, and secret that identify where its client secret is stored. The connector is associated with an access package resource so that entitlement management can provision access to resources in SAP IAG through access packages. - Added the **reviewerId** and **scopeType** properties to [accessReviewReviewerScope](/graph/api/resources/accessreviewreviewerscope) to specify a reviewer directly or as a well-known scope instead of through a query. - Added the **applyDescription** property to [accessReviewInstanceDecisionItem](/graph/api/resources/accessreviewinstancedecisionitem) to describe the result of applying a decision. - Added the **appRoleId** and **appRoleDisplayName** properties to [accessReviewInstanceDecisionItemServicePrincipalResource](/graph/api/resources/accessreviewinstancedecisionitemserviceprincipalresource) to identify the app role under review. From b22cbc197cb733f387d475540a84caa8eecc54c4 Mon Sep 17 00:00:00 2001 From: ashyasingh <74160572+ashyasingh@users.noreply.github.com> Date: Wed, 2 Sep 2026 16:55:29 -0700 Subject: [PATCH 108/189] Add onPremisesExtensionAttributes property to group resource in v1.0 (#28975) * Add onPremisesExtensionAttributes property to group resource in v1.0 Added the onPremisesExtensionAttributes property to the group resource type documentation for v1.0, including: - Property table entry with type and description - JSON representation Also added changelog entry for the addition. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update changelog/Microsoft.DirectoryServices.json Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix spacing in group properties table * Address PR feedback: align v1.0 group.md with beta, fix changelog - Align onPremisesExtensionAttributes description with beta group.md - Fix missing space in onPremisesLastSyncDateTime row - Change changelog WorkloadArea to Groups (matches beta entry) - Update CreatedDateTime to 2026-05-29 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * fixes * fixes --------- Co-authored-by: ashyasingh Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> --- api-reference/v1.0/resources/group.md | 2 ++ changelog/Microsoft.DirectoryServices.json | 18 ++++++++++++++++++ concepts/whats-new-overview.md | 6 ++++++ 3 files changed, 26 insertions(+) diff --git a/api-reference/v1.0/resources/group.md b/api-reference/v1.0/resources/group.md index 114e42583ef..3108169e2a1 100644 --- a/api-reference/v1.0/resources/group.md +++ b/api-reference/v1.0/resources/group.md @@ -161,6 +161,7 @@ This resource supports: | membershipRule | String | The rule that determines members for this group if the group is a dynamic group (groupTypes contains `DynamicMembership`). For more information about the syntax of the membership rule, see [Membership Rules syntax](/azure/active-directory/users-groups-roles/groups-dynamic-membership).

Returned by default. Supports `$filter` (`eq`, `ne`, `not`, `ge`, `le`, `startsWith`). | | membershipRuleProcessingState | String | Indicates whether the dynamic membership processing is on or paused. Possible values are `On` or `Paused`.

Returned by default. Supports `$filter` (`eq`, `ne`, `not`, `in`). | | onPremisesDomainName | String | Contains the on-premises **domain FQDN**, also called **dnsDomainName** synchronized from the on-premises directory. The property is only populated for customers synchronizing their on-premises directory to Microsoft Entra ID via Microsoft Entra Connect.

Returned by default. Read-only. | +| onPremisesExtensionAttributes | [onPremisesExtensionAttributes](../resources/onpremisesextensionattributes.md) | Complex type containing extension attributes 1-15 for the group, synchronized from on-premises Active Directory. Returned only on `$select`. Supports `$filter` (`eq`, `ne`, `not`, `in`). | | onPremisesLastSyncDateTime | DateTimeOffset | Indicates the last time at which the group was synced with the on-premises directory. The Timestamp type represents date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on January 1, 2014 is `2014-01-01T00:00:00Z`.

Returned by default. Read-only. Supports `$filter` (`eq`, `ne`, `not`, `ge`, `le`, `in`). | | onPremisesNetBiosName | String | Contains the on-premises **netBios name** synchronized from the on-premises directory. The property is only populated for customers synchronizing their on-premises directory to Microsoft Entra ID via Microsoft Entra Connect.

Returned by default. Read-only. | | onPremisesProvisioningErrors | [onPremisesProvisioningError](onpremisesprovisioningerror.md) collection | Errors when using Microsoft synchronization product during provisioning.

Returned by default. Supports `$filter` (`eq`, `not`). | @@ -399,6 +400,7 @@ The following JSON representation shows the resource type. "members": [{ "@odata.type": "microsoft.graph.directoryObject" }], "membersWithLicenseErrors": [{ "@odata.type": "microsoft.graph.user" }], "onPremisesDomainName": "String", + "onPremisesExtensionAttributes": { "@odata.type": "microsoft.graph.onPremisesExtensionAttributes" }, "onPremisesLastSyncDateTime": "String (timestamp)", "onPremisesNetBiosName": "String", "onPremisesProvisioningErrors": [ diff --git a/changelog/Microsoft.DirectoryServices.json b/changelog/Microsoft.DirectoryServices.json index 08a9f10d15e..6099aeef9bd 100644 --- a/changelog/Microsoft.DirectoryServices.json +++ b/changelog/Microsoft.DirectoryServices.json @@ -1,5 +1,23 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "3c36af46-909a-4c94-a101-6c77c48c9d66", + "ApiChange": "Property", + "ChangedApiName": "onPremisesExtensionAttributes", + "ChangeType": "Addition", + "Description": "Added the **onPremisesExtensionAttributes** property to the [group](https://learn.microsoft.com/en-us/graph/api/resources/group?view=graph-rest-1.0) resource.", + "Target": "group" + } + ], + "Id": "3c36af46-909a-4c94-a101-6c77c48c9d66", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-09-02T00:00:00.000Z", + "WorkloadArea": "Groups", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index df74625480c..0b9348a7541 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -18,6 +18,12 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what > [!IMPORTANT] > Features in _preview_ status are subject to change without notice, and might not be promoted to generally available (GA) status. Don't use preview features in production apps. +## September 2026: New and generally available + +### Groups + +Added the **onPremisesExtensionAttributes** property to the [group](/graph/api/resources/group) resource. Use it to access extension attributes 1-15 synchronized from on-premises Active Directory. + ## September 2026: New in preview only ### Backup storage From 092383a79f514e8addb66a4c5b9e79886af57d57 Mon Sep 17 00:00:00 2001 From: Hari K Date: Wed, 2 Sep 2026 17:01:31 -0700 Subject: [PATCH 109/189] Document agentIdentityBlueprint isDisabled (#29043) * Document agentIdentityBlueprint isDisabled Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Document agentIdentityBlueprint isDisabled update body Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address Agent Blueprint docs review feedback Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestion from @Danipocket --------- Co-authored-by: Hari Kosuru Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: bf42c5e0-942c-4c59-9f97-d5b82790ed4c --- .../beta/api/agentidentityblueprint-update.md | 1 + .../beta/resources/agentidentityblueprint.md | 5 +++-- changelog/Microsoft.DirectoryServices.json | 18 ++++++++++++++++++ concepts/whats-new-overview.md | 6 +++++- 4 files changed, 27 insertions(+), 3 deletions(-) diff --git a/api-reference/beta/api/agentidentityblueprint-update.md b/api-reference/beta/api/agentidentityblueprint-update.md index 01d7371ae01..e77479636db 100644 --- a/api-reference/beta/api/agentidentityblueprint-update.md +++ b/api-reference/beta/api/agentidentityblueprint-update.md @@ -58,6 +58,7 @@ In the request body, supply the values for relevant fields that should be update | Property | Type | Description | |:---------|:-----|:------------| | displayName | String | The display name for the agent identity blueprint. The least privileged permission to update this property is *AgentIdentityBlueprint.UpdateBranding.All*. | +| isDisabled | Boolean | Specifies whether the service principal associated with the agent identity blueprint can obtain new access tokens or access protected resources. When set to `true`, existing tokens remain valid until they expire based on their configured lifetimes. `true` if the agent identity blueprint is deactivated; otherwise `false`. | | managerApplications | Guid collection | A collection of application IDs for applications designated as managers of this agent identity blueprint. Manager applications can create agent blueprint principals, agent identities, and agent users for their managed blueprints without requiring high-privileged permissions such as `AgentIdentityBlueprintPrincipal.ReadWrite.All`. Currently, only Microsoft first-party application IDs can be set as values. Maximum of 10 values. Not nullable. | ## Response diff --git a/api-reference/beta/resources/agentidentityblueprint.md b/api-reference/beta/resources/agentidentityblueprint.md index 3d6963befd1..26ddce51074 100644 --- a/api-reference/beta/resources/agentidentityblueprint.md +++ b/api-reference/beta/resources/agentidentityblueprint.md @@ -79,7 +79,8 @@ This resource is an open type that allows additional properties beyond those doc |groupMembershipClaims|String|Configures the `groups` claim issued in a user or OAuth 2.0 access token that the agent identity blueprint expects. To set this attribute, use one of the following string values: `None`, `SecurityGroup` (for security groups and Microsoft Entra roles), `All` (this gets all security groups, distribution groups, and Microsoft Entra directory roles that the signed-in user is a member of). Inherited from [application](../resources/application.md).| |id|String|Unique identifier for the agent identity blueprint object. This property is referred to as **Object ID** in the Microsoft Entra admin center. Key. Not nullable. Read-only. Inherited from [directoryObject](../resources/directoryobject.md).| |identifierUris|String collection| Also known as App ID URI, this value is set when an agent identity blueprint is used as a resource app. The identifierUris acts as the prefix for the scopes you reference in your API's code, and it must be globally unique across Microsoft Entra ID. Not nullable. Inherited from [application](../resources/application.md).| -|info|[informationalUrl](../resources/informationalurl.md)|Basic profile information of the agent identity blueprint, such as it's marketing, support, terms of service, and privacy statement URLs. The terms of service and privacy statement are surfaced to users through the user consent experience. Inherited from [application](../resources/application.md).| +|info|[informationalUrl](../resources/informationalurl.md)|Basic profile information of the agent identity blueprint, such as its marketing, support, terms of service, and privacy statement URLs. The terms of service and privacy statement are surfaced to users through the user consent experience. Inherited from [application](../resources/application.md).| +|isDisabled|Boolean|Deactivate an agent identity blueprint without deleting it. This configuration specifies whether the service principal associated with the agent identity blueprint can obtain new access tokens or access protected resources. When set to `true`, existing tokens remain valid until they expire based on their configured lifetimes. `true` if the agent identity blueprint is deactivated; otherwise `false`. Inherited from [application](../resources/application.md).| |keyCredentials|[keyCredential](../resources/keycredential.md) collection|The collection of key credentials associated with the agent identity blueprint. Not nullable. The least privileged permission to update this property is *AgentIdentityBlueprint.AddRemoveCreds.All*. Inherited from [application](../resources/application.md).| |managerApplications|Guid collection|A collection of application IDs for applications designated as managers of this agent identity blueprint. Manager applications can create agent blueprint principals, agent identities, and agent users for their managed blueprints — without requiring high-privileged permissions such as `AgentIdentityBlueprintPrincipal.ReadWrite.All`. Currently, only Microsoft first-party application IDs can be set as values. Maximum of 10 values. Not nullable.| |optionalClaims|[optionalClaims](../resources/optionalclaims.md)|Application developers can configure optional claims in their Microsoft Entra agent identity blueprints to specify the claims that are sent to their application by the Microsoft security token service. Inherited from [application](../resources/application.md).| @@ -156,6 +157,7 @@ The following JSON representation shows the resource type. "info": { "@odata.type": "microsoft.graph.informationalUrl" }, + "isDisabled": "Boolean", "keyCredentials": [ { "@odata.type": "microsoft.graph.keyCredential" @@ -175,4 +177,3 @@ The following JSON representation shows the resource type. } } ``` - diff --git a/changelog/Microsoft.DirectoryServices.json b/changelog/Microsoft.DirectoryServices.json index 6099aeef9bd..85b2363ee5b 100644 --- a/changelog/Microsoft.DirectoryServices.json +++ b/changelog/Microsoft.DirectoryServices.json @@ -424,6 +424,24 @@ "WorkloadArea": "Applications", "SubArea": "" }, + { + "ChangeList": [ + { + "Id": "cec58c2c-fbd7-4b2f-9ef1-390b620c6663", + "ApiChange": "Property", + "ChangedApiName": "isDisabled", + "ChangeType": "Addition", + "Description": "Added the **isDisabled** property to the [agentIdentityBlueprint](https://learn.microsoft.com/en-us/graph/api/resources/agentIdentityBlueprint?view=graph-rest-beta) resource.", + "Target": "agentIdentityBlueprint" + } + ], + "Id": "cec58c2c-fbd7-4b2f-9ef1-390b620c6663", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-02T22:43:12.4459719Z", + "WorkloadArea": "Agents", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 0b9348a7541..c20fac3479e 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -26,6 +26,10 @@ Added the **onPremisesExtensionAttributes** property to the [group](/graph/api/r ## September 2026: New in preview only +### Agents + +Added the **isDisabled** property to the [agentIdentityBlueprint](/graph/api/resources/agentidentityblueprint?view=graph-rest-beta&preserve-view=true) resource. Use it to deactivate an agent identity blueprint without deleting it. + ### Backup storage Added the [getStatisticsByPolicy](/graph/api/backupreport-getstatisticsbypolicy?view=graph-rest-beta&preserve-view=true) method to retrieve policy-level protection statistics for Microsoft 365 Backup Storage. Use the report to monitor protected and unprotected artifacts across completed, in-progress, and failed states, review offboarding activity, and determine when the metrics were last calculated. @@ -329,4 +333,4 @@ Are there scenarios you'd like Microsoft Graph to support? ## Related content - [Microsoft Graph developer blog](https://devblogs.microsoft.com/microsoft365dev/category/microsoft-graph/). - [Microsoft Graph API changelog](https://developer.microsoft.com/graph/changelog/). -- [Microsoft Graph what's new history](whats-new-earlier.md). +- [Microsoft Graph what's new history](whats-new-earlier.md). \ No newline at end of file From 7f0629468b0bb5bdcb735ce485f188ac4fc0e6ef Mon Sep 17 00:00:00 2001 From: Jason Johnston Date: Thu, 3 Sep 2026 08:49:59 -0400 Subject: [PATCH 110/189] Update resourceManagement.yml (#29546) --- .github/policies/resourceManagement.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/policies/resourceManagement.yml b/.github/policies/resourceManagement.yml index 9278f74d70f..869b06222e7 100644 --- a/.github/policies/resourceManagement.yml +++ b/.github/policies/resourceManagement.yml @@ -174,7 +174,7 @@ configuration: then: - removeLabel: label: ready for content review - - description: When Security, Identity, & Compliance-related label is added to a pull request, request review from FaithOmbongi + - description: When Security, Identity, & Compliance-related label is added to a pull request, request review from CelesteDG if: - payloadType: Pull_Request - or: @@ -235,7 +235,7 @@ configuration: - isOpen then: - requestReview: - reviewer: 'FaithOmbongi ' + reviewer: 'CelesteDG' - description: When changes requested label is added remove review feedback addressed label if: - payloadType: Pull_Request From ebb27cc3637c59ff258825c50407fb7f9b356d1a Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Thu, 3 Sep 2026 11:36:09 -0600 Subject: [PATCH 111/189] Update reference TOC (#29545) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/toc/backup-and-recovery/toc.yml | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/api-reference/beta/toc/backup-and-recovery/toc.yml b/api-reference/beta/toc/backup-and-recovery/toc.yml index 37777b9972d..1008db154ab 100644 --- a/api-reference/beta/toc/backup-and-recovery/toc.yml +++ b/api-reference/beta/toc/backup-and-recovery/toc.yml @@ -51,6 +51,12 @@ items: - name: Microsoft 365 backup and storage displayName: M365 Backup Storage, Microsoft 365 Backup Storage, Enhanced Restore items: + - name: Backup report + items: + - name: Backup report + href: ../../resources/backupreport.md + - name: Get statistics by policy + href: ../../api/backupreport-getstatisticsbypolicy.md - name: Backup restore items: - name: Backup restore @@ -492,6 +498,10 @@ items: items: - name: Artifact query href: ../../resources/artifactquery.md + - name: Backup count statistics + href: ../../resources/backupcountstatistics.md + - name: Backup policy report + href: ../../resources/backuppolicyreport.md - name: Browse query response item href: ../../resources/browsequeryresponseitem.md - name: Notification recipients From b142a3363f079220b2ba55bf6511d92fad40e3b1 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Thu, 3 Sep 2026 11:37:45 -0600 Subject: [PATCH 112/189] Update generated permissions tables with build 238665 (#29544) Co-authored-by: Microsoft Graph DevX Tooling --- .../beta/api/backupreport-getstatisticsbypolicy.md | 6 +----- .../backupreport-getstatisticsbypolicy-permissions.md | 3 ++- 2 files changed, 3 insertions(+), 6 deletions(-) diff --git a/api-reference/beta/api/backupreport-getstatisticsbypolicy.md b/api-reference/beta/api/backupreport-getstatisticsbypolicy.md index cbfaada5c91..dc79040ed6c 100644 --- a/api-reference/beta/api/backupreport-getstatisticsbypolicy.md +++ b/api-reference/beta/api/backupreport-getstatisticsbypolicy.md @@ -22,11 +22,7 @@ Get the statistics that correspond to the specified policy ID of a [backupPolicy Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/backupreport-getstatisticsbypolicy-permissions.md)] ## HTTP request diff --git a/api-reference/beta/includes/permissions/backupreport-getstatisticsbypolicy-permissions.md b/api-reference/beta/includes/permissions/backupreport-getstatisticsbypolicy-permissions.md index d7ae0fa3b4e..6780d9a13de 100644 --- a/api-reference/beta/includes/permissions/backupreport-getstatisticsbypolicy-permissions.md +++ b/api-reference/beta/includes/permissions/backupreport-getstatisticsbypolicy-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|BackupRestore-Configuration.Read.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|BackupRestore-Configuration.Read.All|Not available.| + From 6d5d5440d8c6a348a39777f828808df6aca5c628 Mon Sep 17 00:00:00 2001 From: Yuan Karppanen <46729835+yyuank@users.noreply.github.com> Date: Thu, 3 Sep 2026 11:31:27 -0700 Subject: [PATCH 113/189] Clarify User.ReadWrite.All application access (#29536) * Clarify User.ReadWrite.All application access Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: bfff55e5-1628-432e-b08c-2ff975f6cd95 * Change publication date to December 26, 2025 Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Enhance clarity on application permissions Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: Yuan Karppanen <120852462+yukarppa_microsoft@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Copilot-Session: bfff55e5-1628-432e-b08c-2ff975f6cd95 --- concepts/permissions-overview.md | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/concepts/permissions-overview.md b/concepts/permissions-overview.md index ae4e6a4c663..4c4c7ba41cd 100644 --- a/concepts/permissions-overview.md +++ b/concepts/permissions-overview.md @@ -53,6 +53,10 @@ When a user signs in to an app, they, or, in some cases, an administrator, get a *Application permissions*, also called *app roles*, work in the app-only access scenario, without a signed-in user present. The application can access *any* data that the permission is associated with. For example, an application granted the *Files.Read.All* application permission can read any file in the organization. +With the *User.ReadWrite.All* application permission, an application can update many of the writable user properties supported by Microsoft Graph, including for users assigned privileged admin roles. + +Application permissions are highly privileged because they allow applications to access and modify resources without requiring a signed-in user. From a least-privilege perspective, the delegated permission model is the recommended approach whenever it meets the application's requirements. + For apps that access resources and APIs without a signed-in user, an administrator consents to the application permissions when the app is installed in the tenant or through the Microsoft Entra admin center. Only Privileged Role Administrator and Global Administrator can consent to application permissions. Apart from being assigned Microsoft Graph application permissions, an app might also be granted the privileges it needs through one of the following conditions: @@ -243,4 +247,3 @@ The **appRoles**, **oauth2PermissionScopes**, and **resourceSpecificApplicationP - [Microsoft Graph permissions reference](permissions-reference.md). - [Overview of role-based access control in Microsoft Entra ID](/azure/active-directory/roles/custom-overview). - [Understanding delegated access](/azure/active-directory/develop/delegated-access-primer) - From 4c2774232d000c55fad324b943e3478d5cbc1fe0 Mon Sep 17 00:00:00 2001 From: abbyzhccc <141311901+abbyzhccc@users.noreply.github.com> Date: Fri, 4 Sep 2026 06:23:15 +0800 Subject: [PATCH 114/189] Fix alert rule and alert record cloud availability (#29302) * Fix alert rule TOC and cloud availability Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: e353b1bb-c7e4-480f-9a4c-ceea616cd0ca * Correct alert record cloud availability Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: e353b1bb-c7e4-480f-9a4c-ceea616cd0ca * Revert alert rule TOC changes Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: e353b1bb-c7e4-480f-9a4c-ceea616cd0ca * Update alert cloud availability page dates Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 309959a2-459f-40c9-bf9a-c2a4937851ef --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: e353b1bb-c7e4-480f-9a4c-ceea616cd0ca Copilot-Session: 309959a2-459f-40c9-bf9a-c2a4937851ef --- ...-alertrecord-changealertrecordsportalnotificationassent.md | 4 ++-- api-reference/beta/api/devicemanagement-alertrecord-get.md | 4 ++-- .../devicemanagement-alertrecord-getportalnotifications.md | 4 ++-- api-reference/beta/api/devicemanagement-alertrecord-list.md | 4 ++-- ...evicemanagement-alertrecord-setportalnotificationassent.md | 4 ++-- api-reference/beta/api/devicemanagement-alertrule-get.md | 4 ++-- api-reference/beta/api/devicemanagement-alertrule-list.md | 4 ++-- api-reference/beta/api/devicemanagement-alertrule-post.md | 4 ++-- api-reference/beta/api/devicemanagement-alertrule-update.md | 4 ++-- 9 files changed, 18 insertions(+), 18 deletions(-) diff --git a/api-reference/beta/api/devicemanagement-alertrecord-changealertrecordsportalnotificationassent.md b/api-reference/beta/api/devicemanagement-alertrecord-changealertrecordsportalnotificationassent.md index 338f91f255f..f409f5fa3b9 100644 --- a/api-reference/beta/api/devicemanagement-alertrecord-changealertrecordsportalnotificationassent.md +++ b/api-reference/beta/api/devicemanagement-alertrecord-changealertrecordsportalnotificationassent.md @@ -5,7 +5,7 @@ author: "abbyzhccc" ms.localizationpriority: medium ms.subservice: "cloud-pc" doc_type: apiPageType -ms.date: 05/27/2024 +ms.date: 08/04/2026 --- # alertRecord: changeAlertRecordsPortalNotificationAsSent @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Set the **isPortalNotificationSent** property of all [portal notification](../resources/devicemanagement-portalnotification.md) resources associated with the specified [alertRecord](../resources/devicemanagement-alertrecord.md) to `true`, marking them as sent. A maximum of 100 [alertRecord](../resources/devicemanagement-alertrecord.md) IDs can be received at one time, and a maximum of 100 **portal notification** resources can be changed in the **isPortalNotificationSent** property status. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrecord-get.md b/api-reference/beta/api/devicemanagement-alertrecord-get.md index a1d626c25ec..fe34345ff74 100644 --- a/api-reference/beta/api/devicemanagement-alertrecord-get.md +++ b/api-reference/beta/api/devicemanagement-alertrecord-get.md @@ -5,7 +5,7 @@ author: "zhishending" ms.localizationpriority: medium ms.subservice: "cloud-pc" doc_type: apiPageType -ms.date: 05/27/2024 +ms.date: 08/04/2026 --- # Get alertRecord @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Read the properties and relationships of an [alertRecord](../resources/devicemanagement-alertrecord.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrecord-getportalnotifications.md b/api-reference/beta/api/devicemanagement-alertrecord-getportalnotifications.md index ab91974129a..24948b84aec 100644 --- a/api-reference/beta/api/devicemanagement-alertrecord-getportalnotifications.md +++ b/api-reference/beta/api/devicemanagement-alertrecord-getportalnotifications.md @@ -5,7 +5,7 @@ author: "zhishending" ms.localizationpriority: medium ms.subservice: "cloud-pc" doc_type: apiPageType -ms.date: 05/27/2024 +ms.date: 08/04/2026 --- # alertRecord: getPortalNotifications @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Get a list of all notifications that one or more users can access, from the Microsoft Endpoint Manager admin center. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrecord-list.md b/api-reference/beta/api/devicemanagement-alertrecord-list.md index 25c5ca1574b..77b6f5901fe 100644 --- a/api-reference/beta/api/devicemanagement-alertrecord-list.md +++ b/api-reference/beta/api/devicemanagement-alertrecord-list.md @@ -5,7 +5,7 @@ author: "zhishending" ms.localizationpriority: medium ms.subservice: "cloud-pc" doc_type: apiPageType -ms.date: 05/27/2024 +ms.date: 08/04/2026 --- # List alertRecords @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Get a list of the [alertRecord](../resources/devicemanagement-alertrecord.md) objects and their properties. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrecord-setportalnotificationassent.md b/api-reference/beta/api/devicemanagement-alertrecord-setportalnotificationassent.md index e43fe98a0dc..ec309a2dc57 100644 --- a/api-reference/beta/api/devicemanagement-alertrecord-setportalnotificationassent.md +++ b/api-reference/beta/api/devicemanagement-alertrecord-setportalnotificationassent.md @@ -5,7 +5,7 @@ author: "zhishending" ms.localizationpriority: medium ms.subservice: "cloud-pc" doc_type: apiPageType -ms.date: 05/27/2024 +ms.date: 08/04/2026 --- # alertRecord: setPortalNotificationAsSent @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Set the status of the notification associated with the specified [alertRecord](../resources/devicemanagement-alertrecord.md) on the Microsoft EndPoint Manager admin center as sent, by setting the **isPortalNotificationSent** property of the [portal notification](../resources/devicemanagement-portalnotification.md) to `true`. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrule-get.md b/api-reference/beta/api/devicemanagement-alertrule-get.md index dd3989d38d8..e8c33fa6053 100644 --- a/api-reference/beta/api/devicemanagement-alertrule-get.md +++ b/api-reference/beta/api/devicemanagement-alertrule-get.md @@ -5,7 +5,7 @@ author: "zhishending" ms.localizationpriority: medium ms.subservice: "cloud-pc" doc_type: apiPageType -ms.date: 05/27/2024 +ms.date: 08/04/2026 --- # Get alertRule @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Read the properties and relationships of an [alertRule](../resources/devicemanagement-alertrule.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrule-list.md b/api-reference/beta/api/devicemanagement-alertrule-list.md index 95f907b7a12..77c5095ec5c 100644 --- a/api-reference/beta/api/devicemanagement-alertrule-list.md +++ b/api-reference/beta/api/devicemanagement-alertrule-list.md @@ -5,7 +5,7 @@ author: "zhishending" ms.localizationpriority: medium ms.subservice: "cloud-pc" doc_type: apiPageType -ms.date: 08/01/2024 +ms.date: 08/04/2026 --- # List alertRules @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Get a list of the [alertRule](../resources/devicemanagement-alertrule.md) objects and their properties. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrule-post.md b/api-reference/beta/api/devicemanagement-alertrule-post.md index 50ad9a98c6a..8fbe0f7b1c9 100644 --- a/api-reference/beta/api/devicemanagement-alertrule-post.md +++ b/api-reference/beta/api/devicemanagement-alertrule-post.md @@ -5,7 +5,7 @@ author: "zhishending" ms.localizationpriority: medium ms.subservice: "cloud-pc" doc_type: apiPageType -ms.date: 05/27/2024 +ms.date: 08/04/2026 --- # Create alertRule @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Create an [alertRule](../resources/devicemanagement-alertrule.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrule-update.md b/api-reference/beta/api/devicemanagement-alertrule-update.md index 142b726a613..af3044159c2 100644 --- a/api-reference/beta/api/devicemanagement-alertrule-update.md +++ b/api-reference/beta/api/devicemanagement-alertrule-update.md @@ -5,7 +5,7 @@ author: "zhishending" ms.localizationpriority: medium ms.subservice: "cloud-pc" doc_type: apiPageType -ms.date: 05/27/2024 +ms.date: 08/04/2026 --- # Update alertRule @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Update the properties of an [alertRule](../resources/devicemanagement-alertrule.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] ## Permissions From ad93ec7728f1a3985b5e0d805df5f68501b62252 Mon Sep 17 00:00:00 2001 From: jconley76 <100385591+jconley76@users.noreply.github.com> Date: Thu, 3 Sep 2026 15:27:27 -0700 Subject: [PATCH 115/189] Add SharePoint Online delegated-permission note to entitlement management resource APIs (#29526) * Note SharePoint Online delegated-permission requirement for entitlement management resource APIs Re-filed from public repo PR microsoftgraph/microsoft-graph-docs-contrib#10006, which was closed because internal contributions must go through the private repo. Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> * Restore original ms.date values per front matter guidance Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> * Add changelog and What's New entries for SharePoint Online app-only note Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> * Update Microsoft.IGAELM.json * Update Microsoft.IGAELM.json --------- Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../beta/api/accesspackageresourceenvironment-get.md | 5 +++++ .../v1.0/api/accesspackagecatalog-list-resources.md | 3 +++ concepts/whats-new-overview.md | 8 ++++++++ 3 files changed, 16 insertions(+) diff --git a/api-reference/beta/api/accesspackageresourceenvironment-get.md b/api-reference/beta/api/accesspackageresourceenvironment-get.md index 24ba5b6eb2f..2cea83a00a8 100644 --- a/api-reference/beta/api/accesspackageresourceenvironment-get.md +++ b/api-reference/beta/api/accesspackageresourceenvironment-get.md @@ -25,6 +25,11 @@ Choose the permission or permissions marked as least privileged for this API. Us [!INCLUDE [rbac-entitlement-catalog-reader](../includes/rbac-for-apis/rbac-entitlement-management-catalog-reader-apis-read.md)] +> [!NOTE] +> SharePoint Online resource environments are returned only when this API is called with delegated permissions. This scenario isn't supported with application permissions. +> +> A SharePoint Online resource environment corresponds to a SharePoint root site. To retrieve root site information using application permissions, use the [List sites](../api/site-list.md) API and filter on the `siteCollection/root` property: `GET /sites?$select=siteCollection,webUrl&$filter=siteCollection/root ne null`. Most organizations have a single root site; multi-geo organizations have a root site for each geo location. + ## HTTP request diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index c20fac3479e..b5d9b4170c2 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -24,6 +24,10 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what Added the **onPremisesExtensionAttributes** property to the [group](/graph/api/resources/group) resource. Use it to access extension attributes 1-15 synchronized from on-premises Active Directory. +### Identity and access | Governance + +Clarified that the [List resources](/graph/api/accesspackagecatalog-list-resources) method returns SharePoint Online resources only when it's called with delegated permissions. To retrieve SharePoint site information with application permissions, use the [sites: getAllSites](/graph/api/site-getallsites) method. + ## September 2026: New in preview only ### Agents @@ -39,6 +43,10 @@ Added the [getStatisticsByPolicy](/graph/api/backupreport-getstatisticsbypolicy? - Added the **isDisasterRecoveryActive** property to the [cloudPC](/graph/api/resources/cloudpc?view=graph-rest-beta&preserve-view=true) resource to indicate whether the Cloud PC currently runs in its disaster recovery region after a failover event. - Use `failoverInProgress` and `failbackInProgress` as supported values for the **status** property on the [cloudPC](/graph/api/resources/cloudpc?view=graph-rest-beta&preserve-view=true) and [cloudPcStatusSummary](/graph/api/resources/cloudpcstatussummary?view=graph-rest-beta&preserve-view=true) resources. +### Identity and access | Governance + +Clarified that the [Get accessPackageResourceEnvironment](/graph/api/accesspackageresourceenvironment-get?view=graph-rest-beta&preserve-view=true) method returns SharePoint Online resource environments only when it's called with delegated permissions. A SharePoint Online resource environment corresponds to a SharePoint root site, so to retrieve root site information with application permissions, use the [List sites](/graph/api/site-list?view=graph-rest-beta&preserve-view=true) method with the `$filter=siteCollection/root ne null` query option. + ## August 2026: New and generally available ### Applications From a08ea4b2afc742188a88f82d00c90f3703e9d755 Mon Sep 17 00:00:00 2001 From: prats Date: Thu, 3 Sep 2026 16:10:07 -0700 Subject: [PATCH 116/189] Added doc comments and elements for A2T schema. (#29205) * Added doc comments and elements for A2T schema. * Fix ap dpc validation error and added locationExclusion. * minor changes. * Delete PR-29205-REVIEW-FINDINGS.md * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add evaluationScope and policyLocationTool to beta TOC mapping * Fix JSON representation in protectedapplicationmetadata.md: use value property and fix sourceLocation odata.type * fix changelog broken compute link * Add What's New entry for processContent preview API * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * fixes * Apply batched suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestion from @Danipocket --------- Co-authored-by: Pratik Sanyal (from Dev Box) Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling --- ...atasecurityandgovernance-processcontent.md | 168 ++++++++++++++++++ .../tenantprotectionscopecontainer-compute.md | 13 +- ...ndgovernance-processcontent-permissions.md | 13 ++ api-reference/beta/resources/enums.md | 9 + .../beta/resources/evaluationscope.md | 50 ++++++ .../beta/resources/policylocationtool.md | 51 ++++++ .../beta/resources/policyscopebase.md | 10 +- .../beta/resources/policytenantscope.md | 8 +- .../beta/resources/policyuserscope.md | 8 +- .../beta/resources/processcontentrequest.md | 7 +- .../resources/protectedapplicationmetadata.md | 23 ++- .../tenantdatasecurityandgovernance.md | 1 + api-reference/beta/toc/toc.mapping.json | 2 + .../Microsoft.DataClassificationService.json | 74 ++++++++ concepts/whats-new-overview.md | 2 + 15 files changed, 423 insertions(+), 16 deletions(-) create mode 100644 api-reference/beta/api/tenantdatasecurityandgovernance-processcontent.md create mode 100644 api-reference/beta/includes/permissions/tenantdatasecurityandgovernance-processcontent-permissions.md create mode 100644 api-reference/beta/resources/evaluationscope.md create mode 100644 api-reference/beta/resources/policylocationtool.md diff --git a/api-reference/beta/api/tenantdatasecurityandgovernance-processcontent.md b/api-reference/beta/api/tenantdatasecurityandgovernance-processcontent.md new file mode 100644 index 00000000000..74b1450a7b4 --- /dev/null +++ b/api-reference/beta/api/tenantdatasecurityandgovernance-processcontent.md @@ -0,0 +1,168 @@ +--- +title: "tenantDataSecurityAndGovernance: processContent" +description: "Evaluate content against Microsoft Purview Data Loss Prevention (DLP) policies before or during agent-to-tool interactions and return policy actions for the supplied content." +author: "psanyal" +ms.date: 04/13/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: apiPageType +--- + +# tenantDataSecurityAndGovernance: processContent + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Evaluate content against Microsoft Purview Data Loss Prevention (DLP) policies and return the policy actions that apply to the supplied content. + +Use this API when an application needs to evaluate content before or during data movement. In Agent-to-Tool (A2T) scenarios, the agent runtime calls this API before invoking an external tool to determine whether the content should be allowed, blocked, or audited according to Microsoft Purview policies. + +For A2T scenarios: + +- Set `evaluationScope.type` to `agent`. +- Provide `protectedAppMetadata` to identify both the agent initiating the operation and the tool receiving the content. +- Use the protection scope returned by `protectionScopes/compute` to determine whether this API should be called. +- Pass the latest protection scope `ETag` value in the `If-None-Match` request header to enable policy change detection. + +The response contains any applicable policy actions together with the protection scope state, allowing callers to determine whether cached protection scopes should be refreshed. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantdatasecurityandgovernance-processcontent-permissions.md)] + +## HTTP request + + +```http +POST /security/dataSecurityAndGovernance/processContent +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| +|If-None-Match|Optional. The `ETag` value returned by the latest `protectionScopes/compute` response. Enables detection of protection scope changes between requests.| + +## Request body + +In the request body, supply a JSON representation of the parameters. + +The following table lists the parameters that are required when you call this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|contentToProcess|[processContentRequest](../resources/processcontentrequest.md)|Required. Specifies the content to evaluate together with the evaluation context. For this action, set **evaluationScope.type** to `agent` and identify the agent and tool in **protectedAppMetadata**.| + +## Response + +If successful, this action returns a `200 OK` response code and a [processContentResponse](../resources/processcontentresponse.md) in the response body. + +The response contains the policy actions that apply to the submitted content. It also includes the protection scope state, which indicates whether the caller should refresh its cached protection scopes before processing future requests. + +### Response headers + +|Name|Description| +|:---|:---| +|ETag|Indicates the current protection scope state. If the value changes, refresh the cached protection scopes by calling [tenantProtectionScopeContainer: compute](tenantprotectionscopecontainer-compute.md).| + +## Examples + +### Request + +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/security/dataSecurityAndGovernance/processContent +Content-Type: application/json + +{ + "contentToProcess": { + "contentEntries": [ + { + "@odata.type": "microsoft.graph.processConversationMetadata", + "identifier": "78214691-2f04-4f01-99f8-55da9d25c260", + "content": { + "@odata.type": "microsoft.graph.textContent", + "data": "Summarize the quarterly results for the project team." + }, + "name": "Quarterly results request", + "isTruncated": false, + "createdDateTime": "2026-07-21T12:30:00Z", + "modifiedDateTime": "2026-07-21T12:30:00Z" + } + ], + "activityMetadata": { + "activity": "uploadText" + }, + "deviceMetadata": { + "deviceType": "managed", + "operatingSystemSpecifications": { + "operatingSystemPlatform": "Windows", + "operatingSystemVersion": "11" + }, + "ipAddress": "192.0.2.1" + }, + "evaluationScope": { + "type": "agent" + }, + "integratedAppMetadata": { + "name": "Contoso agent runtime", + "version": "1.0" + }, + "protectedAppMetadata": { + "name": "Contoso search tool", + "version": "1.0", + "applicationLocation": { + "@odata.type": "microsoft.graph.policyLocationTool", + "value": "search@mcp" + }, + "sourceLocation": { + "@odata.type": "microsoft.graph.policyLocationApplication", + "value": "8f44d8d4-80c9-4d88-a487-a1940dc71b3d" + } + } + } +} +``` + +### Response + +The following example shows the response. + +> **Note:** The response object shown here might be shortened for readability. + + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#microsoft.graph.processContentResponse", + "policyActions": [], + "processingErrors": [], + "protectionScopeState": "notModified" +} +``` \ No newline at end of file diff --git a/api-reference/beta/api/tenantprotectionscopecontainer-compute.md b/api-reference/beta/api/tenantprotectionscopecontainer-compute.md index 495e6cc2ac1..55356a81e61 100644 --- a/api-reference/beta/api/tenantprotectionscopecontainer-compute.md +++ b/api-reference/beta/api/tenantprotectionscopecontainer-compute.md @@ -28,6 +28,7 @@ Choose the permission or permissions marked as least privileged for this API. Us ## HTTP request + ```http POST /security/dataSecurityAndGovernance/protectionScopes/compute ``` @@ -48,9 +49,10 @@ In the request body, provide JSON object with the following parameters. | :-------------------- | :------------------------------------------------------------------------------------------------------------------- | :------------------------------------------------------------------------------------------------------------------------------------------------------------------ | | activities | microsoft.graph.security.userActivityTypes | Optional. Flags specifying the user activities the calling application supports or is interested. Possible values are `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. This object is a multi-valued enumeration.| | deviceMetadata | [deviceMetadata](../resources/devicemetadata.md) | Optional. Information about the device context (type, OS) used for contextual policy evaluation. | +|evaluationScope|[evaluationScope](../resources/evaluationscope.md)|Optional. Specifies the evaluation context for the request. For Agent-to-Tool (A2T) scenarios, set **type** to `agent`. If omitted, the request is evaluated using the default tenant context.| | integratedAppMetadata | [integratedApplicationMetadata](../resources/integratedapplicationmetadata.md) | Optional. Information about the calling application (name, version) integrating with Microsoft Purview. | -| locations | [policyLocation](../resources/policylocation.md) collection | Optional. List of specific locations the application is interested in. If provided, results are trimmed to policies covering these locations. Use [policy location application](../resources/policylocationapplication.md) for application locations, [policy location domain](../resources/policylocationdomain.md) for domain locations, or [policy location URL](../resources/policylocationurl.md) for URL locations. You must specify the `@odata.type` property to declare the type of policyLocation. For example, `"@odata.type": "microsoft.graph.policyLocationApplication"`.| -| pivotOn | microsoft.graph.policyPivotProperty | Optional. Specifies how the results should be aggregated. If omitted or `none`, results might be less aggregated. Possible values are `activity`,`location`, `none`.| +| locations | [policyLocation](../resources/policylocation.md) collection | Optional. List of specific locations the application is interested in. If provided, results are trimmed to policies covering these locations. Use [policy location application](../resources/policylocationapplication.md) for application locations, [policy location domain](../resources/policylocationdomain.md) for domain locations, [policy location tool](../resources/policylocationtool.md) for tool locations, or [policy location URL](../resources/policylocationurl.md) for URL locations. You must specify the `@odata.type` property to declare the type of policyLocation. For example, `"@odata.type": "microsoft.graph.policyLocationApplication"`.| +| pivotOn | microsoft.graph.policyPivotProperty | Optional. Specifies how the results should be aggregated. If omitted or `none`, results might be less aggregated. Possible values are `activity`, `location`, `none`.| ## Response @@ -68,10 +70,17 @@ Content-type: application/json { "activities": "uploadText,downloadText", + "evaluationScope": { + "type": "agent" + }, "locations": [ { "@odata.type": "microsoft.graph.policyLocationApplication", "value": "be121c8f-ecd8-4026-b699-669e0ce1bcbf" + }, + { + "@odata.type": "microsoft.graph.policyLocationTool", + "value": "search@mcp" } ] } diff --git a/api-reference/beta/includes/permissions/tenantdatasecurityandgovernance-processcontent-permissions.md b/api-reference/beta/includes/permissions/tenantdatasecurityandgovernance-processcontent-permissions.md new file mode 100644 index 00000000000..9acfbe3d85e --- /dev/null +++ b/api-reference/beta/includes/permissions/tenantdatasecurityandgovernance-processcontent-permissions.md @@ -0,0 +1,13 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Content.Process.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Content.Process.All|Not available.| + + diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index 8e5fc4a4639..dd1b76fc1dd 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -6206,6 +6206,15 @@ Possible values for user account types (group membership), per Windows definitio |applyNotSupported| |unknownFutureValue| +### evaluationScopeType values + +|Member| +|:---| +|tenant| +|agent| +|anonymousUser| +|unknownFutureValue| + ### agentEndpointConfigurationType values |Member| diff --git a/api-reference/beta/resources/evaluationscope.md b/api-reference/beta/resources/evaluationscope.md new file mode 100644 index 00000000000..656619375d9 --- /dev/null +++ b/api-reference/beta/resources/evaluationscope.md @@ -0,0 +1,50 @@ +--- +title: "evaluationScope resource type" +description: "Represents the evaluation context used to determine how Microsoft Purview evaluates content and resolves applicable protection scopes." +author: "psanyal" +ms.date: 06/25/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# evaluationScope resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the evaluation context used when Microsoft Purview evaluates content or computes protection scopes. + +The evaluation scope determines how policies are resolved for a request. By default, requests are evaluated using the tenant context. For Agent-to-Tool (A2T) scenarios, set the **type** property to `agent` to enable agent-aware policy evaluation, which considers both agent and tool locations when resolving applicable Microsoft Purview Data Loss Prevention (DLP) policies. + +This resource is used by the following APIs: + +- `protectionScopes/compute` +- `processContent` + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|type|evaluationScopeType|Specifies the evaluation context for the request. Required. Set to `agent` for Agent-to-Tool (A2T) scenarios to enable policy evaluation based on `policyLocationApplication` and `policyLocationTool`. The possible values are: `tenant`, `agent`, `anonymousUser`, `unknownFutureValue`.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +```json +{ + "@odata.type": "#microsoft.graph.evaluationScope", + "type": "String" +} +``` \ No newline at end of file diff --git a/api-reference/beta/resources/policylocationtool.md b/api-reference/beta/resources/policylocationtool.md new file mode 100644 index 00000000000..2de416f7962 --- /dev/null +++ b/api-reference/beta/resources/policylocationtool.md @@ -0,0 +1,51 @@ +--- +title: "policyLocationTool resource type" +description: "Represents a tool location used to scope Microsoft Purview Data Loss Prevention (DLP) policies for Agent-to-Tool (A2T) scenarios." +author: "psanyal" +ms.date: 06/25/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# policyLocationTool resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a tool location used to scope Microsoft Purview Data Loss Prevention (DLP) policies. + +In Agent-to-Tool (A2T) scenarios, a **policyLocationTool** identifies the external tool, connector, or Model Context Protocol (MCP) tool that participates in a content transfer. This resource is used when computing protection scopes and evaluating content against Microsoft Purview policies. + +A tool is identified by its tool identifier. For MCP tools, use the format `@mcp`. For example, `search@mcp` identifies an MCP tool named `search`. + +A value of `All` represents all tools and can be used in protection scopes to apply a policy to every tool. Tool exclusions can be represented separately through `locationExclusions` in a protection scope. + +Inherits from [policyLocation](../resources/policylocation.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|value|String|The identifier of the tool to which the policy applies. For Model Context Protocol (MCP) tools, specify the identifier in the format `@mcp`, for example, `search@mcp`. Specify `All` to match every tool. Inherited from [policyLocation](../resources/policylocation.md).| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +```json +{ + "@odata.type": "#microsoft.graph.policyLocationTool", + "value": "String" +} +``` \ No newline at end of file diff --git a/api-reference/beta/resources/policyscopebase.md b/api-reference/beta/resources/policyscopebase.md index 7f69c3b8fe8..02802cf0102 100644 --- a/api-reference/beta/resources/policyscopebase.md +++ b/api-reference/beta/resources/policyscopebase.md @@ -22,8 +22,9 @@ Used as a base type for more specific policy scopes like [policyTenantScope](../ |Property|Type|Description| |:---|:---|:---| -|activities|microsoft.graph.security.userActivityTypes| Flags specifying the user activities the calling application supports or is interested. Possible values are `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Required. This object is a multi-valued enumeration.| -|executionMode|microsoft.graph.security.executionMode |Specifies how the policy should be executed. Possible values are `evaluateInline`, `evaluateOffline`, `unknownFutureValue`. Required.| +|activities|microsoft.graph.security.userActivityTypes|Flags specifying the user activities the calling application supports or is interested. Possible values are `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Required. This object is a multi-valued enumeration.| +|executionMode|microsoft.graph.security.executionMode|Specifies how the policy should be executed. Possible values are `evaluateInline`, `evaluateOffline`, `unknownFutureValue`. Required.| +|locationExclusions|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|The locations that are excluded from this policy scope. When specified, the effective scope is the set of locations in **locations** minus the locations in **locationExclusions**. This property can be used to exclude specific applications, tools, domains, or other supported location types from an otherwise broader policy scope. Required.| |locations|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|The locations (like domains or URLs) to be protected. Required.| |policyActions|Collection([microsoft.graph.dlpActionInfo](../resources/dlpactioninfo.md))|The enforcement actions to take if the policy conditions are met within this scope. Required.| @@ -45,6 +46,11 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.policyScopeBase", "activities": "String", "executionMode": "String", + "locationExclusions": [ + { + "@odata.type": "microsoft.graph.policyLocation" + } + ], "locations": [ { "@odata.type": "microsoft.graph.policyLocation" diff --git a/api-reference/beta/resources/policytenantscope.md b/api-reference/beta/resources/policytenantscope.md index 3e79777d24a..16bd4eefb71 100644 --- a/api-reference/beta/resources/policytenantscope.md +++ b/api-reference/beta/resources/policytenantscope.md @@ -24,8 +24,9 @@ Inherits from [policyScopeBase](../resources/policyscopebase.md). |Property|Type|Description| |:---|:---|:---| -|activities|microsoft.graph.security.userActivityTypes| Flags specifying the user activities the calling application supports or is interested. Possible values are `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Required. This object is a multi-valued enumeration.| +|activities|microsoft.graph.security.userActivityTypes|Flags specifying the user activities the calling application supports or is interested. Possible values are `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Required. This object is a multi-valued enumeration.| |executionMode|microsoft.graph.security.executionMode|Policy execution mode at the tenant level. Possible values are `evaluateInline` and `evaluateOffline`. Inherited from `policyScopeBase`. Required.| +|locationExclusions|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations excluded from the tenant-level policy scope. When specified, the effective scope is the set of locations in **locations** minus the locations in **locationExclusions**. Inherited from `policyScopeBase`. Required.| |locations|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations protected at the tenant level. Inherited from `policyScopeBase`. Required.| |policyActions|Collection([microsoft.graph.dlpActionInfo](../resources/dlpactioninfo.md))|Enforcement actions at the tenant level. Inherited from `policyScopeBase`. Required.| |policyScope|[microsoft.graph.policyBinding](../resources/policybinding.md)|Specifies the users and groups included in or excluded from this tenant-level policy scope.| @@ -48,6 +49,11 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.policyTenantScope", "activities": "String", "executionMode": "String", + "locationExclusions": [ + { + "@odata.type": "microsoft.graph.policyLocation" + } + ], "locations": [ { "@odata.type": "microsoft.graph.policyLocation" diff --git a/api-reference/beta/resources/policyuserscope.md b/api-reference/beta/resources/policyuserscope.md index 181ee04614f..7878113b83d 100644 --- a/api-reference/beta/resources/policyuserscope.md +++ b/api-reference/beta/resources/policyuserscope.md @@ -24,8 +24,9 @@ Inherits from [policyScopeBase](../resources/policyscopebase.md). |Property|Type|Description| |:---|:---|:---| -|activities|microsoft.graph.security.userActivityTypes| Flags specifying the user activities the calling application supports or is interested. Possible values are `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Required. This object is a multi-valued enumeration.| +|activities|microsoft.graph.security.userActivityTypes|Flags specifying the user activities the calling application supports or is interested. Possible values are `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Required. This object is a multi-valued enumeration.| |executionMode|microsoft.graph.security.executionMode|Policy execution mode for this user. Possible values are `evaluateInline` and `evaluateOffline`. Inherited from `policyScopeBase`. Required.| +|locationExclusions|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations excluded from the user-level policy scope. When specified, the effective scope is the set of locations in **locations** minus the locations in **locationExclusions**. Inherited from `policyScopeBase`. Required.| |locations|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations protected for this user. Inherited from `policyScopeBase`. Required.| |policyActions|Collection([microsoft.graph.dlpActionInfo](../resources/dlpactioninfo.md))|Enforcement actions applicable to this user. Inherited from `policyScopeBase`. Required.| @@ -52,6 +53,11 @@ The following JSON representation shows the resource type. "@odata.type": "microsoft.graph.policyLocation" } ], + "locationExclusions": [ + { + "@odata.type": "microsoft.graph.policyLocation" + } + ], "policyActions": [ { "@odata.type": "microsoft.graph.dlpActionInfo" diff --git a/api-reference/beta/resources/processcontentrequest.md b/api-reference/beta/resources/processcontentrequest.md index cf9c03805b0..d4315a88d64 100644 --- a/api-reference/beta/resources/processcontentrequest.md +++ b/api-reference/beta/resources/processcontentrequest.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Defines the input payload for the [processContent](../api/userdatasecurityandgovernance-processcontent.md) and [processContentAsync](../api/tenantdatasecurityandgovernance-processcontentasync.md) actions. +Defines the input payload for the user-scoped [processContent](../api/userdatasecurityandgovernance-processcontent.md), tenant-scoped [processContent](../api/tenantdatasecurityandgovernance-processcontent.md), and [processContentAsync](../api/tenantdatasecurityandgovernance-processcontentasync.md) actions. ## Properties @@ -23,6 +23,7 @@ Defines the input payload for the [processContent](../api/userdatasecurityandgov |activityMetadata|[microsoft.graph.activityMetadata](../resources/activitymetadata.md)|Metadata about the user activity (like upload, download) and location (URL). Required.| |contentEntries|Collection([microsoft.graph.processContentMetadataBase](../resources/processcontentmetadatabase.md))|A collection of content entries to be processed. Each entry contains the content itself and its metadata. Use [conversation metadata](../resources/processconversationmetadata.md) for content like prompts and responses, [file metadata](../resources/processfilemetadata.md) for files, and [content activity metadata](../resources/contentactivitymetadata.md) for enforcement result status entries. Required.| |deviceMetadata|[microsoft.graph.deviceMetadata](../resources/devicemetadata.md)|Metadata about the device from which the content originates. Required.| +|evaluationScope|[evaluationScope](../resources/evaluationscope.md)|Specifies the evaluation context for the request. Optional generally; required for the tenant-scoped **processContent** action, where **type** must be `agent`. When omitted from other actions, the request uses the default tenant evaluation context.| |integratedAppMetadata|[microsoft.graph.integratedApplicationMetadata](../resources/integratedapplicationmetadata.md)|Metadata about the integrated application making the request. Required.| |protectedAppMetadata|[microsoft.graph.protectedApplicationMetadata](../resources/protectedapplicationmetadata.md)|Metadata about the protected application making the request. Required.| @@ -52,6 +53,10 @@ The following JSON representation shows the resource type. "deviceMetadata": { "@odata.type": "microsoft.graph.deviceMetadata" }, + "evaluationScope": { + "@odata.type": "microsoft.graph.evaluationScope", + "type": "String" + }, "integratedAppMetadata": { "@odata.type": "microsoft.graph.integratedApplicationMetadata" }, diff --git a/api-reference/beta/resources/protectedapplicationmetadata.md b/api-reference/beta/resources/protectedapplicationmetadata.md index 8bbe18c629c..0d86d8852e1 100644 --- a/api-reference/beta/resources/protectedapplicationmetadata.md +++ b/api-reference/beta/resources/protectedapplicationmetadata.md @@ -14,19 +14,20 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents metadata about an application whose activities governed by an integrated application. +Represents metadata about an application whose activities are governed by an integrated application. -Inhertits from [integratedApplicationMetadata](./integratedapplicationmetadata.md). +In Agent-to-Tool (A2T) scenarios, this resource identifies both the agent initiating operations and the tool receiving content, enabling Microsoft Purview Data Loss Prevention (DLP) policies to evaluate data movement between agents and external tools. -For internal use only. Don't use. +Inherits from [integratedApplicationMetadata](./integratedapplicationmetadata.md). ## Properties -| Property | Type | Description | -| :------------ | :----- | :--------------------------------------------------------------- | -| applicationLocation | [policyLocation](../resources/policylocation.md) |The client (application) ID of the Microsoft Entra application. Required.| -| name | String | The name of the integrated application. Inherited from [integratedApplicationMetadata](./integratedapplicationmetadata.md). | -| version | String | The version number of the integrated application. Inherited from [integratedApplicationMetadata](./integratedapplicationmetadata.md). | +|Property|Type|Description| +|:---|:---|:---| +|applicationLocation|[policyLocation](../resources/policylocation.md)|The location of the application being protected. For Agent-to-Tool (A2T) scenarios, this represents the tool receiving the content. Required.| +|name|String|The name of the integrated application. Inherited from [integratedApplicationMetadata](./integratedapplicationmetadata.md).| +|sourceLocation|[policyLocation](../resources/policylocation.md)|Identifies the source location of the content being evaluated. For Agent-to-Tool (A2T) scenarios, this represents the agent initiating the operation. Used together with **applicationLocation** to determine the applicable Microsoft Purview policies.| +|version|String|The version number of the integrated application. Inherited from [integratedApplicationMetadata](./integratedapplicationmetadata.md).| ## Relationships @@ -45,7 +46,11 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.protectedApplicationMetadata", "applicationLocation": { "@odata.type": "#microsoft.graph.policyLocation", - "location": "String" + "value": "String" + }, + "sourceLocation": { + "@odata.type": "#microsoft.graph.policyLocation", + "value": "String" } } ``` diff --git a/api-reference/beta/resources/tenantdatasecurityandgovernance.md b/api-reference/beta/resources/tenantdatasecurityandgovernance.md index 65f8cbe0b8c..a8e1397277e 100644 --- a/api-reference/beta/resources/tenantdatasecurityandgovernance.md +++ b/api-reference/beta/resources/tenantdatasecurityandgovernance.md @@ -22,6 +22,7 @@ Inherits from [dataSecurityAndGovernance](../resources/datasecurityandgovernance | Method | Return Type | Description | | :---------------------------------------------- | :---------------------------------------------------------------------------------------------------------- | :------------------------------------------------------------------------------------------ | +| [Process content](../api/tenantdatasecurityandgovernance-processcontent.md) | [processContentResponse](../resources/processcontentresponse.md) | Evaluate content synchronously against data protection policies. | | [Process content async](../api/tenantdatasecurityandgovernance-processcontentasync.md) | [processContentResponses](../resources/processcontentresponses.md) collection | Process a batch of content entries asynchronously against data protection policies. | ## Properties diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index c89d9f07b83..af9ffbc9979 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -2951,6 +2951,7 @@ "customMetadataDictionary", "deviceMetadata", "dlpActionInfo", + "evaluationScope", "embeddingInput", "groupScope", "integratedApplicationMetadata", @@ -2963,6 +2964,7 @@ "policyLocation", "policyLocationApplication", "policyLocationDomain", + "policyLocationTool", "policyLocationUrl", "policyScopeBase", "policyTenantScope", diff --git a/changelog/Microsoft.DataClassificationService.json b/changelog/Microsoft.DataClassificationService.json index b5e43ac23cf..a9e6eb8adc4 100644 --- a/changelog/Microsoft.DataClassificationService.json +++ b/changelog/Microsoft.DataClassificationService.json @@ -1,5 +1,79 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "45f4597a-e518-43e0-992e-c778d399e853", + "ApiChange": "Enumeration", + "ChangedApiName": "evaluationScopeType", + "ChangeType": "Addition", + "Description": "Added the **evaluationScopeType** enumeration type.", + "Target": "evaluationScopeType" + }, + { + "Id": "45f4597a-e518-43e0-992e-c778d399e853", + "ApiChange": "Resource", + "ChangedApiName": "evaluationScope", + "ChangeType": "Addition", + "Description": "Added the [evaluationScope](https://learn.microsoft.com/en-us/graph/api/resources/evaluationscope?view=graph-rest-beta) resource.", + "Target": "evaluationScope" + }, + { + "Id": "45f4597a-e518-43e0-992e-c778d399e853", + "ApiChange": "Resource", + "ChangedApiName": "policyLocationTool", + "ChangeType": "Addition", + "Description": "Added the [policyLocationTool](https://learn.microsoft.com/en-us/graph/api/resources/policylocationtool?view=graph-rest-beta) resource.", + "Target": "policyLocationTool" + }, + { + "Id": "45f4597a-e518-43e0-992e-c778d399e853", + "ApiChange": "Property", + "ChangedApiName": "locationExclusions", + "ChangeType": "Addition", + "Description": "Added the **locationExclusions** property to the [policyScopeBase](https://learn.microsoft.com/en-us/graph/api/resources/policyscopebase?view=graph-rest-beta) resource.", + "Target": "policyScopeBase" + }, + { + "Id": "45f4597a-e518-43e0-992e-c778d399e853", + "ApiChange": "Property", + "ChangedApiName": "evaluationScope", + "ChangeType": "Addition", + "Description": "Added the **evaluationScope** property to the [processContentRequest](https://learn.microsoft.com/en-us/graph/api/resources/processcontentrequest?view=graph-rest-beta) resource.", + "Target": "processContentRequest" + }, + { + "Id": "45f4597a-e518-43e0-992e-c778d399e853", + "ApiChange": "Property", + "ChangedApiName": "sourceLocation", + "ChangeType": "Addition", + "Description": "Added the **sourceLocation** property to the [protectedApplicationMetadata](https://learn.microsoft.com/en-us/graph/api/resources/protectedapplicationmetadata?view=graph-rest-beta) resource.", + "Target": "protectedApplicationMetadata" + }, + { + "Id": "45f4597a-e518-43e0-992e-c778d399e853", + "ApiChange": "Parameter", + "ChangedApiName": "evaluationScope", + "ChangeType": "Addition", + "Description": "Added the `evaluationScope` parameter to the [compute](https://learn.microsoft.com/en-us/graph/api/tenantprotectionscopecontainer-compute?view=graph-rest-beta) method.", + "Target": "compute" + }, + { + "Id": "45f4597a-e518-43e0-992e-c778d399e853", + "ApiChange": "Method", + "ChangedApiName": "processContent", + "ChangeType": "Addition", + "Description": "Added the [processContent](https://learn.microsoft.com/en-us/graph/api/tenantdatasecurityandgovernance-processcontent?view=graph-rest-beta) method to the [tenantDataSecurityAndGovernance](https://learn.microsoft.com/en-us/graph/api/resources/tenantdatasecurityandgovernance?view=graph-rest-beta) resource.", + "Target": "tenantDataSecurityAndGovernance" + } + ], + "Id": "45f4597a-e518-43e0-992e-c778d399e853", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-03T00:19:48.5682322Z", + "WorkloadArea": "Security", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index b5d9b4170c2..327c3363887 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -290,6 +290,8 @@ Added the optional **workspaceId** parameter to the [runHuntingQuery](/graph/api ### Security | Data security and compliance +Added support for evaluating content against Microsoft Purview Data Loss Prevention (DLP) policies before agent-to-tool interactions. Use the [processContent](/graph/api/tenantdatasecurityandgovernance-processcontent?view=graph-rest-beta&preserve-view=true) API to determine whether content should be allowed, blocked, or audited based on the applicable protection scope. + Added the **matchedConditionsDescription** and **complianceUrl** properties to the [policyTipAction](/graph/api/resources/policytipaction?view=graph-rest-beta&preserve-view=true) resource. Use these properties to display a user-friendly summary of the matched DLP conditions and link users to additional compliance guidance. Added the [embeddingInput](/graph/api/resources/embeddinginput?view=graph-rest-beta&preserve-view=true) resource type and the **embeddings** property on the [textClassificationRequest](/graph/api/resources/textclassificationrequest?view=graph-rest-beta&preserve-view=true) resource, so a caller can supply precomputed embedding vectors when classifying text and let the service skip recomputing them. From 785615ff148b5f2f591959382b1f921807a71dc2 Mon Sep 17 00:00:00 2001 From: Jason Johnston Date: Fri, 4 Sep 2026 13:09:50 -0400 Subject: [PATCH 117/189] Removed exclusion for getAllMessages for chats and channels in UsGov (#29556) --- api-reference/cloud.exclusions.json | 10 ---------- 1 file changed, 10 deletions(-) diff --git a/api-reference/cloud.exclusions.json b/api-reference/cloud.exclusions.json index 48173626435..8731c736e87 100644 --- a/api-reference/cloud.exclusions.json +++ b/api-reference/cloud.exclusions.json @@ -225,16 +225,6 @@ "operation": "POST", "cloud": "UsGov" }, - { - "apiPath": "/teams/{team-id}/channels/getAllMessages()", - "operation": "GET", - "cloud": "UsGov" - }, - { - "apiPath": "/users/{user-id}/chats/getAllMessages()", - "operation": "GET", - "cloud": "UsGov" - }, { "apiPath": "/teams/{team-id}/channels/{channel-id}/messages/{chatMessage-id}", "operation": "PATCH", From c423144b2d98a55ccdfc2c0a2a0e02dd104b27ac Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Fri, 4 Sep 2026 13:54:09 -0400 Subject: [PATCH 118/189] Update cloud support status (#29557) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/api/channel-getallmessages.md | 2 +- api-reference/beta/api/chats-getallmessages.md | 2 +- api-reference/beta/api/cloudpccloudapp-delete.md | 2 +- api-reference/beta/api/cloudpccloudapp-get.md | 2 +- api-reference/beta/api/cloudpccloudapp-publish.md | 2 +- api-reference/beta/api/cloudpccloudapp-reset.md | 2 +- .../beta/api/cloudpccloudapp-retrievediscoveredapps.md | 2 +- api-reference/beta/api/cloudpccloudapp-unpublish.md | 2 +- api-reference/beta/api/cloudpccloudapp-update.md | 2 +- api-reference/beta/api/configurationbaseline-get.md | 2 +- api-reference/beta/api/configurationdrift-get.md | 2 +- .../api/configurationmanagement-list-configurationdrifts.md | 2 +- ...igurationmanagement-list-configurationmonitoringresults.md | 2 +- .../api/configurationmanagement-list-configurationmonitors.md | 2 +- .../configurationmanagement-list-configurationsnapshotjobs.md | 2 +- .../configurationmanagement-list-configurationsnapshots.md | 2 +- .../api/configurationmanagement-post-configurationmonitors.md | 2 +- api-reference/beta/api/configurationmonitor-delete.md | 2 +- api-reference/beta/api/configurationmonitor-get.md | 2 +- api-reference/beta/api/configurationmonitor-update.md | 2 +- api-reference/beta/api/configurationmonitoringresult-get.md | 2 +- api-reference/beta/api/configurationsnapshotjob-delete.md | 2 +- api-reference/beta/api/configurationsnapshotjob-get.md | 2 +- ...-alertrecord-changealertrecordsportalnotificationassent.md | 2 +- api-reference/beta/api/devicemanagement-alertrecord-get.md | 2 +- .../devicemanagement-alertrecord-getportalnotifications.md | 2 +- api-reference/beta/api/devicemanagement-alertrecord-list.md | 2 +- ...evicemanagement-alertrecord-setportalnotificationassent.md | 2 +- api-reference/beta/api/devicemanagement-alertrule-get.md | 2 +- api-reference/beta/api/devicemanagement-alertrule-list.md | 2 +- api-reference/beta/api/devicemanagement-alertrule-post.md | 2 +- api-reference/beta/api/devicemanagement-alertrule-update.md | 2 +- .../beta/api/featurerolloutpolicy-delete-appliesto.md | 2 +- api-reference/beta/api/featurerolloutpolicy-delete.md | 2 +- api-reference/beta/api/featurerolloutpolicy-get.md | 2 +- api-reference/beta/api/featurerolloutpolicy-post-appliesto.md | 2 +- api-reference/beta/api/featurerolloutpolicy-update.md | 2 +- .../api/identitygovernance-subjectprocessingresult-summary.md | 2 ++ api-reference/beta/api/list-featurerolloutpolicies.md | 2 +- api-reference/beta/api/post-featurerolloutpolicies.md | 2 +- api-reference/beta/api/security-alert-createalert.md | 2 ++ .../security-casemanagement-attachment-download-content.md | 2 ++ .../api/security-casemanagement-attachment-upload-content.md | 2 ++ .../beta/api/security-casemanagement-relation-delete.md | 2 ++ .../beta/api/security-casemanagement-relation-get.md | 2 ++ api-reference/beta/api/security-casemanagement-task-delete.md | 2 ++ api-reference/beta/api/teamworksection-reorder.md | 2 ++ api-reference/beta/api/teamworksectionitem-reorder.md | 2 ++ .../api/tenantdatasecurityandgovernance-processcontent.md | 4 +++- api-reference/beta/api/virtualendpoint-list-cloudapps.md | 2 +- api-reference/beta/api/virtualendpoint-post-cloudapps.md | 2 +- api-reference/beta/api/workhoursandlocationssetting-get.md | 2 +- .../beta/api/workhoursandlocationssetting-list-recurrences.md | 2 +- .../beta/api/workhoursandlocationssetting-occurrencesview.md | 2 +- .../beta/api/workhoursandlocationssetting-post-occurrences.md | 2 +- .../beta/api/workhoursandlocationssetting-post-recurrences.md | 2 +- api-reference/beta/api/workhoursandlocationssetting-update.md | 2 +- api-reference/beta/api/workplanoccurrence-delete.md | 2 +- .../beta/api/workplanoccurrence-setcurrentlocation.md | 2 +- api-reference/beta/api/workplanoccurrence-update.md | 2 +- api-reference/beta/api/workplanrecurrence-delete.md | 2 +- api-reference/beta/api/workplanrecurrence-update.md | 2 +- .../v1.0/api/accessreviewstage-acceptrecommendations.md | 2 ++ .../v1.0/api/accessreviewstage-batchrecorddecisions.md | 2 ++ api-reference/v1.0/api/channel-getallmessages.md | 2 +- api-reference/v1.0/api/chats-getallmessages.md | 2 +- ...taccesspolicyconfigurationdefault-list-m365capabilities.md | 2 ++ ...taccesspolicyconfigurationdefault-post-m365capabilities.md | 2 ++ ...ccesspolicyconfigurationdefault-update-m365capabilities.md | 2 ++ ...ccesspolicyconfigurationpartner-delete-m365capabilities.md | 2 ++ ...taccesspolicyconfigurationpartner-list-m365capabilities.md | 2 ++ ...taccesspolicyconfigurationpartner-post-m365capabilities.md | 2 ++ ...ccesspolicyconfigurationpartner-update-m365capabilities.md | 2 ++ ...tlementmanagement-list-externaloriginresourceconnectors.md | 2 ++ ...tlementmanagement-post-externaloriginresourceconnectors.md | 2 ++ .../v1.0/api/externaloriginresourceconnector-delete.md | 2 ++ api-reference/v1.0/api/externaloriginresourceconnector-get.md | 2 ++ .../v1.0/api/externaloriginresourceconnector-update.md | 2 ++ api-reference/v1.0/api/featurerolloutpolicies-list.md | 2 +- api-reference/v1.0/api/featurerolloutpolicies-post.md | 2 +- .../v1.0/api/featurerolloutpolicy-delete-appliesto.md | 2 +- api-reference/v1.0/api/featurerolloutpolicy-delete.md | 2 +- api-reference/v1.0/api/featurerolloutpolicy-get.md | 2 +- api-reference/v1.0/api/featurerolloutpolicy-post-appliesto.md | 2 +- api-reference/v1.0/api/featurerolloutpolicy-update.md | 2 +- .../identitygovernance-run-list-subjectprocessingresults.md | 2 ++ .../api/identitygovernance-subjectprocessingresult-get.md | 2 ++ .../api/identitygovernance-subjectprocessingresult-summary.md | 2 ++ .../v1.0/api/identitygovernance-workflow-activateandwait.md | 2 ++ api-reference/v1.0/api/mailboxfolder-delete-items.md | 2 ++ api-reference/v1.0/api/note-delete.md | 2 ++ api-reference/v1.0/api/note-delta.md | 2 ++ api-reference/v1.0/api/note-get.md | 2 ++ api-reference/v1.0/api/note-list-attachments.md | 2 ++ api-reference/v1.0/api/note-post-attachments.md | 2 ++ api-reference/v1.0/api/note-update.md | 2 ++ api-reference/v1.0/api/unifiedroot-list-definitions.md | 2 ++ api-reference/v1.0/api/unifiedroot-post-definitions.md | 2 ++ api-reference/v1.0/api/user-list-notes.md | 2 ++ api-reference/v1.0/api/user-post-notes.md | 2 ++ 100 files changed, 140 insertions(+), 62 deletions(-) diff --git a/api-reference/beta/api/channel-getallmessages.md b/api-reference/beta/api/channel-getallmessages.md index 63bdf132e75..41388fb97b1 100644 --- a/api-reference/beta/api/channel-getallmessages.md +++ b/api-reference/beta/api/channel-getallmessages.md @@ -19,7 +19,7 @@ Retrieve [messages](../resources/chatmessage.md) across all [channels](../resour To learn more about using the Microsoft Teams export APIs to export content, see [Export content with the Microsoft Teams export APIs](/microsoftteams/export-teams-content). -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/chats-getallmessages.md b/api-reference/beta/api/chats-getallmessages.md index 4f28d791725..3b5693daebb 100644 --- a/api-reference/beta/api/chats-getallmessages.md +++ b/api-reference/beta/api/chats-getallmessages.md @@ -19,7 +19,7 @@ Get all messages from all [chats](../resources/chatmessage.md) in which a user i To learn more about how to use the Microsoft Teams export APIs to export content, see [Export content with the Microsoft Teams export APIs](/microsoftteams/export-teams-content). -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/cloudpccloudapp-delete.md b/api-reference/beta/api/cloudpccloudapp-delete.md index 1dd65bd4c2d..c05cc4a0cc7 100644 --- a/api-reference/beta/api/cloudpccloudapp-delete.md +++ b/api-reference/beta/api/cloudpccloudapp-delete.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Delete a [cloudPcCloudApp](../resources/cloudpccloudapp.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/cloudpccloudapp-get.md b/api-reference/beta/api/cloudpccloudapp-get.md index 29646ca3e76..e163cea2266 100644 --- a/api-reference/beta/api/cloudpccloudapp-get.md +++ b/api-reference/beta/api/cloudpccloudapp-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Read the properties of a specific [cloudPcCloudApp](../resources/cloudpccloudapp.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/cloudpccloudapp-publish.md b/api-reference/beta/api/cloudpccloudapp-publish.md index 41ed02b0397..64331a7ec19 100644 --- a/api-reference/beta/api/cloudpccloudapp-publish.md +++ b/api-reference/beta/api/cloudpccloudapp-publish.md @@ -19,7 +19,7 @@ Publish a [cloudPcCloudApp](../resources/cloudpccloudapp.md) object to make it a > [!NOTE] > An admin can publish up to 500 cloud apps under a single provisioning policy -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/cloudpccloudapp-reset.md b/api-reference/beta/api/cloudpccloudapp-reset.md index 00d5b851d76..b9dae485171 100644 --- a/api-reference/beta/api/cloudpccloudapp-reset.md +++ b/api-reference/beta/api/cloudpccloudapp-reset.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Reset the app details of the [cloudPcCloudApp](../resources/cloudpccloudapp.md) object to the [app details](../resources/cloudpccloudappdetail.md) of the initially discovered app that this cloud app is mapped to. This action requires the `Microsoft.CloudPC/CloudApps/Update` permission. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/cloudpccloudapp-retrievediscoveredapps.md b/api-reference/beta/api/cloudpccloudapp-retrievediscoveredapps.md index 048e3c643bc..e2d72a1322f 100644 --- a/api-reference/beta/api/cloudpccloudapp-retrievediscoveredapps.md +++ b/api-reference/beta/api/cloudpccloudapp-retrievediscoveredapps.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get a list of [cloudPcDiscoveredApp](../resources/cloudpcdiscoveredapp.md) objects whose [appdetails](../resources/cloudpccloudappdetail.md) can be used to map to a [cloudPcCloudApp](../resources/cloudpccloudapp.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us-l4.md)] ## Permissions diff --git a/api-reference/beta/api/cloudpccloudapp-unpublish.md b/api-reference/beta/api/cloudpccloudapp-unpublish.md index c74ffdf12ee..94e26834dd3 100644 --- a/api-reference/beta/api/cloudpccloudapp-unpublish.md +++ b/api-reference/beta/api/cloudpccloudapp-unpublish.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Unpublish a [cloudPcCloudApp](../resources/cloudpccloudapp.md) to remove it from the end-user portal, for example, the Windows App. When a cloud app is unpublished, any changes made to its app details are reverted and reset to the values of the discovered app it's linked to. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/cloudpccloudapp-update.md b/api-reference/beta/api/cloudpccloudapp-update.md index 481b9f4840b..0ccdfb905f1 100644 --- a/api-reference/beta/api/cloudpccloudapp-update.md +++ b/api-reference/beta/api/cloudpccloudapp-update.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Update the properties of a [cloudPcCloudApp](../resources/cloudpccloudapp.md) object, such as the display name or icon path. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationbaseline-get.md b/api-reference/beta/api/configurationbaseline-get.md index 0bbdca13d44..79cfdff45c0 100644 --- a/api-reference/beta/api/configurationbaseline-get.md +++ b/api-reference/beta/api/configurationbaseline-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Read the properties and relationships of a [configurationBaseline](../resources/configurationbaseline.md) object that is attached to a specific monitor. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationdrift-get.md b/api-reference/beta/api/configurationdrift-get.md index cbefa2e465b..15f05f1fc2b 100644 --- a/api-reference/beta/api/configurationdrift-get.md +++ b/api-reference/beta/api/configurationdrift-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get the properties and relationships of a [configurationDrift](../resources/configurationdrift.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationmanagement-list-configurationdrifts.md b/api-reference/beta/api/configurationmanagement-list-configurationdrifts.md index fdf9d4e9d7c..9858ee8be95 100644 --- a/api-reference/beta/api/configurationmanagement-list-configurationdrifts.md +++ b/api-reference/beta/api/configurationmanagement-list-configurationdrifts.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get a list of the [configurationDrift](../resources/configurationdrift.md) objects and their properties. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationmanagement-list-configurationmonitoringresults.md b/api-reference/beta/api/configurationmanagement-list-configurationmonitoringresults.md index 2a95025fad6..11f14f855ae 100644 --- a/api-reference/beta/api/configurationmanagement-list-configurationmonitoringresults.md +++ b/api-reference/beta/api/configurationmanagement-list-configurationmonitoringresults.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get a list of the [configurationMonitoringResult](../resources/configurationmonitoringresult.md) objects and their properties. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationmanagement-list-configurationmonitors.md b/api-reference/beta/api/configurationmanagement-list-configurationmonitors.md index 4c7460a7306..7220814791d 100644 --- a/api-reference/beta/api/configurationmanagement-list-configurationmonitors.md +++ b/api-reference/beta/api/configurationmanagement-list-configurationmonitors.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get a list of the [configurationMonitor](../resources/configurationmonitor.md) objects and their properties. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationmanagement-list-configurationsnapshotjobs.md b/api-reference/beta/api/configurationmanagement-list-configurationsnapshotjobs.md index ddbe1b6b439..c1302813ead 100644 --- a/api-reference/beta/api/configurationmanagement-list-configurationsnapshotjobs.md +++ b/api-reference/beta/api/configurationmanagement-list-configurationsnapshotjobs.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get a list of the [configurationSnapshotJob](../resources/configurationsnapshotjob.md) objects and their properties. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationmanagement-list-configurationsnapshots.md b/api-reference/beta/api/configurationmanagement-list-configurationsnapshots.md index 74fc38eb1ed..954959520b2 100644 --- a/api-reference/beta/api/configurationmanagement-list-configurationsnapshots.md +++ b/api-reference/beta/api/configurationmanagement-list-configurationsnapshots.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get a list of [configurationBaseline](../resources/configurationbaseline.md) objects that represent configuration snapshots and their properties. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationmanagement-post-configurationmonitors.md b/api-reference/beta/api/configurationmanagement-post-configurationmonitors.md index c2b3474cd81..828cb4a0f96 100644 --- a/api-reference/beta/api/configurationmanagement-post-configurationmonitors.md +++ b/api-reference/beta/api/configurationmanagement-post-configurationmonitors.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Create a new [configurationMonitor](../resources/configurationmonitor.md) object that runs periodically in the background at a scheduled frequency. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationmonitor-delete.md b/api-reference/beta/api/configurationmonitor-delete.md index a2cfd496198..951e7ab6deb 100644 --- a/api-reference/beta/api/configurationmonitor-delete.md +++ b/api-reference/beta/api/configurationmonitor-delete.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Delete a [configurationMonitor](../resources/configurationmonitor.md) object permanently. When deleted, the **configurationMonitor** data can't be restored. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationmonitor-get.md b/api-reference/beta/api/configurationmonitor-get.md index 11b5860fa5f..0758c9430f1 100644 --- a/api-reference/beta/api/configurationmonitor-get.md +++ b/api-reference/beta/api/configurationmonitor-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get the properties and relationships of a [configurationMonitor](../resources/configurationmonitor.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationmonitor-update.md b/api-reference/beta/api/configurationmonitor-update.md index b88df8802d1..9bbdb0239b5 100644 --- a/api-reference/beta/api/configurationmonitor-update.md +++ b/api-reference/beta/api/configurationmonitor-update.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Update the properties of a [configurationMonitor](../resources/configurationmonitor.md) object, including the monitor name, description, and baseline. You must provide the full monitor body when you call this API. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationmonitoringresult-get.md b/api-reference/beta/api/configurationmonitoringresult-get.md index 82dace834be..d2c6d67cbcb 100644 --- a/api-reference/beta/api/configurationmonitoringresult-get.md +++ b/api-reference/beta/api/configurationmonitoringresult-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Read the properties and relationships of a [configurationMonitoringResult](../resources/configurationmonitoringresult.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationsnapshotjob-delete.md b/api-reference/beta/api/configurationsnapshotjob-delete.md index e503ddc489a..c8a884aef83 100644 --- a/api-reference/beta/api/configurationsnapshotjob-delete.md +++ b/api-reference/beta/api/configurationsnapshotjob-delete.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Delete a [configurationSnapshotJob](../resources/configurationsnapshotjob.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/configurationsnapshotjob-get.md b/api-reference/beta/api/configurationsnapshotjob-get.md index f02ab7eabe8..6e61d30cc30 100644 --- a/api-reference/beta/api/configurationsnapshotjob-get.md +++ b/api-reference/beta/api/configurationsnapshotjob-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Read the properties and relationships of a [configurationSnapshotJob](../resources/configurationsnapshotjob.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrecord-changealertrecordsportalnotificationassent.md b/api-reference/beta/api/devicemanagement-alertrecord-changealertrecordsportalnotificationassent.md index f409f5fa3b9..f2e69242997 100644 --- a/api-reference/beta/api/devicemanagement-alertrecord-changealertrecordsportalnotificationassent.md +++ b/api-reference/beta/api/devicemanagement-alertrecord-changealertrecordsportalnotificationassent.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Set the **isPortalNotificationSent** property of all [portal notification](../resources/devicemanagement-portalnotification.md) resources associated with the specified [alertRecord](../resources/devicemanagement-alertrecord.md) to `true`, marking them as sent. A maximum of 100 [alertRecord](../resources/devicemanagement-alertrecord.md) IDs can be received at one time, and a maximum of 100 **portal notification** resources can be changed in the **isPortalNotificationSent** property status. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrecord-get.md b/api-reference/beta/api/devicemanagement-alertrecord-get.md index fe34345ff74..2555c9d3c78 100644 --- a/api-reference/beta/api/devicemanagement-alertrecord-get.md +++ b/api-reference/beta/api/devicemanagement-alertrecord-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Read the properties and relationships of an [alertRecord](../resources/devicemanagement-alertrecord.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrecord-getportalnotifications.md b/api-reference/beta/api/devicemanagement-alertrecord-getportalnotifications.md index 24948b84aec..992cf6f42f1 100644 --- a/api-reference/beta/api/devicemanagement-alertrecord-getportalnotifications.md +++ b/api-reference/beta/api/devicemanagement-alertrecord-getportalnotifications.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Get a list of all notifications that one or more users can access, from the Microsoft Endpoint Manager admin center. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrecord-list.md b/api-reference/beta/api/devicemanagement-alertrecord-list.md index 77b6f5901fe..5c84cb7574d 100644 --- a/api-reference/beta/api/devicemanagement-alertrecord-list.md +++ b/api-reference/beta/api/devicemanagement-alertrecord-list.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Get a list of the [alertRecord](../resources/devicemanagement-alertrecord.md) objects and their properties. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrecord-setportalnotificationassent.md b/api-reference/beta/api/devicemanagement-alertrecord-setportalnotificationassent.md index ec309a2dc57..6c06d68b079 100644 --- a/api-reference/beta/api/devicemanagement-alertrecord-setportalnotificationassent.md +++ b/api-reference/beta/api/devicemanagement-alertrecord-setportalnotificationassent.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Set the status of the notification associated with the specified [alertRecord](../resources/devicemanagement-alertrecord.md) on the Microsoft EndPoint Manager admin center as sent, by setting the **isPortalNotificationSent** property of the [portal notification](../resources/devicemanagement-portalnotification.md) to `true`. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrule-get.md b/api-reference/beta/api/devicemanagement-alertrule-get.md index e8c33fa6053..91d1bf54aae 100644 --- a/api-reference/beta/api/devicemanagement-alertrule-get.md +++ b/api-reference/beta/api/devicemanagement-alertrule-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Read the properties and relationships of an [alertRule](../resources/devicemanagement-alertrule.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrule-list.md b/api-reference/beta/api/devicemanagement-alertrule-list.md index 77c5095ec5c..324da7d8581 100644 --- a/api-reference/beta/api/devicemanagement-alertrule-list.md +++ b/api-reference/beta/api/devicemanagement-alertrule-list.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Get a list of the [alertRule](../resources/devicemanagement-alertrule.md) objects and their properties. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrule-post.md b/api-reference/beta/api/devicemanagement-alertrule-post.md index 8fbe0f7b1c9..5862025c51f 100644 --- a/api-reference/beta/api/devicemanagement-alertrule-post.md +++ b/api-reference/beta/api/devicemanagement-alertrule-post.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Create an [alertRule](../resources/devicemanagement-alertrule.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/devicemanagement-alertrule-update.md b/api-reference/beta/api/devicemanagement-alertrule-update.md index af3044159c2..af5e8381782 100644 --- a/api-reference/beta/api/devicemanagement-alertrule-update.md +++ b/api-reference/beta/api/devicemanagement-alertrule-update.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.deviceManagement Update the properties of an [alertRule](../resources/devicemanagement-alertrule.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/featurerolloutpolicy-delete-appliesto.md b/api-reference/beta/api/featurerolloutpolicy-delete-appliesto.md index 8097bc4f5c5..b65fc030ce0 100644 --- a/api-reference/beta/api/featurerolloutpolicy-delete-appliesto.md +++ b/api-reference/beta/api/featurerolloutpolicy-delete-appliesto.md @@ -18,7 +18,7 @@ Namespace: microsoft.graph Remove an appliesTo on a [featureRolloutPolicy](../resources/featurerolloutpolicy.md) object to remove the [directoryObject](../resources/directoryobject.md) from feature rollout. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/beta/api/featurerolloutpolicy-delete.md b/api-reference/beta/api/featurerolloutpolicy-delete.md index 275b6eadbfc..d0c269e5839 100644 --- a/api-reference/beta/api/featurerolloutpolicy-delete.md +++ b/api-reference/beta/api/featurerolloutpolicy-delete.md @@ -18,7 +18,7 @@ Namespace: microsoft.graph Delete a [featureRolloutPolicy](../resources/featurerolloutpolicy.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/beta/api/featurerolloutpolicy-get.md b/api-reference/beta/api/featurerolloutpolicy-get.md index c3234b39755..573f3c146a9 100644 --- a/api-reference/beta/api/featurerolloutpolicy-get.md +++ b/api-reference/beta/api/featurerolloutpolicy-get.md @@ -18,7 +18,7 @@ Namespace: microsoft.graph Retrieve the properties and relationships of a [featureRolloutPolicy](../resources/featurerolloutpolicy.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/beta/api/featurerolloutpolicy-post-appliesto.md b/api-reference/beta/api/featurerolloutpolicy-post-appliesto.md index 355c4f43831..ee6d4e927be 100644 --- a/api-reference/beta/api/featurerolloutpolicy-post-appliesto.md +++ b/api-reference/beta/api/featurerolloutpolicy-post-appliesto.md @@ -18,7 +18,7 @@ Namespace: microsoft.graph Add an appliesTo on a [featureRolloutPolicy](../resources/featurerolloutpolicy.md) object to specify the [directoryObject](../resources/directoryobject.md) to which the [featureRolloutPolicy](../resources/featurerolloutpolicy.md) should be applied. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/beta/api/featurerolloutpolicy-update.md b/api-reference/beta/api/featurerolloutpolicy-update.md index 0843e8d39a0..ba2a094a5e0 100644 --- a/api-reference/beta/api/featurerolloutpolicy-update.md +++ b/api-reference/beta/api/featurerolloutpolicy-update.md @@ -18,7 +18,7 @@ Namespace: microsoft.graph Update the properties of [featureRolloutPolicy](../resources/featurerolloutpolicy.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/beta/api/identitygovernance-subjectprocessingresult-summary.md b/api-reference/beta/api/identitygovernance-subjectprocessingresult-summary.md index 8dbfc89fcd7..7bb5efefde6 100644 --- a/api-reference/beta/api/identitygovernance-subjectprocessingresult-summary.md +++ b/api-reference/beta/api/identitygovernance-subjectprocessingresult-summary.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph.identityGovernance Provide a [subjectSummary](../resources/identitygovernance-subjectsummary.md) for [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) objects over a specified time period. Because the number of subject processing results returned by the list API can be overwhelming, this summary allows administrators to get a quick overview based on counts. +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/list-featurerolloutpolicies.md b/api-reference/beta/api/list-featurerolloutpolicies.md index d0f1b4c1561..6146198f5bf 100644 --- a/api-reference/beta/api/list-featurerolloutpolicies.md +++ b/api-reference/beta/api/list-featurerolloutpolicies.md @@ -18,7 +18,7 @@ Namespace: microsoft.graph Retrieve a list of [featureRolloutPolicy](../resources/featurerolloutpolicy.md) objects. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/beta/api/post-featurerolloutpolicies.md b/api-reference/beta/api/post-featurerolloutpolicies.md index c7415c0098a..602285e3f39 100644 --- a/api-reference/beta/api/post-featurerolloutpolicies.md +++ b/api-reference/beta/api/post-featurerolloutpolicies.md @@ -18,7 +18,7 @@ Namespace: microsoft.graph Create a new [featureRolloutPolicy](../resources/featurerolloutpolicy.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/beta/api/security-alert-createalert.md b/api-reference/beta/api/security-alert-createalert.md index 04d9f2c6066..e9b345c7488 100644 --- a/api-reference/beta/api/security-alert-createalert.md +++ b/api-reference/beta/api/security-alert-createalert.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph.security Create a Microsoft 365 Defender alert by invoking a bound action on the `alerts_v2` collection and returning the created [alert](../resources/security-alert.md) resource. The action accepts a [createAlertInput](../resources/security-createalertinput.md) complex type that combines alert metadata and creation-specific options in one request object. +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/security-casemanagement-attachment-download-content.md b/api-reference/beta/api/security-casemanagement-attachment-download-content.md index 5ef7c10f1cc..184fa42f7a3 100644 --- a/api-reference/beta/api/security-casemanagement-attachment-download-content.md +++ b/api-reference/beta/api/security-casemanagement-attachment-download-content.md @@ -18,6 +18,8 @@ Download the binary content of an [attachment](../resources/security-casemanagem After an upload completes, the service asynchronously scans the attachment for malware. Poll the attachment metadata by using [Get attachment](../api/security-casemanagement-attachment-get.md). If **scanResult** is `unscanned`, wait and try again later. Download the content only when **scanResult** is `noThreatsFound`. Don't download content when **scanResult** is `malicious`. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/security-casemanagement-attachment-upload-content.md b/api-reference/beta/api/security-casemanagement-attachment-upload-content.md index 0276a3122ae..f9cad641418 100644 --- a/api-reference/beta/api/security-casemanagement-attachment-upload-content.md +++ b/api-reference/beta/api/security-casemanagement-attachment-upload-content.md @@ -18,6 +18,8 @@ Upload binary content for an [attachment](../resources/security-casemanagement-a The maximum file size is 100 MB. Upload files in chunks of no more than 1 MB. For files larger than 1 MB, send one PUT request for each chunk until all byte ranges are uploaded. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/security-casemanagement-relation-delete.md b/api-reference/beta/api/security-casemanagement-relation-delete.md index 18716b40c79..799267e083e 100644 --- a/api-reference/beta/api/security-casemanagement-relation-delete.md +++ b/api-reference/beta/api/security-casemanagement-relation-delete.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph.security.caseManagement Delete a concrete [relation](../resources/security-casemanagement-relation.md) from a [case](../resources/security-casemanagement-case.md). +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/security-casemanagement-relation-get.md b/api-reference/beta/api/security-casemanagement-relation-get.md index f7f834d32d1..1b1641fa025 100644 --- a/api-reference/beta/api/security-casemanagement-relation-get.md +++ b/api-reference/beta/api/security-casemanagement-relation-get.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph.security.caseManagement Read a concrete [relation](../resources/security-casemanagement-relation.md) from a [case](../resources/security-casemanagement-case.md). The response is an [incidentRelation](../resources/security-casemanagement-incidentrelation.md), [recommendationRelation](../resources/security-casemanagement-recommendationrelation.md), or [workspaceIndicatorRelation](../resources/security-casemanagement-workspaceindicatorrelation.md), identified by `@odata.type`. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/security-casemanagement-task-delete.md b/api-reference/beta/api/security-casemanagement-task-delete.md index ae6d02f93e6..59e55101f9e 100644 --- a/api-reference/beta/api/security-casemanagement-task-delete.md +++ b/api-reference/beta/api/security-casemanagement-task-delete.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph.security.caseManagement Delete a [task](../resources/security-casemanagement-task.md) from a [case](../resources/security-casemanagement-case.md). +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/teamworksection-reorder.md b/api-reference/beta/api/teamworksection-reorder.md index 3aeed71c538..815bf9452fb 100644 --- a/api-reference/beta/api/teamworksection-reorder.md +++ b/api-reference/beta/api/teamworksection-reorder.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph Reorder the sections in a user's teamwork. The **sectionsOrder** collection must contain every section ID returned by [List sections](../api/userteamwork-list-sections.md), exactly once. If the collection contains the *QuickViews* system section, that section must be first. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/teamworksectionitem-reorder.md b/api-reference/beta/api/teamworksectionitem-reorder.md index bb766514136..dad2fe4a6f0 100644 --- a/api-reference/beta/api/teamworksectionitem-reorder.md +++ b/api-reference/beta/api/teamworksectionitem-reorder.md @@ -16,6 +16,8 @@ Namespace: microsoft.graph Reorder the items in a user-defined section in a user's teamwork. The section must have **sortType** set to `userDefinedCustomOrder`, and the **itemsOrder** collection must contain every item ID returned by [List items](../api/teamworksection-list-items.md), exactly once. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/beta/api/tenantdatasecurityandgovernance-processcontent.md b/api-reference/beta/api/tenantdatasecurityandgovernance-processcontent.md index 74b1450a7b4..bda2445b1a5 100644 --- a/api-reference/beta/api/tenantdatasecurityandgovernance-processcontent.md +++ b/api-reference/beta/api/tenantdatasecurityandgovernance-processcontent.md @@ -27,6 +27,8 @@ For A2T scenarios: The response contains any applicable policy actions together with the protection scope state, allowing callers to determine whether cached protection scopes should be refreshed. +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). @@ -165,4 +167,4 @@ Content-Type: application/json "processingErrors": [], "protectionScopeState": "notModified" } -``` \ No newline at end of file +``` diff --git a/api-reference/beta/api/virtualendpoint-list-cloudapps.md b/api-reference/beta/api/virtualendpoint-list-cloudapps.md index 83d1078d977..8ff13ccb5ea 100644 --- a/api-reference/beta/api/virtualendpoint-list-cloudapps.md +++ b/api-reference/beta/api/virtualendpoint-list-cloudapps.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph List all the [cloudPcCloudApp](../resources/cloudpccloudapp.md) objects filtered by a provision policy ID. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/virtualendpoint-post-cloudapps.md b/api-reference/beta/api/virtualendpoint-post-cloudapps.md index 65e73bdbdb1..8f514aa7e47 100644 --- a/api-reference/beta/api/virtualendpoint-post-cloudapps.md +++ b/api-reference/beta/api/virtualendpoint-post-cloudapps.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Create a new [cloudPcCloudApp](../resources/cloudpccloudapp.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/workhoursandlocationssetting-get.md b/api-reference/beta/api/workhoursandlocationssetting-get.md index f83877c45cb..d70cdad4be3 100644 --- a/api-reference/beta/api/workhoursandlocationssetting-get.md +++ b/api-reference/beta/api/workhoursandlocationssetting-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get the properties and relationships of your own [workHoursAndLocationsSetting](../resources/workhoursandlocationssetting.md). -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/workhoursandlocationssetting-list-recurrences.md b/api-reference/beta/api/workhoursandlocationssetting-list-recurrences.md index a6de291ef6f..82b6059273b 100644 --- a/api-reference/beta/api/workhoursandlocationssetting-list-recurrences.md +++ b/api-reference/beta/api/workhoursandlocationssetting-list-recurrences.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get the [recurrences](../resources/workplanrecurrence.md) from your own work plan via the **recurrences** navigation property. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/workhoursandlocationssetting-occurrencesview.md b/api-reference/beta/api/workhoursandlocationssetting-occurrencesview.md index 4e600d7e8ac..45900c40b57 100644 --- a/api-reference/beta/api/workhoursandlocationssetting-occurrencesview.md +++ b/api-reference/beta/api/workhoursandlocationssetting-occurrencesview.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get [work plan occurrences](../resources/workplanoccurrence.md) from your own work plan within a specified date range. This function requires the **startDateTime** and **endDateTime** parameters. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/workhoursandlocationssetting-post-occurrences.md b/api-reference/beta/api/workhoursandlocationssetting-post-occurrences.md index 82a054c4918..06f7e97344a 100644 --- a/api-reference/beta/api/workhoursandlocationssetting-post-occurrences.md +++ b/api-reference/beta/api/workhoursandlocationssetting-post-occurrences.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Create a new [workPlanOccurrence](../resources/workplanoccurrence.md) object in your own work plan. Only time-off occurrences can be created directly. The **workLocationType** must be set to `timeOff`. Other occurrences are autogenerated from recurrences. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/workhoursandlocationssetting-post-recurrences.md b/api-reference/beta/api/workhoursandlocationssetting-post-recurrences.md index 2e1d152d06d..7518e5fad82 100644 --- a/api-reference/beta/api/workhoursandlocationssetting-post-recurrences.md +++ b/api-reference/beta/api/workhoursandlocationssetting-post-recurrences.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Create a new [workPlanRecurrence](../resources/workplanrecurrence.md) object in your own work plan. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/workhoursandlocationssetting-update.md b/api-reference/beta/api/workhoursandlocationssetting-update.md index a760797ea8e..fff6a5d95e9 100644 --- a/api-reference/beta/api/workhoursandlocationssetting-update.md +++ b/api-reference/beta/api/workhoursandlocationssetting-update.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Update the properties of your own [workHoursAndLocationsSetting](../resources/workhoursandlocationssetting.md). -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/workplanoccurrence-delete.md b/api-reference/beta/api/workplanoccurrence-delete.md index d234b32a689..abee2b54f9d 100644 --- a/api-reference/beta/api/workplanoccurrence-delete.md +++ b/api-reference/beta/api/workplanoccurrence-delete.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Delete a [workPlanOccurrence](../resources/workplanoccurrence.md) object from your own work plan. Only time-off occurrences can be deleted. Occurrences generated from recurrences can't be deleted. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/workplanoccurrence-setcurrentlocation.md b/api-reference/beta/api/workplanoccurrence-setcurrentlocation.md index b453be12f7b..a97efd2c99a 100644 --- a/api-reference/beta/api/workplanoccurrence-setcurrentlocation.md +++ b/api-reference/beta/api/workplanoccurrence-setcurrentlocation.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Update your [work](../resources/workplanoccurrence.md) location for the current day or current active segment. This action allows you to quickly update your work location without modifying individual occurrences. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/workplanoccurrence-update.md b/api-reference/beta/api/workplanoccurrence-update.md index d1416d1230c..ed63912a56e 100644 --- a/api-reference/beta/api/workplanoccurrence-update.md +++ b/api-reference/beta/api/workplanoccurrence-update.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Update the properties of a [workPlanOccurrence](../resources/workplanoccurrence.md) object in your own work plan. Updates require the full occurrence object to be provided (PUT semantics). PATCH isn't supported. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/workplanrecurrence-delete.md b/api-reference/beta/api/workplanrecurrence-delete.md index 1d606a3b3cb..f95e947d4b1 100644 --- a/api-reference/beta/api/workplanrecurrence-delete.md +++ b/api-reference/beta/api/workplanrecurrence-delete.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Delete a [workPlanRecurrence](../resources/workplanrecurrence.md) object from your own work plan. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/workplanrecurrence-update.md b/api-reference/beta/api/workplanrecurrence-update.md index 3432247a790..9b2bc16386f 100644 --- a/api-reference/beta/api/workplanrecurrence-update.md +++ b/api-reference/beta/api/workplanrecurrence-update.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Update the properties of a [workPlanRecurrence](../resources/workplanrecurrence.md) object in your own work plan. Updates require the full recurrence object to be provided (PUT semantics). PATCH isn't supported. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/v1.0/api/accessreviewstage-acceptrecommendations.md b/api-reference/v1.0/api/accessreviewstage-acceptrecommendations.md index ba6717dbe4f..03cc668efe1 100644 --- a/api-reference/v1.0/api/accessreviewstage-acceptrecommendations.md +++ b/api-reference/v1.0/api/accessreviewstage-acceptrecommendations.md @@ -16,6 +16,8 @@ Accept the recommendations on all [accessReviewInstanceDecisionItem](../resource This action accepts recommendations for the decisions in a specific stage only, unlike [accessReviewInstance: acceptRecommendations](../api/accessreviewinstance-acceptrecommendations.md), which operates across the entire instance. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/accessreviewstage-batchrecorddecisions.md b/api-reference/v1.0/api/accessreviewstage-batchrecorddecisions.md index 5b6c08b1343..f1023b5bc14 100644 --- a/api-reference/v1.0/api/accessreviewstage-batchrecorddecisions.md +++ b/api-reference/v1.0/api/accessreviewstage-batchrecorddecisions.md @@ -16,6 +16,8 @@ Record decisions in bulk for all [accessReviewInstanceDecisionItem](../resources This action records decisions for a specific stage only, unlike [accessReviewInstance: batchRecordDecisions](../api/accessreviewinstance-batchrecorddecisions.md), which operates across the entire instance. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/channel-getallmessages.md b/api-reference/v1.0/api/channel-getallmessages.md index 912f12e7d93..6def5b93e02 100644 --- a/api-reference/v1.0/api/channel-getallmessages.md +++ b/api-reference/v1.0/api/channel-getallmessages.md @@ -17,7 +17,7 @@ Retrieve [messages](../resources/chatmessage.md) across all [channels](../resour To learn more about how to use the Microsoft Teams export APIs to export content, see [Export content with the Microsoft Teams export APIs](/microsoftteams/export-teams-content). -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/v1.0/api/chats-getallmessages.md b/api-reference/v1.0/api/chats-getallmessages.md index 54508cff6fa..386988e3b63 100644 --- a/api-reference/v1.0/api/chats-getallmessages.md +++ b/api-reference/v1.0/api/chats-getallmessages.md @@ -17,7 +17,7 @@ Get all [messages](../resources/chatmessage.md) from all [chats](../resources/ch To learn more about how to use the Microsoft Teams export APIs to export content, see [Export content with the Microsoft Teams export APIs](/microsoftteams/export-teams-content). -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md index eb1ee22663d..46bfcb18744 100644 --- a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities.md @@ -15,6 +15,8 @@ Namespace: microsoft.graph Get a list of Microsoft 365 cross-tenant capabilities configured for the [default cross-tenant access policy](../resources/crosstenantaccesspolicyconfigurationdefault.md). The returned collection is a heterogeneous collection of derived types of [m365CapabilityBase](../resources/m365capabilitybase.md), differentiated by their **@odata.type** property. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md index e21ef811021..0ddbd9fe54b 100644 --- a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities.md @@ -15,6 +15,8 @@ Namespace: microsoft.graph Create a new Microsoft 365 cross-tenant capability for the [default cross-tenant access policy](../resources/crosstenantaccesspolicyconfigurationdefault.md). The **@odata.type** property in the request body is required to specify which type of capability to create. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities.md index 86a8854e93e..a80be9be640 100644 --- a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities.md +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities.md @@ -15,6 +15,8 @@ Namespace: microsoft.graph Update an existing Microsoft 365 cross-tenant capability for the [default cross-tenant access policy](../resources/crosstenantaccesspolicyconfigurationdefault.md). +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities.md index 06538d14c38..d6d36bd216b 100644 --- a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities.md +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities.md @@ -15,6 +15,8 @@ Namespace: microsoft.graph Delete a Microsoft 365 cross-tenant capability from a partner organization in the [cross-tenant access policy](../resources/crosstenantaccesspolicy-overview.md). +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md index 1734761c61d..582faea8007 100644 --- a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities.md @@ -15,6 +15,8 @@ Namespace: microsoft.graph Get a list of Microsoft 365 cross-tenant capabilities configured for a partner organization in the [cross-tenant access policy](../resources/crosstenantaccesspolicy-overview.md). The returned collection is a heterogeneous collection of derived types of [m365CapabilityBase](../resources/m365capabilitybase.md), differentiated by their **@odata.type** property. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md index 938f203b67c..6a4fcd684f8 100644 --- a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities.md @@ -15,6 +15,8 @@ Namespace: microsoft.graph Create a new Microsoft 365 cross-tenant capability for a partner organization in the [cross-tenant access policy](../resources/crosstenantaccesspolicy-overview.md). The **@odata.type** property in the request body is required to specify which type of capability to create. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities.md b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities.md index bc4b4ccf9fb..c7fc78f9a9e 100644 --- a/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities.md +++ b/api-reference/v1.0/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities.md @@ -15,6 +15,8 @@ Namespace: microsoft.graph Update an existing Microsoft 365 cross-tenant capability for a partner organization in the [cross-tenant access policy](../resources/crosstenantaccesspolicy-overview.md). +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/entitlementmanagement-list-externaloriginresourceconnectors.md b/api-reference/v1.0/api/entitlementmanagement-list-externaloriginresourceconnectors.md index fae4412f958..62118f2fda3 100644 --- a/api-reference/v1.0/api/entitlementmanagement-list-externaloriginresourceconnectors.md +++ b/api-reference/v1.0/api/entitlementmanagement-list-externaloriginresourceconnectors.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Get a list of [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) objects and their properties. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/entitlementmanagement-post-externaloriginresourceconnectors.md b/api-reference/v1.0/api/entitlementmanagement-post-externaloriginresourceconnectors.md index ebe3e14e644..38fdee1c314 100644 --- a/api-reference/v1.0/api/entitlementmanagement-post-externaloriginresourceconnectors.md +++ b/api-reference/v1.0/api/entitlementmanagement-post-externaloriginresourceconnectors.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Creates a new [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/externaloriginresourceconnector-delete.md b/api-reference/v1.0/api/externaloriginresourceconnector-delete.md index f77344d59f7..5361d429833 100644 --- a/api-reference/v1.0/api/externaloriginresourceconnector-delete.md +++ b/api-reference/v1.0/api/externaloriginresourceconnector-delete.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Delete an [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/externaloriginresourceconnector-get.md b/api-reference/v1.0/api/externaloriginresourceconnector-get.md index 72d545089e6..b7f76e8de64 100644 --- a/api-reference/v1.0/api/externaloriginresourceconnector-get.md +++ b/api-reference/v1.0/api/externaloriginresourceconnector-get.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Read the properties and relationships of an [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/externaloriginresourceconnector-update.md b/api-reference/v1.0/api/externaloriginresourceconnector-update.md index 232220de39c..e27e6300a87 100644 --- a/api-reference/v1.0/api/externaloriginresourceconnector-update.md +++ b/api-reference/v1.0/api/externaloriginresourceconnector-update.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Update the properties of an [externalOriginResourceConnector](../resources/externaloriginresourceconnector.md) object. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/featurerolloutpolicies-list.md b/api-reference/v1.0/api/featurerolloutpolicies-list.md index 94b7abcbb78..c41276c91b4 100644 --- a/api-reference/v1.0/api/featurerolloutpolicies-list.md +++ b/api-reference/v1.0/api/featurerolloutpolicies-list.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph Retrieve a list of [featureRolloutPolicy](../resources/featurerolloutpolicy.md) objects. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/v1.0/api/featurerolloutpolicies-post.md b/api-reference/v1.0/api/featurerolloutpolicies-post.md index 29b49894107..8bbf09d33d1 100644 --- a/api-reference/v1.0/api/featurerolloutpolicies-post.md +++ b/api-reference/v1.0/api/featurerolloutpolicies-post.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph Create a new [featureRolloutPolicy](../resources/featurerolloutpolicy.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/v1.0/api/featurerolloutpolicy-delete-appliesto.md b/api-reference/v1.0/api/featurerolloutpolicy-delete-appliesto.md index 4153fd9da9a..6d0726f0fc4 100644 --- a/api-reference/v1.0/api/featurerolloutpolicy-delete-appliesto.md +++ b/api-reference/v1.0/api/featurerolloutpolicy-delete-appliesto.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph Remove an appliesTo on a [featureRolloutPolicy](../resources/featurerolloutpolicy.md) object to remove the [directoryObject](../resources/directoryobject.md) from feature rollout. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/v1.0/api/featurerolloutpolicy-delete.md b/api-reference/v1.0/api/featurerolloutpolicy-delete.md index 9d62dc7e9f1..d992902809b 100644 --- a/api-reference/v1.0/api/featurerolloutpolicy-delete.md +++ b/api-reference/v1.0/api/featurerolloutpolicy-delete.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph Delete a [featureRolloutPolicy](../resources/featurerolloutpolicy.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/v1.0/api/featurerolloutpolicy-get.md b/api-reference/v1.0/api/featurerolloutpolicy-get.md index b88326dd0cb..4375878d194 100644 --- a/api-reference/v1.0/api/featurerolloutpolicy-get.md +++ b/api-reference/v1.0/api/featurerolloutpolicy-get.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph Retrieve the properties and relationships of a [featureRolloutPolicy](../resources/featurerolloutpolicy.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/v1.0/api/featurerolloutpolicy-post-appliesto.md b/api-reference/v1.0/api/featurerolloutpolicy-post-appliesto.md index 43983396cc4..4e724ec58ca 100644 --- a/api-reference/v1.0/api/featurerolloutpolicy-post-appliesto.md +++ b/api-reference/v1.0/api/featurerolloutpolicy-post-appliesto.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph Add an appliesTo on a [featureRolloutPolicy](../resources/featurerolloutpolicy.md) object to specify the [directoryObject](../resources/directoryobject.md) to which the [featureRolloutPolicy](../resources/featurerolloutpolicy.md) should be applied. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/v1.0/api/featurerolloutpolicy-update.md b/api-reference/v1.0/api/featurerolloutpolicy-update.md index c6046dc603f..07a15aa949d 100644 --- a/api-reference/v1.0/api/featurerolloutpolicy-update.md +++ b/api-reference/v1.0/api/featurerolloutpolicy-update.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph Update the properties of [featureRolloutPolicy](../resources/featurerolloutpolicy.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-us.md)] +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] ## Permissions diff --git a/api-reference/v1.0/api/identitygovernance-run-list-subjectprocessingresults.md b/api-reference/v1.0/api/identitygovernance-run-list-subjectprocessingresults.md index dd6de15f802..7f4806b1b3c 100644 --- a/api-reference/v1.0/api/identitygovernance-run-list-subjectprocessingresults.md +++ b/api-reference/v1.0/api/identitygovernance-run-list-subjectprocessingresults.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph.identityGovernance Get a list of the [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) objects for a specific workflow [run](../resources/identitygovernance-run.md). Each result represents the processing outcome for a single subject. +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-get.md b/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-get.md index c331ee5be24..42d7b7e2504 100644 --- a/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-get.md +++ b/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-get.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph.identityGovernance Read the properties and relationships of a [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) object for a workflow run. +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-summary.md b/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-summary.md index 938e15d40b9..8d1e776b1cd 100644 --- a/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-summary.md +++ b/api-reference/v1.0/api/identitygovernance-subjectprocessingresult-summary.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph.identityGovernance Provide a [subjectSummary](../resources/identitygovernance-subjectsummary.md) for [subjectProcessingResult](../resources/identitygovernance-subjectprocessingresult.md) objects over a specified time period. Because the number of subject processing results returned by the list API can be overwhelming, this summary allows administrators to get a quick overview based on counts. +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/identitygovernance-workflow-activateandwait.md b/api-reference/v1.0/api/identitygovernance-workflow-activateandwait.md index 4179dbe3c59..270e398710b 100644 --- a/api-reference/v1.0/api/identitygovernance-workflow-activateandwait.md +++ b/api-reference/v1.0/api/identitygovernance-workflow-activateandwait.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph.identityGovernance Activate a [lifecycle workflow](../resources/identitygovernance-workflow.md) for a specified subject and synchronously wait for execution to complete. This action returns an [awaitedWorkflowProcessingResult](../resources/identitygovernance-awaitedworkflowprocessingresult.md) with the execution outcome. Use this action when you need immediate confirmation of workflow completion, for example when provisioning a non-user subject. +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/mailboxfolder-delete-items.md b/api-reference/v1.0/api/mailboxfolder-delete-items.md index 6662c4d31ba..047e0d739af 100644 --- a/api-reference/v1.0/api/mailboxfolder-delete-items.md +++ b/api-reference/v1.0/api/mailboxfolder-delete-items.md @@ -16,6 +16,8 @@ Delete a [mailboxItem](../resources/mailboxitem.md) from a [mailboxFolder](../re Use the **disposalType** query parameter to specify whether to soft-delete or hard-delete the item. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/note-delete.md b/api-reference/v1.0/api/note-delete.md index 779ce7cabad..72451903613 100644 --- a/api-reference/v1.0/api/note-delete.md +++ b/api-reference/v1.0/api/note-delete.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Delete a [note](../resources/note.md) object. Supports optimistic concurrency control via the `If-Match` header. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/note-delta.md b/api-reference/v1.0/api/note-delta.md index 8c4912d5339..b3812b4c58e 100644 --- a/api-reference/v1.0/api/note-delta.md +++ b/api-reference/v1.0/api/note-delta.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Get a set of [note](../resources/note.md) objects that were added, updated, or deleted in the user's *Notes* folder since the last delta query. A **delta** function call for notes is similar to a GET request, except that by appropriately applying [state tokens](/graph/delta-query-overview) in one or more of these calls, you can query for incremental changes in the notes. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/note-get.md b/api-reference/v1.0/api/note-get.md index f75eda97de6..6b24fd9a3f6 100644 --- a/api-reference/v1.0/api/note-get.md +++ b/api-reference/v1.0/api/note-get.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Read the properties and relationships of a [note](../resources/note.md) object. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/note-list-attachments.md b/api-reference/v1.0/api/note-list-attachments.md index e727e580147..ba1ab842076 100644 --- a/api-reference/v1.0/api/note-list-attachments.md +++ b/api-reference/v1.0/api/note-list-attachments.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Get the list of file attachments associated with a [note](../resources/note.md). Only inline image attachments (image/png, image/jpeg, image/gif, or image/bmp) are supported, with a maximum size of 3 MB per attachment. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/note-post-attachments.md b/api-reference/v1.0/api/note-post-attachments.md index ec960c1a161..99f10b09012 100644 --- a/api-reference/v1.0/api/note-post-attachments.md +++ b/api-reference/v1.0/api/note-post-attachments.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Create a [fileAttachment](../resources/fileattachment.md) object, which adds an inline image attachment to a [note](../resources/note.md). Only image file types (image/png, image/jpeg, image/gif, or image/bmp) are supported, with a maximum size of 3 MB per attachment. Use the **contentId** property to reference the attachment in the HTML body of a note by using ``. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/note-update.md b/api-reference/v1.0/api/note-update.md index b82aa685fcc..5d40fbe02cb 100644 --- a/api-reference/v1.0/api/note-update.md +++ b/api-reference/v1.0/api/note-update.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Update the properties of a [note](../resources/note.md) object. Supports optimistic concurrency control via the `If-Match` header with the **changeKey** value for the note. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/unifiedroot-list-definitions.md b/api-reference/v1.0/api/unifiedroot-list-definitions.md index a3ac969b214..8b456e70dcc 100644 --- a/api-reference/v1.0/api/unifiedroot-list-definitions.md +++ b/api-reference/v1.0/api/unifiedroot-list-definitions.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Retrieve the [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) objects for user-centric (catalog-scope) access reviews through the [unified](../resources/unifiedroot.md) route. A list of zero or more **accessReviewScheduleDefinition** objects is returned, including all of their nested properties, for each access review series created. This doesn't include the associated [accessReviewInstance](../resources/accessreviewinstance.md) objects. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/unifiedroot-post-definitions.md b/api-reference/v1.0/api/unifiedroot-post-definitions.md index b89d2d5345c..40c87d95a94 100644 --- a/api-reference/v1.0/api/unifiedroot-post-definitions.md +++ b/api-reference/v1.0/api/unifiedroot-post-definitions.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Create a new user-centric (catalog-scope) [accessReviewScheduleDefinition](../resources/accessreviewscheduledefinition.md) object through the [unified](../resources/unifiedroot.md) route. With a user-centric review, a reviewer evaluates a principal's access to every group and application contained in an [entitlement management catalog](../resources/accesspackagecatalog.md) in a single review. The catalog is identified in the **resourceScopes** collection of the [principalResourceMembershipsScope](../resources/principalresourcemembershipsscope.md). +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/user-list-notes.md b/api-reference/v1.0/api/user-list-notes.md index aae5685f8b7..e6bba2806fc 100644 --- a/api-reference/v1.0/api/user-list-notes.md +++ b/api-reference/v1.0/api/user-list-notes.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Get a list of the [note](../resources/note.md) objects in the user's *Notes* folder. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). diff --git a/api-reference/v1.0/api/user-post-notes.md b/api-reference/v1.0/api/user-post-notes.md index 453d2d1b6f5..b1f098e0c9f 100644 --- a/api-reference/v1.0/api/user-post-notes.md +++ b/api-reference/v1.0/api/user-post-notes.md @@ -14,6 +14,8 @@ Namespace: microsoft.graph Create a new [note](../resources/note.md) in the user's *Notes* folder. +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). From bdf218bbb79bb7b75349e17bc9e86546d3f5febc Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Fri, 4 Sep 2026 19:05:38 -0600 Subject: [PATCH 119/189] Update reference TOC (#29554) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/toc/security/toc.yml | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/api-reference/beta/toc/security/toc.yml b/api-reference/beta/toc/security/toc.yml index 6747bf057b0..abe98d5884a 100644 --- a/api-reference/beta/toc/security/toc.yml +++ b/api-reference/beta/toc/security/toc.yml @@ -652,6 +652,8 @@ items: items: - name: Tenant data security and governance href: ../../resources/tenantdatasecurityandgovernance.md + - name: Process content + href: ../../api/tenantdatasecurityandgovernance-processcontent.md - name: Process content async href: ../../api/tenantdatasecurityandgovernance-processcontentasync.md - name: User data security and governance @@ -702,6 +704,8 @@ items: href: ../../resources/dlpactioninfo.md - name: Embedding input href: ../../resources/embeddinginput.md + - name: Evaluation scope + href: ../../resources/evaluationscope.md - name: Group scope href: ../../resources/groupscope.md - name: Integrated application metadata @@ -722,6 +726,8 @@ items: href: ../../resources/policylocationapplication.md - name: Policy location domain href: ../../resources/policylocationdomain.md + - name: Policy location tool + href: ../../resources/policylocationtool.md - name: Policy location URL href: ../../resources/policylocationurl.md - name: Policy scope base From 4386d2a09c7d3f32c4f1442d7b7d69f63747e3a3 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Fri, 4 Sep 2026 19:06:26 -0600 Subject: [PATCH 120/189] Update generated permissions tables with build 238944 (#29553) Co-authored-by: Microsoft Graph DevX Tooling --- .../api/tenantdatasecurityandgovernance-processcontent.md | 6 +----- .../beta/includes/permissions/approval-get-permissions.md | 2 +- ...tdatasecurityandgovernance-processcontent-permissions.md | 3 +-- .../v1.0/includes/permissions/approval-get-permissions.md | 2 +- .../permissions/approval-list-stages-permissions.md | 2 +- .../includes/permissions/approvalstage-get-permissions.md | 2 +- 6 files changed, 6 insertions(+), 11 deletions(-) diff --git a/api-reference/beta/api/tenantdatasecurityandgovernance-processcontent.md b/api-reference/beta/api/tenantdatasecurityandgovernance-processcontent.md index bda2445b1a5..a2c3fbcc066 100644 --- a/api-reference/beta/api/tenantdatasecurityandgovernance-processcontent.md +++ b/api-reference/beta/api/tenantdatasecurityandgovernance-processcontent.md @@ -33,11 +33,7 @@ The response contains any applicable policy actions together with the protection Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/tenantdatasecurityandgovernance-processcontent-permissions.md)] ## HTTP request diff --git a/api-reference/beta/includes/permissions/approval-get-permissions.md b/api-reference/beta/includes/permissions/approval-get-permissions.md index f0e3cbfe177..e90467ea9ff 100644 --- a/api-reference/beta/includes/permissions/approval-get-permissions.md +++ b/api-reference/beta/includes/permissions/approval-get-permissions.md @@ -8,5 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|EntitlementManagement.Read.All|EntitlementManagement.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Not supported.|Not supported.| +|Application|EntitlementManagement.Read.All|EntitlementManagement.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/tenantdatasecurityandgovernance-processcontent-permissions.md b/api-reference/beta/includes/permissions/tenantdatasecurityandgovernance-processcontent-permissions.md index 9acfbe3d85e..8e0dce8b0da 100644 --- a/api-reference/beta/includes/permissions/tenantdatasecurityandgovernance-processcontent-permissions.md +++ b/api-reference/beta/includes/permissions/tenantdatasecurityandgovernance-processcontent-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -10,4 +10,3 @@ ms.localizationpriority: medium |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Content.Process.All|Not available.| - diff --git a/api-reference/v1.0/includes/permissions/approval-get-permissions.md b/api-reference/v1.0/includes/permissions/approval-get-permissions.md index f0e3cbfe177..e90467ea9ff 100644 --- a/api-reference/v1.0/includes/permissions/approval-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/approval-get-permissions.md @@ -8,5 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|EntitlementManagement.Read.All|EntitlementManagement.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Not supported.|Not supported.| +|Application|EntitlementManagement.Read.All|EntitlementManagement.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/approval-list-stages-permissions.md b/api-reference/v1.0/includes/permissions/approval-list-stages-permissions.md index f0e3cbfe177..e90467ea9ff 100644 --- a/api-reference/v1.0/includes/permissions/approval-list-stages-permissions.md +++ b/api-reference/v1.0/includes/permissions/approval-list-stages-permissions.md @@ -8,5 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|EntitlementManagement.Read.All|EntitlementManagement.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Not supported.|Not supported.| +|Application|EntitlementManagement.Read.All|EntitlementManagement.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/approvalstage-get-permissions.md b/api-reference/v1.0/includes/permissions/approvalstage-get-permissions.md index f0e3cbfe177..e90467ea9ff 100644 --- a/api-reference/v1.0/includes/permissions/approvalstage-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/approvalstage-get-permissions.md @@ -8,5 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|EntitlementManagement.Read.All|EntitlementManagement.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Not supported.|Not supported.| +|Application|EntitlementManagement.Read.All|EntitlementManagement.ReadWrite.All| From ade5591046c2f51f144ecb53c5885c6aa1671207 Mon Sep 17 00:00:00 2001 From: bkeerthivasa <86682379+bkeerthivasa@users.noreply.github.com> Date: Fri, 4 Sep 2026 18:29:56 -0700 Subject: [PATCH 121/189] Document private channel retained message support (#29543) * Document private channel retained message support Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd * Update notes on private channel message migration Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update retention policies and migration notes Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address private channel retention review feedback Consolidate migration guidance, preserve the Teams PowerShell documentation view, clarify the migration cutoff, and announce the update in What's New. * Update getAllRetainedMessages documentation Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --------- Co-authored-by: bkeerthivasa Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: 64e18fba-2e37-438a-96a8-378735ce9cbd --- api-reference/beta/api/channel-getallretainedmessages.md | 4 +++- api-reference/v1.0/api/channel-getallretainedmessages.md | 4 +++- concepts/whats-new-overview.md | 8 ++++++++ 3 files changed, 14 insertions(+), 2 deletions(-) diff --git a/api-reference/beta/api/channel-getallretainedmessages.md b/api-reference/beta/api/channel-getallretainedmessages.md index ab1521cd0f2..eb4c974217d 100644 --- a/api-reference/beta/api/channel-getallretainedmessages.md +++ b/api-reference/beta/api/channel-getallretainedmessages.md @@ -23,7 +23,9 @@ To learn more about how to use the Microsoft Teams export APIs to export content > This API requires [Teams retention policies](/purview/create-retention-policies?tabs=teams-retention) to be configured. For more information, see [Learn about retention for Microsoft Teams](/purview/retention-policies-teams). > [!NOTE] -> This endpoint doesn't support retrieving retained messages from Teams private channels. +> Teams migrated private-channel message storage from individual user mailboxes to group mailboxes, where standard channel messages are stored. For private channels, this API supports retained message history for messages edited or deleted after the tenant's storage migration completed, provided an applicable retention policy captured the versions. Edits or deletions that occurred before migration aren't returned because retained-history support wasn't available through this API during the legacy user-mailbox storage period. +> +> A tenant administrator can run [Get-TenantPrivateChannelMigrationStatus](/powershell/module/microsoftteams/get-tenantprivatechannelmigrationstatus?view=teams-ps&preserve-view=true) to verify that `MigrationStatus` is `Completed` and identify the tenant's `MigrationCompletionTimeStamp`. If `MigrationStatus` isn't `Completed`, `MigrationCompletionTimeStamp` isn't available and can't be used as a tenant-wide cutoff. For more information about the storage change, see [Migration of private channel messages in 2025](/purview/retention-policies-teams#migration-of-private-channel-messages-in-2025). [!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] diff --git a/api-reference/v1.0/api/channel-getallretainedmessages.md b/api-reference/v1.0/api/channel-getallretainedmessages.md index f348acf9d73..d9afbec21ed 100644 --- a/api-reference/v1.0/api/channel-getallretainedmessages.md +++ b/api-reference/v1.0/api/channel-getallretainedmessages.md @@ -21,7 +21,9 @@ To learn more about how to use the Microsoft Teams export APIs to export content > This API requires [Teams retention policies](/purview/create-retention-policies?tabs=teams-retention) to be configured. For more information, see [Learn about retention for Microsoft Teams](/purview/retention-policies-teams). > [!NOTE] -> This endpoint doesn't support retrieving retained messages from Teams private channels. +> Teams migrated private-channel message storage from individual user mailboxes to group mailboxes, where standard channel messages are stored. For private channels, this API supports retained message history for messages edited or deleted after the tenant's storage migration completed, provided an applicable retention policy captured the versions. Edits or deletions that occurred before migration aren't returned because retained-history support wasn't available through this API during the legacy user-mailbox storage period. +> +> A tenant administrator can run [Get-TenantPrivateChannelMigrationStatus](/powershell/module/microsoftteams/get-tenantprivatechannelmigrationstatus?view=teams-ps&preserve-view=true) to verify that `MigrationStatus` is `Completed` and identify the tenant's `MigrationCompletionTimeStamp`. If `MigrationStatus` isn't `Completed`, `MigrationCompletionTimeStamp` isn't available and can't be used as a tenant-wide cutoff. For more information about the storage change, see [Migration of private channel messages in 2025](/purview/retention-policies-teams#migration-of-private-channel-messages-in-2025). [!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 327c3363887..a514521b686 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -28,6 +28,10 @@ Added the **onPremisesExtensionAttributes** property to the [group](/graph/api/r Clarified that the [List resources](/graph/api/accesspackagecatalog-list-resources) method returns SharePoint Online resources only when it's called with delegated permissions. To retrieve SharePoint site information with application permissions, use the [sites: getAllSites](/graph/api/site-getallsites) method. +### Teamwork and communications | Messaging + +Updated the [getAllRetainedMessages](/graph/api/channel-getallretainedmessages) method to support exporting retained versions of private-channel messages that were edited or deleted after the tenant completed private-channel storage migration. + ## September 2026: New in preview only ### Agents @@ -47,6 +51,10 @@ Added the [getStatisticsByPolicy](/graph/api/backupreport-getstatisticsbypolicy? Clarified that the [Get accessPackageResourceEnvironment](/graph/api/accesspackageresourceenvironment-get?view=graph-rest-beta&preserve-view=true) method returns SharePoint Online resource environments only when it's called with delegated permissions. A SharePoint Online resource environment corresponds to a SharePoint root site, so to retrieve root site information with application permissions, use the [List sites](/graph/api/site-list?view=graph-rest-beta&preserve-view=true) method with the `$filter=siteCollection/root ne null` query option. +### Teamwork and communications | Messaging + +Updated the [getAllRetainedMessages](/graph/api/channel-getallretainedmessages?view=graph-rest-beta&preserve-view=true) method to document support for retained private-channel message versions captured after the tenant's private-channel storage migration completed. + ## August 2026: New and generally available ### Applications From ca4745309c664511ff7a3f8c06e6d615611228bc Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Tue, 8 Sep 2026 17:24:34 -0600 Subject: [PATCH 122/189] Update generated permissions tables with build 239535 (#29566) Co-authored-by: Microsoft Graph DevX Tooling --- .../api/migrationsroot-list-crosstenantmigrationjobs.md | 6 +----- .../api/migrationsroot-post-crosstenantmigrationjobs.md | 6 +----- ...tionsroot-list-crosstenantmigrationjobs-permissions.md | 8 ++++---- ...tionsroot-post-crosstenantmigrationjobs-permissions.md | 8 ++++---- 4 files changed, 10 insertions(+), 18 deletions(-) diff --git a/api-reference/beta/api/migrationsroot-list-crosstenantmigrationjobs.md b/api-reference/beta/api/migrationsroot-list-crosstenantmigrationjobs.md index 354ee82c4ee..58d6ff3f8c1 100644 --- a/api-reference/beta/api/migrationsroot-list-crosstenantmigrationjobs.md +++ b/api-reference/beta/api/migrationsroot-list-crosstenantmigrationjobs.md @@ -22,11 +22,7 @@ Get a list of the [crossTenantMigrationJob](../resources/crosstenantmigrationjob Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/migrationsroot-list-crosstenantmigrationjobs-permissions.md)] [!INCLUDE [access-requirements](../includes/rbac-for-apis/rbac-crosstenantmigration-apis.md)] diff --git a/api-reference/beta/api/migrationsroot-post-crosstenantmigrationjobs.md b/api-reference/beta/api/migrationsroot-post-crosstenantmigrationjobs.md index 544a6f83b8b..a05949c62e3 100644 --- a/api-reference/beta/api/migrationsroot-post-crosstenantmigrationjobs.md +++ b/api-reference/beta/api/migrationsroot-post-crosstenantmigrationjobs.md @@ -23,11 +23,7 @@ Create a new [crossTenantMigrationJob](../resources/crosstenantmigrationjob.md). Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/migrationsroot-post-crosstenantmigrationjobs-permissions.md)] [!INCLUDE [access-requirements](../includes/rbac-for-apis/rbac-crosstenantmigration-apis.md)] diff --git a/api-reference/beta/includes/permissions/migrationsroot-list-crosstenantmigrationjobs-permissions.md b/api-reference/beta/includes/permissions/migrationsroot-list-crosstenantmigrationjobs-permissions.md index 3d624b2ee2d..21ef52bac38 100644 --- a/api-reference/beta/includes/permissions/migrationsroot-list-crosstenantmigrationjobs-permissions.md +++ b/api-reference/beta/includes/permissions/migrationsroot-list-crosstenantmigrationjobs-permissions.md @@ -1,12 +1,12 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- -|Permission type|Least privileged permission|Higher privileged permissions| +|Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Not supported.|Not supported.| +|Delegated (work or school account)|CrossTenantContentMigration.Read.All|CrossTenantContentMigration.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Not supported.|Not supported.| +|Application|CrossTenantContentMigration.Read.All|CrossTenantContentMigration.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/migrationsroot-post-crosstenantmigrationjobs-permissions.md b/api-reference/beta/includes/permissions/migrationsroot-post-crosstenantmigrationjobs-permissions.md index 3d624b2ee2d..ebde299b0e7 100644 --- a/api-reference/beta/includes/permissions/migrationsroot-post-crosstenantmigrationjobs-permissions.md +++ b/api-reference/beta/includes/permissions/migrationsroot-post-crosstenantmigrationjobs-permissions.md @@ -1,12 +1,12 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- -|Permission type|Least privileged permission|Higher privileged permissions| +|Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Not supported.|Not supported.| +|Delegated (work or school account)|CrossTenantContentMigration.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Not supported.|Not supported.| +|Application|CrossTenantContentMigration.ReadWrite.All|Not available.| From 2382c509c7ace88c11600501d4e7d3f39d460a5f Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Tue, 8 Sep 2026 17:25:00 -0600 Subject: [PATCH 123/189] 2026-09-07: Automated permissions reference update (#29563) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling --- concepts/permissions-reference.md | 46 ++++++++++++++++++++++++++++++- 1 file changed, 45 insertions(+), 1 deletion(-) diff --git a/concepts/permissions-reference.md b/concepts/permissions-reference.md index a6c4d437c6d..6e1776977a4 100644 --- a/concepts/permissions-reference.md +++ b/concepts/permissions-reference.md @@ -7,7 +7,7 @@ ms.localizationpriority: high ms.topic: reference ms.subservice: entra-applications ms.custom: graphiamtop20, scenarios:getting-started -ms.date: 08/31/2026 +ms.date: 09/07/2026 #Customer intent: As a developer, I want to learn more about the permissions available in Microsoft Graph, so that I understand the impact of granting specific permissions to my app. --- @@ -4010,6 +4010,50 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000 --- +### IdentityDiagnostic.Read + +| Category | Application | Delegated | +|--|--|--| +| Identifier | - | 3839e465-e636-4c8e-b959-340182fb0567 | +| DisplayText | - | Read your identity diagnostics | +| Description | - | Allows the app to read own identity diagnostics information, including symptoms, runs, statuses, and results for the signed-in user | +| AdminConsentRequired | - | No | + +--- + +### IdentityDiagnostic.Read.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | bb1e8ab4-fe40-4b26-82ec-65dfaf4d367b | 9181fb3f-4b8e-45ef-98ae-41774b813b80 | +| DisplayText | Read all identity diagnostics | Read all identity diagnostics | +| Description | Allows the app to read all identity diagnostics information, including symptoms, runs, statuses, and results for all users in the organization, without a signed-in user. | Allows the app to read all identity diagnostics information, including symptoms, runs, statuses, and results for all users in the organization, on behalf of the signed-in user. | +| AdminConsentRequired | Yes | Yes | + +--- + +### IdentityDiagnostic.StartDiagnosis + +| Category | Application | Delegated | +|--|--|--| +| Identifier | - | 1ad58246-a11b-4ea3-9b75-8b6c315cbe21 | +| DisplayText | - | Start identity diagnostics | +| Description | - | Allows the app to start identity diagnostic processes for the signed-in user. | +| AdminConsentRequired | - | No | + +--- + +### IdentityDiagnostic.StartDiagnosis.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | 2607bb8b-0a9b-4f53-9d2f-6f81b99ac145 | 51470ff5-62b6-4aef-9a3a-d8c8a1e66d09 | +| DisplayText | Start identity diagnostics for all users | Start identity diagnostics for all users | +| Description | Allows the app to start identity diagnostic processes for all users in the organization, without a signed-in user. | Allows the app to start identity diagnostic processes for all users in the organization, on behalf of the signed-in user. | +| AdminConsentRequired | Yes | Yes | + +--- + ### IdentityNotifications.Read.All | Category | Application | Delegated | From 36d31dffab8dc5249d5c88649c1de1433b667224 Mon Sep 17 00:00:00 2001 From: Aishwarya Ashok Patil <56798444+PatilAishwarya95@users.noreply.github.com> Date: Tue, 8 Sep 2026 16:27:36 -0700 Subject: [PATCH 124/189] New Activity support for ProtectionScopes Apis (#29391) * New Activity support for ProtectionScopes Apis * Address content filtering docs feedback Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Addressed comments * Addressed review comments * Addressed blocking comments * fixes * Apply suggestion from @Danipocket * fixes * fixes * Apply suggestion from @Danipocket --------- Co-authored-by: Aishwarya Ashok Patil Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../tenantprotectionscopecontainer-compute.md | 2 +- .../userprotectionscopecontainer-compute.md | 2 +- api-reference/beta/resources/enums-security.md | 6 +++++- .../beta/resources/policyscopebase.md | 6 +++--- .../beta/resources/policytenantscope.md | 2 +- .../beta/resources/policyuserscope.md | 2 +- .../Microsoft.DataClassificationService.json | 18 ++++++++++++++++++ concepts/whats-new-overview.md | 4 ++++ 8 files changed, 34 insertions(+), 8 deletions(-) diff --git a/api-reference/beta/api/tenantprotectionscopecontainer-compute.md b/api-reference/beta/api/tenantprotectionscopecontainer-compute.md index 55356a81e61..a5d4eb58cbc 100644 --- a/api-reference/beta/api/tenantprotectionscopecontainer-compute.md +++ b/api-reference/beta/api/tenantprotectionscopecontainer-compute.md @@ -47,7 +47,7 @@ In the request body, provide JSON object with the following parameters. | Parameter | Type | Description | | :-------------------- | :------------------------------------------------------------------------------------------------------------------- | :------------------------------------------------------------------------------------------------------------------------------------------------------------------ | -| activities | microsoft.graph.security.userActivityTypes | Optional. Flags specifying the user activities the calling application supports or is interested. Possible values are `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. This object is a multi-valued enumeration.| +| activities | microsoft.graph.security.userActivityTypes | Optional. Specifies the user activities the calling application supports or is interested in. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `copyToClipboard`, `pasteFromClipboard`, `print`, `accessDebugTools`, `contentFiltering`. The `contentFiltering` value represents evaluating application content against data loss prevention policies.| | deviceMetadata | [deviceMetadata](../resources/devicemetadata.md) | Optional. Information about the device context (type, OS) used for contextual policy evaluation. | |evaluationScope|[evaluationScope](../resources/evaluationscope.md)|Optional. Specifies the evaluation context for the request. For Agent-to-Tool (A2T) scenarios, set **type** to `agent`. If omitted, the request is evaluated using the default tenant context.| | integratedAppMetadata | [integratedApplicationMetadata](../resources/integratedapplicationmetadata.md) | Optional. Information about the calling application (name, version) integrating with Microsoft Purview. | diff --git a/api-reference/beta/api/userprotectionscopecontainer-compute.md b/api-reference/beta/api/userprotectionscopecontainer-compute.md index 7aceed4272a..d8658e91530 100644 --- a/api-reference/beta/api/userprotectionscopecontainer-compute.md +++ b/api-reference/beta/api/userprotectionscopecontainer-compute.md @@ -60,7 +60,7 @@ In the request body, provide a JSON object with the following parameters. | Parameter | Type | Description | | :-------------------- | :------------------------------------------------------------------------------------------------------------------- | :------------------------------------------------------------------------------------------------------------------------------------------------------------------ | -| activities | microsoft.graph.security.userActivityTypes | Optional. Flags specifying the user activities the calling application supports or is interested. Possible values are `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. This object is a multi-valued enumeration.| +| activities | microsoft.graph.security.userActivityTypes | Optional. Specifies the user activities the calling application supports or is interested in. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `copyToClipboard`, `pasteFromClipboard`, `print`, `accessDebugTools`, `contentFiltering`. The `contentFiltering` value represents evaluating application content against data loss prevention policies.| | deviceMetadata | [deviceMetadata](../resources/devicemetadata.md) | Optional. Information about the user's device (type, OS) used for contextual policy evaluation. | | integratedAppMetadata | [integratedApplicationMetadata](../resources/integratedapplicationmetadata.md) | Optional. Information about the calling application (name, version) integrating with Microsoft Purview. | | locations | [policyLocation](../resources/policylocation.md) collection | Optional. List of specific locations the application is interested in. If provided, results are trimmed to policies covering these locations. Use [policy location application](../resources/policylocationapplication.md) for application locations, [policy location domain](../resources/policylocationdomain.md) for domain locations, or [policy location URL](../resources/policylocationurl.md) for URL locations. You must specify the `@odata.type` property to declare the type of policyLocation. For example, `"@odata.type": "microsoft.graph.policyLocationApplication"`.| diff --git a/api-reference/beta/resources/enums-security.md b/api-reference/beta/resources/enums-security.md index dde4251964b..9b54bb8f94c 100644 --- a/api-reference/beta/resources/enums-security.md +++ b/api-reference/beta/resources/enums-security.md @@ -805,8 +805,12 @@ Namespace: microsoft.graph.security |uploadFile| |downloadText| |downloadFile| -|copyToClipboard| |unknownFutureValue| +|copyToClipboard| +|pasteFromClipboard| +|print| +|accessDebugTools| +|contentFiltering| ### userActivityType values diff --git a/api-reference/beta/resources/policyscopebase.md b/api-reference/beta/resources/policyscopebase.md index 02802cf0102..9398a8360a9 100644 --- a/api-reference/beta/resources/policyscopebase.md +++ b/api-reference/beta/resources/policyscopebase.md @@ -22,9 +22,9 @@ Used as a base type for more specific policy scopes like [policyTenantScope](../ |Property|Type|Description| |:---|:---|:---| -|activities|microsoft.graph.security.userActivityTypes|Flags specifying the user activities the calling application supports or is interested. Possible values are `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Required. This object is a multi-valued enumeration.| -|executionMode|microsoft.graph.security.executionMode|Specifies how the policy should be executed. Possible values are `evaluateInline`, `evaluateOffline`, `unknownFutureValue`. Required.| -|locationExclusions|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|The locations that are excluded from this policy scope. When specified, the effective scope is the set of locations in **locations** minus the locations in **locationExclusions**. This property can be used to exclude specific applications, tools, domains, or other supported location types from an otherwise broader policy scope. Required.| +|activities|microsoft.graph.security.userActivityTypes|Specifies the user activities the calling application supports or is interested in. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `copyToClipboard`, `pasteFromClipboard`, `print`, `accessDebugTools`, `contentFiltering`. The `contentFiltering` value represents evaluating application content against data loss prevention policies. Required.| +|executionMode|microsoft.graph.security.executionMode |Specifies how the policy should be executed. Possible values are `evaluateInline`, `evaluateOffline`, `unknownFutureValue`. Required.| +|locationExclusions|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations excluded from the policy scope. When specified, the effective scope is the set of locations in **locations** minus the locations in **locationExclusions**. Required.| |locations|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|The locations (like domains or URLs) to be protected. Required.| |policyActions|Collection([microsoft.graph.dlpActionInfo](../resources/dlpactioninfo.md))|The enforcement actions to take if the policy conditions are met within this scope. Required.| diff --git a/api-reference/beta/resources/policytenantscope.md b/api-reference/beta/resources/policytenantscope.md index 16bd4eefb71..db3a4fdb367 100644 --- a/api-reference/beta/resources/policytenantscope.md +++ b/api-reference/beta/resources/policytenantscope.md @@ -24,7 +24,7 @@ Inherits from [policyScopeBase](../resources/policyscopebase.md). |Property|Type|Description| |:---|:---|:---| -|activities|microsoft.graph.security.userActivityTypes|Flags specifying the user activities the calling application supports or is interested. Possible values are `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Required. This object is a multi-valued enumeration.| +|activities|microsoft.graph.security.userActivityTypes|Specifies the user activities the calling application supports or is interested in. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `copyToClipboard`, `pasteFromClipboard`, `print`, `accessDebugTools`, `contentFiltering`. The `contentFiltering` value represents evaluating application content against data loss prevention policies. Required.| |executionMode|microsoft.graph.security.executionMode|Policy execution mode at the tenant level. Possible values are `evaluateInline` and `evaluateOffline`. Inherited from `policyScopeBase`. Required.| |locationExclusions|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations excluded from the tenant-level policy scope. When specified, the effective scope is the set of locations in **locations** minus the locations in **locationExclusions**. Inherited from `policyScopeBase`. Required.| |locations|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations protected at the tenant level. Inherited from `policyScopeBase`. Required.| diff --git a/api-reference/beta/resources/policyuserscope.md b/api-reference/beta/resources/policyuserscope.md index 7878113b83d..b1eba485c46 100644 --- a/api-reference/beta/resources/policyuserscope.md +++ b/api-reference/beta/resources/policyuserscope.md @@ -24,7 +24,7 @@ Inherits from [policyScopeBase](../resources/policyscopebase.md). |Property|Type|Description| |:---|:---|:---| -|activities|microsoft.graph.security.userActivityTypes|Flags specifying the user activities the calling application supports or is interested. Possible values are `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Required. This object is a multi-valued enumeration.| +|activities|microsoft.graph.security.userActivityTypes|Specifies the user activities the calling application supports or is interested in. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `none`, `uploadText`, `uploadFile`, `downloadText`, `downloadFile`, `unknownFutureValue`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `copyToClipboard`, `pasteFromClipboard`, `print`, `accessDebugTools`, `contentFiltering`. The `contentFiltering` value represents evaluating application content against data loss prevention policies. Required.| |executionMode|microsoft.graph.security.executionMode|Policy execution mode for this user. Possible values are `evaluateInline` and `evaluateOffline`. Inherited from `policyScopeBase`. Required.| |locationExclusions|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations excluded from the user-level policy scope. When specified, the effective scope is the set of locations in **locations** minus the locations in **locationExclusions**. Inherited from `policyScopeBase`. Required.| |locations|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations protected for this user. Inherited from `policyScopeBase`. Required.| diff --git a/changelog/Microsoft.DataClassificationService.json b/changelog/Microsoft.DataClassificationService.json index a9e6eb8adc4..75a2ea987e0 100644 --- a/changelog/Microsoft.DataClassificationService.json +++ b/changelog/Microsoft.DataClassificationService.json @@ -1,5 +1,23 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "f0da4038-76fa-42a9-a297-c857c83fd695", + "ApiChange": "Member", + "ChangedApiName": "contentFiltering", + "ChangeType": "Addition", + "Description": "Added the `contentFiltering` member to the [userActivityTypes](https://learn.microsoft.com/graph/api/resources/enums-security?view=graph-rest-beta#useractivitytypes-values) enumeration.", + "Target": "userActivityTypes" + } + ], + "Id": "f0da4038-76fa-42a9-a297-c857c83fd695", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-08T20:51:00.2923818Z", + "WorkloadArea": "Security", + "SubArea": "Data security and compliance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index a514521b686..afd5166680d 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -51,6 +51,10 @@ Added the [getStatisticsByPolicy](/graph/api/backupreport-getstatisticsbypolicy? Clarified that the [Get accessPackageResourceEnvironment](/graph/api/accesspackageresourceenvironment-get?view=graph-rest-beta&preserve-view=true) method returns SharePoint Online resource environments only when it's called with delegated permissions. A SharePoint Online resource environment corresponds to a SharePoint root site, so to retrieve root site information with application permissions, use the [List sites](/graph/api/site-list?view=graph-rest-beta&preserve-view=true) method with the `$filter=siteCollection/root ne null` query option. +### Security | Data security and compliance + +Added the `contentFiltering` member to the [userActivityTypes](/graph/api/resources/enums-security?view=graph-rest-beta&preserve-view=true#useractivitytypes-values) enumeration used by the [compute protection scopes for a user](/graph/api/userprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) and [compute protection scopes for a tenant](/graph/api/tenantprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) APIs, enabling applications to determine whether data loss prevention policies govern content filtering before evaluating content. + ### Teamwork and communications | Messaging Updated the [getAllRetainedMessages](/graph/api/channel-getallretainedmessages?view=graph-rest-beta&preserve-view=true) method to document support for retained private-channel message versions captured after the tenant's private-channel storage migration completed. From f2af23fac6b34c59b45d146a0c9d2348a8edcbbe Mon Sep 17 00:00:00 2001 From: lasharma6199068 <278895872+lasharma6199068@users.noreply.github.com> Date: Wed, 9 Sep 2026 10:28:53 +0530 Subject: [PATCH 125/189] Public Preview: Anonymous Capabilities (M365XTAP) (#29474) * init * fixed changelog urls * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestion from @Danipocket --------- Co-authored-by: Lavanya Sharma Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> --- .../anonymouscalendarsharingfreebusydetail.md | 51 +++++++++++++++++++ ...nonymouscalendarsharingfreebusyreviewer.md | 51 +++++++++++++++++++ .../anonymouscalendarsharingfreebusysimple.md | 51 +++++++++++++++++++ .../beta/resources/m365capabilitybase.md | 3 ++ api-reference/beta/toc/tenants/toc.yml | 6 +++ api-reference/beta/toc/toc.mapping.json | 3 ++ changelog/Microsoft.M365.XTAP.json | 34 +++++++++++++ concepts/whats-new-overview.md | 4 ++ 8 files changed, 203 insertions(+) create mode 100644 api-reference/beta/resources/anonymouscalendarsharingfreebusydetail.md create mode 100644 api-reference/beta/resources/anonymouscalendarsharingfreebusyreviewer.md create mode 100644 api-reference/beta/resources/anonymouscalendarsharingfreebusysimple.md diff --git a/api-reference/beta/resources/anonymouscalendarsharingfreebusydetail.md b/api-reference/beta/resources/anonymouscalendarsharingfreebusydetail.md new file mode 100644 index 00000000000..6c4ed6aa1ec --- /dev/null +++ b/api-reference/beta/resources/anonymouscalendarsharingfreebusydetail.md @@ -0,0 +1,51 @@ +--- +title: "anonymousCalendarSharingFreeBusyDetail resource type" +description: "Represents a capability for anonymous detailed free/busy calendar sharing." +author: "lasharma" +ms.date: 08/21/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# anonymousCalendarSharingFreeBusyDetail resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents authorization for anonymous external users to view detailed calendar free/busy information, including meeting subject and location. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.anonymousCalendarSharingFreeBusyDetail", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/beta/resources/anonymouscalendarsharingfreebusyreviewer.md b/api-reference/beta/resources/anonymouscalendarsharingfreebusyreviewer.md new file mode 100644 index 00000000000..b048a398aeb --- /dev/null +++ b/api-reference/beta/resources/anonymouscalendarsharingfreebusyreviewer.md @@ -0,0 +1,51 @@ +--- +title: "anonymousCalendarSharingFreeBusyReviewer resource type" +description: "Represents a capability for anonymous reviewer-level free/busy calendar sharing." +author: "lasharma" +ms.date: 08/21/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# anonymousCalendarSharingFreeBusyReviewer resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents authorization for anonymous external users to view calendar free/busy information at reviewer fidelity, the most detailed sharing level. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.anonymousCalendarSharingFreeBusyReviewer", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/beta/resources/anonymouscalendarsharingfreebusysimple.md b/api-reference/beta/resources/anonymouscalendarsharingfreebusysimple.md new file mode 100644 index 00000000000..36883d09d3e --- /dev/null +++ b/api-reference/beta/resources/anonymouscalendarsharingfreebusysimple.md @@ -0,0 +1,51 @@ +--- +title: "anonymousCalendarSharingFreeBusySimple resource type" +description: "Represents a capability for anonymous simple free/busy calendar sharing." +author: "lasharma" +ms.date: 08/21/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# anonymousCalendarSharingFreeBusySimple resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents authorization for anonymous external users to view simple calendar free/busy status, shown as busy or free. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.anonymousCalendarSharingFreeBusySimple", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/beta/resources/m365capabilitybase.md b/api-reference/beta/resources/m365capabilitybase.md index 6765eda2c0b..c8ce2ab5b8b 100644 --- a/api-reference/beta/resources/m365capabilitybase.md +++ b/api-reference/beta/resources/m365capabilitybase.md @@ -19,6 +19,9 @@ Represents an abstract base type for cross-tenant Microsoft 365 capabilities. Th The following types derive from **m365CapabilityBase**: +- [anonymousCalendarSharingFreeBusyDetail](../resources/anonymouscalendarsharingfreebusydetail.md) +- [anonymousCalendarSharingFreeBusyReviewer](../resources/anonymouscalendarsharingfreebusyreviewer.md) +- [anonymousCalendarSharingFreeBusySimple](../resources/anonymouscalendarsharingfreebusysimple.md) - [crossTenantCalendarAvailabilityBasic](../resources/crosstenantcalendaravailabilitybasic.md) - [crossTenantCalendarAvailabilityLimitedDetails](../resources/crosstenantcalendaravailabilitylimiteddetails.md) - [crossTenantCalendarSharingFreeBusyDetail](../resources/crosstenantcalendarsharingfreebusydetail.md) diff --git a/api-reference/beta/toc/tenants/toc.yml b/api-reference/beta/toc/tenants/toc.yml index a47302ac579..c33d3760f45 100644 --- a/api-reference/beta/toc/tenants/toc.yml +++ b/api-reference/beta/toc/tenants/toc.yml @@ -145,6 +145,12 @@ items: href: ../../resources/m365-cross-tenant-access-policy-overview.md - name: Microsoft 365 capability base href: ../../resources/m365capabilitybase.md + - name: Anonymous calendar sharing free busy detail + href: ../../resources/anonymouscalendarsharingfreebusydetail.md + - name: Anonymous calendar sharing free busy reviewer + href: ../../resources/anonymouscalendarsharingfreebusyreviewer.md + - name: Anonymous calendar sharing free busy simple + href: ../../resources/anonymouscalendarsharingfreebusysimple.md - name: Cross-tenant calendar availability basic href: ../../resources/crosstenantcalendaravailabilitybasic.md - name: Cross-tenant calendar availability limited details diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index af9ffbc9979..112fe0f5b2a 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -3818,6 +3818,9 @@ "overview": "../../resources/m365-cross-tenant-access-policy-overview.md", "resources": [ "m365CapabilityBase", + "anonymousCalendarSharingFreeBusyDetail", + "anonymousCalendarSharingFreeBusyReviewer", + "anonymousCalendarSharingFreeBusySimple", "crossTenantCalendarAvailabilityBasic", "crossTenantCalendarAvailabilityLimitedDetails", "crossTenantCalendarSharingFreeBusyDetail", diff --git a/changelog/Microsoft.M365.XTAP.json b/changelog/Microsoft.M365.XTAP.json index 4399d716131..2bdb7c59e6e 100644 --- a/changelog/Microsoft.M365.XTAP.json +++ b/changelog/Microsoft.M365.XTAP.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "767692fb-eb65-41c2-bdd7-eb78b272d564", + "ApiChange": "Resource", + "ChangedApiName": "anonymousCalendarSharingFreeBusyDetail", + "ChangeType": "Addition", + "Description": "Added the [anonymousCalendarSharingFreeBusyDetail](https://learn.microsoft.com/en-us/graph/api/resources/anonymouscalendarsharingfreebusydetail?view=graph-rest-beta) resource.", + "Target": "anonymousCalendarSharingFreeBusyDetail" + }, + { + "Id": "767692fb-eb65-41c2-bdd7-eb78b272d564", + "ApiChange": "Resource", + "ChangedApiName": "anonymousCalendarSharingFreeBusyReviewer", + "ChangeType": "Addition", + "Description": "Added the [anonymousCalendarSharingFreeBusyReviewer](https://learn.microsoft.com/en-us/graph/api/resources/anonymouscalendarsharingfreebusyreviewer?view=graph-rest-beta) resource.", + "Target": "anonymousCalendarSharingFreeBusyReviewer" + }, + { + "Id": "767692fb-eb65-41c2-bdd7-eb78b272d564", + "ApiChange": "Resource", + "ChangedApiName": "anonymousCalendarSharingFreeBusySimple", + "ChangeType": "Addition", + "Description": "Added the [anonymousCalendarSharingFreeBusySimple](https://learn.microsoft.com/en-us/graph/api/resources/anonymouscalendarsharingfreebusysimple?view=graph-rest-beta) resource.", + "Target": "anonymousCalendarSharingFreeBusySimple" + } + ], + "Id": "767692fb-eb65-41c2-bdd7-eb78b272d564", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-08T05:51:57.8203465Z", + "WorkloadArea": "Identity and access", + "SubArea": "Identity and sign-in" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index afd5166680d..02f0f2786bd 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -132,6 +132,10 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] - Added support for configurable time-based lifecycle workflow triggers through the [timeBasedAttributeTriggerV2](/graph/api/resources/identitygovernance-timebasedattributetriggerv2?view=graph-rest-beta&preserve-view=true) resource. Select a date-type user attribute and configure an operator to run workflows on an exact date, within a rolling window, or between two offsets before or after that date. +### Identity and access | Identity and sign-in + +- Added the [anonymousCalendarSharingFreeBusySimple](/graph/api/resources/anonymouscalendarsharingfreebusysimple?view=graph-rest-beta&preserve-view=true), [anonymousCalendarSharingFreeBusyDetail](/graph/api/resources/anonymouscalendarsharingfreebusydetail?view=graph-rest-beta&preserve-view=true), and [anonymousCalendarSharingFreeBusyReviewer](/graph/api/resources/anonymouscalendarsharingfreebusyreviewer?view=graph-rest-beta&preserve-view=true) capabilities that derive from [m365CapabilityBase](/graph/api/resources/m365capabilitybase?view=graph-rest-beta&preserve-view=true). Use these capabilities in cross-tenant access policies to authorize anonymous external users to view calendar free/busy information at simple, detailed, or reviewer fidelity. + ### Mail - Changed the **members** property on the [distributionList](/graph/api/resources/distributionlist?view=graph-rest-beta&preserve-view=true) resource to an expandable relationship. Use `$expand=members` with the [Get distribution list](/graph/api/distributionlist-get?view=graph-rest-beta&preserve-view=true) method instead of the removed standalone methods for listing and getting members. From 43b776d3f5295d9fdd822fe499dc2c6fc06ae899 Mon Sep 17 00:00:00 2001 From: Quyen Huynh <44627898+quyenxhuynh@users.noreply.github.com> Date: Wed, 9 Sep 2026 14:17:50 -0700 Subject: [PATCH 126/189] Add beta docs for new property offsetChunks in EmbeddingInput (#29515) * update docs * re: comments * Make updates according to contract changes * re: graph tool recommendations * Document chunk offset removals Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Add retired embedding offset compatibility page Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 1193f338-aa4e-4478-9fcf-9c884eae2fd7 * re: comments * re: comment * Apply suggestion from @Danipocket * Update Microsoft.DataClassificationService.json * Update Microsoft.DataClassificationService.json * Update Microsoft.DataClassificationService.json --------- Co-authored-by: quyenhuynh Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: 1193f338-aa4e-4478-9fcf-9c884eae2fd7 --- api-reference/beta/resources/chunkoffsets.md | 49 +++++++++++++++++++ .../beta/resources/embeddinginput.md | 9 ++-- .../resources/textclassificationrequest.md | 10 ++-- api-reference/beta/toc/toc.mapping.json | 1 + .../Microsoft.DataClassificationService.json | 26 ++++++++++ concepts/whats-new-overview.md | 4 ++ 6 files changed, 93 insertions(+), 6 deletions(-) create mode 100644 api-reference/beta/resources/chunkoffsets.md diff --git a/api-reference/beta/resources/chunkoffsets.md b/api-reference/beta/resources/chunkoffsets.md new file mode 100644 index 00000000000..ac544cb11b3 --- /dev/null +++ b/api-reference/beta/resources/chunkoffsets.md @@ -0,0 +1,49 @@ +--- +title: "chunkOffsets resource type" +description: "Provides positional offset metadata for the text chunks that produced caller-supplied embedding data." +author: "quyenxhuynh" +ms.date: 08/31/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# chunkOffsets resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Provides positional offset metadata for the text chunks that produced caller-supplied embedding data. This type is used by the **chunkOffsets** property of [embeddingInput](../resources/embeddinginput.md) and uses base64-encoded integer values instead of floats. + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|lengths|String|An optional base64 string that encodes a packed sequence of little-endian signed 32-bit integers. Decoded values represent chunk lengths and must be nonnegative. The decoded byte count must be divisible by 4. When supplied, the decoded element count must match **starts**, and elements pair by index.| +|starts|String|A base64 string that encodes a packed sequence of little-endian signed 64-bit integers. Decoded values represent chunk start positions and must be nonnegative and in ascending order. The decoded byte count must be divisible by 8.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +```json +{ + "@odata.type": "#microsoft.graph.chunkOffsets", + "starts": "String", + "lengths": "String" +} +``` diff --git a/api-reference/beta/resources/embeddinginput.md b/api-reference/beta/resources/embeddinginput.md index a3b01f0a6e8..101a8d4e728 100644 --- a/api-reference/beta/resources/embeddinginput.md +++ b/api-reference/beta/resources/embeddinginput.md @@ -2,7 +2,7 @@ title: "embeddingInput resource type" description: "A set of precomputed embedding vectors produced by a single embedding model for the request text." author: "jcksonhe" -ms.date: 07/10/2026 +ms.date: 08/31/2026 ms.localizationpriority: medium ms.subservice: "security" doc_type: resourcePageType @@ -23,6 +23,7 @@ None. ## Properties |Property|Type|Description| |:---|:---|:---| +|chunkOffsets|[chunkOffsets](../resources/chunkoffsets.md)|Optional offset metadata for the text chunks that produced this embedding data. The **starts** property is required when **chunkOffsets** is present. When **lengths** is also present, the decoded element counts must match and pair by index.| |data|String|The embedding vectors the model produced for the text, encoded as a base64 string of little-endian 32-bit floats. Every vector the model emitted (for example, one per text chunk) is concatenated in order; each contributes exactly the modelType's embedding dimension worth of float components, so the decoded length must be a whole multiple of that dimension.| |modelType|String|The embedding model identifier drawn from the service allow-list (for example: text-embedding-3-small-512). Unique (case-insensitive) within the embeddings collection; entries whose modelType is outside the allow-list are rejected with a 400.| @@ -40,7 +41,9 @@ The following JSON representation shows the resource type. { "@odata.type": "#microsoft.graph.embeddingInput", "modelType": "String", - "data": "String" + "data": "String", + "chunkOffsets": { + "@odata.type": "microsoft.graph.chunkOffsets" + } } ``` - diff --git a/api-reference/beta/resources/textclassificationrequest.md b/api-reference/beta/resources/textclassificationrequest.md index 955e9d713fb..6c442267cd2 100644 --- a/api-reference/beta/resources/textclassificationrequest.md +++ b/api-reference/beta/resources/textclassificationrequest.md @@ -2,7 +2,7 @@ title: "textClassificationRequest resource type" description: "Represents a request to classify text for sensitive information types, with optional caller-supplied precomputed embeddings." author: "jcksonhe" -ms.date: 07/10/2026 +ms.date: 08/31/2026 ms.localizationpriority: medium ms.subservice: "security" doc_type: resourcePageType @@ -57,7 +57,12 @@ The following JSON representation shows the resource type. { "@odata.type": "microsoft.graph.embeddingInput", "modelType": "String", - "data": "String" + "data": "String", + "chunkOffsets": { + "@odata.type": "microsoft.graph.chunkOffsets", + "starts": "String", + "lengths": "String" + } } ], "fileExtension": "String", @@ -73,4 +78,3 @@ The following JSON representation shows the resource type. } } ``` - diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 112fe0f5b2a..9ef13f49736 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -2941,6 +2941,7 @@ "autoLabeling", "binaryContent", "blockAccessAction", + "chunkOffsets", "classifcationErrorBase", "classificationError", "classificationInnerError", diff --git a/changelog/Microsoft.DataClassificationService.json b/changelog/Microsoft.DataClassificationService.json index 75a2ea987e0..520cac67d27 100644 --- a/changelog/Microsoft.DataClassificationService.json +++ b/changelog/Microsoft.DataClassificationService.json @@ -1,5 +1,31 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "e210704c-83c6-4a49-ab52-b565204f3126", + "ApiChange": "ComplexType", + "ChangedApiName": "chunkOffsets", + "ChangeType": "Addition", + "Description": "Added the [chunkOffsets](https://learn.microsoft.com/en-us/graph/api/resources/chunkoffsets?view=graph-rest-beta) complex type.", + "Target": "chunkOffsets" + }, + { + "Id": "e210704c-83c6-4a49-ab52-b565204f3126", + "ApiChange": "Property", + "ChangedApiName": "chunkOffsets", + "ChangeType": "Addition", + "Description": "Added the **chunkOffsets** property to the [embeddingInput](https://learn.microsoft.com/en-us/graph/api/resources/embeddinginput?view=graph-rest-beta) resource.", + "Target": "embeddingInput" + } + ], + "Id": "e210704c-83c6-4a49-ab52-b565204f3126", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-09T16:32:59.9686382Z", + "WorkloadArea": "Security", + "SubArea": "Data security and compliance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 02f0f2786bd..60118a15934 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -150,6 +150,10 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] - Added the [get relation](/graph/api/security-casemanagement-relation-get?view=graph-rest-beta&preserve-view=true) and [delete relation](/graph/api/security-casemanagement-relation-delete?view=graph-rest-beta&preserve-view=true) methods to the [relation](/graph/api/resources/security-casemanagement-relation?view=graph-rest-beta&preserve-view=true) resource type to read and remove links between a case and related security resources. - Added the [delete task](/graph/api/security-casemanagement-task-delete?view=graph-rest-beta&preserve-view=true) method to the [task](/graph/api/resources/security-casemanagement-task?view=graph-rest-beta&preserve-view=true) resource type to remove a task from a case. +### Security | Data security and compliance + +- Replaced the **offsetChunks** property and **embeddingOffsetChunk** resource type with the **chunkOffsets** property and [chunkOffsets](/graph/api/resources/chunkoffsets?view=graph-rest-beta&preserve-view=true) complex type in [embeddingInput](/graph/api/resources/embeddinginput?view=graph-rest-beta&preserve-view=true). Use **chunkOffsets** to associate precomputed embedding vectors with their source text ranges by using base64-encoded start positions and lengths. + ### Teamwork and communications | Calls and online meetings - Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings?view=graph-rest-beta&preserve-view=true) and [getAllTranscripts](/graph/api/onlinemeeting-getalltranscripts?view=graph-rest-beta&preserve-view=true) methods to document a service-update issue that can cause paginated requests to return an empty collection followed by duplicate items. From 10475f40662177c1a2480c5e9dae028097b905f2 Mon Sep 17 00:00:00 2001 From: Chentong1201 Date: Thu, 10 Sep 2026 05:19:44 +0800 Subject: [PATCH 127/189] docs: add sensitivity labels to searchHit beta (#29524) * docs: update searchHit for sensitivity labels Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: add sensitivityLabelInfo resource Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: show sensitivity labels in search response Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: add searchHit sensitivity label changelog Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: add searchHit sensitivity label to What's New Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: address searchHit review feedback Fix the isCollapsed description and preserve the existing What's New metadata date. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: align searchHit resource representations Keep deprecated properties ordered and align JSON representation types with the beta CSDL. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: fix searchHit JSON representation Restore the complete valid resource representation after applying review feedback. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestion from @Danipocket --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- api-reference/beta/api/search-query.md | 9 ++++ api-reference/beta/resources/searchhit.md | 31 ++++++----- .../beta/resources/sensitivitylabelinfo.md | 51 +++++++++++++++++++ changelog/Microsoft.MicrosoftSearch.json | 18 +++++++ concepts/whats-new-overview.md | 4 ++ 5 files changed, 100 insertions(+), 13 deletions(-) create mode 100644 api-reference/beta/resources/sensitivitylabelinfo.md diff --git a/api-reference/beta/api/search-query.md b/api-reference/beta/api/search-query.md index 1709b65a58f..828cdad2644 100644 --- a/api-reference/beta/api/search-query.md +++ b/api-reference/beta/api/search-query.md @@ -51,6 +51,8 @@ In the request body, provide a JSON object with the following parameters. ## Response If successful, this method returns an `HTTP 200 OK` response code and a collection of [searchResponse](../resources/searchresponse.md) objects in the response body. + +Each [searchHit](../resources/searchhit.md) object can include the **sensitivityLabel** property when the result resource has a sensitivity label. ## Examples @@ -228,6 +230,13 @@ Content-type: application/json }, "createdDateTime": "2021-11-19T17:04:18Z", "lastModifiedDateTime": "2023-03-09T18:52:26Z" + }, + "sensitivityLabel": { + "sensitivityLabelId": "f71f1f74-bf1f-4e6b-b266-c777ea76e288", + "displayName": "Confidential", + "tooltip": "Data intended only for approved recipients.", + "priority": 4, + "color": "#FF8C00" } } ], diff --git a/api-reference/beta/resources/searchhit.md b/api-reference/beta/resources/searchhit.md index 8d2ae0bed3c..95659a06d89 100644 --- a/api-reference/beta/resources/searchhit.md +++ b/api-reference/beta/resources/searchhit.md @@ -1,6 +1,6 @@ --- title: "searchHit resource type" -description: "Description of searchHit entity" +description: "Represents a single result within a collection of Microsoft Graph search results." ms.localizationpriority: medium author: "njerigrevious" ms.subservice: "search" @@ -24,16 +24,17 @@ Represents a single result within the list of search results. |:-------------|:------------|:------------| |contentSource|String|The name of the content source that the **externalItem** is part of.| |hitId|String|The internal identifier for the item. The format of the identifier varies based on the entity type. For details, see [hitId format](#hitid-format).| -|isCollapsed|Boolean|Indicates whether the current result is collapses when the **collapseProperties** property in the [searchRequest](searchrequest.md) is used.| +|isCollapsed|Boolean|Indicates whether the current result is collapsed when the **collapseProperties** property in the [searchRequest](../resources/searchrequest.md) is used.| |rank|Int32|The rank or the order of the result.| -|resource|[entity](entity.md)|The underlying Microsoft Graph representation of the search result.| -|resultTemplateId|String|ID of the result template for rendering the search result. This ID must map to a display layout in the **resultTemplates** dictionary, included in the [searchresponse](searchresponse.md) as well.| +|resource|[entity](../resources/entity.md)|The underlying Microsoft Graph representation of the search result.| +|resultTemplateId|String|ID of the result template for rendering the search result. This ID must map to a display layout in the **resultTemplates** dictionary, included in the [searchResponse](../resources/searchresponse.md) as well.| +|sensitivityLabel|[sensitivityLabelInfo](../resources/sensitivitylabelinfo.md)|The sensitivity label applied to the search result resource, or `null` if the resource has no sensitivity label.| |summary|String|A summary of the result, if a summary is available.| |_id (deprecated)|String| Renamed as **hitId**. The internal identifier for the item.| |_score (deprecated)|Int32|Renamed as **rank**. The score or the order of the result.| -|_summary (deprecated)|String|Renamed as **summary**. A summary of the result (if summary is available).| |_sortField (deprecated)|String|This property has been removed.| -|_source (deprecated)|[entity](entity.md)|Renamed as **resource**. The underlying Graph representation of the search result.| +|_source (deprecated)|[entity](../resources/entity.md)|Renamed as **resource**. The underlying Graph representation of the search result.| +|_summary (deprecated)|String|Renamed as **summary**. A summary of the result (if summary is available).| ### hitId format | Entity type | ID format | Example | @@ -67,17 +68,21 @@ The following JSON representation shows the resource type. ```json { - "hitId": "String", - "rank": 1, - "summary": "String", - "resultTemplateId": "String", "contentSource": "String", + "hitId": "String", + "isCollapsed": "Boolean", + "rank": "Int32", "resource": { "@odata.type": "microsoft.graph.entity" }, + "resultTemplateId": "String", + "sensitivityLabel": { + "@odata.type": "microsoft.graph.sensitivityLabelInfo" + }, + "summary": "String", "_id": "String", - "_score": 1024, + "_score": "Int32", "_sortField": "String", - "_summary": "String", - "_source": { "@odata.type": "microsoft.graph.entity" } + "_source": { "@odata.type": "microsoft.graph.entity" }, + "_summary": "String" } ``` diff --git a/api-reference/beta/resources/sensitivitylabelinfo.md b/api-reference/beta/resources/sensitivitylabelinfo.md new file mode 100644 index 00000000000..f9864d07686 --- /dev/null +++ b/api-reference/beta/resources/sensitivitylabelinfo.md @@ -0,0 +1,51 @@ +--- +title: "sensitivityLabelInfo resource type" +description: "Describes sensitivity label information returned for a Microsoft Graph search result." +author: "Chentong1201" +ms.date: 09/01/2026 +ms.localizationpriority: medium +ms.subservice: "search" +doc_type: resourcePageType +--- + +# sensitivityLabelInfo resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the sensitivity label applied to a search result. This complex type is returned in the **sensitivityLabel** property of the [searchHit](../resources/searchhit.md) resource. + +## Properties + +| Property | Type | Description | +|:---------|:-----|:------------| +|color|String|The color that the UI should display for the label, if configured.| +|displayName|String|The display name of the sensitivity label.| +|priority|Int32|The display priority of the sensitivity label.| +|sensitivityLabelId|String|The identifier of the sensitivity label.| +|tooltip|String|The tooltip that the UI should display for the sensitivity label.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + + +```json +{ + "@odata.type": "#microsoft.graph.sensitivityLabelInfo", + "sensitivityLabelId": "String", + "displayName": "String", + "tooltip": "String", + "priority": "Int32", + "color": "String" +} +``` diff --git a/changelog/Microsoft.MicrosoftSearch.json b/changelog/Microsoft.MicrosoftSearch.json index df05fe94197..1d98c952f81 100644 --- a/changelog/Microsoft.MicrosoftSearch.json +++ b/changelog/Microsoft.MicrosoftSearch.json @@ -1,5 +1,23 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "f26eb261-5bf5-4ea6-ab40-bcde97b7f10c", + "ApiChange": "Property", + "ChangedApiName": "sensitivityLabel", + "ChangeType": "Addition", + "Description": "Added the **sensitivityLabel** property to the [searchHit](https://learn.microsoft.com/en-us/graph/api/resources/searchhit?view=graph-rest-beta) resource.", + "Target": "searchHit" + } + ], + "Id": "f26eb261-5bf5-4ea6-ab40-bcde97b7f10c", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-09T04:03:09.8809869Z", + "WorkloadArea": "People and workplace intelligence", + "SubArea": "Analytics" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 60118a15934..85e9d6eef73 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -51,6 +51,10 @@ Added the [getStatisticsByPolicy](/graph/api/backupreport-getstatisticsbypolicy? Clarified that the [Get accessPackageResourceEnvironment](/graph/api/accesspackageresourceenvironment-get?view=graph-rest-beta&preserve-view=true) method returns SharePoint Online resource environments only when it's called with delegated permissions. A SharePoint Online resource environment corresponds to a SharePoint root site, so to retrieve root site information with application permissions, use the [List sites](/graph/api/site-list?view=graph-rest-beta&preserve-view=true) method with the `$filter=siteCollection/root ne null` query option. +### People and workplace intelligence | Analytics + +Added the **sensitivityLabel** property to the [searchHit](/graph/api/resources/searchhit?view=graph-rest-beta&preserve-view=true) resource type to provide sensitivity-label information for the search result resource. + ### Security | Data security and compliance Added the `contentFiltering` member to the [userActivityTypes](/graph/api/resources/enums-security?view=graph-rest-beta&preserve-view=true#useractivitytypes-values) enumeration used by the [compute protection scopes for a user](/graph/api/userprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) and [compute protection scopes for a tenant](/graph/api/tenantprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) APIs, enabling applications to determine whether data loss prevention policies govern content filtering before evaluating content. From dea208339008d0e86fe14f06ad027fe63324531f Mon Sep 17 00:00:00 2001 From: Arjun Agarwal <8549133+agarwal-arjun@users.noreply.github.com> Date: Sat, 12 Sep 2026 02:54:27 +0530 Subject: [PATCH 128/189] docs: API reference for Microsoft.EnhancedRestore (#29541) * Document policy-scoped Enhanced Restore APIs Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Address documentation review feedback Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestion from @Danipocket * fix * Apply suggestion from @David1997sb --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: David1997sb --- .../backuprestoreroot-list-restorepoints.md | 6 ++- ...estoreroot-post-exchangerestoresessions.md | 3 ++ ...post-onedriveforbusinessrestoresessions.md | 3 ++ ...toreroot-post-sharepointrestoresessions.md | 4 +- .../beta/api/exchangerestoresession-update.md | 3 +- ...nedriveforbusinessrestoresession-update.md | 2 + api-reference/beta/api/restorepoint-search.md | 5 ++- .../beta/api/restoresessionbase-get.md | 1 + .../api/sharepointrestoresession-update.md | 4 +- .../beta/resources/exchangerestoresession.md | 5 ++- .../onedriveforbusinessrestoresession.md | 7 +-- api-reference/beta/resources/restorepoint.md | 2 +- .../beta/resources/restoresessionbase.md | 4 +- .../resources/sharepointrestoresession.md | 6 ++- changelog/Microsoft.EnhancedRestore.json | 44 +++++++++++++++++++ concepts/whats-new-overview.md | 5 +++ 16 files changed, 89 insertions(+), 15 deletions(-) diff --git a/api-reference/beta/api/backuprestoreroot-list-restorepoints.md b/api-reference/beta/api/backuprestoreroot-list-restorepoints.md index 0a960cdaeb0..4899e5e8bc3 100644 --- a/api-reference/beta/api/backuprestoreroot-list-restorepoints.md +++ b/api-reference/beta/api/backuprestoreroot-list-restorepoints.md @@ -38,7 +38,7 @@ Choose the permission or permissions marked as least privileged for this API. Us } --> ``` http -GET /solutions/backupRestore/restorePoints?$expand=protectionUnit($filter=id eq '{ProtectionUnitID}')&$filter=protectionDateTime lt YYYY-MM-DDTHH:mm:ssZ +GET /solutions/backupRestore/restorePoints?$expand=protectionUnit&$filter=protectionDateTime lt YYYY-MM-DDTHH:mm:ssZ and protectionUnit/id eq '{protectionUnitId}' and protectionUnit/policyId eq '{policyId}' ``` ## Optional query parameters @@ -47,6 +47,8 @@ This method supports the `$expand`, `$filter` and `orderBy` [OData query paramet The `$expand` and `$filter` query parameters are required. +Use `$filter` with `lt` on **protectionDateTime** and with `eq` on **protectionUnit/id** and **protectionUnit/policyId**. You can combine these expressions with `and`. + ## Request headers |Name|Description| @@ -75,7 +77,7 @@ The following example shows a request. } --> ``` http -GET https://graph.microsoft.com/beta/solutions/backupRestore/restorePoints?$expand=protectionUnit($filter=id eq 'd234cf54-e0fb-49b7-9c8a-5bcd1439e853')&$filter=protectionDateTime lt 2024-05-12T10:01:00Z +GET https://graph.microsoft.com/beta/solutions/backupRestore/restorePoints?$expand=protectionUnit&$filter=protectionDateTime lt 2024-05-12T10:01:00Z and protectionUnit/id eq 'd234cf54-e0fb-49b7-9c8a-5bcd1439e853' and protectionUnit/policyId eq '9fec8e78-bce4-4aaf-ab1b-5451cc387264' ``` # [C#](#tab/csharp) diff --git a/api-reference/beta/api/backuprestoreroot-post-exchangerestoresessions.md b/api-reference/beta/api/backuprestoreroot-post-exchangerestoresessions.md index c1958bd3a2b..e72cc4fe5a9 100644 --- a/api-reference/beta/api/backuprestoreroot-post-exchangerestoresessions.md +++ b/api-reference/beta/api/backuprestoreroot-post-exchangerestoresessions.md @@ -56,6 +56,7 @@ You can specify the following properties when you create an **exchangeRestoreSes |:---|:---|:---| |granularMailboxRestoreArtifact|[granularMailboxRestoreArtifact](../resources/granularmailboxrestoreartifact.md) collection|Collection of [granularMailboxRestoreArtifact](../resources/granularmailboxrestoreartifact.md) objects.| |mailboxRestoreArtifacts|[mailboxRestoreArtifact](../resources/mailboxrestoreartifact.md) collection|Collection of [mailboxRestoreArtifact](../resources/mailboxrestoreartifact.md) objects.| +|policyId|String|The identifier of the protection policy that scopes the restore session. The service validates that the referenced protection units belong to this policy. Optional.| ## Response @@ -81,6 +82,7 @@ POST https://graph.microsoft.com/beta/solutions/backupRestore/exchangeRestoreSes Content-Type: application/json { + "policyId": "99999999-aaaa-bbbb-cccc-dddddddddddd", "mailboxRestoreArtifacts": [ { "restorePoint": { "id": "1f1fccc3-a642-4f61-bf49-f37b9a888279" }, @@ -143,6 +145,7 @@ Content-Type: application/json "id": "959ba739-70b5-43c4-8c90-b2c22014f18b", "status": "draft", "restoreJobType": "standard", + "policyId": "99999999-aaaa-bbbb-cccc-dddddddddddd", "restoreSessionArtifactCount": { "total": 2, "completed": 0, diff --git a/api-reference/beta/api/backuprestoreroot-post-onedriveforbusinessrestoresessions.md b/api-reference/beta/api/backuprestoreroot-post-onedriveforbusinessrestoresessions.md index 9a408ddb6a6..f16eb4d651a 100644 --- a/api-reference/beta/api/backuprestoreroot-post-onedriveforbusinessrestoresessions.md +++ b/api-reference/beta/api/backuprestoreroot-post-onedriveforbusinessrestoresessions.md @@ -59,6 +59,7 @@ You can specify the following properties when you create a **oneDriveForBusiness |@microsoft.graph.conflictBehavior|String|The conflict resolution behavior when restoring each granular restore artifact in a session. The possible values are: `fail` (default), `replace`, `rename`. Only supported for granular restore sessions. Optional.| |driveRestoreArtifacts|[driveRestoreArtifact](../resources/driverestoreartifact.md) collection|A collection of [driveRestoreArtifact](../resources/driverestoreartifact.md) objects. Required.| |granularDriveRestoreArtifacts|[granularDriveRestoreArtifact](../resources/granulardriverestoreartifact.md) collection| A collection of [granularDriveRestoreArtifact](../resources/granulardriverestoreartifact.md) objects. Required.| +|policyId|String|The identifier of the protection policy that scopes the restore session. The service validates that the referenced protection units belong to this policy. Optional.| ## Response @@ -86,6 +87,7 @@ POST https://graph.microsoft.com/beta/solutions/backupRestore/oneDriveForBusines Content-Type: application/json { + "policyId": "99999999-aaaa-bbbb-cccc-dddddddddddd", "driveRestoreArtifacts": [ { "restorePoint": { "id": "1f1fccc3-a642-4f61-bf49-f37b9a888279" }, @@ -150,6 +152,7 @@ Content-Type: application/json "id": "959ba739-70b5-43c4-8c90-b2c22014f18b", "status": "draft", "restoreJobType": "standard", + "policyId": "99999999-aaaa-bbbb-cccc-dddddddddddd", "restoreSessionArtifactCount": { "total": 2, "completed": 0, diff --git a/api-reference/beta/api/backuprestoreroot-post-sharepointrestoresessions.md b/api-reference/beta/api/backuprestoreroot-post-sharepointrestoresessions.md index 97fd604c9a0..84bc9744a67 100644 --- a/api-reference/beta/api/backuprestoreroot-post-sharepointrestoresessions.md +++ b/api-reference/beta/api/backuprestoreroot-post-sharepointrestoresessions.md @@ -55,6 +55,7 @@ You can specify the following properties when you create a **sharePointRestoreSe |:---|:---|:---| |@microsoft.graph.conflictBehavior|String|The conflict resolution behavior when restoring each granular restore artifact in a session. The possible values are: `fail` (default), `replace`, `rename`. Only supported for granular restore sessions. Optional.| |granularSiteRestoreArtifacts|[granularSiteRestoreArtifact](../resources/granularsiterestoreartifact.md) collection|A collection of [granularSiteRestoreArtifact](../resources/granularsiterestoreartifact.md) objects. Required.| +|policyId|String|The identifier of the protection policy that scopes the restore session. The service validates that the referenced protection units belong to this policy. Optional.| |siteRestoreArtifacts|[siteRestoreArtifact](../resources/siterestoreartifact.md) collection|A collection of [siteRestoreArtifact](../resources/siterestoreartifact.md) objects. Required.| ## Response @@ -83,6 +84,7 @@ POST https://graph.microsoft.com/beta/solutions/backupRestore/sharePointRestoreS Content-Type: application/json { + "policyId": "99999999-aaaa-bbbb-cccc-dddddddddddd", "siteRestoreArtifacts": [ { "restorePoint": { "id": "1f1fccc3-a642-4f61-bf49-f37b9a888279" }, @@ -149,6 +151,7 @@ Content-Type: application/json "id": "61633878-8321-4950-bfaf-ed285bdd1461", "status": "draft", "restoreJobType": "standard", + "policyId": "99999999-aaaa-bbbb-cccc-dddddddddddd", "restoreSessionArtifactCount": { "total": 2, "completed": 0, @@ -414,4 +417,3 @@ Content-Type: application/json } } ``` - diff --git a/api-reference/beta/api/exchangerestoresession-update.md b/api-reference/beta/api/exchangerestoresession-update.md index c9ce45a616f..5521ef252d2 100644 --- a/api-reference/beta/api/exchangerestoresession-update.md +++ b/api-reference/beta/api/exchangerestoresession-update.md @@ -50,6 +50,7 @@ PATCH /solutions/backupRestore/exchangeRestoreSessions/{exchangeRestoreSessionId |Property|Type|Description| |:---|:---|:---| |mailboxRestoreArtifacts|[mailboxRestoreArtifact](../resources/mailboxrestoreartifact.md) collection|A collection of [mailboxRestoreArtifact](../resources/mailboxrestoreartifact.md) objects. Required.| +|policyId|String|The identifier of the protection policy that scopes the restore session. When supplied, the service validates that referenced protection units belong to this policy.| To remove an **exchangeRestoreSession**, specify the @removed annotation in the request body for the restore point artifact with the ID of the [mailboxRestoreArtifact](../resources/mailboxrestoreartifact.md). @@ -75,6 +76,7 @@ PATCH https://graph.microsoft.com/beta/solutions/backupRestore/exchangeRestoreSe Content-Type: application/json { + "policyId": "99999999-aaaa-bbbb-cccc-dddddddddddd", "mailboxRestoreArtifacts@delta": [ { "restorePoint": { "id": "1b014d8c-71fe-4d00-a01a-31850bc5b32c" }, //Create a new mailbox restore artifact and add it under the Restore Session. @@ -200,4 +202,3 @@ Content-Type: application/json ] } ``` - diff --git a/api-reference/beta/api/onedriveforbusinessrestoresession-update.md b/api-reference/beta/api/onedriveforbusinessrestoresession-update.md index 6525fda07d9..18c0ba800be 100644 --- a/api-reference/beta/api/onedriveforbusinessrestoresession-update.md +++ b/api-reference/beta/api/onedriveforbusinessrestoresession-update.md @@ -52,6 +52,7 @@ PATCH /solutions/backupRestore/oneDriveForBusinessRestoreSessions/{oneDriveForBu |:---|:---|:---| |driveRestoreArtifacts|[driveRestoreArtifact](../resources/driverestoreartifact.md) collection|Collection of [driveRestoreArtifact](../resources/driverestoreartifact.md). Required| |granularDriveRestoreArtifacts|[granularDriveRestoreArtifact](../resources/granulardriverestoreartifact.md) collection|A collection of [granularDriveRestoreArtifact](../resources/granulardriverestoreartifact.md) objects. Required.| +|policyId|String|The identifier of the protection policy that scopes the restore session. When supplied, the service validates that referenced protection units belong to this policy.| To remove a **driveRestoreArtifact** from a standar restore session, specify the `@removed` annotation in the request body together with the ID of the [driveRestoreArtifact](../resources/driverestoreartifact.md) object. @@ -79,6 +80,7 @@ The following example shows a request. PATCH https://graph.microsoft.com/beta/solutions/backupRestore/oneDriveForBusinessRestoreSessions/1b014d8c-71fe-4d00-8ab2-31850bc5b32c { + "policyId": "99999999-aaaa-bbbb-cccc-dddddddddddd", "driveRestoreArtifacts@delta": [ { "restorePoint": { "id": "1b014d8c-71fe-4d00-a01a-31850bc5b32c" }, //Create a new drive restore artifact and add it under the Restore Session. diff --git a/api-reference/beta/api/restorepoint-search.md b/api-reference/beta/api/restorepoint-search.md index 0fd0de2de3e..ea5aa786379 100644 --- a/api-reference/beta/api/restorepoint-search.md +++ b/api-reference/beta/api/restorepoint-search.md @@ -15,7 +15,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Search for the [restorePoint](../resources/restorepoint.md) objects associated with a [protectionUnit](../resources/protectionunitbase.md). +Search for the [restorePoint](../resources/restorepoint.md) objects associated with a [protectionUnit](../resources/protectionunitbase.md). Optionally provide **policyId** to scope the search to a protection policy and validate that the specified protection units belong to that policy. [!INCLUDE [national-cloud-support](../../includes/global-only.md)] @@ -50,6 +50,7 @@ In the request body, supply a JSON representation of the following parameters. |Parameter|Type|Description| |:---|:---|:---| |artifactQuery|[artifactQuery](../resources/artifactquery.md)|Contains an expression that specifies the criteria for search. Optional.| +|policyId|String|The identifier of the protection policy that contains the specified protection units. Optional.| |protectionUnitIds|String collection|The ID of the protection units. Required.| |protectionTimePeriod|[timePeriod](../resources/timeperiod.md)|The start and end date time of the protection period. Required.| |restorePointPreference|[restorePointPreference](../api/restorepoint-search.md#restorepointpreference-values)|Indicates which restore point to return. The possible values are `oldest`, `latest`. Optional.| @@ -70,6 +71,7 @@ If successful, this action returns a `200 OK` response code and a [restorePointS > - Calls return one restore point per protection unit. > - You can include a maximum of 20 protection units in a single request, and the response isn't paginated. > - When you provide an expression for the **artifactQuery** property, you must provide only one protection unit ID in the **protectionUnitIds** property. +> - When you provide **policyId**, the service validates that every protection unit belongs to the specified policy. For a list of possible error responses, see [Backup Storage API error responses](/graph/backup-storage-error-codes). @@ -92,6 +94,7 @@ POST https://graph.microsoft.com/beta/solutions/backupRestore/restorePoints/sear Content-Type: application/json { + "policyId": "9fec8e78-bce4-4aaf-ab1b-5451cc387264", "protectionUnitIds": ["23014d8c-71fe-4d00-a01a-31850bc5b42a", "43014d8c-71fe-4d00-a01a-31850bc5b42b", "63014d8c-71fe-4d00-a01a-31850bc5b42c", "83014d8c-71fe-4d00-a01a-31850bc5b42d"], "protectionTimePeriod": { "startDateTime": "2021-01-01T00:00:00Z", diff --git a/api-reference/beta/api/restoresessionbase-get.md b/api-reference/beta/api/restoresessionbase-get.md index 1ac0654a841..d79a2073985 100644 --- a/api-reference/beta/api/restoresessionbase-get.md +++ b/api-reference/beta/api/restoresessionbase-get.md @@ -116,6 +116,7 @@ Content-Type: application/json "id": "959ba739-70b5-43c4-8c90-b2c22014f18b", "status": "active", "restoreJobType": "standard", + "policyId": "99999999-aaaa-bbbb-cccc-dddddddddddd", "restoreSessionArtifactCount": { "total": 2, "completed": 1, diff --git a/api-reference/beta/api/sharepointrestoresession-update.md b/api-reference/beta/api/sharepointrestoresession-update.md index 482972bd8a3..6eaac557075 100644 --- a/api-reference/beta/api/sharepointrestoresession-update.md +++ b/api-reference/beta/api/sharepointrestoresession-update.md @@ -49,8 +49,9 @@ PATCH /solutions/backupRestore/sharePointRestoreSessions/{sharePointRestoreSessi |Property|Type|Description| |:---|:---|:---| -|siteRestoreArtifacts|[siteRestoreArtifact](../resources/siterestoreartifact.md) collection|A collection of [siteRestoreArtifact](../resources/siterestoreartifact.md) objects. Required.| |granularSiteRestoreArtifacts|[granularSiteRestoreArtifact](../resources/granularsiterestoreartifact.md) collection|A collection of [granularSiteRestoreArtifact](../resources/granularsiterestoreartifact.md) objects. Required.| +|policyId|String|The identifier of the protection policy that scopes the restore session. When supplied, the service validates that referenced protection units belong to this policy.| +|siteRestoreArtifacts|[siteRestoreArtifact](../resources/siterestoreartifact.md) collection|A collection of [siteRestoreArtifact](../resources/siterestoreartifact.md) objects. Required.| To remove a **siteRestoreArtifact** from a site restore session, specify the @removed annotation in the request body for the respective restore point artifact together with the ID of the [siteRestoreArtifact](../resources/siterestoreartifact.md). @@ -83,6 +84,7 @@ PATCH https://graph.microsoft.com/beta/solutions/backupRestore/sharepointRestore Content-Type: application/json { + "policyId": "99999999-aaaa-bbbb-cccc-dddddddddddd", "siteRestoreArtifacts@delta": [ { "restorePoint": { "id": "1b014d8c-71fe-4d00-a01a-31850bc5b32c" }, //Create a new site restore artifact and add it under the Restore Session. diff --git a/api-reference/beta/resources/exchangerestoresession.md b/api-reference/beta/resources/exchangerestoresession.md index cd51491763e..5c2ef4ffe58 100644 --- a/api-reference/beta/resources/exchangerestoresession.md +++ b/api-reference/beta/resources/exchangerestoresession.md @@ -36,6 +36,7 @@ Inherits from [restoreSessionBase](../resources/restoresessionbase.md). |error|[publicError](../resources/publicerror.md)|Contains error details if the restore session fails or completes with an error.| |lastModifiedBy|[identitySet](../resources/identityset.md)|Identity of the person who last modified this restore session.| |lastModifiedDateTime|DateTimeOffset|Timestamp of last modification of this restore session.| +|policyId|String|The identifier of the protection policy that scopes the restore session. Inherited from [restoreSessionBase](../resources/restoresessionbase.md).| |restoreJobType|[restoreJobType](../resources/enums.md#restorejobtype-values)|Indicates whether the restore session was created normally or by a bulk job.| |restoreSessionArtifactCount|[restoreSessionArtifactCount](../resources/restoresessionartifactcount.md)|The number of metadata artifacts that belong to this restore session.| |status|[restoreSessionStatus](../resources/exchangerestoresession.md#restoresessionstatus-values)|Status of the restore session. The value is an aggregated status of the restored artifacts. The possible values are: `draft`, `activating`, `active`, `completedWithError`, `completed`, `unknownFutureValue`, `failed`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `failed`.| @@ -87,7 +88,7 @@ The following JSON representation shows the resource type. }, "error": { "@odata.type": "microsoft.graph.publicError" - } + }, + "policyId": "String" } ``` - diff --git a/api-reference/beta/resources/onedriveforbusinessrestoresession.md b/api-reference/beta/resources/onedriveforbusinessrestoresession.md index 32a99d7c756..0fd067ad9c0 100644 --- a/api-reference/beta/resources/onedriveforbusinessrestoresession.md +++ b/api-reference/beta/resources/onedriveforbusinessrestoresession.md @@ -37,7 +37,8 @@ Inherits from [restoreSessionBase](../resources/restoresessionbase.md). |error|[publicError](../resources/publicerror.md)|Contains error details if the restore session fails or completes with an error.| |lastModifiedBy|[identitySet](../resources/identityset.md)|Identity of the person who last modified this restore session.| |lastModifiedDateTime|DateTimeOffset|Timestamp of the last modification of this restore session.| -|restoreJobType|[restoreJobType](../resources/enums.md#restorejobtype-values)|Indicates whether the restore is standard or bulk or granular restor. The possible values are `standard`,`bulk`,`unknownFutureValue`,`granular`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `granular`.| +|policyId|String|The identifier of the protection policy that scopes the restore session. Inherited from [restoreSessionBase](../resources/restoresessionbase.md).| +|restoreJobType|[restoreJobType](../resources/enums.md#restorejobtype-values)|Indicates whether the restore is standard or bulk or granular restore. The possible values are `standard`,`bulk`,`unknownFutureValue`,`granular`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `granular`.| |restoreSessionArtifactCount|[restoreSessionArtifactCount](../resources/restoresessionartifactcount.md)|The number of metadata artifacts that belong to this restore session.| |status|[restoreSessionStatus](../resources/onedriveforbusinessrestoresession.md#restoresessionstatus-values)|Status of the restore session. The value is an aggregated status of the restored artifacts. The possible values are: `draft`, `activating`, `active`, `completedWithError`, `completed`, `unknownFutureValue`, `failed`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `failed`.| @@ -90,7 +91,7 @@ The following JSON representation shows the resource type. }, "error": { "@odata.type": "microsoft.graph.publicError" - } + }, + "policyId": "String" } ``` - diff --git a/api-reference/beta/resources/restorepoint.md b/api-reference/beta/resources/restorepoint.md index 809fdb937c0..ad601d80404 100644 --- a/api-reference/beta/resources/restorepoint.md +++ b/api-reference/beta/resources/restorepoint.md @@ -51,7 +51,7 @@ The following limitations apply to this API: |Relationship|Type|Description| |:---|:---|:---| -|protectionUnit|[protectionUnitBase](../resources/protectionunitbase.md)|The site, drive, or mailbox units that are protected under a protection policy.| +|protectionUnit|[protectionUnitBase](../resources/protectionunitbase.md)|The site, drive, or mailbox unit protected under a protection policy. Supports `$expand` and `$filter` on **protectionUnit/policyId** using the `eq` operator.| ## JSON representation diff --git a/api-reference/beta/resources/restoresessionbase.md b/api-reference/beta/resources/restoresessionbase.md index 0dbc007c903..c19b0c2ca49 100644 --- a/api-reference/beta/resources/restoresessionbase.md +++ b/api-reference/beta/resources/restoresessionbase.md @@ -44,6 +44,7 @@ Restoring to both a new location and the same URL in a single restore session is |error|publicError|Contains error details if the restore session fails or completes with an error.| |lastModifiedBy|identitySet|Identity of the person who last modified the restore session.| |lastModifiedDateTime|DateTimeOffset|Timestamp of the last modification of the restore session.| +|policyId|String|The identifier of the protection policy that scopes the restore session. When supplied during create or update, the service validates that the referenced protection units belong to the specified policy.| |restoreJobType|[restoreJobType](../resources/enums.md#restorejobtype-values)|Indicates whether the restore session was created normally or by a bulk job.| |restoreSessionArtifactCount|[restoreSessionArtifactCount](../resources/restoresessionartifactcount.md)|The number of metadata artifacts that belong to this restore session.| |status|[restoreSessionStatus](../resources/restoresessionbase.md#restoresessionstatus-values)|Status of the restore session. The value is an aggregated status of the restored artifacts. The possible values are: `draft`, `activating`, `active`, `completedWithError`, `completed`, `unknownFutureValue`, `failed`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `failed`.| @@ -95,6 +96,7 @@ The following JSON representation shows the resource type. }, "error": { "@odata.type": "microsoft.graph.publicError" - } + }, + "policyId": "String" } ``` diff --git a/api-reference/beta/resources/sharepointrestoresession.md b/api-reference/beta/resources/sharepointrestoresession.md index 06aa4ff8c85..ed80ce9077f 100644 --- a/api-reference/beta/resources/sharepointrestoresession.md +++ b/api-reference/beta/resources/sharepointrestoresession.md @@ -39,7 +39,8 @@ Inherits from [restoreSessionBase](../resources/restoresessionbase.md). |error|[publicError](../resources/publicerror.md)|Contains error details if the restore session fails or is completed with error.| |lastModifiedBy|[identitySet](../resources/identityset.md)|Identity of the person who last modified this restore session.| |lastModifiedDateTime|DateTimeOffset|Timestamp of last modification of this restore session.| -|restoreJobType|[restoreJobType](../resources/enums.md#restorejobtype-values)|Indicates whether the restore is standard or bulk or granular restore. The possible values are `standard`,`bulk`,`unknownFutureValue`,`granular`. . Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `granular`.| +|policyId|String|The identifier of the protection policy that scopes the restore session. Inherited from [restoreSessionBase](../resources/restoresessionbase.md).| +|restoreJobType|[restoreJobType](../resources/enums.md#restorejobtype-values)|Indicates whether the restore is standard or bulk or granular restore. The possible values are `standard`,`bulk`,`unknownFutureValue`,`granular`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `granular`.| |restoreSessionArtifactCount|[restoreSessionArtifactCount](../resources/restoresessionartifactcount.md)|The number of metadata artifacts that belong to this restore session.| |status|[restoreSessionStatus](../resources/sharepointrestoresession.md#restoresessionstatus-values)|Status of the restore session. The value is an aggregated status of restore artifacts. The possible values are: `draft`, `activating`, `active`, `completedWithError`, `completed`, `unknownFutureValue`, `failed`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `failed`.| @@ -94,6 +95,7 @@ The following JSON representation shows the resource type. }, "error": { "@odata.type": "microsoft.graph.publicError" - } + }, + "policyId": "String" } ``` diff --git a/changelog/Microsoft.EnhancedRestore.json b/changelog/Microsoft.EnhancedRestore.json index 1602dc6d306..30386890a5b 100644 --- a/changelog/Microsoft.EnhancedRestore.json +++ b/changelog/Microsoft.EnhancedRestore.json @@ -1,5 +1,49 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "7bd19147-f81e-47de-9ed8-ea52768e7127", + "ApiChange": "Property", + "ChangedApiName": "policyId", + "ChangeType": "Addition", + "Description": "Added the **policyId** property to the [restoreSessionBase](https://learn.microsoft.com/en-us/graph/api/resources/restoresessionbase?view=graph-rest-beta) resource.", + "Target": "restoreSessionBase" + }, + { + "Id": "7bd19147-f81e-47de-9ed8-ea52768e7127", + "ApiChange": "Parameter", + "ChangedApiName": "policyId", + "ChangeType": "Addition", + "Description": "Added the `policyId` parameter to the [search](https://learn.microsoft.com/en-us/graph/api/restorepoint-search?view=graph-rest-beta) method.", + "Target": "search" + } + ], + "Id": "7bd19147-f81e-47de-9ed8-ea52768e7127", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-11T13:04:30.5819246Z", + "WorkloadArea": "Backup and recovery", + "SubArea": "Microsoft 365 backup and storage" + }, + { + "ChangeList": [ + { + "Id": "a2f40e30-f6e1-4882-8c1f-2566a187067c", + "ApiChange": "Property", + "ChangedApiName": "protectionUnit/policyId", + "ChangeType": "Addition", + "Description": "Added support for `$filter` on the **protectionUnit/policyId** property to the [list restorePoints](https://learn.microsoft.com/en-us/graph/api/backuprestoreroot-list-restorepoints?view=graph-rest-beta) method.", + "Target": "restorePoint" + } + ], + "Id": "a2f40e30-f6e1-4882-8c1f-2566a187067c", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-11T14:07:25.1782378Z", + "WorkloadArea": "Backup and recovery", + "SubArea": "Microsoft 365 backup and storage" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 85e9d6eef73..d9072f853ba 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -38,6 +38,11 @@ Updated the [getAllRetainedMessages](/graph/api/channel-getallretainedmessages) Added the **isDisabled** property to the [agentIdentityBlueprint](/graph/api/resources/agentidentityblueprint?view=graph-rest-beta&preserve-view=true) resource. Use it to deactivate an agent identity blueprint without deleting it. +### Backup and recovery | Microsoft 365 backup and storage + +- Added the **policyId** property to the [restoreSessionBase](/graph/api/resources/restoresessionbase?view=graph-rest-beta&preserve-view=true) resource type to scope restore sessions to a protection policy. +- Added the optional **policyId** parameter to the [restorePoint: search](/graph/api/restorepoint-search?view=graph-rest-beta&preserve-view=true) method to validate protection-unit membership and improve policy-scoped routing. You can also filter the restore points collection by `protectionUnit/policyId`. + ### Backup storage Added the [getStatisticsByPolicy](/graph/api/backupreport-getstatisticsbypolicy?view=graph-rest-beta&preserve-view=true) method to retrieve policy-level protection statistics for Microsoft 365 Backup Storage. Use the report to monitor protected and unprotected artifacts across completed, in-progress, and failed states, review offboarding activity, and determine when the metrics were last calculated. From 38f8a3a5efc5503cbbc2c16b1957d9c4146622c7 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Fri, 11 Sep 2026 15:24:48 -0600 Subject: [PATCH 129/189] Update reference TOC (#29577) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/toc/security/toc.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/api-reference/beta/toc/security/toc.yml b/api-reference/beta/toc/security/toc.yml index abe98d5884a..e74b6afedb2 100644 --- a/api-reference/beta/toc/security/toc.yml +++ b/api-reference/beta/toc/security/toc.yml @@ -682,6 +682,8 @@ items: href: ../../resources/binarycontent.md - name: Block access action href: ../../resources/blockaccessaction.md + - name: Chunk offsets + href: ../../resources/chunkoffsets.md - name: Classifcation error base href: ../../resources/classifcationerrorbase.md - name: Classification error From f8262b7ca7b68cb29be406de28c1ea7cb685ac59 Mon Sep 17 00:00:00 2001 From: jcksonhe Date: Fri, 11 Sep 2026 14:37:39 -0700 Subject: [PATCH 130/189] Add beta docs for new classificationMethod values in sensitiveType (#29518) * Add beta classificationMethod values for sensitiveType Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 2151d6c8-a48a-49ed-befd-aaa9f40ce7cc * Add sensitiveType to beta TOC Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> * Apply suggestion from @Danipocket * Fix Data Classification changelog entries Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> * Apply suggestion from @David1997sb --------- Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: David1997sb Copilot-Session: 2151d6c8-a48a-49ed-befd-aaa9f40ce7cc --- api-reference/beta/resources/enums.md | 19 +++++ api-reference/beta/resources/sensitivetype.md | 70 +++++++++++++++++++ api-reference/beta/toc/toc.mapping.json | 5 +- .../Microsoft.DataClassificationService.json | 34 +++++++++ concepts/whats-new-overview.md | 1 + 5 files changed, 127 insertions(+), 2 deletions(-) create mode 100644 api-reference/beta/resources/sensitivetype.md diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index dd1b76fc1dd..de677268d2c 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -6231,6 +6231,18 @@ Possible values for user account types (group membership), per Windows definitio |allMessages| |unknownFutureValue| +### classificationMethod values + +|Member| +|:---| +|patternMatch| +|exactDataMatch| +|fingerprint| +|machineLearning| +|privacyDataMatch| +|aiPowered| +|unknownFutureValue| + ### mlClassificationMatchTolerance values |Member| @@ -6245,6 +6257,13 @@ Possible values for user account types (group membership), per Windows definitio |fullDocument| |partialDocument| +### sensitiveTypeSource values + +|Member| +|:---| +|outOfBox| +|tenant| + ### mipWorkloads values |Member| diff --git a/api-reference/beta/resources/sensitivetype.md b/api-reference/beta/resources/sensitivetype.md new file mode 100644 index 00000000000..84919c9d912 --- /dev/null +++ b/api-reference/beta/resources/sensitivetype.md @@ -0,0 +1,70 @@ +--- +title: "sensitiveType resource type" +description: "Represents information about a sensitive information type used to classify content." +author: "vipulyadav" +ms.date: 07/18/2025 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# sensitiveType resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents information about a sensitive information type (SIT) used to classify content. + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|classificationMethod|[classificationMethod](enums.md#classificationmethod-values)|The classification method. The possible values are: `patternMatch`, `exactDataMatch`, `fingerprint`, `machineLearning`, `privacyDataMatch`, `aiPowered`, `unknownFutureValue`. `privacyDataMatch` performs privacy data matching based on tenant data. `aiPowered` performs AI-powered classification and can benefit from supported caller-supplied embeddings. `unknownFutureValue` is an evolvable enumeration sentinel value. Don't use it.| +|description|String|The description of the sensitive information type.| +|id|String|The unique identifier for the sensitive information type. Inherited from [entity](../resources/entity.md).| +|lastModifiedDateTime|DateTimeOffset|The date and time when the sensitive information type was last modified.| +|name|String|The name of the sensitive information type.| +|publisherName|String|The name of the publisher.| +|rulePackageId|String|The identifier of the rule package.| +|rulePackageType|String|The type of the rule package.| +|scope|[sensitiveTypeScope](enums.md#sensitivetypescope-values)|The scope of the sensitive information type. The possible values are: `fullDocument`, `partialDocument`.| +|sensitiveTypeSource|[sensitiveTypeSource](enums.md#sensitivetypesource-values)|The source of sensitive type. The possible values are: `outOfBox`, `tenant`.| +|state|String|The state of the sensitive information type.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + + +``` json +{ + "@odata.type": "#microsoft.graph.sensitiveType", + "id": "String (identifier)", + "name": "String", + "description": "String", + "rulePackageId": "String", + "rulePackageType": "String", + "publisherName": "String", + "state": "String", + "scope": "String", + "sensitiveTypeSource": "String", + "classificationMethod": "String", + "lastModifiedDateTime": "String (timestamp)" +} +``` diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 9ef13f49736..11bb4d41f8e 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -2929,9 +2929,10 @@ "resources": [ "contentActivity", "microsoft.graph.security.sensitivityLabel", + "sensitiveType", "tenantDataSecurityAndGovernance", - "userDataSecurityAndGovernance", - "textClassificationRequest" + "textClassificationRequest", + "userDataSecurityAndGovernance" ], "complexTypes": [ "aiAgentInfo", diff --git a/changelog/Microsoft.DataClassificationService.json b/changelog/Microsoft.DataClassificationService.json index 520cac67d27..54bca216fe5 100644 --- a/changelog/Microsoft.DataClassificationService.json +++ b/changelog/Microsoft.DataClassificationService.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "0ce048fe-8751-4864-bbb6-eba9552614dd", + "ApiChange": "Member", + "ChangedApiName": "privacyDataMatch", + "ChangeType": "Addition", + "Description": "Added the `privacyDataMatch` member to the **classificationMethod** enumeration for the **sensitiveType** resource to support privacy data matching based on tenant data.", + "Target": "classificationMethod" + }, + { + "Id": "0ce048fe-8751-4864-bbb6-eba9552614dd", + "ApiChange": "Member", + "ChangedApiName": "aiPowered", + "ChangeType": "Addition", + "Description": "Added the `aiPowered` member to the **classificationMethod** enumeration for the **sensitiveType** resource to support AI-powered classification that can benefit from supported caller-supplied embeddings.", + "Target": "classificationMethod" + }, + { + "Id": "0ce048fe-8751-4864-bbb6-eba9552614dd", + "ApiChange": "Member", + "ChangedApiName": "unknownFutureValue", + "ChangeType": "Addition", + "Description": "Added the `unknownFutureValue` member to the **classificationMethod** enumeration for the **sensitiveType** resource to support forward-compatible handling of future values.", + "Target": "classificationMethod" + } + ], + "Id": "0ce048fe-8751-4864-bbb6-eba9552614dd", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-11T19:48:46.3390947Z", + "WorkloadArea": "Security", + "SubArea": "Data security and compliance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index d9072f853ba..6062211e494 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -161,6 +161,7 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] ### Security | Data security and compliance +- Added the `privacyDataMatch`, `aiPowered`, and `unknownFutureValue` members to the **classificationMethod** enumeration for the [sensitiveType](/graph/api/resources/sensitivetype?view=graph-rest-beta&preserve-view=true) resource. These members support privacy data matching based on tenant data, AI-powered classification that can benefit from supported caller-supplied embeddings, and forward-compatible handling of future values. - Replaced the **offsetChunks** property and **embeddingOffsetChunk** resource type with the **chunkOffsets** property and [chunkOffsets](/graph/api/resources/chunkoffsets?view=graph-rest-beta&preserve-view=true) complex type in [embeddingInput](/graph/api/resources/embeddinginput?view=graph-rest-beta&preserve-view=true). Use **chunkOffsets** to associate precomputed embedding vectors with their source text ranges by using base64-encoded start positions and lengths. ### Teamwork and communications | Calls and online meetings From 631c04e70282c969dcaa511547645bbc1a96346c Mon Sep 17 00:00:00 2001 From: lieric-msft <140449234+lieric-msft@users.noreply.github.com> Date: Fri, 11 Sep 2026 17:38:10 -0400 Subject: [PATCH 131/189] docs: Promote managerApplications to v1.0 (#29494) * docs: add managerApplications to agentIdentity Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: add managerApplications to agentIdentityBlueprintPrincipal Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: record managerApplications v1.0 promotion Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: announce managerApplications v1.0 promotion Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * fixes * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> --- api-reference/v1.0/resources/agentidentity.md | 6 ++++- .../agentidentityblueprintprincipal.md | 6 ++++- changelog/Microsoft.DirectoryServices.json | 26 +++++++++++++++++++ concepts/whats-new-overview.md | 2 ++ 4 files changed, 38 insertions(+), 2 deletions(-) diff --git a/api-reference/v1.0/resources/agentidentity.md b/api-reference/v1.0/resources/agentidentity.md index 879bdaaf263..29daf15dfaa 100644 --- a/api-reference/v1.0/resources/agentidentity.md +++ b/api-reference/v1.0/resources/agentidentity.md @@ -2,7 +2,7 @@ title: "agentIdentity resource type" description: "Represents an agent identity in a directory. An agent identity is a specialized type of service principal that represents automated agents or services that can perform actions on behalf of Agent Identity Blueprint or users within the Microsoft Entra ID ecosystem." author: "zallison22" -ms.date: 02/26/2026 +ms.date: 08/26/2026 ms.localizationpriority: medium ms.subservice: "entra-agent-id" doc_type: resourcePageType @@ -68,6 +68,7 @@ This resource is an open type that allows additional properties beyond those doc |disabledByMicrosoftStatus|String|Specifies whether Microsoft has disabled the registered Agent Identity Blueprint. The possible values are: `null` (default value), `NotDisabled`, and `DisabledDueToViolationOfServicesAgreement` (reasons may include suspicious, abusive, or malicious activity, or a violation of the Microsoft Services Agreement). Inherited from [servicePrincipal](../resources/serviceprincipal.md).| |displayName|String|The display name for the agent identity. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| |id|String|The unique identifier for the agent identity. Inherited from [directoryObject](../resources/directoryobject.md). Key. Not nullable. Read-only. Inherited from [entity](../resources/entity.md).| +|managerApplications|Guid collection|The collection of application IDs designated as managers of this agent identity's backing [agentIdentityBlueprint](../resources/agentidentityblueprint.md). Read-only; the value is server-managed and reflects the **managerApplications** of the backing agentIdentityBlueprint. To change the managers, an owner or administrator must update the **managerApplications** property on the backing agentIdentityBlueprint **in the tenant where it's registered**. For multitenant agent identity blueprints, admins in a tenant where the blueprint is only consumed can't make this change — they must ask an owner or administrator in the blueprint's home tenant. Not nullable. Returned only on `$select`.| |servicePrincipalType|String|Set to __ServiceIdentity__ for all agent identities. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| |tags|String collection|Custom strings that can be used to categorize and identify the agent identity. Not nullable. The value is the union of strings set here and on the associated Agent Identity Blueprint entity's **tags** property. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| @@ -103,6 +104,9 @@ The following JSON representation shows the resource type. Only a subset of all "createdDateTime": "String (timestamp)", "disabledByMicrosoftStatus": "String", "displayName": "String", + "managerApplications": [ + "Guid" + ], "servicePrincipalType": "String", "tags": [ "String" diff --git a/api-reference/v1.0/resources/agentidentityblueprintprincipal.md b/api-reference/v1.0/resources/agentidentityblueprintprincipal.md index efff1610418..0529e4728f2 100644 --- a/api-reference/v1.0/resources/agentidentityblueprintprincipal.md +++ b/api-reference/v1.0/resources/agentidentityblueprintprincipal.md @@ -2,7 +2,7 @@ title: "agentIdentityBlueprintPrincipal resource type" description: "Represents an agent identity blueprint principal in a directory. An Agent Identity Blueprint principal is a specialized service principal that serves as the parent blueprint for creating agent identity instances within the Microsoft Entra ID ecosystem." author: "zallison22" -ms.date: 04/16/2026 +ms.date: 08/26/2026 ms.localizationpriority: medium ms.subservice: "entra-agent-id" doc_type: resourcePageType @@ -73,6 +73,7 @@ This resource is an open type that allows additional properties beyond those doc |displayName|String|The display name for the agent identity blueprint principal. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| |id|String|The unique identifier for the agent identity blueprint principal. Inherited from [entity](../resources/entity.md). Key. Not nullable. Read-only.| |info|[informationalUrl](../resources/informationalurl.md)|Basic profile information of the acquired application such as app's marketing, support, terms of service and privacy statement URLs. The terms of service and privacy statement are surfaced to users through the user consent experience. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| +|managerApplications|Guid collection|The collection of application IDs designated as managers of this agent identity blueprint principal's backing [agentIdentityBlueprint](../resources/agentidentityblueprint.md). Read-only; the value is server-managed and reflects the **managerApplications** of the backing agentIdentityBlueprint. To change the managers, an owner or administrator must update the **managerApplications** property on the backing agentIdentityBlueprint **in the tenant where it's registered**. For multitenant agent identity blueprints, admins in a tenant where the blueprint is only consumed can't make this change — they must ask an owner or administrator in the blueprint's home tenant. Not nullable. Returned only on `$select`.| |publishedPermissionScopes|[permissionScope](../resources/permissionscope.md) collection|The delegated permissions exposed by the application. For more information, see the **oauth2PermissionScopes** property on the agent identity blueprint entity's **api** property. Not nullable. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| |publisherName|String|The name of the Microsoft Entra tenant that published the application. Inherited from [servicePrincipal](../resources/serviceprincipal.md).| |servicePrincipalNames|String collection|Contains the list of **identifiersUris**, copied over from the associated agent identity blueprint. More values can be added to hybrid agent identity blueprint. These values can be used to identify the permissions exposed by this app within Microsoft Entra ID. Not nullable. **Property blocked on Agent Identity Blueprint Principal.** Inherited from [servicePrincipal](../resources/serviceprincipal.md).| @@ -134,6 +135,9 @@ The following JSON representation shows the resource type. Only a subset of all "info": { "@odata.type": "microsoft.graph.informationalUrl" }, + "managerApplications": [ + "Guid" + ], "publishedPermissionScopes": [ { "@odata.type": "microsoft.graph.permissionScope" diff --git a/changelog/Microsoft.DirectoryServices.json b/changelog/Microsoft.DirectoryServices.json index 85b2363ee5b..a05cadd0201 100644 --- a/changelog/Microsoft.DirectoryServices.json +++ b/changelog/Microsoft.DirectoryServices.json @@ -44,6 +44,32 @@ "WorkloadArea": "Applications", "SubArea": "Application management" }, + { + "ChangeList": [ + { + "Id": "c35e45d4-3a8f-487a-bff1-d913edc8fa3f", + "ApiChange": "Property", + "ChangedApiName": "managerApplications", + "ChangeType": "Addition", + "Description": "Added the **managerApplications** property to the [agentIdentity](https://learn.microsoft.com/en-us/graph/api/resources/agentidentity?view=graph-rest-1.0) resource.", + "Target": "agentIdentity" + }, + { + "Id": "c35e45d4-3a8f-487a-bff1-d913edc8fa3f", + "ApiChange": "Property", + "ChangedApiName": "managerApplications", + "ChangeType": "Addition", + "Description": "Added the **managerApplications** property to the [agentIdentityBlueprintPrincipal](https://learn.microsoft.com/en-us/graph/api/resources/agentidentityblueprintprincipal?view=graph-rest-1.0) resource.", + "Target": "agentIdentityBlueprintPrincipal" + } + ], + "Id": "c35e45d4-3a8f-487a-bff1-d913edc8fa3f", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-27T20:28:39.6387385Z", + "WorkloadArea": "Identity and access", + "SubArea": "Directory management" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 6062211e494..b6cf7600783 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -82,6 +82,8 @@ Updated the [getAllRetainedMessages](/graph/api/channel-getallretainedmessages?v ### Identity and access | Directory management +- Added the **managerApplications** property to the [agentIdentity](/graph/api/resources/agentidentity) and [agentIdentityBlueprintPrincipal](/graph/api/resources/agentidentityblueprintprincipal) resources to identify the applications that manage the backing agent identity blueprint. + Added the [recovery](/graph/api/resources/entrarecoveryservices-recovery) resource type and related methods to programmatically recover critical Microsoft Entra directory objects from automatically created point-in-time snapshots. Use these APIs to inspect available snapshots, preview and scope changes before restoration, run recovery jobs, monitor progress, and review failed changes. ### Identity and access | Governance From 13cdafc4c22643a805bedf2d8516dd1c2638d30e Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Fri, 11 Sep 2026 15:38:24 -0600 Subject: [PATCH 132/189] Update reference TOC (#29573) Co-authored-by: Microsoft Graph DevX Tooling From deb486b14772fbebe9d8d118df6c70bd1ad69664 Mon Sep 17 00:00:00 2001 From: Erik Reitan Date: Mon, 14 Sep 2026 20:38:57 -0700 Subject: [PATCH 133/189] Update title and description for personalization control (#29580) * Update title and description for personalization control * Update control-enhanced-personalization-privacy.md * Revise Copilot memory and recommendations section Updated links and clarified features related to Copilot memory and personalized recommendations. --- ...ontrol-enhanced-personalization-privacy.md | 20 ++++++++++--------- 1 file changed, 11 insertions(+), 9 deletions(-) diff --git a/concepts/control-enhanced-personalization-privacy.md b/concepts/control-enhanced-personalization-privacy.md index 33434b8cf11..050a2876817 100644 --- a/concepts/control-enhanced-personalization-privacy.md +++ b/concepts/control-enhanced-personalization-privacy.md @@ -1,30 +1,32 @@ --- -title: "Microsoft 365 Copilot enhanced personalization control | Microsoft Learn." -description: "Looking to learn about Microsoft 365 Copilot enhanced personalization? Learn what it is, and how to control it respecting your privacy through Microsoft Learn." +title: "Microsoft Copilot enhanced personalization control | Microsoft Learn." +description: "Looking to learn about Microsoft Copilot enhanced personalization? Learn what it is, and how to control it respecting your privacy through Microsoft Learn." author: "Ross-GH" ms.author: "rossav" ms.subservice: "microsoft-365-copilot" ms.topic: overview ms.date: 04/03/2025 -#customer intent: As an M365 User, I want to understand the Enhanced Personalization control so that I can make an informed choice on the impact of keeping it enabled, or disabling it to my Microsoft 365 Copilot experience. +#customer intent: As an M365 User, I want to understand the Enhanced Personalization control so that I can make an informed choice on the impact of keeping it enabled, or disabling it to my Microsoft Copilot experience. --- # Enhanced personalization control overview -Microsoft 365 Copilot can become personalized to each user, aiding them in their day-to-day tasks by understanding their work knowledge on an individual level, including from their communications. Tenant administrators, such as the Global Administrator role, and users through requests to their tenant administrators, use the enhanced personalization control to manage this personalization. +Microsoft Copilot can become personalized to each user, aiding them in their day-to-day tasks by understanding their work knowledge on an individual level, including from their communications, Microsoft 365 work data, usage signals, and profile information. Tenant administrators, such as the Global Administrator role, and users through requests to their tenant administrators, use the enhanced personalization control to manage this personalization. -Understand how Microsoft 365 Copilot achieves greater personalization through various features when enhanced personalization is enabled. How your privacy is maintained, and how to control the use of enhanced personalization for Microsoft 365 Copilot. +Understand how Microsoft Copilot achieves greater personalization through various features when enhanced personalization is enabled. How your privacy is maintained, and how to control the use of enhanced personalization for Microsoft Copilot. ## Data processing scenario -To provide a more personalized experience with Microsoft 365 Copilot. Microsoft, with consent provided from enabling this control, uses a user's private communication data connected to Microsoft 365, such as Microsoft Teams chats, Outlook emails, Microsoft transcripts, and from connectors. This data is used solely to make the individual user's tools more efficient and personalized to them. It's important to note that this information remains confidential and is not shared with other users, ensuring user privacy. The option to disable all linked features for the tenant or a group of users through this scenario control is available anytime, causing Microsoft to cease using a user's data for this purpose. In some cases, this renders a feature disabled for use, such as Copilot memory, which is dependent on this data processing scenario. +To provide a more personalized experience with Microsoft Copilot. Microsoft, with consent provided from enabling this control, uses a user's private communication data connected to Microsoft 365, such as Microsoft Teams chats, Outlook emails, Microsoft transcripts, Microsoft 365 usage data, user profile information such as role, and data from connectors. This data is used solely to make the individual user's tools more efficient and personalized to them. It's important to note that this information remains confidential and is not shared with other users, ensuring user privacy. The option to disable all linked features for the tenant or a group of users through this scenario control is available anytime, causing Microsoft to cease using a user's data for this purpose. In some cases, this renders a feature disabled for use, such as Copilot memory, which is dependent on this data processing scenario. -## Products controlled by enhanced personalization +## Features controlled by enhanced personalization -- [Copilot memory](https://go.microsoft.com/fwlink/?linkid=2323887) +**[Copilot memory](/microsoft-365/copilot/copilot-personalization-memory)** - Memory and personalization make Copilot personalized to you and your work. Copilot learns how you work and understands your needs and preferences through your chats, job profile, custom instructions, and more. + +**Personalized recommendations** - Microsoft Copilot users who have Copilot memory enabled can discover capabilities through personalized recommendations tailored to their role, experience level, and previous interactions. Examples include recommending relevant Copilot capabilities based on a user’s role, adjusting recommendations to the user’s experience level, and using previous Copilot interactions to reduce generic or repetitive recommendations. ## Related content -- [Enhanced personalization](/graph/api/resources/enhancedpersonalizationsetting) \ No newline at end of file +- [Enhanced personalization](/graph/api/resources/enhancedpersonalizationsetting) From f0f4fd85fa139af4702ccc7b7128485f1fdc4b55 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 14 Sep 2026 21:40:21 -0700 Subject: [PATCH 134/189] Update reference TOC (#29586) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/toc/security/toc.yml | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/api-reference/beta/toc/security/toc.yml b/api-reference/beta/toc/security/toc.yml index e74b6afedb2..97a92f0a08f 100644 --- a/api-reference/beta/toc/security/toc.yml +++ b/api-reference/beta/toc/security/toc.yml @@ -648,6 +648,8 @@ items: href: ../../api/sensitivitylabel-get.md - name: Get usage rights included href: ../../api/usagerightsincluded-get.md + - name: Sensitive type + href: ../../resources/sensitivetype.md - name: Tenant data security and governance items: - name: Tenant data security and governance @@ -656,6 +658,8 @@ items: href: ../../api/tenantdatasecurityandgovernance-processcontent.md - name: Process content async href: ../../api/tenantdatasecurityandgovernance-processcontentasync.md + - name: Text classification request + href: ../../resources/textclassificationrequest.md - name: User data security and governance items: - name: User data security and governance @@ -664,8 +668,6 @@ items: href: ../../api/userprotectionscopecontainer-compute.md - name: Process content href: ../../api/userdatasecurityandgovernance-processcontent.md - - name: Text classification request - href: ../../resources/textclassificationrequest.md - name: Complex types items: - name: Activity metadata From 17d39cbc36e332d6f81b38bd17dfc27f8d15a769 Mon Sep 17 00:00:00 2001 From: KaichenZhang-MSFT Date: Tue, 15 Sep 2026 12:41:20 +0800 Subject: [PATCH 135/189] init commit (#29585) Co-authored-by: Kaichen Zhang --- concepts/cloudpc-troubleshoot-report-types.md | 1 - 1 file changed, 1 deletion(-) diff --git a/concepts/cloudpc-troubleshoot-report-types.md b/concepts/cloudpc-troubleshoot-report-types.md index 5883da2ecc3..6a79d53a2c7 100644 --- a/concepts/cloudpc-troubleshoot-report-types.md +++ b/concepts/cloudpc-troubleshoot-report-types.md @@ -379,7 +379,6 @@ The following table lists the mandatory filter parameters for user and device re | CloudPCId | The unique identifier of the Cloud PC. | | ManagedDeviceName | The name of the managed device. | | UPN | The User Principal Name of the user. | -| UserId | The unique identifier of the user. | | EventDateTime | The date and time when the event occurred. | | HealthPercentage | The health percentage of Cloud PC systems. | From 4624d00eb448d1b767d958a6aad6f5838e097ffb Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 14 Sep 2026 21:41:56 -0700 Subject: [PATCH 136/189] Update generated permissions tables with build 240803 (#29583) Co-authored-by: Microsoft Graph DevX Tooling --- ...accessgroup-list-assignmentschedulerequests-permissions.md | 4 ++-- ...signmentschedulerequest-filterbycurrentuser-permissions.md | 4 ++-- ...gedaccessgroupassignmentschedulerequest-get-permissions.md | 4 ++-- ...accessgroup-list-assignmentschedulerequests-permissions.md | 4 ++-- ...signmentschedulerequest-filterbycurrentuser-permissions.md | 4 ++-- ...gedaccessgroupassignmentschedulerequest-get-permissions.md | 4 ++-- 6 files changed, 12 insertions(+), 12 deletions(-) diff --git a/api-reference/beta/includes/permissions/privilegedaccessgroup-list-assignmentschedulerequests-permissions.md b/api-reference/beta/includes/permissions/privilegedaccessgroup-list-assignmentschedulerequests-permissions.md index 3d45a9bca4c..8928c4bdca0 100644 --- a/api-reference/beta/includes/permissions/privilegedaccessgroup-list-assignmentschedulerequests-permissions.md +++ b/api-reference/beta/includes/permissions/privilegedaccessgroup-list-assignmentschedulerequests-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|PrivilegedAssignmentSchedule.Read.AzureADGroup|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup| +|Delegated (work or school account)|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|PrivilegedAssignmentSchedule.Read.AzureADGroup|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup| +|Application|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup|Not available.| diff --git a/api-reference/beta/includes/permissions/privilegedaccessgroupassignmentschedulerequest-filterbycurrentuser-permissions.md b/api-reference/beta/includes/permissions/privilegedaccessgroupassignmentschedulerequest-filterbycurrentuser-permissions.md index 3d45a9bca4c..8928c4bdca0 100644 --- a/api-reference/beta/includes/permissions/privilegedaccessgroupassignmentschedulerequest-filterbycurrentuser-permissions.md +++ b/api-reference/beta/includes/permissions/privilegedaccessgroupassignmentschedulerequest-filterbycurrentuser-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|PrivilegedAssignmentSchedule.Read.AzureADGroup|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup| +|Delegated (work or school account)|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|PrivilegedAssignmentSchedule.Read.AzureADGroup|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup| +|Application|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup|Not available.| diff --git a/api-reference/beta/includes/permissions/privilegedaccessgroupassignmentschedulerequest-get-permissions.md b/api-reference/beta/includes/permissions/privilegedaccessgroupassignmentschedulerequest-get-permissions.md index 3d45a9bca4c..8928c4bdca0 100644 --- a/api-reference/beta/includes/permissions/privilegedaccessgroupassignmentschedulerequest-get-permissions.md +++ b/api-reference/beta/includes/permissions/privilegedaccessgroupassignmentschedulerequest-get-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|PrivilegedAssignmentSchedule.Read.AzureADGroup|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup| +|Delegated (work or school account)|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|PrivilegedAssignmentSchedule.Read.AzureADGroup|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup| +|Application|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup|Not available.| diff --git a/api-reference/v1.0/includes/permissions/privilegedaccessgroup-list-assignmentschedulerequests-permissions.md b/api-reference/v1.0/includes/permissions/privilegedaccessgroup-list-assignmentschedulerequests-permissions.md index 3d45a9bca4c..8928c4bdca0 100644 --- a/api-reference/v1.0/includes/permissions/privilegedaccessgroup-list-assignmentschedulerequests-permissions.md +++ b/api-reference/v1.0/includes/permissions/privilegedaccessgroup-list-assignmentschedulerequests-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|PrivilegedAssignmentSchedule.Read.AzureADGroup|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup| +|Delegated (work or school account)|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|PrivilegedAssignmentSchedule.Read.AzureADGroup|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup| +|Application|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup|Not available.| diff --git a/api-reference/v1.0/includes/permissions/privilegedaccessgroupassignmentschedulerequest-filterbycurrentuser-permissions.md b/api-reference/v1.0/includes/permissions/privilegedaccessgroupassignmentschedulerequest-filterbycurrentuser-permissions.md index 3d45a9bca4c..8928c4bdca0 100644 --- a/api-reference/v1.0/includes/permissions/privilegedaccessgroupassignmentschedulerequest-filterbycurrentuser-permissions.md +++ b/api-reference/v1.0/includes/permissions/privilegedaccessgroupassignmentschedulerequest-filterbycurrentuser-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|PrivilegedAssignmentSchedule.Read.AzureADGroup|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup| +|Delegated (work or school account)|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|PrivilegedAssignmentSchedule.Read.AzureADGroup|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup| +|Application|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup|Not available.| diff --git a/api-reference/v1.0/includes/permissions/privilegedaccessgroupassignmentschedulerequest-get-permissions.md b/api-reference/v1.0/includes/permissions/privilegedaccessgroupassignmentschedulerequest-get-permissions.md index 3d45a9bca4c..8928c4bdca0 100644 --- a/api-reference/v1.0/includes/permissions/privilegedaccessgroupassignmentschedulerequest-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/privilegedaccessgroupassignmentschedulerequest-get-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|PrivilegedAssignmentSchedule.Read.AzureADGroup|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup| +|Delegated (work or school account)|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|PrivilegedAssignmentSchedule.Read.AzureADGroup|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup| +|Application|PrivilegedAssignmentSchedule.ReadWrite.AzureADGroup|Not available.| From bf7a730d710787b0bc03c5e8a341b968a1bf69e8 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 14 Sep 2026 21:43:50 -0700 Subject: [PATCH 137/189] 2026-09-14: Automated permissions reference update (#29582) * Update permissions reference * Correct errors in permissions reference --------- Co-authored-by: Microsoft Graph DevX Tooling --- concepts/permissions-reference.md | 46 ++++++++++++++++++++++++++++++- 1 file changed, 45 insertions(+), 1 deletion(-) diff --git a/concepts/permissions-reference.md b/concepts/permissions-reference.md index 6e1776977a4..49e0c4a2377 100644 --- a/concepts/permissions-reference.md +++ b/concepts/permissions-reference.md @@ -7,7 +7,7 @@ ms.localizationpriority: high ms.topic: reference ms.subservice: entra-applications ms.custom: graphiamtop20, scenarios:getting-started -ms.date: 09/07/2026 +ms.date: 09/14/2026 #Customer intent: As a developer, I want to learn more about the permissions available in Microsoft Graph, so that I understand the impact of granting specific permissions to my app. --- @@ -4771,6 +4771,50 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000 --- +### LockboxRequest.Read.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | - | a368a3ce-713b-46d9-9c93-bb559acf38ca | +| DisplayText | - | Read lockbox requests | +| Description | - | Allows the app to read lockbox requests on behalf of the signed-in user | +| AdminConsentRequired | - | Yes | + +--- + +### LockboxRequest.ReadWrite.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | - | 524d6259-f823-43c4-964a-97e3b8ddb56c | +| DisplayText | - | Read and manage lockbox requests | +| Description | - | Allows the app to read and manage lockbox requests on behalf of the signed-in user | +| AdminConsentRequired | - | Yes | + +--- + +### LockboxSettings.Read.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | - | 2ea429a7-d1fa-4f96-b451-e91ecc5e5fe2 | +| DisplayText | - | Read lockbox settings | +| Description | - | Allows the app to read lockbox configuration settings on behalf of the signed-in user | +| AdminConsentRequired | - | Yes | + +--- + +### LockboxSettings.ReadWrite.All + +| Category | Application | Delegated | +|--|--|--| +| Identifier | - | bdc52289-9ed7-4339-83ab-772ae618713c | +| DisplayText | - | Read and write lockbox settings | +| Description | - | Allows the app to read and modify lockbox configuration settings on behalf of the signed-in user | +| AdminConsentRequired | - | Yes | + +--- + ### Mail-Advanced.ReadWrite | Category | Application | Delegated | From cb1247e8f343bcf7a3124d34559764f517c85184 Mon Sep 17 00:00:00 2001 From: shreyassinghmsft Date: Tue, 15 Sep 2026 10:15:11 +0530 Subject: [PATCH 138/189] Add doc changes for fileStorageContainers userObjectId based filtering (#29522) * add doc changes for oid based filtering * minor change * fix duplicate name issue * address copilot comments * address copilot comments * Fix sharepointIds casing in getByUser example Co-authored-by: shreyassinghmsft <286429208+shreyassinghmsft@users.noreply.github.com> * Make request block names unique per example Co-authored-by: shreyassinghmsft <286429208+shreyassinghmsft@users.noreply.github.com> * Apply suggestion from @Danipocket * fixes * Apply suggestion from @Danipocket * Fix unclosed tab group in filestoragecontainer-getbyuser.md Example 2 Co-authored-by: shreyassinghmsft <286429208+shreyassinghmsft@users.noreply.github.com> --------- Co-authored-by: Shreyash Singh Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: shreyassinghmsft <286429208+shreyassinghmsft@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../api/filestoragecontainer-getbyuser.md | 61 +++++++++++++++++-- changelog/Microsoft.FileServices.json | 18 ++++++ concepts/whats-new-overview.md | 4 ++ 3 files changed, 79 insertions(+), 4 deletions(-) diff --git a/api-reference/beta/api/filestoragecontainer-getbyuser.md b/api-reference/beta/api/filestoragecontainer-getbyuser.md index 5ec967f662c..5eb48a1b04d 100644 --- a/api-reference/beta/api/filestoragecontainer-getbyuser.md +++ b/api-reference/beta/api/filestoragecontainer-getbyuser.md @@ -38,6 +38,8 @@ Choose the permission or permissions marked as least privileged for this API. Us ``` http GET /storage/fileStorage/containers/getByUser(userPrincipalName='{userPrincipalName}') GET /storage/fileStorage/containers/getByUser(userPrincipalName='{userPrincipalName}', role='{role}') +GET /storage/fileStorage/containers/getByUser(userObjectId={userObjectId}) +GET /storage/fileStorage/containers/getByUser(userObjectId={userObjectId}, role='{role}') ``` ## Function parameters @@ -45,9 +47,12 @@ In the request URL, provide the following query parameters with values. |Parameter|Type|Description| |:---|:---|:---| -|`userPrincipalName`|String|The user principal name of the user whose containers are being fetched. Required.| +|`userPrincipalName`|String|The user principal name of the user whose containers are being fetched. Required when `userObjectId` isn't specified.| +|`userObjectId`|Guid|The Microsoft Entra user object ID of the user whose containers are being fetched. Required when `userPrincipalName` isn't specified.| |`role`|String|The user's role in the container. Allowed values are `owner` and `principalOwner`. Optional.| +**NOTE:** You must provide either `userPrincipalName` or `userObjectId`. + ## Request headers @@ -65,13 +70,15 @@ If successful, this function returns a `200 OK` response code and a [fileStorage ## Examples -### Request +### Example 1: Get fileStorageContainers by User Principal Name + +#### Request The following example shows a request. # [HTTP](#tab/http) ``` http @@ -104,7 +111,53 @@ GET https://graph.microsoft.com/beta/storage/fileStorage/containers/getByUser(us --- -### Response +#### Response + +The following example shows the response. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#storage/fileStorage/containers", + "@odata.count": 1, + "value": [ + { + "@odata.type": "#microsoft.graph.fileStorageContainer", + "id": "b!ISJs1WRro0y0EWgkUYcktDa0mE8zSlFEqFzqRn70Zwp1CEtDEBZgQICPkRbil_5Z", + "displayName": "My File Storage Container", + "containerTypeId": "e2756c4d-fa33-4452-9c36-2325686e1082", + "createdDateTime": "2021-11-24T15:41:52.347Z", + "ownershipType": "userOwned", + "settings": { + "isOcrEnabled": false + } + } + ] +} +``` + +### Example 2: Get fileStorageContainers by User Object ID + +#### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/beta/storage/fileStorage/containers/getByUser(userObjectId=12345678-1234-1234-1234-123456789012, role='principalOwner') +``` + +#### Response The following example shows the response. +```json +{ + "String": "String" +} +``` diff --git a/api-reference/beta/resources/workspace.md b/api-reference/beta/resources/workspace.md index b5050ab025f..3d4eac9ff1c 100644 --- a/api-reference/beta/resources/workspace.md +++ b/api-reference/beta/resources/workspace.md @@ -2,7 +2,7 @@ title: "workspace resource type" description: "Represents a collection of desks." author: tiwarisakshi02 -ms.date: 06/11/2025 +ms.date: 08/31/2026 ms.localizationpriority: medium ms.subservice: outlook doc_type: resourcePageType @@ -27,6 +27,7 @@ For the list of supported methods, see [place](./place.md). |address|[physicalAddress](./physicaladdress.md)|The physical address of the **workspace**, including the street, city, state, country or region, and postal code. Inherited from [place](./place.md).| |building |String |The name or identifier of the building where the **workspace** is located. | |capacity|Int32|The maximum number of individual desks within a **workspace**. | +|customProperties|[stringDictionary](../resources/stringdictionary.md)|Custom properties for the **workspace**. Each property has a string key and a string value. Inherited from [place](./place.md). Nullable.| |displayDeviceName|String|The name of the display device (for example, `monitor` or `projector`) that is available in the **workspace**.| |displayName|String|The name that is associated with the **workspace**. Inherited from [place](./place.md).| |emailAddress|String|The email address that is associated with the **workspace**. This email address is used for booking.| @@ -36,6 +37,7 @@ For the list of supported methods, see [place](./place.md). |id|String|The unique identifier for the **workspace**. Read-only. This identifier isn't immutable and can change if the mailbox or tenant configuration changes. Inherited from [place](./place.md). | |isWheelChairAccessible|Boolean|Indicates whether the **workspace** is wheelchair accessible. Inherited from [place](./place.md).| |label |String |User-defined description of the **workspace**. Inherited from [place](../resources/place.md).| +|lastUpdatedTime|DateTimeOffset|The date and time when the **workspace** was last updated. The timestamp is in ISO 8601 format and is always in UTC. Inherited from [place](./place.md). Read-only. Nullable.| |mode|[placeMode](./placemode.md) |The mode for a **workspace**. The supported modes are:
  • [reservablePlaceMode](./reservableplacemode.md) - Workspaces that can be booked in advance using desk pool reservation tools.
  • [dropInPlaceMode](./dropinplacemode.md) - First come, first served desks. When you plug into a peripheral on one of these desks in the workspace, the desk is booked for you, assuming that the peripheral has been associated with the desk in the Microsoft Teams Rooms pro management portal.
  • [unavailablePlaceMode](./unavailableplacemode.md) - Workspaces that are taken down for maintenance or marked as not reservable.
| |nickname|String|A short, friendly name for the **workspace**, often used for easier identification or display in the UI. | |parentId|String|The ID of a parent [section](./section.md). Inherited from [place](./place.md). | @@ -64,6 +66,7 @@ The following JSON representation shows the resource type. "address": {"@odata.type": "microsoft.graph.physicalAddress"}, "building": "String", "capacity": "Int32", + "customProperties": {"String": "String"}, "displayDeviceName": "String", "displayName": "String", "emailAddress": "String", @@ -73,6 +76,7 @@ The following JSON representation shows the resource type. "id": "String (identifier)", "isWheelChairAccessible": "Boolean", "label": "String", + "lastUpdatedTime": "String (timestamp)", "mode": {"@odata.type": "microsoft.graph.placeMode"}, "nickname": "String", "parentId": "String", @@ -81,4 +85,3 @@ The following JSON representation shows the resource type. "tags": ["String"] } ``` - diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 11bb4d41f8e..c3395a2f6b9 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -360,7 +360,8 @@ "unavailablePlaceMode", "resourceLink", "placeExecutionResult", - "placeOperationProgress" + "placeOperationProgress", + "stringDictionary" ], "childNodes": [ { diff --git a/changelog/Microsoft.Exchange.Places.json b/changelog/Microsoft.Exchange.Places.json index cca3447ed0a..495181deef0 100644 --- a/changelog/Microsoft.Exchange.Places.json +++ b/changelog/Microsoft.Exchange.Places.json @@ -1,1194 +1,1236 @@ -{ - "changelog": [ - { - "ChangeList": [ - { - "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", - "ApiChange": "Resource", - "ChangedApiName": "placeServicePlanInfo", - "ChangeType": "Addition", - "Description": "Added the [placeServicePlanInfo](https://learn.microsoft.com/en-us/graph/api/resources/placeserviceplaninfo?view=graph-rest-1.0) resource.", - "Target": "placeServicePlanInfo" - }, - { - "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", - "ApiChange": "Property", - "ChangedApiName": "servicePlans", - "ChangeType": "Addition", - "Description": "Added the **servicePlans** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-1.0) resource.", - "Target": "desk" - }, - { - "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", - "Target": "place" - }, - { - "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Change", - "Description": "Updated the **placeId** property on the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) base resource.", - "Target": "room" - }, - { - "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Change", - "Description": "Updated the **placeId** property on the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-1.0) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) base resource.", - "Target": "workspace" - } - ], - "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", - "Cloud": "Prod", - "Version": "v1.0", - "CreatedDateTime": "2026-07-17T00:00:00.0000000Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", - "ApiChange": "Resource", - "ChangedApiName": "placeServicePlanInfo", - "ChangeType": "Addition", - "Description": "Added the [placeServicePlanInfo](https://learn.microsoft.com/en-us/graph/api/resources/placeserviceplaninfo?view=graph-rest-beta) resource.", - "Target": "placeServicePlanInfo" - }, - { - "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", - "ApiChange": "Property", - "ChangedApiName": "servicePlans", - "ChangeType": "Addition", - "Description": "Added the **servicePlans** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-beta) resource.", - "Target": "desk" - }, - { - "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Change", - "Description": "Updated the **placeId** property on the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) base resource.", - "Target": "room" - }, - { - "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Change", - "Description": "Updated the **placeId** property on the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) base resource.", - "Target": "workspace" - } - ], - "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2026-07-08T06:18:39.7163201Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Enumeration", - "ChangedApiName": "placeFeatureEnablement", - "ChangeType": "Addition", - "Description": "Added the **placeFeatureEnablement** enumeration type.", - "Target": "placeFeatureEnablement" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Resource", - "ChangedApiName": "offlinePlaceMode", - "ChangeType": "Deletion", - "Description": "Removed the **offlinePlaceMode** resource.", - "Target": "offlinePlaceMode" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Resource", - "ChangedApiName": "unavailablePlaceMode", - "ChangeType": "Addition", - "Description": "Added the [unavailablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/unavailablePlaceMode?view=graph-rest-beta) resource.", - "Target": "unavailablePlaceMode" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Property", - "ChangedApiName": "wifiState", - "ChangeType": "Addition", - "Description": "Added the **wifiState** property to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", - "Target": "building" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Property", - "ChangedApiName": "heightAdjustableState", - "ChangeType": "Addition", - "Description": "Added the **heightAdjustableState** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-beta) resource.", - "Target": "desk" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Deletion", - "Description": "Removed the **placeId** property from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Property", - "ChangedApiName": "teamsEnabledState", - "ChangeType": "Addition", - "Description": "Added the **teamsEnabledState** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - } - ], - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2025-11-20T04:28:14.4935787Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "a1b2c3d4-e5f6-7890-abcd-ef1234567890", - "ApiChange": "Enum type", - "ChangedApiName": "wifi", - "ChangeType": "Change", - "Description": "Added the `wifi` member to the **workplaceSensorType** enumeration.", - "Target": "workplaceSensorType" - } - ], - "Id": "a1b2c3d4-e5f6-7890-abcd-ef1234567890", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2025-10-27T00:00:00.0000000Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", - "ApiChange": "Enum type", - "ChangedApiName": "workplaceSensorType", - "ChangeType": "Addition", - "Description": "Added the **workplaceSensorType** enumeration type.", - "Target": "workplaceSensorType" - }, - { - "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", - "ApiChange": "Resource", - "ChangedApiName": "workplaceSensor", - "ChangeType": "Addition", - "Description": "Added the [workplaceSensor](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensor?view=graph-rest-beta) resource type.", - "Target": "workplaceSensor" - }, - { - "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", - "ApiChange": "Resource", - "ChangedApiName": "workplaceSensorDevice", - "ChangeType": "Addition", - "Description": "Added the [workplaceSensorDevice](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDevice?view=graph-rest-beta) resource and supported methods", - "Target": "workplaceSensorDevice" - }, - { - "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", - "ApiChange": "Resource", - "ChangedApiName": "workplaceSensorDeviceTelemetry", - "ChangeType": "Addition", - "Description": "Added the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource type.", - "Target": "workplaceSensorDeviceTelemetry" - } - ], - "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2023-09-26T18:53:24.5258032Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "f685e2e7-e767-4dc2-b668-3516e9ccf8d5", - "ApiChange": "Relationship", - "ChangedApiName": "workspaces", - "ChangeType": "Addition", - "Description": "Added the **workspaces** relationship to the [roomList](https://learn.microsoft.com/en-us/graph/api/resources/roomList?view=graph-rest-beta) resource.", - "Target": "roomList" - }, - { - "Id": "f685e2e7-e767-4dc2-b668-3516e9ccf8d5", - "ApiChange": "Resource", - "ChangedApiName": "workspace", - "ChangeType": "Addition", - "Description": "Added the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - } - ], - "Id": "f685e2e7-e767-4dc2-b668-3516e9ccf8d5", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2022-08-10T18:49:04.1521461Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", - "ApiChange": "Resource", - "ChangedApiName": "room", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", - "ApiChange": "Resource", - "ChangedApiName": "workspace", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - }, - { - "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", - "ApiChange": "Resource", - "ChangedApiName": "roomList", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [roomList](https://learn.microsoft.com/en-us/graph/api/resources/roomlist?view=graph-rest-beta) resource.", - "Target": "roomList" - } - ], - "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2024-02-08T00:26:43.6656685Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "ApiChange": "Enumeration", - "ChangedApiName": "workplaceSensorEventType", - "ChangeType": "Addition", - "Description": "Added the **workplaceSensorEventType** enumeration type.", - "Target": "workplaceSensorEventType" - }, - { - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "ApiChange": "Member", - "ChangedApiName": "badge", - "ChangeType": "Addition", - "Description": "Added the `badge` member to the **workplaceSensorType** enumeration.", - "Target": "workplaceSensorType" - }, - { - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "ApiChange": "Member", - "ChangedApiName": "wifi", - "ChangeType": "Addition", - "Description": "Added the `wifi` member to the **workplaceSensorType** enumeration.", - "Target": "workplaceSensorType" - }, - { - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "ApiChange": "Property", - "ChangedApiName": "eventValue", - "ChangeType": "Addition", - "Description": "Added the **eventValue** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", - "Target": "workplaceSensorDeviceTelemetry" - }, - { - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "ApiChange": "Property", - "ChangedApiName": "locationHint", - "ChangeType": "Addition", - "Description": "Added the **locationHint** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", - "Target": "workplaceSensorDeviceTelemetry" - }, - { - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "ApiChange": "Resource", - "ChangedApiName": "workplaceSensorEventValue", - "ChangeType": "Addition", - "Description": "Added the [workplaceSensorEventValue](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorEventValue?view=graph-rest-beta) resource.", - "Target": "workplaceSensorEventValue" - } - ], - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "Cloud": "Review", - "Version": "beta", - "CreatedDateTime": "2024-05-10T21:07:51.9198392Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Enumeration", - "ChangedApiName": "workplaceSensorEventType", - "ChangeType": "Addition", - "Description": "Added the **workplaceSensorEventType** enumeration type.", - "Target": "workplaceSensorEventType" - }, - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Member", - "ChangedApiName": "badge", - "ChangeType": "Addition", - "Description": "Added the `badge` member to the **workplaceSensorType** enumeration.", - "Target": "workplaceSensorType" - }, - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Property", - "ChangedApiName": "eventValue", - "ChangeType": "Addition", - "Description": "Added the **eventValue** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", - "Target": "workplaceSensorDeviceTelemetry" - }, - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Property", - "ChangedApiName": "locationHint", - "ChangeType": "Addition", - "Description": "Added the **locationHint** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", - "Target": "workplaceSensorDeviceTelemetry" - }, - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Resource", - "ChangedApiName": "workplaceSensorEventValue", - "ChangeType": "Addition", - "Description": "Added the [workplaceSensorEventValue](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorEventValue?view=graph-rest-beta) resource.", - "Target": "workplaceSensorEventValue" - }, - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Resource", - "ChangedApiName": "emailIdentity", - "ChangeType": "Addition", - "Description": "Added the [emailIdentity](https://learn.microsoft.com/en-us/graph/api/resources/emailIdentity?view=graph-rest-beta) resource.", - "Target": "emailIdentity" - }, - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Resource", - "ChangedApiName": "identity", - "ChangeType": "Addition", - "Description": "Added the [identity](https://learn.microsoft.com/en-us/graph/api/resources/identity?view=graph-rest-beta) resource.", - "Target": "identity" - } - ], - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2024-08-12T10:16:22.3182957Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", - "ApiChange": "Enumeration", - "ChangedApiName": "checkInMethod", - "ChangeType": "Addition", - "Description": "Added the **checkInMethod** enumeration type.", - "Target": "checkInMethod" - }, - { - "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", - "ApiChange": "Resource", - "ChangedApiName": "checkInClaim", - "ChangeType": "Addition", - "Description": "Added the [checkInClaim](https://learn.microsoft.com/en-us/graph/api/resources/checkInClaim?view=graph-rest-beta) resource and associated methods.", - "Target": "checkInClaim" - }, - { - "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", - "ApiChange": "Relationship", - "ChangedApiName": "checkIns", - "ChangeType": "Addition", - "Description": "Added the **checkIns** relationship to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - } - ], - "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2025-09-11T01:41:37.6480761Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Enumeration", - "ChangedApiName": "resourceLinkType", - "ChangeType": "Addition", - "Description": "Added the **resourceLinkType** enumeration type.", - "Target": "resourceLinkType" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "placeMode", - "ChangeType": "Addition", - "Description": "Added the [placeMode](https://learn.microsoft.com/en-us/graph/api/resources/placeMode?view=graph-rest-beta) resource type.", - "Target": "placeMode" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "assignedPlaceMode", - "ChangeType": "Addition", - "Description": "Added the [assignedPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/assignedPlaceMode?view=graph-rest-beta) resource type.", - "Target": "assignedPlaceMode" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "dropInPlaceMode", - "ChangeType": "Addition", - "Description": "Added the [dropInPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/dropInPlaceMode?view=graph-rest-beta) resource type.", - "Target": "dropInPlaceMode" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "offlinePlaceMode", - "ChangeType": "Addition", - "Description": "Added the [offlinePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/offlinePlaceMode?view=graph-rest-beta) resource type.", - "Target": "offlinePlaceMode" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "reservablePlaceMode", - "ChangeType": "Addition", - "Description": "Added the [reservablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/reservablePlaceMode?view=graph-rest-beta) resource type.", - "Target": "reservablePlaceMode" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "mailboxDetails", - "ChangeType": "Addition", - "Description": "Added the [mailboxDetails](https://learn.microsoft.com/en-us/graph/api/resources/mailboxDetails?view=graph-rest-beta) resource type.", - "Target": "mailboxDetails" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "resourceLink", - "ChangeType": "Addition", - "Description": "Added the [resourceLink](https://learn.microsoft.com/en-us/graph/api/resources/resourceLink?view=graph-rest-beta) resource type.", - "Target": "resourceLink" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "building", - "ChangeType": "Addition", - "Description": "Added the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", - "Target": "building" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "desk", - "ChangeType": "Addition", - "Description": "Added the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-beta) resource.", - "Target": "desk" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "floor", - "ChangeType": "Addition", - "Description": "Added the [floor](https://learn.microsoft.com/en-us/graph/api/resources/floor?view=graph-rest-beta) resource.", - "Target": "floor" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "section", - "ChangeType": "Addition", - "Description": "Added the [section](https://learn.microsoft.com/en-us/graph/api/resources/section?view=graph-rest-beta) resource.", - "Target": "section" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "resourceLinks", - "ChangeType": "Addition", - "Description": "Added the **resourceLinks** property to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", - "Target": "building" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "isWheelChairAccessible", - "ChangeType": "Addition", - "Description": "Added the **isWheelChairAccessible** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "label", - "ChangeType": "Addition", - "Description": "Added the **label** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "parentId", - "ChangeType": "Addition", - "Description": "Added the **parentId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "tags", - "ChangeType": "Addition", - "Description": "Added the **tags** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "isTeamsEnabled", - "ChangeType": "Addition", - "Description": "Added the **isTeamsEnabled** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "displayDeviceName", - "ChangeType": "Addition", - "Description": "Added the **displayDeviceName** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "mode", - "ChangeType": "Addition", - "Description": "Added the **mode** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "isWheelChairAccessible", - "ChangeType": "Deletion", - "Description": "Removed the **isWheelChairAccessible** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "label", - "ChangeType": "Deletion", - "Description": "Removed the **label** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "tags", - "ChangeType": "Deletion", - "Description": "Removed the **tags** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "isWheelChairAccessible", - "ChangeType": "Deletion", - "Description": "Removed the **isWheelChairAccessible** property from the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "label", - "ChangeType": "Deletion", - "Description": "Removed the **label** property from the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "tags", - "ChangeType": "Deletion", - "Description": "Removed the **tags** property from the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Method", - "ChangedApiName": "descendants", - "ChangeType": "Addition", - "Description": "Added the [descendants](https://learn.microsoft.com/en-us/graph/api/place-descendants?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Method", - "ChangedApiName": "place", - "ChangeType": "Addition", - "Description": "Added the **create** operation to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Method", - "ChangedApiName": "place", - "ChangeType": "Addition", - "Description": "Added the [delete](https://learn.microsoft.com/en-us/graph/api/place-delete?view=graph-rest-beta) operation to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - } - ], - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2025-08-08T23:36:37.579824Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "importBuildingMapSetting", - "ChangeType": "Addition", - "Description": "Added the [importBuildingMapSetting](https://learn.microsoft.com/en-us/graph/api/resources/importBuildingMapSetting?view=graph-rest-beta) resource.", - "Target": "importBuildingMapSetting" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "baseMapFeature", - "ChangeType": "Addition", - "Description": "Added the [baseMapFeature](https://learn.microsoft.com/en-us/graph/api/resources/baseMapFeature?view=graph-rest-beta) resource.", - "Target": "baseMapFeature" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "buildingMap", - "ChangeType": "Addition", - "Description": "Added the [buildingMap](https://learn.microsoft.com/en-us/graph/api/resources/buildingMap?view=graph-rest-beta) resource and associated methods.", - "Target": "buildingMap" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "fixtureMap", - "ChangeType": "Addition", - "Description": "Added the [fixtureMap](https://learn.microsoft.com/en-us/graph/api/resources/fixtureMap?view=graph-rest-beta) resource and associated methods.", - "Target": "fixtureMap" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "footprintMap", - "ChangeType": "Addition", - "Description": "Added the [footprintMap](https://learn.microsoft.com/en-us/graph/api/resources/footprintMap?view=graph-rest-beta) resource and an associated method.", - "Target": "footprintMap" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "levelMap", - "ChangeType": "Addition", - "Description": "Added the [levelMap](https://learn.microsoft.com/en-us/graph/api/resources/levelMap?view=graph-rest-beta) resource and an associated method..", - "Target": "levelMap" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "sectionMap", - "ChangeType": "Addition", - "Description": "Added the [sectionMap](https://learn.microsoft.com/en-us/graph/api/resources/sectionMap?view=graph-rest-beta) resource and associated methods.", - "Target": "sectionMap" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "unitMap", - "ChangeType": "Addition", - "Description": "Added the [unitMap](https://learn.microsoft.com/en-us/graph/api/resources/unitMap?view=graph-rest-beta) resource and associated methods.", - "Target": "unitMap" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Method", - "ChangedApiName": "ingestMapFile", - "ChangeType": "Addition", - "Description": "Added the [ingestMapFile](https://learn.microsoft.com/en-us/graph/api/building-ingestMapFile?view=graph-rest-beta) method to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", - "Target": "building" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Relationship", - "ChangedApiName": "map", - "ChangeType": "Addition", - "Description": "Added the **map** relationship to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", - "Target": "building" - } - ], - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2025-09-09T23:36:37.579824Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Enumeration", - "ChangedApiName": "placeOperationStatus", - "ChangeType": "Addition", - "Description": "Added the **placeOperationStatus** enumeration type.", - "Target": "placeOperationStatus" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Resource", - "ChangedApiName": "placeExecutionResult", - "ChangeType": "Addition", - "Description": "Added the [placeExecutionResult](https://learn.microsoft.com/en-us/graph/api/resources/placeExecutionResult?view=graph-rest-beta) resource.", - "Target": "placeExecutionResult" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Resource", - "ChangedApiName": "placeOperationProgress", - "ChangeType": "Addition", - "Description": "Added the [placeOperationProgress](https://learn.microsoft.com/en-us/graph/api/resources/placeOperationProgress?view=graph-rest-beta) resource.", - "Target": "placeOperationProgress" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Relationship", - "ChangedApiName": "children", - "ChangeType": "Addition", - "Description": "Added the **children** relationship to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource and its derived types.", - "Target": "place" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Resource", - "ChangedApiName": "placeOperation", - "ChangeType": "Addition", - "Description": "Added the [placeOperation](https://learn.microsoft.com/en-us/graph/api/resources/placeOperation?view=graph-rest-beta) resource and associated methods.", - "Target": "placeOperation" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Method", - "ChangedApiName": "getOperation", - "ChangeType": "Addition", - "Description": "Added the [getOperation](https://learn.microsoft.com/en-us/graph/api/place-getOperation?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Method", - "ChangedApiName": "place", - "ChangeType": "Addition", - "Description": "Added the [Upsert places](https://learn.microsoft.com/en-us/graph/api/place-patch-places?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Method", - "ChangedApiName": "listOperations", - "ChangeType": "Addition", - "Description": "Added the [listOperations](https://learn.microsoft.com/en-us/graph/api/place-listOperations?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - } - ], - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2025-12-09T05:36:40.1956456Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Enumeration", - "ChangedApiName": "resourceLinkType", - "ChangeType": "Addition", - "Description": "Added the **resourceLinkType** enumeration type.", - "Target": "resourceLinkType" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "assignedPlaceMode", - "ChangeType": "Addition", - "Description": "Added the [assignedPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/assignedPlaceMode?view=graph-rest-1.0) resource.", - "Target": "assignedPlaceMode" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "dropInPlaceMode", - "ChangeType": "Addition", - "Description": "Added the [dropInPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/dropInPlaceMode?view=graph-rest-1.0) resource.", - "Target": "dropInPlaceMode" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "importBuildingMapSetting", - "ChangeType": "Addition", - "Description": "Added the [importBuildingMapSetting](https://learn.microsoft.com/en-us/graph/api/resources/importBuildingMapSetting?view=graph-rest-1.0) resource.", - "Target": "importBuildingMapSetting" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "mailboxDetails", - "ChangeType": "Addition", - "Description": "Added the [mailboxDetails](https://learn.microsoft.com/en-us/graph/api/resources/mailboxDetails?view=graph-rest-1.0) resource.", - "Target": "mailboxDetails" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "placeMode", - "ChangeType": "Addition", - "Description": "Added the [placeMode](https://learn.microsoft.com/en-us/graph/api/resources/placeMode?view=graph-rest-1.0) resource.", - "Target": "placeMode" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "reservablePlaceMode", - "ChangeType": "Addition", - "Description": "Added the [reservablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/reservablePlaceMode?view=graph-rest-1.0) resource.", - "Target": "reservablePlaceMode" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "resourceLink", - "ChangeType": "Addition", - "Description": "Added the [resourceLink](https://learn.microsoft.com/en-us/graph/api/resources/resourceLink?view=graph-rest-1.0) resource.", - "Target": "resourceLink" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "baseMapFeature", - "ChangeType": "Addition", - "Description": "Added the [baseMapFeature](https://learn.microsoft.com/en-us/graph/api/resources/baseMapFeature?view=graph-rest-1.0) resource.", - "Target": "baseMapFeature" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "building", - "ChangeType": "Addition", - "Description": "Added the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-1.0) resource.", - "Target": "building" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "buildingMap", - "ChangeType": "Addition", - "Description": "Added the [buildingMap](https://learn.microsoft.com/en-us/graph/api/resources/buildingMap?view=graph-rest-1.0) resource.", - "Target": "buildingMap" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "desk", - "ChangeType": "Addition", - "Description": "Added the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-1.0) resource.", - "Target": "desk" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "fixtureMap", - "ChangeType": "Addition", - "Description": "Added the [fixtureMap](https://learn.microsoft.com/en-us/graph/api/resources/fixtureMap?view=graph-rest-1.0) resource.", - "Target": "fixtureMap" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "floor", - "ChangeType": "Addition", - "Description": "Added the [floor](https://learn.microsoft.com/en-us/graph/api/resources/floor?view=graph-rest-1.0) resource.", - "Target": "floor" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "footprintMap", - "ChangeType": "Addition", - "Description": "Added the [footprintMap](https://learn.microsoft.com/en-us/graph/api/resources/footprintMap?view=graph-rest-1.0) resource.", - "Target": "footprintMap" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "levelMap", - "ChangeType": "Addition", - "Description": "Added the [levelMap](https://learn.microsoft.com/en-us/graph/api/resources/levelMap?view=graph-rest-1.0) resource.", - "Target": "levelMap" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "isWheelChairAccessible", - "ChangeType": "Addition", - "Description": "Added the **isWheelChairAccessible** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", - "Target": "place" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "label", - "ChangeType": "Addition", - "Description": "Added the **label** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", - "Target": "place" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "parentId", - "ChangeType": "Addition", - "Description": "Added the **parentId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", - "Target": "place" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "tags", - "ChangeType": "Addition", - "Description": "Added the **tags** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", - "Target": "place" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "isWheelChairAccessible", - "ChangeType": "Deletion", - "Description": "Removed the **isWheelChairAccessible** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", - "Target": "room" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "label", - "ChangeType": "Deletion", - "Description": "Removed the **label** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", - "Target": "room" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "tags", - "ChangeType": "Deletion", - "Description": "Removed the **tags** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", - "Target": "room" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Relationship", - "ChangedApiName": "workspaces", - "ChangeType": "Addition", - "Description": "Added the **workspaces** relationship to the [roomList](https://learn.microsoft.com/en-us/graph/api/resources/roomList?view=graph-rest-1.0) resource.", - "Target": "roomList" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "section", - "ChangeType": "Addition", - "Description": "Added the [section](https://learn.microsoft.com/en-us/graph/api/resources/section?view=graph-rest-1.0) resource.", - "Target": "section" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "sectionMap", - "ChangeType": "Addition", - "Description": "Added the [sectionMap](https://learn.microsoft.com/en-us/graph/api/resources/sectionMap?view=graph-rest-1.0) resource.", - "Target": "sectionMap" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "unitMap", - "ChangeType": "Addition", - "Description": "Added the [unitMap](https://learn.microsoft.com/en-us/graph/api/resources/unitMap?view=graph-rest-1.0) resource.", - "Target": "unitMap" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "workspace", - "ChangeType": "Addition", - "Description": "Added the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-1.0) resource.", - "Target": "workspace" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Method", - "ChangedApiName": "ingestMapFile", - "ChangeType": "Addition", - "Description": "Added the [ingestMapFile](https://learn.microsoft.com/en-us/graph/api/building-ingestMapFile?view=graph-rest-1.0) method to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-1.0) resource.", - "Target": "building" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Method", - "ChangedApiName": "descendants", - "ChangeType": "Addition", - "Description": "Added the [descendants](https://learn.microsoft.com/en-us/graph/api/place-descendants?view=graph-rest-1.0) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", - "Target": "place" - } - ], - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "Cloud": "Prod", - "Version": "v1.0", - "CreatedDateTime": "2025-12-02T07:34:22.5269035Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Enumeration", - "ChangedApiName": "placeFeatureEnablement", - "ChangeType": "Addition", - "Description": "Added the **placeFeatureEnablement** enumeration type.", - "Target": "placeFeatureEnablement" - }, - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Resource", - "ChangedApiName": "unavailablePlaceMode", - "ChangeType": "Addition", - "Description": "Added the [unavailablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/unavailablePlaceMode?view=graph-rest-1.0) resource.", - "Target": "unavailablePlaceMode" - }, - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Property", - "ChangedApiName": "wifiState", - "ChangeType": "Addition", - "Description": "Added the **wifiState** property to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-1.0) resource.", - "Target": "building" - }, - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Property", - "ChangedApiName": "heightAdjustableState", - "ChangeType": "Addition", - "Description": "Added the **heightAdjustableState** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-1.0) resource.", - "Target": "desk" - }, - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", - "Target": "room" - }, - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Property", - "ChangedApiName": "teamsEnabledState", - "ChangeType": "Addition", - "Description": "Added the **teamsEnabledState** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", - "Target": "room" - }, - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-1.0) resource.", - "Target": "workspace" - } - ], - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "Cloud": "Prod", - "Version": "v1.0", - "CreatedDateTime": "2025-12-26T08:33:18.5751667Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - } - ] -} +{ + "changelog": [ + { + "ChangeList": [ + { + "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", + "ApiChange": "Resource", + "ChangedApiName": "stringDictionary", + "ChangeType": "Addition", + "Description": "Added the [stringDictionary](https://learn.microsoft.com/en-us/graph/api/resources/stringdictionary?view=graph-rest-beta) resource.", + "Target": "stringDictionary" + }, + { + "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", + "ApiChange": "Property", + "ChangedApiName": "customProperties", + "ChangeType": "Addition", + "Description": "Added the **customProperties** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", + "ApiChange": "Property", + "ChangedApiName": "lastUpdatedTime", + "ChangeType": "Addition", + "Description": "Added the **lastUpdatedTime** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", + "ApiChange": "Resource", + "ChangedApiName": "Dictionary", + "ChangeType": "Addition", + "Description": "Added the [Dictionary](https://learn.microsoft.com/en-us/graph/api/resources/dictionary?view=graph-rest-beta) resource.", + "Target": "Dictionary" + } + ], + "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-10T06:52:03.1528589Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", + "ApiChange": "Resource", + "ChangedApiName": "placeServicePlanInfo", + "ChangeType": "Addition", + "Description": "Added the [placeServicePlanInfo](https://learn.microsoft.com/en-us/graph/api/resources/placeserviceplaninfo?view=graph-rest-1.0) resource.", + "Target": "placeServicePlanInfo" + }, + { + "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", + "ApiChange": "Property", + "ChangedApiName": "servicePlans", + "ChangeType": "Addition", + "Description": "Added the **servicePlans** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-1.0) resource.", + "Target": "desk" + }, + { + "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", + "Target": "place" + }, + { + "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Change", + "Description": "Updated the **placeId** property on the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) base resource.", + "Target": "room" + }, + { + "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Change", + "Description": "Updated the **placeId** property on the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-1.0) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) base resource.", + "Target": "workspace" + } + ], + "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-07-17T00:00:00.0000000Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", + "ApiChange": "Resource", + "ChangedApiName": "placeServicePlanInfo", + "ChangeType": "Addition", + "Description": "Added the [placeServicePlanInfo](https://learn.microsoft.com/en-us/graph/api/resources/placeserviceplaninfo?view=graph-rest-beta) resource.", + "Target": "placeServicePlanInfo" + }, + { + "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", + "ApiChange": "Property", + "ChangedApiName": "servicePlans", + "ChangeType": "Addition", + "Description": "Added the **servicePlans** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-beta) resource.", + "Target": "desk" + }, + { + "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Change", + "Description": "Updated the **placeId** property on the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) base resource.", + "Target": "room" + }, + { + "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Change", + "Description": "Updated the **placeId** property on the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) base resource.", + "Target": "workspace" + } + ], + "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-07-08T06:18:39.7163201Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Enumeration", + "ChangedApiName": "placeFeatureEnablement", + "ChangeType": "Addition", + "Description": "Added the **placeFeatureEnablement** enumeration type.", + "Target": "placeFeatureEnablement" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Resource", + "ChangedApiName": "offlinePlaceMode", + "ChangeType": "Deletion", + "Description": "Removed the **offlinePlaceMode** resource.", + "Target": "offlinePlaceMode" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Resource", + "ChangedApiName": "unavailablePlaceMode", + "ChangeType": "Addition", + "Description": "Added the [unavailablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/unavailablePlaceMode?view=graph-rest-beta) resource.", + "Target": "unavailablePlaceMode" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Property", + "ChangedApiName": "wifiState", + "ChangeType": "Addition", + "Description": "Added the **wifiState** property to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", + "Target": "building" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Property", + "ChangedApiName": "heightAdjustableState", + "ChangeType": "Addition", + "Description": "Added the **heightAdjustableState** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-beta) resource.", + "Target": "desk" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Deletion", + "Description": "Removed the **placeId** property from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Property", + "ChangedApiName": "teamsEnabledState", + "ChangeType": "Addition", + "Description": "Added the **teamsEnabledState** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + } + ], + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2025-11-20T04:28:14.4935787Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "a1b2c3d4-e5f6-7890-abcd-ef1234567890", + "ApiChange": "Enum type", + "ChangedApiName": "wifi", + "ChangeType": "Change", + "Description": "Added the `wifi` member to the **workplaceSensorType** enumeration.", + "Target": "workplaceSensorType" + } + ], + "Id": "a1b2c3d4-e5f6-7890-abcd-ef1234567890", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2025-10-27T00:00:00.0000000Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", + "ApiChange": "Enum type", + "ChangedApiName": "workplaceSensorType", + "ChangeType": "Addition", + "Description": "Added the **workplaceSensorType** enumeration type.", + "Target": "workplaceSensorType" + }, + { + "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", + "ApiChange": "Resource", + "ChangedApiName": "workplaceSensor", + "ChangeType": "Addition", + "Description": "Added the [workplaceSensor](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensor?view=graph-rest-beta) resource type.", + "Target": "workplaceSensor" + }, + { + "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", + "ApiChange": "Resource", + "ChangedApiName": "workplaceSensorDevice", + "ChangeType": "Addition", + "Description": "Added the [workplaceSensorDevice](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDevice?view=graph-rest-beta) resource and supported methods", + "Target": "workplaceSensorDevice" + }, + { + "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", + "ApiChange": "Resource", + "ChangedApiName": "workplaceSensorDeviceTelemetry", + "ChangeType": "Addition", + "Description": "Added the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource type.", + "Target": "workplaceSensorDeviceTelemetry" + } + ], + "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2023-09-26T18:53:24.5258032Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "f685e2e7-e767-4dc2-b668-3516e9ccf8d5", + "ApiChange": "Relationship", + "ChangedApiName": "workspaces", + "ChangeType": "Addition", + "Description": "Added the **workspaces** relationship to the [roomList](https://learn.microsoft.com/en-us/graph/api/resources/roomList?view=graph-rest-beta) resource.", + "Target": "roomList" + }, + { + "Id": "f685e2e7-e767-4dc2-b668-3516e9ccf8d5", + "ApiChange": "Resource", + "ChangedApiName": "workspace", + "ChangeType": "Addition", + "Description": "Added the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + } + ], + "Id": "f685e2e7-e767-4dc2-b668-3516e9ccf8d5", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2022-08-10T18:49:04.1521461Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", + "ApiChange": "Resource", + "ChangedApiName": "room", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", + "ApiChange": "Resource", + "ChangedApiName": "workspace", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + }, + { + "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", + "ApiChange": "Resource", + "ChangedApiName": "roomList", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [roomList](https://learn.microsoft.com/en-us/graph/api/resources/roomlist?view=graph-rest-beta) resource.", + "Target": "roomList" + } + ], + "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2024-02-08T00:26:43.6656685Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "ApiChange": "Enumeration", + "ChangedApiName": "workplaceSensorEventType", + "ChangeType": "Addition", + "Description": "Added the **workplaceSensorEventType** enumeration type.", + "Target": "workplaceSensorEventType" + }, + { + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "ApiChange": "Member", + "ChangedApiName": "badge", + "ChangeType": "Addition", + "Description": "Added the `badge` member to the **workplaceSensorType** enumeration.", + "Target": "workplaceSensorType" + }, + { + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "ApiChange": "Member", + "ChangedApiName": "wifi", + "ChangeType": "Addition", + "Description": "Added the `wifi` member to the **workplaceSensorType** enumeration.", + "Target": "workplaceSensorType" + }, + { + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "ApiChange": "Property", + "ChangedApiName": "eventValue", + "ChangeType": "Addition", + "Description": "Added the **eventValue** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", + "Target": "workplaceSensorDeviceTelemetry" + }, + { + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "ApiChange": "Property", + "ChangedApiName": "locationHint", + "ChangeType": "Addition", + "Description": "Added the **locationHint** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", + "Target": "workplaceSensorDeviceTelemetry" + }, + { + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "ApiChange": "Resource", + "ChangedApiName": "workplaceSensorEventValue", + "ChangeType": "Addition", + "Description": "Added the [workplaceSensorEventValue](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorEventValue?view=graph-rest-beta) resource.", + "Target": "workplaceSensorEventValue" + } + ], + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "Cloud": "Review", + "Version": "beta", + "CreatedDateTime": "2024-05-10T21:07:51.9198392Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Enumeration", + "ChangedApiName": "workplaceSensorEventType", + "ChangeType": "Addition", + "Description": "Added the **workplaceSensorEventType** enumeration type.", + "Target": "workplaceSensorEventType" + }, + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Member", + "ChangedApiName": "badge", + "ChangeType": "Addition", + "Description": "Added the `badge` member to the **workplaceSensorType** enumeration.", + "Target": "workplaceSensorType" + }, + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Property", + "ChangedApiName": "eventValue", + "ChangeType": "Addition", + "Description": "Added the **eventValue** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", + "Target": "workplaceSensorDeviceTelemetry" + }, + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Property", + "ChangedApiName": "locationHint", + "ChangeType": "Addition", + "Description": "Added the **locationHint** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", + "Target": "workplaceSensorDeviceTelemetry" + }, + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Resource", + "ChangedApiName": "workplaceSensorEventValue", + "ChangeType": "Addition", + "Description": "Added the [workplaceSensorEventValue](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorEventValue?view=graph-rest-beta) resource.", + "Target": "workplaceSensorEventValue" + }, + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Resource", + "ChangedApiName": "emailIdentity", + "ChangeType": "Addition", + "Description": "Added the [emailIdentity](https://learn.microsoft.com/en-us/graph/api/resources/emailIdentity?view=graph-rest-beta) resource.", + "Target": "emailIdentity" + }, + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Resource", + "ChangedApiName": "identity", + "ChangeType": "Addition", + "Description": "Added the [identity](https://learn.microsoft.com/en-us/graph/api/resources/identity?view=graph-rest-beta) resource.", + "Target": "identity" + } + ], + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2024-08-12T10:16:22.3182957Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", + "ApiChange": "Enumeration", + "ChangedApiName": "checkInMethod", + "ChangeType": "Addition", + "Description": "Added the **checkInMethod** enumeration type.", + "Target": "checkInMethod" + }, + { + "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", + "ApiChange": "Resource", + "ChangedApiName": "checkInClaim", + "ChangeType": "Addition", + "Description": "Added the [checkInClaim](https://learn.microsoft.com/en-us/graph/api/resources/checkInClaim?view=graph-rest-beta) resource and associated methods.", + "Target": "checkInClaim" + }, + { + "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", + "ApiChange": "Relationship", + "ChangedApiName": "checkIns", + "ChangeType": "Addition", + "Description": "Added the **checkIns** relationship to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + } + ], + "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2025-09-11T01:41:37.6480761Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Enumeration", + "ChangedApiName": "resourceLinkType", + "ChangeType": "Addition", + "Description": "Added the **resourceLinkType** enumeration type.", + "Target": "resourceLinkType" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "placeMode", + "ChangeType": "Addition", + "Description": "Added the [placeMode](https://learn.microsoft.com/en-us/graph/api/resources/placeMode?view=graph-rest-beta) resource type.", + "Target": "placeMode" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "assignedPlaceMode", + "ChangeType": "Addition", + "Description": "Added the [assignedPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/assignedPlaceMode?view=graph-rest-beta) resource type.", + "Target": "assignedPlaceMode" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "dropInPlaceMode", + "ChangeType": "Addition", + "Description": "Added the [dropInPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/dropInPlaceMode?view=graph-rest-beta) resource type.", + "Target": "dropInPlaceMode" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "offlinePlaceMode", + "ChangeType": "Addition", + "Description": "Added the [offlinePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/offlinePlaceMode?view=graph-rest-beta) resource type.", + "Target": "offlinePlaceMode" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "reservablePlaceMode", + "ChangeType": "Addition", + "Description": "Added the [reservablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/reservablePlaceMode?view=graph-rest-beta) resource type.", + "Target": "reservablePlaceMode" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "mailboxDetails", + "ChangeType": "Addition", + "Description": "Added the [mailboxDetails](https://learn.microsoft.com/en-us/graph/api/resources/mailboxDetails?view=graph-rest-beta) resource type.", + "Target": "mailboxDetails" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "resourceLink", + "ChangeType": "Addition", + "Description": "Added the [resourceLink](https://learn.microsoft.com/en-us/graph/api/resources/resourceLink?view=graph-rest-beta) resource type.", + "Target": "resourceLink" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "building", + "ChangeType": "Addition", + "Description": "Added the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", + "Target": "building" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "desk", + "ChangeType": "Addition", + "Description": "Added the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-beta) resource.", + "Target": "desk" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "floor", + "ChangeType": "Addition", + "Description": "Added the [floor](https://learn.microsoft.com/en-us/graph/api/resources/floor?view=graph-rest-beta) resource.", + "Target": "floor" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "section", + "ChangeType": "Addition", + "Description": "Added the [section](https://learn.microsoft.com/en-us/graph/api/resources/section?view=graph-rest-beta) resource.", + "Target": "section" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "resourceLinks", + "ChangeType": "Addition", + "Description": "Added the **resourceLinks** property to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", + "Target": "building" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "isWheelChairAccessible", + "ChangeType": "Addition", + "Description": "Added the **isWheelChairAccessible** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "label", + "ChangeType": "Addition", + "Description": "Added the **label** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "parentId", + "ChangeType": "Addition", + "Description": "Added the **parentId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "tags", + "ChangeType": "Addition", + "Description": "Added the **tags** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "isTeamsEnabled", + "ChangeType": "Addition", + "Description": "Added the **isTeamsEnabled** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "displayDeviceName", + "ChangeType": "Addition", + "Description": "Added the **displayDeviceName** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "mode", + "ChangeType": "Addition", + "Description": "Added the **mode** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "isWheelChairAccessible", + "ChangeType": "Deletion", + "Description": "Removed the **isWheelChairAccessible** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "label", + "ChangeType": "Deletion", + "Description": "Removed the **label** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "tags", + "ChangeType": "Deletion", + "Description": "Removed the **tags** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "isWheelChairAccessible", + "ChangeType": "Deletion", + "Description": "Removed the **isWheelChairAccessible** property from the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "label", + "ChangeType": "Deletion", + "Description": "Removed the **label** property from the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "tags", + "ChangeType": "Deletion", + "Description": "Removed the **tags** property from the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Method", + "ChangedApiName": "descendants", + "ChangeType": "Addition", + "Description": "Added the [descendants](https://learn.microsoft.com/en-us/graph/api/place-descendants?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Method", + "ChangedApiName": "place", + "ChangeType": "Addition", + "Description": "Added the **create** operation to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Method", + "ChangedApiName": "place", + "ChangeType": "Addition", + "Description": "Added the [delete](https://learn.microsoft.com/en-us/graph/api/place-delete?view=graph-rest-beta) operation to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + } + ], + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2025-08-08T23:36:37.579824Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "importBuildingMapSetting", + "ChangeType": "Addition", + "Description": "Added the [importBuildingMapSetting](https://learn.microsoft.com/en-us/graph/api/resources/importBuildingMapSetting?view=graph-rest-beta) resource.", + "Target": "importBuildingMapSetting" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "baseMapFeature", + "ChangeType": "Addition", + "Description": "Added the [baseMapFeature](https://learn.microsoft.com/en-us/graph/api/resources/baseMapFeature?view=graph-rest-beta) resource.", + "Target": "baseMapFeature" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "buildingMap", + "ChangeType": "Addition", + "Description": "Added the [buildingMap](https://learn.microsoft.com/en-us/graph/api/resources/buildingMap?view=graph-rest-beta) resource and associated methods.", + "Target": "buildingMap" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "fixtureMap", + "ChangeType": "Addition", + "Description": "Added the [fixtureMap](https://learn.microsoft.com/en-us/graph/api/resources/fixtureMap?view=graph-rest-beta) resource and associated methods.", + "Target": "fixtureMap" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "footprintMap", + "ChangeType": "Addition", + "Description": "Added the [footprintMap](https://learn.microsoft.com/en-us/graph/api/resources/footprintMap?view=graph-rest-beta) resource and an associated method.", + "Target": "footprintMap" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "levelMap", + "ChangeType": "Addition", + "Description": "Added the [levelMap](https://learn.microsoft.com/en-us/graph/api/resources/levelMap?view=graph-rest-beta) resource and an associated method..", + "Target": "levelMap" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "sectionMap", + "ChangeType": "Addition", + "Description": "Added the [sectionMap](https://learn.microsoft.com/en-us/graph/api/resources/sectionMap?view=graph-rest-beta) resource and associated methods.", + "Target": "sectionMap" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "unitMap", + "ChangeType": "Addition", + "Description": "Added the [unitMap](https://learn.microsoft.com/en-us/graph/api/resources/unitMap?view=graph-rest-beta) resource and associated methods.", + "Target": "unitMap" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Method", + "ChangedApiName": "ingestMapFile", + "ChangeType": "Addition", + "Description": "Added the [ingestMapFile](https://learn.microsoft.com/en-us/graph/api/building-ingestMapFile?view=graph-rest-beta) method to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", + "Target": "building" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Relationship", + "ChangedApiName": "map", + "ChangeType": "Addition", + "Description": "Added the **map** relationship to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", + "Target": "building" + } + ], + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2025-09-09T23:36:37.579824Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Enumeration", + "ChangedApiName": "placeOperationStatus", + "ChangeType": "Addition", + "Description": "Added the **placeOperationStatus** enumeration type.", + "Target": "placeOperationStatus" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Resource", + "ChangedApiName": "placeExecutionResult", + "ChangeType": "Addition", + "Description": "Added the [placeExecutionResult](https://learn.microsoft.com/en-us/graph/api/resources/placeExecutionResult?view=graph-rest-beta) resource.", + "Target": "placeExecutionResult" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Resource", + "ChangedApiName": "placeOperationProgress", + "ChangeType": "Addition", + "Description": "Added the [placeOperationProgress](https://learn.microsoft.com/en-us/graph/api/resources/placeOperationProgress?view=graph-rest-beta) resource.", + "Target": "placeOperationProgress" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Relationship", + "ChangedApiName": "children", + "ChangeType": "Addition", + "Description": "Added the **children** relationship to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource and its derived types.", + "Target": "place" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Resource", + "ChangedApiName": "placeOperation", + "ChangeType": "Addition", + "Description": "Added the [placeOperation](https://learn.microsoft.com/en-us/graph/api/resources/placeOperation?view=graph-rest-beta) resource and associated methods.", + "Target": "placeOperation" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Method", + "ChangedApiName": "getOperation", + "ChangeType": "Addition", + "Description": "Added the [getOperation](https://learn.microsoft.com/en-us/graph/api/place-getOperation?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Method", + "ChangedApiName": "place", + "ChangeType": "Addition", + "Description": "Added the [Upsert places](https://learn.microsoft.com/en-us/graph/api/place-patch-places?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Method", + "ChangedApiName": "listOperations", + "ChangeType": "Addition", + "Description": "Added the [listOperations](https://learn.microsoft.com/en-us/graph/api/place-listOperations?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + } + ], + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2025-12-09T05:36:40.1956456Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Enumeration", + "ChangedApiName": "resourceLinkType", + "ChangeType": "Addition", + "Description": "Added the **resourceLinkType** enumeration type.", + "Target": "resourceLinkType" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "assignedPlaceMode", + "ChangeType": "Addition", + "Description": "Added the [assignedPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/assignedPlaceMode?view=graph-rest-1.0) resource.", + "Target": "assignedPlaceMode" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "dropInPlaceMode", + "ChangeType": "Addition", + "Description": "Added the [dropInPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/dropInPlaceMode?view=graph-rest-1.0) resource.", + "Target": "dropInPlaceMode" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "importBuildingMapSetting", + "ChangeType": "Addition", + "Description": "Added the [importBuildingMapSetting](https://learn.microsoft.com/en-us/graph/api/resources/importBuildingMapSetting?view=graph-rest-1.0) resource.", + "Target": "importBuildingMapSetting" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "mailboxDetails", + "ChangeType": "Addition", + "Description": "Added the [mailboxDetails](https://learn.microsoft.com/en-us/graph/api/resources/mailboxDetails?view=graph-rest-1.0) resource.", + "Target": "mailboxDetails" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "placeMode", + "ChangeType": "Addition", + "Description": "Added the [placeMode](https://learn.microsoft.com/en-us/graph/api/resources/placeMode?view=graph-rest-1.0) resource.", + "Target": "placeMode" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "reservablePlaceMode", + "ChangeType": "Addition", + "Description": "Added the [reservablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/reservablePlaceMode?view=graph-rest-1.0) resource.", + "Target": "reservablePlaceMode" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "resourceLink", + "ChangeType": "Addition", + "Description": "Added the [resourceLink](https://learn.microsoft.com/en-us/graph/api/resources/resourceLink?view=graph-rest-1.0) resource.", + "Target": "resourceLink" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "baseMapFeature", + "ChangeType": "Addition", + "Description": "Added the [baseMapFeature](https://learn.microsoft.com/en-us/graph/api/resources/baseMapFeature?view=graph-rest-1.0) resource.", + "Target": "baseMapFeature" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "building", + "ChangeType": "Addition", + "Description": "Added the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-1.0) resource.", + "Target": "building" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "buildingMap", + "ChangeType": "Addition", + "Description": "Added the [buildingMap](https://learn.microsoft.com/en-us/graph/api/resources/buildingMap?view=graph-rest-1.0) resource.", + "Target": "buildingMap" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "desk", + "ChangeType": "Addition", + "Description": "Added the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-1.0) resource.", + "Target": "desk" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "fixtureMap", + "ChangeType": "Addition", + "Description": "Added the [fixtureMap](https://learn.microsoft.com/en-us/graph/api/resources/fixtureMap?view=graph-rest-1.0) resource.", + "Target": "fixtureMap" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "floor", + "ChangeType": "Addition", + "Description": "Added the [floor](https://learn.microsoft.com/en-us/graph/api/resources/floor?view=graph-rest-1.0) resource.", + "Target": "floor" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "footprintMap", + "ChangeType": "Addition", + "Description": "Added the [footprintMap](https://learn.microsoft.com/en-us/graph/api/resources/footprintMap?view=graph-rest-1.0) resource.", + "Target": "footprintMap" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "levelMap", + "ChangeType": "Addition", + "Description": "Added the [levelMap](https://learn.microsoft.com/en-us/graph/api/resources/levelMap?view=graph-rest-1.0) resource.", + "Target": "levelMap" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "isWheelChairAccessible", + "ChangeType": "Addition", + "Description": "Added the **isWheelChairAccessible** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", + "Target": "place" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "label", + "ChangeType": "Addition", + "Description": "Added the **label** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", + "Target": "place" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "parentId", + "ChangeType": "Addition", + "Description": "Added the **parentId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", + "Target": "place" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "tags", + "ChangeType": "Addition", + "Description": "Added the **tags** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", + "Target": "place" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "isWheelChairAccessible", + "ChangeType": "Deletion", + "Description": "Removed the **isWheelChairAccessible** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", + "Target": "room" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "label", + "ChangeType": "Deletion", + "Description": "Removed the **label** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", + "Target": "room" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "tags", + "ChangeType": "Deletion", + "Description": "Removed the **tags** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", + "Target": "room" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Relationship", + "ChangedApiName": "workspaces", + "ChangeType": "Addition", + "Description": "Added the **workspaces** relationship to the [roomList](https://learn.microsoft.com/en-us/graph/api/resources/roomList?view=graph-rest-1.0) resource.", + "Target": "roomList" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "section", + "ChangeType": "Addition", + "Description": "Added the [section](https://learn.microsoft.com/en-us/graph/api/resources/section?view=graph-rest-1.0) resource.", + "Target": "section" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "sectionMap", + "ChangeType": "Addition", + "Description": "Added the [sectionMap](https://learn.microsoft.com/en-us/graph/api/resources/sectionMap?view=graph-rest-1.0) resource.", + "Target": "sectionMap" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "unitMap", + "ChangeType": "Addition", + "Description": "Added the [unitMap](https://learn.microsoft.com/en-us/graph/api/resources/unitMap?view=graph-rest-1.0) resource.", + "Target": "unitMap" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "workspace", + "ChangeType": "Addition", + "Description": "Added the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-1.0) resource.", + "Target": "workspace" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Method", + "ChangedApiName": "ingestMapFile", + "ChangeType": "Addition", + "Description": "Added the [ingestMapFile](https://learn.microsoft.com/en-us/graph/api/building-ingestMapFile?view=graph-rest-1.0) method to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-1.0) resource.", + "Target": "building" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Method", + "ChangedApiName": "descendants", + "ChangeType": "Addition", + "Description": "Added the [descendants](https://learn.microsoft.com/en-us/graph/api/place-descendants?view=graph-rest-1.0) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", + "Target": "place" + } + ], + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2025-12-02T07:34:22.5269035Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Enumeration", + "ChangedApiName": "placeFeatureEnablement", + "ChangeType": "Addition", + "Description": "Added the **placeFeatureEnablement** enumeration type.", + "Target": "placeFeatureEnablement" + }, + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Resource", + "ChangedApiName": "unavailablePlaceMode", + "ChangeType": "Addition", + "Description": "Added the [unavailablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/unavailablePlaceMode?view=graph-rest-1.0) resource.", + "Target": "unavailablePlaceMode" + }, + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Property", + "ChangedApiName": "wifiState", + "ChangeType": "Addition", + "Description": "Added the **wifiState** property to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-1.0) resource.", + "Target": "building" + }, + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Property", + "ChangedApiName": "heightAdjustableState", + "ChangeType": "Addition", + "Description": "Added the **heightAdjustableState** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-1.0) resource.", + "Target": "desk" + }, + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", + "Target": "room" + }, + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Property", + "ChangedApiName": "teamsEnabledState", + "ChangeType": "Addition", + "Description": "Added the **teamsEnabledState** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", + "Target": "room" + }, + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-1.0) resource.", + "Target": "workspace" + } + ], + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2025-12-26T08:33:18.5751667Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + } + ] +} diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 64fc2a6791a..e82e9097da0 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -45,7 +45,13 @@ Added the **isDisabled** property to the [agentIdentityBlueprint](/graph/api/res ### Backup storage -Added the [getStatisticsByPolicy](/graph/api/backupreport-getstatisticsbypolicy?view=graph-rest-beta&preserve-view=true) method to retrieve policy-level protection statistics for Microsoft 365 Backup Storage. Use the report to monitor protected and unprotected artifacts across completed, in-progress, and failed states, review offboarding activity, and determine when the metrics were last calculated. +- Added the [getStatisticsByPolicy](/graph/api/backupreport-getstatisticsbypolicy?view=graph-rest-beta&preserve-view=true) method to retrieve policy-level protection statistics for Microsoft 365 Backup Storage. Use the report to monitor protected and unprotected artifacts across completed, in-progress, and failed states, review offboarding activity, and determine when the metrics were last calculated. + +### Calendar | Places + +- Added the [stringDictionary](/graph/api/resources/stringdictionary?view=graph-rest-beta&preserve-view=true) resource type to represent custom string key-value pairs. +- Added the **customProperties** property to the [place](/graph/api/resources/place?view=graph-rest-beta&preserve-view=true) resource type to store customer-defined string key-value pairs. +- Added the read-only **lastUpdatedTime** property to the [place](/graph/api/resources/place?view=graph-rest-beta&preserve-view=true) resource type to indicate when the place was last updated. ### Device and app management | Cloud PC From a2ca978007e1cf2819ded14d0eeb1b1bf1b75652 Mon Sep 17 00:00:00 2001 From: msklotz <118102583+msklotz@users.noreply.github.com> Date: Tue, 15 Sep 2026 07:50:27 +0300 Subject: [PATCH 140/189] docs: API reference for SLA policy tracking (Microsoft.USX.CaseManagement) (#29505) * docs: add API reference for SLA policy tracking (Microsoft.USX.CaseManagement) Generated from promotion PR: https://msazure.visualstudio.com/One/_git/AD-AggregatorService-Workloads/pullrequest/16942128 Source PR: 16758147 Workload: Microsoft.USX.CaseManagement * docs: clarify slaPolicies query support (any() lambda only, no orderby) Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: fix author frontmatter to valid GitHub ID (msklotz) Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: add slaPolicies entry to August 2026 what's new overview Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: revert manual toc.yml edit, use #gen-toc bot instead Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: add changelog entry for slaPolicies property addition Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Address SLA policy docs review feedback Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update reference TOC * Apply suggestion from @Danipocket --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../api/security-casemanagement-case-get.md | 10 +++- .../resources/security-casemanagement-case.md | 6 +- ...urity-casemanagement-caseslapolicyentry.md | 59 +++++++++++++++++++ api-reference/beta/toc/security/toc.yml | 2 + api-reference/beta/toc/toc.mapping.json | 1 + changelog/Microsoft.USX.CaseManagement.json | 34 +++++++++++ concepts/whats-new-overview.md | 1 + 7 files changed, 111 insertions(+), 2 deletions(-) create mode 100644 api-reference/beta/resources/security-casemanagement-caseslapolicyentry.md diff --git a/api-reference/beta/api/security-casemanagement-case-get.md b/api-reference/beta/api/security-casemanagement-case-get.md index 3891ca9b93c..e77efd456de 100644 --- a/api-reference/beta/api/security-casemanagement-case-get.md +++ b/api-reference/beta/api/security-casemanagement-case-get.md @@ -129,6 +129,14 @@ Content-Type: application/json "@odata.type": "#microsoft.graph.security.caseManagement.customFieldStringValue", "value": "Executive mailbox affected" } - } + }, + "slaPolicies": [ + { + "policyId": "c1f6b40d-3a90-4f8e-a06c-0542b16fb86f", + "policyDisplayName": "Auto Assign Order", + "status": "active", + "breachTargetDateTime": "2026-08-08T11:11:30.9892467Z" + } + ] } ``` diff --git a/api-reference/beta/resources/security-casemanagement-case.md b/api-reference/beta/resources/security-casemanagement-case.md index 7b7bd5459be..93891fcf75f 100644 --- a/api-reference/beta/resources/security-casemanagement-case.md +++ b/api-reference/beta/resources/security-casemanagement-case.md @@ -44,6 +44,7 @@ Use the [Update](../api/security-casemanagement-case-update.md) method to update |id|String|The unique identifier for the case. Inherited from [entity](../resources/entity.md). Supports `$filter` and `$orderby`.| |lastModifiedBy|String|The user or service that last modified the case. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| |lastModifiedDateTime|DateTimeOffset|The date and time when the case was last modified. Inherited from [caseManagementEntity](../resources/security-casemanagement-casemanagemententity.md). Supports `$filter` and `$orderby`.| +|slaPolicies|[microsoft.graph.security.caseManagement.caseSlaPolicyEntry](../resources/security-casemanagement-caseslapolicyentry.md) collection|A denormalized, read-only collection of SLA (service level agreement) policy status entries for the case. Each entry represents one SLA policy applied to the case, including its current status and breach target time. Computed by the service; any value supplied in a create or update request is silently ignored. Supports `$filter` using the `any()` lambda operator only, for example, `$filter=slaPolicies/any(p: p/status eq 'breached')`. The `all()` lambda operator and other collection functions aren't supported. Doesn't support `$orderby`.| |status|String|The tenant-defined lifecycle status of the case. Use a **displayName** value returned in the status tree by [List statuses](../api/security-casemanagement-casetypeconfiguration-list-statuses.md) from `/security/caseManagement/caseTypeConfigurations/genericCase/statuses` or `/security/caseManagement/caseTypeConfigurations/incidentCase/statuses`, depending on the case type. Supports `$filter` (`eq`).| ## Relationships @@ -75,6 +76,9 @@ The following JSON representation shows the resource type. "lastModifiedBy": "String", "displayName": "String", "status": "String", - "customFields": {"@odata.type": "#microsoft.graph.security.caseManagement.customFieldValues"} + "customFields": {"@odata.type": "#microsoft.graph.security.caseManagement.customFieldValues"}, + "slaPolicies": [ + {"@odata.type": "microsoft.graph.security.caseManagement.caseSlaPolicyEntry"} + ] } ``` diff --git a/api-reference/beta/resources/security-casemanagement-caseslapolicyentry.md b/api-reference/beta/resources/security-casemanagement-caseslapolicyentry.md new file mode 100644 index 00000000000..af1a3d9936d --- /dev/null +++ b/api-reference/beta/resources/security-casemanagement-caseslapolicyentry.md @@ -0,0 +1,59 @@ +--- +title: "caseSlaPolicyEntry resource type" +description: "Represents a single SLA policy's denormalized status for a case." +author: "msklotz" +ms.date: 08/26/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# caseSlaPolicyEntry resource type + +Namespace: microsoft.graph.security.caseManagement + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a single SLA (service level agreement) policy's denormalized status for a [case](../resources/security-casemanagement-case.md). Returned as an entry in the **slaPolicies** collection on a case. This resource is entirely server-computed; the SLA policy engine assigns and maintains SLA policies independently of the case management API. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|breachTargetDateTime|DateTimeOffset|The date and time the SLA policy is targeted to breach, if applicable. `null` when the policy is paused or completed. Computed by the service.| +|policyDisplayName|String|The display name of the SLA policy. Computed by the service.| +|policyId|String|The unique identifier of the SLA policy, assigned by the SLA policy engine. Computed by the service.| +|status|[microsoft.graph.security.caseManagement.caseSlaPolicyStatus](#caseslapolicystatus-values)|The current SLA status for this policy on this case. Computed by the service.| + +### caseSlaPolicyStatus values + +|Member|Description| +|:---|:---| +|active|The SLA policy is actively tracked and within its target.| +|atRisk|The SLA policy is at risk of breaching its target.| +|breached|The SLA policy has breached its target.| +|paused|Tracking for the SLA policy is paused.| +|completedMet|The SLA policy completed within its target.| +|completedBreached|The SLA policy completed after breaching its target.| +|unknownFutureValue|Evolvable enumeration sentinel value. Don't use.| + +## Relationships + +None. + +## JSON representation +The following JSON representation shows the resource type. + +```json +{ + "@odata.type": "#microsoft.graph.security.caseManagement.caseSlaPolicyEntry", + "policyId": "String", + "policyDisplayName": "String", + "status": "String", + "breachTargetDateTime": "DateTimeOffset" +} +``` diff --git a/api-reference/beta/toc/security/toc.yml b/api-reference/beta/toc/security/toc.yml index 97a92f0a08f..213df819731 100644 --- a/api-reference/beta/toc/security/toc.yml +++ b/api-reference/beta/toc/security/toc.yml @@ -348,6 +348,8 @@ items: href: ../../api/security-casemanagement-case-update.md - name: Delete href: ../../api/security-casemanagementroot-delete-cases.md + - name: Case sla policy entry + href: ../../resources/security-casemanagement-caseslapolicyentry.md - name: Generic case href: ../../resources/security-casemanagement-genericcase.md - name: Incident case diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index c3395a2f6b9..5b5688ba853 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -3188,6 +3188,7 @@ "resources": [ "microsoft.graph.security.caseManagement.caseManagementEntity", "microsoft.graph.security.caseManagement.case", + "microsoft.graph.security.caseManagement.caseSlaPolicyEntry", "microsoft.graph.security.caseManagement.genericCase", "microsoft.graph.security.caseManagement.incidentCase", "microsoft.graph.security.caseManagement.activity", diff --git a/changelog/Microsoft.USX.CaseManagement.json b/changelog/Microsoft.USX.CaseManagement.json index 20a3fe17928..92517ca26dc 100644 --- a/changelog/Microsoft.USX.CaseManagement.json +++ b/changelog/Microsoft.USX.CaseManagement.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "546fffa6-9ea5-43ca-9379-7278f50a7683", + "ApiChange": "Property", + "ChangedApiName": "slaPolicies", + "ChangeType": "Addition", + "Description": "Added the **slaPolicies** property to the [case](https://learn.microsoft.com/en-us/graph/api/resources/security-casemanagement-case?view=graph-rest-beta) resource to expose a read-only collection of [caseSlaPolicyEntry](https://learn.microsoft.com/en-us/graph/api/resources/security-casemanagement-caseslapolicyentry?view=graph-rest-beta) objects reporting the status and breach target time of each SLA policy applied to a case.", + "Target": "case" + }, + { + "Id": "546fffa6-9ea5-43ca-9379-7278f50a7683", + "ApiChange": "Resource", + "ChangedApiName": "caseSlaPolicyEntry", + "ChangeType": "Addition", + "Description": "Added the [caseSlaPolicyEntry](https://learn.microsoft.com/en-us/graph/api/resources/security-casemanagement-caseslapolicyentry?view=graph-rest-beta) complex type.", + "Target": "caseSlaPolicyEntry" + }, + { + "Id": "546fffa6-9ea5-43ca-9379-7278f50a7683", + "ApiChange": "Enumeration", + "ChangedApiName": "caseSlaPolicyStatus", + "ChangeType": "Addition", + "Description": "Added the **caseSlaPolicyStatus** enumeration type.", + "Target": "caseSlaPolicyStatus" + } + ], + "Id": "546fffa6-9ea5-43ca-9379-7278f50a7683", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-09T09:29:40.3410000Z", + "WorkloadArea": "Security", + "SubArea": "Case management" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index e82e9097da0..0e391dbc8d1 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -167,6 +167,7 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] ### Security | Case management +- Added the **slaPolicies** property to the [case](/graph/api/resources/security-casemanagement-case?view=graph-rest-beta&preserve-view=true) resource type, a read-only collection of [caseSlaPolicyEntry](/graph/api/resources/security-casemanagement-caseslapolicyentry?view=graph-rest-beta&preserve-view=true) objects that report the current status and breach target time of each SLA policy applied to a case. - Added the [download attachment content](/graph/api/security-casemanagement-attachment-download-content?view=graph-rest-beta&preserve-view=true) and [upload attachment content](/graph/api/security-casemanagement-attachment-upload-content?view=graph-rest-beta&preserve-view=true) methods to the [attachment](/graph/api/resources/security-casemanagement-attachment?view=graph-rest-beta&preserve-view=true) resource type to transfer case evidence in chunks and retrieve it after malware scanning. - Added the [get relation](/graph/api/security-casemanagement-relation-get?view=graph-rest-beta&preserve-view=true) and [delete relation](/graph/api/security-casemanagement-relation-delete?view=graph-rest-beta&preserve-view=true) methods to the [relation](/graph/api/resources/security-casemanagement-relation?view=graph-rest-beta&preserve-view=true) resource type to read and remove links between a case and related security resources. - Added the [delete task](/graph/api/security-casemanagement-task-delete?view=graph-rest-beta&preserve-view=true) method to the [task](/graph/api/resources/security-casemanagement-task?view=graph-rest-beta&preserve-view=true) resource type to remove a task from a case. From 39ee1be8b4ff65d785badee6a45c4adbe3cacaf3 Mon Sep 17 00:00:00 2001 From: diksha27 Date: Thu, 17 Sep 2026 08:16:52 +0530 Subject: [PATCH 141/189] Document audit log query throttling and record-count limits (#29587) * Update auditLogQuery record-count limit properties Documents the three read-only properties introduced by Work 53384. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 3017e6f8-fd37-4d62-8117-e7564f8e0ada * Add auditLogQuery changelog entries Adds the AuditCore beta changelog and Whats New coverage for Work 53384. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 3017e6f8-fd37-4d62-8117-e7564f8e0ada * Add beta audit query throttling guidance Moves the beta-only throttling guidance from PR 29567 into the promotion-linked documentation PR. No v1.0 files are included. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 3017e6f8-fd37-4d62-8117-e7564f8e0ada * Add What's New bullet marker Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 3017e6f8-fd37-4d62-8117-e7564f8e0ada --------- Co-authored-by: guptadiksha_microsoft Copilot-Session: 3017e6f8-fd37-4d62-8117-e7564f8e0ada --- ...rity-auditcoreroot-post-auditlogqueries.md | 5 ++- .../beta/resources/security-auditlogquery.md | 13 ++++++- changelog/Microsoft.M365.AuditCore.json | 34 ++++++++++++++++ concepts/throttling-limits.md | 4 ++ concepts/whats-new-overview.md | 6 ++- .../throttling-security-audit-log-query.md | 39 +++++++++++++++++++ 6 files changed, 97 insertions(+), 4 deletions(-) create mode 100644 includes/throttling-security-audit-log-query.md diff --git a/api-reference/beta/api/security-auditcoreroot-post-auditlogqueries.md b/api-reference/beta/api/security-auditcoreroot-post-auditlogqueries.md index c9752ff8250..9692c7d2786 100644 --- a/api-reference/beta/api/security-auditcoreroot-post-auditlogqueries.md +++ b/api-reference/beta/api/security-auditcoreroot-post-auditlogqueries.md @@ -78,6 +78,9 @@ You can specify the following properties when creating a **auditLogQuery**. If successful, this method returns a `201 Created` response code and a [auditLogQuery](../resources/security-auditlogquery.md) object in the response body. +> [!NOTE] +> This method is subject to tenant-level daily submission and concurrent-query limits. A tenant receives a baseline allocation, and tenants with more eligible licenses can receive a higher allocation. For details and retry guidance, see [Microsoft Graph service-specific throttling limits](/graph/throttling-limits#security-audit-log-query-service-limits). + ## Examples ### Request @@ -121,6 +124,7 @@ Content-Type: application/json } ``` + # [C#](#tab/csharp) [!INCLUDE [sample-code](../includes/snippets/csharp/create-auditlogquery-from--csharp-snippets.md)] [!INCLUDE [sdk-documentation](../includes/snippets/snippets-sdk-documentation-link.md)] @@ -193,4 +197,3 @@ Content-Type: application/json "status": "String" } ``` - diff --git a/api-reference/beta/resources/security-auditlogquery.md b/api-reference/beta/resources/security-auditlogquery.md index c4a600401c2..c4f3bf2c02c 100644 --- a/api-reference/beta/resources/security-auditlogquery.md +++ b/api-reference/beta/resources/security-auditlogquery.md @@ -5,7 +5,7 @@ author: "arishojaswi" ms.localizationpriority: medium ms.subservice: "security" doc_type: resourcePageType -ms.date: 09/10/2024 +ms.date: 09/14/2026 --- # auditLogQuery resource type @@ -30,19 +30,25 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). |Property|Type|Description| |:---|:---|:---| |administrativeUnitIdFilters|String collection|The administrative units tagged to an audit log record.| +|approximateReturnedRecordCount|Int64|The approximate number of records retrieved by the query. This value can be higher or lower than **recordCountLimit** due to distributed counting. Read-only.| |displayName|String|The display name of the saved audit log query.| |filterEndDateTime|DateTimeOffset|The end date of the date range in the query.| |filterStartDateTime|DateTimeOffset|The start date of the date range in the query.| |id|String|Unique identifier for the audit log query. Inherited from [microsoft.graph.entity](../resources/entity.md).| |ipAddressFilters|String collection|The IP address of the device that was used when the activity was logged.| +|isRecordCountLimitExceeded|Boolean|Indicates whether the query exceeded the per-search record-count limit. The default value is `false`. A value of `true` is authoritative and isn't derived from **approximateReturnedRecordCount**. Read-only.| |keywordFilter|String|Free text field to search non-indexed properties of the audit log.| |objectIdFilters|String collection|For SharePoint and OneDrive for Business activity, the full path name of the file or folder accessed by the user. For Exchange admin audit logging, the name of the object that was modified by the cmdlet.| |operationFilters|String collection|The name of the user or admin activity. For a description of the most common operations/activities, see [Search the audit log in the Office 365 Protection Center](https://go.microsoft.com/fwlink/p/?LinkId=708432).| +|recordCountLimit|Int64|The record-count threshold used to limit query result retrieval. Read-only.| |recordTypeFilters|[microsoft.graph.security.auditLogRecordType](../resources/security-auditlogrecordtype.md) collection|The type of operation indicated by the record. For the list of member values, see [auditLogRecordType](../resources/security-auditlogrecordtype.md).| |serviceFilter|String|Refers to the workload property in the audit record. This is the Microsoft service where the activity occurred. Optional.| |status|microsoft.graph.security.auditLogQueryStatus|Describes the current status of the query. The possible values are: `notStarted`, `running`, `succeeded`, `failed`, `cancelled`, `unknownFutureValue`.| |userPrincipalNameFilters|String collection|The UPN (user principal name) of the user who performed the action (specified in the operation property) that resulted in the record being logged; for example, _my_name@my_domain_name_.| +> [!NOTE] +> An audit log query can complete successfully after exceeding its record-count limit. Use **isRecordCountLimitExceeded** to determine whether the limit was exceeded. For information about tenant and per-query allocations, see [Microsoft Graph service-specific throttling limits](/graph/throttling-limits#security-audit-log-query-service-limits). + ## Relationships |Relationship|Type|Description| @@ -87,6 +93,9 @@ The following JSON representation shows the resource type. "administrativeUnitIdFilters": [ "String" ], - "status": "String" + "status": "String", + "isRecordCountLimitExceeded": "Boolean", + "recordCountLimit": "Int64", + "approximateReturnedRecordCount": "Int64" } ``` diff --git a/changelog/Microsoft.M365.AuditCore.json b/changelog/Microsoft.M365.AuditCore.json index 4e0570f76b3..cbac4cf775d 100644 --- a/changelog/Microsoft.M365.AuditCore.json +++ b/changelog/Microsoft.M365.AuditCore.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "8b3eefbc-8142-426c-94c8-836c7a05232a", + "ApiChange": "Property", + "ChangedApiName": "isRecordCountLimitExceeded", + "ChangeType": "Addition", + "Description": "Added the **isRecordCountLimitExceeded** property to the [auditLogQuery](https://learn.microsoft.com/en-us/graph/api/resources/security-auditlogquery?view=graph-rest-beta) resource.", + "Target": "auditLogQuery" + }, + { + "Id": "8b3eefbc-8142-426c-94c8-836c7a05232a", + "ApiChange": "Property", + "ChangedApiName": "recordCountLimit", + "ChangeType": "Addition", + "Description": "Added the **recordCountLimit** property to the [auditLogQuery](https://learn.microsoft.com/en-us/graph/api/resources/security-auditlogquery?view=graph-rest-beta) resource.", + "Target": "auditLogQuery" + }, + { + "Id": "8b3eefbc-8142-426c-94c8-836c7a05232a", + "ApiChange": "Property", + "ChangedApiName": "approximateReturnedRecordCount", + "ChangeType": "Addition", + "Description": "Added the **approximateReturnedRecordCount** property to the [auditLogQuery](https://learn.microsoft.com/en-us/graph/api/resources/security-auditlogquery?view=graph-rest-beta) resource.", + "Target": "auditLogQuery" + } + ], + "Id": "8b3eefbc-8142-426c-94c8-836c7a05232a", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-14T13:04:40.4775174Z", + "WorkloadArea": "Compliance", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/throttling-limits.md b/concepts/throttling-limits.md index 7f3eb99aea5..1c24a5a2809 100644 --- a/concepts/throttling-limits.md +++ b/concepts/throttling-limits.md @@ -198,6 +198,10 @@ Outlook service limits apply to the public cloud and [national cloud deployments [!INCLUDE [Project Rome throttling documentation](../includes/throttling-project-rome.md)] +## Security audit log query service limits + +[!INCLUDE [Security audit log query throttling documentation](../includes/throttling-security-audit-log-query.md)] + ## Security detections and incidents service limits [!INCLUDE [Security detections and incidents throttling documentation](../includes/throttling-security-detections-incidents.md)] diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 0e391dbc8d1..ff7b98d6530 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -3,7 +3,7 @@ title: "What's new in Microsoft Graph" description: "Find out what's new in Microsoft Graph APIs, SDKs, documentation, and other resources." author: "lauragra" ms.localizationpriority: high -ms.date: 09/02/2026 +ms.date: 09/14/2026 ms.topic: whats-new --- @@ -74,6 +74,10 @@ Added the **sensitivityLabel** property to the [searchHit](/graph/api/resources/ Added the `contentFiltering` member to the [userActivityTypes](/graph/api/resources/enums-security?view=graph-rest-beta&preserve-view=true#useractivitytypes-values) enumeration used by the [compute protection scopes for a user](/graph/api/userprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) and [compute protection scopes for a tenant](/graph/api/tenantprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) APIs, enabling applications to determine whether data loss prevention policies govern content filtering before evaluating content. +### Security | Audit log query + +- Added the **isRecordCountLimitExceeded**, **recordCountLimit**, and **approximateReturnedRecordCount** properties to the [auditLogQuery](/graph/api/resources/security-auditlogquery?view=graph-rest-beta&preserve-view=true) resource. Use these properties to determine whether a completed query exceeded the per-search record-count limit and to inspect the applicable limit and approximate returned record count. + ### Teamwork and communications | Messaging Updated the [getAllRetainedMessages](/graph/api/channel-getallretainedmessages?view=graph-rest-beta&preserve-view=true) method to document support for retained private-channel message versions captured after the tenant's private-channel storage migration completed. diff --git a/includes/throttling-security-audit-log-query.md b/includes/throttling-security-audit-log-query.md new file mode 100644 index 00000000000..9e11726e539 --- /dev/null +++ b/includes/throttling-security-audit-log-query.md @@ -0,0 +1,39 @@ +--- +author: "guptadiksha" +ms.localizationpriority: high +ms.subservice: security +ms.topic: include +--- + + +The Microsoft Purview Audit Search API applies tenant-level limits to audit log queries submitted through Microsoft Graph. Each tenant receives a baseline allocation. Tenants with more eligible licenses can receive higher limits, up to the maximum capacity allocated by the service. The calculation used to determine a tenant's allocation isn't published. + +The following baseline limits apply. + +| Limit | Baseline allocation | Scope and behavior | +| --- | ---: | --- | +| Query submissions | At least 200 submissions per day | The limit applies across the tenant and is calculated as a rolling window of 24 hours. When the tenant reaches its daily allocation, the service doesn't accept new queries until the 24-hour rolling usage drops below the limit. | +| Queued or running queries | At least 50 queries | The limit applies across the tenant. Only queries in a nonterminal state, such as queued or running, count toward the limit. New queries can be accepted as existing queries reach a terminal state. | +| Records generated by one query | At least 1,000,000 records | The limit applies separately to each query. If a query exceeds its record-count limit, record generation stops at the applicable threshold and the query completes successfully with information indicating that the limit was exceeded. | + +### Handle throttled query submissions + +When a query submission is throttled, Microsoft Graph returns `429 Too Many Requests`. If the response includes a `Retry-After` header, wait for the specified interval before retrying the request. Don't retry the request immediately. + +For a daily submission limit, retry after the tenant's usage in the 24-hour rolling window drops below the limit. For a concurrent-query limit, retry after one or more queued or running queries reach a terminal state. If a `Retry-After` header isn't provided, use an exponential backoff strategy. + +For general guidance, see [Microsoft Graph throttling guidance](/graph/throttling). + +### Identify a query that exceeded its record-count limit + +Exceeding the per-query record-count limit isn't an error. The query can have a `succeeded` status even when the service stopped generating additional records. + +When the information is available, use the following `auditLogQuery` properties: + +| Property | Description | +| --- | --- | +| `isRecordCountLimitExceeded` | Indicates whether the query exceeded its per-query record-count limit. Treat this property as the authoritative indicator. | +| `recordCountLimit` | The record-count threshold applied to the query. | +| `approximateReturnedRecordCount` | The approximate number of records generated by the query. This value can be higher or lower than `recordCountLimit` because record counting is distributed. | + +Don't determine whether the limit was exceeded by comparing `approximateReturnedRecordCount` with `recordCountLimit`. Use `isRecordCountLimitExceeded`. From 7c955fe46f6c2ef6498a290626527189e68fe6de Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Wed, 16 Sep 2026 19:47:17 -0700 Subject: [PATCH 142/189] Update reference TOC (#29599) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/toc/calendars/toc.yml | 14 +- changelog/Microsoft.Exchange.Places.json | 2472 +++++++++++----------- 2 files changed, 1244 insertions(+), 1242 deletions(-) diff --git a/api-reference/beta/toc/calendars/toc.yml b/api-reference/beta/toc/calendars/toc.yml index ed89b87f18d..6b8db738648 100644 --- a/api-reference/beta/toc/calendars/toc.yml +++ b/api-reference/beta/toc/calendars/toc.yml @@ -278,17 +278,17 @@ items: items: - name: Place href: ../../resources/place.md - - name: List + - name: List places href: ../../api/place-list.md - - name: Create + - name: Create place href: ../../api/place-post.md - - name: Get + - name: Get place href: ../../api/place-get.md - - name: Update + - name: Update place href: ../../api/place-update.md - - name: Delete + - name: Delete place href: ../../api/place-delete.md - - name: Descendants + - name: List descendants href: ../../api/place-descendants.md - name: Create check-in claim href: ../../api/place-post-checkins.md @@ -444,6 +444,8 @@ items: href: ../../resources/reservableplacemode.md - name: Resource link href: ../../resources/resourcelink.md + - name: String dictionary + href: ../../resources/stringdictionary.md - name: Unavailable place mode href: ../../resources/unavailableplacemode.md - name: Work hours and locations diff --git a/changelog/Microsoft.Exchange.Places.json b/changelog/Microsoft.Exchange.Places.json index 495181deef0..39a6ce2a5e2 100644 --- a/changelog/Microsoft.Exchange.Places.json +++ b/changelog/Microsoft.Exchange.Places.json @@ -1,1236 +1,1236 @@ -{ - "changelog": [ - { - "ChangeList": [ - { - "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", - "ApiChange": "Resource", - "ChangedApiName": "stringDictionary", - "ChangeType": "Addition", - "Description": "Added the [stringDictionary](https://learn.microsoft.com/en-us/graph/api/resources/stringdictionary?view=graph-rest-beta) resource.", - "Target": "stringDictionary" - }, - { - "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", - "ApiChange": "Property", - "ChangedApiName": "customProperties", - "ChangeType": "Addition", - "Description": "Added the **customProperties** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", - "ApiChange": "Property", - "ChangedApiName": "lastUpdatedTime", - "ChangeType": "Addition", - "Description": "Added the **lastUpdatedTime** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", - "ApiChange": "Resource", - "ChangedApiName": "Dictionary", - "ChangeType": "Addition", - "Description": "Added the [Dictionary](https://learn.microsoft.com/en-us/graph/api/resources/dictionary?view=graph-rest-beta) resource.", - "Target": "Dictionary" - } - ], - "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2026-09-10T06:52:03.1528589Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", - "ApiChange": "Resource", - "ChangedApiName": "placeServicePlanInfo", - "ChangeType": "Addition", - "Description": "Added the [placeServicePlanInfo](https://learn.microsoft.com/en-us/graph/api/resources/placeserviceplaninfo?view=graph-rest-1.0) resource.", - "Target": "placeServicePlanInfo" - }, - { - "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", - "ApiChange": "Property", - "ChangedApiName": "servicePlans", - "ChangeType": "Addition", - "Description": "Added the **servicePlans** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-1.0) resource.", - "Target": "desk" - }, - { - "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", - "Target": "place" - }, - { - "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Change", - "Description": "Updated the **placeId** property on the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) base resource.", - "Target": "room" - }, - { - "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Change", - "Description": "Updated the **placeId** property on the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-1.0) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) base resource.", - "Target": "workspace" - } - ], - "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", - "Cloud": "Prod", - "Version": "v1.0", - "CreatedDateTime": "2026-07-17T00:00:00.0000000Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", - "ApiChange": "Resource", - "ChangedApiName": "placeServicePlanInfo", - "ChangeType": "Addition", - "Description": "Added the [placeServicePlanInfo](https://learn.microsoft.com/en-us/graph/api/resources/placeserviceplaninfo?view=graph-rest-beta) resource.", - "Target": "placeServicePlanInfo" - }, - { - "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", - "ApiChange": "Property", - "ChangedApiName": "servicePlans", - "ChangeType": "Addition", - "Description": "Added the **servicePlans** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-beta) resource.", - "Target": "desk" - }, - { - "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Change", - "Description": "Updated the **placeId** property on the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) base resource.", - "Target": "room" - }, - { - "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Change", - "Description": "Updated the **placeId** property on the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) base resource.", - "Target": "workspace" - } - ], - "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2026-07-08T06:18:39.7163201Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Enumeration", - "ChangedApiName": "placeFeatureEnablement", - "ChangeType": "Addition", - "Description": "Added the **placeFeatureEnablement** enumeration type.", - "Target": "placeFeatureEnablement" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Resource", - "ChangedApiName": "offlinePlaceMode", - "ChangeType": "Deletion", - "Description": "Removed the **offlinePlaceMode** resource.", - "Target": "offlinePlaceMode" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Resource", - "ChangedApiName": "unavailablePlaceMode", - "ChangeType": "Addition", - "Description": "Added the [unavailablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/unavailablePlaceMode?view=graph-rest-beta) resource.", - "Target": "unavailablePlaceMode" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Property", - "ChangedApiName": "wifiState", - "ChangeType": "Addition", - "Description": "Added the **wifiState** property to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", - "Target": "building" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Property", - "ChangedApiName": "heightAdjustableState", - "ChangeType": "Addition", - "Description": "Added the **heightAdjustableState** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-beta) resource.", - "Target": "desk" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Deletion", - "Description": "Removed the **placeId** property from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Property", - "ChangedApiName": "teamsEnabledState", - "ChangeType": "Addition", - "Description": "Added the **teamsEnabledState** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - } - ], - "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2025-11-20T04:28:14.4935787Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "a1b2c3d4-e5f6-7890-abcd-ef1234567890", - "ApiChange": "Enum type", - "ChangedApiName": "wifi", - "ChangeType": "Change", - "Description": "Added the `wifi` member to the **workplaceSensorType** enumeration.", - "Target": "workplaceSensorType" - } - ], - "Id": "a1b2c3d4-e5f6-7890-abcd-ef1234567890", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2025-10-27T00:00:00.0000000Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", - "ApiChange": "Enum type", - "ChangedApiName": "workplaceSensorType", - "ChangeType": "Addition", - "Description": "Added the **workplaceSensorType** enumeration type.", - "Target": "workplaceSensorType" - }, - { - "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", - "ApiChange": "Resource", - "ChangedApiName": "workplaceSensor", - "ChangeType": "Addition", - "Description": "Added the [workplaceSensor](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensor?view=graph-rest-beta) resource type.", - "Target": "workplaceSensor" - }, - { - "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", - "ApiChange": "Resource", - "ChangedApiName": "workplaceSensorDevice", - "ChangeType": "Addition", - "Description": "Added the [workplaceSensorDevice](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDevice?view=graph-rest-beta) resource and supported methods", - "Target": "workplaceSensorDevice" - }, - { - "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", - "ApiChange": "Resource", - "ChangedApiName": "workplaceSensorDeviceTelemetry", - "ChangeType": "Addition", - "Description": "Added the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource type.", - "Target": "workplaceSensorDeviceTelemetry" - } - ], - "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2023-09-26T18:53:24.5258032Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "f685e2e7-e767-4dc2-b668-3516e9ccf8d5", - "ApiChange": "Relationship", - "ChangedApiName": "workspaces", - "ChangeType": "Addition", - "Description": "Added the **workspaces** relationship to the [roomList](https://learn.microsoft.com/en-us/graph/api/resources/roomList?view=graph-rest-beta) resource.", - "Target": "roomList" - }, - { - "Id": "f685e2e7-e767-4dc2-b668-3516e9ccf8d5", - "ApiChange": "Resource", - "ChangedApiName": "workspace", - "ChangeType": "Addition", - "Description": "Added the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - } - ], - "Id": "f685e2e7-e767-4dc2-b668-3516e9ccf8d5", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2022-08-10T18:49:04.1521461Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", - "ApiChange": "Resource", - "ChangedApiName": "room", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", - "ApiChange": "Resource", - "ChangedApiName": "workspace", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - }, - { - "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", - "ApiChange": "Resource", - "ChangedApiName": "roomList", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [roomList](https://learn.microsoft.com/en-us/graph/api/resources/roomlist?view=graph-rest-beta) resource.", - "Target": "roomList" - } - ], - "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2024-02-08T00:26:43.6656685Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "ApiChange": "Enumeration", - "ChangedApiName": "workplaceSensorEventType", - "ChangeType": "Addition", - "Description": "Added the **workplaceSensorEventType** enumeration type.", - "Target": "workplaceSensorEventType" - }, - { - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "ApiChange": "Member", - "ChangedApiName": "badge", - "ChangeType": "Addition", - "Description": "Added the `badge` member to the **workplaceSensorType** enumeration.", - "Target": "workplaceSensorType" - }, - { - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "ApiChange": "Member", - "ChangedApiName": "wifi", - "ChangeType": "Addition", - "Description": "Added the `wifi` member to the **workplaceSensorType** enumeration.", - "Target": "workplaceSensorType" - }, - { - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "ApiChange": "Property", - "ChangedApiName": "eventValue", - "ChangeType": "Addition", - "Description": "Added the **eventValue** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", - "Target": "workplaceSensorDeviceTelemetry" - }, - { - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "ApiChange": "Property", - "ChangedApiName": "locationHint", - "ChangeType": "Addition", - "Description": "Added the **locationHint** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", - "Target": "workplaceSensorDeviceTelemetry" - }, - { - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "ApiChange": "Resource", - "ChangedApiName": "workplaceSensorEventValue", - "ChangeType": "Addition", - "Description": "Added the [workplaceSensorEventValue](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorEventValue?view=graph-rest-beta) resource.", - "Target": "workplaceSensorEventValue" - } - ], - "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", - "Cloud": "Review", - "Version": "beta", - "CreatedDateTime": "2024-05-10T21:07:51.9198392Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Enumeration", - "ChangedApiName": "workplaceSensorEventType", - "ChangeType": "Addition", - "Description": "Added the **workplaceSensorEventType** enumeration type.", - "Target": "workplaceSensorEventType" - }, - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Member", - "ChangedApiName": "badge", - "ChangeType": "Addition", - "Description": "Added the `badge` member to the **workplaceSensorType** enumeration.", - "Target": "workplaceSensorType" - }, - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Property", - "ChangedApiName": "eventValue", - "ChangeType": "Addition", - "Description": "Added the **eventValue** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", - "Target": "workplaceSensorDeviceTelemetry" - }, - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Property", - "ChangedApiName": "locationHint", - "ChangeType": "Addition", - "Description": "Added the **locationHint** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", - "Target": "workplaceSensorDeviceTelemetry" - }, - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Resource", - "ChangedApiName": "workplaceSensorEventValue", - "ChangeType": "Addition", - "Description": "Added the [workplaceSensorEventValue](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorEventValue?view=graph-rest-beta) resource.", - "Target": "workplaceSensorEventValue" - }, - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Resource", - "ChangedApiName": "emailIdentity", - "ChangeType": "Addition", - "Description": "Added the [emailIdentity](https://learn.microsoft.com/en-us/graph/api/resources/emailIdentity?view=graph-rest-beta) resource.", - "Target": "emailIdentity" - }, - { - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "ApiChange": "Resource", - "ChangedApiName": "identity", - "ChangeType": "Addition", - "Description": "Added the [identity](https://learn.microsoft.com/en-us/graph/api/resources/identity?view=graph-rest-beta) resource.", - "Target": "identity" - } - ], - "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2024-08-12T10:16:22.3182957Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", - "ApiChange": "Enumeration", - "ChangedApiName": "checkInMethod", - "ChangeType": "Addition", - "Description": "Added the **checkInMethod** enumeration type.", - "Target": "checkInMethod" - }, - { - "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", - "ApiChange": "Resource", - "ChangedApiName": "checkInClaim", - "ChangeType": "Addition", - "Description": "Added the [checkInClaim](https://learn.microsoft.com/en-us/graph/api/resources/checkInClaim?view=graph-rest-beta) resource and associated methods.", - "Target": "checkInClaim" - }, - { - "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", - "ApiChange": "Relationship", - "ChangedApiName": "checkIns", - "ChangeType": "Addition", - "Description": "Added the **checkIns** relationship to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - } - ], - "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2025-09-11T01:41:37.6480761Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Enumeration", - "ChangedApiName": "resourceLinkType", - "ChangeType": "Addition", - "Description": "Added the **resourceLinkType** enumeration type.", - "Target": "resourceLinkType" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "placeMode", - "ChangeType": "Addition", - "Description": "Added the [placeMode](https://learn.microsoft.com/en-us/graph/api/resources/placeMode?view=graph-rest-beta) resource type.", - "Target": "placeMode" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "assignedPlaceMode", - "ChangeType": "Addition", - "Description": "Added the [assignedPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/assignedPlaceMode?view=graph-rest-beta) resource type.", - "Target": "assignedPlaceMode" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "dropInPlaceMode", - "ChangeType": "Addition", - "Description": "Added the [dropInPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/dropInPlaceMode?view=graph-rest-beta) resource type.", - "Target": "dropInPlaceMode" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "offlinePlaceMode", - "ChangeType": "Addition", - "Description": "Added the [offlinePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/offlinePlaceMode?view=graph-rest-beta) resource type.", - "Target": "offlinePlaceMode" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "reservablePlaceMode", - "ChangeType": "Addition", - "Description": "Added the [reservablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/reservablePlaceMode?view=graph-rest-beta) resource type.", - "Target": "reservablePlaceMode" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "mailboxDetails", - "ChangeType": "Addition", - "Description": "Added the [mailboxDetails](https://learn.microsoft.com/en-us/graph/api/resources/mailboxDetails?view=graph-rest-beta) resource type.", - "Target": "mailboxDetails" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "resourceLink", - "ChangeType": "Addition", - "Description": "Added the [resourceLink](https://learn.microsoft.com/en-us/graph/api/resources/resourceLink?view=graph-rest-beta) resource type.", - "Target": "resourceLink" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "building", - "ChangeType": "Addition", - "Description": "Added the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", - "Target": "building" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "desk", - "ChangeType": "Addition", - "Description": "Added the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-beta) resource.", - "Target": "desk" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "floor", - "ChangeType": "Addition", - "Description": "Added the [floor](https://learn.microsoft.com/en-us/graph/api/resources/floor?view=graph-rest-beta) resource.", - "Target": "floor" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Resource", - "ChangedApiName": "section", - "ChangeType": "Addition", - "Description": "Added the [section](https://learn.microsoft.com/en-us/graph/api/resources/section?view=graph-rest-beta) resource.", - "Target": "section" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "resourceLinks", - "ChangeType": "Addition", - "Description": "Added the **resourceLinks** property to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", - "Target": "building" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "isWheelChairAccessible", - "ChangeType": "Addition", - "Description": "Added the **isWheelChairAccessible** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "label", - "ChangeType": "Addition", - "Description": "Added the **label** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "parentId", - "ChangeType": "Addition", - "Description": "Added the **parentId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "tags", - "ChangeType": "Addition", - "Description": "Added the **tags** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "isTeamsEnabled", - "ChangeType": "Addition", - "Description": "Added the **isTeamsEnabled** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "displayDeviceName", - "ChangeType": "Addition", - "Description": "Added the **displayDeviceName** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "mode", - "ChangeType": "Addition", - "Description": "Added the **mode** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "isWheelChairAccessible", - "ChangeType": "Deletion", - "Description": "Removed the **isWheelChairAccessible** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "label", - "ChangeType": "Deletion", - "Description": "Removed the **label** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "tags", - "ChangeType": "Deletion", - "Description": "Removed the **tags** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", - "Target": "room" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "isWheelChairAccessible", - "ChangeType": "Deletion", - "Description": "Removed the **isWheelChairAccessible** property from the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "label", - "ChangeType": "Deletion", - "Description": "Removed the **label** property from the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Property", - "ChangedApiName": "tags", - "ChangeType": "Deletion", - "Description": "Removed the **tags** property from the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", - "Target": "workspace" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Method", - "ChangedApiName": "descendants", - "ChangeType": "Addition", - "Description": "Added the [descendants](https://learn.microsoft.com/en-us/graph/api/place-descendants?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Method", - "ChangedApiName": "place", - "ChangeType": "Addition", - "Description": "Added the **create** operation to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "ApiChange": "Method", - "ChangedApiName": "place", - "ChangeType": "Addition", - "Description": "Added the [delete](https://learn.microsoft.com/en-us/graph/api/place-delete?view=graph-rest-beta) operation to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - } - ], - "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2025-08-08T23:36:37.579824Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "importBuildingMapSetting", - "ChangeType": "Addition", - "Description": "Added the [importBuildingMapSetting](https://learn.microsoft.com/en-us/graph/api/resources/importBuildingMapSetting?view=graph-rest-beta) resource.", - "Target": "importBuildingMapSetting" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "baseMapFeature", - "ChangeType": "Addition", - "Description": "Added the [baseMapFeature](https://learn.microsoft.com/en-us/graph/api/resources/baseMapFeature?view=graph-rest-beta) resource.", - "Target": "baseMapFeature" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "buildingMap", - "ChangeType": "Addition", - "Description": "Added the [buildingMap](https://learn.microsoft.com/en-us/graph/api/resources/buildingMap?view=graph-rest-beta) resource and associated methods.", - "Target": "buildingMap" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "fixtureMap", - "ChangeType": "Addition", - "Description": "Added the [fixtureMap](https://learn.microsoft.com/en-us/graph/api/resources/fixtureMap?view=graph-rest-beta) resource and associated methods.", - "Target": "fixtureMap" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "footprintMap", - "ChangeType": "Addition", - "Description": "Added the [footprintMap](https://learn.microsoft.com/en-us/graph/api/resources/footprintMap?view=graph-rest-beta) resource and an associated method.", - "Target": "footprintMap" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "levelMap", - "ChangeType": "Addition", - "Description": "Added the [levelMap](https://learn.microsoft.com/en-us/graph/api/resources/levelMap?view=graph-rest-beta) resource and an associated method..", - "Target": "levelMap" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "sectionMap", - "ChangeType": "Addition", - "Description": "Added the [sectionMap](https://learn.microsoft.com/en-us/graph/api/resources/sectionMap?view=graph-rest-beta) resource and associated methods.", - "Target": "sectionMap" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Resource", - "ChangedApiName": "unitMap", - "ChangeType": "Addition", - "Description": "Added the [unitMap](https://learn.microsoft.com/en-us/graph/api/resources/unitMap?view=graph-rest-beta) resource and associated methods.", - "Target": "unitMap" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Method", - "ChangedApiName": "ingestMapFile", - "ChangeType": "Addition", - "Description": "Added the [ingestMapFile](https://learn.microsoft.com/en-us/graph/api/building-ingestMapFile?view=graph-rest-beta) method to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", - "Target": "building" - }, - { - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "ApiChange": "Relationship", - "ChangedApiName": "map", - "ChangeType": "Addition", - "Description": "Added the **map** relationship to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", - "Target": "building" - } - ], - "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2025-09-09T23:36:37.579824Z", - "WorkloadArea": "Calendars", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Enumeration", - "ChangedApiName": "placeOperationStatus", - "ChangeType": "Addition", - "Description": "Added the **placeOperationStatus** enumeration type.", - "Target": "placeOperationStatus" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Resource", - "ChangedApiName": "placeExecutionResult", - "ChangeType": "Addition", - "Description": "Added the [placeExecutionResult](https://learn.microsoft.com/en-us/graph/api/resources/placeExecutionResult?view=graph-rest-beta) resource.", - "Target": "placeExecutionResult" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Resource", - "ChangedApiName": "placeOperationProgress", - "ChangeType": "Addition", - "Description": "Added the [placeOperationProgress](https://learn.microsoft.com/en-us/graph/api/resources/placeOperationProgress?view=graph-rest-beta) resource.", - "Target": "placeOperationProgress" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Relationship", - "ChangedApiName": "children", - "ChangeType": "Addition", - "Description": "Added the **children** relationship to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource and its derived types.", - "Target": "place" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Resource", - "ChangedApiName": "placeOperation", - "ChangeType": "Addition", - "Description": "Added the [placeOperation](https://learn.microsoft.com/en-us/graph/api/resources/placeOperation?view=graph-rest-beta) resource and associated methods.", - "Target": "placeOperation" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Method", - "ChangedApiName": "getOperation", - "ChangeType": "Addition", - "Description": "Added the [getOperation](https://learn.microsoft.com/en-us/graph/api/place-getOperation?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Method", - "ChangedApiName": "place", - "ChangeType": "Addition", - "Description": "Added the [Upsert places](https://learn.microsoft.com/en-us/graph/api/place-patch-places?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - }, - { - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "ApiChange": "Method", - "ChangedApiName": "listOperations", - "ChangeType": "Addition", - "Description": "Added the [listOperations](https://learn.microsoft.com/en-us/graph/api/place-listOperations?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", - "Target": "place" - } - ], - "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2025-12-09T05:36:40.1956456Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Enumeration", - "ChangedApiName": "resourceLinkType", - "ChangeType": "Addition", - "Description": "Added the **resourceLinkType** enumeration type.", - "Target": "resourceLinkType" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "assignedPlaceMode", - "ChangeType": "Addition", - "Description": "Added the [assignedPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/assignedPlaceMode?view=graph-rest-1.0) resource.", - "Target": "assignedPlaceMode" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "dropInPlaceMode", - "ChangeType": "Addition", - "Description": "Added the [dropInPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/dropInPlaceMode?view=graph-rest-1.0) resource.", - "Target": "dropInPlaceMode" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "importBuildingMapSetting", - "ChangeType": "Addition", - "Description": "Added the [importBuildingMapSetting](https://learn.microsoft.com/en-us/graph/api/resources/importBuildingMapSetting?view=graph-rest-1.0) resource.", - "Target": "importBuildingMapSetting" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "mailboxDetails", - "ChangeType": "Addition", - "Description": "Added the [mailboxDetails](https://learn.microsoft.com/en-us/graph/api/resources/mailboxDetails?view=graph-rest-1.0) resource.", - "Target": "mailboxDetails" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "placeMode", - "ChangeType": "Addition", - "Description": "Added the [placeMode](https://learn.microsoft.com/en-us/graph/api/resources/placeMode?view=graph-rest-1.0) resource.", - "Target": "placeMode" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "reservablePlaceMode", - "ChangeType": "Addition", - "Description": "Added the [reservablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/reservablePlaceMode?view=graph-rest-1.0) resource.", - "Target": "reservablePlaceMode" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "resourceLink", - "ChangeType": "Addition", - "Description": "Added the [resourceLink](https://learn.microsoft.com/en-us/graph/api/resources/resourceLink?view=graph-rest-1.0) resource.", - "Target": "resourceLink" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "baseMapFeature", - "ChangeType": "Addition", - "Description": "Added the [baseMapFeature](https://learn.microsoft.com/en-us/graph/api/resources/baseMapFeature?view=graph-rest-1.0) resource.", - "Target": "baseMapFeature" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "building", - "ChangeType": "Addition", - "Description": "Added the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-1.0) resource.", - "Target": "building" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "buildingMap", - "ChangeType": "Addition", - "Description": "Added the [buildingMap](https://learn.microsoft.com/en-us/graph/api/resources/buildingMap?view=graph-rest-1.0) resource.", - "Target": "buildingMap" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "desk", - "ChangeType": "Addition", - "Description": "Added the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-1.0) resource.", - "Target": "desk" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "fixtureMap", - "ChangeType": "Addition", - "Description": "Added the [fixtureMap](https://learn.microsoft.com/en-us/graph/api/resources/fixtureMap?view=graph-rest-1.0) resource.", - "Target": "fixtureMap" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "floor", - "ChangeType": "Addition", - "Description": "Added the [floor](https://learn.microsoft.com/en-us/graph/api/resources/floor?view=graph-rest-1.0) resource.", - "Target": "floor" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "footprintMap", - "ChangeType": "Addition", - "Description": "Added the [footprintMap](https://learn.microsoft.com/en-us/graph/api/resources/footprintMap?view=graph-rest-1.0) resource.", - "Target": "footprintMap" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "levelMap", - "ChangeType": "Addition", - "Description": "Added the [levelMap](https://learn.microsoft.com/en-us/graph/api/resources/levelMap?view=graph-rest-1.0) resource.", - "Target": "levelMap" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "isWheelChairAccessible", - "ChangeType": "Addition", - "Description": "Added the **isWheelChairAccessible** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", - "Target": "place" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "label", - "ChangeType": "Addition", - "Description": "Added the **label** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", - "Target": "place" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "parentId", - "ChangeType": "Addition", - "Description": "Added the **parentId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", - "Target": "place" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "tags", - "ChangeType": "Addition", - "Description": "Added the **tags** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", - "Target": "place" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "isWheelChairAccessible", - "ChangeType": "Deletion", - "Description": "Removed the **isWheelChairAccessible** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", - "Target": "room" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "label", - "ChangeType": "Deletion", - "Description": "Removed the **label** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", - "Target": "room" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Property", - "ChangedApiName": "tags", - "ChangeType": "Deletion", - "Description": "Removed the **tags** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", - "Target": "room" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Relationship", - "ChangedApiName": "workspaces", - "ChangeType": "Addition", - "Description": "Added the **workspaces** relationship to the [roomList](https://learn.microsoft.com/en-us/graph/api/resources/roomList?view=graph-rest-1.0) resource.", - "Target": "roomList" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "section", - "ChangeType": "Addition", - "Description": "Added the [section](https://learn.microsoft.com/en-us/graph/api/resources/section?view=graph-rest-1.0) resource.", - "Target": "section" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "sectionMap", - "ChangeType": "Addition", - "Description": "Added the [sectionMap](https://learn.microsoft.com/en-us/graph/api/resources/sectionMap?view=graph-rest-1.0) resource.", - "Target": "sectionMap" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "unitMap", - "ChangeType": "Addition", - "Description": "Added the [unitMap](https://learn.microsoft.com/en-us/graph/api/resources/unitMap?view=graph-rest-1.0) resource.", - "Target": "unitMap" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Resource", - "ChangedApiName": "workspace", - "ChangeType": "Addition", - "Description": "Added the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-1.0) resource.", - "Target": "workspace" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Method", - "ChangedApiName": "ingestMapFile", - "ChangeType": "Addition", - "Description": "Added the [ingestMapFile](https://learn.microsoft.com/en-us/graph/api/building-ingestMapFile?view=graph-rest-1.0) method to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-1.0) resource.", - "Target": "building" - }, - { - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "ApiChange": "Method", - "ChangedApiName": "descendants", - "ChangeType": "Addition", - "Description": "Added the [descendants](https://learn.microsoft.com/en-us/graph/api/place-descendants?view=graph-rest-1.0) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", - "Target": "place" - } - ], - "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", - "Cloud": "Prod", - "Version": "v1.0", - "CreatedDateTime": "2025-12-02T07:34:22.5269035Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - }, - { - "ChangeList": [ - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Enumeration", - "ChangedApiName": "placeFeatureEnablement", - "ChangeType": "Addition", - "Description": "Added the **placeFeatureEnablement** enumeration type.", - "Target": "placeFeatureEnablement" - }, - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Resource", - "ChangedApiName": "unavailablePlaceMode", - "ChangeType": "Addition", - "Description": "Added the [unavailablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/unavailablePlaceMode?view=graph-rest-1.0) resource.", - "Target": "unavailablePlaceMode" - }, - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Property", - "ChangedApiName": "wifiState", - "ChangeType": "Addition", - "Description": "Added the **wifiState** property to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-1.0) resource.", - "Target": "building" - }, - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Property", - "ChangedApiName": "heightAdjustableState", - "ChangeType": "Addition", - "Description": "Added the **heightAdjustableState** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-1.0) resource.", - "Target": "desk" - }, - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", - "Target": "room" - }, - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Property", - "ChangedApiName": "teamsEnabledState", - "ChangeType": "Addition", - "Description": "Added the **teamsEnabledState** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", - "Target": "room" - }, - { - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "ApiChange": "Property", - "ChangedApiName": "placeId", - "ChangeType": "Addition", - "Description": "Added the **placeId** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-1.0) resource.", - "Target": "workspace" - } - ], - "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", - "Cloud": "Prod", - "Version": "v1.0", - "CreatedDateTime": "2025-12-26T08:33:18.5751667Z", - "WorkloadArea": "Calendar", - "SubArea": "Places" - } - ] -} +{ + "changelog": [ + { + "ChangeList": [ + { + "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", + "ApiChange": "Resource", + "ChangedApiName": "stringDictionary", + "ChangeType": "Addition", + "Description": "Added the [stringDictionary](https://learn.microsoft.com/en-us/graph/api/resources/stringdictionary?view=graph-rest-beta) resource.", + "Target": "stringDictionary" + }, + { + "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", + "ApiChange": "Property", + "ChangedApiName": "customProperties", + "ChangeType": "Addition", + "Description": "Added the **customProperties** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", + "ApiChange": "Property", + "ChangedApiName": "lastUpdatedTime", + "ChangeType": "Addition", + "Description": "Added the **lastUpdatedTime** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", + "ApiChange": "Resource", + "ChangedApiName": "Dictionary", + "ChangeType": "Addition", + "Description": "Added the [Dictionary](https://learn.microsoft.com/en-us/graph/api/resources/dictionary?view=graph-rest-beta) resource.", + "Target": "Dictionary" + } + ], + "Id": "ba111eab-9d66-43d8-9213-c945ce890b0f", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-10T06:52:03.1528589Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", + "ApiChange": "Resource", + "ChangedApiName": "placeServicePlanInfo", + "ChangeType": "Addition", + "Description": "Added the [placeServicePlanInfo](https://learn.microsoft.com/en-us/graph/api/resources/placeserviceplaninfo?view=graph-rest-1.0) resource.", + "Target": "placeServicePlanInfo" + }, + { + "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", + "ApiChange": "Property", + "ChangedApiName": "servicePlans", + "ChangeType": "Addition", + "Description": "Added the **servicePlans** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-1.0) resource.", + "Target": "desk" + }, + { + "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", + "Target": "place" + }, + { + "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Change", + "Description": "Updated the **placeId** property on the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) base resource.", + "Target": "room" + }, + { + "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Change", + "Description": "Updated the **placeId** property on the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-1.0) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) base resource.", + "Target": "workspace" + } + ], + "Id": "b1f2e0a4-55d4-4e5c-95cb-7d21a2b8db74", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-07-17T00:00:00.0000000Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", + "ApiChange": "Resource", + "ChangedApiName": "placeServicePlanInfo", + "ChangeType": "Addition", + "Description": "Added the [placeServicePlanInfo](https://learn.microsoft.com/en-us/graph/api/resources/placeserviceplaninfo?view=graph-rest-beta) resource.", + "Target": "placeServicePlanInfo" + }, + { + "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", + "ApiChange": "Property", + "ChangedApiName": "servicePlans", + "ChangeType": "Addition", + "Description": "Added the **servicePlans** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-beta) resource.", + "Target": "desk" + }, + { + "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Change", + "Description": "Updated the **placeId** property on the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) base resource.", + "Target": "room" + }, + { + "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Change", + "Description": "Updated the **placeId** property on the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource to be inherited from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) base resource.", + "Target": "workspace" + } + ], + "Id": "ed248348-7cc3-45b4-97ed-08e980401e25", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-07-08T06:18:39.7163201Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Enumeration", + "ChangedApiName": "placeFeatureEnablement", + "ChangeType": "Addition", + "Description": "Added the **placeFeatureEnablement** enumeration type.", + "Target": "placeFeatureEnablement" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Resource", + "ChangedApiName": "offlinePlaceMode", + "ChangeType": "Deletion", + "Description": "Removed the **offlinePlaceMode** resource.", + "Target": "offlinePlaceMode" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Resource", + "ChangedApiName": "unavailablePlaceMode", + "ChangeType": "Addition", + "Description": "Added the [unavailablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/unavailablePlaceMode?view=graph-rest-beta) resource.", + "Target": "unavailablePlaceMode" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Property", + "ChangedApiName": "wifiState", + "ChangeType": "Addition", + "Description": "Added the **wifiState** property to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", + "Target": "building" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Property", + "ChangedApiName": "heightAdjustableState", + "ChangeType": "Addition", + "Description": "Added the **heightAdjustableState** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-beta) resource.", + "Target": "desk" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Deletion", + "Description": "Removed the **placeId** property from the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Property", + "ChangedApiName": "teamsEnabledState", + "ChangeType": "Addition", + "Description": "Added the **teamsEnabledState** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + } + ], + "Id": "32395157-c113-44fb-8f3c-80f8da0f2c3f", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2025-11-20T04:28:14.4935787Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "a1b2c3d4-e5f6-7890-abcd-ef1234567890", + "ApiChange": "Enum type", + "ChangedApiName": "wifi", + "ChangeType": "Change", + "Description": "Added the `wifi` member to the **workplaceSensorType** enumeration.", + "Target": "workplaceSensorType" + } + ], + "Id": "a1b2c3d4-e5f6-7890-abcd-ef1234567890", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2025-10-27T00:00:00.0000000Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", + "ApiChange": "Enum type", + "ChangedApiName": "workplaceSensorType", + "ChangeType": "Addition", + "Description": "Added the **workplaceSensorType** enumeration type.", + "Target": "workplaceSensorType" + }, + { + "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", + "ApiChange": "Resource", + "ChangedApiName": "workplaceSensor", + "ChangeType": "Addition", + "Description": "Added the [workplaceSensor](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensor?view=graph-rest-beta) resource type.", + "Target": "workplaceSensor" + }, + { + "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", + "ApiChange": "Resource", + "ChangedApiName": "workplaceSensorDevice", + "ChangeType": "Addition", + "Description": "Added the [workplaceSensorDevice](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDevice?view=graph-rest-beta) resource and supported methods", + "Target": "workplaceSensorDevice" + }, + { + "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", + "ApiChange": "Resource", + "ChangedApiName": "workplaceSensorDeviceTelemetry", + "ChangeType": "Addition", + "Description": "Added the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource type.", + "Target": "workplaceSensorDeviceTelemetry" + } + ], + "Id": "67d4720a-8fd3-415d-bc76-1f71ca43e1e0", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2023-09-26T18:53:24.5258032Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "f685e2e7-e767-4dc2-b668-3516e9ccf8d5", + "ApiChange": "Relationship", + "ChangedApiName": "workspaces", + "ChangeType": "Addition", + "Description": "Added the **workspaces** relationship to the [roomList](https://learn.microsoft.com/en-us/graph/api/resources/roomList?view=graph-rest-beta) resource.", + "Target": "roomList" + }, + { + "Id": "f685e2e7-e767-4dc2-b668-3516e9ccf8d5", + "ApiChange": "Resource", + "ChangedApiName": "workspace", + "ChangeType": "Addition", + "Description": "Added the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + } + ], + "Id": "f685e2e7-e767-4dc2-b668-3516e9ccf8d5", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2022-08-10T18:49:04.1521461Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", + "ApiChange": "Resource", + "ChangedApiName": "room", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", + "ApiChange": "Resource", + "ChangedApiName": "workspace", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + }, + { + "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", + "ApiChange": "Resource", + "ChangedApiName": "roomList", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [roomList](https://learn.microsoft.com/en-us/graph/api/resources/roomlist?view=graph-rest-beta) resource.", + "Target": "roomList" + } + ], + "Id": "da2d0de7-1943-476e-9963-526e67fd97ed", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2024-02-08T00:26:43.6656685Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "ApiChange": "Enumeration", + "ChangedApiName": "workplaceSensorEventType", + "ChangeType": "Addition", + "Description": "Added the **workplaceSensorEventType** enumeration type.", + "Target": "workplaceSensorEventType" + }, + { + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "ApiChange": "Member", + "ChangedApiName": "badge", + "ChangeType": "Addition", + "Description": "Added the `badge` member to the **workplaceSensorType** enumeration.", + "Target": "workplaceSensorType" + }, + { + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "ApiChange": "Member", + "ChangedApiName": "wifi", + "ChangeType": "Addition", + "Description": "Added the `wifi` member to the **workplaceSensorType** enumeration.", + "Target": "workplaceSensorType" + }, + { + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "ApiChange": "Property", + "ChangedApiName": "eventValue", + "ChangeType": "Addition", + "Description": "Added the **eventValue** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", + "Target": "workplaceSensorDeviceTelemetry" + }, + { + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "ApiChange": "Property", + "ChangedApiName": "locationHint", + "ChangeType": "Addition", + "Description": "Added the **locationHint** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", + "Target": "workplaceSensorDeviceTelemetry" + }, + { + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "ApiChange": "Resource", + "ChangedApiName": "workplaceSensorEventValue", + "ChangeType": "Addition", + "Description": "Added the [workplaceSensorEventValue](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorEventValue?view=graph-rest-beta) resource.", + "Target": "workplaceSensorEventValue" + } + ], + "Id": "58d595a9-f4f2-4da5-ad2b-bbd3e25f5ca1", + "Cloud": "Review", + "Version": "beta", + "CreatedDateTime": "2024-05-10T21:07:51.9198392Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Enumeration", + "ChangedApiName": "workplaceSensorEventType", + "ChangeType": "Addition", + "Description": "Added the **workplaceSensorEventType** enumeration type.", + "Target": "workplaceSensorEventType" + }, + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Member", + "ChangedApiName": "badge", + "ChangeType": "Addition", + "Description": "Added the `badge` member to the **workplaceSensorType** enumeration.", + "Target": "workplaceSensorType" + }, + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Property", + "ChangedApiName": "eventValue", + "ChangeType": "Addition", + "Description": "Added the **eventValue** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", + "Target": "workplaceSensorDeviceTelemetry" + }, + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Property", + "ChangedApiName": "locationHint", + "ChangeType": "Addition", + "Description": "Added the **locationHint** property to the [workplaceSensorDeviceTelemetry](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorDeviceTelemetry?view=graph-rest-beta) resource.", + "Target": "workplaceSensorDeviceTelemetry" + }, + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Resource", + "ChangedApiName": "workplaceSensorEventValue", + "ChangeType": "Addition", + "Description": "Added the [workplaceSensorEventValue](https://learn.microsoft.com/en-us/graph/api/resources/workplaceSensorEventValue?view=graph-rest-beta) resource.", + "Target": "workplaceSensorEventValue" + }, + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Resource", + "ChangedApiName": "emailIdentity", + "ChangeType": "Addition", + "Description": "Added the [emailIdentity](https://learn.microsoft.com/en-us/graph/api/resources/emailIdentity?view=graph-rest-beta) resource.", + "Target": "emailIdentity" + }, + { + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "ApiChange": "Resource", + "ChangedApiName": "identity", + "ChangeType": "Addition", + "Description": "Added the [identity](https://learn.microsoft.com/en-us/graph/api/resources/identity?view=graph-rest-beta) resource.", + "Target": "identity" + } + ], + "Id": "012c6730-61ac-4d57-82b0-fbc5da001746", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2024-08-12T10:16:22.3182957Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", + "ApiChange": "Enumeration", + "ChangedApiName": "checkInMethod", + "ChangeType": "Addition", + "Description": "Added the **checkInMethod** enumeration type.", + "Target": "checkInMethod" + }, + { + "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", + "ApiChange": "Resource", + "ChangedApiName": "checkInClaim", + "ChangeType": "Addition", + "Description": "Added the [checkInClaim](https://learn.microsoft.com/en-us/graph/api/resources/checkInClaim?view=graph-rest-beta) resource and associated methods.", + "Target": "checkInClaim" + }, + { + "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", + "ApiChange": "Relationship", + "ChangedApiName": "checkIns", + "ChangeType": "Addition", + "Description": "Added the **checkIns** relationship to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + } + ], + "Id": "6364e2f8-0f15-4f27-9d4b-cab5710f9967", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2025-09-11T01:41:37.6480761Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Enumeration", + "ChangedApiName": "resourceLinkType", + "ChangeType": "Addition", + "Description": "Added the **resourceLinkType** enumeration type.", + "Target": "resourceLinkType" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "placeMode", + "ChangeType": "Addition", + "Description": "Added the [placeMode](https://learn.microsoft.com/en-us/graph/api/resources/placeMode?view=graph-rest-beta) resource type.", + "Target": "placeMode" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "assignedPlaceMode", + "ChangeType": "Addition", + "Description": "Added the [assignedPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/assignedPlaceMode?view=graph-rest-beta) resource type.", + "Target": "assignedPlaceMode" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "dropInPlaceMode", + "ChangeType": "Addition", + "Description": "Added the [dropInPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/dropInPlaceMode?view=graph-rest-beta) resource type.", + "Target": "dropInPlaceMode" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "offlinePlaceMode", + "ChangeType": "Addition", + "Description": "Added the [offlinePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/offlinePlaceMode?view=graph-rest-beta) resource type.", + "Target": "offlinePlaceMode" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "reservablePlaceMode", + "ChangeType": "Addition", + "Description": "Added the [reservablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/reservablePlaceMode?view=graph-rest-beta) resource type.", + "Target": "reservablePlaceMode" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "mailboxDetails", + "ChangeType": "Addition", + "Description": "Added the [mailboxDetails](https://learn.microsoft.com/en-us/graph/api/resources/mailboxDetails?view=graph-rest-beta) resource type.", + "Target": "mailboxDetails" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "resourceLink", + "ChangeType": "Addition", + "Description": "Added the [resourceLink](https://learn.microsoft.com/en-us/graph/api/resources/resourceLink?view=graph-rest-beta) resource type.", + "Target": "resourceLink" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "building", + "ChangeType": "Addition", + "Description": "Added the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", + "Target": "building" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "desk", + "ChangeType": "Addition", + "Description": "Added the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-beta) resource.", + "Target": "desk" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "floor", + "ChangeType": "Addition", + "Description": "Added the [floor](https://learn.microsoft.com/en-us/graph/api/resources/floor?view=graph-rest-beta) resource.", + "Target": "floor" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Resource", + "ChangedApiName": "section", + "ChangeType": "Addition", + "Description": "Added the [section](https://learn.microsoft.com/en-us/graph/api/resources/section?view=graph-rest-beta) resource.", + "Target": "section" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "resourceLinks", + "ChangeType": "Addition", + "Description": "Added the **resourceLinks** property to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", + "Target": "building" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "isWheelChairAccessible", + "ChangeType": "Addition", + "Description": "Added the **isWheelChairAccessible** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "label", + "ChangeType": "Addition", + "Description": "Added the **label** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "parentId", + "ChangeType": "Addition", + "Description": "Added the **parentId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "tags", + "ChangeType": "Addition", + "Description": "Added the **tags** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "isTeamsEnabled", + "ChangeType": "Addition", + "Description": "Added the **isTeamsEnabled** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "displayDeviceName", + "ChangeType": "Addition", + "Description": "Added the **displayDeviceName** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "mode", + "ChangeType": "Addition", + "Description": "Added the **mode** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "isWheelChairAccessible", + "ChangeType": "Deletion", + "Description": "Removed the **isWheelChairAccessible** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "label", + "ChangeType": "Deletion", + "Description": "Removed the **label** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "tags", + "ChangeType": "Deletion", + "Description": "Removed the **tags** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-beta) resource.", + "Target": "room" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "isWheelChairAccessible", + "ChangeType": "Deletion", + "Description": "Removed the **isWheelChairAccessible** property from the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "label", + "ChangeType": "Deletion", + "Description": "Removed the **label** property from the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Property", + "ChangedApiName": "tags", + "ChangeType": "Deletion", + "Description": "Removed the **tags** property from the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-beta) resource.", + "Target": "workspace" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Method", + "ChangedApiName": "descendants", + "ChangeType": "Addition", + "Description": "Added the [descendants](https://learn.microsoft.com/en-us/graph/api/place-descendants?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Method", + "ChangedApiName": "place", + "ChangeType": "Addition", + "Description": "Added the **create** operation to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "ApiChange": "Method", + "ChangedApiName": "place", + "ChangeType": "Addition", + "Description": "Added the [delete](https://learn.microsoft.com/en-us/graph/api/place-delete?view=graph-rest-beta) operation to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + } + ], + "Id": "3e86af9c-5584-4544-9705-15b97fcd9dd4", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2025-08-08T23:36:37.579824Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "importBuildingMapSetting", + "ChangeType": "Addition", + "Description": "Added the [importBuildingMapSetting](https://learn.microsoft.com/en-us/graph/api/resources/importBuildingMapSetting?view=graph-rest-beta) resource.", + "Target": "importBuildingMapSetting" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "baseMapFeature", + "ChangeType": "Addition", + "Description": "Added the [baseMapFeature](https://learn.microsoft.com/en-us/graph/api/resources/baseMapFeature?view=graph-rest-beta) resource.", + "Target": "baseMapFeature" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "buildingMap", + "ChangeType": "Addition", + "Description": "Added the [buildingMap](https://learn.microsoft.com/en-us/graph/api/resources/buildingMap?view=graph-rest-beta) resource and associated methods.", + "Target": "buildingMap" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "fixtureMap", + "ChangeType": "Addition", + "Description": "Added the [fixtureMap](https://learn.microsoft.com/en-us/graph/api/resources/fixtureMap?view=graph-rest-beta) resource and associated methods.", + "Target": "fixtureMap" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "footprintMap", + "ChangeType": "Addition", + "Description": "Added the [footprintMap](https://learn.microsoft.com/en-us/graph/api/resources/footprintMap?view=graph-rest-beta) resource and an associated method.", + "Target": "footprintMap" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "levelMap", + "ChangeType": "Addition", + "Description": "Added the [levelMap](https://learn.microsoft.com/en-us/graph/api/resources/levelMap?view=graph-rest-beta) resource and an associated method..", + "Target": "levelMap" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "sectionMap", + "ChangeType": "Addition", + "Description": "Added the [sectionMap](https://learn.microsoft.com/en-us/graph/api/resources/sectionMap?view=graph-rest-beta) resource and associated methods.", + "Target": "sectionMap" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Resource", + "ChangedApiName": "unitMap", + "ChangeType": "Addition", + "Description": "Added the [unitMap](https://learn.microsoft.com/en-us/graph/api/resources/unitMap?view=graph-rest-beta) resource and associated methods.", + "Target": "unitMap" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Method", + "ChangedApiName": "ingestMapFile", + "ChangeType": "Addition", + "Description": "Added the [ingestMapFile](https://learn.microsoft.com/en-us/graph/api/building-ingestMapFile?view=graph-rest-beta) method to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", + "Target": "building" + }, + { + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "ApiChange": "Relationship", + "ChangedApiName": "map", + "ChangeType": "Addition", + "Description": "Added the **map** relationship to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-beta) resource.", + "Target": "building" + } + ], + "Id": "7be00093-6bce-4bfd-bbdc-b663ab3fd7c0", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2025-09-09T23:36:37.579824Z", + "WorkloadArea": "Calendars", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Enumeration", + "ChangedApiName": "placeOperationStatus", + "ChangeType": "Addition", + "Description": "Added the **placeOperationStatus** enumeration type.", + "Target": "placeOperationStatus" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Resource", + "ChangedApiName": "placeExecutionResult", + "ChangeType": "Addition", + "Description": "Added the [placeExecutionResult](https://learn.microsoft.com/en-us/graph/api/resources/placeExecutionResult?view=graph-rest-beta) resource.", + "Target": "placeExecutionResult" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Resource", + "ChangedApiName": "placeOperationProgress", + "ChangeType": "Addition", + "Description": "Added the [placeOperationProgress](https://learn.microsoft.com/en-us/graph/api/resources/placeOperationProgress?view=graph-rest-beta) resource.", + "Target": "placeOperationProgress" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Relationship", + "ChangedApiName": "children", + "ChangeType": "Addition", + "Description": "Added the **children** relationship to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource and its derived types.", + "Target": "place" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Resource", + "ChangedApiName": "placeOperation", + "ChangeType": "Addition", + "Description": "Added the [placeOperation](https://learn.microsoft.com/en-us/graph/api/resources/placeOperation?view=graph-rest-beta) resource and associated methods.", + "Target": "placeOperation" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Method", + "ChangedApiName": "getOperation", + "ChangeType": "Addition", + "Description": "Added the [getOperation](https://learn.microsoft.com/en-us/graph/api/place-getOperation?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Method", + "ChangedApiName": "place", + "ChangeType": "Addition", + "Description": "Added the [Upsert places](https://learn.microsoft.com/en-us/graph/api/place-patch-places?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + }, + { + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "ApiChange": "Method", + "ChangedApiName": "listOperations", + "ChangeType": "Addition", + "Description": "Added the [listOperations](https://learn.microsoft.com/en-us/graph/api/place-listOperations?view=graph-rest-beta) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-beta) resource.", + "Target": "place" + } + ], + "Id": "2ee695d4-18dc-45f9-a9f2-74677efd4fd5", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2025-12-09T05:36:40.1956456Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Enumeration", + "ChangedApiName": "resourceLinkType", + "ChangeType": "Addition", + "Description": "Added the **resourceLinkType** enumeration type.", + "Target": "resourceLinkType" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "assignedPlaceMode", + "ChangeType": "Addition", + "Description": "Added the [assignedPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/assignedPlaceMode?view=graph-rest-1.0) resource.", + "Target": "assignedPlaceMode" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "dropInPlaceMode", + "ChangeType": "Addition", + "Description": "Added the [dropInPlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/dropInPlaceMode?view=graph-rest-1.0) resource.", + "Target": "dropInPlaceMode" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "importBuildingMapSetting", + "ChangeType": "Addition", + "Description": "Added the [importBuildingMapSetting](https://learn.microsoft.com/en-us/graph/api/resources/importBuildingMapSetting?view=graph-rest-1.0) resource.", + "Target": "importBuildingMapSetting" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "mailboxDetails", + "ChangeType": "Addition", + "Description": "Added the [mailboxDetails](https://learn.microsoft.com/en-us/graph/api/resources/mailboxDetails?view=graph-rest-1.0) resource.", + "Target": "mailboxDetails" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "placeMode", + "ChangeType": "Addition", + "Description": "Added the [placeMode](https://learn.microsoft.com/en-us/graph/api/resources/placeMode?view=graph-rest-1.0) resource.", + "Target": "placeMode" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "reservablePlaceMode", + "ChangeType": "Addition", + "Description": "Added the [reservablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/reservablePlaceMode?view=graph-rest-1.0) resource.", + "Target": "reservablePlaceMode" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "resourceLink", + "ChangeType": "Addition", + "Description": "Added the [resourceLink](https://learn.microsoft.com/en-us/graph/api/resources/resourceLink?view=graph-rest-1.0) resource.", + "Target": "resourceLink" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "baseMapFeature", + "ChangeType": "Addition", + "Description": "Added the [baseMapFeature](https://learn.microsoft.com/en-us/graph/api/resources/baseMapFeature?view=graph-rest-1.0) resource.", + "Target": "baseMapFeature" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "building", + "ChangeType": "Addition", + "Description": "Added the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-1.0) resource.", + "Target": "building" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "buildingMap", + "ChangeType": "Addition", + "Description": "Added the [buildingMap](https://learn.microsoft.com/en-us/graph/api/resources/buildingMap?view=graph-rest-1.0) resource.", + "Target": "buildingMap" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "desk", + "ChangeType": "Addition", + "Description": "Added the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-1.0) resource.", + "Target": "desk" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "fixtureMap", + "ChangeType": "Addition", + "Description": "Added the [fixtureMap](https://learn.microsoft.com/en-us/graph/api/resources/fixtureMap?view=graph-rest-1.0) resource.", + "Target": "fixtureMap" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "floor", + "ChangeType": "Addition", + "Description": "Added the [floor](https://learn.microsoft.com/en-us/graph/api/resources/floor?view=graph-rest-1.0) resource.", + "Target": "floor" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "footprintMap", + "ChangeType": "Addition", + "Description": "Added the [footprintMap](https://learn.microsoft.com/en-us/graph/api/resources/footprintMap?view=graph-rest-1.0) resource.", + "Target": "footprintMap" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "levelMap", + "ChangeType": "Addition", + "Description": "Added the [levelMap](https://learn.microsoft.com/en-us/graph/api/resources/levelMap?view=graph-rest-1.0) resource.", + "Target": "levelMap" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "isWheelChairAccessible", + "ChangeType": "Addition", + "Description": "Added the **isWheelChairAccessible** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", + "Target": "place" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "label", + "ChangeType": "Addition", + "Description": "Added the **label** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", + "Target": "place" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "parentId", + "ChangeType": "Addition", + "Description": "Added the **parentId** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", + "Target": "place" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "tags", + "ChangeType": "Addition", + "Description": "Added the **tags** property to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", + "Target": "place" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "isWheelChairAccessible", + "ChangeType": "Deletion", + "Description": "Removed the **isWheelChairAccessible** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", + "Target": "room" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "label", + "ChangeType": "Deletion", + "Description": "Removed the **label** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", + "Target": "room" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Property", + "ChangedApiName": "tags", + "ChangeType": "Deletion", + "Description": "Removed the **tags** property from the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", + "Target": "room" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Relationship", + "ChangedApiName": "workspaces", + "ChangeType": "Addition", + "Description": "Added the **workspaces** relationship to the [roomList](https://learn.microsoft.com/en-us/graph/api/resources/roomList?view=graph-rest-1.0) resource.", + "Target": "roomList" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "section", + "ChangeType": "Addition", + "Description": "Added the [section](https://learn.microsoft.com/en-us/graph/api/resources/section?view=graph-rest-1.0) resource.", + "Target": "section" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "sectionMap", + "ChangeType": "Addition", + "Description": "Added the [sectionMap](https://learn.microsoft.com/en-us/graph/api/resources/sectionMap?view=graph-rest-1.0) resource.", + "Target": "sectionMap" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "unitMap", + "ChangeType": "Addition", + "Description": "Added the [unitMap](https://learn.microsoft.com/en-us/graph/api/resources/unitMap?view=graph-rest-1.0) resource.", + "Target": "unitMap" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Resource", + "ChangedApiName": "workspace", + "ChangeType": "Addition", + "Description": "Added the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-1.0) resource.", + "Target": "workspace" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Method", + "ChangedApiName": "ingestMapFile", + "ChangeType": "Addition", + "Description": "Added the [ingestMapFile](https://learn.microsoft.com/en-us/graph/api/building-ingestMapFile?view=graph-rest-1.0) method to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-1.0) resource.", + "Target": "building" + }, + { + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "ApiChange": "Method", + "ChangedApiName": "descendants", + "ChangeType": "Addition", + "Description": "Added the [descendants](https://learn.microsoft.com/en-us/graph/api/place-descendants?view=graph-rest-1.0) method to the [place](https://learn.microsoft.com/en-us/graph/api/resources/place?view=graph-rest-1.0) resource.", + "Target": "place" + } + ], + "Id": "ee0d11da-856e-4e72-8b6e-72a124e62216", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2025-12-02T07:34:22.5269035Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + }, + { + "ChangeList": [ + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Enumeration", + "ChangedApiName": "placeFeatureEnablement", + "ChangeType": "Addition", + "Description": "Added the **placeFeatureEnablement** enumeration type.", + "Target": "placeFeatureEnablement" + }, + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Resource", + "ChangedApiName": "unavailablePlaceMode", + "ChangeType": "Addition", + "Description": "Added the [unavailablePlaceMode](https://learn.microsoft.com/en-us/graph/api/resources/unavailablePlaceMode?view=graph-rest-1.0) resource.", + "Target": "unavailablePlaceMode" + }, + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Property", + "ChangedApiName": "wifiState", + "ChangeType": "Addition", + "Description": "Added the **wifiState** property to the [building](https://learn.microsoft.com/en-us/graph/api/resources/building?view=graph-rest-1.0) resource.", + "Target": "building" + }, + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Property", + "ChangedApiName": "heightAdjustableState", + "ChangeType": "Addition", + "Description": "Added the **heightAdjustableState** property to the [desk](https://learn.microsoft.com/en-us/graph/api/resources/desk?view=graph-rest-1.0) resource.", + "Target": "desk" + }, + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", + "Target": "room" + }, + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Property", + "ChangedApiName": "teamsEnabledState", + "ChangeType": "Addition", + "Description": "Added the **teamsEnabledState** property to the [room](https://learn.microsoft.com/en-us/graph/api/resources/room?view=graph-rest-1.0) resource.", + "Target": "room" + }, + { + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "ApiChange": "Property", + "ChangedApiName": "placeId", + "ChangeType": "Addition", + "Description": "Added the **placeId** property to the [workspace](https://learn.microsoft.com/en-us/graph/api/resources/workspace?view=graph-rest-1.0) resource.", + "Target": "workspace" + } + ], + "Id": "89aa8abd-3fce-4c90-a2f0-5b8e6557a3dd", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2025-12-26T08:33:18.5751667Z", + "WorkloadArea": "Calendar", + "SubArea": "Places" + } + ] +} From 9c32455773d12d68ff36983b4d185e3f09ab39ad Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Wed, 16 Sep 2026 19:47:39 -0700 Subject: [PATCH 143/189] Update generated permissions tables with build 241423 (#29598) Co-authored-by: Microsoft Graph DevX Tooling --- .../permissions/serviceprincipal-update-permissions.md | 4 ++-- .../permissions/serviceprincipal-update-permissions.md | 4 ++-- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/api-reference/beta/includes/permissions/serviceprincipal-update-permissions.md b/api-reference/beta/includes/permissions/serviceprincipal-update-permissions.md index 2db61e74965..01131ffd1d3 100644 --- a/api-reference/beta/includes/permissions/serviceprincipal-update-permissions.md +++ b/api-reference/beta/includes/permissions/serviceprincipal-update-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Application.ReadWrite.All|Directory.ReadWrite.All| +|Delegated (work or school account)|Application.ReadWrite.All|AgentIdentity.ReadWrite.All, Directory.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Application.ReadWrite.OwnedBy|Application.ReadWrite.All, Directory.ReadWrite.All| +|Application|Application.ReadWrite.OwnedBy|AgentIdentity.ReadWrite.All, Application.ReadWrite.All, Directory.ReadWrite.All| diff --git a/api-reference/v1.0/includes/permissions/serviceprincipal-update-permissions.md b/api-reference/v1.0/includes/permissions/serviceprincipal-update-permissions.md index 2db61e74965..01131ffd1d3 100644 --- a/api-reference/v1.0/includes/permissions/serviceprincipal-update-permissions.md +++ b/api-reference/v1.0/includes/permissions/serviceprincipal-update-permissions.md @@ -6,7 +6,7 @@ ms.localizationpriority: medium |Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|Application.ReadWrite.All|Directory.ReadWrite.All| +|Delegated (work or school account)|Application.ReadWrite.All|AgentIdentity.ReadWrite.All, Directory.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Application.ReadWrite.OwnedBy|Application.ReadWrite.All, Directory.ReadWrite.All| +|Application|Application.ReadWrite.OwnedBy|AgentIdentity.ReadWrite.All, Application.ReadWrite.All, Directory.ReadWrite.All| From 995f1ba5dc41b0184e5f1e14e5db5aa417697b8f Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Wed, 16 Sep 2026 19:47:58 -0700 Subject: [PATCH 144/189] Update reference TOC (#29595) Co-authored-by: Microsoft Graph DevX Tooling From 62e5fd62b601f018f6dd2b24af5e695a71125fa2 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Wed, 16 Sep 2026 19:48:20 -0700 Subject: [PATCH 145/189] Update generated permissions tables with build 241100 (#29593) Co-authored-by: Microsoft Graph DevX Tooling From 2cc42262a85996678c07cf1f957b3714d9d53257 Mon Sep 17 00:00:00 2001 From: Arjun Agarwal <8549133+agarwal-arjun@users.noreply.github.com> Date: Thu, 17 Sep 2026 08:18:54 +0530 Subject: [PATCH 146/189] docs: retain restore point protection unit filter (#29584) * docs: retain restore point protection unit filter Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: fix restore point example metadata Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: pair restore point examples with response Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --- .../backuprestoreroot-list-restorepoints.md | 23 ++++++++++++++++++- 1 file changed, 22 insertions(+), 1 deletion(-) diff --git a/api-reference/beta/api/backuprestoreroot-list-restorepoints.md b/api-reference/beta/api/backuprestoreroot-list-restorepoints.md index 4899e5e8bc3..e86f4a815be 100644 --- a/api-reference/beta/api/backuprestoreroot-list-restorepoints.md +++ b/api-reference/beta/api/backuprestoreroot-list-restorepoints.md @@ -33,6 +33,18 @@ Choose the permission or permissions marked as least privileged for this API. Us ## HTTP request +To filter the expanded **protectionUnit** by ID: + + +``` http +GET /solutions/backupRestore/restorePoints?$expand=protectionUnit($filter=id eq '{ProtectionUnitID}')&$filter=protectionDateTime lt YYYY-MM-DDTHH:mm:ssZ +``` + +To filter **restorePoint** objects by protection unit and policy: + -``` http -POST /identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinitionId}/instances/{accessReviewInstanceId}/batchApplyCustomDataProvidedResourceDecisions +```http +POST /identityGovernance/accessReviews/unified/instances/{accessReviewInstanceId}/batchApplyCustomDataProvidedResourceDecisions ``` ## Request headers @@ -49,7 +51,6 @@ POST /identityGovernance/accessReviews/definitions/{accessReviewScheduleDefiniti |:---|:---| |Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| |Content-Type|application/json. Required.| -|x-accessreviews-version|`vNext`. Required.| ## Request body @@ -79,8 +80,8 @@ The following example shows a request. "name": "accessreviewinstancethis.batchapplycustomdataprovidedresourcedecisions" } --> -``` http -POST https://graph.microsoft.com/beta/identityGovernance/accessReviews/definitions/{accessReviewScheduleDefinitionId}/instances/{accessReviewInstanceId}/batchApplyCustomDataProvidedResourceDecisions +```http +POST https://graph.microsoft.com/beta/identityGovernance/accessReviews/unified/instances/{accessReviewInstanceId}/batchApplyCustomDataProvidedResourceDecisions Content-Type: application/json { @@ -125,7 +126,7 @@ The following example shows the response. "truncated": true } --> -``` http +```http HTTP/1.1 202 Accepted ``` diff --git a/api-reference/beta/resources/accessreviewsv2-overview.md b/api-reference/beta/resources/accessreviewsv2-overview.md index 0c7dc74712c..b9a020af913 100644 --- a/api-reference/beta/resources/accessreviewsv2-overview.md +++ b/api-reference/beta/resources/accessreviewsv2-overview.md @@ -23,7 +23,7 @@ Typical customer scenarios for access reviews include: - Customers can review and certify guest user access to groups through group memberships. Reviewers can use the insights that are provided to efficiently decide whether guests should have continued access. - Customers can review and certify employee access to Microsoft Entra resources. - Customers can review and audit assignments to Microsoft Entra ID privileged roles. This supports organizations in the management of privileged access. -- Customers can review access to resources specified in a catalog. For external resources in the catalog, the customer can upload the entitlement data for the external resource after the access review instance has reached an `Initializing` state. To perform or query an access review to resources within a catalog, the customer must also pass in the header `x-accessreviews-version: vnext` when using any of the below methods. +- Customers can review access to resources specified in a catalog. For external resources in the catalog, the customer can upload the entitlement data for the external resource after the access review instance has reached an `Initializing` state. To perform or query an access review for resources within a catalog, use the unified route, `/identityGovernance/accessReviews/unified`. For more information, see [unifiedRoot](../resources/unifiedroot.md). The tenant where an access review is being created or managed via the API must have sufficient purchased or trial licenses. For more information about the license requirements, see [Access reviews license requirements](/azure/active-directory/governance/access-reviews-overview#license-requirements). diff --git a/api-reference/v1.0/api/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions.md b/api-reference/v1.0/api/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions.md new file mode 100644 index 00000000000..39582df1606 --- /dev/null +++ b/api-reference/v1.0/api/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions.md @@ -0,0 +1,101 @@ +--- +title: "accessReviewInstance: batchApplyCustomDataProvidedResourceDecisions" +description: "Set the apply result on a custom data provided resource decision in a batch." +author: "jyothig123" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: apiPageType +ms.date: 08/31/2026 +--- + +# accessReviewInstance: batchApplyCustomDataProvidedResourceDecisions + +Namespace: microsoft.graph + +Enables reviewers to set the **applyResult** and **applyDescription** on all [accessReviewInstanceDecisionItem](../resources/accessreviewinstancedecisionitem.md) objects in a specific [accessReviewInstance](../resources/accessreviewinstance.md) in batches by using **customDataProvidedResourceId**. + +**NOTE:** The access review instance must be in an `Applying` state. + +This action is part of the unified access reviews surface and is available only through the `/identityGovernance/accessReviews/unified` route. For more information, see [unifiedRoot](../resources/unifiedroot.md). + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions-permissions.md)] + +[!INCLUDE [rbac-access-reviews-apis-write](../includes/rbac-for-apis/rbac-access-reviews-apis-write.md)] + +## HTTP request + + +```http +POST /identityGovernance/accessReviews/unified/instances/{accessReviewInstanceId}/batchApplyCustomDataProvidedResourceDecisions +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the parameters. + +The following table lists the parameters when you call this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|applyResult|[accessReviewInstanceDecisionItemApplyResult](../resources/enums.md#accessreviewinstancedecisionitemapplyresult-values)|The `applyResult` for the entity being reviewed. The possible values are: `new`, `appliedSuccessfully`, `appliedWithUnknownFailure`, `appliedSuccessfullyButObjectNotFound`, `applyNotSupported`, `unknownFutureValue`. Required.| +|applyDescription|String|If supplied, a description for the `applyResult`. Optional.| +|customDataProvidedResourceId|String|The `applyResult` is set on all **accessReviewInstanceDecisionItem** objects whose custom data provided resource `id` matches the supplied **customDataProvidedResourceId**. Required.| + +## Response + +If successful, this action returns a `202 Accepted` response code. + +## Examples + +### Request + +The following example shows a request. + + +```http +POST https://graph.microsoft.com/v1.0/identityGovernance/accessReviews/unified/instances/{accessReviewInstanceId}/batchApplyCustomDataProvidedResourceDecisions +Content-Type: application/json + +{ + "applyResult": "appliedSuccessfully", + "applyDescription": "Access was removed from production application: GitHub-app.", + "customDataProvidedResourceId": "5c728447-be5c-4565-b4d3-cb248b609891" +} +``` + +### Response + +The following example shows the response. + + +```http +HTTP/1.1 202 Accepted +``` diff --git a/api-reference/v1.0/includes/permissions/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions-permissions.md b/api-reference/v1.0/includes/permissions/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions-permissions.md new file mode 100644 index 00000000000..0ff26ee461c --- /dev/null +++ b/api-reference/v1.0/includes/permissions/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|AccessReview.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|AccessReview.ReadWrite.All|Not available.| diff --git a/api-reference/v1.0/resources/accessreviewinstance.md b/api-reference/v1.0/resources/accessreviewinstance.md index fc1361b8efa..71d1345868a 100644 --- a/api-reference/v1.0/resources/accessreviewinstance.md +++ b/api-reference/v1.0/resources/accessreviewinstance.md @@ -31,6 +31,7 @@ Inherits from [entity](../resources/entity.md). |[Stop](../api/accessreviewinstance-stop.md) | None | Manually stop an accessReviewInstance. | |[Accept recommendations](../api/accessreviewinstance-acceptrecommendations.md) | None | Allows the calling user to accept the decision recommendation for each **accessReviewInstanceDecisionItem** that is marked as `NotReviewed` and for which the caller is a reviewer of the associated **accessReviewInstance**. | |[Apply decisions](../api/accessreviewinstance-applydecisions.md) | None | Manually apply decisions on an **accessReviewInstance**. | +|[Apply custom data provided resource decisions](../api/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions.md)|None|Set the `applyResult` on all decisions for a specific custom data provided resource in one call.| |[Batch record decisions](../api/accessreviewinstance-batchrecorddecisions.md)|None|Review batches of principals or resources in one call.| |[Reset decisions](../api/accessreviewinstance-resetdecisions.md)|None|Resets all decision items on an instance to `notReviewed`.| |[List stages](../api/accessreviewinstance-list-stages.md)|[accessReviewStage](../resources/accessreviewstage.md) collection| Retrieve the stages in a multi-stage access review instance.| diff --git a/api-reference/v1.0/resources/accessreviewinstancedecisionitem.md b/api-reference/v1.0/resources/accessreviewinstancedecisionitem.md index 3bbc8103872..5bb178b477c 100644 --- a/api-reference/v1.0/resources/accessreviewinstancedecisionitem.md +++ b/api-reference/v1.0/resources/accessreviewinstancedecisionitem.md @@ -39,6 +39,7 @@ Inherits from [entity](../resources/entity.md). |decision|String|Result of the review. Possible values: `Approve`, `Deny`, `NotReviewed`, or `DontKnow`. Supports `$select`, `$orderby`, and `$filter` (`eq` only). | |id|String| The identifier of the decision. Inherited from [entity](../resources/entity.md). Supports `$select`. Read-only.| |justification|String|Justification left by the reviewer when they made the decision.| +|permission|[accessReviewInstanceDecisionItemPermission](../resources/accessreviewinstancedecisionitempermission.md)|The permission that grants the principal access to a resource. Read-only.| |principal|[identity](../resources/identity.md)|Every decision item in an access review represents a principal's access to a resource. This property represents details of the principal. For example, if a decision item represents access of User "Bob" to Group "Sales" - The principal is "Bob" and the resource is "Sales". Principals can be of two types - userIdentity and servicePrincipalIdentity. Supports `$select`. Read-only.| |principalLink|String|A link to the principal object. For example, `https://graph.microsoft.com/v1.0/users/a6c7aecb-cbfd-4763-87ef-e91b4bd509d9`. Read-only.| |recommendation|String|A system-generated recommendation for the approval decision based off last interactive sign-in to tenant. The value is `Approve` if the sign-in is fewer than 30 days after the start of review, `Deny` if the sign-in is greater than 30 days after, or `NoInfoAvailable`. Possible values: `Approve`, `Deny`, or `NoInfoAvailable`. Supports `$select`, `$orderby`, and `$filter` (`eq` only). Read-only.| @@ -62,7 +63,7 @@ The following JSON representation shows the resource type. "openType": true } --> -``` json +```json { "@odata.type": "#microsoft.graph.accessReviewInstanceDecisionItem", "accessReviewId": "String", @@ -75,6 +76,9 @@ The following JSON representation shows the resource type. "decision": "String", "id": "String (identifier)", "justification": "String", + "permission": { + "@odata.type": "microsoft.graph.accessReviewInstanceDecisionItemPermission" + }, "principal": { "@odata.type": "microsoft.graph.identity" }, diff --git a/api-reference/v1.0/resources/accessreviewinstancedecisionitemcustomdataprovidedresource.md b/api-reference/v1.0/resources/accessreviewinstancedecisionitemcustomdataprovidedresource.md new file mode 100644 index 00000000000..58c24c01294 --- /dev/null +++ b/api-reference/v1.0/resources/accessreviewinstancedecisionitemcustomdataprovidedresource.md @@ -0,0 +1,53 @@ +--- +title: "accessReviewInstanceDecisionItemCustomDataProvidedResource resource type" +description: "Represents customer-provided resources for which access is represented through an accessReviewInstanceDecisionItem object." +author: "jyothig123" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +ms.date: 08/31/2026 +--- + +# accessReviewInstanceDecisionItemCustomDataProvidedResource resource type + +Namespace: microsoft.graph + +In an [accessReviewInstanceDecisionItem](../resources/accessreviewinstancedecisionitem.md), the **resource** property can contain an **accessReviewInstanceDecisionItemCustomDataProvidedResource** object for an external customer-provided resource. This open type allows other properties to be passed in. + +Inherits from [accessReviewInstanceDecisionItemResource](../resources/accessreviewinstancedecisionitemresource.md). + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|customData|String|Custom data to include with the decision.| +|description|String|The description of the custom data provided resource. Inherited from [accessReviewInstanceDecisionItemResource](../resources/accessreviewinstancedecisionitemresource.md).| +|displayName|String|The display name of the custom data provided resource. Inherited from [accessReviewInstanceDecisionItemResource](../resources/accessreviewinstancedecisionitemresource.md).| +|id|String|The identifier of the custom data provided resource. Inherited from [accessReviewInstanceDecisionItemResource](../resources/accessreviewinstancedecisionitemresource.md).| +|scopeDisplayName|String|The name of the scope for the decision.| +|scopeId|String|The identifier of the scope for the decision.| +|type|String|The type of the custom data provided resource. Inherited from [accessReviewInstanceDecisionItemResource](../resources/accessreviewinstancedecisionitemresource.md).| + +## Relationships + +None. + +## JSON representation +The following JSON representation shows the resource type. + +```json +{ + "@odata.type": "#microsoft.graph.accessReviewInstanceDecisionItemCustomDataProvidedResource", + "id": "String", + "displayName": "String", + "type": "String", + "description": "String", + "customData": "String", + "scopeId": "String", + "scopeDisplayName": "String" +} +``` diff --git a/api-reference/v1.0/resources/accessreviewinstancedecisionitempermission.md b/api-reference/v1.0/resources/accessreviewinstancedecisionitempermission.md new file mode 100644 index 00000000000..f4c6c6718f7 --- /dev/null +++ b/api-reference/v1.0/resources/accessreviewinstancedecisionitempermission.md @@ -0,0 +1,45 @@ +--- +title: "accessReviewInstanceDecisionItemPermission resource type" +description: "Represents the permission that grants a principal access to the resource in an accessReviewInstanceDecisionItem object." +author: "jyothig123" +ms.localizationpriority: medium +ms.subservice: "entra-id-governance" +doc_type: resourcePageType +ms.date: 08/31/2026 +--- + +# accessReviewInstanceDecisionItemPermission resource type + +Namespace: microsoft.graph + +In an [accessReviewInstanceDecisionItem](../resources/accessreviewinstancedecisionitem.md), the **permission** property represents the permission that grants a principal access to a resource. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|description|String|The description of the permission.| +|displayName|String|The display name of the permission.| +|id|String|The identifier of the permission.| +|type|String|The type of the permission.| + +## Relationships + +None. + +## JSON representation +The following JSON representation shows the resource type. + +```json +{ + "@odata.type": "#microsoft.graph.accessReviewInstanceDecisionItemPermission", + "id": "String", + "displayName": "String", + "type": "String", + "description": "String" +} +``` diff --git a/api-reference/v1.0/resources/accessreviewinstancedecisionitemresource.md b/api-reference/v1.0/resources/accessreviewinstancedecisionitemresource.md index a5d8380c685..a15862357ae 100644 --- a/api-reference/v1.0/resources/accessreviewinstancedecisionitemresource.md +++ b/api-reference/v1.0/resources/accessreviewinstancedecisionitemresource.md @@ -18,14 +18,16 @@ An [accessReviewInstanceDecisionItemResource](../resources/accessreviewinstanced - [accessReviewInstanceDecisionItemAccessPackageAssignmentPolicyResource](../resources/accessreviewinstancedecisionitemaccesspackageassignmentpolicyresource.md) - [accessReviewInstanceDecisionItemAccessPackageResource](../resources/accessreviewinstancedecisionitemaccesspackageresource.md) - [accessReviewInstanceDecisionItemAzureRoleResource](../resources/accessreviewinstancedecisionitemazureroleresource.md) +- [accessReviewInstanceDecisionItemCustomDataProvidedResource](../resources/accessreviewinstancedecisionitemcustomdataprovidedresource.md) - [accessReviewInstanceDecisionItemServicePrincipalResource](../resources/accessreviewinstancedecisionitemserviceprincipalresource.md) ## Properties |Property|Type|Description| |:---|:---|:---| +|description|String|Description of the resource.| |displayName|String|Display name of the resource| |id|String|Identifier of the resource| -|type|String|Type of resource. Types include: `Group`, `ServicePrincipal`, `DirectoryRole`, `AzureRole`, `AccessPackage`, `AccessPackageAssignmentPolicy`.| +|type|String|Type of resource. Types include: `Group`, `ServicePrincipal`, `DirectoryRole`, `AzureRole`, `AccessPackage`, `AccessPackageAssignmentPolicy`, and `CustomDataProvidedResource`.| ## Relationships None. @@ -37,9 +39,10 @@ The following JSON representation shows the resource type. "@odata.type": "microsoft.graph.accessReviewInstanceDecisionItemResource" } --> -``` json +```json { "@odata.type": "#microsoft.graph.accessReviewInstanceDecisionItemResource", + "description": "String", "displayName": "String", "id": "String (identifier)", "type": "String" diff --git a/api-reference/v1.0/resources/enums.md b/api-reference/v1.0/resources/enums.md index 70027e2d160..5752be147eb 100644 --- a/api-reference/v1.0/resources/enums.md +++ b/api-reference/v1.0/resources/enums.md @@ -944,6 +944,17 @@ Namespace: microsoft.graph | sapIag | | unknownFutureValue | +### accessReviewInstanceDecisionItemApplyResult values + +| Member | +| ------------------ | +| new | +| appliedSuccessfully | +| appliedWithUnknownFailure | +| appliedSuccessfullyButObjectNotFound | +| applyNotSupported | +| unknownFutureValue | + ### accessReviewInstanceDecisionItemFilterByCurrentUserOptions values | Member | diff --git a/changelog/Microsoft.IdentityGovernance.AccessReviews.json b/changelog/Microsoft.IdentityGovernance.AccessReviews.json index 51f28ceec0d..78bb74bb9c9 100644 --- a/changelog/Microsoft.IdentityGovernance.AccessReviews.json +++ b/changelog/Microsoft.IdentityGovernance.AccessReviews.json @@ -1,5 +1,63 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "a8edf52b-dc7e-471b-a09a-b1d937fc9221", + "ApiChange": "Resource", + "ChangedApiName": "accessReviewInstanceDecisionItemPermission", + "ChangeType": "Addition", + "Description": "Added the [accessReviewInstanceDecisionItemPermission](https://learn.microsoft.com/en-us/graph/api/resources/accessreviewinstancedecisionitempermission) complex type to represent the permission that grants a principal access to the resource under review.", + "Target": "accessReviewInstanceDecisionItemPermission" + }, + { + "Id": "a8edf52b-dc7e-471b-a09a-b1d937fc9221", + "ApiChange": "Resource", + "ChangedApiName": "accessReviewInstanceDecisionItemCustomDataProvidedResource", + "ChangeType": "Addition", + "Description": "Added the [accessReviewInstanceDecisionItemCustomDataProvidedResource](https://learn.microsoft.com/en-us/graph/api/resources/accessreviewinstancedecisionitemcustomdataprovidedresource) complex type to represent a decision item resource whose entitlement data is supplied by the customer rather than discovered by Microsoft Entra.", + "Target": "accessReviewInstanceDecisionItemCustomDataProvidedResource" + }, + { + "Id": "a8edf52b-dc7e-471b-a09a-b1d937fc9221", + "ApiChange": "Property", + "ChangedApiName": "permission", + "ChangeType": "Addition", + "Description": "Added the **permission** property to the [accessReviewInstanceDecisionItem](https://learn.microsoft.com/graph/api/resources/accessreviewinstancedecisionitem) resource to describe the permission that grants the principal access to the resource.", + "Target": "accessReviewInstanceDecisionItem" + }, + { + "Id": "a8edf52b-dc7e-471b-a09a-b1d937fc9221", + "ApiChange": "Property", + "ChangedApiName": "description", + "ChangeType": "Addition", + "Description": "Added the **description** property to the [accessReviewInstanceDecisionItemResource](https://learn.microsoft.com/graph/api/resources/accessreviewinstancedecisionitemresource) resource to describe the resource under review.", + "Target": "accessReviewInstanceDecisionItemResource" + }, + { + "Id": "a8edf52b-dc7e-471b-a09a-b1d937fc9221", + "ApiChange": "Enumeration", + "ChangedApiName": "accessReviewInstanceDecisionItemApplyResult", + "ChangeType": "Addition", + "Description": "Added the **accessReviewInstanceDecisionItemApplyResult** enumeration type to represent the result of applying a recorded decision to the target resource.", + "Target": "accessReviewInstanceDecisionItemApplyResult" + }, + { + "Id": "a8edf52b-dc7e-471b-a09a-b1d937fc9221", + "ApiChange": "Method", + "ChangedApiName": "batchApplyCustomDataProvidedResourceDecisions", + "ChangeType": "Addition", + "Description": "Added the [accessReviewInstance: batchApplyCustomDataProvidedResourceDecisions](https://learn.microsoft.com/en-us/graph/api/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions) method to set the apply result on all decision items that match a customer-provided resource in one call.", + "Target": "accessReviewInstance" + } + ], + "Id": "a8edf52b-dc7e-471b-a09a-b1d937fc9221", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-09-09T00:00:00.0000000Z", + "WorkloadArea": "Identity and access", + "SubArea": "Governance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index ff7b98d6530..acface1f2a9 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -26,7 +26,13 @@ Added the **onPremisesExtensionAttributes** property to the [group](/graph/api/r ### Identity and access | Governance -Clarified that the [List resources](/graph/api/accesspackagecatalog-list-resources) method returns SharePoint Online resources only when it's called with delegated permissions. To retrieve SharePoint site information with application permissions, use the [sites: getAllSites](/graph/api/site-getallsites) method. +- Promoted the **access reviews customer-provided data** APIs from beta to v1.0. Use them to review entitlement data that you upload for resources that Microsoft Entra doesn't discover itself, such as third-party applications. The promoted surface includes: + - the **description** property on [accessReviewInstanceDecisionItemResource](/graph/api/resources/accessreviewinstancedecisionitemresource) to describe the resource under review. + - [accessReviewInstanceDecisionItemPermission](/graph/api/resources/accessreviewinstancedecisionitempermission) complex type and the **permission** property on [accessReviewInstanceDecisionItem](/graph/api/resources/accessreviewinstancedecisionitem), which describe the permission that grants the principal access to the resource under review. + - [accessReviewInstanceDecisionItemCustomDataProvidedResource](/graph/api/resources/accessreviewinstancedecisionitemcustomdataprovidedresource) complex type, which represents a decision item resource whose entitlement data is supplied by the customer rather than discovered by Microsoft Entra. + - [batchApplyCustomDataProvidedResourceDecisions](/graph/api/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions) method on [accessReviewInstance](/graph/api/resources/accessreviewinstance) to set the apply result on all decision items that match a customer-provided resource in one call. + - [accessReviewInstanceDecisionItemApplyResult](/graph/api/resources/enums#accessreviewinstancedecisionitemapplyresult-values) enumeration type to represent the result of applying a recorded decision to the target resource. +- Clarified that the [List resources](/graph/api/accesspackagecatalog-list-resources) method returns SharePoint Online resources only when it's called with delegated permissions. To retrieve SharePoint site information with application permissions, use the [sites: getAllSites](/graph/api/site-getallsites) method. ### Teamwork and communications | Messaging From f5206c81d32907fa7153a8187d0e88796d81c38b Mon Sep 17 00:00:00 2001 From: jessieli-ad Date: Wed, 16 Sep 2026 19:52:32 -0700 Subject: [PATCH 148/189] Document Web Push (RFC 8291) keys + getVapidPublicKey on subscription (v1.0) (#29482) * Document Web Push (RFC 8291) keys + getVapidPublicKey on subscription (v1.0) Promotes Web Push documentation to v1.0: adds vapidPublicKey, webPushEncryptionP256dhPublicKey, and webPushEncryptionSecret properties and the getVapidPublicKey method to the subscription resource; adds the v1.0 changelog record and a What's New entry. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update reference TOC * Use generated permissions include for getVapidPublicKey Replace the hand-authored permissions table on the getVapidPublicKey method page with the standard generated permissions include (subscription-getvapidpublickey-permissions.md), produced by gs generateStubs. Addresses PR review feedback on permissions authoring. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Align getVapidPublicKey permissions with subscription-get Use the same per-resource subscription permissions table as subscription-get.md (permissions depend on the resource being subscribed) instead of the generated moniker include, which reported Not supported for all types. Remove the orphaned generated include. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Sync v1.0 getVapidPublicKey with beta Add the national-cloud-support include and align the permissions section with the beta getVapidPublicKey page so the two versions match. Only version-specific differences remain (beta disclaimer, /v1.0 endpoint). Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Remove beta-only resources from v1.0 getVapidPublicKey; fix duplicate June H2 - Remove approvalItems, baseTask, and online meeting rows from the v1.0 getVapidPublicKey permissions table (available in beta only). - Relabel the second 'June 2026: New and generally available' heading to 'New in preview only' to resolve the duplicate-h2s build warning. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Remove remaining beta-only rows from v1.0 getVapidPublicKey permissions Verified each row against the v1.0 subscription operation tables (post/get/update). Removed beta-only scope variants not supported in v1.0: callRecording and callTranscript appCatalogs/installedToOnlineMeetings, and conversationMember /teams/getAllMembers and /teams/getAllChannels/getAllMembers. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Revise description for subscription: getVapidPublicKey Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Change list resource permissions to read-only Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Modify todoTask permissions in API reference Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update vapidPublicKey description in subscription.md Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Add virtualEventTownhall to getVapidPublicKey permissions Keep the v1.0 getVapidPublicKey permissions table aligned with the v1.0 subscription creation table by adding virtualEventTownhall. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: ab7eef34-c01f-48de-b6f4-d4b42aa2e93c * Address remaining docs review blockers Use one changelog ID for the complete Web Push change record and remove the direct edit to the generated change-notifications toc.yml. The API.md source link is also added to the PR description. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: ab7eef34-c01f-48de-b6f4-d4b42aa2e93c --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Copilot-Session: ab7eef34-c01f-48de-b6f4-d4b42aa2e93c --- .../api/subscription-getvapidpublickey.md | 171 ++++++++++++++++++ api-reference/v1.0/resources/subscription.md | 9 +- changelog/Microsoft.SubscriptionServices.json | 42 +++++ concepts/whats-new-overview.md | 5 + 4 files changed, 226 insertions(+), 1 deletion(-) create mode 100644 api-reference/v1.0/api/subscription-getvapidpublickey.md diff --git a/api-reference/v1.0/api/subscription-getvapidpublickey.md b/api-reference/v1.0/api/subscription-getvapidpublickey.md new file mode 100644 index 00000000000..da3fe525c04 --- /dev/null +++ b/api-reference/v1.0/api/subscription-getvapidpublickey.md @@ -0,0 +1,171 @@ +--- +title: "subscription: getVapidPublicKey" +description: "Get the VAPID public key that Web Push clients use to subscribe to push notifications." +author: "takanapa" +ms.date: 08/21/2026 +ms.localizationpriority: medium +ms.subservice: change-notifications +doc_type: apiPageType +--- + +# subscription: getVapidPublicKey + +Namespace: microsoft.graph + +Get the public key information required to validate push notifications according to [RFC 8292](https://www.rfc-editor.org/rfc/rfc8292.html) specifications. + +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + +## Permissions + +Depending on the resource and the permission type (delegated or application) requested, the permission specified in the following table is the least privileged required to call this API. To learn more, including [taking caution](/graph/auth/auth-concepts#best-practices-for-requesting-permissions) before choosing more privileged permissions, search for the following permissions in [Permissions](/graph/permissions-reference). + +> [!NOTE] +> Some resources support change notifications in multiple scenarios, each of which may require different permissions. In those cases, use the resource path to differentiate the scenarios. + +| Supported resource | Delegated (work or school account) | Delegated (personal Microsoft account) | Application | +|:-----|:-----|:-----|:-----| +|[aiInteraction](/microsoft-365-copilot/extensibility/api/ai-services/interaction-export/resources/aiinteraction)
`copilot/users/{userId}/interactionHistory/getAllEnterpriseInteractions`
Copilot AI interactions that a particular user is part of. | AiEnterpriseInteraction.Read | Not supported. | AiEnterpriseInteraction.Read.All, AiEnterpriseInteraction.Read.User | +|[aiInteraction](/microsoft-365-copilot/extensibility/api/ai-services/interaction-export/resources/aiinteraction)
`copilot/interactionHistory/getAllEnterpriseInteractions`
Copilot AI interactions in an organization. | Not supported. | Not supported. | AiEnterpriseInteraction.Read.All | +|[callRecord](../resources/callrecords-callrecord.md) | Not supported. | Not supported. | CallRecords.Read.All | +|[callRecording](../resources/callrecording.md)
`communications/onlineMeetings/getAllRecordings`
Any recording becomes available in the tenant. | Not supported. | Not supported. | OnlineMeetingRecording.Read.All | +|[callRecording](../resources/callrecording.md)
`communications/onlineMeetings/{onlineMeetingId}/recordings`
Any recording becomes available for a specific meeting. | OnlineMeetingRecording.Read.All | Not supported. | OnlineMeetingRecording.Read.All | +|[callRecording](../resources/callrecording.md)
`users/{userId}/onlineMeetings/getAllRecordings`
A call recording that becomes available in a meeting organized by a specific user. | OnlineMeetingRecording.Read.All | Not supported. | OnlineMeetingRecording.Read.All | +|[callTranscript](../resources/calltranscript.md)
`communications/onlineMeetings/getAllTranscripts`
Any transcript becomes available in the tenant. | Not supported. | Not supported. | OnlineMeetingTranscript.Read.All | +|[callTranscript](../resources/calltranscript.md)
`communications/onlineMeetings/{onlineMeetingId}/transcripts`
Any transcript becomes available for a specific meeting. | OnlineMeetingTranscript.Read.All | Not supported. | OnlineMeetingTranscript.Read.All | +|[callTranscript](../resources/calltranscript.md)
`users/{userId}/onlineMeetings/getAllTranscripts`
A call transcript that becomes available in a meeting organized by a specific user. | OnlineMeetingTranscript.Read.All | Not supported. | OnlineMeetingTranscript.Read.All | +|[channel](../resources/channel.md)
`/teams/getAllChannels`
All channels in an organization. | Not supported. | Not supported. | Channel.ReadBasic.All, ChannelSettings.Read.All | +|[channel](../resources/channel.md)
`/teams/{id}/channels`
All channels in a particular team in an organization. | Channel.ReadBasic.All, ChannelSettings.Read.All | Not supported. | Channel.ReadBasic.All, ChannelSettings.Read.All | +|[chat](../resources/chat.md)
`/chats`
All chats in an organization. | Not supported. | Not supported. | Chat.ReadBasic.All, Chat.Read.All, Chat.ReadWrite.All | +|[chat](../resources/chat.md)
`/chats/{id}`
A particular chat.| Chat.ReadBasic, Chat.Read, Chat.ReadWrite | Not supported. | ChatSettings.Read.Chat, ChatSettings.ReadWrite.Chat, Chat.Manage.Chat, Chat.ReadBasic.All, Chat.Read.All, Chat.ReadWrite.All | +|[chat](../resources/chat.md)
`/appCatalogs/teamsApps/{id}/installedToChats`
All chats in an organization where a particular Teams app is installed.| Not supported. | Not supported. | Chat.ReadBasic.WhereInstalled, Chat.Read.WhereInstalled, Chat.ReadWrite.WhereInstalled | +|[chat](../resources/chat.md)
`/users/{id}/chats`
All chats that a particular user is part of. | Chat.ReadBasic, Chat.Read, Chat.ReadWrite | Not supported. | Chat.ReadBasic.All, Chat.Read.All, Chat.ReadWrite.All | +|[chatMessage](../resources/chatmessage.md)
`/teams/{id}/channels/{id}/messages`
All messages and replies in a particular channel. | ChannelMessage.Read.All, Group.Read.All, Group.ReadWrite.All | Not supported. | ChannelMessage.Read.Group, ChannelMessage.Read.All | +|[chatMessage](../resources/chatmessage.md)
`/teams/getAllMessages`
All channel messages in organization. | Not supported. | Not supported. | ChannelMessage.Read.All | +|[chatMessage](../resources/chatmessage.md)
`/chats/{id}/messages`
All messages in a chat. | Chat.Read, Chat.ReadWrite | Not supported. | Chat.Read.All | +|[chatMessage](../resources/chatmessage.md)
`/chats/getAllMessages`
All chat messages in an organization. | Not supported. | Not supported. | Chat.Read.All | +|[chatMessage](../resources/chatmessage.md)
`/users/{id}/chats/getAllMessages`
Chat messages for all chats a particular user is part of. | Chat.Read, Chat.ReadWrite | Not supported. | Chat.Read.All, Chat.ReadWrite.All | +|[chatMessage](../resources/chatmessage.md)
`/appCatalogs/teamsApps/{id}/installedToChats/getAllMessages`
Chat messages for all chats in an organization where a particular Teams app is installed. | Not supported. | Not supported. | Chat.Read.WhereInstalled, Chat.ReadWrite.WhereInstalled | +|[contact](../resources/contact.md) | Contacts.Read | Contacts.Read | Contacts.Read | +|[conversationMember](../resources/conversationmember.md)
`/chats/getAllMembers`
Members of all chats in an organization. | Not supported. | Not supported. | ChatMember.Read.All, ChatMember.ReadWrite.All, Chat.ReadBasic.All, Chat.Read.All, Chat.ReadWrite.All | +|[conversationMember](../resources/conversationmember.md)
`/chats/{id}/members`
Members of a particular chat. | ChatMember.Read, ChatMember.ReadWrite, Chat.ReadBasic, Chat.Read, Chat.ReadWrite | Not supported. | ChatMember.Read.Chat, Chat.Manage.Chat, ChatMember.Read.All, ChatMember.ReadWrite.All, Chat.ReadBasic.All, Chat.Read.All, Chat.ReadWrite.All | +|[conversationMember](../resources/conversationmember.md)
`/appCatalogs/teamsApps/{id}/installedToChats/getAllMembers`
Chat members for all chats in an organization where a particular Teams app is installed. | Not supported. | Not supported. | ChatMember.Read.WhereInstalled, ChatMember.ReadWrite.WhereInstalled, Chat.ReadBasic.WhereInstalled, Chat.Read.WhereInstalled, Chat.ReadWrite.WhereInstalled | +|[conversationMember](../resources/conversationmember.md)
`/teams/{id}/members`
Members in a particular team. | TeamMember.Read.All | Not supported. | TeamMember.Read.All | +|[conversationMember](../resources/conversationmember.md)
`/teams/{id}/channels/getAllMembers`
Members in all private channels of a particular team. | Not supported. | Not supported. | ChannelMember.Read.All | +|[driveItem](../resources/driveitem.md) (user's personal OneDrive) | Not supported. | Files.ReadWrite | Not supported. | +|[driveItem](../resources/driveitem.md) (OneDrive for work or school) | Files.ReadWrite.All | Not supported. | Files.ReadWrite.All | +|[event](../resources/event.md) | Calendars.Read | Calendars.Read | Calendars.Read | +|[group](../resources/group.md) | Group.Read.All | Not supported. | Group.Read.All | +|[group conversation](../resources/conversation.md) | Group.Read.All | Not supported. | Not supported. | +|[list](../resources/list.md) | Sites.Read.All | Not supported. | Sites.Read.All | +|[message](../resources/message.md) | Mail.ReadBasic, Mail.Read | Mail.ReadBasic, Mail.Read | Mail.Read | +|[offerShiftRequest](../resources/offershiftrequest.md)
`/teams/{id}/schedule/offerShiftRequests`
Changes to any offer shift request in a team. | Schedule.Read.All, Schedule.ReadWrite.All| Not supported. | Schedule.Read.All, Schedule.ReadWrite.All | +|[openShiftChangeRequest](../resources/openshiftchangerequest.md)
`/teams/{id}/schedule/openShiftChangeRequests`
Changes to any open shift request in a team.| Schedule.Read.All, Schedule.ReadWrite.All| Not supported. | Schedule.Read.All, Schedule.ReadWrite.All | +|[presence](../resources/presence.md) | Presence.Read.All | Not supported. | Not supported. | +|[printer](../resources/printer.md) | Not supported. | Not supported. | Printer.Read.All, Printer.ReadWrite.All | +|[printTaskDefinition](../resources/printtaskdefinition.md) | Not supported. | Not supported. | PrintTaskDefinition.ReadWrite.All | +|[security alert](../resources/alert.md) | SecurityEvents.ReadWrite.All | Not supported. | SecurityEvents.ReadWrite.All | +|[shift](../resources/shift.md)
`/teams/{id}/schedule/shifts`
Changes to any shift in a team. | Schedule.Read.All, Schedule.ReadWrite.All| Not supported. | Schedule.Read.All, Schedule.ReadWrite.All | +|[swapShiftsChangeRequest](../resources/swapshiftschangerequest.md)
`/teams/{id}/schedule/swapShiftsChangeRequests`
Changes to any swap shift request in a team.| Schedule.Read.All, Schedule.ReadWrite.All| Not supported. | Schedule.Read.All, Schedule.ReadWrite.All | +|[team](../resources/team.md)
`/teams`
All teams in an organization. | Not supported. | Not supported. | Team.ReadBasic.All, TeamSettings.Read.All | +|[team](../resources/team.md)
`/teams/{id}`
A particular team. | Team.ReadBasic.All, TeamSettings.Read.All | Not supported. | Team.ReadBasic.All, TeamSettings.Read.All | +|[timeOffRequest](../resources/timeoffrequest.md)
`/teams/{id}/schedule/timeOffRequests`
Changes to any time off request in a team. | Schedule.Read.All, Schedule.ReadWrite.All| Not supported. | Schedule.Read.All, Schedule.ReadWrite.All | +|[todoTask](../resources/todotask.md) | Tasks.ReadWrite | Tasks.ReadWrite | Tasks.ReadWrite.All | +|[user](../resources/user.md) | User.Read.All | User.Read.All | User.Read.All | +|[virtualEventWebinar](../resources/virtualeventwebinar.md) | VirtualEvent.Read | Not supported. | VirtualEvent.Read.All | +|[virtualEventTownhall](../resources/virtualeventtownhall.md) | VirtualEvent.Read | Not supported. | VirtualEvent.Read.All | + +> [!NOTE] +> The following permissions use [resource-specific consent](/microsoftteams/platform/graph-api/rsc/resource-specific-consent): +> - OnlineMeetingRecording.Read.Chat +> - OnlineMeetingTranscript.Read.Chat +> - ChatSettings.Read.Chat +> - ChatSettings.ReadWrite.Chat +> - Chat.Manage.Chat +> - ChannelMessage.Read.Group +> - ChatMember.Read.Chat +> - AiEnterpriseInteraction.Read.User + +[!INCLUDE [teams-subscription-notes](../../includes/teams-subscription-notes.md)] + + +[!INCLUDE [copilot-aiinteraction-subscription-notes.md](../../includes/copilot-aiinteraction-subscription-notes.md)] + +### driveItem + +More limitations apply to subscriptions on OneDrive items. The limitations apply to creating as well as managing (getting, updating, and deleting) subscriptions. + +On a personal OneDrive, you can subscribe to the root folder or any subfolder in that drive. On OneDrive for work or school, you can subscribe to only the root folder. Change notifications are sent for the requested types of changes on the subscribed folder or any file, folder, or other **driveItem** instances in its hierarchy. You can't subscribe to **drive** or **driveItem** instances that aren't folders, such as individual files. + +### contact, event, and message + +You can subscribe to changes in Outlook **contact**, **event**, or **message** resources and optionally specify in the POST request payload whether to include encrypted resource data in notifications. + +[!INCLUDE [outlook-subscription-notes](../../includes/outlook-subscription-notes.md)] + +### onlineMeetings, presence + +**onlineMeetings** and **presence** subscriptions require encryption for notifications with resource data. Subscription creation fails if **encryptionCertificate** and **encryptionCertificateId** aren't specified if resource data is desired in notifications. For more information, see: +- [Set up Microsoft Graph change notifications with resource data (rich notifications)](/graph/change-notifications-with-resource-data). +- [Get change notifications for online meetings](/graph/changenotifications-for-onlinemeeting). + +### virtualEventWebinar + +Subscriptions on virtual events support only basic notifications and are limited to a few entities of a virtual event. For more information about the supported subscription types, see [Get change notifications for Microsoft Teams virtual event updates](/graph/changenotifications-for-virtualevent). + +## HTTP request + + +```http +GET /subscriptions/getVapidPublicKey +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this function returns a `200 OK` response code and a String in the response body. + +## Examples + +### Request + +The following example shows a request. + +```msgraph-interactive +GET https://graph.microsoft.com/v1.0/subscriptions/getVapidPublicKey +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": "BNWw_dXp4bP5aw7K0mw2Fg4JjqyNJxnJKVWZ7MXuAVDK8VKlqq7h8JfEKWgJOLHFXlmVQK1vUk1n4JmGzNqeZrQ" +} +``` diff --git a/api-reference/v1.0/resources/subscription.md b/api-reference/v1.0/resources/subscription.md index b5e9370376b..8d144d88f3f 100644 --- a/api-reference/v1.0/resources/subscription.md +++ b/api-reference/v1.0/resources/subscription.md @@ -26,6 +26,7 @@ For more information about subscriptions and change notifications, including res | [Update](../api/subscription-update.md) | [subscription](subscription.md) | Updates a subscription expiration time for renewal and/or updates the notificationUrl for delivery. | | [Delete](../api/subscription-delete.md) | None | Deletes a subscription object. | |[Reauthorize](../api/subscription-reauthorize.md)|None|Reauthorize a subscription when you receive a **reauthorizationRequired** challenge. | +|[Get VAPID](../api/subscription-getvapidpublickey.md)|String|Get the Voluntary Application Server Identification (VAPID) public key to create a subscription in accordance with [RFC 8292](https://www.rfc-editor.org/rfc/rfc8292.html).| ## Properties @@ -46,6 +47,9 @@ For more information about subscriptions and change notifications, including res | notificationUrl | String | Required. The URL of the endpoint that receives the change notifications. This URL must make use of the HTTPS protocol. Any query string parameter included in the notificationUrl property is included in the HTTP POST request when Microsoft Graph sends the change notifications.| | notificationUrlAppId | String | Optional. The app ID that the subscription service can use to generate the validation token. The value allows the client to validate the authenticity of the notification received. | | resource | String | Required. Specifies the resource that is monitored for changes. Don't include the base URL (`https://graph.microsoft.com/v1.0/`). See the possible resource path [values](change-notifications-api-overview.md) for each supported resource. | +| vapidPublicKey | String | Optional. The application server's VAPID public key, base64url-encoded (P-256 uncompressed point, 65 bytes pre-encoding). Obtained by calling the [getVapidPublicKey](../api/subscription-getvapidpublickey.md) function on the subscription collection. The browser passes this value to `PushManager.subscribe({ applicationServerKey: vapidPublicKey })` to bind the push subscription to this server identity. Required when **notificationUrl** targets a known Web Push service origin (for example, `*.push.apple.com`, `fcm.googleapis.com`, `updates.push.services.mozilla.com`); rejected with `400 Bad Request` if supplied on a standard webhook subscription. For more information, see [RFC 8292](https://www.rfc-editor.org/rfc/rfc8292.html). | +| webPushEncryptionP256dhPublicKey | String | Optional. The subscriber's ECDH public key, base64url-encoded (P-256 uncompressed point, 65 bytes pre-encoding). Obtained from the browser via `PushSubscription.getKey('p256dh')`. Used as the peer public key during ECDH key agreement to derive the per-message content encryption key for RFC 8291 payload encryption. Required when **notificationUrl** targets a known Web Push service origin; rejected with `400 Bad Request` if supplied on a standard webhook subscription. For more information, see [RFC 8291 Section 3](https://www.rfc-editor.org/rfc/rfc8291.html#section-3). | +| webPushEncryptionSecret | String | Optional. The subscriber's auth secret, base64url-encoded (16 bytes pre-encoding). Obtained from the browser via `PushSubscription.getKey('auth')`. Used as the HMAC-SHA-256 salt for the HKDF combine step that derives key material for RFC 8291 payload encryption. Write-only: this value is never returned in GET responses (returned as `null`). Treat as a secret. Required when **notificationUrl** targets a known Web Push service origin; rejected with `400 Bad Request` if supplied on a standard webhook subscription. For more information, see [RFC 8291 Section 3](https://www.rfc-editor.org/rfc/rfc8291.html#section-3). | ### Subscription lifetime @@ -107,6 +111,9 @@ The following JSON representation shows the resource type. "notificationQueryOptions": "String", "notificationUrl": "String", "notificationUrlAppId": "String", - "resource": "String" + "resource": "String", + "vapidPublicKey": "String", + "webPushEncryptionP256dhPublicKey": "String", + "webPushEncryptionSecret": "String" } ``` diff --git a/changelog/Microsoft.SubscriptionServices.json b/changelog/Microsoft.SubscriptionServices.json index f0653642420..b453137daf1 100644 --- a/changelog/Microsoft.SubscriptionServices.json +++ b/changelog/Microsoft.SubscriptionServices.json @@ -1,5 +1,47 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "7f6c0e08-f231-492e-81b8-561c519a0f6c", + "ApiChange": "Property", + "ChangedApiName": "vapidPublicKey", + "ChangeType": "Addition", + "Description": "Added the **vapidPublicKey** property to the [subscription](https://learn.microsoft.com/en-us/graph/api/resources/subscription?view=graph-rest-1.0) resource.", + "Target": "subscription" + }, + { + "Id": "7f6c0e08-f231-492e-81b8-561c519a0f6c", + "ApiChange": "Property", + "ChangedApiName": "webPushEncryptionP256dhPublicKey", + "ChangeType": "Addition", + "Description": "Added the **webPushEncryptionP256dhPublicKey** property to the [subscription](https://learn.microsoft.com/en-us/graph/api/resources/subscription?view=graph-rest-1.0) resource.", + "Target": "subscription" + }, + { + "Id": "7f6c0e08-f231-492e-81b8-561c519a0f6c", + "ApiChange": "Property", + "ChangedApiName": "webPushEncryptionSecret", + "ChangeType": "Addition", + "Description": "Added the **webPushEncryptionSecret** property to the [subscription](https://learn.microsoft.com/en-us/graph/api/resources/subscription?view=graph-rest-1.0) resource.", + "Target": "subscription" + }, + { + "Id": "7f6c0e08-f231-492e-81b8-561c519a0f6c", + "ApiChange": "Method", + "ChangedApiName": "getVapidPublicKey", + "ChangeType": "Addition", + "Description": "Added the [getVapidPublicKey](https://learn.microsoft.com/en-us/graph/api/subscription-getVapidPublicKey?view=graph-rest-1.0) method to the [subscription](https://learn.microsoft.com/en-us/graph/api/resources/subscription?view=graph-rest-1.0) resource.", + "Target": "subscription" + } + ], + "Id": "7f6c0e08-f231-492e-81b8-561c519a0f6c", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-22T04:16:58.9666420Z", + "WorkloadArea": "Change notifications", + "SubArea": "Subscription" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index acface1f2a9..0ce312da66e 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -95,6 +95,11 @@ Updated the [getAllRetainedMessages](/graph/api/channel-getallretainedmessages?v - Added the [authenticationBehaviors](/graph/api/resources/authenticationbehaviors) resource type and the **coopEnforcement** property to the v1.0 endpoint. Application owners can use the property to explicitly test Cross-Origin-Opener-Policy enforcement, temporarily suppress enforcement while remediating an incompatible browser authentication flow, or return to the service default. The property is available in the global service only and isn't available in national cloud deployments. - Added the **authenticationBehaviors** property to the [application](/graph/api/resources/application) resource type in v1.0. Returned only on `$select`. +### Change notifications | Subscription + +- Added support for delivering change notifications to Web Push endpoints (RFC 8291) for the [subscription](/graph/api/resources/subscription) resource type. +- Added the [getVapidPublicKey](/graph/api/subscription-getvapidpublickey) method to obtain the VAPID public key (RFC 8292) used when creating Web Push subscriptions. + ### Files - Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer) resource type to create or update up to 20 columnDefinition objects in a single request. From ea1f01b2f900cb0b1b31aa2efdf105a8fda3e41f Mon Sep 17 00:00:00 2001 From: sanchariroy9197 Date: Thu, 17 Sep 2026 04:53:23 +0200 Subject: [PATCH 149/189] Document Entra recommendations UI API changes (beta) (#29299) * Document Entra recommendations UI API changes (beta) Add docs for schema PR 16268393: new tag/alternate-remediation actions, recommendationTag + nistClassification resources, new properties, enum members (critical, needsMoreAction, microsoftEntraSuite), categoryGroup, plus changelog, What's New, and TOC updates. * Address review feedback: ms.date, changelog date, $filter annotations, toc grouping - Fix ms.date to authoring date (07/22/2026) on new/modified recommendation docs - Fix CreatedDateTime in changelog/Microsoft.AAD.Reporting.json - Document $filter support on recommendationBase categoryGroup and new datetime properties - Group recommendationConfiguration, recommendationTag, nistClassification under a Supporting types toc child node * Update AAD.Reporting changelog to match build-generated canonical entries (bare method names) for PR 16593368 validation * Fix missing ChangeList wrapper in reporting changelog * Refresh recommendations changelog date --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- .../beta/api/impactedresource-acceptrisk.md | 86 +++++++ .../api/impactedresource-addtag-collection.md | 115 +++++++++ .../beta/api/impactedresource-addtag.md | 96 +++++++ ...pactedresource-applyalternatemitigation.md | 86 +++++++ .../beta/api/impactedresource-markplanned.md | 86 +++++++ .../impactedresource-removetag-collection.md | 115 +++++++++ .../beta/api/impactedresource-removetag.md | 97 +++++++ .../beta/api/recommendation-acceptrisk.md | 88 +++++++ .../beta/api/recommendation-addtag.md | 96 +++++++ ...recommendation-applyalternatemitigation.md | 88 +++++++ .../beta/api/recommendation-markplanned.md | 88 +++++++ .../beta/api/recommendation-removetag.md | 97 +++++++ ...impactedresource-acceptrisk-permissions.md | 11 + ...dresource-addtag-collection-permissions.md | 11 + .../impactedresource-addtag-permissions.md | 11 + ...ce-applyalternatemitigation-permissions.md | 11 + ...mpactedresource-markplanned-permissions.md | 11 + ...source-removetag-collection-permissions.md | 11 + .../impactedresource-removetag-permissions.md | 11 + .../recommendation-acceptrisk-permissions.md | 11 + .../recommendation-addtag-permissions.md | 11 + ...on-applyalternatemitigation-permissions.md | 11 + .../recommendation-markplanned-permissions.md | 11 + .../recommendation-removetag-permissions.md | 11 + api-reference/beta/resources/enums.md | 18 +- .../beta/resources/impactedresource.md | 15 +- .../beta/resources/nistclassification.md | 46 ++++ .../beta/resources/recommendation.md | 32 ++- .../beta/resources/recommendationbase.md | 29 ++- .../resources/recommendationconfiguration.md | 6 +- .../beta/resources/recommendationtag.md | 48 ++++ api-reference/beta/toc/toc.mapping.json | 13 +- changelog/Microsoft.AAD.Reporting.json | 242 ++++++++++++++++++ concepts/whats-new-overview.md | 14 + 34 files changed, 1718 insertions(+), 15 deletions(-) create mode 100644 api-reference/beta/api/impactedresource-acceptrisk.md create mode 100644 api-reference/beta/api/impactedresource-addtag-collection.md create mode 100644 api-reference/beta/api/impactedresource-addtag.md create mode 100644 api-reference/beta/api/impactedresource-applyalternatemitigation.md create mode 100644 api-reference/beta/api/impactedresource-markplanned.md create mode 100644 api-reference/beta/api/impactedresource-removetag-collection.md create mode 100644 api-reference/beta/api/impactedresource-removetag.md create mode 100644 api-reference/beta/api/recommendation-acceptrisk.md create mode 100644 api-reference/beta/api/recommendation-addtag.md create mode 100644 api-reference/beta/api/recommendation-applyalternatemitigation.md create mode 100644 api-reference/beta/api/recommendation-markplanned.md create mode 100644 api-reference/beta/api/recommendation-removetag.md create mode 100644 api-reference/beta/includes/permissions/impactedresource-acceptrisk-permissions.md create mode 100644 api-reference/beta/includes/permissions/impactedresource-addtag-collection-permissions.md create mode 100644 api-reference/beta/includes/permissions/impactedresource-addtag-permissions.md create mode 100644 api-reference/beta/includes/permissions/impactedresource-applyalternatemitigation-permissions.md create mode 100644 api-reference/beta/includes/permissions/impactedresource-markplanned-permissions.md create mode 100644 api-reference/beta/includes/permissions/impactedresource-removetag-collection-permissions.md create mode 100644 api-reference/beta/includes/permissions/impactedresource-removetag-permissions.md create mode 100644 api-reference/beta/includes/permissions/recommendation-acceptrisk-permissions.md create mode 100644 api-reference/beta/includes/permissions/recommendation-addtag-permissions.md create mode 100644 api-reference/beta/includes/permissions/recommendation-applyalternatemitigation-permissions.md create mode 100644 api-reference/beta/includes/permissions/recommendation-markplanned-permissions.md create mode 100644 api-reference/beta/includes/permissions/recommendation-removetag-permissions.md create mode 100644 api-reference/beta/resources/nistclassification.md create mode 100644 api-reference/beta/resources/recommendationtag.md diff --git a/api-reference/beta/api/impactedresource-acceptrisk.md b/api-reference/beta/api/impactedresource-acceptrisk.md new file mode 100644 index 00000000000..e518464665b --- /dev/null +++ b/api-reference/beta/api/impactedresource-acceptrisk.md @@ -0,0 +1,86 @@ +--- +title: "impactedResource: acceptRisk" +description: "Accept the risk for an impactedResource object and update its status to riskAccepted." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# impactedResource: acceptRisk +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Accept the risk for an [impactedResource](../resources/impactedresource.md) object and update its **status** to `riskAccepted`. + +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/impactedresource-acceptrisk-permissions.md)] + +[!INCLUDE [rbac-directory-recommendations-apis-write](../includes/rbac-for-apis/rbac-directory-recommendations-apis-write.md)] + +## HTTP request + + +```http +POST /directory/recommendations/{recommendationId}/impactedResources/{impactedResourceId}/acceptRisk +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body +Don't supply a request body for this method. + +## Response + +If successful, this action returns a `200 OK` response code and an [impactedResource](../resources/impactedresource.md) in the response body. + +## Examples + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/directory/recommendations/0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry/impactedResources/dbd9935e-15b7-4800-9049-8d8704c23ad2/acceptRisk +``` + +### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#impactedResource", + "@odata.type": "#microsoft.graph.impactedResource", + "id": "dbd9935e-15b7-4800-9049-8d8704c23ad2", + "recommendationId": "0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry", + "status": "riskAccepted", + "displayName": "Contoso IWA App Tutorial" +} +``` diff --git a/api-reference/beta/api/impactedresource-addtag-collection.md b/api-reference/beta/api/impactedresource-addtag-collection.md new file mode 100644 index 00000000000..3c33ca9d935 --- /dev/null +++ b/api-reference/beta/api/impactedresource-addtag-collection.md @@ -0,0 +1,115 @@ +--- +title: "impactedResource: addTag (for multiple resources)" +description: "Add the same user-defined tag to multiple impactedResource objects in a single request." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# impactedResource: addTag (for multiple resources) +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Add the same user-defined [tag](../resources/recommendationtag.md) to multiple [impactedResource](../resources/impactedresource.md) objects in a single request. To add a tag to a single impacted resource, use the [addTag](../api/impactedresource-addtag.md) action instead. + +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/impactedresource-addtag-collection-permissions.md)] + +[!INCLUDE [rbac-directory-recommendations-apis-write](../includes/rbac-for-apis/rbac-directory-recommendations-apis-write.md)] + +## HTTP request + + +```http +POST /directory/recommendations/{recommendationId}/impactedResources/addTag +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body +In the request body, supply a JSON representation of the parameters. + +The following table shows the parameters that you can use with this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|resourceIds|String collection|The identifiers of the [impactedResource](../resources/impactedresource.md) objects to tag. A maximum of 50 resource IDs can be supplied per request. Required.| +|displayName|String|The free-form label text to apply to each impacted resource. All characters and Unicode (all languages) are supported. Required.| + +If more than 50 resource IDs are supplied, the request fails with a `400 Bad Request` response and an `invalidRequest` error. + +## Response + +If successful, this action returns a `200 OK` response code and an [impactedResource](../resources/impactedresource.md) collection in the response body. + +## Examples + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/directory/recommendations/0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry/impactedResources/addTag +Content-Type: application/json + +{ + "resourceIds": [ + "dbd9935e-15b7-4800-9049-8d8704c23ad2", + "8f421b3d-6d33-4f2a-9d6f-7c2f1a9e5b10" + ], + "displayName": "Q3 remediation" +} +``` + +### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#Collection(impactedResource)", + "value": [ + { + "@odata.type": "#microsoft.graph.impactedResource", + "id": "dbd9935e-15b7-4800-9049-8d8704c23ad2", + "recommendationId": "0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry", + "displayName": "Contoso IWA App Tutorial" + }, + { + "@odata.type": "#microsoft.graph.impactedResource", + "id": "8f421b3d-6d33-4f2a-9d6f-7c2f1a9e5b10", + "recommendationId": "0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry", + "displayName": "Fabrikam Web App" + } + ] +} +``` diff --git a/api-reference/beta/api/impactedresource-addtag.md b/api-reference/beta/api/impactedresource-addtag.md new file mode 100644 index 00000000000..060f68d38d5 --- /dev/null +++ b/api-reference/beta/api/impactedresource-addtag.md @@ -0,0 +1,96 @@ +--- +title: "impactedResource: addTag" +description: "Add a user-defined tag to an impactedResource object." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# impactedResource: addTag +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Add a user-defined [tag](../resources/recommendationtag.md) to an [impactedResource](../resources/impactedresource.md) object. To add the same tag to multiple impacted resources in a single request, use the [addTag](../api/impactedresource-addtag-collection.md) action on the impactedResources collection. + +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/impactedresource-addtag-permissions.md)] + +[!INCLUDE [rbac-directory-recommendations-apis-write](../includes/rbac-for-apis/rbac-directory-recommendations-apis-write.md)] + +## HTTP request + + +```http +POST /directory/recommendations/{recommendationId}/impactedResources/{impactedResourceId}/addTag +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body +In the request body, supply a JSON representation of the parameters. + +The following table shows the parameters that you can use with this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|displayName|String|The free-form label text to apply to the impacted resource. All characters and Unicode (all languages) are supported. Required.| + +## Response + +If successful, this action returns a `200 OK` response code and a [recommendationTag](../resources/recommendationtag.md) in the response body. + +## Examples + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/directory/recommendations/0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry/impactedResources/dbd9935e-15b7-4800-9049-8d8704c23ad2/addTag +Content-Type: application/json + +{ + "displayName": "Q3 remediation" +} +``` + +### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#recommendationTag", + "@odata.type": "#microsoft.graph.recommendationTag", + "id": "6f9a1e17-8e2f-4a2c-9f3b-1d0e5c7a2b34", + "displayName": "Q3 remediation" +} +``` diff --git a/api-reference/beta/api/impactedresource-applyalternatemitigation.md b/api-reference/beta/api/impactedresource-applyalternatemitigation.md new file mode 100644 index 00000000000..ed538bf71e5 --- /dev/null +++ b/api-reference/beta/api/impactedresource-applyalternatemitigation.md @@ -0,0 +1,86 @@ +--- +title: "impactedResource: applyAlternateMitigation" +description: "Apply an alternate mitigation for an impactedResource object and update its status to alternateMitigation." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# impactedResource: applyAlternateMitigation +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Apply an alternate mitigation for an [impactedResource](../resources/impactedresource.md) object and update its **status** to `alternateMitigation`. + +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/impactedresource-applyalternatemitigation-permissions.md)] + +[!INCLUDE [rbac-directory-recommendations-apis-write](../includes/rbac-for-apis/rbac-directory-recommendations-apis-write.md)] + +## HTTP request + + +```http +POST /directory/recommendations/{recommendationId}/impactedResources/{impactedResourceId}/applyAlternateMitigation +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body +Don't supply a request body for this method. + +## Response + +If successful, this action returns a `200 OK` response code and an [impactedResource](../resources/impactedresource.md) in the response body. + +## Examples + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/directory/recommendations/0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry/impactedResources/dbd9935e-15b7-4800-9049-8d8704c23ad2/applyAlternateMitigation +``` + +### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#impactedResource", + "@odata.type": "#microsoft.graph.impactedResource", + "id": "dbd9935e-15b7-4800-9049-8d8704c23ad2", + "recommendationId": "0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry", + "status": "alternateMitigation", + "displayName": "Contoso IWA App Tutorial" +} +``` diff --git a/api-reference/beta/api/impactedresource-markplanned.md b/api-reference/beta/api/impactedresource-markplanned.md new file mode 100644 index 00000000000..28ac68064eb --- /dev/null +++ b/api-reference/beta/api/impactedresource-markplanned.md @@ -0,0 +1,86 @@ +--- +title: "impactedResource: markPlanned" +description: "Mark an impactedResource object as planned and update its status to planned." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# impactedResource: markPlanned +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Mark an [impactedResource](../resources/impactedresource.md) object as planned and update its **status** to `planned`. + +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/impactedresource-markplanned-permissions.md)] + +[!INCLUDE [rbac-directory-recommendations-apis-write](../includes/rbac-for-apis/rbac-directory-recommendations-apis-write.md)] + +## HTTP request + + +```http +POST /directory/recommendations/{recommendationId}/impactedResources/{impactedResourceId}/markPlanned +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body +Don't supply a request body for this method. + +## Response + +If successful, this action returns a `200 OK` response code and an [impactedResource](../resources/impactedresource.md) in the response body. + +## Examples + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/directory/recommendations/0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry/impactedResources/dbd9935e-15b7-4800-9049-8d8704c23ad2/markPlanned +``` + +### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#impactedResource", + "@odata.type": "#microsoft.graph.impactedResource", + "id": "dbd9935e-15b7-4800-9049-8d8704c23ad2", + "recommendationId": "0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry", + "status": "planned", + "displayName": "Contoso IWA App Tutorial" +} +``` diff --git a/api-reference/beta/api/impactedresource-removetag-collection.md b/api-reference/beta/api/impactedresource-removetag-collection.md new file mode 100644 index 00000000000..2d6ca4d41b2 --- /dev/null +++ b/api-reference/beta/api/impactedresource-removetag-collection.md @@ -0,0 +1,115 @@ +--- +title: "impactedResource: removeTag (for multiple resources)" +description: "Remove the same user-defined tag from multiple impactedResource objects in a single request." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# impactedResource: removeTag (for multiple resources) +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Remove the same user-defined [tag](../resources/recommendationtag.md) from multiple [impactedResource](../resources/impactedresource.md) objects in a single request. To remove a tag from a single impacted resource, use the [removeTag](../api/impactedresource-removetag.md) action instead. + +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/impactedresource-removetag-collection-permissions.md)] + +[!INCLUDE [rbac-directory-recommendations-apis-write](../includes/rbac-for-apis/rbac-directory-recommendations-apis-write.md)] + +## HTTP request + + +```http +POST /directory/recommendations/{recommendationId}/impactedResources/removeTag +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body +In the request body, supply a JSON representation of the parameters. + +The following table shows the parameters that you can use with this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|resourceIds|String collection|The identifiers of the [impactedResource](../resources/impactedresource.md) objects to remove the tag from. A maximum of 50 resource IDs can be supplied per request. Required.| +|displayName|String|The free-form label text of the tag to remove from each impacted resource. Required.| + +If more than 50 resource IDs are supplied, the request fails with a `400 Bad Request` response and an `invalidRequest` error. + +## Response + +If successful, this action returns a `200 OK` response code and an [impactedResource](../resources/impactedresource.md) collection in the response body. + +## Examples + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/directory/recommendations/0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry/impactedResources/removeTag +Content-Type: application/json + +{ + "resourceIds": [ + "dbd9935e-15b7-4800-9049-8d8704c23ad2", + "8f421b3d-6d33-4f2a-9d6f-7c2f1a9e5b10" + ], + "displayName": "Q3 remediation" +} +``` + +### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#Collection(impactedResource)", + "value": [ + { + "@odata.type": "#microsoft.graph.impactedResource", + "id": "dbd9935e-15b7-4800-9049-8d8704c23ad2", + "recommendationId": "0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry", + "displayName": "Contoso IWA App Tutorial" + }, + { + "@odata.type": "#microsoft.graph.impactedResource", + "id": "8f421b3d-6d33-4f2a-9d6f-7c2f1a9e5b10", + "recommendationId": "0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry", + "displayName": "Fabrikam Web App" + } + ] +} +``` diff --git a/api-reference/beta/api/impactedresource-removetag.md b/api-reference/beta/api/impactedresource-removetag.md new file mode 100644 index 00000000000..45f30819ab6 --- /dev/null +++ b/api-reference/beta/api/impactedresource-removetag.md @@ -0,0 +1,97 @@ +--- +title: "impactedResource: removeTag" +description: "Remove a user-defined tag from an impactedResource object." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# impactedResource: removeTag +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Remove a user-defined [tag](../resources/recommendationtag.md) from an [impactedResource](../resources/impactedresource.md) object. To remove the same tag from multiple impacted resources in a single request, use the [removeTag](../api/impactedresource-removetag-collection.md) action on the impactedResources collection. + +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/impactedresource-removetag-permissions.md)] + +[!INCLUDE [rbac-directory-recommendations-apis-write](../includes/rbac-for-apis/rbac-directory-recommendations-apis-write.md)] + +## HTTP request + + +```http +POST /directory/recommendations/{recommendationId}/impactedResources/{impactedResourceId}/removeTag +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body +In the request body, supply a JSON representation of the parameters. + +The following table shows the parameters that you can use with this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|tagId|String|The unique identifier of the [recommendationTag](../resources/recommendationtag.md) to remove from the impacted resource. Required.| + +## Response + +If successful, this action returns a `200 OK` response code and an [impactedResource](../resources/impactedresource.md) in the response body. + +## Examples + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/directory/recommendations/0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry/impactedResources/dbd9935e-15b7-4800-9049-8d8704c23ad2/removeTag +Content-Type: application/json + +{ + "tagId": "6f9a1e17-8e2f-4a2c-9f3b-1d0e5c7a2b34" +} +``` + +### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#impactedResource", + "@odata.type": "#microsoft.graph.impactedResource", + "id": "dbd9935e-15b7-4800-9049-8d8704c23ad2", + "recommendationId": "0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.ApplicationCredentialExpiry", + "displayName": "Contoso IWA App Tutorial" +} +``` diff --git a/api-reference/beta/api/recommendation-acceptrisk.md b/api-reference/beta/api/recommendation-acceptrisk.md new file mode 100644 index 00000000000..37c5b7d8ffa --- /dev/null +++ b/api-reference/beta/api/recommendation-acceptrisk.md @@ -0,0 +1,88 @@ +--- +title: "recommendation: acceptRisk" +description: "Accept the risk for a recommendation object and update its status to riskAccepted." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# recommendation: acceptRisk +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Accept the risk for a [recommendation](../resources/recommendation.md) object and update its **status** to `riskAccepted`. + +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/recommendation-acceptrisk-permissions.md)] + +[!INCLUDE [rbac-directory-recommendations-apis-write](../includes/rbac-for-apis/rbac-directory-recommendations-apis-write.md)] + +## HTTP request + + +```http +POST /directory/recommendations/{recommendationId}/acceptRisk +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body +Don't supply a request body for this method. + +## Response + +If successful, this action returns a `200 OK` response code and a [recommendation](../resources/recommendation.md) in the response body. + +## Examples + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/directory/recommendations/0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.TurnOffPerUserMFA/acceptRisk +``` + +### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#recommendation", + "@odata.type": "#microsoft.graph.recommendation", + "id": "0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.TurnOffPerUserMFA", + "recommendationType": "turnOffPerUserMFA", + "status": "riskAccepted", + "statusModifiedDateTime": "2025-06-16T02:08:33.4580541Z", + "priority": "high", + "displayName": "Convert from per-user MFA to Conditional Access MFA" +} +``` diff --git a/api-reference/beta/api/recommendation-addtag.md b/api-reference/beta/api/recommendation-addtag.md new file mode 100644 index 00000000000..7516900a964 --- /dev/null +++ b/api-reference/beta/api/recommendation-addtag.md @@ -0,0 +1,96 @@ +--- +title: "recommendation: addTag" +description: "Add a user-defined tag to a recommendation object." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# recommendation: addTag +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Add a user-defined [tag](../resources/recommendationtag.md) to a [recommendation](../resources/recommendation.md) object. Tags help you organize, group, and filter recommendations in the Microsoft Entra admin center. + +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/recommendation-addtag-permissions.md)] + +[!INCLUDE [rbac-directory-recommendations-apis-write](../includes/rbac-for-apis/rbac-directory-recommendations-apis-write.md)] + +## HTTP request + + +```http +POST /directory/recommendations/{recommendationId}/addTag +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body +In the request body, supply a JSON representation of the parameters. + +The following table shows the parameters that you can use with this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|displayName|String|The free-form label text to apply to the recommendation. All characters and Unicode (all languages) are supported. Required.| + +## Response + +If successful, this action returns a `200 OK` response code and a [recommendationTag](../resources/recommendationtag.md) in the response body. + +## Examples + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/directory/recommendations/0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.TurnOffPerUserMFA/addTag +Content-Type: application/json + +{ + "displayName": "Q3 remediation" +} +``` + +### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#recommendationTag", + "@odata.type": "#microsoft.graph.recommendationTag", + "id": "6f9a1e17-8e2f-4a2c-9f3b-1d0e5c7a2b34", + "displayName": "Q3 remediation" +} +``` diff --git a/api-reference/beta/api/recommendation-applyalternatemitigation.md b/api-reference/beta/api/recommendation-applyalternatemitigation.md new file mode 100644 index 00000000000..393caa92297 --- /dev/null +++ b/api-reference/beta/api/recommendation-applyalternatemitigation.md @@ -0,0 +1,88 @@ +--- +title: "recommendation: applyAlternateMitigation" +description: "Apply an alternate mitigation for a recommendation object and update its status to alternateMitigation." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# recommendation: applyAlternateMitigation +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Apply an alternate mitigation for a [recommendation](../resources/recommendation.md) object and update its **status** to `alternateMitigation`. + +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/recommendation-applyalternatemitigation-permissions.md)] + +[!INCLUDE [rbac-directory-recommendations-apis-write](../includes/rbac-for-apis/rbac-directory-recommendations-apis-write.md)] + +## HTTP request + + +```http +POST /directory/recommendations/{recommendationId}/applyAlternateMitigation +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body +Don't supply a request body for this method. + +## Response + +If successful, this action returns a `200 OK` response code and a [recommendation](../resources/recommendation.md) in the response body. + +## Examples + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/directory/recommendations/0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.TurnOffPerUserMFA/applyAlternateMitigation +``` + +### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#recommendation", + "@odata.type": "#microsoft.graph.recommendation", + "id": "0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.TurnOffPerUserMFA", + "recommendationType": "turnOffPerUserMFA", + "status": "alternateMitigation", + "statusModifiedDateTime": "2025-06-16T02:08:33.4580541Z", + "priority": "high", + "displayName": "Convert from per-user MFA to Conditional Access MFA" +} +``` diff --git a/api-reference/beta/api/recommendation-markplanned.md b/api-reference/beta/api/recommendation-markplanned.md new file mode 100644 index 00000000000..3de360665cb --- /dev/null +++ b/api-reference/beta/api/recommendation-markplanned.md @@ -0,0 +1,88 @@ +--- +title: "recommendation: markPlanned" +description: "Mark a recommendation object as planned and update its status to planned." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# recommendation: markPlanned +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Mark a [recommendation](../resources/recommendation.md) object as planned and update its **status** to `planned`. + +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/recommendation-markplanned-permissions.md)] + +[!INCLUDE [rbac-directory-recommendations-apis-write](../includes/rbac-for-apis/rbac-directory-recommendations-apis-write.md)] + +## HTTP request + + +```http +POST /directory/recommendations/{recommendationId}/markPlanned +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body +Don't supply a request body for this method. + +## Response + +If successful, this action returns a `200 OK` response code and a [recommendation](../resources/recommendation.md) in the response body. + +## Examples + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/directory/recommendations/0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.TurnOffPerUserMFA/markPlanned +``` + +### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#recommendation", + "@odata.type": "#microsoft.graph.recommendation", + "id": "0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.TurnOffPerUserMFA", + "recommendationType": "turnOffPerUserMFA", + "status": "planned", + "statusModifiedDateTime": "2025-06-16T02:08:33.4580541Z", + "priority": "high", + "displayName": "Convert from per-user MFA to Conditional Access MFA" +} +``` diff --git a/api-reference/beta/api/recommendation-removetag.md b/api-reference/beta/api/recommendation-removetag.md new file mode 100644 index 00000000000..96827e4b3bf --- /dev/null +++ b/api-reference/beta/api/recommendation-removetag.md @@ -0,0 +1,97 @@ +--- +title: "recommendation: removeTag" +description: "Remove a user-defined tag from a recommendation object." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: apiPageType +ms.date: 07/22/2026 +--- + +# recommendation: removeTag +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Remove a user-defined [tag](../resources/recommendationtag.md) from a [recommendation](../resources/recommendation.md) object. + +[!INCLUDE [national-cloud-support](../../includes/all-clouds.md)] + +## Permissions +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/recommendation-removetag-permissions.md)] + +[!INCLUDE [rbac-directory-recommendations-apis-write](../includes/rbac-for-apis/rbac-directory-recommendations-apis-write.md)] + +## HTTP request + + +```http +POST /directory/recommendations/{recommendationId}/removeTag +``` + +## Request headers +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body +In the request body, supply a JSON representation of the parameters. + +The following table shows the parameters that you can use with this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|tagId|String|The unique identifier of the [recommendationTag](../resources/recommendationtag.md) to remove from the recommendation. Required.| + +## Response + +If successful, this action returns a `200 OK` response code and a [recommendation](../resources/recommendation.md) in the response body. + +## Examples + +### Request +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/directory/recommendations/0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.TurnOffPerUserMFA/removeTag +Content-Type: application/json + +{ + "tagId": "6f9a1e17-8e2f-4a2c-9f3b-1d0e5c7a2b34" +} +``` + +### Response +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#recommendation", + "@odata.type": "#microsoft.graph.recommendation", + "id": "0cb31920-84b9-471f-a6fb-468c1a847088_Microsoft.Identity.IAM.Insights.TurnOffPerUserMFA", + "recommendationType": "turnOffPerUserMFA", + "displayName": "Convert from per-user MFA to Conditional Access MFA" +} +``` diff --git a/api-reference/beta/includes/permissions/impactedresource-acceptrisk-permissions.md b/api-reference/beta/includes/permissions/impactedresource-acceptrisk-permissions.md new file mode 100644 index 00000000000..da8e5d07157 --- /dev/null +++ b/api-reference/beta/includes/permissions/impactedresource-acceptrisk-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|DirectoryRecommendations.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/impactedresource-addtag-collection-permissions.md b/api-reference/beta/includes/permissions/impactedresource-addtag-collection-permissions.md new file mode 100644 index 00000000000..da8e5d07157 --- /dev/null +++ b/api-reference/beta/includes/permissions/impactedresource-addtag-collection-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|DirectoryRecommendations.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/impactedresource-addtag-permissions.md b/api-reference/beta/includes/permissions/impactedresource-addtag-permissions.md new file mode 100644 index 00000000000..da8e5d07157 --- /dev/null +++ b/api-reference/beta/includes/permissions/impactedresource-addtag-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|DirectoryRecommendations.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/impactedresource-applyalternatemitigation-permissions.md b/api-reference/beta/includes/permissions/impactedresource-applyalternatemitigation-permissions.md new file mode 100644 index 00000000000..da8e5d07157 --- /dev/null +++ b/api-reference/beta/includes/permissions/impactedresource-applyalternatemitigation-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|DirectoryRecommendations.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/impactedresource-markplanned-permissions.md b/api-reference/beta/includes/permissions/impactedresource-markplanned-permissions.md new file mode 100644 index 00000000000..da8e5d07157 --- /dev/null +++ b/api-reference/beta/includes/permissions/impactedresource-markplanned-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|DirectoryRecommendations.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/impactedresource-removetag-collection-permissions.md b/api-reference/beta/includes/permissions/impactedresource-removetag-collection-permissions.md new file mode 100644 index 00000000000..da8e5d07157 --- /dev/null +++ b/api-reference/beta/includes/permissions/impactedresource-removetag-collection-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|DirectoryRecommendations.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/impactedresource-removetag-permissions.md b/api-reference/beta/includes/permissions/impactedresource-removetag-permissions.md new file mode 100644 index 00000000000..da8e5d07157 --- /dev/null +++ b/api-reference/beta/includes/permissions/impactedresource-removetag-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|DirectoryRecommendations.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/recommendation-acceptrisk-permissions.md b/api-reference/beta/includes/permissions/recommendation-acceptrisk-permissions.md new file mode 100644 index 00000000000..da8e5d07157 --- /dev/null +++ b/api-reference/beta/includes/permissions/recommendation-acceptrisk-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|DirectoryRecommendations.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/recommendation-addtag-permissions.md b/api-reference/beta/includes/permissions/recommendation-addtag-permissions.md new file mode 100644 index 00000000000..da8e5d07157 --- /dev/null +++ b/api-reference/beta/includes/permissions/recommendation-addtag-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|DirectoryRecommendations.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/recommendation-applyalternatemitigation-permissions.md b/api-reference/beta/includes/permissions/recommendation-applyalternatemitigation-permissions.md new file mode 100644 index 00000000000..da8e5d07157 --- /dev/null +++ b/api-reference/beta/includes/permissions/recommendation-applyalternatemitigation-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|DirectoryRecommendations.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/recommendation-markplanned-permissions.md b/api-reference/beta/includes/permissions/recommendation-markplanned-permissions.md new file mode 100644 index 00000000000..da8e5d07157 --- /dev/null +++ b/api-reference/beta/includes/permissions/recommendation-markplanned-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|DirectoryRecommendations.ReadWrite.All|Not available.| diff --git a/api-reference/beta/includes/permissions/recommendation-removetag-permissions.md b/api-reference/beta/includes/permissions/recommendation-removetag-permissions.md new file mode 100644 index 00000000000..da8e5d07157 --- /dev/null +++ b/api-reference/beta/includes/permissions/recommendation-removetag-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|DirectoryRecommendations.ReadWrite.All|Not available.| diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index de677268d2c..50e5d4ffcd3 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -5,7 +5,7 @@ doc_type: enumPageType ms.localizationpriority: medium ms.subservice: "non-product-specific" author: "MSGraphDocsvTeam" -ms.date: 01/28/2026 +ms.date: 07/22/2026 ms.custom: sfi-ropc-nochange --- @@ -671,6 +671,7 @@ Namespace: microsoft.graph | microsoftEntraWorkloadId | | unknownFutureValue | | aatp | +| microsoftEntraSuite | ### recommendationCategory values @@ -681,6 +682,18 @@ Namespace: microsoft.graph | unknownFutureValue | | mdiSecureScore | +### recommendationCategoryGroup values + +| Member | +| ------------------------------- | +| strengthenAuthentication | +| detectAndRespondToThreats | +| enforceLeastPrivilege | +| governAppsCredentialsAndAgents | +| hardenInfrastructure | +| defenderForIdentity | +| unknownFutureValue | + ### recommendationFeatureAreas values | Member | @@ -701,6 +714,8 @@ Namespace: microsoft.graph | low | | medium | | high | +| critical | +| unknownFutureValue | ### recommendationStatus values @@ -716,6 +731,7 @@ Namespace: microsoft.graph | thirdParty | | planned | | alternateMitigation | +| needsMoreAction | ### recommendationType values diff --git a/api-reference/beta/resources/impactedresource.md b/api-reference/beta/resources/impactedresource.md index c6f63a36f0f..e4a8ed7f0e1 100644 --- a/api-reference/beta/resources/impactedresource.md +++ b/api-reference/beta/resources/impactedresource.md @@ -5,7 +5,7 @@ author: "ddeeps2610" ms.localizationpriority: medium ms.subservice: "entra-monitoring-health" doc_type: resourcePageType -ms.date: 07/22/2024 +ms.date: 07/22/2026 --- # impactedResource resource type @@ -27,6 +27,13 @@ Inherits from [entity](entity.md). |[Dismiss](../api/impactedresource-dismiss.md)|[impactedResource](../resources/impactedresource.md)|Mark the status of an [impactedResource](../resources/impactedresource.md) object as `dismissed`.| |[Complete](../api/impactedresource-complete.md)|[impactedResource](../resources/impactedresource.md)|Mark the status of an [impactedResource](../resources/impactedresource.md) object as `completedByUser`.| |[Reactivate](../api/impactedresource-reactivate.md)|[impactedResource](../resources/impactedresource.md)|Mark the status of an [impactedResource](../resources/impactedresource.md) object as `active`.| +|[Mark planned](../api/impactedresource-markplanned.md)|[impactedResource](../resources/impactedresource.md)|Mark the status of an [impactedResource](../resources/impactedresource.md) object as `planned`.| +|[Accept risk](../api/impactedresource-acceptrisk.md)|[impactedResource](../resources/impactedresource.md)|Mark the status of an [impactedResource](../resources/impactedresource.md) object as `riskAccepted`.| +|[Apply alternate mitigation](../api/impactedresource-applyalternatemitigation.md)|[impactedResource](../resources/impactedresource.md)|Mark the status of an [impactedResource](../resources/impactedresource.md) object as `alternateMitigation`.| +|[Add tag](../api/impactedresource-addtag.md)|[recommendationTag](../resources/recommendationtag.md)|Add a user-defined tag to an [impactedResource](../resources/impactedresource.md).| +|[Remove tag](../api/impactedresource-removetag.md)|[impactedResource](../resources/impactedresource.md)|Remove a user-defined tag from an [impactedResource](../resources/impactedresource.md).| +|[Add tag to multiple resources](../api/impactedresource-addtag-collection.md)|[impactedResource](../resources/impactedresource.md) collection|Add the same tag to up to 50 [impactedResource](../resources/impactedresource.md) objects in a single request.| +|[Remove tag from multiple resources](../api/impactedresource-removetag-collection.md)|[impactedResource](../resources/impactedresource.md) collection|Remove the same tag from up to 50 [impactedResource](../resources/impactedresource.md) objects in a single request.| ## Properties |Property|Type|Description| @@ -44,11 +51,13 @@ Inherits from [entity](entity.md). |rank|Int32|Indicates the importance of the resource. A resource with a rank equal to 1 is of the highest importance.| |recommendationId|String|The unique identifier of the [recommendation](../resources/recommendation.md) that the resource is associated with.| |resourceType|String|Indicates the type of Microsoft Entra resource. Examples include `user`, `application`.| -|status|recommendationStatus|Indicates whether a resource needs to be addressed. The possible values are: `active`, `completedBySystem`, `completedByUser`, `dismissed`, `postponed`, `unknownFutureValue`, `riskAccepted`, `thirdParty`, `planned`, `alternateMitigation`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `riskAccepted` , `thirdParty` , `planned` , `alternateMitigation`. By default, a recommendation's **status** is set to `active` when the recommendation is first generated. **Status** is set to `completedBySystem` when our service detects that a resource which was once active no longer applies.| +|status|recommendationStatus|Indicates whether a resource needs to be addressed. The possible values are: `active`, `completedBySystem`, `completedByUser`, `dismissed`, `postponed`, `unknownFutureValue`, `riskAccepted`, `thirdParty`, `planned`, `alternateMitigation`, `needsMoreAction`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `riskAccepted` , `thirdParty` , `planned` , `alternateMitigation` , `needsMoreAction`. By default, a recommendation's **status** is set to `active` when the recommendation is first generated. **Status** is set to `completedBySystem` when our service detects that a resource which was once active no longer applies.| |subjectId|String|The related unique identifier, depending on the **resourceType**. For example, this property is set to the `applicationId` if the **resourceType** is an `application`.| ## Relationships -None. +|Relationship|Type|Description| +|:---|:---|:---| +|tags|[recommendationTag](../resources/recommendationtag.md) collection|The user-defined free-form labels applied to the [impactedResource](../resources/impactedresource.md). The collection isn't directly writable; tags are created and removed through the [addTag](../api/impactedresource-addtag.md) and [removeTag](../api/impactedresource-removetag.md) actions.| ## JSON representation The following JSON representation shows the resource type. diff --git a/api-reference/beta/resources/nistclassification.md b/api-reference/beta/resources/nistclassification.md new file mode 100644 index 00000000000..b938fa105a7 --- /dev/null +++ b/api-reference/beta/resources/nistclassification.md @@ -0,0 +1,46 @@ +--- +title: "nistClassification resource type" +description: "Represents a mapping of a Microsoft Entra recommendation to a NIST Cybersecurity Framework (CSF) 2.0 category." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: resourcePageType +ms.date: 07/22/2026 +--- + +# nistClassification resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a mapping of a Microsoft Entra ID [recommendation](../resources/recommendation.md) to a NIST Cybersecurity Framework (CSF) 2.0 category. A recommendation can map to one or more NIST CSF 2.0 categories through its **nistClassifications** property. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|category|String|The NIST CSF 2.0 category name, for example `Adverse Event Analysis`.| +|description|String|A description of the NIST CSF 2.0 category.| +|function|String|The NIST CSF 2.0 function, for example `Detect (DE)`.| +|name|String|The NIST CSF 2.0 category identifier, for example `DE.AE`.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.nistClassification", + "function": "String", + "category": "String", + "name": "String", + "description": "String" +} +``` diff --git a/api-reference/beta/resources/recommendation.md b/api-reference/beta/resources/recommendation.md index f7e2dbc19e2..d0539b71313 100644 --- a/api-reference/beta/resources/recommendation.md +++ b/api-reference/beta/resources/recommendation.md @@ -5,7 +5,7 @@ author: "ddeeps2610" ms.localizationpriority: medium ms.subservice: "entra-monitoring-health" doc_type: resourcePageType -ms.date: 06/12/2024 +ms.date: 07/22/2026 --- # recommendation resource type @@ -31,6 +31,11 @@ Inherits from [recommendationBase](../resources/recommendationbase.md). |[Dismiss](../api/recommendation-dismiss.md)|[recommendation](../resources/recommendation.md)|Mark the status of a [recommendation](../resources/recommendation.md) object as `dismissed`.| |[Complete](../api/recommendation-complete.md)|[recommendation](../resources/recommendation.md)|Mark the status of a [recommendation](../resources/recommendation.md) object as `completedByUser`.| |[Reactivate](../api/recommendation-reactivate.md)|[recommendation](../resources/recommendation.md)|Mark the status of a [recommendation](../resources/recommendation.md) object as `active`.| +|[Mark planned](../api/recommendation-markplanned.md)|[recommendation](../resources/recommendation.md)|Mark the status of a [recommendation](../resources/recommendation.md) object as `planned`.| +|[Accept risk](../api/recommendation-acceptrisk.md)|[recommendation](../resources/recommendation.md)|Mark the status of a [recommendation](../resources/recommendation.md) object as `riskAccepted`.| +|[Apply alternate mitigation](../api/recommendation-applyalternatemitigation.md)|[recommendation](../resources/recommendation.md)|Mark the status of a [recommendation](../resources/recommendation.md) object as `alternateMitigation`.| +|[Add tag](../api/recommendation-addtag.md)|[recommendationTag](../resources/recommendationtag.md)|Add a user-defined tag to a [recommendation](../resources/recommendation.md).| +|[Remove tag](../api/recommendation-removetag.md)|[recommendation](../resources/recommendation.md)|Remove a user-defined tag from a [recommendation](../resources/recommendation.md).| |[Get tenant Secure Score](../api/recommendation-tenantsecurescores.md)|[tenantSecureScore](../resources/tenantsecurescore.md) collection|Get historical Secure Score data for your tenant. | ## Properties @@ -39,9 +44,13 @@ Inherits from [recommendationBase](../resources/recommendationbase.md). |actionSteps|[actionStep](../resources/actionstep.md) collection|List of actions to take to complete a [recommendation](../resources/recommendation.md). Inherited from [recommendationBase](../resources/recommendationbase.md).| |benefits|String|An explanation of why [completing the recommendation](../api/recommendation-complete.md) will benefit you. Corresponds to the *Value* section of a recommendation shown in the Microsoft Entra admin center. Inherited from [recommendationBase](../resources/recommendationbase.md).| |category|recommendationCategory|Indicates the category of intelligent guidance that the recommendation falls under. The possible values are: `identityBestPractice`, `identitySecureScore`, `unknownFutureValue`, `mdiSecureScore`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mdiSecureScore`. Inherited from [recommendationBase](../resources/recommendationbase.md).

Supports `$filter`(`eq`).| +|categoryGroup|recommendationCategoryGroup|The business taxonomy group that the [recommendation](../resources/recommendation.md) belongs to, used to organize recommendations in the Microsoft Entra admin center. The possible values are: `strengthenAuthentication`, `detectAndRespondToThreats`, `enforceLeastPrivilege`, `governAppsCredentialsAndAgents`, `hardenInfrastructure`, `defenderForIdentity`, `unknownFutureValue`. Inherited from [recommendationBase](../resources/recommendationbase.md). Read-only.

Supports `$filter`(`eq`).| +|completedBySystemDateTime|DateTimeOffset|The date and time when the recommendations service verified that the [recommendation](../resources/recommendation.md) was fully remediated and set its **status** to `completedBySystem`. Is `null` if the recommendation wasn't completed by the system. Inherited from [recommendationBase](../resources/recommendationbase.md).| +|completedByUserDateTime|DateTimeOffset|The date and time when the [recommendation](../resources/recommendation.md) was marked as completed by the user for the current review cycle. Is `null` if the recommendation wasn't completed by a user in the current cycle. Inherited from [recommendationBase](../resources/recommendationbase.md).| |createdDateTime|DateTimeOffset|The date and time when the [recommendation](../resources/recommendation.md) was detected as applicable to your directory. Inherited from [recommendationBase](../resources/recommendationbase.md).| |currentScore|Double|The number of points the tenant has attained. Only applies to [recommendations](../resources/recommendation.md) with **category** set to `identitySecureScore`. Inherited from [recommendationBase](../resources/recommendationbase.md).| |displayName|String|The title of the [recommendation](../resources/recommendation.md). Inherited from [recommendationBase](../resources/recommendationbase.md).| +|failedReviewDateTime|DateTimeOffset|The date and time when the recommendations service most recently verified that one or more impacted resources the user marked as completed are still impacted, moving them to `needsMoreAction`. Is mutually exclusive with **remediatedDateTime**. Is `null` when no user-reviewed resource is currently failing verification. Inherited from [recommendationBase](../resources/recommendationbase.md).| |featureAreas|recommendationFeatureAreas collection|The directory feature that the [recommendation](../resources/recommendation.md) is related to. Inherited from [recommendationBase](../resources/recommendationbase.md).

Supports `$filter`(`eq`).| |id|String|The unique identifier for the [recommendation](../resources/recommendation.md) object generated for your tenant. This is a concatenation of your tenant ID and a Microsoft Entra ID-assigned nickname for the recommendation. For example, `7918d4b5-0442-4a97-be2d-36f9f9962ece_Microsoft.Identity.IAM.Insights.ThirdPartyApps`. Inherited from [recommendationBase](../resources/recommendationbase.md).| |impactStartDateTime|DateTimeOffset|The future date and time when a [recommendation](../resources/recommendation.md) should be completed. Inherited from [recommendationBase](../resources/recommendationbase.md).| @@ -51,17 +60,22 @@ Inherits from [recommendationBase](../resources/recommendationbase.md). |lastModifiedBy|String|Name of the user who last updated the **status** of the [recommendation](../resources/recommendation.md). Inherited from [recommendationBase](../resources/recommendationbase.md).| |lastModifiedDateTime|DateTimeOffset| The date and time the **status** of a [recommendation](../resources/recommendation.md) was last updated. Inherited from [recommendationBase](../resources/recommendationbase.md).| |maxScore|Double|The maximum number of points attainable. Only applies to [recommendations](../resources/recommendation.md) with **category** set to `identitySecureScore`. Inherited from [recommendationBase](../resources/recommendationbase.md).| +|needsMoreActionResourceCount|Int32|The number of impacted resources that the user marked as completed and that the recommendations service subsequently verified are still impacted (moved to `needsMoreAction`). This value is greater than zero exactly when **failedReviewDateTime** is set. Is `null` when the [recommendation](../resources/recommendation.md) doesn't participate in the review lifecycle. Inherited from [recommendationBase](../resources/recommendationbase.md).| +|nistClassifications|[nistClassification](../resources/nistclassification.md) collection|The NIST Cybersecurity Framework (CSF) 2.0 categories that the [recommendation](../resources/recommendation.md) maps to. Inherited from [recommendationBase](../resources/recommendationbase.md). Read-only.| |postponeUntilDateTime|DateTimeOffset|The future date and time when the **status** of a postponed [recommendation](../resources/recommendation.md) will be `active` again. Inherited from [recommendationBase](../resources/recommendationbase.md).| -|priority|recommendationPriority|Indicates the time sensitivity for a [recommendation](../resources/recommendation.md) to be completed. Microsoft auto assigns this value. The possible values are: `low`, `medium`, `high`. Inherited from [recommendationBase](../resources/recommendationbase.md). Read-only.

Supports `$filter`(`eq`).| +|priority|recommendationPriority|Indicates the time sensitivity for a [recommendation](../resources/recommendation.md) to be completed. Microsoft auto assigns this value. The possible values are: `low`, `medium`, `high`, `critical`, `unknownFutureValue`. Inherited from [recommendationBase](../resources/recommendationbase.md). Read-only.

Supports `$filter`(`eq`).| |recommendationType|recommendationType|Friendly shortname to identify the [recommendation](../resources/recommendation.md). The possible values are: `adfsAppsMigration`, `enableDesktopSSO`, `enablePHS`, `enableProvisioning`, `switchFromPerUserMFA`, `tenantMFA`, `thirdPartyApps`, `turnOffPerUserMFA`, `useAuthenticatorApp`, `useMyApps`, `staleApps`, `staleAppCreds`, `applicationCredentialExpiry`, `servicePrincipalKeyExpiry`, `adminMFAV2`, `blockLegacyAuthentication`, `integratedApps`, `mfaRegistrationV2`, `pwagePolicyNew`, `passwordHashSync`, `oneAdmin`, `roleOverlap`, `selfServicePasswordReset`, `signinRiskPolicy`, `userRiskPolicy`, `verifyAppPublisher`, `privateLinkForAAD`, `appRoleAssignmentsGroups`, `appRoleAssignmentsUsers`, `managedIdentity`, `overprivilegedApps`, `unknownFutureValue`, `longLivedCredentials`, `aadConnectDeprecated`, `adalToMsalMigration`, `ownerlessApps`, `inactiveGuests`, `aadGraphDeprecationApplication`, `aadGraphDeprecationServicePrincipal`, `mfaServerDeprecation`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `longLivedCredentials` , `aadConnectDeprecated` , `adalToMsalMigration` , `ownerlessApps` , `inactiveGuests` , `aadGraphDeprecationApplication` , `aadGraphDeprecationServicePrincipal` , `mfaServerDeprecation`. Inherited from [recommendationBase](../resources/recommendationbase.md).

Currently, only a limited number are available. For more information, see [Types of recommendations](recommendations-api-overview.md#types-of-recommendations). Supports `$filter`(`eq`).| |releaseType|releaseType|The current release type of the recommendation. The possible values are: `preview`, `generallyAvailable`, `unknownFutureValue`. Inherited from [recommendationBase](../resources/recommendationbase.md). | +|remediatedDateTime|DateTimeOffset|The date and time when the recommendations service verified that the impacted resources the user marked as completed were remediated, meaning the user-reviewed resources reached `completedBySystem`. Is superseded by **failedReviewDateTime** if a reviewed resource subsequently fails verification. Is `null` if the system hasn't verified a user-driven remediation in the current cycle. Inherited from [recommendationBase](../resources/recommendationbase.md).| |remediationImpact|String|Description of the impact on users of the remediation. Only applies to [recommendations](../resources/recommendation.md) with **category** set to `identitySecureScore`. Inherited from [recommendationBase](../resources/recommendationbase.md).| -|status|recommendationStatus| Indicates the status of the [recommendation](../resources/recommendation.md) based on user or system action. The possible values are: `active`, `completedBySystem`, `completedByUser`, `dismissed`, `postponed`, `unknownFutureValue`, `riskAccepted`, `thirdParty`, `planned`, `alternateMitigation`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `riskAccepted` , `thirdParty` , `planned` , `alternateMitigation`. By default, a recommendation's **status** is set to `active` when the recommendation is first generated. **Status** is set to `completedBySystem` when our service detects that a recommendation which was previously active no longer applies. Inherited from [recommendationBase](../resources/recommendationbase.md).

Supports `$filter`(`eq`).| +|status|recommendationStatus| Indicates the status of the [recommendation](../resources/recommendation.md) based on user or system action. The possible values are: `active`, `completedBySystem`, `completedByUser`, `dismissed`, `postponed`, `unknownFutureValue`, `riskAccepted`, `thirdParty`, `planned`, `alternateMitigation`, `needsMoreAction`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `riskAccepted` , `thirdParty` , `planned` , `alternateMitigation` , `needsMoreAction`. By default, a recommendation's **status** is set to `active` when the recommendation is first generated. **Status** is set to `completedBySystem` when our service detects that a recommendation which was previously active no longer applies. Inherited from [recommendationBase](../resources/recommendationbase.md).

Supports `$filter`(`eq`).| +|statusModifiedDateTime|DateTimeOffset|The date and time when the recommendation's **status** last changed, for example from `active` to `completedByUser`, `dismissed`, `postponed`, or `needsMoreAction`. Unlike **lastModifiedDateTime**, this value isn't updated when only the recommendation's insight data changes while the **status** stays the same. Is `null` until the recommendation's **status** changes for the first time. Inherited from [recommendationBase](../resources/recommendationbase.md).| ## Relationships |Relationship|Type|Description| |:---|:---|:---| |impactedResources|[impactedResource](../resources/impactedresource.md) collection|The list of directory objects associated with the [recommendation](../resources/recommendation.md). Inherited from [recommendationBase](../resources/recommendationbase.md).| +|tags|[recommendationTag](../resources/recommendationtag.md) collection|The user-defined free-form labels applied to the [recommendation](../resources/recommendation.md). The collection isn't directly writable; tags are created and removed through the [addTag](../api/recommendation-addtag.md) and [removeTag](../api/recommendation-removetag.md) actions. Inherited from [recommendationBase](../resources/recommendationbase.md).| ## JSON representation The following JSON representation shows the resource type. @@ -84,9 +98,13 @@ The following JSON representation shows the resource type. ], "benefits": "String", "category": "String", + "categoryGroup": "String", + "completedBySystemDateTime": "String (timestamp)", + "completedByUserDateTime": "String (timestamp)", "createdDateTime": "String (timestamp)", "currentScore": "Double", "displayName": "String", + "failedReviewDateTime": "String (timestamp)", "featureAreas": [ "String" ], @@ -97,9 +115,17 @@ The following JSON representation shows the resource type. "lastModifiedDateTime": "String (timestamp)", "lastModifiedBy": "String", "maxScore": "Double", + "needsMoreActionResourceCount": "Int32", + "nistClassifications": [ + { + "@odata.type": "microsoft.graph.nistClassification" + } + ], "postponeUntilDateTime": "String (timestamp)", "priority": "String", + "remediatedDateTime": "String (timestamp)", "status": "String", + "statusModifiedDateTime": "String (timestamp)", "remediationImpact": "String", "recommendationType": "String" } diff --git a/api-reference/beta/resources/recommendationbase.md b/api-reference/beta/resources/recommendationbase.md index 3b4f76d2017..ff0dd5b0956 100644 --- a/api-reference/beta/resources/recommendationbase.md +++ b/api-reference/beta/resources/recommendationbase.md @@ -5,7 +5,7 @@ author: "ddeeps2610" ms.localizationpriority: medium ms.subservice: "entra-monitoring-health" doc_type: resourcePageType -ms.date: 04/09/2024 +ms.date: 07/22/2026 --- # recommendationBase resource type @@ -25,9 +25,13 @@ None. |actionSteps|[actionStep](../resources/actionstep.md) collection|List of actions to take to complete a [recommendation](../resources/recommendation.md).| |benefits|String|An explanation of why [completing the recommendation](../api/recommendation-complete.md) will benefit you. Corresponds to the *Value* section of a recommendation shown in the Microsoft Entra admin center.| |category|recommendationCategory|Indicates the category of intelligent guidance that the recommendation falls under. The possible values are: `identityBestPractice`, `identitySecureScore`, `unknownFutureValue`, `mdiSecureScore`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `mdiSecureScore`.| +|categoryGroup|recommendationCategoryGroup|The business taxonomy group that the [recommendation](../resources/recommendation.md) belongs to, used to organize recommendations in the Microsoft Entra admin center. The possible values are: `strengthenAuthentication`, `detectAndRespondToThreats`, `enforceLeastPrivilege`, `governAppsCredentialsAndAgents`, `hardenInfrastructure`, `defenderForIdentity`, `unknownFutureValue`. Read-only. Supports `$filter` (`eq`).| +|completedBySystemDateTime|DateTimeOffset|The date and time when the recommendations service verified that the [recommendation](../resources/recommendation.md) was fully remediated and set its **status** to `completedBySystem`. Is `null` if the recommendation wasn't completed by the system. Supports `$filter`.| +|completedByUserDateTime|DateTimeOffset|The date and time when the [recommendation](../resources/recommendation.md) was marked as completed by the user for the current review cycle, including when the value is rolled up from all impacted resources being marked as completed by the user. Is `null` if the recommendation wasn't completed by a user in the current cycle. Supports `$filter`.| |createdDateTime|DateTimeOffset|The date and time when the [recommendation](../resources/recommendation.md) was detected as applicable to your directory.| |currentScore|Double|The number of points the tenant has attained. Only applies to [recommendations](../resources/recommendation.md) with **category** set to `identitySecureScore`.| |displayName|String|The title of the [recommendation](../resources/recommendation.md).| +|failedReviewDateTime|DateTimeOffset|The date and time when the recommendations service most recently verified that one or more impacted resources the user marked as completed are still impacted, moving them to `needsMoreAction`. Is cleared when the reviewed resources are remediated, so it's mutually exclusive with **remediatedDateTime**. Is `null` when no user-reviewed resource is currently failing verification. Supports `$filter`.| |featureAreas|recommendationFeatureAreas collection|The directory feature that the [recommendation](../resources/recommendation.md) is related to. | |id|String|The unique identifier for the [recommendation](../resources/recommendation.md) object generated for your tenant. This is a concatenation of your tenant ID and a Microsoft Entra ID-assigned nickname for the recommendation. For example, `7918d4b5-0442-4a97-be2d-36f9f9962ece_Microsoft.Identity.IAM.Insights.ThirdPartyApps`| |impactStartDateTime|DateTimeOffset|The future date and time when a [recommendation](../resources/recommendation.md) should be completed.| @@ -37,18 +41,23 @@ None. |lastModifiedBy|String|Name of the user who last updated the **status** of the [recommendation](../resources/recommendation.md).| |lastModifiedDateTime|DateTimeOffset| The date and time the **status** of a [recommendation](../resources/recommendation.md) was last updated.| |maxScore|Double|The maximum number of points attainable. Only applies to [recommendations](../resources/recommendation.md) with **category** set to `identitySecureScore`.| +|needsMoreActionResourceCount|Int32|The number of impacted resources that the user marked as completed and that the recommendations service subsequently verified are still impacted (moved to `needsMoreAction`). This value is greater than zero exactly when **failedReviewDateTime** is set. Is `null` when the [recommendation](../resources/recommendation.md) doesn't participate in the review lifecycle.| +|nistClassifications|[nistClassification](../resources/nistclassification.md) collection|The NIST Cybersecurity Framework (CSF) 2.0 categories that the [recommendation](../resources/recommendation.md) maps to. Read-only.| |postponeUntilDateTime|DateTimeOffset|The future date and time when the **status** of a postponed [recommendation](../resources/recommendation.md) will be `active` again.| -|priority|recommendationPriority|Indicates the time sensitivity for a [recommendation](../resources/recommendation.md) to be completed. Microsoft auto assigns this value. The possible values are: `low`, `medium`, `high`. | +|priority|recommendationPriority|Indicates the time sensitivity for a [recommendation](../resources/recommendation.md) to be completed. Microsoft auto assigns this value. The possible values are: `low`, `medium`, `high`, `critical`, `unknownFutureValue`. | |recommendationType|recommendationType|Friendly shortname to identify the [recommendation](../resources/recommendation.md). The possible values are: `adfsAppsMigration`, `enableDesktopSSO`, `enablePHS`, `enableProvisioning`, `switchFromPerUserMFA`, `tenantMFA`, `thirdPartyApps`, `turnOffPerUserMFA`, `useAuthenticatorApp`, `useMyApps`, `staleApps`, `staleAppCreds`, `applicationCredentialExpiry`, `servicePrincipalKeyExpiry`, `adminMFAV2`, `blockLegacyAuthentication`, `integratedApps`, `mfaRegistrationV2`, `pwagePolicyNew`, `passwordHashSync`, `oneAdmin`, `roleOverlap`, `selfServicePasswordReset`, `signinRiskPolicy`, `userRiskPolicy`, `verifyAppPublisher`, `privateLinkForAAD`, `appRoleAssignmentsGroups`, `appRoleAssignmentsUsers`, `managedIdentity`, `overprivilegedApps`, `unknownFutureValue`, `longLivedCredentials`, `aadConnectDeprecated`, `adalToMsalMigration`, `ownerlessApps`, `inactiveGuests`, `aadGraphDeprecationApplication`, `aadGraphDeprecationServicePrincipal`, `mfaServerDeprecation`. Use the `Prefer: include-unknown-enum-members` request header to get the following members in this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `longLivedCredentials` , `aadConnectDeprecated` , `adalToMsalMigration` , `ownerlessApps` , `inactiveGuests` , `aadGraphDeprecationApplication` , `aadGraphDeprecationServicePrincipal` , `mfaServerDeprecation`. | |releaseType|releaseType|The current release type of the recommendation. The possible values are: `preview`, `generallyAvailable`, `unknownFutureValue`. | +|remediatedDateTime|DateTimeOffset|The date and time when the recommendations service verified that the impacted resources the user marked as completed were remediated, meaning the user-reviewed resources reached `completedBySystem`. Is superseded by **failedReviewDateTime** if a reviewed resource subsequently fails verification. Is `null` if the system hasn't verified a user-driven remediation in the current cycle. Supports `$filter`.| |remediationImpact|String|Description of the impact on users of the remediation. Only applies to [recommendations](../resources/recommendation.md) with **category** set to `identitySecureScore`.| -|requiredLicenses|requiredLicenses|The required licenses to view the recommendation. The possible values are: `notApplicable`, `microsoftEntraIdFree`, `microsoftEntraIdP1`, `microsoftEntraIdP2`, `microsoftEntraIdGovernance`, `microsoftEntraWorkloadId`, `unknownFutureValue`, `aatp`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `aatp`.| -|status|recommendationStatus| Indicates the status of the [recommendation](../resources/recommendation.md) based on user or system action. The possible values are: `active`, `completedBySystem`, `completedByUser`, `dismissed`, `postponed`, `unknownFutureValue`, `riskAccepted`, `thirdParty`, `planned`, `alternateMitigation`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `riskAccepted` , `thirdParty` , `planned` , `alternateMitigation`. By default, a recommendation's **status** is set to `active` when the recommendation is first generated. **Status** is set to `completedBySystem` when our service detects that a recommendation which was previously active no longer applies. | +|requiredLicenses|requiredLicenses|The required licenses to view the recommendation. The possible values are: `notApplicable`, `microsoftEntraIdFree`, `microsoftEntraIdP1`, `microsoftEntraIdP2`, `microsoftEntraIdGovernance`, `microsoftEntraWorkloadId`, `unknownFutureValue`, `aatp`, `microsoftEntraSuite`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `aatp`, `microsoftEntraSuite`.| +|status|recommendationStatus| Indicates the status of the [recommendation](../resources/recommendation.md) based on user or system action. The possible values are: `active`, `completedBySystem`, `completedByUser`, `dismissed`, `postponed`, `unknownFutureValue`, `riskAccepted`, `thirdParty`, `planned`, `alternateMitigation`, `needsMoreAction`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `riskAccepted` , `thirdParty` , `planned` , `alternateMitigation` , `needsMoreAction`. By default, a recommendation's **status** is set to `active` when the recommendation is first generated. **Status** is set to `completedBySystem` when our service detects that a recommendation which was previously active no longer applies. | +|statusModifiedDateTime|DateTimeOffset|The date and time when the recommendation's **status** last changed, for example from `active` to `completedByUser`, `dismissed`, `postponed`, or `needsMoreAction`. Unlike **lastModifiedDateTime**, this value isn't updated when only the recommendation's insight data changes while the **status** stays the same. Is `null` until the recommendation's **status** changes for the first time. Supports `$filter`.| ## Relationships |Relationship|Type|Description| |:---|:---|:---| |impactedResources|[impactedResource](../resources/impactedresource.md) collection|The list of directory objects associated with the [recommendation](../resources/recommendation.md). | +|tags|[recommendationTag](../resources/recommendationtag.md) collection|The user-defined free-form labels applied to the [recommendation](../resources/recommendation.md). The collection isn't directly writable; tags are created and removed through the [addTag](../api/recommendation-addtag.md) and [removeTag](../api/recommendation-removetag.md) actions.| ## JSON representation The following JSON representation shows the resource type. @@ -70,9 +79,13 @@ The following JSON representation shows the resource type. ], "benefits": "String", "category": "String", + "categoryGroup": "String", + "completedBySystemDateTime": "String (timestamp)", + "completedByUserDateTime": "String (timestamp)", "createdDateTime": "String (timestamp)", "currentScore": "Double", "displayName": "String", + "failedReviewDateTime": "String (timestamp)", "featureAreas": [ "String" ], @@ -85,9 +98,17 @@ The following JSON representation shows the resource type. "lastModifiedDateTime": "String (timestamp)", "lastModifiedBy": "String", "maxScore": "Double", + "needsMoreActionResourceCount": "Int32", + "nistClassifications": [ + { + "@odata.type": "microsoft.graph.nistClassification" + } + ], "postponeUntilDateTime": "String (timestamp)", "priority": "String", + "remediatedDateTime": "String (timestamp)", "status": "String", + "statusModifiedDateTime": "String (timestamp)", "remediationImpact": "String", "recommendationType": "String" } diff --git a/api-reference/beta/resources/recommendationconfiguration.md b/api-reference/beta/resources/recommendationconfiguration.md index 20ca9ca3a0e..3a1fc441985 100644 --- a/api-reference/beta/resources/recommendationconfiguration.md +++ b/api-reference/beta/resources/recommendationconfiguration.md @@ -2,7 +2,7 @@ title: "recommendationConfiguration resource type" description: "Represents the configuration for recommendation notifications." author: "mbrndiar" -ms.date: 04/23/2025 +ms.date: 07/22/2026 ms.localizationpriority: medium ms.subservice: "entra-monitoring-health" doc_type: resourcePageType @@ -29,6 +29,7 @@ It allows you to enable or disable notifications for recommendations, which can |Property|Type|Description| |:---|:---|:---| |isNotificationEnabled|Boolean|Indicates whether notifications for recommendations are enabled.| +|lastRefreshedDateTime|DateTimeOffset|The date and time of the most recent refresh cycle in which every pipeline that populates Microsoft Entra recommendations completed successfully for the tenant's region. The value advances only when all contributing pipelines succeed and remains at the last fully successful cycle if any contributing pipeline is unhealthy. A successful refresh doesn't imply that any individual recommendation changed. Is `null` when no fully successful refresh has been recorded yet. Read-only.| ## Relationships @@ -48,6 +49,7 @@ The following JSON representation shows the resource type. ``` json { "@odata.type": "#microsoft.graph.recommendationConfiguration", - "isNotificationEnabled": "Boolean" + "isNotificationEnabled": "Boolean", + "lastRefreshedDateTime": "String (timestamp)" } ``` diff --git a/api-reference/beta/resources/recommendationtag.md b/api-reference/beta/resources/recommendationtag.md new file mode 100644 index 00000000000..3e8473aa2c2 --- /dev/null +++ b/api-reference/beta/resources/recommendationtag.md @@ -0,0 +1,48 @@ +--- +title: "recommendationTag resource type" +description: "Represents a user-defined free-form label applied to a Microsoft Entra recommendation or impacted resource." +author: "sanchariroy9197" +ms.localizationpriority: medium +ms.subservice: "entra-monitoring-health" +doc_type: resourcePageType +ms.date: 07/22/2026 +--- + +# recommendationTag resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents a user-defined free-form label applied to a Microsoft Entra ID [recommendation](../resources/recommendation.md) or [impactedResource](../resources/impactedresource.md). Tags help you organize, group, and filter recommendations and impacted resources in the Microsoft Entra admin center. + +Tags aren't directly writable through PATCH. Create a tag by using the [addTag](../api/recommendation-addtag.md) action on a recommendation or the [addTag](../api/impactedresource-addtag.md) action on an impacted resource, and remove a tag by using the corresponding [removeTag](../api/recommendation-removetag.md) actions. + +## Methods +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|displayName|String|The free-form label text. All characters and Unicode (all languages) are supported.| +|id|String|The unique identifier of the tag. Read-only.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.recommendationTag", + "id": "String (identifier)", + "displayName": "String" +} +``` diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 5b5688ba853..0edc7b4bae8 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -2528,8 +2528,17 @@ "overview": "../../resources/recommendations-api-overview.md", "resources": [ "recommendation", - "impactedResource", - "recommendationConfiguration" + "impactedResource" + ], + "childNodes": [ + { + "name": "Supporting types", + "resources": [ + "recommendationConfiguration", + "recommendationTag", + "nistClassification" + ] + } ] }, { diff --git a/changelog/Microsoft.AAD.Reporting.json b/changelog/Microsoft.AAD.Reporting.json index 592c08726a5..c998f1a4ff1 100644 --- a/changelog/Microsoft.AAD.Reporting.json +++ b/changelog/Microsoft.AAD.Reporting.json @@ -1,5 +1,247 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Enumeration", + "ChangedApiName": "recommendationCategoryGroup", + "ChangeType": "Addition", + "Description": "Added the **recommendationCategoryGroup** enumeration type.", + "Target": "recommendationCategoryGroup" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Member", + "ChangedApiName": "critical", + "ChangeType": "Addition", + "Description": "Added the `critical` member to the **recommendationPriority** enumeration.", + "Target": "recommendationPriority" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Member", + "ChangedApiName": "needsMoreAction", + "ChangeType": "Addition", + "Description": "Added the `needsMoreAction` member to the **recommendationStatus** enumeration.", + "Target": "recommendationStatus" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Member", + "ChangedApiName": "microsoftEntraSuite", + "ChangeType": "Addition", + "Description": "Added the `microsoftEntraSuite` member to the **requiredLicenses** enumeration.", + "Target": "requiredLicenses" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Resource", + "ChangedApiName": "nistClassification", + "ChangeType": "Addition", + "Description": "Added the [nistClassification](https://learn.microsoft.com/en-us/graph/api/resources/nistClassification?view=graph-rest-beta) resource.", + "Target": "nistClassification" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Relationship", + "ChangedApiName": "tags", + "ChangeType": "Addition", + "Description": "Added the **tags** relationship to the [impactedResource](https://learn.microsoft.com/en-us/graph/api/resources/impactedResource?view=graph-rest-beta) resource.", + "Target": "impactedResource" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Property", + "ChangedApiName": "categoryGroup", + "ChangeType": "Addition", + "Description": "Added the **categoryGroup** property to the [recommendationBase](https://learn.microsoft.com/en-us/graph/api/resources/recommendationBase?view=graph-rest-beta) resource.", + "Target": "recommendationBase" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Property", + "ChangedApiName": "completedBySystemDateTime", + "ChangeType": "Addition", + "Description": "Added the **completedBySystemDateTime** property to the [recommendationBase](https://learn.microsoft.com/en-us/graph/api/resources/recommendationBase?view=graph-rest-beta) resource.", + "Target": "recommendationBase" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Property", + "ChangedApiName": "completedByUserDateTime", + "ChangeType": "Addition", + "Description": "Added the **completedByUserDateTime** property to the [recommendationBase](https://learn.microsoft.com/en-us/graph/api/resources/recommendationBase?view=graph-rest-beta) resource.", + "Target": "recommendationBase" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Property", + "ChangedApiName": "failedReviewDateTime", + "ChangeType": "Addition", + "Description": "Added the **failedReviewDateTime** property to the [recommendationBase](https://learn.microsoft.com/en-us/graph/api/resources/recommendationBase?view=graph-rest-beta) resource.", + "Target": "recommendationBase" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Property", + "ChangedApiName": "needsMoreActionResourceCount", + "ChangeType": "Addition", + "Description": "Added the **needsMoreActionResourceCount** property to the [recommendationBase](https://learn.microsoft.com/en-us/graph/api/resources/recommendationBase?view=graph-rest-beta) resource.", + "Target": "recommendationBase" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Property", + "ChangedApiName": "nistClassifications", + "ChangeType": "Addition", + "Description": "Added the **nistClassifications** property to the [recommendationBase](https://learn.microsoft.com/en-us/graph/api/resources/recommendationBase?view=graph-rest-beta) resource.", + "Target": "recommendationBase" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Property", + "ChangedApiName": "remediatedDateTime", + "ChangeType": "Addition", + "Description": "Added the **remediatedDateTime** property to the [recommendationBase](https://learn.microsoft.com/en-us/graph/api/resources/recommendationBase?view=graph-rest-beta) resource.", + "Target": "recommendationBase" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Property", + "ChangedApiName": "statusModifiedDateTime", + "ChangeType": "Addition", + "Description": "Added the **statusModifiedDateTime** property to the [recommendationBase](https://learn.microsoft.com/en-us/graph/api/resources/recommendationBase?view=graph-rest-beta) resource.", + "Target": "recommendationBase" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Relationship", + "ChangedApiName": "tags", + "ChangeType": "Addition", + "Description": "Added the **tags** relationship to the [recommendationBase](https://learn.microsoft.com/en-us/graph/api/resources/recommendationBase?view=graph-rest-beta) resource.", + "Target": "recommendationBase" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Property", + "ChangedApiName": "lastRefreshedDateTime", + "ChangeType": "Addition", + "Description": "Added the **lastRefreshedDateTime** property to the [recommendationConfiguration](https://learn.microsoft.com/en-us/graph/api/resources/recommendationConfiguration?view=graph-rest-beta) resource.", + "Target": "recommendationConfiguration" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Resource", + "ChangedApiName": "recommendationTag", + "ChangeType": "Addition", + "Description": "Added the [recommendationTag](https://learn.microsoft.com/en-us/graph/api/resources/recommendationTag?view=graph-rest-beta) resource.", + "Target": "recommendationTag" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Method", + "ChangedApiName": "acceptRisk", + "ChangeType": "Addition", + "Description": "Added the [acceptRisk](https://learn.microsoft.com/en-us/graph/api/impactedResource-acceptRisk?view=graph-rest-beta) method to the [impactedResource](https://learn.microsoft.com/en-us/graph/api/resources/impactedResource?view=graph-rest-beta) resource.", + "Target": "impactedResource" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Method", + "ChangedApiName": "acceptRisk", + "ChangeType": "Addition", + "Description": "Added the [acceptRisk](https://learn.microsoft.com/en-us/graph/api/recommendation-acceptRisk?view=graph-rest-beta) method to the [recommendation](https://learn.microsoft.com/en-us/graph/api/resources/recommendation?view=graph-rest-beta) resource.", + "Target": "recommendation" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Method", + "ChangedApiName": "addTag", + "ChangeType": "Addition", + "Description": "Added the [addTag](https://learn.microsoft.com/en-us/graph/api/impactedResource-addTag?view=graph-rest-beta) method to the [impactedResource](https://learn.microsoft.com/en-us/graph/api/resources/impactedResource?view=graph-rest-beta) resource.", + "Target": "impactedResource" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Method", + "ChangedApiName": "addTag", + "ChangeType": "Addition", + "Description": "Added the [addTag](https://learn.microsoft.com/en-us/graph/api/impactedResource-addTag?view=graph-rest-beta) method to the [impactedResource](https://learn.microsoft.com/en-us/graph/api/resources/impactedResource?view=graph-rest-beta) resource.", + "Target": "impactedResource" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Method", + "ChangedApiName": "addTag", + "ChangeType": "Addition", + "Description": "Added the [addTag](https://learn.microsoft.com/en-us/graph/api/recommendation-addTag?view=graph-rest-beta) method to the [recommendation](https://learn.microsoft.com/en-us/graph/api/resources/recommendation?view=graph-rest-beta) resource.", + "Target": "recommendation" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Method", + "ChangedApiName": "applyAlternateMitigation", + "ChangeType": "Addition", + "Description": "Added the [applyAlternateMitigation](https://learn.microsoft.com/en-us/graph/api/impactedResource-applyAlternateMitigation?view=graph-rest-beta) method to the [impactedResource](https://learn.microsoft.com/en-us/graph/api/resources/impactedResource?view=graph-rest-beta) resource.", + "Target": "impactedResource" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Method", + "ChangedApiName": "applyAlternateMitigation", + "ChangeType": "Addition", + "Description": "Added the [applyAlternateMitigation](https://learn.microsoft.com/en-us/graph/api/recommendation-applyAlternateMitigation?view=graph-rest-beta) method to the [recommendation](https://learn.microsoft.com/en-us/graph/api/resources/recommendation?view=graph-rest-beta) resource.", + "Target": "recommendation" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Method", + "ChangedApiName": "markPlanned", + "ChangeType": "Addition", + "Description": "Added the [markPlanned](https://learn.microsoft.com/en-us/graph/api/impactedResource-markPlanned?view=graph-rest-beta) method to the [impactedResource](https://learn.microsoft.com/en-us/graph/api/resources/impactedResource?view=graph-rest-beta) resource.", + "Target": "impactedResource" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Method", + "ChangedApiName": "markPlanned", + "ChangeType": "Addition", + "Description": "Added the [markPlanned](https://learn.microsoft.com/en-us/graph/api/recommendation-markPlanned?view=graph-rest-beta) method to the [recommendation](https://learn.microsoft.com/en-us/graph/api/resources/recommendation?view=graph-rest-beta) resource.", + "Target": "recommendation" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Method", + "ChangedApiName": "removeTag", + "ChangeType": "Addition", + "Description": "Added the [removeTag](https://learn.microsoft.com/en-us/graph/api/impactedResource-removeTag?view=graph-rest-beta) method to the [impactedResource](https://learn.microsoft.com/en-us/graph/api/resources/impactedResource?view=graph-rest-beta) resource.", + "Target": "impactedResource" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Method", + "ChangedApiName": "removeTag", + "ChangeType": "Addition", + "Description": "Added the [removeTag](https://learn.microsoft.com/en-us/graph/api/impactedResource-removeTag?view=graph-rest-beta) method to the [impactedResource](https://learn.microsoft.com/en-us/graph/api/resources/impactedResource?view=graph-rest-beta) resource.", + "Target": "impactedResource" + }, + { + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "ApiChange": "Method", + "ChangedApiName": "removeTag", + "ChangeType": "Addition", + "Description": "Added the [removeTag](https://learn.microsoft.com/en-us/graph/api/recommendation-removeTag?view=graph-rest-beta) method to the [recommendation](https://learn.microsoft.com/en-us/graph/api/resources/recommendation?view=graph-rest-beta) resource.", + "Target": "recommendation" + } + ], + "Id": "c5005eaf-7166-43a6-877d-1ebd2f1cc906", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-15T00:00:00.0000000Z", + "WorkloadArea": "Reports", + "SubArea": "Identity and access reports" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 0ce312da66e..5fff92a84d2 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -148,6 +148,14 @@ Added support for managing Microsoft 365 cross-tenant capabilities in cross-tena Updated the retirement date for the legacy Microsoft Graph [security alerts API](/graph/api/resources/alert) from August 31, 2026 to October 15, 2026. +### Identity and access | Monitoring & health + +- Added support for tagging Microsoft Entra recommendations and their impacted resources. Use the [recommendation: addTag](/graph/api/recommendation-addtag?view=graph-rest-beta&preserve-view=true), [recommendation: removeTag](/graph/api/recommendation-removetag?view=graph-rest-beta&preserve-view=true), [impactedResource: addTag](/graph/api/impactedresource-addtag?view=graph-rest-beta&preserve-view=true), and [impactedResource: removeTag](/graph/api/impactedresource-removetag?view=graph-rest-beta&preserve-view=true) methods to manage the **tags** relationship, backed by the new [recommendationTag](/graph/api/resources/recommendationtag?view=graph-rest-beta&preserve-view=true) resource. You can also add or remove a tag on up to 50 impacted resources in a single request by using the [impactedResource: addTag](/graph/api/impactedresource-addtag-collection?view=graph-rest-beta&preserve-view=true) and [impactedResource: removeTag](/graph/api/impactedresource-removetag-collection?view=graph-rest-beta&preserve-view=true) methods. +- Added alternate remediation states for recommendations and impacted resources. Use the [markPlanned](/graph/api/recommendation-markplanned?view=graph-rest-beta&preserve-view=true), [acceptRisk](/graph/api/recommendation-acceptrisk?view=graph-rest-beta&preserve-view=true), and [applyAlternateMitigation](/graph/api/recommendation-applyalternatemitigation?view=graph-rest-beta&preserve-view=true) methods on the [recommendation](/graph/api/resources/recommendation?view=graph-rest-beta&preserve-view=true) resource, and the corresponding methods on the [impactedResource](/graph/api/resources/impactedresource?view=graph-rest-beta&preserve-view=true) resource. +- Added the `needsMoreAction` member to the **recommendationStatus** enumeration, and the `critical` member to the **recommendationPriority** enumeration. +- Added the [nistClassification](/graph/api/resources/nistclassification?view=graph-rest-beta&preserve-view=true) resource and the **nistClassifications** property to the [recommendationBase](/graph/api/resources/recommendationbase?view=graph-rest-beta&preserve-view=true) resource to map recommendations to NIST Cybersecurity Framework 2.0 functions and categories. +- Added the **categoryGroup** property (and the new **recommendationCategoryGroup** enumeration), **completedBySystemDateTime**, **completedByUserDateTime**, **failedReviewDateTime**, **needsMoreActionResourceCount**, **remediatedDateTime**, and **statusModifiedDateTime** properties to the [recommendationBase](/graph/api/resources/recommendationbase?view=graph-rest-beta&preserve-view=true) resource. Added the `microsoftEntraSuite` member to the **requiredLicenses** enumeration and the **lastRefreshedDateTime** property to the [recommendationConfiguration](/graph/api/resources/recommendationconfiguration?view=graph-rest-beta&preserve-view=true) resource. + ### Teamwork and communications | Calls and online meetings - Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) and [getAllTranscripts](/graph/api/onlinemeeting-getalltranscripts) methods to document a service-update issue that can cause paginated requests to return an empty collection followed by duplicate items. @@ -155,6 +163,7 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] ## August 2026: New in preview only + ### Applications - Added the **coopEnforcement** property to the [authenticationBehaviors](/graph/api/resources/authenticationbehaviors?view=graph-rest-beta&preserve-view=true) resource. Application owners can use it to explicitly test Cross-Origin-Opener-Policy enforcement, temporarily suppress enforcement while remediating an incompatible browser authentication flow, or return to the service default. @@ -176,6 +185,11 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] - Changed the **members** property on the [distributionList](/graph/api/resources/distributionlist?view=graph-rest-beta&preserve-view=true) resource to an expandable relationship. Use `$expand=members` with the [Get distribution list](/graph/api/distributionlist-get?view=graph-rest-beta&preserve-view=true) method instead of the removed standalone methods for listing and getting members. +### People and workplace intelligence + +- Updated [Manage profile source precedence in Microsoft 365](/graph/profilepriority-configure-profilepropertysetting) to clarify supported data sources for HR and work position data, explain how source precedence affects single-value versus multi-value properties, and add guidance on correctly configuring and removing tenant-level settings using the Microsoft Graph API or PowerShell. +- Added the [People data sources in Microsoft 365](/graph/people-data-sources) concept article that describes the data sources that build the Microsoft 365 user profile, including Microsoft Entra ID, Copilot connectors, Organizational data, SharePoint, People Skills, user edits, and the API user source. The article also provides a reference table of built-in source IDs (GUIDs) and explains how source metadata appears in the profile API output. + ### Security | Alerts and incidents - Added the [createAlert](/graph/api/security-alert-createalert?view=graph-rest-beta&preserve-view=true) action to the [alert](/graph/api/resources/security-alert?view=graph-rest-beta&preserve-view=true) resource for creating Microsoft 365 Defender alerts programmatically, including alert properties, incident-linking options, workspace routing, and inline entity definitions in a single request. From f7497df825c13f3d59d2c0a644a6d7c63b493c36 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Fri, 18 Sep 2026 07:49:27 -0700 Subject: [PATCH 150/189] Update reference TOC (#29613) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/toc/reports/toc.yml | 42 ++++++++++++++++--- .../v1.0/toc/change-notifications/toc.yml | 2 + .../v1.0/toc/identity-and-access/toc.yml | 2 + 3 files changed, 40 insertions(+), 6 deletions(-) diff --git a/api-reference/beta/toc/reports/toc.yml b/api-reference/beta/toc/reports/toc.yml index 7e55e6d5ba0..0f4eb81fefb 100644 --- a/api-reference/beta/toc/reports/toc.yml +++ b/api-reference/beta/toc/reports/toc.yml @@ -26,6 +26,16 @@ items: href: ../../api/recommendation-complete.md - name: Reactivate href: ../../api/recommendation-reactivate.md + - name: Mark planned + href: ../../api/recommendation-markplanned.md + - name: Accept risk + href: ../../api/recommendation-acceptrisk.md + - name: Apply alternate mitigation + href: ../../api/recommendation-applyalternatemitigation.md + - name: Add tag + href: ../../api/recommendation-addtag.md + - name: Remove tag + href: ../../api/recommendation-removetag.md - name: Get tenant Secure Score href: ../../api/recommendation-tenantsecurescores.md - name: Impacted resource @@ -44,14 +54,34 @@ items: href: ../../api/impactedresource-complete.md - name: Reactivate href: ../../api/impactedresource-reactivate.md - - name: Recommendation configuration + - name: Mark planned + href: ../../api/impactedresource-markplanned.md + - name: Accept risk + href: ../../api/impactedresource-acceptrisk.md + - name: Apply alternate mitigation + href: ../../api/impactedresource-applyalternatemitigation.md + - name: Add tag + href: ../../api/impactedresource-addtag.md + - name: Remove tag + href: ../../api/impactedresource-removetag.md + - name: Add tag to multiple resources + href: ../../api/impactedresource-addtag-collection.md + - name: Remove tag from multiple resources + href: ../../api/impactedresource-removetag-collection.md + - name: Supporting types items: - name: Recommendation configuration - href: ../../resources/recommendationconfiguration.md - - name: Get - href: ../../api/recommendationconfiguration-get.md - - name: Update - href: ../../api/recommendationconfiguration-update.md + items: + - name: Recommendation configuration + href: ../../resources/recommendationconfiguration.md + - name: Get + href: ../../api/recommendationconfiguration-get.md + - name: Update + href: ../../api/recommendationconfiguration-update.md + - name: Recommendation tag + href: ../../resources/recommendationtag.md + - name: Nist classification + href: ../../resources/nistclassification.md - name: Microsoft Entra activity reports items: - name: AD FS application activity diff --git a/api-reference/v1.0/toc/change-notifications/toc.yml b/api-reference/v1.0/toc/change-notifications/toc.yml index 06ab1550a28..e29ec087f7e 100644 --- a/api-reference/v1.0/toc/change-notifications/toc.yml +++ b/api-reference/v1.0/toc/change-notifications/toc.yml @@ -20,6 +20,8 @@ items: href: ../../api/subscription-delete.md - name: Reauthorize href: ../../api/subscription-reauthorize.md + - name: Get VAPID + href: ../../api/subscription-getvapidpublickey.md - name: Complex types items: - name: Change notification diff --git a/api-reference/v1.0/toc/identity-and-access/toc.yml b/api-reference/v1.0/toc/identity-and-access/toc.yml index 3b2bc75d5f4..e515ff4d668 100644 --- a/api-reference/v1.0/toc/identity-and-access/toc.yml +++ b/api-reference/v1.0/toc/identity-and-access/toc.yml @@ -479,6 +479,8 @@ items: href: ../../api/accessreviewinstance-acceptrecommendations.md - name: Apply decisions href: ../../api/accessreviewinstance-applydecisions.md + - name: Apply custom data provided resource decisions + href: ../../api/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions.md - name: Batch record decisions href: ../../api/accessreviewinstance-batchrecorddecisions.md - name: Reset decisions From 57fc09f407647190237aa4965e0b1278bd360ff5 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Fri, 18 Sep 2026 08:03:50 -0700 Subject: [PATCH 151/189] Update generated permissions tables with build 242458 (#29612) Co-authored-by: Microsoft Graph DevX Tooling --- .../permissions/impactedresource-acceptrisk-permissions.md | 1 + .../impactedresource-addtag-collection-permissions.md | 1 + .../includes/permissions/impactedresource-addtag-permissions.md | 1 + .../impactedresource-applyalternatemitigation-permissions.md | 1 + .../permissions/impactedresource-markplanned-permissions.md | 1 + .../impactedresource-removetag-collection-permissions.md | 1 + .../permissions/impactedresource-removetag-permissions.md | 1 + .../permissions/recommendation-acceptrisk-permissions.md | 1 + .../includes/permissions/recommendation-addtag-permissions.md | 1 + .../recommendation-applyalternatemitigation-permissions.md | 1 + .../permissions/recommendation-markplanned-permissions.md | 1 + .../includes/permissions/recommendation-removetag-permissions.md | 1 + 12 files changed, 12 insertions(+) diff --git a/api-reference/beta/includes/permissions/impactedresource-acceptrisk-permissions.md b/api-reference/beta/includes/permissions/impactedresource-acceptrisk-permissions.md index da8e5d07157..2fc258454b3 100644 --- a/api-reference/beta/includes/permissions/impactedresource-acceptrisk-permissions.md +++ b/api-reference/beta/includes/permissions/impactedresource-acceptrisk-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|DirectoryRecommendations.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/impactedresource-addtag-collection-permissions.md b/api-reference/beta/includes/permissions/impactedresource-addtag-collection-permissions.md index da8e5d07157..2fc258454b3 100644 --- a/api-reference/beta/includes/permissions/impactedresource-addtag-collection-permissions.md +++ b/api-reference/beta/includes/permissions/impactedresource-addtag-collection-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|DirectoryRecommendations.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/impactedresource-addtag-permissions.md b/api-reference/beta/includes/permissions/impactedresource-addtag-permissions.md index da8e5d07157..2fc258454b3 100644 --- a/api-reference/beta/includes/permissions/impactedresource-addtag-permissions.md +++ b/api-reference/beta/includes/permissions/impactedresource-addtag-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|DirectoryRecommendations.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/impactedresource-applyalternatemitigation-permissions.md b/api-reference/beta/includes/permissions/impactedresource-applyalternatemitigation-permissions.md index da8e5d07157..2fc258454b3 100644 --- a/api-reference/beta/includes/permissions/impactedresource-applyalternatemitigation-permissions.md +++ b/api-reference/beta/includes/permissions/impactedresource-applyalternatemitigation-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|DirectoryRecommendations.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/impactedresource-markplanned-permissions.md b/api-reference/beta/includes/permissions/impactedresource-markplanned-permissions.md index da8e5d07157..2fc258454b3 100644 --- a/api-reference/beta/includes/permissions/impactedresource-markplanned-permissions.md +++ b/api-reference/beta/includes/permissions/impactedresource-markplanned-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|DirectoryRecommendations.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/impactedresource-removetag-collection-permissions.md b/api-reference/beta/includes/permissions/impactedresource-removetag-collection-permissions.md index da8e5d07157..2fc258454b3 100644 --- a/api-reference/beta/includes/permissions/impactedresource-removetag-collection-permissions.md +++ b/api-reference/beta/includes/permissions/impactedresource-removetag-collection-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|DirectoryRecommendations.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/impactedresource-removetag-permissions.md b/api-reference/beta/includes/permissions/impactedresource-removetag-permissions.md index da8e5d07157..2fc258454b3 100644 --- a/api-reference/beta/includes/permissions/impactedresource-removetag-permissions.md +++ b/api-reference/beta/includes/permissions/impactedresource-removetag-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|DirectoryRecommendations.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/recommendation-acceptrisk-permissions.md b/api-reference/beta/includes/permissions/recommendation-acceptrisk-permissions.md index da8e5d07157..2fc258454b3 100644 --- a/api-reference/beta/includes/permissions/recommendation-acceptrisk-permissions.md +++ b/api-reference/beta/includes/permissions/recommendation-acceptrisk-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|DirectoryRecommendations.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/recommendation-addtag-permissions.md b/api-reference/beta/includes/permissions/recommendation-addtag-permissions.md index da8e5d07157..2fc258454b3 100644 --- a/api-reference/beta/includes/permissions/recommendation-addtag-permissions.md +++ b/api-reference/beta/includes/permissions/recommendation-addtag-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|DirectoryRecommendations.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/recommendation-applyalternatemitigation-permissions.md b/api-reference/beta/includes/permissions/recommendation-applyalternatemitigation-permissions.md index da8e5d07157..2fc258454b3 100644 --- a/api-reference/beta/includes/permissions/recommendation-applyalternatemitigation-permissions.md +++ b/api-reference/beta/includes/permissions/recommendation-applyalternatemitigation-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|DirectoryRecommendations.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/recommendation-markplanned-permissions.md b/api-reference/beta/includes/permissions/recommendation-markplanned-permissions.md index da8e5d07157..2fc258454b3 100644 --- a/api-reference/beta/includes/permissions/recommendation-markplanned-permissions.md +++ b/api-reference/beta/includes/permissions/recommendation-markplanned-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|DirectoryRecommendations.ReadWrite.All|Not available.| + diff --git a/api-reference/beta/includes/permissions/recommendation-removetag-permissions.md b/api-reference/beta/includes/permissions/recommendation-removetag-permissions.md index da8e5d07157..2fc258454b3 100644 --- a/api-reference/beta/includes/permissions/recommendation-removetag-permissions.md +++ b/api-reference/beta/includes/permissions/recommendation-removetag-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|DirectoryRecommendations.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|DirectoryRecommendations.ReadWrite.All|Not available.| + From c3aa7bd2be4465d8b73a64a98bd071842342f05b Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Fri, 18 Sep 2026 08:05:18 -0700 Subject: [PATCH 152/189] Update reference TOC (#29607) Co-authored-by: Microsoft Graph DevX Tooling From 69a13a0a89cfba32f1399912b3d11d2f35e65628 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Fri, 18 Sep 2026 08:05:41 -0700 Subject: [PATCH 153/189] Update generated permissions tables with build 241930 (#29606) Co-authored-by: Microsoft Graph DevX Tooling From d01eb84824f8a299efdd27ae49238c987f4938da Mon Sep 17 00:00:00 2001 From: Jarbas Horst <26866873+JarbasHorst@users.noreply.github.com> Date: Wed, 23 Sep 2026 00:51:19 +0200 Subject: [PATCH 154/189] Archived July 2026 entries of What's new topic and fixed issues (#29621) * Archived July 2026 entries of What's new topic and fixed issues * Update whats-new-earlier.md * Update whats-new-overview.md * Restore and update security compliance features Reintroduced data security and compliance section with new features. --- concepts/whats-new-earlier.md | 151 ++++++++++++++++++++++++++ concepts/whats-new-overview.md | 191 +-------------------------------- 2 files changed, 153 insertions(+), 189 deletions(-) diff --git a/concepts/whats-new-earlier.md b/concepts/whats-new-earlier.md index f86aaa3beec..065a598792a 100644 --- a/concepts/whats-new-earlier.md +++ b/concepts/whats-new-earlier.md @@ -12,6 +12,157 @@ ms.topic: whats-new Find information about previous additions and updates to Microsoft Graph APIs, documentation, SDKs, and other resources. +## July 2026: New and generally available + +### Device and app management | Cloud PC + +Added the [cloudPcServicePlan](/graph/api/resources/cloudpcserviceplan) resource type and related methods for managing Windows 365 service plans. Use the **servicePlans** relationship on [virtualEndpoint](/graph/api/resources/virtualendpoint) to discover available service plans that an organization can purchase for Cloud PCs. + +### Files + +Added the **allowOnPremUpdateOfOnPremisesObjectIdentifierEnabled** property to the [onPremisesDirectorySynchronizationFeature](/graph/api/resources/onpremisesdirectorysynchronizationfeature) resource. + +### Groups + +- Added support for assigning sensitivity labels to cloud security groups via the **assignedLabels** property on the [group](/graph/api/resources/group) resource. For more information, see [Sensitivity labels for Microsoft 365 groups and cloud security groups](/entra/identity/users/groups-sensitivity-labels). +- Added the `Group.ManageProtection.All` delegated permission as the least privilege permission for updating the **assignedLabels** property on the [group](/graph/api/resources/group) resource. App-only scenarios aren't supported. + +### Identity and access | Directory management + +- Added the [remoteTenantGroup](/graph/api/resources/remotetenantgroup) resource type and related methods to retrieve groups from remote Microsoft Entra tenants through the directory resource. +- Added the **sponsorOf** relationship to the [user](/graph/api/resources/user) resource type to represent the directory objects that a user sponsors. + +### Identity and access | Governance + +- Added the [Get](/graph/api/accesspackagesubject-get) and [Update](/graph/api/accesspackagesubject-update) methods to the [accessPackageSubject](/graph/api/resources/accesspackagesubject) resource type to manage the subject lifecycle of external directory users in Microsoft Entra entitlement management. +- Added the [cancelProcessing](/graph/api/identitygovernance-workflow-cancelprocessing) method to the [workflow](/graph/api/resources/identitygovernance-workflow) resource to cancel workflow runs that are currently in progress or queued. +- Added workflow preview operations to the [workflow](/graph/api/resources/identitygovernance-workflow) resource type in Lifecycle Workflows, enabling you to validate tasks and run workflows in preview mode without affecting production users. +- Promoted the **Bring Your Own Data (BYOD) Upload** APIs from beta to v1.0, enabling upload of external access data for access reviews. The promoted surface includes: + - [customDataProvidedResourceUploadSession](/graph/api/resources/customdataprovidedresourceuploadsession) base resource and [customDataProvidedResourceAccessReviewUploadSession](/graph/api/resources/customdataprovidedresourceaccessreviewuploadsession) derived type + - [customDataProvidedResourceFile](/graph/api/resources/customdataprovidedresourcefile), [customDataProvidedResourceUploadStats](/graph/api/resources/customdataprovidedresourceuploadstats), and [customDataProvidedResourceUploadSessionRequest](/graph/api/resources/customdataprovidedresourceuploadsessionrequest) resources + - Supporting resource types: [data](/graph/api/resources/customdataprovidedresourcepayloads-data), [accessReviewContextDataBase](/graph/api/resources/customdataprovidedresourcepayloads-accessreviewcontextdatabase), [accessReviewContextData](/graph/api/resources/customdataprovidedresourcepayloads-accessreviewcontextdata), and [applyDecisionContextData](/graph/api/resources/customdataprovidedresourcepayloads-applydecisioncontextdata) + - [uploadFile](/graph/api/customdataprovidedresourceuploadsession-uploadfile) action + - **uploadSessions** navigation property on [accessPackageResource](/graph/api/resources/accesspackageresource) + - [customDataProvidedResourceUploadStatus](/graph/api/resources/enums#customdataprovidedresourceuploadstatus-values) enumeration +- Added support for user-centric (catalog-scope) access reviews through the **unified** relationship on the [accessReviewSet](/graph/api/resources/accessreviewset) resource. Use it to create and manage reviews that evaluate a principal's access across all groups and applications in an entitlement management catalog from a single review, and to accept recommendations or record decisions in bulk within a review stage. + +### Security | Advanced hunting + +Added the optional **workspaceId** parameter to the [runHuntingQuery](/graph/api/security-security-runhuntingquery) method to target a specific Log Analytics workspace. + +### Sites and lists + +Added the **permissions** relationship to the [list](/graph/api/resources/list) and [listItem](/graph/api/resources/listitem) resources. Use the [list permissions](/graph/api/list-list-permissions) and [create permission](/graph/api/list-post-permissions) methods to manage permissions for SharePoint lists and list items. + +### Teamwork and communications | Calls and online meetings + + - Added the **meetingType** and **cloudVideoInteropInfo** properties to the [onlineMeetingBase](/graph/api/resources/onlinemeetingbase) resource to help determine the type of an online meeting and retrieve Cloud Video Interop settings. + - Added the **isRegistrationRequired** and **capacity** properties to virtual events (for example, [virtualEvent](/graph/api/resources/virtualevent), [virtualEventTownhall](/graph/api/resources/virtualeventtownhall), and [virtualEventSession](/graph/api/resources/virtualeventsession)) to control registration requirements and expected attendance. + - Added the [virtualEventTownhallRegistrationConfiguration](/graph/api/resources/virtualeventtownhallregistrationconfiguration) resource type and related methods to manage attendee registration for town halls. + +### Teamwork and communications | Messaging + +- Documented support for the optional **ConsistencyLevel** request header when [getting hosted content for a chat message](/graph/api/chatmessagehostedcontent-get). Use `ConsistencyLevel: eventual` to retrieve hosted content for edited or deleted messages. Hosted content retrieval isn't supported for messages in deleted threads. +- Added the [targetedChatMessage](/graph/api/resources/targetedchatmessage) resource type and related methods for managing targeted messages in Microsoft Teams. Targeted messages are visible only to specified recipients within group chats and channels. + - Use the [getAllTargetedMessages](/graph/api/userteamwork-getalltargetedmessages) function to retrieve all targeted messages sent to a user across all group chats and channels. + - Use the [getAllRetainedTargetedMessages](/graph/api/userteamwork-getallretainedtargetedmessages) function to retrieve retained targeted messages that were deleted by the sender but preserved by retention policies. + - Use the [deleteTargetedMessage](/graph/api/userteamwork-deletetargetedmessage) action to delete a specific targeted message from a user's storage in a channel context. + +### Users + +- Added the `User.Create` permission as the least privileged permission to [create a user](/graph/api/user-post-users). +- Added the `User.ReadUpdate.All` permission as the least privileged permission to [update a user](/graph/api/user-update). + +## July 2026: New in preview only + +### Backup and recovery | Microsoft 365 Backup and Storage + +Added the **createdBy**, **createdDateTime**, **lastModifiedBy**, and **lastModifiedDateTime** properties to the [browseQueryResponseItem](/graph/api/resources/browsequeryresponseitem?view=graph-rest-beta&preserve-view=true) resource. Use these properties to get the identity and timestamp details for when a browse item was created and last modified. +- Added the **optimizedBrowse** parameter to the [sharePointBrowseSession: browse](/graph/api/sharepointbrowsesession-browse?view=graph-rest-beta&preserve-view=true) method of the [sharePointBrowseSession](/graph/api/resources/sharepointbrowsesession?view=graph-rest-beta&preserve-view=true) resource. Set this parameter to `true` to retrieve files and folders in a single request when the backup artifact has a single site and a single document library. +- Added the **optimizedBrowse** parameter to the [oneDriveForBusinessBrowseSession: browse](/graph/api/onedriveforbusinessbrowsesession-browse?view=graph-rest-beta&preserve-view=true) method of the [oneDriveForBusinessBrowseSession](/graph/api/resources/onedriveforbusinessbrowsesession?view=graph-rest-beta&preserve-view=true) resource. Set this parameter to `true` to retrieve files and folders in a single request when the backup artifact has a single site and a single document library. + +### Change notifications + +Added the **vapidPublicKey**, **webPushEncryptionP256dhPublicKey**, and **webPushEncryptionSecret** properties to the [subscription](/graph/api/resources/subscription?view=graph-rest-beta&preserve-view=true) resource to support encrypted change notifications delivered to browser-native Web Push endpoints (Apple, Mozilla, FCM). Browser-based applications can now register with Microsoft Graph to receive change notifications through the W3C Push API channel without operating a public webhook. See [RFC 8291](https://www.rfc-editor.org/rfc/rfc8291.html) and [RFC 8292](https://www.rfc-editor.org/rfc/rfc8292.html) for the underlying encryption and authentication protocols. + +### Device and app management | Cloud PC + +- Added the **provisioningConfiguration** property to the [cloudPC](/graph/api/resources/cloudpc?view=graph-rest-beta&preserve-view=true) resource. Use it to retrieve the policy-derived configuration that was applied during provisioning, including the domain join type. +- Updated [retrieveCloudPcTroubleshootReports](/graph/api/cloudpcreports-retrievecloudpctroubleshootreports?view=graph-rest-beta&preserve-view=true) on the [cloudPcReports](/graph/api/resources/cloudpcreports?view=graph-rest-beta&preserve-view=true) resource to support new troubleshooting report types across tenant, configuration, user and device, and view data table scopes. +- [Create](/graph/api/virtualendpoint-post-cloudapps?view=graph-rest-beta&preserve-view=true) or [delete](/graph/api/cloudpccloudapp-delete?view=graph-rest-beta&preserve-view=true) a [cloud app](/graph/api/resources/cloudpccloudapp?view=graph-rest-beta&preserve-view=true). +- Added the `iconPathInvalid` and `filePathInvalid` members as supported values for the **actionFailedErrorCode** property on the [cloudPcCloudApp](/graph/api/resources/cloudpccloudapp?view=graph-rest-beta&preserve-view=true). Use these members to indicate that the icon or file path specified for the cloud app is invalid. +- Added the [cloudPcPool](/graph/api/resources/cloudpcpool?view=graph-rest-beta&preserve-view=true) resource and its derived type [cloudPcAgentPool](/graph/api/resources/cloudpcagentpool?view=graph-rest-beta&preserve-view=true) to enable management of Cloud PC pools for agentic workloads. +- Added the [cloudPcPoolAssignment](/graph/api/resources/cloudpcpoolassignment?view=graph-rest-beta&preserve-view=true) resource and its derived type [cloudPcAgentPoolUserAssignment](/graph/api/resources/cloudpcagentpooluserassignment?view=graph-rest-beta&preserve-view=true) to manage pool assignments. +- Use `australiaNewZealand` as a new supported value in the **geographicLocationType** property of the [cloudPcSupportedRegion](/graph/api/resources/cloudpcsupportedregion?view=graph-rest-beta&preserve-view=true) and [cloudPcDomainJoinConfiguration](/graph/api/resources/cloudpcdomainjoinconfiguration?view=graph-rest-beta&preserve-view=true) resources. +- Added the **snapshotResetMode** property to the [cloudPcProvisioningPolicy](/graph/api/resources/cloudpcprovisioningpolicy?view=graph-rest-beta&preserve-view=true) resource to indicate whether snapshot reset is available for a provisioning policy. +- Added the **shareSnapshot** method to the [cloudPC](/graph/api/resources/cloudpc?view=graph-rest-beta&preserve-view=true) resource type. Use it to copy a Cloud PC snapshot to an Azure storage account. +- Added support for activating or deactivating an organization for Windows 365 for Agents. Use the [cloudPC: organizationAction](/graph/api/cloudpc-organizationaction?view=graph-rest-beta&preserve-view=true) action to trigger the operation. +- Use the [cloudPC: retrieveOrganizationActionDetail](/graph/api/cloudpc-retrieveorganizationactiondetail?view=graph-rest-beta&preserve-view=true) method to retrieve the status and details of an organization action. + +### Files + +- Added the **dataLocationCode** property to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource type to represent the geographic location of the data for multi-geo tenants. +- Added the **settings** property of type [driveSettings](/graph/api/resources/drivesettings?view=graph-rest-beta&preserve-view=true) to the [drive](/graph/api/resources/drive?view=graph-rest-beta&preserve-view=true) resource type to retrieve drive-level settings such as the default sensitivity label applied to items. +- Updated the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to support the optional `reportType` parameter for retrieving throttling metrics. Use `reportType='throttlingReport'` to get throttled request counts via the **throttledRequests** property on the [sharePointApiUsageDataPoint](/graph/api/resources/sharepointapiusagedatapoint?view=graph-rest-beta&preserve-view=true) resource, or use `reportType='egressReport'` (default) to get egress usage via the **usageMB** property. +- Added the **allowOnPremUpdateOfOnPremisesObjectIdentifierEnabled** property to the [onPremisesDirectorySynchronizationFeature](/graph/api/resources/onpremisesdirectorysynchronizationfeature?view=graph-rest-beta&preserve-view=true) resource. +- Added the [getByUser](/graph/api/filestoragecontainer-getbyuser?view=graph-rest-beta&preserve-view=true) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource to retrieve a list of file storage containers owned by a user, with optional filtering by **role** (`owner` or `principalOwner`). +- Added the **isOfficeRestricted** property to the [fileStorageContainerTypeSettings](/graph/api/resources/filestoragecontainertypesettings?view=graph-rest-beta&preserve-view=true) and [fileStorageContainerTypeRegistrationSettings](/graph/api/resources/filestoragecontainertyperegistrationsettings?view=graph-rest-beta&preserve-view=true) resources, and the **fileStorageContainerTypeSettingsOverride** enumeration. +- Added the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to the [reportRoot](/graph/api/resources/reportroot?view=graph-rest-beta&preserve-view=true) resource to retrieve aggregated OneDrive and SharePoint API usage metrics for a tenant. + +### Groups + +Added the `Group.ManageProtection.All` delegated permission as the least privilege permission for updating the **assignedLabels** property on the [group](/graph/api/resources/group?view=graph-rest-beta&preserve-view=true) resource. App-only scenarios aren't supported. + +### Identity and access | Directory management + +- Added the [remoteTenantGroup](/graph/api/resources/remotetenantgroup?view=graph-rest-beta&preserve-view=true) resource type and related methods to retrieve groups from remote Microsoft Entra tenants through the directory resource. +- Added the **sponsorOf** relationship to the [user](/graph/api/resources/user?view=graph-rest-beta&preserve-view=true) resource type to represent the directory objects that a user sponsors. +- Added the **managerApplications** property to the [agentIdentity](/graph/api/resources/agentidentity?view=graph-rest-beta&preserve-view=true) and [agentIdentityBlueprintPrincipal](/graph/api/resources/agentidentityblueprintprincipal?view=graph-rest-beta&preserve-view=true) resource types to represent the collection of applications designated as managers of the backing agent identity blueprint. + +### Identity and access | Governance + +- Added support for automatically quarantining Lifecycle Workflows to stop a workflow from processing more users than expected. Configure thresholds using the **quarantineConfiguration** property on [lifecycleManagementSettings](/graph/api/resources/identitygovernance-lifecyclemanagementsettings?view=graph-rest-beta&preserve-view=true), and clear a quarantine by calling [clearQuarantine](/graph/api/identitygovernance-workflow-clearquarantine?view=graph-rest-beta&preserve-view=true). +- Added the [guestSponsorTrigger](/graph/api/resources/identitygovernance-guestsponsortrigger?view=graph-rest-beta&preserve-view=true) resource type to initiate lifecycle workflows when guest users have fewer than the required number of sponsors. +- Added the [directoryObjectWorkflowSubject](/graph/api/resources/identitygovernance-directoryobjectworkflowsubject?view=graph-rest-beta&preserve-view=true) resource type, a subtype of [workflowSubject](/graph/api/resources/identitygovernance-workflowsubject?view=graph-rest-beta&preserve-view=true), so that a subject processing result can represent a directory object, such as a user, that a Lifecycle Workflow processes. +- Added the [subjectSummary](/graph/api/resources/identitygovernance-subjectsummary?view=graph-rest-beta&preserve-view=true) resource type and the [summary](/graph/api/identitygovernance-subjectprocessingresult-summary?view=graph-rest-beta&preserve-view=true) method to the [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult?view=graph-rest-beta&preserve-view=true) resource to get an aggregate count of subject processing results over a specified time period. +- Added the **subjectType** enumeration type and the **subjectType** property on the [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult?view=graph-rest-beta&preserve-view=true) resource, along with the **targetSubjectType** property on the [workflowBase](/graph/api/resources/identitygovernance-workflowbase?view=graph-rest-beta&preserve-view=true) resource, to indicate the kind of subject that a workflow targets. +- Added the **parameters** property to the [accessPackageAssignmentRequest](/graph/api/resources/accesspackageassignmentrequest?view=graph-rest-beta&preserve-view=true) resource, typed as the new [accessPackageAssignmentRequestParameters](/graph/api/resources/accesspackageassignmentrequestparameters?view=graph-rest-beta&preserve-view=true) complex type, to bypass the approval requirement configured on the access package policy when creating an assignment request. + +### Identity and access | Identity and sign-in + +- Added the [resourceAccountKeyAuthenticationMethod](/graph/api/resources/resourceaccountkeyauthenticationmethod?view=graph-rest-beta&preserve-view=true) resource type and related methods for managing resource account key credentials on shared devices. Use these APIs to list, get, and delete resource account key authentication methods for Teams Meeting Rooms and Teams phones that authenticate silently to Microsoft Entra ID. +- Added support for programmatic FIDO2 passkey registration. Use the [creationOptions](/graph/api/fido2authenticationmethod-creationoptions?view=graph-rest-beta&preserve-view=true) function to get WebAuthn credential creation options, then complete registration by posting the new **publicKeyCredential** property to the [fido2AuthenticationMethod](/graph/api/resources/fido2authenticationmethod?view=graph-rest-beta&preserve-view=true) resource. +- Added support to update and delete Microsoft 365 cross-tenant capabilities in the cross-tenant access policy. For details, see [m365CapabilityBase](/graph/api/resources/m365capabilitybase?view=graph-rest-beta&preserve-view=true). +- Updated the [verifiedIdProfile](/graph/api/resources/verifiedidprofile?view=graph-rest-beta&preserve-view=true) resource to support mobile driver's license verification and self-service Verified ID issuance through MyAccount. Profiles can specify the verification method and credential manifest used for these experiences. +- Enhanced the [verifiedIdProfile](/graph/api/resources/verifiedidprofile?view=graph-rest-beta&preserve-view=true) resource with expanded verification capabilities: + - Added the **methodType** property to [verifiedIdProfileConfiguration](/graph/api/resources/verifiedidprofileconfiguration?view=graph-rest-beta&preserve-view=true) to specify the verification method category, including tenant custom credentials, verified employee credentials, and identity verification partners. Introduced the **verifiedIdMethodType** enumeration to support these scenarios. + - Added the **manifestUrl** property to [verifiedIdProfileConfiguration](/graph/api/resources/verifiedidprofileconfiguration?view=graph-rest-beta&preserve-view=true) to reference the credential issuer's manifest defining the credential schema and issuer details. + - Added the `verification` member to the **verifiedIdUsageConfigurationPurpose** enumeration to enable just-in-time identity verification scenarios, such as step-up authentication enforcement through Conditional Access policies. + +### Mailbox import and export + +- Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources/mailboxfolder?view=graph-rest-beta&preserve-view=true) resource type to identify folders created by Outlook by using a locale-independent name. +- Added the [Delete mailboxItem](/graph/api/mailboxfolder-delete-items?view=graph-rest-beta&preserve-view=true) method to delete an individual [mailboxItem](/graph/api/resources/mailboxitem?view=graph-rest-beta&preserve-view=true) from a mailbox folder by using the mailbox import and export APIs. Use the **disposalType** query parameter to specify soft-delete or hard-delete semantics. + +### Reports + +Added the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to the [reportRoot](/graph/api/resources/reportroot?view=graph-rest-beta&preserve-view=true) resource to retrieve aggregated OneDrive and SharePoint API usage metrics for a tenant, including egress usage and throttling metrics. + +### Reports | Identity and access reports + +Added Global Secure Access support to Microsoft Entra Health monitoring. Use the [health monitoring alert](/graph/api/resources/healthmonitoring-alert?view=graph-rest-beta&preserve-view=true) resource to monitor Global Secure Access-related alerts. + +### Security | Data security and compliance + +- Added support for evaluating content against Microsoft Purview Data Loss Prevention (DLP) policies before agent-to-tool interactions. Use the [processContent](/graph/api/tenantdatasecurityandgovernance-processcontent?view=graph-rest-beta&preserve-view=true) API to determine whether content should be allowed, blocked, or audited based on the applicable protection scope. +- Added the **matchedConditionsDescription** and **complianceUrl** properties to the [policyTipAction](/graph/api/resources/policytipaction?view=graph-rest-beta&preserve-view=true) resource. Use these properties to display a user-friendly summary of the matched DLP conditions and link users to additional compliance guidance. +- Added the [embeddingInput](/graph/api/resources/embeddinginput?view=graph-rest-beta&preserve-view=true) resource type and the **embeddings** property on the [textClassificationRequest](/graph/api/resources/textclassificationrequest?view=graph-rest-beta&preserve-view=true) resource, so a caller can supply precomputed embedding vectors when classifying text and let the service skip recomputing them. + +### Tasks and plans + +- Added the [plannerHistoryItem](/graph/api/resources/plannerhistoryitem?view=graph-rest-beta&preserve-view=true) resource type and [List historyItems](/graph/api/plannerplan-list-historyitems?view=graph-rest-beta&preserve-view=true) method to audit task changes within a Planner plan. Track when tasks are created, updated, deleted, or moved, and filter by **occurredDateTime** to retrieve changes within specific time ranges. +- Added the [plannerGoal](/graph/api/resources/plannergoal?view=graph-rest-beta&preserve-view=true) resource type and related read methods for viewing goals in a Planner plan and understanding which goals are associated with each task. + ## June 2026: New and generally available ### Applications | Service principal diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 5fff92a84d2..a6e6e0694ca 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -113,8 +113,8 @@ Added the [recovery](/graph/api/resources/entrarecoveryservices-recovery) resour ### Identity and access | Governance +- Added the [externalSapAcConnectionInfo](/graph/api/resources/externalsapacconnectioninfo) complex type, along with the supporting [authenticationInfo](/graph/api/resources/authenticationinfo) and [clientCredentialAuthenticationInfo](/graph/api/resources/clientcredentialauthenticationinfo) types, to configure connections from Microsoft Entra entitlement management to SAP Access Control (AC) systems. Set these on the **connectionInfo** property of an [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) when its **connectorType** is `sapAc`. - Promoted the **Lifecycle Workflows provisioning and workflow subject** APIs from beta to v1.0, introducing a broader, extensible subject model for workflows and surfacing per-subject processing results. The promoted surface includes: - - [workflowSubject](/graph/api/resources/identitygovernance-workflowsubject) base type and its [provisioningObjectWorkflowSubject](/graph/api/resources/identitygovernance-provisioningobjectworkflowsubject) and [directoryObjectWorkflowSubject](/graph/api/resources/identitygovernance-directoryobjectworkflowsubject) derived types - [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult) resource with the **subjectProcessingResults** navigation property on the [run](/graph/api/resources/identitygovernance-run) and [workflow](/graph/api/resources/identitygovernance-workflow) resources - [subjectSummary](/graph/api/resources/identitygovernance-subjectsummary) resource and the [summary](/graph/api/identitygovernance-subjectprocessingresult-summary) method on the [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult) resource @@ -215,193 +215,6 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] - Added the [agentCommunicationConfiguration](/graph/api/resources/agentcommunicationconfiguration?view=graph-rest-beta&preserve-view=true) resource type and related methods to configure how agents send and receive messages in Microsoft Teams. Define default communication settings on an [agentIdentityBlueprint](/graph/api/resources/agentidentityblueprint?view=graph-rest-beta&preserve-view=true) and override them for a specific agent on [agentIdentity](/graph/api/resources/agentidentity?view=graph-rest-beta&preserve-view=true). - Added the [reorder sections](/graph/api/teamworksection-reorder?view=graph-rest-beta&preserve-view=true) and [reorder section items](/graph/api/teamworksectionitem-reorder?view=graph-rest-beta&preserve-view=true) actions. Use these actions to apply a complete custom order to a user's sections or to the items in a user-defined section. -## July 2026: New and generally available - -### Device and app management | Cloud PC - -Added the [cloudPcServicePlan](/graph/api/resources/cloudpcserviceplan) resource type and related methods for managing Windows 365 service plans. Use the **servicePlans** relationship on [virtualEndpoint](/graph/api/resources/virtualendpoint) to discover available service plans that an organization can purchase for Cloud PCs. - -### Files - -Added the **allowOnPremUpdateOfOnPremisesObjectIdentifierEnabled** property to the [onPremisesDirectorySynchronizationFeature](/graph/api/resources/onpremisesdirectorysynchronizationfeature) resource. - -### Groups - -- Added support for assigning sensitivity labels to cloud security groups via the **assignedLabels** property on the [group](/graph/api/resources/group) resource. For more information, see [Sensitivity labels for Microsoft 365 groups and cloud security groups](/entra/identity/users/groups-sensitivity-labels). -- Added the `Group.ManageProtection.All` delegated permission as the least privilege permission for updating the **assignedLabels** property on the [group](/graph/api/resources/group) resource. App-only scenarios aren't supported. - -### Identity and access | Directory management - -- Added the [remoteTenantGroup](/graph/api/resources/remotetenantgroup) resource type and related methods to retrieve groups from remote Microsoft Entra tenants through the directory resource. -- Added the **sponsorOf** relationship to the [user](/graph/api/resources/user) resource type to represent the directory objects that a user sponsors. - -### Identity and access | Governance - -- Added the [Get](/graph/api/accesspackagesubject-get) and [Update](/graph/api/accesspackagesubject-update) methods to the [accessPackageSubject](/graph/api/resources/accesspackagesubject) resource type to manage the subject lifecycle of external directory users in Microsoft Entra entitlement management. -- Added the [cancelProcessing](/graph/api/identitygovernance-workflow-cancelprocessing) method to the [workflow](/graph/api/resources/identitygovernance-workflow) resource to cancel workflow runs that are currently in progress or queued. -- Added workflow preview operations to the [workflow](/graph/api/resources/identitygovernance-workflow) resource type in Lifecycle Workflows, enabling you to validate tasks and run workflows in preview mode without affecting production users. -- Promoted the **Bring Your Own Data (BYOD) Upload** APIs from beta to v1.0, enabling upload of external access data for access reviews. The promoted surface includes: - - [customDataProvidedResourceUploadSession](/graph/api/resources/customdataprovidedresourceuploadsession) base resource and [customDataProvidedResourceAccessReviewUploadSession](/graph/api/resources/customdataprovidedresourceaccessreviewuploadsession) derived type - - [customDataProvidedResourceFile](/graph/api/resources/customdataprovidedresourcefile), [customDataProvidedResourceUploadStats](/graph/api/resources/customdataprovidedresourceuploadstats), and [customDataProvidedResourceUploadSessionRequest](/graph/api/resources/customdataprovidedresourceuploadsessionrequest) resources - - Supporting resource types: [data](/graph/api/resources/customdataprovidedresourcepayloads-data), [accessReviewContextDataBase](/graph/api/resources/customdataprovidedresourcepayloads-accessreviewcontextdatabase), [accessReviewContextData](/graph/api/resources/customdataprovidedresourcepayloads-accessreviewcontextdata), and [applyDecisionContextData](/graph/api/resources/customdataprovidedresourcepayloads-applydecisioncontextdata) - - [uploadFile](/graph/api/customdataprovidedresourceuploadsession-uploadfile) action - - **uploadSessions** navigation property on [accessPackageResource](/graph/api/resources/accesspackageresource) - - [customDataProvidedResourceUploadStatus](/graph/api/resources/enums#customdataprovidedresourceuploadstatus-values) enumeration - -Added support for user-centric (catalog-scope) access reviews through the **unified** relationship on the [accessReviewSet](/graph/api/resources/accessreviewset) resource. Use it to create and manage reviews that evaluate a principal's access across all groups and applications in an entitlement management catalog from a single review, and to accept recommendations or record decisions in bulk within a review stage. - -### Teamwork and communications | Calls and online meetings - - - Added the **meetingType** and **cloudVideoInteropInfo** properties to the [onlineMeetingBase](/graph/api/resources/onlinemeetingbase) resource to help determine the type of an online meeting and retrieve Cloud Video Interop settings. - - Added the **isRegistrationRequired** and **capacity** properties to virtual events (for example, [virtualEvent](/graph/api/resources/virtualevent), [virtualEventTownhall](/graph/api/resources/virtualeventtownhall), and [virtualEventSession](/graph/api/resources/virtualeventsession)) to control registration requirements and expected attendance. - - Added the [virtualEventTownhallRegistrationConfiguration](/graph/api/resources/virtualeventtownhallregistrationconfiguration) resource type and related methods to manage attendee registration for town halls. - -### Teamwork and communications | Messaging - -- Documented support for the optional **ConsistencyLevel** request header when [getting hosted content for a chat message](/graph/api/chatmessagehostedcontent-get). Use `ConsistencyLevel: eventual` to retrieve hosted content for edited or deleted messages. Hosted content retrieval isn't supported for messages in deleted threads. -- Added the [targetedChatMessage](/graph/api/resources/targetedchatmessage) resource type and related methods for managing targeted messages in Microsoft Teams. Targeted messages are visible only to specified recipients within group chats and channels. - - Use the [getAllTargetedMessages](/graph/api/userteamwork-getalltargetedmessages) function to retrieve all targeted messages sent to a user across all group chats and channels. - - Use the [getAllRetainedTargetedMessages](/graph/api/userteamwork-getallretainedtargetedmessages) function to retrieve retained targeted messages that were deleted by the sender but preserved by retention policies. - - Use the [deleteTargetedMessage](/graph/api/userteamwork-deletetargetedmessage) action to delete a specific targeted message from a user's storage in a channel context. - -### Users - -- Added the `User.Create` permission as the least privileged permission to [create a user](/graph/api/user-post-users). -- Added the `User.ReadUpdate.All` permission as the least privileged permission to [update a user](/graph/api/user-update). - -## July 2026: New in preview only - -### Backup and recovery | Microsoft 365 Backup and Storage - -Added the **createdBy**, **createdDateTime**, **lastModifiedBy**, and **lastModifiedDateTime** properties to the [browseQueryResponseItem](/graph/api/resources/browsequeryresponseitem?view=graph-rest-beta&preserve-view=true) resource. Use these properties to get the identity and timestamp details for when a browse item was created and last modified. -- Added the **optimizedBrowse** parameter to the [sharePointBrowseSession: browse](/graph/api/sharepointbrowsesession-browse?view=graph-rest-beta&preserve-view=true) method of the [sharePointBrowseSession](/graph/api/resources/sharepointbrowsesession?view=graph-rest-beta&preserve-view=true) resource. Set this parameter to `true` to retrieve files and folders in a single request when the backup artifact has a single site and a single document library. -- Added the **optimizedBrowse** parameter to the [oneDriveForBusinessBrowseSession: browse](/graph/api/onedriveforbusinessbrowsesession-browse?view=graph-rest-beta&preserve-view=true) method of the [oneDriveForBusinessBrowseSession](/graph/api/resources/onedriveforbusinessbrowsesession?view=graph-rest-beta&preserve-view=true) resource. Set this parameter to `true` to retrieve files and folders in a single request when the backup artifact has a single site and a single document library. - -### Change notifications - -Added the **vapidPublicKey**, **webPushEncryptionP256dhPublicKey**, and **webPushEncryptionSecret** properties to the [subscription](/graph/api/resources/subscription?view=graph-rest-beta&preserve-view=true) resource to support encrypted change notifications delivered to browser-native Web Push endpoints (Apple, Mozilla, FCM). Browser-based applications can now register with Microsoft Graph to receive change notifications through the W3C Push API channel without operating a public webhook. See [RFC 8291](https://www.rfc-editor.org/rfc/rfc8291.html) and [RFC 8292](https://www.rfc-editor.org/rfc/rfc8292.html) for the underlying encryption and authentication protocols. - -### Device and app management | Cloud PC - -- Added the **provisioningConfiguration** property to the [cloudPC](/graph/api/resources/cloudpc?view=graph-rest-beta&preserve-view=true) resource. Use it to retrieve the policy-derived configuration that was applied during provisioning, including the domain join type. -- Updated [retrieveCloudPcTroubleshootReports](/graph/api/cloudpcreports-retrievecloudpctroubleshootreports?view=graph-rest-beta&preserve-view=true) on the [cloudPcReports](/graph/api/resources/cloudpcreports?view=graph-rest-beta&preserve-view=true) resource to support new troubleshooting report types across tenant, configuration, user and device, and view data table scopes. -- [Create](/graph/api/virtualendpoint-post-cloudapps?view=graph-rest-beta&preserve-view=true) or [delete](/graph/api/cloudpccloudapp-delete?view=graph-rest-beta&preserve-view=true) a [cloud app](/graph/api/resources/cloudpccloudapp?view=graph-rest-beta&preserve-view=true). -- Extended the **appDetail** property on [cloudPcCloudApp](/graph/api/resources/cloudpccloudapp?view=graph-rest-beta&preserve-view=true) to support the [cloudPcAutomaticDiscoveredAppDetail](/graph/api/resources/cloudpcautomaticdiscoveredappdetail?view=graph-rest-beta&preserve-view=true) type for apps automatically discovered from the *start* menu, and the [cloudPcFilePathAppDetail](/graph/api/resources/cloudpcfilepathappdetail) type for apps manually created when a file path is specified. -- Added the `iconPathInvalid` and `filePathInvalid` members as supported values for the **actionFailedErrorCode** property on the [cloudPcCloudApp](/graph/api/resources/cloudpccloudapp?view=graph-rest-beta&preserve-view=true). Use these members to indicate that the icon or file path specified for the cloud app is invalid. -- Added the [cloudPcPool](/graph/api/resources/cloudpcpool?view=graph-rest-beta&preserve-view=true) resource and its derived type [cloudPcAgentPool](/graph/api/resources/cloudpcagentpool?view=graph-rest-beta&preserve-view=true) to enable management of Cloud PC pools for agentic workloads. -- Added the [cloudPcPoolAssignment](/graph/api/resources/cloudpcpoolassignment?view=graph-rest-beta&preserve-view=true) resource and its derived type [cloudPcAgentPoolUserAssignment](/graph/api/resources/cloudpcagentpooluserassignment?view=graph-rest-beta&preserve-view=true) to manage pool assignments. -- Use `australiaNewZealand` as a new supported value in the **geographicLocationType** property of the [cloudPcSupportedRegion](/graph/api/resources/cloudpcsupportedregion?view=graph-rest-beta&preserve-view=true) and [cloudPcDomainJoinConfiguration](/graph/api/resources/cloudpcdomainjoinconfiguration?view=graph-rest-beta&preserve-view=true) resources. -- Added the **snapshotResetMode** property to the [cloudPcProvisioningPolicy](/graph/api/resources/cloudpcprovisioningpolicy?view=graph-rest-beta&preserve-view=true) resource to indicate whether snapshot reset is available for a provisioning policy. -- Added the **shareSnapshot** method to the [cloudPC](/graph/api/resources/cloudpc?view=graph-rest-beta&preserve-view=true) resource type. Use it to copy a Cloud PC snapshot to an Azure storage account. -- Added support for activating or deactivating an organization for Windows 365 for Agents. Use the [cloudPC: organizationAction](/graph/api/cloudpc-organizationaction?view=graph-rest-beta&preserve-view=true) action to trigger the operation. -- Use the [cloudPC: retrieveOrganizationActionDetail](/graph/api/cloudpc-retrieveorganizationactiondetail?view=graph-rest-beta&preserve-view=true) method to retrieve the status and details of an organization action. -- Added the **permissions** relationship to the [list](/graph/api/resources/list) and [listItem](/graph/api/resources/listitem) resources in v1.0. Use the [list permissions](/graph/api/list-list-permissions) and [create permission](/graph/api/list-post-permissions) methods to manage permissions for SharePoint lists and list items. - -### Files - -- Added the **dataLocationCode** property to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource type to represent the geographic location of the data for multi-geo tenants. -- Added the **settings** property of type [driveSettings](/graph/api/resources/drivesettings?view=graph-rest-beta&preserve-view=true) to the [drive](/graph/api/resources/drive?view=graph-rest-beta&preserve-view=true) resource type to retrieve drive-level settings such as the default sensitivity label applied to items. -- Updated the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to support the optional `reportType` parameter for retrieving throttling metrics. Use `reportType='throttlingReport'` to get throttled request counts via the **throttledRequests** property on the [sharePointApiUsageDataPoint](/graph/api/resources/sharepointapiusagedatapoint?view=graph-rest-beta&preserve-view=true) resource, or use `reportType='egressReport'` (default) to get egress usage via the **usageMB** property. -- Added the [Upsert permissions](/graph/api/filestoragecontainer-patch-permissions) (create or update) up to 40 permissions on a [fileStorageContainer](/graph/api/resources/filestoragecontainer) in a single request. The limit increased from 10 to 40 [permission](/graph/api/resources/permission) objects per request. -- Added the **allowOnPremUpdateOfOnPremisesObjectIdentifierEnabled** property to the [onPremisesDirectorySynchronizationFeature](/graph/api/resources/onpremisesdirectorysynchronizationfeature?view=graph-rest-beta&preserve-view=true) resource. -- Added the [getByUser](/graph/api/filestoragecontainer-getbyuser?view=graph-rest-beta&preserve-view=true) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource to retrieve a list of file storage containers owned by a user, with optional filtering by role (owner or principalOwner). -- Added the **isOfficeRestricted** property to the [fileStorageContainerTypeSettings](/graph/api/resources/filestoragecontainertypesettings?view=graph-rest-beta&preserve-view=true) and [fileStorageContainerTypeRegistrationSettings](/graph/api/resources/filestoragecontainertyperegistrationsettings?view=graph-rest-beta&preserve-view=true) resources, and the **fileStorageContainerTypeSettingsOverride** enumeration. - -### Groups - -Added the `Group.ManageProtection.All` delegated permission as the least privilege permission for updating the **assignedLabels** property on the [group](/graph/api/resources/group?view=graph-rest-beta&preserve-view=true) resource. App-only scenarios aren't supported. - -### Identity and access | Directory management - -- Added the [remoteTenantGroup](/graph/api/resources/remotetenantgroup?view=graph-rest-beta&preserve-view=true) resource type and related methods to retrieve groups from remote Microsoft Entra tenants through the directory resource. -- Added the **sponsorOf** relationship to the [user](/graph/api/resources/user?view=graph-rest-beta&preserve-view=true) resource type to represent the directory objects that a user sponsors. -- Added the **managerApplications** property to the [agentIdentity](/graph/api/resources/agentidentity?view=graph-rest-beta&preserve-view=true) and [agentIdentityBlueprintPrincipal](/graph/api/resources/agentidentityblueprintprincipal?view=graph-rest-beta&preserve-view=true) resource types to represent the collection of applications designated as managers of the backing agent identity blueprint. - -### Files | Reports - -Added the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to the [reportRoot](/graph/api/resources/reportroot?view=graph-rest-beta&preserve-view=true) resource to retrieve aggregated OneDrive and SharePoint API usage metrics for a tenant. - -### Identity and access | Governance - -- Added the [Get](/graph/api/accesspackagesubject-get) and [Update](/graph/api/accesspackagesubject-update) methods to the [accessPackageSubject](/graph/api/resources/accesspackagesubject) resource type to manage the subject lifecycle of external directory users in Microsoft Entra entitlement management. -- Added the **type** property to the [accessPackageResourceRole](/graph/api/resources/accesspackageresourcerole) resource to indicate whether an Azure resource role is active or eligible, enabling PIM-based role assignments for Azure resources in access packages. -- Added the [accessPackageSuggestion](/graph/api/resources/accesspackagesuggestion) resource type and related methods for discovering suggested access packages based on related people insights and assignment history. Use the [filterByCurrentUser](/graph/api/accesspackagesuggestions-filterbycurrentuser) function to retrieve personalized suggestions. -- Added the **approverInformationVisibility** property to the [accessPackageApprovalStage](/graph/api/resources/accesspackageapprovalstage) resource to control whether approver information is visible to requestors. -- Added the [endUserSettings](/graph/api/resources/endusersettings) resource type and related methods for configuring access package suggestion behavior, including related people insight levels and approver detail visibility. -- Added the [cancelProcessing](/graph/api/identitygovernance-workflow-cancelprocessing) method to the [workflow](/graph/api/resources/identitygovernance-workflow) resource to cancel workflow runs that are currently in progress or queued. -- Added workflow preview operations to the [workflow](/graph/api/resources/identitygovernance-workflow) resource type in Lifecycle Workflows, enabling you to validate tasks and run workflows in preview mode without affecting production users. -- Added support for automatically quarantining Lifecycle Workflows to stop a workflow from processing more users than expected. Configure thresholds using the **quarantineConfiguration** property on [lifecycleManagementSettings](/graph/api/resources/identitygovernance-lifecyclemanagementsettings?view=graph-rest-beta&preserve-view=true), and clear a quarantine by calling [clearQuarantine](/graph/api/identitygovernance-workflow-clearquarantine?view=graph-rest-beta&preserve-view=true). -- Added the [externalSapAcConnectionInfo](/graph/api/resources/externalsapacconnectioninfo) complex type, along with the supporting [authenticationInfo](/graph/api/resources/authenticationinfo) and [clientCredentialAuthenticationInfo](/graph/api/resources/clientcredentialauthenticationinfo) types, to configure connections from Microsoft Entra entitlement management to SAP Access Control (AC) systems. Set these on the **connectionInfo** property of an [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) when its **connectorType** is `sapAc`. -- Added the [guestSponsorTrigger](/graph/api/resources/identitygovernance-guestsponsortrigger?view=graph-rest-beta&preserve-view=true) resource type to initiate lifecycle workflows when guest users have fewer than the required number of sponsors. -- Added the [directoryObjectWorkflowSubject](/graph/api/resources/identitygovernance-directoryobjectworkflowsubject?view=graph-rest-beta&preserve-view=true) resource type, a subtype of [workflowSubject](/graph/api/resources/identitygovernance-workflowsubject?view=graph-rest-beta&preserve-view=true), so that a subject processing result can represent a directory object, such as a user, that a Lifecycle Workflow processes. -- Added the [subjectSummary](/graph/api/resources/identitygovernance-subjectsummary?view=graph-rest-beta&preserve-view=true) resource type and the [summary](/graph/api/identitygovernance-subjectprocessingresult-summary?view=graph-rest-beta&preserve-view=true) method to the [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult?view=graph-rest-beta&preserve-view=true) resource to get an aggregate count of subject processing results over a specified time period. -- Added the **subjectType** enumeration type and the **subjectType** property on the [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult?view=graph-rest-beta&preserve-view=true) resource, along with the **targetSubjectType** property on the [workflowBase](/graph/api/resources/identitygovernance-workflowbase?view=graph-rest-beta&preserve-view=true) resource, to indicate the kind of subject that a workflow targets. -- Added the **parameters** property to the [accessPackageAssignmentRequest](/graph/api/resources/accesspackageassignmentrequest?view=graph-rest-beta&preserve-view=true) resource, typed as the new [accessPackageAssignmentRequestParameters](/graph/api/resources/accesspackageassignmentrequestparameters?view=graph-rest-beta&preserve-view=true) complex type, to bypass the approval requirement configured on the access package policy when creating an assignment request. - -### Identity and access | Identity and sign-in - -- Added the [resourceAccountKeyAuthenticationMethod](/graph/api/resources/resourceaccountkeyauthenticationmethod?view=graph-rest-beta&preserve-view=true) resource type and related methods for managing resource account key credentials on shared devices. Use these APIs to list, get, and delete resource account key authentication methods for Teams Meeting Rooms and Teams phones that authenticate silently to Microsoft Entra ID. -- Added support for programmatic FIDO2 passkey registration. Use the [creationOptions](/graph/api/fido2authenticationmethod-creationoptions?view=graph-rest-beta&preserve-view=true) function to get WebAuthn credential creation options, then complete registration by posting the new **publicKeyCredential** property to the [fido2AuthenticationMethod](/graph/api/resources/fido2authenticationmethod?view=graph-rest-beta&preserve-view=true) resource. -- Added support to update and delete Microsoft 365 cross-tenant capabilities in the cross-tenant access policy. For details, see [m365CapabilityBase](/graph/api/resources/m365capabilitybase?view=graph-rest-beta&preserve-view=true). - -- Updated the [verifiedIdProfile](/graph/api/resources/verifiedidprofile?view=graph-rest-beta&preserve-view=true) resource to support mobile driver's license verification and self-service Verified ID issuance through MyAccount. Profiles can specify the verification method and credential manifest used for these experiences. -- Enhanced the [verifiedIdProfile](/graph/api/resources/verifiedidprofile?view=graph-rest-beta&preserve-view=true) resource with expanded verification capabilities: - - Added the **methodType** property to [verifiedIdProfileConfiguration](/graph/api/resources/verifiedidprofileconfiguration?view=graph-rest-beta&preserve-view=true) to specify the verification method category, including tenant custom credentials, verified employee credentials, and identity verification partners. Introduced the **verifiedIdMethodType** enumeration to support these scenarios. - - Added the **manifestUrl** property to [verifiedIdProfileConfiguration](/graph/api/resources/verifiedidprofileconfiguration?view=graph-rest-beta&preserve-view=true) to reference the credential issuer's manifest defining the credential schema and issuer details. - - Added the `verification` member to the **verifiedIdUsageConfigurationPurpose** enumeration to enable just-in-time identity verification scenarios, such as step-up authentication enforcement through Conditional Access policies. - -### Security | Advanced hunting - -Added the optional **workspaceId** parameter to the [runHuntingQuery](/graph/api/security-security-runhuntingquery) method to target a specific Log Analytics workspace. - -### Security | Alerts and incidents - -- Added the **tenantId** property to the [userAccount](/graph/api/resources/security-useraccount) resource to provide the Entra home tenant ID for the compromised user account indicated in a [security alert](/graph/api/resources/security-alert) where the alert evidence is related to a [processEvidence](/graph/api/resources/security-processevidence), [userEvidence](/graph/api/resources/security-userevidence), or [mailboxEvidence](/graph/api/resources/security-mailboxevidence). -- Added the [alert: moveAlerts](/graph/api/security-alert-movealerts) and [incident: mergeIncidents](/graph/api/security-incident-mergeincidents) actions to support moving alerts and merging incidents in Microsoft Defender. -- Added the [correlationReason](/graph/api/resources/security-correlationreason) enumeration and [mergeResponse](/graph/api/resources/security-mergeresponse) resource type. - -### Security | Data security and compliance - -Added support for evaluating content against Microsoft Purview Data Loss Prevention (DLP) policies before agent-to-tool interactions. Use the [processContent](/graph/api/tenantdatasecurityandgovernance-processcontent?view=graph-rest-beta&preserve-view=true) API to determine whether content should be allowed, blocked, or audited based on the applicable protection scope. - -Added the **matchedConditionsDescription** and **complianceUrl** properties to the [policyTipAction](/graph/api/resources/policytipaction?view=graph-rest-beta&preserve-view=true) resource. Use these properties to display a user-friendly summary of the matched DLP conditions and link users to additional compliance guidance. - -Added the [embeddingInput](/graph/api/resources/embeddinginput?view=graph-rest-beta&preserve-view=true) resource type and the **embeddings** property on the [textClassificationRequest](/graph/api/resources/textclassificationrequest?view=graph-rest-beta&preserve-view=true) resource, so a caller can supply precomputed embedding vectors when classifying text and let the service skip recomputing them. - -### Security | eDiscovery - -Added the `cloudNativeHtmlConversion` member to the [additionalDataOptions](/graph/api/resources/security-ediscoveryaddtoreviewsetoperation#additionaldataoptions-values) enumeration. - -### Mailbox import and export - -- Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources/mailboxfolder?view=graph-rest-beta&preserve-view=true) resource type to identify folders created by Outlook by using a locale-independent name. -- Added the [Delete mailboxItem](/graph/api/mailboxfolder-delete-items?view=graph-rest-beta&preserve-view=true) method to delete an individual [mailboxItem](/graph/api/resources/mailboxitem?view=graph-rest-beta&preserve-view=true) from a mailbox folder by using the mailbox import and export APIs. Use the **disposalType** query parameter to specify soft-delete or hard-delete semantics. - -### Reports - -Added the [getSharePointApiUsage](/graph/api/reportroot-getsharepointapiusage?view=graph-rest-beta&preserve-view=true) method to the [reportRoot](/graph/api/resources/reportroot?view=graph-rest-beta&preserve-view=true) resource to retrieve aggregated OneDrive and SharePoint API usage metrics for a tenant, including egress usage and throttling metrics. - -### Reports | Identity and access reports - -- Added Global Secure Access support to Microsoft Entra Health monitoring. Use the [health monitoring alert](/graph/api/resources/healthmonitoring-alert?view=graph-rest-beta&preserve-view=true) resource to monitor Global Secure Access-related alerts. - -### Tasks and plans - -- Added the [plannerHistoryItem](/graph/api/resources/plannerhistoryitem?view=graph-rest-beta&preserve-view=true) resource type and [List historyItems](/graph/api/plannerplan-list-historyitems?view=graph-rest-beta&preserve-view=true) method to audit task changes within a Planner plan. Track when tasks are created, updated, deleted, or moved, and filter by **occurredDateTime** to retrieve changes within specific time ranges. -- Added the [plannerGoal](/graph/api/resources/plannergoal?view=graph-rest-beta&preserve-view=true) resource type and related read methods for viewing goals in a Planner plan and understanding which goals are associated with each task. - -### Teamwork and communications | Graph API controls - -Updated Microsoft Graph documentation for transcript APIs to add guidance on tenant administrator controls that govern transcript access and speaker attribution. For more information, see [Get change notifications for transcripts and recordings using Microsoft Graph](teams-changenotifications-callrecording-and-calltranscript.md). - -### Teamwork and communications | Shift management - -The **timeZone** property of the [schedule](/graph/api/resources/schedule) resource must be set to an IANA time zone name, such as `America/Chicago` or `Europe/London`. For more information, see [Create or replace schedule](/graph/api/team-put-schedule). - -### Users - -Application permissions for the [user: translateExchangeIds](/graph/api/user-translateexchangeids) API are supported only for request URLs that identify a user in the path. - ## Contribute to Microsoft Graph Are there scenarios you'd like Microsoft Graph to support? @@ -415,4 +228,4 @@ Are there scenarios you'd like Microsoft Graph to support? ## Related content - [Microsoft Graph developer blog](https://devblogs.microsoft.com/microsoft365dev/category/microsoft-graph/). - [Microsoft Graph API changelog](https://developer.microsoft.com/graph/changelog/). -- [Microsoft Graph what's new history](whats-new-earlier.md). \ No newline at end of file +- [Microsoft Graph what's new history](whats-new-earlier.md). From 45260c8157400f3604ada7f9e392b117606b09b6 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Tue, 22 Sep 2026 16:51:32 -0600 Subject: [PATCH 155/189] Update cloud support status (#29616) Co-authored-by: Microsoft Graph DevX Tooling --- ...loudpcprovisioningpolicy-retrievepolicyupdatestatusresult.md | 2 +- .../api/cloudpcreports-retrievecloudpctenantmetricsreport.md | 2 +- .../api/cloudpcreports-retrievecloudpctroubleshootreports.md | 2 +- .../cloudpcreports-retrievecrossregiondisasterrecoveryreport.md | 2 +- ...tenantgovernanceservices-delete-governancepolicytemplates.md | 2 +- .../api/tenantgovernanceservices-governanceinvitation-delete.md | 2 +- .../api/tenantgovernanceservices-governanceinvitation-get.md | 2 +- .../tenantgovernanceservices-governancepolicytemplate-get.md | 2 +- .../tenantgovernanceservices-governancepolicytemplate-update.md | 2 +- .../api/tenantgovernanceservices-governancerelationship-get.md | 2 +- .../tenantgovernanceservices-governancerelationship-update.md | 2 +- .../beta/api/tenantgovernanceservices-governancerequest-get.md | 2 +- .../api/tenantgovernanceservices-governancerequest-update.md | 2 +- .../api/tenantgovernanceservices-list-governanceinvitations.md | 2 +- .../tenantgovernanceservices-list-governancepolicytemplates.md | 2 +- .../tenantgovernanceservices-list-governancerelationships.md | 2 +- .../api/tenantgovernanceservices-list-governancerequests.md | 2 +- .../beta/api/tenantgovernanceservices-list-relatedtenants.md | 2 +- .../api/tenantgovernanceservices-post-governanceinvitations.md | 2 +- .../tenantgovernanceservices-post-governancepolicytemplates.md | 2 +- .../api/tenantgovernanceservices-post-governancerequests.md | 2 +- .../beta/api/tenantgovernanceservices-relatedtenant-get.md | 2 +- .../beta/api/tenantgovernanceservices-relatedtenant-refresh.md | 2 +- ...anceservices-tenantgovernancesetting-enablerelatedtenants.md | 2 +- .../api/tenantgovernanceservices-tenantgovernancesetting-get.md | 2 +- .../tenantgovernanceservices-tenantgovernancesetting-update.md | 2 +- api-reference/beta/api/virtualendpoint-list-managedlicenses.md | 2 +- .../beta/api/virtualendpoint-retrievetenantencryptionsetting.md | 2 +- ...iewinstance-batchapplycustomdataprovidedresourcedecisions.md | 2 ++ 29 files changed, 30 insertions(+), 28 deletions(-) diff --git a/api-reference/beta/api/cloudpcprovisioningpolicy-retrievepolicyupdatestatusresult.md b/api-reference/beta/api/cloudpcprovisioningpolicy-retrievepolicyupdatestatusresult.md index 75addc91e3c..0ac1509178f 100644 --- a/api-reference/beta/api/cloudpcprovisioningpolicy-retrievepolicyupdatestatusresult.md +++ b/api-reference/beta/api/cloudpcprovisioningpolicy-retrievepolicyupdatestatusresult.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Retrieve the pending apply status of a [provisioning policy](../resources/cloudpcprovisioningpolicy.md) to determine whether unapplied changes exist for Cloud PCs. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/cloudpcreports-retrievecloudpctenantmetricsreport.md b/api-reference/beta/api/cloudpcreports-retrievecloudpctenantmetricsreport.md index 2839c6db52b..52dabf76255 100644 --- a/api-reference/beta/api/cloudpcreports-retrievecloudpctenantmetricsreport.md +++ b/api-reference/beta/api/cloudpcreports-retrievecloudpctenantmetricsreport.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get a report related to the performance of Cloud PCs. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/cloudpcreports-retrievecloudpctroubleshootreports.md b/api-reference/beta/api/cloudpcreports-retrievecloudpctroubleshootreports.md index ef6f5ee1ba2..c8b0b5c62fa 100644 --- a/api-reference/beta/api/cloudpcreports-retrievecloudpctroubleshootreports.md +++ b/api-reference/beta/api/cloudpcreports-retrievecloudpctroubleshootreports.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get Cloud PC troubleshooting reports. You can get tenant-level reports, configuration reports, user and device reports, and view data table reports. For the report types grouped by scope, including the mandatory filter parameters and response columns per `reportName`, see [Cloud PC troubleshoot report types](/graph/cloudpc-troubleshoot-report-types). -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/cloudpcreports-retrievecrossregiondisasterrecoveryreport.md b/api-reference/beta/api/cloudpcreports-retrievecrossregiondisasterrecoveryreport.md index 176e14deac6..ffe74e9cc04 100644 --- a/api-reference/beta/api/cloudpcreports-retrievecrossregiondisasterrecoveryreport.md +++ b/api-reference/beta/api/cloudpcreports-retrievecrossregiondisasterrecoveryreport.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Retrieve the Windows 365 cross-region disaster recovery report, including cloudPcId, userId, deviceId, cloudPCDeviceDisplayName, userPrincipalName, enabledDRType, disasterRecoveryStatus, licenseType, drHealthStatus, currentRestorePointDateTime, backupCloudPcStatus, and activationExpirationDateTime. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-delete-governancepolicytemplates.md b/api-reference/beta/api/tenantgovernanceservices-delete-governancepolicytemplates.md index 6f7f943e2a3..039d69e2ea3 100644 --- a/api-reference/beta/api/tenantgovernanceservices-delete-governancepolicytemplates.md +++ b/api-reference/beta/api/tenantgovernanceservices-delete-governancepolicytemplates.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Delete a [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) object. You can't delete the default template or templates currently used by active relationships. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-delete.md b/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-delete.md index 0b7da494d0a..07fa757aad6 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-delete.md +++ b/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-delete.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Delete a [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-get.md b/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-get.md index fb289c55145..fdd268e000c 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-get.md +++ b/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Read the properties of a [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-get.md b/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-get.md index 97357e855fe..de4bada13b7 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-get.md +++ b/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Read the properties of a [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-update.md b/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-update.md index 5b182c2c6d6..563b2f2ac92 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-update.md +++ b/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-update.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Update the properties of a [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-governancerelationship-get.md b/api-reference/beta/api/tenantgovernanceservices-governancerelationship-get.md index 73794afa99e..3cde91a27c1 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governancerelationship-get.md +++ b/api-reference/beta/api/tenantgovernanceservices-governancerelationship-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Read the properties of a [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-governancerelationship-update.md b/api-reference/beta/api/tenantgovernanceservices-governancerelationship-update.md index 5d2c54aee7f..3628f008311 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governancerelationship-update.md +++ b/api-reference/beta/api/tenantgovernanceservices-governancerelationship-update.md @@ -20,7 +20,7 @@ Update the **status** property of a [governanceRelationship](../resources/tenant When the governed tenant updates the `status` to `terminated` in either model, the resources that were provisioned in the governed tenant upon relationship creation are deleted. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-governancerequest-get.md b/api-reference/beta/api/tenantgovernanceservices-governancerequest-get.md index caa41be89ab..ca9451e4a1b 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governancerequest-get.md +++ b/api-reference/beta/api/tenantgovernanceservices-governancerequest-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Read the properties of a [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-governancerequest-update.md b/api-reference/beta/api/tenantgovernanceservices-governancerequest-update.md index 0f54a00679e..37b8bdd6dc7 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governancerequest-update.md +++ b/api-reference/beta/api/tenantgovernanceservices-governancerequest-update.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Update the **status** property of a [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) to accept or reject the governance request. Only the governed tenant can update the request status. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-list-governanceinvitations.md b/api-reference/beta/api/tenantgovernanceservices-list-governanceinvitations.md index 7cf3d05dd8b..3f7c314ad40 100644 --- a/api-reference/beta/api/tenantgovernanceservices-list-governanceinvitations.md +++ b/api-reference/beta/api/tenantgovernanceservices-list-governanceinvitations.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Get a list of the [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) objects and their properties. This API method returns all governance invitations where the calling tenant is either the governing tenant or the governed tenant. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-list-governancepolicytemplates.md b/api-reference/beta/api/tenantgovernanceservices-list-governancepolicytemplates.md index 5c40e23bf9c..6b8e9b55968 100644 --- a/api-reference/beta/api/tenantgovernanceservices-list-governancepolicytemplates.md +++ b/api-reference/beta/api/tenantgovernanceservices-list-governancepolicytemplates.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Get a list of the [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) objects and their properties. Policy templates define the configuration that is applied when establishing governance relationships. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-list-governancerelationships.md b/api-reference/beta/api/tenantgovernanceservices-list-governancerelationships.md index 7cceafb2dd6..1d8ce723f47 100644 --- a/api-reference/beta/api/tenantgovernanceservices-list-governancerelationships.md +++ b/api-reference/beta/api/tenantgovernanceservices-list-governancerelationships.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Get a list of the [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) objects and their properties. This API method returns all governance relationships where the calling tenant is either the governing tenant or the governed tenant. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-list-governancerequests.md b/api-reference/beta/api/tenantgovernanceservices-list-governancerequests.md index f60955322ad..45e84ca4af6 100644 --- a/api-reference/beta/api/tenantgovernanceservices-list-governancerequests.md +++ b/api-reference/beta/api/tenantgovernanceservices-list-governancerequests.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Get a list of the [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) objects and their properties. This API method returns all governance requests where the calling tenant is either the governing tenant or the governed tenant. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-list-relatedtenants.md b/api-reference/beta/api/tenantgovernanceservices-list-relatedtenants.md index efcf991a78f..ff8e1d0f67b 100644 --- a/api-reference/beta/api/tenantgovernanceservices-list-relatedtenants.md +++ b/api-reference/beta/api/tenantgovernanceservices-list-relatedtenants.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Get a list of [relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) objects and their properties, including relationship metrics. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-post-governanceinvitations.md b/api-reference/beta/api/tenantgovernanceservices-post-governanceinvitations.md index 4086f4a9ae9..cc85f418ae0 100644 --- a/api-reference/beta/api/tenantgovernanceservices-post-governanceinvitations.md +++ b/api-reference/beta/api/tenantgovernanceservices-post-governanceinvitations.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Create a new [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) to establish a governance relationship with a governed tenant. Invitations provide an alternative mechanism to governance requests for initiating relationships. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-post-governancepolicytemplates.md b/api-reference/beta/api/tenantgovernanceservices-post-governancepolicytemplates.md index f3cd67458d6..bc3f5bee17c 100644 --- a/api-reference/beta/api/tenantgovernanceservices-post-governancepolicytemplates.md +++ b/api-reference/beta/api/tenantgovernanceservices-post-governancepolicytemplates.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Create a new [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) that defines the configuration for establishing governance relationships, including role assignments and applications to provision. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-post-governancerequests.md b/api-reference/beta/api/tenantgovernanceservices-post-governancerequests.md index 21c8ada1d9c..951288631ea 100644 --- a/api-reference/beta/api/tenantgovernanceservices-post-governancerequests.md +++ b/api-reference/beta/api/tenantgovernanceservices-post-governancerequests.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Create a new [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) to establish a governance relationship with a governed tenant. The governed tenant can then accept or reject the request. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-relatedtenant-get.md b/api-reference/beta/api/tenantgovernanceservices-relatedtenant-get.md index c4b275f39e7..05cc8915e34 100644 --- a/api-reference/beta/api/tenantgovernanceservices-relatedtenant-get.md +++ b/api-reference/beta/api/tenantgovernanceservices-relatedtenant-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Read the properties and relationships of [microsoft.graph.tenantGovernanceServices.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) object. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-relatedtenant-refresh.md b/api-reference/beta/api/tenantgovernanceservices-relatedtenant-refresh.md index 8cecea022b0..2c2588659b3 100644 --- a/api-reference/beta/api/tenantgovernanceservices-relatedtenant-refresh.md +++ b/api-reference/beta/api/tenantgovernanceservices-relatedtenant-refresh.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Manually refresh the list of [related tenants](../resources/tenantgovernanceservices-relatedtenant.md). The list is also automatically refreshed daily. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md b/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md index 49b41bea331..9d516f490d9 100644 --- a/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md +++ b/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md @@ -19,7 +19,7 @@ Enable the related tenants feature for tenant discovery. After calling this acti > [!IMPORTANT] > This action must be called before using any related tenant APIs. Related tenant APIs won't run successfully unless this feature is explicitly enabled. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-get.md b/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-get.md index 749d5ac20b1..a8846b9dc67 100644 --- a/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-get.md +++ b/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-get.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Read the properties of the [tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) singleton, which controls related tenant discovery and invitation capabilities. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-update.md b/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-update.md index 1a538546cd9..4e60dd13499 100644 --- a/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-update.md +++ b/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-update.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph.tenantGovernanceServices Update the **canReceiveInvitations** property of the [tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) singleton. This property controls whether the tenant can receive governance invitations. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/virtualendpoint-list-managedlicenses.md b/api-reference/beta/api/virtualendpoint-list-managedlicenses.md index a4c0399e516..5f3e9e20504 100644 --- a/api-reference/beta/api/virtualendpoint-list-managedlicenses.md +++ b/api-reference/beta/api/virtualendpoint-list-managedlicenses.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Get information about [cloudPcManagedLicense](../resources/cloudpcmanagedlicense.md) objects that the Cloud PC service manages directly. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/beta/api/virtualendpoint-retrievetenantencryptionsetting.md b/api-reference/beta/api/virtualendpoint-retrievetenantencryptionsetting.md index 9ecd9854fa6..539e1595cf3 100644 --- a/api-reference/beta/api/virtualendpoint-retrievetenantencryptionsetting.md +++ b/api-reference/beta/api/virtualendpoint-retrievetenantencryptionsetting.md @@ -16,7 +16,7 @@ Namespace: microsoft.graph Retrieve the encryption setting of the tenant associated with the current authenticated user. This information can help users to determine whether to trigger an encryption change based on the current setting. -[!INCLUDE [national-cloud-support](../../includes/global-only.md)] +[!INCLUDE [national-cloud-support](../../includes/global-us.md)] ## Permissions diff --git a/api-reference/v1.0/api/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions.md b/api-reference/v1.0/api/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions.md index 39582df1606..aa017a65df6 100644 --- a/api-reference/v1.0/api/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions.md +++ b/api-reference/v1.0/api/accessreviewinstance-batchapplycustomdataprovidedresourcedecisions.md @@ -18,6 +18,8 @@ Enables reviewers to set the **applyResult** and **applyDescription** on all [ac This action is part of the unified access reviews surface and is available only through the `/identityGovernance/accessReviews/unified` route. For more information, see [unifiedRoot](../resources/unifiedroot.md). +[!INCLUDE [national-cloud-support](../../includes/global-only.md)] + ## Permissions Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). From 80dd4ca6f4d7d47a5e43dc2134dea6d91d442118 Mon Sep 17 00:00:00 2001 From: Zhengning-Lu <74710380+Zhengning-Lu@users.noreply.github.com> Date: Tue, 22 Sep 2026 15:52:30 -0700 Subject: [PATCH 156/189] Add incomplete evaluation activity metadata (#29561) * Add incomplete evaluation activity metadata Document the beta resource for reporting incomplete Secure by Default policy evaluations, link it from contentActivity, and announce the addition in the changelog and What's New. * Refine incomplete evaluation metadata Remove endpoint-specific metadata support, restrict the record type to ComplianceEvaluationIncomplete, update the workload example, and clarify the What's New entry. * Clarify incomplete evaluation audit metadata Document service-derived audit context and remove unsupported request properties from the beta resource reference. * Update incomplete evaluation metadata docs Document error actions, structured evaluation error details, and ContentActivity-specific metadata usage. * Add incomplete evaluation metadata to beta TOC Co-authored-by: Zhengning-Lu <74710380+Zhengning-Lu@users.noreply.github.com> * Add evaluationErrorDetail to beta TOC complexTypes Co-authored-by: Zhengning-Lu <74710380+Zhengning-Lu@users.noreply.github.com> * Move DataClassificationService changelog record to top Co-authored-by: Zhengning-Lu <74710380+Zhengning-Lu@users.noreply.github.com> * Add missing DCS changelog entries Co-authored-by: Zhengning-Lu <74710380+Zhengning-Lu@users.noreply.github.com> * Address review feedback on incomplete evaluation docs Co-authored-by: Zhengning-Lu <74710380+Zhengning-Lu@users.noreply.github.com> * Fix DCS changelog complex type classification Co-authored-by: Zhengning-Lu <74710380+Zhengning-Lu@users.noreply.github.com> * Use type-only DateTimeOffset placeholders Co-authored-by: Zhengning-Lu <74710380+Zhengning-Lu@users.noreply.github.com> * Fix contentActivity request body paths Co-authored-by: Zhengning-Lu <74710380+Zhengning-Lu@users.noreply.github.com> * Revise errorActions enum description Updated the description of errorActions values for clarity. Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address documentation review comments Co-authored-by: Zhengning-Lu <74710380+Zhengning-Lu@users.noreply.github.com> * Link beta evaluation enum types Adds links to enum definitions in beta evaluation metadata docs and moves the related DataClassificationService changelog entry to the latest date. --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: CelesteDG <16906646+CelesteDG@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- .../beta/resources/contentactivity.md | 2 +- api-reference/beta/resources/enums.md | 50 +++++++++ .../beta/resources/evaluationerrordetail.md | 46 ++++++++ .../evaluationincompleteactivitymetadata.md | 75 +++++++++++++ .../resources/processcontentmetadatabase.md | 2 +- .../beta/resources/processcontentrequest.md | 2 +- api-reference/beta/toc/toc.mapping.json | 2 + .../Microsoft.DataClassificationService.json | 102 +++++++++++++----- concepts/whats-new-overview.md | 2 + 9 files changed, 254 insertions(+), 29 deletions(-) create mode 100644 api-reference/beta/resources/evaluationerrordetail.md create mode 100644 api-reference/beta/resources/evaluationincompleteactivitymetadata.md diff --git a/api-reference/beta/resources/contentactivity.md b/api-reference/beta/resources/contentactivity.md index 7ef6fad6bc8..3274f94d7af 100644 --- a/api-reference/beta/resources/contentactivity.md +++ b/api-reference/beta/resources/contentactivity.md @@ -26,7 +26,7 @@ Represents audit data from content processing for Microsoft Purview to ensure co |Property|Type|Description| |:---|:---|:---| -|contentMetadata|[processContentRequest](../resources/processcontentrequest.md)|Defines the input payload. It includes the relevant metadata about the activity, device, and integrated application.| +|contentMetadata|[processContentRequest](../resources/processcontentrequest.md)|Contains metadata about the content, activity, device, and integrated application. When creating a contentActivity, submit content entries in **contentToProcess.contentEntries**; use [contentActivityMetadata](../resources/contentactivitymetadata.md) to report a DLP enforcement result or [evaluationIncompleteActivityMetadata](../resources/evaluationincompleteactivitymetadata.md) to report a Secure by Default (SBD) policy evaluation that couldn't be completed. An incomplete-evaluation entry requires **errorAction** and **inspectionIncompleteReason**.| |id|String|Unique identifier.| |scopeIdentifier|String|The scope identified from computed protection scopes.| |userId|String|ID of the user.| diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index 50e5d4ffcd3..f94698def4e 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -13,6 +13,56 @@ ms.custom: sfi-ropc-nochange Namespace: microsoft.graph +### errorActions values + +This flagged enumeration identifies the actions taken when policy evaluation couldn't be completed. Values can be combined; for example, `audit,block` indicates that the activity was audited and blocked. Don't combine `none` with another value. + +|Member| +|:---| +|none| +|audit| +|block| +|unknownFutureValue| + +### evaluationErrorCategory values + +|Member| +|:---| +|unknown| +|systemLimit| +|systemError| +|enforcementError| +|unknownFutureValue| + +### evaluationErrorType values + +|Member| +|:---| +|unsupportedFile| +|passwordProtectedFile| +|fileTooLarge| +|archiveSizeTooLarge| +|textExceedsMceThreshold| +|partiallyScannedArchive| +|partialImageExtraction| +|imageOcrPartialResult| +|ocrProcessingFailure| +|ocrQuotaExhausted| +|classificationServiceError| +|sitExtractionFailure| +|textExtractionFailure| +|archiveTextExtractionError| +|missingOrInvalidConfiguration| +|agentFailure| +|enforcementTimeout| +|osOverride| +|processNonExistent| +|other| +|serviceTimeout| +|serviceError| +|serviceUnavailable| +|unknownFutureValue| + ### meetingEngagementType values |Member| diff --git a/api-reference/beta/resources/evaluationerrordetail.md b/api-reference/beta/resources/evaluationerrordetail.md new file mode 100644 index 00000000000..9c818838a87 --- /dev/null +++ b/api-reference/beta/resources/evaluationerrordetail.md @@ -0,0 +1,46 @@ +--- +title: "evaluationErrorDetail resource type" +description: "Represents the reason why a policy evaluation couldn't be completed." +author: "zhengnlu" +ms.date: 09/10/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# evaluationErrorDetail resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the structured reason for the **inspectionIncompleteReason** property of [evaluationIncompleteActivityMetadata](../resources/evaluationincompleteactivitymetadata.md) when a policy evaluation couldn't be completed. + +## Properties + +| Property | Type | Description | +| :--- | :--- | :--- | +| errorCategory | [evaluationErrorCategory](../resources/enums.md#evaluationerrorcategory-values) | The high-level category of the error. Required. The possible values are: `unknown`, `systemLimit`, `systemError`, `enforcementError`, `unknownFutureValue`. | +| errorMessage | String | A message that describes the error. Required. | +| errorType | [evaluationErrorType](../resources/enums.md#evaluationerrortype-values) | The specific reason the evaluation couldn't be completed. Required. The possible values are: `unsupportedFile`, `passwordProtectedFile`, `fileTooLarge`, `archiveSizeTooLarge`, `textExceedsMceThreshold`, `partiallyScannedArchive`, `partialImageExtraction`, `imageOcrPartialResult`, `ocrProcessingFailure`, `ocrQuotaExhausted`, `classificationServiceError`, `sitExtractionFailure`, `textExtractionFailure`, `archiveTextExtractionError`, `missingOrInvalidConfiguration`, `agentFailure`, `enforcementTimeout`, `osOverride`, `processNonExistent`, `other`, `serviceTimeout`, `serviceError`, `serviceUnavailable`, `unknownFutureValue`. | + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +```json +{ + "@odata.type": "#microsoft.graph.evaluationErrorDetail", + "errorCategory": "String", + "errorMessage": "String", + "errorType": "String" +} +``` \ No newline at end of file diff --git a/api-reference/beta/resources/evaluationincompleteactivitymetadata.md b/api-reference/beta/resources/evaluationincompleteactivitymetadata.md new file mode 100644 index 00000000000..0b4519781cb --- /dev/null +++ b/api-reference/beta/resources/evaluationincompleteactivitymetadata.md @@ -0,0 +1,75 @@ +--- +title: "evaluationIncompleteActivityMetadata resource type" +description: "Represents metadata for a Secure by Default policy evaluation that couldn't be completed." +author: "zhengnlu" +ms.date: 09/10/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# evaluationIncompleteActivityMetadata resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents metadata for a Secure by Default (SBD) policy evaluation that couldn't be completed because of a platform limit, extraction or classification failure, supporting-service failure, or enforcement failure. + +Inherits from [processContentMetadataBase](../resources/processcontentmetadatabase.md). + +Use this type only in the **contentToProcess.contentEntries** collection of a request to [create a contentActivity](../api/activitiescontainer-post-contentactivities.md). This type isn't supported by the **processContent** or **processContentAsync** APIs. Use the `@odata.type` value `#microsoft.graph.evaluationIncompleteActivityMetadata` to identify an entry of this type. + +The service derives the audit organization, workload, and operation from the authenticated tenant, **contentToProcess.integratedAppMetadata.name**, and **contentToProcess.activityMetadata.activity**, respectively. Item details reuse inherited properties such as **identifier**, **name**, and **length**. The service resolves additional audit context through runtime data lookups. + +The service records this metadata as a `ComplianceEvaluationIncomplete` (`506`) audit record. You don't specify a record type in the request. + +## Properties + +| Property | Type | Description | +| :--- | :--- | :--- | +| content | [contentBase](../resources/contentbase.md) | The content that was evaluated, represented as text or binary data. Don't include this property when you create a content activity. Inherited from [processContentMetadataBase](../resources/processcontentmetadatabase.md). | +| contentCategory | [contentCategory](../resources/enums.md#contentcategory-values) | The type of content. The possible values are: `none`, `ai`, `unknownFutureValue`. The default value is `ai`, which refers to AI-generated content. Inherited from [processContentMetadataBase](../resources/processcontentmetadatabase.md). | +| correlationId | String | An identifier used to group related content entries or correlate the audit record with related evaluation telemetry. Inherited from [processContentMetadataBase](../resources/processcontentmetadatabase.md). | +| createdDateTime | DateTimeOffset | The date and time when the evaluated content or activity was created. Required. The timestamp is always in UTC. Inherited from [processContentMetadataBase](../resources/processcontentmetadatabase.md). | +| errorAction | [errorActions](../resources/enums.md#erroractions-values) | The action taken when policy evaluation couldn't be completed. Required. This flagged enumeration allows multiple members to be selected simultaneously. For example, `audit,block` indicates that the activity was audited and blocked. The possible values are: `none`, `audit`, `block`, `unknownFutureValue`. Don't combine `none` with another value. | +| identifier | String | A unique identifier for the content or activity in the enforcement plane; for example, a message ID, file path, or file URL. Required. Inherited from [processContentMetadataBase](../resources/processcontentmetadatabase.md). | +| inspectionIncompleteReason | [evaluationErrorDetail](../resources/evaluationerrordetail.md) | The structured reason why inspection couldn't be completed. Required. The object requires **errorCategory**, **errorType**, and **errorMessage**. | +| isTruncated | Boolean | Indicates whether the supplied content was shortened from its original form. Required. Inherited from [processContentMetadataBase](../resources/processcontentmetadatabase.md). | +| length | Int64 | The length of the original content in bytes. Inherited from [processContentMetadataBase](../resources/processcontentmetadatabase.md). | +| modifiedDateTime | DateTimeOffset | The date and time when the evaluated content was last modified. Required. Inherited from [processContentMetadataBase](../resources/processcontentmetadatabase.md). | +| name | String | A descriptive name for the content or activity; for example, a file name or interaction name. Required. Inherited from [processContentMetadataBase](../resources/processcontentmetadatabase.md). | +| sequenceNumber | Int64 | A sequence number that indicates the order in which related content was generated or should be processed. Required when **correlationId** is used. Inherited from [processContentMetadataBase](../resources/processcontentmetadatabase.md). | + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +```json +{ + "@odata.type": "#microsoft.graph.evaluationIncompleteActivityMetadata", + "content": { "@odata.type": "microsoft.graph.contentBase" }, + "contentCategory": "String", + "correlationId": "String", + "createdDateTime": "DateTimeOffset", + "errorAction": "String", + "identifier": "String", + "inspectionIncompleteReason": { + "@odata.type": "microsoft.graph.evaluationErrorDetail" + }, + "isTruncated": "Boolean", + "length": "Int64", + "modifiedDateTime": "DateTimeOffset", + "name": "String", + "sequenceNumber": "Int64" +} +``` diff --git a/api-reference/beta/resources/processcontentmetadatabase.md b/api-reference/beta/resources/processcontentmetadatabase.md index 949b8f0c229..0900b2f43bf 100644 --- a/api-reference/beta/resources/processcontentmetadatabase.md +++ b/api-reference/beta/resources/processcontentmetadatabase.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -An abstract base type that represents metadata for a content entry being processed in a [processContentRequest](../resources/processcontentrequest.md), including identifiers, content details, and timestamps. Use the following derived types: [processConversationMetadata](../resources/processconversationmetadata.md) for conversation content, [processFileMetadata](../resources/processfilemetadata.md) for file content, and [contentActivityMetadata](../resources/contentactivitymetadata.md) for content activity. +An abstract base type that represents metadata for a content entry being processed in a [processContentRequest](../resources/processcontentrequest.md), including identifiers, content details, and timestamps. Use the following derived types: [processConversationMetadata](../resources/processconversationmetadata.md) for conversation content, [processFileMetadata](../resources/processfilemetadata.md) for file content, [contentActivityMetadata](../resources/contentactivitymetadata.md) for a DLP enforcement result submitted through the ContentActivity API, and [evaluationIncompleteActivityMetadata](../resources/evaluationincompleteactivitymetadata.md) for an incomplete evaluation submitted through the ContentActivity API. The ContentActivity-specific derived types aren't supported by the **processContent** or **processContentAsync** APIs. ## Properties diff --git a/api-reference/beta/resources/processcontentrequest.md b/api-reference/beta/resources/processcontentrequest.md index d4315a88d64..ad93f3ef426 100644 --- a/api-reference/beta/resources/processcontentrequest.md +++ b/api-reference/beta/resources/processcontentrequest.md @@ -21,7 +21,7 @@ Defines the input payload for the user-scoped [processContent](../api/userdatase |Property|Type|Description| |:---|:---|:---| |activityMetadata|[microsoft.graph.activityMetadata](../resources/activitymetadata.md)|Metadata about the user activity (like upload, download) and location (URL). Required.| -|contentEntries|Collection([microsoft.graph.processContentMetadataBase](../resources/processcontentmetadatabase.md))|A collection of content entries to be processed. Each entry contains the content itself and its metadata. Use [conversation metadata](../resources/processconversationmetadata.md) for content like prompts and responses, [file metadata](../resources/processfilemetadata.md) for files, and [content activity metadata](../resources/contentactivitymetadata.md) for enforcement result status entries. Required.| +|contentEntries|Collection([microsoft.graph.processContentMetadataBase](../resources/processcontentmetadatabase.md))|A collection of content entries to be processed. Each entry contains the content itself and its metadata. Use [conversation metadata](../resources/processconversationmetadata.md) for content like prompts and responses and [file metadata](../resources/processfilemetadata.md) for files. For the ContentActivity API only, use [content activity metadata](../resources/contentactivitymetadata.md) for DLP enforcement results or [evaluation incomplete activity metadata](../resources/evaluationincompleteactivitymetadata.md) when policy evaluation couldn't be completed. The ContentActivity-specific types aren't supported by the **processContent** or **processContentAsync** APIs. Required.| |deviceMetadata|[microsoft.graph.deviceMetadata](../resources/devicemetadata.md)|Metadata about the device from which the content originates. Required.| |evaluationScope|[evaluationScope](../resources/evaluationscope.md)|Specifies the evaluation context for the request. Optional generally; required for the tenant-scoped **processContent** action, where **type** must be `agent`. When omitted from other actions, the request uses the default tenant evaluation context.| |integratedAppMetadata|[microsoft.graph.integratedApplicationMetadata](../resources/integratedapplicationmetadata.md)|Metadata about the integrated application making the request. Required.| diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 0edc7b4bae8..7e8f2a78594 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -2963,6 +2963,8 @@ "customMetadataDictionary", "deviceMetadata", "dlpActionInfo", + "evaluationErrorDetail", + "evaluationIncompleteActivityMetadata", "evaluationScope", "embeddingInput", "groupScope", diff --git a/changelog/Microsoft.DataClassificationService.json b/changelog/Microsoft.DataClassificationService.json index 54bca216fe5..7e4a1aa29dd 100644 --- a/changelog/Microsoft.DataClassificationService.json +++ b/changelog/Microsoft.DataClassificationService.json @@ -1,5 +1,55 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "41bbb982-77dd-4adf-8205-46edd1c26b36", + "ApiChange": "ComplexType", + "ChangedApiName": "evaluationIncompleteActivityMetadata", + "ChangeType": "Addition", + "Description": "Added the [evaluationIncompleteActivityMetadata](https://learn.microsoft.com/en-us/graph/api/resources/evaluationincompleteactivitymetadata?view=graph-rest-beta) complex type to the [contentActivity](https://learn.microsoft.com/en-us/graph/api/resources/contentactivity?view=graph-rest-beta) resource for reporting Secure by Default policy evaluations that couldn't be completed.", + "Target": "evaluationIncompleteActivityMetadata" + }, + { + "Id": "41bbb982-77dd-4adf-8205-46edd1c26b36", + "ApiChange": "ComplexType", + "ChangedApiName": "evaluationErrorDetail", + "ChangeType": "Addition", + "Description": "Added the [evaluationErrorDetail](https://learn.microsoft.com/en-us/graph/api/resources/evaluationerrordetail?view=graph-rest-beta) complex type.", + "Target": "evaluationErrorDetail" + }, + { + "Id": "41bbb982-77dd-4adf-8205-46edd1c26b36", + "ApiChange": "Enumeration", + "ChangedApiName": "errorActions", + "ChangeType": "Addition", + "Description": "Added the [errorActions](https://learn.microsoft.com/en-us/graph/api/resources/enums?view=graph-rest-beta#erroractions-values) enumeration type.", + "Target": "errorActions" + }, + { + "Id": "41bbb982-77dd-4adf-8205-46edd1c26b36", + "ApiChange": "Enumeration", + "ChangedApiName": "evaluationErrorCategory", + "ChangeType": "Addition", + "Description": "Added the [evaluationErrorCategory](https://learn.microsoft.com/en-us/graph/api/resources/enums?view=graph-rest-beta#evaluationerrorcategory-values) enumeration type.", + "Target": "evaluationErrorCategory" + }, + { + "Id": "41bbb982-77dd-4adf-8205-46edd1c26b36", + "ApiChange": "Enumeration", + "ChangedApiName": "evaluationErrorType", + "ChangeType": "Addition", + "Description": "Added the [evaluationErrorType](https://learn.microsoft.com/en-us/graph/api/resources/enums?view=graph-rest-beta#evaluationerrortype-values) enumeration type.", + "Target": "evaluationErrorType" + } + ], + "Id": "41bbb982-77dd-4adf-8205-46edd1c26b36", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-21T00:00:00.0000000Z", + "WorkloadArea": "Security", + "SubArea": "Data security and compliance" + }, { "ChangeList": [ { @@ -583,14 +633,14 @@ "Target": "resourceAccessDetail" } ], - "Id": "e72bfd48-4fdc-4e10-9d29-89785912a3be", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2026-01-14T00:00:00.0000000Z", - "WorkloadArea": "Security", - "SubArea": "Data security and compliance" - }, - { + "Id": "e72bfd48-4fdc-4e10-9d29-89785912a3be", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-01-14T00:00:00.0000000Z", + "WorkloadArea": "Security", + "SubArea": "Data security and compliance" + }, + { "ChangeList": [ { "Id": "c39f9275-6638-4c3e-a3d2-c709fe4e89b9", @@ -625,14 +675,14 @@ "Target": "processFileMetadata" } ], - "Id": "c39f9275-6638-4c3e-a3d2-c709fe4e89b9", - "Cloud": "Prod", - "Version": "beta", - "CreatedDateTime": "2026-02-18T00:00:00.0000000Z", - "WorkloadArea": "Security", - "SubArea": "Data security and compliance" - }, - { + "Id": "c39f9275-6638-4c3e-a3d2-c709fe4e89b9", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-02-18T00:00:00.0000000Z", + "WorkloadArea": "Security", + "SubArea": "Data security and compliance" + }, + { "ChangeList": [ { "Id": "1bcf0683-8da5-49e2-ad7b-939947ea200d", @@ -1256,7 +1306,7 @@ "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, - { + { "ChangeList": [ { "Id": "abaf3cec-126a-4e1d-9630-833b4c693eff", @@ -1346,7 +1396,7 @@ "Description": "Added the [blockAccessAction](https://learn.microsoft.com/en-us/graph/api/resources/blockAccessAction?view=graph-rest-beta) resource.", "Target": "blockAccessAction" }, - { + { "Id": "abaf3cec-126a-4e1d-9630-833b4c693eff", "ApiChange": "Resource", "ChangedApiName": "classifcationErrorBase", @@ -1354,7 +1404,7 @@ "Description": "Added the [classifcationErrorBase](https://learn.microsoft.com/en-us/graph/api/resources/classifcationErrorBase?view=graph-rest-beta) resource.", "Target": "classifcationErrorBase" }, - { + { "Id": "abaf3cec-126a-4e1d-9630-833b4c693eff", "ApiChange": "Resource", "ChangedApiName": "classificationError", @@ -1362,7 +1412,7 @@ "Description": "Added the [classificationError](https://learn.microsoft.com/en-us/graph/api/resources/classificationError?view=graph-rest-beta) resource.", "Target": "classificationError" }, - { + { "Id": "abaf3cec-126a-4e1d-9630-833b4c693eff", "ApiChange": "Resource", "ChangedApiName": "classificationInnerError", @@ -1370,7 +1420,7 @@ "Description": "Added the [classificationInnerError](https://learn.microsoft.com/en-us/graph/api/resources/classificationInnerError?view=graph-rest-beta) resource.", "Target": "classificationInnerError" }, - { + { "Id": "abaf3cec-126a-4e1d-9630-833b4c693eff", "ApiChange": "Resource", "ChangedApiName": "customMetadataDictionary", @@ -1442,7 +1492,7 @@ "Description": "Added the **isDefault** property to the [sensitivityLabel](https://learn.microsoft.com/en-us/graph/api/resources/security-sensitivitylabel?view=graph-rest-beta) resource.", "Target": "sensitivityLabel" }, - { + { "Id": "abaf3cec-126a-4e1d-9630-833b4c693eff", "ApiChange": "Property", "ChangedApiName": "isEnabled", @@ -1450,7 +1500,7 @@ "Description": "Added the **isEnabled** property to the [sensitivityLabel](https://learn.microsoft.com/en-us/graph/api/resources/security-sensitivitylabel?view=graph-rest-beta) resource.", "Target": "sensitivityLabel" }, - { + { "Id": "abaf3cec-126a-4e1d-9630-833b4c693eff", "ApiChange": "Property", "ChangedApiName": "isEndpointProtectionEnabled", @@ -1458,7 +1508,7 @@ "Description": "Added the **isEndpointProtectionEnabled** property to the [sensitivityLabel](https://learn.microsoft.com/en-us/graph/api/resources/security-sensitivitylabel?view=graph-rest-beta) resource.", "Target": "sensitivityLabel" }, - { + { "Id": "abaf3cec-126a-4e1d-9630-833b4c693eff", "ApiChange": "Property", "ChangedApiName": "labelActions", @@ -1466,7 +1516,7 @@ "Description": "Added the **labelActions** property to the [sensitivityLabel](https://learn.microsoft.com/en-us/graph/api/resources/security-sensitivitylabel?view=graph-rest-beta) resource.", "Target": "sensitivityLabel" }, - { + { "Id": "abaf3cec-126a-4e1d-9630-833b4c693eff", "ApiChange": "Property", "ChangedApiName": "priority", @@ -1926,7 +1976,7 @@ "WorkloadArea": "Identity and access", "SubArea": "Directory management" }, - { + { "ChangeList": [ { "Id": "c27c982e-a5f0-4ce9-af0d-7ad5ee81f354", diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index a6e6e0694ca..150682c4e07 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -80,6 +80,8 @@ Added the **sensitivityLabel** property to the [searchHit](/graph/api/resources/ Added the `contentFiltering` member to the [userActivityTypes](/graph/api/resources/enums-security?view=graph-rest-beta&preserve-view=true#useractivitytypes-values) enumeration used by the [compute protection scopes for a user](/graph/api/userprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) and [compute protection scopes for a tenant](/graph/api/tenantprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) APIs, enabling applications to determine whether data loss prevention policies govern content filtering before evaluating content. +Updated the [contentActivity](/graph/api/resources/contentactivity?view=graph-rest-beta&preserve-view=true) resource to support reporting Secure by Default policy evaluations that couldn't be completed. Enforcement planes can submit structured incomplete-inspection reasons through the existing content activity ingestion API. + ### Security | Audit log query - Added the **isRecordCountLimitExceeded**, **recordCountLimit**, and **approximateReturnedRecordCount** properties to the [auditLogQuery](/graph/api/resources/security-auditlogquery?view=graph-rest-beta&preserve-view=true) resource. Use these properties to determine whether a completed query exceeded the per-search record-count limit and to inspect the applicable limit and approximate returned record count. From 192a5daa3809dfc19bf6f9748745b68cc36270b6 Mon Sep 17 00:00:00 2001 From: Nnachtomy Date: Wed, 23 Sep 2026 01:53:17 +0300 Subject: [PATCH 157/189] Add getHuntingSchemaTables beta API documentation (#29478) * Add getHuntingSchemaTables beta API documentation Documents the new getHuntingSchemaTables function on the security singleton, which returns the advanced hunting tables available to the signed-in user as a collection so callers can apply OData query parameters. - Add the api-reference page with examples for the default call, the workspaceId overload and a $select projection. - Add the generated permissions include placeholder. - Link the method from the security resource Methods table. - Add a changelog file for the Microsoft.Security.Hunting workload, which now owns this API. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: c4ede4eb-f06a-41e0-a975-531226f83d93 * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Update reference TOC * Remove stray blank line left by national cloud include removal Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 27e0abe9-73bb-442c-8bea-25f620199691 * Note getHuntingSchemaTables on the hunting schema resource pages The schema validator reports the document stubs for huntingSchemaTable and huntingSchemaTableColumn as missing from the docs PR, because both complex types are added to schema-PPE-beta.csdl and schema-Prod-beta.csdl by AD-AggregatorService-Workloads PR 16899983. Both resources are already documented, but their descriptions only mentioned getHuntingSchema. They are now also returned by getHuntingSchemaTables, so the descriptions are updated to reference both functions. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 27e0abe9-73bb-442c-8bea-25f620199691 * Use the generated changelog from the schema PR build artifacts The schema validator on AD-AggregatorService-Workloads PR 16899983 reports: PullRequest.ChangelogEntryMissing: The entry for security is missing in the changelog file in the GitHub docs pr. The hand-authored changelog only covered the getHuntingSchemaTables method. The generated changelog from the build artifact (build 178353939) also lists the security, huntingSchemaTable and huntingSchemaTableColumn resources that the workload declares in schema-PPE-beta.csdl and schema-Prod-beta.csdl. Replaces the file with the generated version. The only edit is the method description link: the generator emits resources/security-security, which does not exist. It is corrected to resources/security, matching the form used in Microsoft.M365.Defender.json. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 27e0abe9-73bb-442c-8bea-25f620199691 * Add What's New entry for getHuntingSchemaTables Adds the "Security | Advanced hunting" entry under August 2026: New in preview only, matching the WorkloadArea and SubArea recorded in changelog/Microsoft.Security.Hunting.json. The heading is placed alphabetically before "Security | Alerts and incidents", and the links use the beta query string per the authoring guidance. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 27e0abe9-73bb-442c-8bea-25f620199691 * Address content review feedback for hunting schema tables Use the generated permissions metadata for getHuntingSchemaTables so delegated work/school and application callers list ThreatHunting.Read.All instead of Not supported. Remove changelog additions for the pre-existing security, huntingSchemaTable, and huntingSchemaTableColumn resources. Keep only the new getHuntingSchemaTables method entry and refresh its timestamp. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 27e0abe9-73bb-442c-8bea-25f620199691 * Set hunting schema documentation author to Nnachtomy Replace the previous author metadata on the new API topic and the two resource topics updated by this PR with the current author GitHub alias. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 27e0abe9-73bb-442c-8bea-25f620199691 * Restore existing resource page authors Keep Nnachtomy as the author only on the new getHuntingSchemaTables API topic. Restore the original nitzanfrogel author metadata on the two pre-existing resource pages. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 27e0abe9-73bb-442c-8bea-25f620199691 --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Nnachtomy <258772109+Nnachtomy@users.noreply.github.com> Co-authored-by: David1997sb Copilot-Session: c4ede4eb-f06a-41e0-a975-531226f83d93 Copilot-Session: 27e0abe9-73bb-442c-8bea-25f620199691 --- ...ecurity-security-gethuntingschematables.md | 249 ++++++++++++++++++ ...rity-gethuntingschematables-permissions.md | 11 + .../resources/security-huntingschematable.md | 4 +- .../security-huntingschematablecolumn.md | 4 +- api-reference/beta/resources/security.md | 1 + api-reference/beta/toc/security/toc.yml | 2 + changelog/Microsoft.Security.Hunting.json | 22 ++ concepts/whats-new-overview.md | 4 + 8 files changed, 293 insertions(+), 4 deletions(-) create mode 100644 api-reference/beta/api/security-security-gethuntingschematables.md create mode 100644 api-reference/beta/includes/permissions/security-security-gethuntingschematables-permissions.md create mode 100644 changelog/Microsoft.Security.Hunting.json diff --git a/api-reference/beta/api/security-security-gethuntingschematables.md b/api-reference/beta/api/security-security-gethuntingschematables.md new file mode 100644 index 00000000000..7bd8fd06635 --- /dev/null +++ b/api-reference/beta/api/security-security-gethuntingschematables.md @@ -0,0 +1,249 @@ +--- +title: "security: getHuntingSchemaTables" +description: "Retrieve the advanced hunting tables accessible to the signed-in user." +author: "Nnachtomy" +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: apiPageType +ms.date: 08/22/2026 +--- + +# security: getHuntingSchemaTables + +Namespace: microsoft.graph.security + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Retrieve only the advanced hunting tables that the signed-in user is authorized to query in [advanced hunting](/microsoft-365/security/defender/advanced-hunting-overview?view=o365-worldwide&preserve-view=true) with Microsoft Defender XDR. + +The returned tables reflect the user's effective permissions. Each user within a tenant might have a different effective set of tables depending on their role and access level. + +Unlike [getHuntingSchema](security-security-gethuntingschema.md), which returns both tables and functions in a single [huntingSchemaResult](../resources/security-huntingschemaresult.md), this function returns the tables as a collection. Because the result is a collection, you can apply OData query parameters such as `$filter`, `$select`, and `$top` to retrieve only the tables and columns you need. + +Common use cases include: + +- **Preventing unauthorized queries**: Determine which tables a user can access before running a hunting query, which reduces the risk of authorization failures. +- **Permission-aware query generation**: Enable applications and tools to construct queries dynamically based on the tables available to the user. +- **Retrieving a targeted subset**: Use OData query parameters to request specific tables instead of the full schema. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/security-security-gethuntingschematables-permissions.md)] + +>[!IMPORTANT] +> The signed-in user must also be assigned a [Microsoft Defender XDR Unified RBAC role](/microsoft-365/security/defender/manage-rbac) that grants permission to run advanced hunting queries, or one of the following Microsoft Entra ID roles which provide only the least privilege necessary: **Security Reader**, **Security Operator**, **Security Administrator**. + +## HTTP request + + +```http +GET /security/getHuntingSchemaTables +GET /security/getHuntingSchemaTables(workspaceId={workspaceId}) +``` + +## Function parameters + +In the request URL, provide the following optional function parameter with values. + +|Parameter|Type|Description| +|:---|:---|:---| +|workspaceId|Guid|Optional. The identifier of the workspace to scope the tables to. If you don't specify this parameter, the default workspace is used.| + +This function supports the `$count`, `$filter`, `$select`, `$skip`, and `$top` [OData query parameters](/graph/query-parameters) to help customize the response. + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|****** Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this function returns a `200 OK` response code and a collection of [microsoft.graph.security.huntingSchemaTable](../resources/security-huntingschematable.md) objects in the response body. + +## Examples + +### Example 1: Retrieve all accessible hunting tables + +#### Request + +The following example shows a request. + + +```msgraph-interactive +GET https://graph.microsoft.com/beta/security/getHuntingSchemaTables +``` + +#### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + + +```http +HTTP/1.1 200 OK +Content-type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#Collection(microsoft.graph.security.huntingSchemaTable)", + "value": [ + { + "name": "DeviceProcessEvents", + "description": "Process creation and related events", + "columns": [ + { + "name": "Timestamp", + "dataType": "DateTime", + "description": "Date and time when the record was generated" + }, + { + "name": "DeviceId", + "dataType": "String", + "description": "Unique identifier for the device in the service" + }, + { + "name": "DeviceName", + "dataType": "String", + "description": "Fully qualified domain name (FQDN) of the device" + } + ] + }, + { + "name": "DeviceNetworkEvents", + "description": "Network connection and related events", + "columns": [ + { + "name": "Timestamp", + "dataType": "DateTime", + "description": "Date and time when the record was generated" + }, + { + "name": "DeviceId", + "dataType": "String", + "description": "Unique identifier for the device in the service" + } + ] + } + ] +} +``` + +### Example 2: Retrieve the tables for a specific workspace + +#### Request + +The following example scopes the request to a single workspace. + + +```msgraph-interactive +GET https://graph.microsoft.com/beta/security/getHuntingSchemaTables(workspaceId=8fb6e2d6-1b0a-4d0b-9d9f-9f3e2a5c7b21) +``` + +#### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + + +```http +HTTP/1.1 200 OK +Content-type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#Collection(microsoft.graph.security.huntingSchemaTable)", + "value": [ + { + "name": "DeviceProcessEvents", + "description": "Process creation and related events", + "columns": [ + { + "name": "Timestamp", + "dataType": "DateTime", + "description": "Date and time when the record was generated" + }, + { + "name": "DeviceId", + "dataType": "String", + "description": "Unique identifier for the device in the service" + } + ] + } + ] +} +``` + +### Example 3: Retrieve only the names of the accessible tables + +#### Request + +The following example uses the `$select` query parameter to return only the table names. + + +```msgraph-interactive +GET https://graph.microsoft.com/beta/security/getHuntingSchemaTables?$select=name +``` + +#### Response + +The following example shows the response. + + +```http +HTTP/1.1 200 OK +Content-type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#Collection(microsoft.graph.security.huntingSchemaTable)", + "value": [ + { + "name": "DeviceProcessEvents" + }, + { + "name": "DeviceNetworkEvents" + } + ] +} +``` diff --git a/api-reference/beta/includes/permissions/security-security-gethuntingschematables-permissions.md b/api-reference/beta/includes/permissions/security-security-gethuntingschematables-permissions.md new file mode 100644 index 00000000000..ae1d3706f8c --- /dev/null +++ b/api-reference/beta/includes/permissions/security-security-gethuntingschematables-permissions.md @@ -0,0 +1,11 @@ +--- +description: Automatically generated file. DO NOT MODIFY +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|ThreatHunting.Read.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|ThreatHunting.Read.All|Not available.| diff --git a/api-reference/beta/resources/security-huntingschematable.md b/api-reference/beta/resources/security-huntingschematable.md index a6a09188ece..401b5be4911 100644 --- a/api-reference/beta/resources/security-huntingschematable.md +++ b/api-reference/beta/resources/security-huntingschematable.md @@ -5,7 +5,7 @@ author: "nitzanfrogel" ms.localizationpriority: medium ms.subservice: "security" doc_type: resourcePageType -ms.date: 05/13/2026 +ms.date: 08/26/2026 --- # huntingSchemaTable resource type @@ -14,7 +14,7 @@ Namespace: microsoft.graph.security [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents an advanced hunting table accessible to the user. Part of the [huntingSchemaResult](../resources/security-huntingschemaresult.md) returned by the [getHuntingSchema](../api/security-security-gethuntingschema.md) function. +Represents an advanced hunting table accessible to the user. Part of the [huntingSchemaResult](../resources/security-huntingschemaresult.md) returned by the [getHuntingSchema](../api/security-security-gethuntingschema.md) function, and returned as a collection by the [getHuntingSchemaTables](../api/security-security-gethuntingschematables.md) function. ## Properties diff --git a/api-reference/beta/resources/security-huntingschematablecolumn.md b/api-reference/beta/resources/security-huntingschematablecolumn.md index fec535a9794..b475ab7165c 100644 --- a/api-reference/beta/resources/security-huntingschematablecolumn.md +++ b/api-reference/beta/resources/security-huntingschematablecolumn.md @@ -5,7 +5,7 @@ author: "nitzanfrogel" ms.localizationpriority: medium ms.subservice: "security" doc_type: resourcePageType -ms.date: 05/13/2026 +ms.date: 08/26/2026 --- # huntingSchemaTableColumn resource type @@ -14,7 +14,7 @@ Namespace: microsoft.graph.security [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a column in an advanced hunting table. Part of the [huntingSchemaTable](../resources/security-huntingschematable.md) returned by the [getHuntingSchema](../api/security-security-gethuntingschema.md) function. +Represents a column in an advanced hunting table. Part of the [huntingSchemaTable](../resources/security-huntingschematable.md) returned by the [getHuntingSchema](../api/security-security-gethuntingschema.md) and [getHuntingSchemaTables](../api/security-security-gethuntingschematables.md) functions. ## Properties diff --git a/api-reference/beta/resources/security.md b/api-reference/beta/resources/security.md index af4c259f1b8..c14e77134fc 100644 --- a/api-reference/beta/resources/security.md +++ b/api-reference/beta/resources/security.md @@ -21,6 +21,7 @@ Connects Microsoft security products, services, and partners to streamline secur |:---|:---|:---| |[Run hunting query](../api/security-security-runhuntingquery.md)|[microsoft.graph.security.huntingQueryResults](../resources/security-huntingqueryresults.md)|Queries a specified set of event, activity, or entity data supported by Microsoft 365 Defender to proactively look for specific threats in your environment.| |[Get hunting schema](../api/security-security-gethuntingschema.md)|[microsoft.graph.security.huntingSchemaResult](../resources/security-huntingschemaresult.md)|Retrieves the advanced hunting schema accessible to the signed-in user, including the tables and functions the user is authorized to query and invoke.| +|[Get hunting schema tables](../api/security-security-gethuntingschematables.md)|[microsoft.graph.security.huntingSchemaTable](../resources/security-huntingschematable.md) collection|Retrieves only the advanced hunting tables accessible to the signed-in user, as a collection that supports OData query parameters.| ## Properties None. diff --git a/api-reference/beta/toc/security/toc.yml b/api-reference/beta/toc/security/toc.yml index 213df819731..17b21548e4d 100644 --- a/api-reference/beta/toc/security/toc.yml +++ b/api-reference/beta/toc/security/toc.yml @@ -16,6 +16,8 @@ items: href: ../../api/security-security-runhuntingquery.md - name: Get hunting schema href: ../../api/security-security-gethuntingschema.md + - name: Get hunting schema tables + href: ../../api/security-security-gethuntingschematables.md - name: Hunting query results href: ../../resources/security-huntingqueryresults.md - name: Hunting row result diff --git a/changelog/Microsoft.Security.Hunting.json b/changelog/Microsoft.Security.Hunting.json new file mode 100644 index 00000000000..ee2ca0dd18e --- /dev/null +++ b/changelog/Microsoft.Security.Hunting.json @@ -0,0 +1,22 @@ +{ + "changelog": [ + { + "ChangeList": [ + { + "Id": "8a54c31b-e184-40d7-9f07-17150b344e07", + "ApiChange": "Method", + "ChangedApiName": "getHuntingSchemaTables", + "ChangeType": "Addition", + "Description": "Added the [getHuntingSchemaTables](https://learn.microsoft.com/en-us/graph/api/security-security-gethuntingschematables?view=graph-rest-beta) method to the [security](https://learn.microsoft.com/en-us/graph/api/resources/security?view=graph-rest-beta) resource.", + "Target": "security" + } + ], + "Id": "8a54c31b-e184-40d7-9f07-17150b344e07", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-03T07:59:00.0000000Z", + "WorkloadArea": "Security", + "SubArea": "Advanced hunting" + } + ] +} \ No newline at end of file diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 150682c4e07..e95267a3a9c 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -192,6 +192,10 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] - Updated [Manage profile source precedence in Microsoft 365](/graph/profilepriority-configure-profilepropertysetting) to clarify supported data sources for HR and work position data, explain how source precedence affects single-value versus multi-value properties, and add guidance on correctly configuring and removing tenant-level settings using the Microsoft Graph API or PowerShell. - Added the [People data sources in Microsoft 365](/graph/people-data-sources) concept article that describes the data sources that build the Microsoft 365 user profile, including Microsoft Entra ID, Copilot connectors, Organizational data, SharePoint, People Skills, user edits, and the API user source. The article also provides a reference table of built-in source IDs (GUIDs) and explains how source metadata appears in the profile API output. +### Security | Advanced hunting + +- Added the [getHuntingSchemaTables](/graph/api/security-security-gethuntingschematables?view=graph-rest-beta&preserve-view=true) function to the [security](/graph/api/resources/security?view=graph-rest-beta&preserve-view=true) resource. Use it to retrieve only the advanced hunting tables that the signed-in user can access, returned as a collection so that you can apply OData query parameters to request a targeted subset of tables and columns. + ### Security | Alerts and incidents - Added the [createAlert](/graph/api/security-alert-createalert?view=graph-rest-beta&preserve-view=true) action to the [alert](/graph/api/resources/security-alert?view=graph-rest-beta&preserve-view=true) resource for creating Microsoft 365 Defender alerts programmatically, including alert properties, incident-linking options, workspace routing, and inline entity definitions in a single request. From 854eab16a8f63808b77635beb665fb594206ac0b Mon Sep 17 00:00:00 2001 From: StungYep <50196340+StungYep@users.noreply.github.com> Date: Wed, 23 Sep 2026 12:19:04 +0800 Subject: [PATCH 158/189] =?UTF-8?q?Add=20cloudPcReports:=20retrieveCloudPc?= =?UTF-8?q?PerformanceMetricsReport=20beta=20API=20=E2=80=A6=20(#29396)?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit * Add cloudPcReports: retrieveCloudPcPerformanceMetricsReport beta API docs Add the retrieveCloudPcPerformanceMetricsReport action page, the cloudPcPerformanceMetricNamesType and cloudPcVmPerformanceMetricsTimeRange enums, the Methods table row, a changelog entry, and a What's New entry. * Fix Cloud PC performance metrics doc includes * Apply suggestions from code review Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address PR review comments for retrieveCloudPcPerformanceMetricsReport - Add permissions include file and reference it instead of inline table - Link to cloudPcReports resource in method description - Move flagged enum wording into metricNames parameter description - Remove redundant intro line in enum section - Update changelog CreatedDateTime to 2026-08-17 * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix Response heading spacing * Fix enum changelog entries to use standard format * Remove vmAvailability member from cloudPcPerformanceMetricNamesType enum * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Update reference TOC * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Clarify supported Cloud PC performance metrics Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Add retrieveCloudPcPerformanceMetricsReport method Added the retrieveCloudPcPerformanceMetricsReport method to cloudPcReports resource for VM-level performance metrics. Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Address TOC and changelog review comments Co-authored-by: StungYep <50196340+StungYep@users.noreply.github.com> --------- Co-authored-by: Cong Ye Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: David1997sb --- ...retrievecloudpcperformancemetricsreport.md | 134 ++++++++++++++++++ ...dpcperformancemetricsreport-permissions.md | 11 ++ .../beta/resources/cloudpcreports.md | 28 ++++ changelog/Microsoft.CloudManagedDesktop.json | 34 +++++ concepts/whats-new-overview.md | 4 + 5 files changed, 211 insertions(+) create mode 100644 api-reference/beta/api/cloudpcreports-retrievecloudpcperformancemetricsreport.md create mode 100644 api-reference/beta/includes/permissions/cloudpcreports-retrievecloudpcperformancemetricsreport-permissions.md diff --git a/api-reference/beta/api/cloudpcreports-retrievecloudpcperformancemetricsreport.md b/api-reference/beta/api/cloudpcreports-retrievecloudpcperformancemetricsreport.md new file mode 100644 index 00000000000..776e96e98da --- /dev/null +++ b/api-reference/beta/api/cloudpcreports-retrievecloudpcperformancemetricsreport.md @@ -0,0 +1,134 @@ +--- +title: "cloudPcReports: retrieveCloudPcPerformanceMetricsReport" +description: "Get VM-level utilization and performance metrics for a specific Cloud PC, including CPU, memory, and network time series." +author: "congye" +ms.date: 08/04/2026 +ms.localizationpriority: medium +ms.subservice: "cloud-pc" +doc_type: apiPageType +--- + +# cloudPcReports: retrieveCloudPcPerformanceMetricsReport + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Get VM-level utilization and performance metrics for a specific Cloud PC from the [cloudPcReports](../resources/cloudpcreports.md) resource, including CPU, memory, and network metrics. The metrics are returned as flattened time-series data. + +This API supports only Windows 365 Enterprise Cloud PCs and Windows 365 Frontline Cloud PCs in dedicated mode. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/cloudpcreports-retrievecloudpcperformancemetricsreport-permissions.md)] + +## HTTP request + + +``` http +POST /deviceManagement/virtualEndpoint/reports/retrieveCloudPcPerformanceMetricsReport +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the parameters. + +The following table lists the parameters that you can use with this action. + +|Parameter|Type|Description| +|:--------|:---|:----------| +|cloudPcId|String|The unique identifier (GUID) of the target Cloud PC. Required.| +|metricNames|[cloudPcPerformanceMetricNamesType](../resources/cloudpcreports.md#cloudpcperformancemetricnamestype-values)|Specifies which VM-level performance metrics to retrieve. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `cpuUsageInPercentage`, `availableMemoryInPercentage`, `networkInboundInBytes`, `networkOutboundInBytes`, `inboundFlowsCount`, `outboundFlowsCount`, `unknownFutureValue`. Required.| +|endDateTime|DateTimeOffset|The ISO 8601 UTC end time. Use together with **startDateTime** to specify a custom window. Mutually exclusive with **timeRange**. If neither this pair nor **timeRange** is provided, the default **timeRange** of `last24Hours` is used. Optional.| +|startDateTime|DateTimeOffset|The ISO 8601 UTC start time. Use together with **endDateTime** to specify a custom window. Mutually exclusive with **timeRange**. If neither this pair nor **timeRange** is provided, the default **timeRange** of `last24Hours` is used. Optional.| +|timeRange|[cloudPcVmPerformanceMetricsTimeRange](../resources/cloudpcreports.md#cloudpcvmperformancemetricstimerange-values)|A predefined time range. The possible values are: `last2Hours`, `last4Hours`, `last12Hours`, `last24Hours`, `last48Hours`, `last4Days`, `last7Days`, `last14Days`, `last28Days`, `unknownFutureValue`. Defaults to `last24Hours` when neither **timeRange** nor **startDateTime**/**endDateTime** is provided. Mutually exclusive with **startDateTime**/**endDateTime**. Optional.| + +## Response + +If successful, this action returns a `200 OK` response code and a Stream in the response body. + +The stream contains a JSON object with a `value` array. Each element is one time-series data point for a single metric, and the same property shape is used for every metric returned. + +|Property|Type|Description| +|:-------|:---|:----------| +|metricsName|String|The metric name that this data point belongs to. Matches the camelCase member from [cloudPcPerformanceMetricNamesType](../resources/cloudpcreports.md#cloudpcperformancemetricnamestype-values), for example, `cpuUsageInPercentage` or `availableMemoryInPercentage`.| +|timeStamp|DateTimeOffset|The UTC start time of the aggregation interval for this data point.| +|average|Double|The average value of the metric over the interval.| +|minimum|Double|The minimum value observed in the interval.| +|maximum|Double|The maximum value observed in the interval.| +|total|Double|The sum of all sampled values in the interval.| +|count|Double|The number of samples aggregated into this data point.| + +The unit of **average**, **minimum**, **maximum**, and **total** depends on the metric. For example, the unit is a percentage for `cpuUsageInPercentage` and bytes for `networkInboundInBytes`. + +## Examples + +### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/beta/deviceManagement/virtualEndpoint/reports/retrieveCloudPcPerformanceMetricsReport +Content-Type: application/json + +{ + "cloudPcId": "11111111-1111-1111-1111-111111111111", + "metricNames": "cpuUsageInPercentage,availableMemoryInPercentage", + "timeRange": "last24Hours" +} +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/octet-stream + +{ + "value": [ + { + "metricsName": "cpuUsageInPercentage", + "timeStamp": "2026-08-03T08:00:00Z", + "average": 23.4, + "minimum": 5.1, + "maximum": 78.9, + "total": 468.0, + "count": 20.0 + }, + { + "metricsName": "availableMemoryInPercentage", + "timeStamp": "2026-08-03T08:00:00Z", + "average": 61.2, + "minimum": 40.5, + "maximum": 82.3, + "total": 1224.0, + "count": 20.0 + } + ] +} +``` diff --git a/api-reference/beta/includes/permissions/cloudpcreports-retrievecloudpcperformancemetricsreport-permissions.md b/api-reference/beta/includes/permissions/cloudpcreports-retrievecloudpcperformancemetricsreport-permissions.md new file mode 100644 index 00000000000..1a8dccc7f27 --- /dev/null +++ b/api-reference/beta/includes/permissions/cloudpcreports-retrievecloudpcperformancemetricsreport-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|CloudPC.Read.All|CloudPC.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|CloudPC.Read.All|CloudPC.ReadWrite.All| diff --git a/api-reference/beta/resources/cloudpcreports.md b/api-reference/beta/resources/cloudpcreports.md index dcab85c6944..bc45b56eb1d 100644 --- a/api-reference/beta/resources/cloudpcreports.md +++ b/api-reference/beta/resources/cloudpcreports.md @@ -32,6 +32,7 @@ Use a method in the [Methods](#methods) section to get the corresponding report |[Get real-time remote connection status reports](../api/cloudpcreports-getrealtimeremoteconnectionstatus.md)|Stream|Get the real-time remote connection status reports like sign-in status or days since the last use of a Cloud PC.| |[Get remote connection historical reports](../api/cloudpcreports-getremoteconnectionhistoricalreports.md)|Stream|Get a Cloud PC's remote connection historical reports, such as **signInDateTime**, **signOutDateTime**, or **usageInHour**, in a given period.| |[Get total aggregated remote connection reports](../api/cloudpcreports-gettotalaggregatedremoteconnectionreports.md)|Stream|Get the total aggregated remote connection reports, like usage and **daysSinceLastUse**, in a given period.| +|[Retrieve Cloud PC performance metrics report](../api/cloudpcreports-retrievecloudpcperformancemetricsreport.md)|Stream|Get VM-level utilization and performance metrics for a specific Cloud PC, including CPU, memory, and network metrics.| |[Retrieve Cloud PC tenant metrics report](../api/cloudpcreports-retrievecloudpctenantmetricsreport.md)|Stream|Get a report related to the performance of Cloud PCs.| |[Retrieve cross-region disaster recovery report](../api/cloudpcreports-retrievecrossregiondisasterrecoveryreport.md)|Stream| Retrieve the Windows 365 cross-region disaster recovery report, including cloudPcId, userId, deviceId, cloudPCDeviceDisplayName, userPrincipalName, enabledDRType, disasterRecoveryStatus, licenseType, drHealthStatus, currentRestorePointDateTime, backupCloudPcStatus, and activationExpirationDateTime.| |[Retrieve connection quality reports](../api/cloudpcreports-retrieveconnectionqualityreports.md)|Stream|Get the overall connection quality reports for all devices in the current tenant, the regional connection quality trend report, and the regional connection quality insight report, including round trip time, available bandwidth, UPD usage, and dropped connections.| @@ -97,6 +98,33 @@ Use a method in the [Methods](#methods) section to get the corresponding report | troubleshootUserListReport | Indicates list report of users with troubleshoot details. | | unknownFutureValue | Evolvable enumeration sentinel value. Don't use. | +### cloudPcPerformanceMetricNamesType values + +|Member|Description| +|:---|:---| +|cpuUsageInPercentage|Indicates the percentage of allocated compute units in use by the Cloud PC (0-100).| +|availableMemoryInPercentage|Indicates the percentage of physical memory available to the guest OS (0-100). Lower values signal memory pressure.| +|networkInboundInBytes|Indicates the total bytes received across all network interfaces during the aggregation interval.| +|networkOutboundInBytes|Indicates the total bytes sent across all network interfaces during the aggregation interval.| +|inboundFlowsCount|Indicates the number of active inbound network flows.| +|outboundFlowsCount|Indicates the number of active outbound network flows.| +|unknownFutureValue|Evolvable enumeration sentinel value. Don't use.| + +### cloudPcVmPerformanceMetricsTimeRange values + +|Member|Description| +|:---|:---| +|last2Hours|Indicates a time range of the last 2 hours.| +|last4Hours|Indicates a time range of the last 4 hours.| +|last12Hours|Indicates a time range of the last 12 hours.| +|last24Hours|Default. Indicates a time range of the last 24 hours.| +|last48Hours|Indicates a time range of the last 48 hours.| +|last4Days|Indicates a time range of the last 4 days.| +|last7Days|Indicates a time range of the last 7 days.| +|last14Days|Indicates a time range of the last 14 days.| +|last28Days|Indicates a time range of the last 28 days.| +|unknownFutureValue|Evolvable enumeration sentinel value. Don't use.| + ## Relationships |Relationship|Type|Description| diff --git a/changelog/Microsoft.CloudManagedDesktop.json b/changelog/Microsoft.CloudManagedDesktop.json index f3c076de2e7..ec8c2566990 100644 --- a/changelog/Microsoft.CloudManagedDesktop.json +++ b/changelog/Microsoft.CloudManagedDesktop.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "61a46a19-7ac6-4a7b-b95f-cea56539b34a", + "ApiChange": "Method", + "ChangedApiName": "retrieveCloudPcPerformanceMetricsReport", + "ChangeType": "Addition", + "Description": "Added the retrieveCloudPcPerformanceMetricsReport method to the [cloudPcReports](https://learn.microsoft.com/graph/api/resources/cloudpcreports?view=graph-rest-beta&preserve-view=true) resource.", + "Target": "cloudPcReports" + }, + { + "Id": "61a46a19-7ac6-4a7b-b95f-cea56539b34a", + "ApiChange": "Enumeration", + "ChangedApiName": "cloudPcPerformanceMetricNamesType", + "ChangeType": "Addition", + "Description": "Added the **cloudPcPerformanceMetricNamesType** enumeration type.", + "Target": "cloudPcPerformanceMetricNamesType" + }, + { + "Id": "61a46a19-7ac6-4a7b-b95f-cea56539b34a", + "ApiChange": "Enumeration", + "ChangedApiName": "cloudPcVmPerformanceMetricsTimeRange", + "ChangeType": "Addition", + "Description": "Added the **cloudPcVmPerformanceMetricsTimeRange** enumeration type.", + "Target": "cloudPcVmPerformanceMetricsTimeRange" + } + ], + "Id": "61a46a19-7ac6-4a7b-b95f-cea56539b34a", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-08-21T00:00:00.000Z", + "WorkloadArea": "Device and app management", + "SubArea": "Cloud PC" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index e95267a3a9c..28b8500b8e3 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -170,6 +170,10 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] - Added the **coopEnforcement** property to the [authenticationBehaviors](/graph/api/resources/authenticationbehaviors?view=graph-rest-beta&preserve-view=true) resource. Application owners can use it to explicitly test Cross-Origin-Opener-Policy enforcement, temporarily suppress enforcement while remediating an incompatible browser authentication flow, or return to the service default. +### Device and app management | Cloud PC + +- Added the [retrieveCloudPcPerformanceMetricsReport](/graph/api/cloudpcreports-retrievecloudpcperformancemetricsreport?view=graph-rest-beta&preserve-view=true) method to the [cloudPcReports](/graph/api/resources/cloudpcreports?view=graph-rest-beta&preserve-view=true) resource type. Use it to get VM-level utilization and performance metrics for a specific Cloud PC, including CPU, memory, and network metrics. + ### Files - Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns?view=graph-rest-beta&preserve-view=true) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource type to create or update up to 20 columnDefinition objects in a single request. From 9c38353c16960d6d735f6da0d84ed4e421df3aa2 Mon Sep 17 00:00:00 2001 From: Mayur Santani <6283407+mjsantani@users.noreply.github.com> Date: Wed, 23 Sep 2026 11:24:53 -0700 Subject: [PATCH 159/189] Add beta docs for device provision action (ZTD 3P VDI) (#29116) * Add beta docs for device provision action (ZTD 3P VDI) Document the provision action on the device resource and the provisionResponse complex type for third-party VDI device provisioning. Includes changelog, What's new, and TOC updates. Sourced from schema PR 15988392 and API.md (PR 12063936). * Address engineer feedback: RBAC plural, approved VDI wording, drop service principal note * Potential fix for pull request finding Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> * Move provisionResponse to complexTypes in TOC (Copilot review feedback) * Address content review: IMPORTANT role note, lowercase title, approved-list wording, blob source; remove TOC complexTypes * Address content review feedback * fixes * fixes * Apply suggestion from @Danipocket * Fix * Correct public device provisioning contract per engineering review * Consolidate September preview announcement to remove duplicate heading --------- Co-authored-by: Mayur Santani Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> --- api-reference/beta/api/device-provision.md | 100 ++++++++++++++++++ .../device-provision-permissions.md | 11 ++ .../rbac-device-apis-provision.md | 7 ++ api-reference/beta/resources/device.md | 1 + .../beta/resources/provisionresponse.md | 50 +++++++++ api-reference/beta/toc/toc.mapping.json | 3 + ...Microsoft.ZeroTouchDeviceProvisioning.json | 30 ++++++ concepts/whats-new-overview.md | 4 + 8 files changed, 206 insertions(+) create mode 100644 api-reference/beta/api/device-provision.md create mode 100644 api-reference/beta/includes/permissions/device-provision-permissions.md create mode 100644 api-reference/beta/includes/rbac-for-apis/rbac-device-apis-provision.md create mode 100644 api-reference/beta/resources/provisionresponse.md create mode 100644 changelog/Microsoft.ZeroTouchDeviceProvisioning.json diff --git a/api-reference/beta/api/device-provision.md b/api-reference/beta/api/device-provision.md new file mode 100644 index 00000000000..5bd12c6c29a --- /dev/null +++ b/api-reference/beta/api/device-provision.md @@ -0,0 +1,100 @@ +--- +title: "device: provision" +description: "Provision a device on behalf of an approved Virtual Desktop Infrastructure (VDI) provider." +author: "mjsantani" +ms.localizationpriority: medium +ms.subservice: "entra-directory-management" +doc_type: apiPageType +ms.date: 06/19/2026 +--- + +# device: provision + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Provision a [device](../resources/device.md) on behalf of an approved Virtual Desktop Infrastructure (VDI) provider. + +This action wraps the Zero Touch Deployment (ZTD) protocol to create a device in a pending state in the customer's directory. The device can't be used for authentication until it completes its registration. The created device is stamped with a system label that identifies the approved VDI provider. + +Only VDI applications on Microsoft's approved list of VDI providers can successfully call this action. Calls from other applications are blocked even when the application is granted the required permission. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/device-provision-permissions.md)] + +[!INCLUDE [rbac-device-apis-provision](../includes/rbac-for-apis/rbac-device-apis-provision.md)] + +In addition to the permission, the calling application must be on Microsoft's approved list of VDI providers. + +## HTTP request + + +```http +POST /devices/provision +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the parameters. + +The following table shows the parameters that you can use with this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|provisioningBlob|String|An opaque blob, generated by the Microsoft Entra device identity runtime library and shared with approved VDI providers, that contains the information required to provision the device. Required.| + +## Response + +If successful, this action returns a `201 Created` response code and a [provisionResponse](../resources/provisionresponse.md) in the response body. The response also includes a `Location` header that contains the URI of the created device object. + +## Examples + +### Request + +The following example shows a request. + + +```http +POST https://graph.microsoft.com/beta/devices/provision +Content-Type: application/json + +{ + "provisioningBlob": "eyJ2ZXIiOiIxLjAiLCJub25jZSI6IjJkZjg1ZTdmYTk0ZjQ3In0" +} +``` + +### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/beta/$metadata#microsoft.graph.provisionResponse", + "challenge": "Y2hhbGxlbmdlVmFsdWVFeGFtcGxl", + "deviceId": "2ec25e3b-9243-4f3c-8c83-2e2a9b8a4f1a" +} +``` \ No newline at end of file diff --git a/api-reference/beta/includes/permissions/device-provision-permissions.md b/api-reference/beta/includes/permissions/device-provision-permissions.md new file mode 100644 index 00000000000..63f33365f63 --- /dev/null +++ b/api-reference/beta/includes/permissions/device-provision-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Device.ProvisionForVDI|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| \ No newline at end of file diff --git a/api-reference/beta/includes/rbac-for-apis/rbac-device-apis-provision.md b/api-reference/beta/includes/rbac-for-apis/rbac-device-apis-provision.md new file mode 100644 index 00000000000..90b1346216c --- /dev/null +++ b/api-reference/beta/includes/rbac-for-apis/rbac-device-apis-provision.md @@ -0,0 +1,7 @@ +--- +author: mjsantani +ms.topic: include +--- + +> [!IMPORTANT] +> For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. *Cloud Device Administrator* is the least privileged role supported for this operation. \ No newline at end of file diff --git a/api-reference/beta/resources/device.md b/api-reference/beta/resources/device.md index 6820beed576..04d27ee9add 100644 --- a/api-reference/beta/resources/device.md +++ b/api-reference/beta/resources/device.md @@ -32,6 +32,7 @@ This resource supports: |[Get](../api/device-get.md) | [device](device.md) |Read properties and relationships of device object.| |[Update](../api/device-update.md) | [device](device.md) |Update the properties of the device object. | |[Delete](../api/device-delete.md) | None |Delete the device object. | +|[Provision](../api/device-provision.md) | [provisionResponse](provisionresponse.md) |Provision a device on behalf of an approved Virtual Desktop Infrastructure (VDI) provider. | |[Get delta](../api/device-delta.md)|[device](device.md) collection| Get incremental changes for devices. | |[List member of](../api/device-list-memberof.md) |[directoryObject](directoryobject.md) collection| List the groups and administrative units that the device is a direct member of. | |[List transitive member of](../api/device-list-transitivememberof.md) |[directoryObject](directoryobject.md) collection| List the groups and administrative units that the device is a member of. This operation is transitive. | diff --git a/api-reference/beta/resources/provisionresponse.md b/api-reference/beta/resources/provisionresponse.md new file mode 100644 index 00000000000..96932e07368 --- /dev/null +++ b/api-reference/beta/resources/provisionresponse.md @@ -0,0 +1,50 @@ +--- +title: "provisionResponse resource type" +description: "Represents the response returned by the provision action when an approved Virtual Desktop Infrastructure (VDI) provider provisions a device." +author: "mjsantani" +ms.localizationpriority: medium +ms.subservice: "entra-directory-management" +doc_type: resourcePageType +ms.date: 06/19/2026 +--- + +# provisionResponse resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the response returned by the [provision](../api/device-provision.md) action of the [device](device.md) resource. + +An approved Virtual Desktop Infrastructure (VDI) provisioning service receives this response after it provisions a device and passes it to the device so that the device can complete its registration with the directory. + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|challenge|String|The cryptographic challenge that the device uses to complete its registration with the directory.| +|deviceId|String|The unique identifier of the provisioned device.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.provisionResponse", + "challenge": "String", + "deviceId": "String" +} +``` \ No newline at end of file diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 7e8f2a78594..c3c9d44fca4 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -1292,6 +1292,9 @@ "deviceTemplate", "mutualTlsOauthConfiguration" ], + "complexTypes": [ + "provisionResponse" + ], "childNodes": [ { "name": "Mobility management policy", diff --git a/changelog/Microsoft.ZeroTouchDeviceProvisioning.json b/changelog/Microsoft.ZeroTouchDeviceProvisioning.json new file mode 100644 index 00000000000..a1cf1c0665e --- /dev/null +++ b/changelog/Microsoft.ZeroTouchDeviceProvisioning.json @@ -0,0 +1,30 @@ +{ + "changelog": [ + { + "ChangeList": [ + { + "Id": "3e41aaee-3440-4969-b3ce-d2210fd5151c", + "ApiChange": "Resource", + "ChangedApiName": "provisionResponse", + "ChangeType": "Addition", + "Description": "Added the [provisionResponse](https://learn.microsoft.com/en-us/graph/api/resources/provisionresponse?view=graph-rest-beta) resource.", + "Target": "provisionResponse" + }, + { + "Id": "3e41aaee-3440-4969-b3ce-d2210fd5151c", + "ApiChange": "Method", + "ChangedApiName": "provision", + "ChangeType": "Addition", + "Description": "Added the [provision](https://learn.microsoft.com/en-us/graph/api/device-provision?view=graph-rest-beta) method to the [device](https://learn.microsoft.com/en-us/graph/api/resources/device?view=graph-rest-beta) resource.", + "Target": "device" + } + ], + "Id": "3e41aaee-3440-4969-b3ce-d2210fd5151c", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-21T19:00:00Z", + "WorkloadArea": "Identity and access", + "SubArea": "Directory management" + } + ] +} diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 28b8500b8e3..20460d56bb8 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -68,6 +68,10 @@ Added the **isDisabled** property to the [agentIdentityBlueprint](/graph/api/res - Added the **userObjectId** parameter to the [getByUser](/graph/api/filestoragecontainer-getbyuser?view=graph-rest-beta&preserve-view=true) method on the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource to retrieve a list of file storage containers owned by a user by passing the user's Microsoft Entra ID object ID. +### Identity and access | Directory management + +- Added the [provision](/graph/api/device-provision?view=graph-rest-beta&preserve-view=true) action to the [device](/graph/api/resources/device?view=graph-rest-beta&preserve-view=true) resource to enable approved Virtual Desktop Infrastructure (VDI) providers to provision devices in a customer's directory. + ### Identity and access | Governance Clarified that the [Get accessPackageResourceEnvironment](/graph/api/accesspackageresourceenvironment-get?view=graph-rest-beta&preserve-view=true) method returns SharePoint Online resource environments only when it's called with delegated permissions. A SharePoint Online resource environment corresponds to a SharePoint root site, so to retrieve root site information with application permissions, use the [List sites](/graph/api/site-list?view=graph-rest-beta&preserve-view=true) method with the `$filter=siteCollection/root ne null` query option. From 5058c4b406bb9a3fa8133a6968ed2591ccef36bb Mon Sep 17 00:00:00 2001 From: kchilka07 Date: Thu, 24 Sep 2026 08:09:31 -0700 Subject: [PATCH 160/189] Add device cloud licensing documentation (beta) (#29073) * Add device cloud licensing documentation (beta) - Add deviceCloudLicensing resource type with assignments, usageRights, and waitingMembers relationships - Add API docs: list usageRights, create assignment, list waitingMembers for device - Add permission stubs for device cloud licensing APIs - Update device.md with cloudLicensing property - Update TOCs (device-and-app-management, identity-and-access, toc.mapping.json) - Add changelog entry for device cloud licensing additions Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Fix single-tab examples in device cloud licensing docs Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update Microsoft.Cloud.Licensing.json * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update reference TOC * Fix * Address PR review feedback - Revert manual entry in generated toc/device-and-app-management/toc.yml (per "GENERATED FILE - DO NOT EDIT" guidance) - Add "List for device" / "Create for device" rows to Methods tables on usageRight, waitingMember, and assignment resource docs so the TOC generator and docs picks up the 3 new methods - Move the deviceCloudLicensing changelog record to be first in the array per changelog authoring guidance, and add 3 new Method changelog entries for the new methods - Fix $select/$expand contradiction in list-waitingmembers.md (example uses $expand, doc text only mentioned $select) * Update reference TOC * fixes * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Add missing changelog entry for assignments navigation property on deviceCloudLicensing Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Add missing changelog entries for usageRights and waitingMembers navigation properties on deviceCloudLicensing Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestion from @Danipocket * Disambiguate cloudLicensing usageRight resource page title/H1 from existing usageRight page --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: Microsoft Graph DevX Tooling --- ...g-devicecloudlicensing-list-usagerights.md | 191 ++++++++++++++++++ ...evicecloudlicensing-list-waitingmembers.md | 96 +++++++++ ...g-devicecloudlicensing-post-assignments.md | 112 ++++++++++ ...dlicensing-list-usagerights-permissions.md | 6 + ...censing-list-waitingmembers-permissions.md | 6 + ...dlicensing-post-assignments-permissions.md | 6 + .../resources/cloudlicensing-assignment.md | 9 +- .../cloudlicensing-devicecloudlicensing.md | 40 ++++ .../resources/cloudlicensing-usageright.md | 11 +- .../resources/cloudlicensing-waitingmember.md | 3 +- api-reference/beta/resources/device.md | 4 + .../toc/device-and-app-management/toc.yml | 8 + api-reference/beta/toc/toc.mapping.json | 1 + changelog/Microsoft.Cloud.Licensing.json | 74 +++++++ concepts/whats-new-overview.md | 9 + 15 files changed, 566 insertions(+), 10 deletions(-) create mode 100644 api-reference/beta/api/cloudlicensing-devicecloudlicensing-list-usagerights.md create mode 100644 api-reference/beta/api/cloudlicensing-devicecloudlicensing-list-waitingmembers.md create mode 100644 api-reference/beta/api/cloudlicensing-devicecloudlicensing-post-assignments.md create mode 100644 api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-list-usagerights-permissions.md create mode 100644 api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-list-waitingmembers-permissions.md create mode 100644 api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-post-assignments-permissions.md create mode 100644 api-reference/beta/resources/cloudlicensing-devicecloudlicensing.md diff --git a/api-reference/beta/api/cloudlicensing-devicecloudlicensing-list-usagerights.md b/api-reference/beta/api/cloudlicensing-devicecloudlicensing-list-usagerights.md new file mode 100644 index 00000000000..7835addef41 --- /dev/null +++ b/api-reference/beta/api/cloudlicensing-devicecloudlicensing-list-usagerights.md @@ -0,0 +1,191 @@ +--- +title: "List usageRights for device" +description: "Get a list of the usageRight objects granted to a device." +author: "patrick-starrin" +ms.localizationpriority: medium +ms.subservice: "cloud-licensing" +doc_type: apiPageType +ms.date: 06/15/2026 +--- + +# List usageRights for device + +Namespace: microsoft.graph.cloudLicensing + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Get a list of the [usageRight](../resources/cloudlicensing-usageright.md) objects granted to a [device](../resources/device.md). This API returns details about licenses that are directly assigned to a device and those licenses transitively assigned through membership in licensed groups. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/cloudlicensing-devicecloudlicensing-list-usagerights-permissions.md)] + +## HTTP request + + +```http +GET /devices/{deviceId}/cloudLicensing/usageRights +``` + +## Optional query parameters + +This method supports the `$select`, `$top`, `$expand`, and `$filter` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +The following examples show how to get usage rights information for devices based on specific filters: + + +```http +GET /devices/0231bf6c-f5ba-4133-80dd-b35d619bb4b5/cloudLicensing/usageRights?$filter=skuId eq a0cfb9b5-427c-4d42-9e6d-6727c6bbd8b5 +GET /devices/0231bf6c-f5ba-4133-80dd-b35d619bb4b5/cloudLicensing/usageRights?$filter=skuId in (a0cfb9b5-427c-4d42-9e6d-6727c6bbd8b5, 639dec6b-bb19-468b-871c-c5c441c4b0cb) +GET /devices/0231bf6c-f5ba-4133-80dd-b35d619bb4b5/cloudLicensing/usageRights?$filter=services/any(c:c/planId eq b7786c33-f595-4df5-bed7-9a2c8622df78) +GET /devices/0231bf6c-f5ba-4133-80dd-b35d619bb4b5/cloudLicensing/usageRights?$filter=services/any(c:c/planId in (b7786c33-f595-4df5-bed7-9a2c8622df78, f446866a-4b4c-492e-907a-998b3fde5a81)) +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [microsoft.graph.cloudLicensing.usageRight](../resources/cloudlicensing-usageright.md) objects in the response body. + +## Examples + +### Example 1: Get all usage rights for a device + +The following example shows how to get all usage rights granted to a device. + +#### Request + +The following example shows a request. + +```msgraph-interactive +GET https://graph.microsoft.com/beta/devices/0231bf6c-f5ba-4133-80dd-b35d619bb4b5/cloudLicensing/usageRights +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.cloudLicensing.usageRight", + "id": "a8d33537-2833-4f1c-8797-7aa891e15723", + "skuId": "a0cfb9b5-427c-4d42-9e6d-6727c6bbd8b5", + "skuPartNumber": "FABRIKAM_DEVICE", + "services": [ + { + "@odata.type": "microsoft.graph.cloudLicensing.service", + "assignableTo": "user,device,group", + "planId": "b7786c33-f595-4df5-bed7-9a2c8622df78", + "planName": "FABRIKAM_DESKTOP" + }, + { + "@odata.type": "microsoft.graph.cloudLicensing.service", + "assignableTo": "user,device,group", + "planId": "f446866a-4b4c-492e-907a-998b3fde5a81", + "planName": "FABRIKAM_REMOTE" + }, + { + "@odata.type": "microsoft.graph.cloudLicensing.service", + "assignableTo": "user,device,group", + "planId": "f08373fb-2530-4f97-8aa4-f424f071780d", + "planName": "FABRIKAM_TASKS" + } + ] + } + ] +} +``` + +### Example 2: Get all usage rights for a device with a specific SKU + +The following example shows how to get all usage rights granted to a device for a specific SKU. + +#### Request + +The following example shows a request. + +```msgraph-interactive +GET https://graph.microsoft.com/beta/devices/0231bf6c-f5ba-4133-80dd-b35d619bb4b5/cloudLicensing/usageRights?$filter=skuId eq a0cfb9b5-427c-4d42-9e6d-6727c6bbd8b5 +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.cloudLicensing.usageRight", + "id": "a8d33537-2833-4f1c-8797-7aa891e15723", + "skuId": "a0cfb9b5-427c-4d42-9e6d-6727c6bbd8b5", + "skuPartNumber": "FABRIKAM_DEVICE", + "services": [ + { + "@odata.type": "microsoft.graph.cloudLicensing.service", + "assignableTo": "user,device,group", + "planId": "b7786c33-f595-4df5-bed7-9a2c8622df78", + "planName": "FABRIKAM_DESKTOP" + }, + { + "@odata.type": "microsoft.graph.cloudLicensing.service", + "assignableTo": "user,device,group", + "planId": "f446866a-4b4c-492e-907a-998b3fde5a81", + "planName": "FABRIKAM_REMOTE" + }, + { + "@odata.type": "microsoft.graph.cloudLicensing.service", + "assignableTo": "user,device,group", + "planId": "f08373fb-2530-4f97-8aa4-f424f071780d", + "planName": "FABRIKAM_TASKS" + } + ] + } + ] +} +``` diff --git a/api-reference/beta/api/cloudlicensing-devicecloudlicensing-list-waitingmembers.md b/api-reference/beta/api/cloudlicensing-devicecloudlicensing-list-waitingmembers.md new file mode 100644 index 00000000000..12d000f761c --- /dev/null +++ b/api-reference/beta/api/cloudlicensing-devicecloudlicensing-list-waitingmembers.md @@ -0,0 +1,96 @@ +--- +title: "List waitingMembers for device" +description: "Get a list of the waitingMember objects for a device." +author: "patrick-starrin" +ms.localizationpriority: medium +ms.subservice: "cloud-licensing" +doc_type: apiPageType +ms.date: 06/15/2026 +--- + +# List waitingMembers for device + +Namespace: microsoft.graph.cloudLicensing + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Get a list of the [waitingMember](../resources/cloudlicensing-waitingmember.md) objects for a [device](../resources/device.md). This API returns details about allotments where this device is in the waiting room due to license capacity limits. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/cloudlicensing-devicecloudlicensing-list-waitingmembers-permissions.md)] + +## HTTP request + + +``` http +GET /devices/{deviceId}/cloudLicensing/waitingMembers +``` + +## Optional query parameters + +This method supports the `$select` and `$expand` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [microsoft.graph.cloudLicensing.waitingMember](../resources/cloudlicensing-waitingmember.md) objects in the response body. + +## Examples + +### Request + +The following example shows how to get all waiting members for a device. + +``` http +GET https://graph.microsoft.com/beta/devices/0231bf6c-f5ba-4133-80dd-b35d619bb4b5/cloudLicensing/waitingMembers?$expand=allotment($select=id,skuId,skuPartNumber) +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.cloudLicensing.waitingMember", + "id": "49caea1b-ad15-64f1-70c5-5c5e3563d19c", + "waitingSinceDateTime": "2024-11-22T17:11:10.6635939+00:00", + "allotment": + { + "@odata.type": "#microsoft.graph.cloudLicensing.allotment", + "id": "551f1755-0184-9e51-0bc7-f32bae5a1afb", + "skuId": "4b9405b0-7788-4568-add1-99614e613b69", + "skuPartNumber": "EXCHANGESTANDARD" + } + } + ] +} +``` diff --git a/api-reference/beta/api/cloudlicensing-devicecloudlicensing-post-assignments.md b/api-reference/beta/api/cloudlicensing-devicecloudlicensing-post-assignments.md new file mode 100644 index 00000000000..56c995ddcbc --- /dev/null +++ b/api-reference/beta/api/cloudlicensing-devicecloudlicensing-post-assignments.md @@ -0,0 +1,112 @@ +--- +title: "Create assignment for device" +description: "Create a new license assignment by posting to the assignments collection for a device." +author: "patrick-starrin" +ms.localizationpriority: medium +ms.date: 06/15/2026 +ms.subservice: "cloud-licensing" +doc_type: apiPageType +--- + +# Create assignment for device + +Namespace: microsoft.graph.cloudLicensing + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Create a new license [assignment](../resources/cloudlicensing-assignment.md) by posting to the **assignments** collection for a [device](../resources/device.md). + +An assignment must always have a direct relationship to an allotment and to a user, group, or device. If an assignment is created by posting to the **assignments** collection of a device, located at `/devices/{deviceId}/cloudLicensing/assignments`, the **allotment** relationship must be established in the request body. Assignments can also be created by posting to the **assignments** collection of an organization, the **assignments** collection of an allotment, or the **assignments** collection of a user or group. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/cloudlicensing-devicecloudlicensing-post-assignments-permissions.md)] + +## HTTP request + + +``` http +POST /devices/{deviceId}/cloudLicensing/assignments +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the [assignment](../resources/cloudlicensing-assignment.md) object. + +You can specify the following properties when you create an **assignment**. + +|Property|Type|Description| +|:---|:---|:---| +|disabledServicePlanIds|Guid collection|The list of disabled service plans for this assignment. An empty list indicates that all services are enabled. Required. Not nullable.| + +You can specify the following relationships when you create an **assignment**. + +|Relationship|Type|Description| +|:---|:---|:---| +|allotment|[microsoft.graph.cloudLicensing.allotment](../resources/cloudlicensing-allotment.md)|The allotment from which licenses are assigned. Required. Not nullable.| + +## Response + +If successful, this method returns a `201 Created` response code and a [microsoft.graph.cloudLicensing.assignment](../resources/cloudlicensing-assignment.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/beta/devices/0231bf6c-f5ba-4133-80dd-b35d619bb4b5/cloudLicensing/assignments +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.cloudLicensing.assignment", + "allotment@odata.bind": "https://graph.microsoft.com/beta/admin/cloudLicensing/allotments/rkocgef3dgjhnu3gmu2mqhbdbmwcymnf6fk3k6a7zbui5e7gfpmi", + "disabledServicePlanIds": [ + "bed136c6-b799-4462-824d-fc045d3a9d25" + ] +} +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.cloudLicensing.assignment", + "disabledServicePlanIds": [ + "bed136c6-b799-4462-824d-fc045d3a9d25" + ] +} +``` diff --git a/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-list-usagerights-permissions.md b/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-list-usagerights-permissions.md new file mode 100644 index 00000000000..f1b43053beb --- /dev/null +++ b/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-list-usagerights-permissions.md @@ -0,0 +1,6 @@ + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|CloudLicensing-UsageRights.Read|CloudLicensing-UsageRights.ReadWrite| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|CloudLicensing-UsageRights.Read.All|CloudLicensing-UsageRights.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-list-waitingmembers-permissions.md b/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-list-waitingmembers-permissions.md new file mode 100644 index 00000000000..b80402105b1 --- /dev/null +++ b/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-list-waitingmembers-permissions.md @@ -0,0 +1,6 @@ + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|CloudLicensing-Allotment.Read|CloudLicensing-Allotment.ReadWrite| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|CloudLicensing-Allotment.Read.All|CloudLicensing-Allotment.ReadWrite.All| diff --git a/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-post-assignments-permissions.md b/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-post-assignments-permissions.md new file mode 100644 index 00000000000..3f85e9dad78 --- /dev/null +++ b/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-post-assignments-permissions.md @@ -0,0 +1,6 @@ + +|Permission type|Least privileged permission|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|CloudLicensing-Assignment.ReadWrite|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|CloudLicensing-Assignment.ReadWrite.All|Not available.| diff --git a/api-reference/beta/resources/cloudlicensing-assignment.md b/api-reference/beta/resources/cloudlicensing-assignment.md index a0029bf95e5..d43ad292f4d 100644 --- a/api-reference/beta/resources/cloudlicensing-assignment.md +++ b/api-reference/beta/resources/cloudlicensing-assignment.md @@ -1,6 +1,6 @@ --- title: "assignment resource type" -description: "Represents a license assignment that grants a license for the product-SKU contained within an allotment directly to the assigned user or indirectly to each member of the assigned group." +description: "Represents a license assignment that grants a license for the product-SKU contained within an allotment directly to the assigned user or device, or indirectly to each member of the assigned group." author: "patrick-starrin" ms.date: 07/18/2025 ms.localizationpriority: medium @@ -14,7 +14,7 @@ Namespace: microsoft.graph.cloudLicensing [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a license assignment that grants a license for the product-SKU contained within an allotment directly to the assigned user or indirectly to each member of the assigned group. Each unique user consumes one license from each allotment to which they're directly or indirectly assigned. +Represents a license assignment that grants a license for the product-SKU contained within an allotment directly to the assigned user or device, or indirectly to each member of the assigned group. Each unique user or device consumes one license from each allotment to which they're directly or indirectly assigned. Inherits from [entity](../resources/entity.md). @@ -29,8 +29,9 @@ Inherits from [entity](../resources/entity.md). |[Create for allotment](../api/cloudlicensing-allotment-post-assignments.md)|[microsoft.graph.cloudLicensing.assignment](../resources/cloudlicensing-assignment.md)|Create a new license [assignment](../resources/cloudlicensing-assignment.md) by posting to the **assignments** collection of an [allotment](../resources/cloudlicensing-allotment.md).| |[Create for user](../api/cloudlicensing-usercloudlicensing-post-assignments.md)|[microsoft.graph.cloudLicensing.assignment](../resources/cloudlicensing-assignment.md)|Create a new license [assignment](../resources/cloudlicensing-assignment.md) by posting to a [user](../resources/user.md)'s **assignments** collection.| |[Create for group](../api/cloudlicensing-groupcloudlicensing-post-assignments.md)|[microsoft.graph.cloudLicensing.assignment](../resources/cloudlicensing-assignment.md)|Create a new license [assignment](../resources/cloudlicensing-assignment.md) by posting to the **assignments** collection for a [group](../resources/group.md).| +|[Create for device](../api/cloudlicensing-devicecloudlicensing-post-assignments.md)|[microsoft.graph.cloudLicensing.assignment](../resources/cloudlicensing-assignment.md)|Create a new license [assignment](../resources/cloudlicensing-assignment.md) by posting to the **assignments** collection for a [device](../resources/device.md).| |[Reprocess assignments](../api/cloudlicensing-assignment-reprocessassignments.md)|None|Reprocess existing license [assignments](../resources/cloudlicensing-assignment.md) for a user by calling the **reprocessAssignments** action on a user's assignments.| -|[Get assignedTo](../api/cloudlicensing-assignment-get-assignedto.md)|[directoryObject](../resources/directoryobject.md)| Get a [user](../resources/directoryobject.md) or [group](../resources/directoryobject.md) object for a given [assignment](../resources/cloudlicensing-assignment.md) to which licenses are assigned.| +|[Get assignedTo](../api/cloudlicensing-assignment-get-assignedto.md)|[directoryObject](../resources/directoryobject.md)| Get a [user](../resources/user.md), [group](../resources/group.md), or [device](../resources/device.md) object for a given [assignment](../resources/cloudlicensing-assignment.md) to which licenses are assigned.| |[Get allotment for assignment](../api/cloudlicensing-assignment-get-allotment.md)|[microsoft.graph.cloudLicensing.allotment](../resources/cloudlicensing-allotment.md)|Get the [allotment](../resources/cloudlicensing-allotment.md) that is the source of the licenses used in the assignment.| ## Properties @@ -43,7 +44,7 @@ Inherits from [entity](../resources/entity.md). |Relationship|Type|Description| |:---|:---|:---| |allotment|[microsoft.graph.cloudLicensing.allotment](../resources/cloudlicensing-allotment.md)|The allotment from which licenses are assigned. Not nullable.| -|assignedTo|[directoryObject](../resources/directoryobject.md)|The user or group to which licenses are assigned. Not nullable.| +|assignedTo|[directoryObject](../resources/directoryobject.md)|The user, group, or device to which licenses are assigned. Not nullable.| ## JSON representation The following JSON representation shows the resource type. diff --git a/api-reference/beta/resources/cloudlicensing-devicecloudlicensing.md b/api-reference/beta/resources/cloudlicensing-devicecloudlicensing.md new file mode 100644 index 00000000000..8d90d0b44ce --- /dev/null +++ b/api-reference/beta/resources/cloudlicensing-devicecloudlicensing.md @@ -0,0 +1,40 @@ +--- +title: "deviceCloudLicensing resource type" +description: "Represents the relationships of a device to cloud licensing resources." +author: "patrick-starrin" +ms.date: 06/15/2026 +ms.localizationpriority: medium +ms.subservice: "cloud-licensing" +doc_type: resourcePageType +--- + +# deviceCloudLicensing resource type + +Namespace: microsoft.graph.cloudLicensing + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the relationships of a [device](../resources/device.md) to cloud licensing resources. + +## Properties +None. + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|assignments|[microsoft.graph.cloudLicensing.assignment](../resources/cloudlicensing-assignment.md) collection|The list of assignments that are directly assigned to this device.| +|usageRights|[microsoft.graph.cloudLicensing.usageRight](../resources/cloudlicensing-usageright.md) collection|The rights of the device to use various services, granted by the combination of its assigned licenses.| +|waitingMembers|[microsoft.graph.cloudLicensing.waitingMember](../resources/cloudlicensing-waitingmember.md) collection|List of over-assigned devices that are in the waiting room for an allotment due to license capacity limits.| + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.cloudLicensing.deviceCloudLicensing" +} +``` diff --git a/api-reference/beta/resources/cloudlicensing-usageright.md b/api-reference/beta/resources/cloudlicensing-usageright.md index 25d489ec601..681b3d5093e 100644 --- a/api-reference/beta/resources/cloudlicensing-usageright.md +++ b/api-reference/beta/resources/cloudlicensing-usageright.md @@ -1,6 +1,6 @@ --- -title: "usageRight resource type" -description: "Represents the right of a user or group to use a particular set of services, as granted by the combination of their assigned licenses for the same subscribedSku." +title: "cloudLicensing usageRight resource type" +description: "Represents a principal's right to use a particular set of services, as granted by the combination of their assigned licenses for the same subscribedSku." author: "patrick-starrin" ms.localizationpriority: medium ms.subservice: "cloud-licensing" @@ -8,13 +8,13 @@ doc_type: resourcePageType ms.date: 10/17/2024 --- -# usageRight resource type +# cloudLicensing usageRight resource type Namespace: microsoft.graph.cloudLicensing [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents the right of a user or group to use a particular set of services, as granted by the combination of their assigned licenses for the same [subscribedSku](../resources/subscribedsku.md). +Represents a principal's right to use a particular set of services, as granted by the combination of their assigned licenses for the same [subscribedSku](../resources/subscribedsku.md). Inherits from [entity](../resources/entity.md). @@ -23,7 +23,8 @@ Inherits from [entity](../resources/entity.md). |:---|:---|:---| |[List for group](../api/cloudlicensing-groupcloudlicensing-list-usagerights.md)|[microsoft.graph.cloudLicensing.usageRight](../resources/cloudlicensing-usageright.md) collection|Get a list of the [usageRight](../resources/cloudlicensing-usageright.md) objects granted to a group.| |[List for user](../api/cloudlicensing-usercloudlicensing-list-usagerights.md)|[microsoft.graph.cloudLicensing.usageRight](../resources/cloudlicensing-usageright.md) collection|Get a list of the [usageRight](../resources/cloudlicensing-usageright.md) objects granted to a user.| -|[Get](../api/cloudlicensing-usageright-get.md)|[microsoft.graph.cloudLicensing.usageRight](../resources/cloudlicensing-usageright.md)|Get the properties and relationships of a [usageRight](../resources/cloudlicensing-usageright.md) for a [user](../resources/user.md) or [group](../resources/group.md).| +|[List for device](../api/cloudlicensing-devicecloudlicensing-list-usagerights.md)|[microsoft.graph.cloudLicensing.usageRight](../resources/cloudlicensing-usageright.md) collection|Get a list of the [usageRight](../resources/cloudlicensing-usageright.md) objects granted to a device.| +|[Get](../api/cloudlicensing-usageright-get.md)|[microsoft.graph.cloudLicensing.usageRight](../resources/cloudlicensing-usageright.md)|Get the properties and relationships of a [usageRight](../resources/cloudlicensing-usageright.md) for a [user](../resources/user.md), [group](../resources/group.md), or [device](../resources/device.md).| |[List assignments](../api/cloudlicensing-usageright-list-assignments.md)|[microsoft.graph.cloudLicensing.assignment](../resources/cloudlicensing-assignment.md) collection|Get a list of the [assignment](../resources/cloudlicensing-assignment.md) objects which combine to form this [usageRight](../resources/cloudlicensing-usageright.md).| ## Properties diff --git a/api-reference/beta/resources/cloudlicensing-waitingmember.md b/api-reference/beta/resources/cloudlicensing-waitingmember.md index 6b0e9cad235..05c9531d2cd 100644 --- a/api-reference/beta/resources/cloudlicensing-waitingmember.md +++ b/api-reference/beta/resources/cloudlicensing-waitingmember.md @@ -23,6 +23,7 @@ Inherits from [entity](../resources/entity.md). |:---|:---|:---| |[List for allotment](../api/cloudlicensing-allotment-list-waitingmembers.md)|[microsoft.graph.cloudLicensing.waitingMember](../resources/cloudlicensing-waitingmember.md) collection|Get a list of over-assigned [users](../resources/cloudlicensing-waitingmember.md) who are in the waiting room due to license capacity limits. | |[List for user](../api/cloudlicensing-usercloudlicensing-list-waitingmembers.md)|[microsoft.graph.cloudLicensing.waitingMember](../resources/cloudlicensing-waitingmember.md) collection|Get a list of the [waitingMember](../resources/cloudlicensing-waitingmember.md) objects granted to a user.| +|[List for device](../api/cloudlicensing-devicecloudlicensing-list-waitingmembers.md)|[microsoft.graph.cloudLicensing.waitingMember](../resources/cloudlicensing-waitingmember.md) collection|Get a list of the [waitingMember](../resources/cloudlicensing-waitingmember.md) objects for a device.| |[Get](../api/cloudlicensing-waitingmember-get.md)|[microsoft.graph.cloudLicensing.waitingMember](../resources/cloudlicensing-waitingmember.md)|Read the properties and relationships of [waitingMember](../resources/cloudlicensing-waitingmember.md) object.| ## Properties @@ -35,7 +36,7 @@ Inherits from [entity](../resources/entity.md). |Relationship|Type|Description| |:---|:---|:---| |allotment|[microsoft.graph.cloudLicensing.allotment](../resources/cloudlicensing-allotment.md)|The allotment from which licenses are assigned. Not nullable.| -|assignedTo|[directoryObject](../resources/directoryobject.md)|The user or group to which licenses are assigned. Not nullable.| +|assignedTo|[directoryObject](../resources/directoryobject.md)|The user or device to which licenses are assigned. Not nullable.| ## JSON representation The following JSON representation shows the resource type. diff --git a/api-reference/beta/resources/device.md b/api-reference/beta/resources/device.md index 04d27ee9add..cd24c878b61 100644 --- a/api-reference/beta/resources/device.md +++ b/api-reference/beta/resources/device.md @@ -64,6 +64,7 @@ This resource supports: |alternativeNames|String collection|List of alternative names for the device.| |alternativeSecurityIds|[alternativeSecurityId](alternativeSecurityId.md) collection| For internal use only. Not nullable. Supports `$filter` (`eq`, `not`, `ge`, `le`). | |approximateLastSignInDateTime|DateTimeOffset| The timestamp type represents date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`. Read-only. Supports `$filter` (`eq`, `ne`, `not`, `ge`, `le`, and `eq` on `null` values) and `$orderby`. | +|cloudLicensing|[microsoft.graph.cloudLicensing.deviceCloudLicensing](cloudlicensing-devicecloudlicensing.md)|The cloud licensing relationships for this device, including assignments, usage rights, and waiting members.| |complianceExpirationDateTime|DateTimeOffset| The timestamp when the device is no longer deemed compliant. The timestamp type represents date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`. Read-only. | |deviceCategory|String|User-defined property set by Intune to automatically add devices to groups and simplify managing devices.| |deviceId|String| Unique identifier set by Azure Device Registration Service at the time of registration. This ID is an alternate key that can be used to reference the device object. Also supports `$filter` (`eq`, `ne`, `not`, `startsWith`). | @@ -132,6 +133,9 @@ The following JSON representation shows the resource type. "accountEnabled": "Boolean", "alternativeNames": ["String"], "approximateLastSignInDateTime": "String (timestamp)", + "cloudLicensing": { + "@odata.type": "microsoft.graph.cloudLicensing.deviceCloudLicensing" + }, "complianceExpirationDateTime": "String (timestamp)", "deviceCategory": "String", "deviceId": "String", diff --git a/api-reference/beta/toc/device-and-app-management/toc.yml b/api-reference/beta/toc/device-and-app-management/toc.yml index 10c46d5e0d8..b6ed24a6356 100644 --- a/api-reference/beta/toc/device-and-app-management/toc.yml +++ b/api-reference/beta/toc/device-and-app-management/toc.yml @@ -102,6 +102,8 @@ items: href: ../../api/cloudlicensing-usercloudlicensing-post-assignments.md - name: Create for group href: ../../api/cloudlicensing-groupcloudlicensing-post-assignments.md + - name: Create for device + href: ../../api/cloudlicensing-devicecloudlicensing-post-assignments.md - name: Reprocess assignments href: ../../api/cloudlicensing-assignment-reprocessassignments.md - name: Get assignedTo @@ -128,6 +130,8 @@ items: href: ../../api/cloudlicensing-groupcloudlicensing-list-usagerights.md - name: List for user href: ../../api/cloudlicensing-usercloudlicensing-list-usagerights.md + - name: List for device + href: ../../api/cloudlicensing-devicecloudlicensing-list-usagerights.md - name: Get href: ../../api/cloudlicensing-usageright-get.md - name: List assignments @@ -140,10 +144,14 @@ items: href: ../../api/cloudlicensing-allotment-list-waitingmembers.md - name: List for user href: ../../api/cloudlicensing-usercloudlicensing-list-waitingmembers.md + - name: List for device + href: ../../api/cloudlicensing-devicecloudlicensing-list-waitingmembers.md - name: Get href: ../../api/cloudlicensing-waitingmember-get.md - name: Complex types items: + - name: Device cloud licensing + href: ../../resources/cloudlicensing-devicecloudlicensing.md - name: Group cloud licensing href: ../../resources/cloudlicensing-groupcloudlicensing.md - name: Service diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index c3c9d44fca4..ebe99e17c91 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -592,6 +592,7 @@ "microsoft.graph.cloudLicensing.waitingMember" ], "complexTypes": [ + "microsoft.graph.cloudLicensing.deviceCloudLicensing", "microsoft.graph.cloudLicensing.groupCloudLicensing", "microsoft.graph.cloudLicensing.service", "microsoft.graph.cloudLicensing.subscription", diff --git a/changelog/Microsoft.Cloud.Licensing.json b/changelog/Microsoft.Cloud.Licensing.json index 4963cc923f7..7c20117edd4 100644 --- a/changelog/Microsoft.Cloud.Licensing.json +++ b/changelog/Microsoft.Cloud.Licensing.json @@ -1,5 +1,79 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "d4e7a1b3-5c92-4f8e-b6d1-3a9e8f2c7d50", + "ApiChange": "Resource", + "ChangedApiName": "deviceCloudLicensing", + "ChangeType": "Addition", + "Description": "Added the [deviceCloudLicensing](https://learn.microsoft.com/en-us/graph/api/resources/cloudlicensing-devicecloudlicensing?view=graph-rest-beta) resource type.", + "Target": "deviceCloudLicensing" + }, + { + "Id": "d4e7a1b3-5c92-4f8e-b6d1-3a9e8f2c7d50", + "ApiChange": "Property", + "ChangedApiName": "cloudLicensing", + "ChangeType": "Addition", + "Description": "Added the **cloudLicensing** property to the [device](https://learn.microsoft.com/en-us/graph/api/resources/device?view=graph-rest-beta) resource.", + "Target": "device" + }, + { + "Id": "d4e7a1b3-5c92-4f8e-b6d1-3a9e8f2c7d50", + "ApiChange": "Relationship", + "ChangedApiName": "assignments", + "ChangeType": "Addition", + "Description": "Added the **assignments** navigation property to the [deviceCloudLicensing](https://learn.microsoft.com/en-us/graph/api/resources/cloudlicensing-devicecloudlicensing?view=graph-rest-beta) resource.", + "Target": "deviceCloudLicensing" + }, + { + "Id": "d4e7a1b3-5c92-4f8e-b6d1-3a9e8f2c7d50", + "ApiChange": "Relationship", + "ChangedApiName": "usageRights", + "ChangeType": "Addition", + "Description": "Added the **usageRights** navigation property to the [deviceCloudLicensing](https://learn.microsoft.com/en-us/graph/api/resources/cloudlicensing-devicecloudlicensing?view=graph-rest-beta) resource.", + "Target": "deviceCloudLicensing" + }, + { + "Id": "d4e7a1b3-5c92-4f8e-b6d1-3a9e8f2c7d50", + "ApiChange": "Relationship", + "ChangedApiName": "waitingMembers", + "ChangeType": "Addition", + "Description": "Added the **waitingMembers** navigation property to the [deviceCloudLicensing](https://learn.microsoft.com/en-us/graph/api/resources/cloudlicensing-devicecloudlicensing?view=graph-rest-beta) resource.", + "Target": "deviceCloudLicensing" + }, + { + "Id": "d4e7a1b3-5c92-4f8e-b6d1-3a9e8f2c7d50", + "ApiChange": "Method", + "ChangedApiName": "List usageRights for device", + "ChangeType": "Addition", + "Description": "Added the [List usageRights for device](https://learn.microsoft.com/en-us/graph/api/cloudlicensing-devicecloudlicensing-list-usagerights?view=graph-rest-beta) method to the [usageRight](https://learn.microsoft.com/en-us/graph/api/resources/cloudlicensing-usageright?view=graph-rest-beta) resource.", + "Target": "usageRight" + }, + { + "Id": "d4e7a1b3-5c92-4f8e-b6d1-3a9e8f2c7d50", + "ApiChange": "Method", + "ChangedApiName": "List waitingMembers for device", + "ChangeType": "Addition", + "Description": "Added the [List waitingMembers for device](https://learn.microsoft.com/en-us/graph/api/cloudlicensing-devicecloudlicensing-list-waitingmembers?view=graph-rest-beta) method to the [waitingMember](https://learn.microsoft.com/en-us/graph/api/resources/cloudlicensing-waitingmember?view=graph-rest-beta) resource.", + "Target": "waitingMember" + }, + { + "Id": "d4e7a1b3-5c92-4f8e-b6d1-3a9e8f2c7d50", + "ApiChange": "Method", + "ChangedApiName": "Create assignment for device", + "ChangeType": "Addition", + "Description": "Added the [Create assignment for device](https://learn.microsoft.com/en-us/graph/api/cloudlicensing-devicecloudlicensing-post-assignments?view=graph-rest-beta) method to the [assignment](https://learn.microsoft.com/en-us/graph/api/resources/cloudlicensing-assignment?view=graph-rest-beta) resource.", + "Target": "assignment" + } + ], + "Id": "d4e7a1b3-5c92-4f8e-b6d1-3a9e8f2c7d50", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-08T22:00:00.0000000Z", + "WorkloadArea": "Device and app management", + "SubArea": "Cloud licensing" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 20460d56bb8..2a23b753c40 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -174,6 +174,15 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] - Added the **coopEnforcement** property to the [authenticationBehaviors](/graph/api/resources/authenticationbehaviors?view=graph-rest-beta&preserve-view=true) resource. Application owners can use it to explicitly test Cross-Origin-Opener-Policy enforcement, temporarily suppress enforcement while remediating an incompatible browser authentication flow, or return to the service default. +### Device and app management | Cloud licensing + +Added cloud licensing support for devices, enabling license assignment and usage tracking for device-based licensing scenarios. The new capabilities include: + +- Added the [deviceCloudLicensing](/graph/api/resources/cloudlicensing-devicecloudlicensing?view=graph-rest-beta&preserve-view=true) resource type and the **cloudLicensing** property to the [device](/graph/api/resources/device?view=graph-rest-beta&preserve-view=true) resource. +- Use the [List usageRights for device](/graph/api/cloudlicensing-devicecloudlicensing-list-usagerights?view=graph-rest-beta&preserve-view=true) method to retrieve usage rights granted to a device through direct assignments and transitive group-based assignments. +- Use the [Create assignment for device](/graph/api/cloudlicensing-devicecloudlicensing-post-assignments?view=graph-rest-beta&preserve-view=true) method to assign licenses directly to devices. +- Use the [List waitingMembers for device](/graph/api/cloudlicensing-devicecloudlicensing-list-waitingmembers?view=graph-rest-beta&preserve-view=true) method to retrieve devices in the waiting room due to license capacity limits. + ### Device and app management | Cloud PC - Added the [retrieveCloudPcPerformanceMetricsReport](/graph/api/cloudpcreports-retrievecloudpcperformancemetricsreport?view=graph-rest-beta&preserve-view=true) method to the [cloudPcReports](/graph/api/resources/cloudpcreports?view=graph-rest-beta&preserve-view=true) resource type. Use it to get VM-level utilization and performance metrics for a specific Cloud PC, including CPU, memory, and network metrics. From 62e6da2d5f8651cbdc81c9a5a92a48ba7fd1108d Mon Sep 17 00:00:00 2001 From: Akhil Potturi <207085874+akhil-potturi@users.noreply.github.com> Date: Thu, 24 Sep 2026 14:55:21 -0400 Subject: [PATCH 161/189] Promote Tenant Governance APIs to v1.0 and align beta namespace (#29589) * Promote Tenant Governance APIs to v1.0 Flatten the beta namespace, publish the approved v1.0 reference surface, and add refresh status, navigation, changelog, and What's New updates. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Fix Tenant Governance changelog links Use published beta URLs for renamed resources and avoid linking the new long-running operation page before publication. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Address Tenant Governance review feedback Remove unpublished refresh status documentation, restore generated TOCs, add redirects for renamed beta resources, and resolve Learn Build warnings. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Align Tenant Governance docs with deployed namespace Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update Tenant Governance overview ownership Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --------- Co-authored-by: Akhil Potturi Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --- ...rvices-delete-governancepolicytemplates.md | 11 +- ...nceservices-governanceinvitation-delete.md | 5 +- ...rnanceservices-governanceinvitation-get.md | 11 +- ...ceservices-governancepolicytemplate-get.md | 21 +- ...ervices-governancepolicytemplate-update.md | 25 +- ...anceservices-governancerelationship-get.md | 11 +- ...eservices-governancerelationship-update.md | 13 +- ...overnanceservices-governancerequest-get.md | 11 +- ...rnanceservices-governancerequest-update.md | 13 +- ...anceservices-list-governanceinvitations.md | 9 +- ...services-list-governancepolicytemplates.md | 17 +- ...ceservices-list-governancerelationships.md | 9 +- ...ernanceservices-list-governancerequests.md | 9 +- ...tgovernanceservices-list-relatedtenants.md | 10 +- ...anceservices-post-governanceinvitations.md | 13 +- ...services-post-governancepolicytemplates.md | 25 +- ...ernanceservices-post-governancerequests.md | 15 +- ...antgovernanceservices-relatedtenant-get.md | 15 +- ...overnanceservices-relatedtenant-refresh.md | 5 +- ...nceservices-relatedtenant-refreshstatus.md | 9 +- ...tgovernancesetting-enablerelatedtenants.md | 5 +- ...nceservices-tenantgovernancesetting-get.md | 11 +- ...services-tenantgovernancesetting-update.md | 11 +- api-reference/beta/resources/directory.md | 4 +- .../enums-tenantgovernanceservices.md | 10 +- ...services-applicationresourcepermission.md} | 16 +- ...ces-applicationsrequiredresourceaccess.md} | 16 +- ...vernanceservices-b2bregistrationmetrics.md | 15 +- ...anceservices-b2bregistrationmetricsbase.md | 8 +- ...eservices-b2bregistrationmetricsinitial.md | 19 +- ...ceservices-b2bregistrationmetricsrecent.md | 19 +- ...rnanceservices-b2bsigninactivitymetrics.md | 15 +- ...ceservices-b2bsigninactivitymetricsbase.md | 8 +- ...ervices-b2bsigninactivitymetricsinitial.md | 23 +- ...services-b2bsigninactivitymetricsrecent.md | 23 +- ...tenantgovernanceservices-billingmetrics.md | 15 +- ...ntgovernanceservices-billingmetricsbase.md | 8 +- ...overnanceservices-billingmetricsinitial.md | 29 +- ...governanceservices-billingmetricsrecent.md | 29 +- ...s-delegatedadministrationroleassignment.md | 15 +- ...tedadministrationroleassignmentsnapshot.md | 12 +- ...governanceservices-governanceinvitation.md | 15 +- ...vernanceservices-governancerelationship.md | 23 +- ...antgovernanceservices-governancerequest.md | 25 +- ...rnanceservices-investigationactionstep.md} | 16 +- ...ernanceservices-investigationactionurl.md} | 14 +- ...eservices-multitenantapplicationmetrics.md | 15 +- ...vices-multitenantapplicationmetricsbase.md | 8 +- ...es-multitenantapplicationmetricsinitial.md | 19 +- ...ces-multitenantapplicationmetricsrecent.md | 19 +- ...ices-multitenantapplicationstoprovision.md | 15 +- ...titenantapplicationstoprovisionsnapshot.md | 12 +- .../tenantgovernanceservices-relatedtenant.md | 27 +- ...ceservices-relatedtenantsrefreshrequest.md | 8 +- ...nceservices-relatedtenantsrefreshstatus.md | 9 +- ...ntgovernanceservices-relationshippolicy.md | 17 +- .../tenantgovernanceservices-roletemplate.md | 9 +- ...nanceservices-tenantgovernance-overview.md | 18 +- ...nantgovernanceservices-tenantgovernance.md | 21 +- ...ervices-tenantgovernancepolicytemplate.md} | 29 +- ...ernanceservices-tenantgovernancesetting.md | 13 +- api-reference/beta/toc/toc.mapping.json | 49 +- ...rvices-delete-governancepolicytemplates.md | 76 +++ ...nceservices-governanceinvitation-delete.md | 76 +++ ...rnanceservices-governanceinvitation-get.md | 94 ++++ ...ceservices-governancepolicytemplate-get.md | 174 ++++++ ...ervices-governancepolicytemplate-update.md | 298 ++++++++++ ...anceservices-governancerelationship-get.md | 135 +++++ ...eservices-governancerelationship-update.md | 146 +++++ ...overnanceservices-governancerequest-get.md | 135 +++++ ...rnanceservices-governancerequest-update.md | 144 +++++ ...anceservices-list-governanceinvitations.md | 98 ++++ ...services-list-governancepolicytemplates.md | 134 +++++ ...ceservices-list-governancerelationships.md | 139 +++++ ...ernanceservices-list-governancerequests.md | 139 +++++ ...tgovernanceservices-list-relatedtenants.md | 171 ++++++ ...anceservices-post-governanceinvitations.md | 104 ++++ ...services-post-governancepolicytemplates.md | 181 ++++++ ...ernanceservices-post-governancerequests.md | 147 +++++ ...antgovernanceservices-relatedtenant-get.md | 185 +++++++ ...overnanceservices-relatedtenant-refresh.md | 76 +++ ...tgovernancesetting-enablerelatedtenants.md | 79 +++ ...nceservices-tenantgovernancesetting-get.md | 89 +++ ...services-tenantgovernancesetting-update.md | 98 ++++ ...e-governancepolicytemplates-permissions.md | 11 + ...governanceinvitation-delete-permissions.md | 11 + ...es-governanceinvitation-get-permissions.md | 11 + ...overnancepolicytemplate-get-permissions.md | 11 + ...rnancepolicytemplate-update-permissions.md | 11 + ...-governancerelationship-get-permissions.md | 11 + ...vernancerelationship-update-permissions.md | 11 + ...vices-governancerequest-get-permissions.md | 11 + ...es-governancerequest-update-permissions.md | 11 + ...-list-governanceinvitations-permissions.md | 11 + ...t-governancepolicytemplates-permissions.md | 11 + ...ist-governancerelationships-permissions.md | 11 + ...ces-list-governancerequests-permissions.md | 11 + ...ervices-list-relatedtenants-permissions.md | 11 + ...-post-governanceinvitations-permissions.md | 11 + ...t-governancepolicytemplates-permissions.md | 11 + ...ces-post-governancerequests-permissions.md | 11 + ...eservices-relatedtenant-get-permissions.md | 11 + ...vices-relatedtenant-refresh-permissions.md | 11 + ...etting-enablerelatedtenants-permissions.md | 11 + ...tenantgovernancesetting-get-permissions.md | 11 + ...antgovernancesetting-update-permissions.md | 11 + .../rbac-tenant-governance-apis-read.md | 10 + .../rbac-tenant-governance-apis-write.md | 7 + ...enant-governance-relationship-apis-read.md | 12 + ...nant-governance-relationship-apis-write.md | 9 + api-reference/v1.0/resources/directory.md | 5 +- .../enums-tenantgovernanceservices.md | 56 ++ ...eservices-applicationresourcepermission.md | 43 ++ ...ices-applicationsrequiredresourceaccess.md | 45 ++ ...vernanceservices-b2bregistrationmetrics.md | 40 ++ ...anceservices-b2bregistrationmetricsbase.md | 53 ++ ...eservices-b2bregistrationmetricsinitial.md | 49 ++ ...ceservices-b2bregistrationmetricsrecent.md | 49 ++ ...rnanceservices-b2bsigninactivitymetrics.md | 40 ++ ...ceservices-b2bsigninactivitymetricsbase.md | 57 ++ ...ervices-b2bsigninactivitymetricsinitial.md | 53 ++ ...services-b2bsigninactivitymetricsrecent.md | 53 ++ ...tenantgovernanceservices-billingmetrics.md | 40 ++ ...ntgovernanceservices-billingmetricsbase.md | 64 +++ ...overnanceservices-billingmetricsinitial.md | 61 +++ ...governanceservices-billingmetricsrecent.md | 61 +++ ...s-delegatedadministrationroleassignment.md | 48 ++ ...tedadministrationroleassignmentsnapshot.md | 47 ++ ...governanceservices-governanceinvitation.md | 62 +++ ...vernanceservices-governancerelationship.md | 67 +++ ...antgovernanceservices-governancerequest.md | 70 +++ ...eservices-multitenantapplicationmetrics.md | 40 ++ ...vices-multitenantapplicationmetricsbase.md | 53 ++ ...es-multitenantapplicationmetricsinitial.md | 48 ++ ...ces-multitenantapplicationmetricsrecent.md | 49 ++ ...ices-multitenantapplicationstoprovision.md | 50 ++ ...titenantapplicationstoprovisionsnapshot.md | 49 ++ .../tenantgovernanceservices-relatedtenant.md | 63 +++ ...ceservices-relatedtenantsrefreshrequest.md | 43 ++ ...ntgovernanceservices-relationshippolicy.md | 56 ++ .../tenantgovernanceservices-roletemplate.md | 42 ++ ...nanceservices-tenantgovernance-overview.md | 110 ++++ ...nantgovernanceservices-tenantgovernance.md | 46 ++ ...services-tenantgovernancepolicytemplate.md | 76 +++ ...ernanceservices-tenantgovernancesetting.md | 51 ++ api-reference/v1.0/toc/toc.mapping.json | 41 ++ changelog/Microsoft.TenantGovernance.json | 516 ++++++++++++++++++ concepts/whats-new-overview.md | 4 + .../.openpublishing.redirection.2026-09.json | 29 + 149 files changed, 6151 insertions(+), 425 deletions(-) rename api-reference/beta/resources/{tenantgovernanceservices-resourcepermission.md => tenantgovernanceservices-applicationresourcepermission.md} (59%) rename api-reference/beta/resources/{tenantgovernanceservices-requiredresourceaccess.md => tenantgovernanceservices-applicationsrequiredresourceaccess.md} (60%) rename api-reference/beta/resources/{tenantgovernanceservices-actionstep.md => tenantgovernanceservices-investigationactionstep.md} (77%) rename api-reference/beta/resources/{tenantgovernanceservices-actionurl.md => tenantgovernanceservices-investigationactionurl.md} (79%) rename api-reference/beta/resources/{tenantgovernanceservices-governancepolicytemplate.md => tenantgovernanceservices-tenantgovernancepolicytemplate.md} (60%) create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-delete-governancepolicytemplates.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-governanceinvitation-delete.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-governanceinvitation-get.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-governancepolicytemplate-get.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-governancepolicytemplate-update.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-governancerelationship-get.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-governancerelationship-update.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-governancerequest-get.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-governancerequest-update.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-list-governanceinvitations.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-list-governancepolicytemplates.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-list-governancerelationships.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-list-governancerequests.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-list-relatedtenants.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-post-governanceinvitations.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-post-governancepolicytemplates.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-post-governancerequests.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-relatedtenant-get.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-relatedtenant-refresh.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-tenantgovernancesetting-get.md create mode 100644 api-reference/v1.0/api/tenantgovernanceservices-tenantgovernancesetting-update.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-delete-governancepolicytemplates-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-delete-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-get-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-get-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-update-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-get-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-update-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-get-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-update-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governanceinvitations-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancepolicytemplates-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerelationships-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerequests-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-relatedtenants-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governanceinvitations-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancepolicytemplates-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancerequests-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-get-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-refresh-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-get-permissions.md create mode 100644 api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-update-permissions.md create mode 100644 api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-apis-read.md create mode 100644 api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-apis-write.md create mode 100644 api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md create mode 100644 api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-write.md create mode 100644 api-reference/v1.0/resources/enums-tenantgovernanceservices.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-applicationresourcepermission.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetrics.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetricsbase.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetrics.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-billingmetrics.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-billingmetricsbase.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-billingmetricsinitial.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-billingmetricsrecent.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-delegatedadministrationroleassignment.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-governanceinvitation.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-governancerelationship.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-governancerequest.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetrics.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationstoprovision.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-relatedtenant.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-relatedtenantsrefreshrequest.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-relationshippolicy.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-roletemplate.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernance-overview.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernance.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md create mode 100644 api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernancesetting.md create mode 100644 redirects/.openpublishing.redirection.2026-09.json diff --git a/api-reference/beta/api/tenantgovernanceservices-delete-governancepolicytemplates.md b/api-reference/beta/api/tenantgovernanceservices-delete-governancepolicytemplates.md index 039d69e2ea3..1f0c4de9ea4 100644 --- a/api-reference/beta/api/tenantgovernanceservices-delete-governancepolicytemplates.md +++ b/api-reference/beta/api/tenantgovernanceservices-delete-governancepolicytemplates.md @@ -1,20 +1,22 @@ --- -title: "Delete governancePolicyTemplate" +title: "Delete tenantGovernancePolicyTemplate" description: "Delete a governance policy template." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType --- -# Delete governancePolicyTemplate +# Delete tenantGovernancePolicyTemplate -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Delete a [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) object. You can't delete the default template or templates currently used by active relationships. +Delete a [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object. You can't delete the default template or templates currently used by active relationships. [!INCLUDE [national-cloud-support](../../includes/global-us.md)] @@ -107,4 +109,3 @@ The following example shows the response. ``` http HTTP/1.1 204 No Content ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-delete.md b/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-delete.md index 07fa757aad6..3a6fab71276 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-delete.md +++ b/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-delete.md @@ -3,6 +3,8 @@ title: "Delete governanceInvitation" description: "Delete a governance invitation." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # Delete governanceInvitation -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -107,4 +109,3 @@ The following example shows the response. ``` http HTTP/1.1 204 No Content ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-get.md b/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-get.md index fdd268e000c..247156f9e7e 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-get.md +++ b/api-reference/beta/api/tenantgovernanceservices-governanceinvitation-get.md @@ -3,6 +3,8 @@ title: "Get governanceInvitation" description: "Read the properties of a governance invitation." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # Get governanceInvitation -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -53,7 +55,7 @@ Don't supply a request body for this method. ## Response -If successful, this method returns a `200 OK` response code and a [microsoft.graph.tenantGovernanceServices.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object in the response body. +If successful, this method returns a `200 OK` response code and a [microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object in the response body. ## Examples @@ -107,7 +109,7 @@ The following example shows the response. ``` http @@ -115,7 +117,7 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceInvitation", + "@odata.type": "#microsoft.graph.governanceInvitation", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", @@ -125,4 +127,3 @@ Content-Type: application/json "expirationDateTime": "2026-01-31T18:25:09.4212828Z" } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-get.md b/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-get.md index de4bada13b7..1b173aedf85 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-get.md +++ b/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-get.md @@ -1,20 +1,22 @@ --- -title: "Get governancePolicyTemplate" +title: "Get tenantGovernancePolicyTemplate" description: "Read the properties of a governance policy template." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType --- -# Get governancePolicyTemplate +# Get tenantGovernancePolicyTemplate -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Read the properties of a [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) object. +Read the properties of a [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object. [!INCLUDE [national-cloud-support](../../includes/global-us.md)] @@ -54,7 +56,7 @@ Don't supply a request body for this method. ## Response -If successful, this method returns a `200 OK` response code and a [microsoft.graph.tenantGovernanceServices.governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) object in the response body. +If successful, this method returns a `200 OK` response code and a [microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object in the response body. ## Examples @@ -110,7 +112,7 @@ The following example shows the response. ``` http @@ -118,7 +120,7 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governancePolicyTemplate", + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", "displayName": "Monitor Entra resource configurations", "description": "Grants Global reader and provisions a custom multi-tenant application to monitor conditional access policies", @@ -217,7 +219,7 @@ The following example shows the response. ``` http @@ -225,7 +227,7 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governancePolicyTemplate", + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", "id": "default", "displayName": "Default Policy Template", "description": "The system-provided default governance policy template", @@ -236,4 +238,3 @@ Content-Type: application/json "delegatedAdministrationRoleAssignments": [] } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-update.md b/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-update.md index 563b2f2ac92..bce3e86fbae 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-update.md +++ b/api-reference/beta/api/tenantgovernanceservices-governancepolicytemplate-update.md @@ -1,20 +1,22 @@ --- -title: "Update governancePolicyTemplate" +title: "Update tenantGovernancePolicyTemplate" description: "Update the properties of a governance policy template." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType --- -# Update governancePolicyTemplate +# Update tenantGovernancePolicyTemplate -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Update the properties of a [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) object. +Update the properties of a [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object. [!INCLUDE [national-cloud-support](../../includes/global-us.md)] @@ -54,14 +56,14 @@ PATCH /directory/tenantGovernance/governancePolicyTemplates/default |:---|:---|:---| |displayName|String|The display name of the policy template. | |description|String|A description of the policy template.| -|multiTenantApplicationsToProvision|[microsoft.graph.tenantGovernanceServices.multiTenantApplicationsToProvision](../resources/tenantgovernanceservices-multitenantapplicationstoprovision.md) collection|A collection of multitenant applications to be provisioned in the governed tenant when the governance relationship is established. | -|delegatedAdministrationRoleAssignments|[microsoft.graph.tenantGovernanceServices.delegatedAdministrationRoleAssignment](../resources/tenantgovernanceservices-delegatedadministrationroleassignment.md) collection|A collection of delegated administration role assignments to be applied in the governed tenant when the governance relationship is established. | +|multiTenantApplicationsToProvision|[microsoft.graph.multiTenantApplicationsToProvision](../resources/tenantgovernanceservices-multitenantapplicationstoprovision.md) collection|A collection of multitenant applications to be provisioned in the governed tenant when the governance relationship is established. | +|delegatedAdministrationRoleAssignments|[microsoft.graph.delegatedAdministrationRoleAssignment](../resources/tenantgovernanceservices-delegatedadministrationroleassignment.md) collection|A collection of delegated administration role assignments to be applied in the governed tenant when the governance relationship is established. | ## Response -If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.tenantGovernanceServices.governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) object in the response body. +If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object in the response body. ## Examples @@ -158,7 +160,7 @@ The following example shows the response. ``` http @@ -166,7 +168,7 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governancePolicyTemplate", + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", "displayName": "Monitor Entra resource configurations", "description": "Grants Global reader and provisions a custom multi-tenant application to monitor conditional access policies", @@ -306,7 +308,7 @@ The following example shows the response. ``` http @@ -314,7 +316,7 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governancePolicyTemplate", + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", "id": "default", "displayName": "Default Policy Template", "description": "The system-provided default governance policy template", @@ -360,4 +362,3 @@ Content-Type: application/json ] } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-governancerelationship-get.md b/api-reference/beta/api/tenantgovernanceservices-governancerelationship-get.md index 3cde91a27c1..eee81f64ad7 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governancerelationship-get.md +++ b/api-reference/beta/api/tenantgovernanceservices-governancerelationship-get.md @@ -3,6 +3,8 @@ title: "Get governanceRelationship" description: "Read the properties of a governance relationship." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # Get governanceRelationship -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -53,7 +55,7 @@ Don't supply a request body for this method. ## Response -If successful, this method returns a `200 OK` response code and a [microsoft.graph.tenantGovernanceServices.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) object in the response body. +If successful, this method returns a `200 OK` response code and a [microsoft.graph.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) object in the response body. ## Examples @@ -107,7 +109,7 @@ The following example shows the response. ``` http @@ -115,7 +117,7 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceRelationship", + "@odata.type": "#microsoft.graph.governanceRelationship", "createdType": "approvedByAdmin", "creationDateTime": "2025-09-11T17:07:41.2019694Z", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", @@ -166,4 +168,3 @@ Content-Type: application/json } } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-governancerelationship-update.md b/api-reference/beta/api/tenantgovernanceservices-governancerelationship-update.md index 3628f008311..9aca444fffa 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governancerelationship-update.md +++ b/api-reference/beta/api/tenantgovernanceservices-governancerelationship-update.md @@ -3,6 +3,8 @@ title: "Update governanceRelationship" description: "Update the status property to initiate termination of a governance relationship." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # Update governanceRelationship -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -55,11 +57,11 @@ PATCH /directory/tenantGovernance/governanceRelationships/{governanceRelationshi |Property|Type|Description| |:---|:---|:---| -|status|microsoft.graph.tenantGovernanceServices.relationshipStatus|The current status of the governance relationship. The possible values are: `active`, `terminated`, `terminationRequestedByGoverningTenant`, `unknownFutureValue`. Required.| +|status|microsoft.graph.relationshipStatus|The current status of the governance relationship. The possible values are: `active`, `terminated`, `terminationRequestedByGoverningTenant`, `unknownFutureValue`. Required.| ## Response -If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.tenantGovernanceServices.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) object in the response body. +If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) object in the response body. ## Examples @@ -118,7 +120,7 @@ The following example shows the response. ``` http @@ -126,7 +128,7 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceRelationship", + "@odata.type": "#microsoft.graph.governanceRelationship", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", "status": "terminated", "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", @@ -177,4 +179,3 @@ Content-Type: application/json "creationDateTime": "2025-09-11T17:07:41.2019694Z" } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-governancerequest-get.md b/api-reference/beta/api/tenantgovernanceservices-governancerequest-get.md index ca9451e4a1b..acc569a6e30 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governancerequest-get.md +++ b/api-reference/beta/api/tenantgovernanceservices-governancerequest-get.md @@ -3,6 +3,8 @@ title: "Get governanceRequest" description: "Read the properties of a governance request." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # Get governanceRequest -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -53,7 +55,7 @@ Don't supply a request body for this method. ## Response -If successful, this method returns a `200 OK` response code and a [microsoft.graph.tenantGovernanceServices.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object in the response body. +If successful, this method returns a `200 OK` response code and a [microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object in the response body. ## Examples @@ -107,7 +109,7 @@ The following example shows the response. ``` http @@ -115,7 +117,7 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceRequest", + "@odata.type": "#microsoft.graph.governanceRequest", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", "governingTenantName": "Contoso, Inc", @@ -166,4 +168,3 @@ Content-Type: application/json } } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-governancerequest-update.md b/api-reference/beta/api/tenantgovernanceservices-governancerequest-update.md index 37b8bdd6dc7..2eb32f0e151 100644 --- a/api-reference/beta/api/tenantgovernanceservices-governancerequest-update.md +++ b/api-reference/beta/api/tenantgovernanceservices-governancerequest-update.md @@ -3,6 +3,8 @@ title: "Update governanceRequest" description: "Update the status property to accept or reject a governance request." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # Update governanceRequest -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -51,13 +53,13 @@ PATCH /directory/tenantGovernance/governanceRequests/{governanceRequestId} |Property|Type|Description| |:---|:---|:---| -|status|microsoft.graph.tenantGovernanceServices.requestStatus|The current status of the governance request. The possible values are: `pending`, `accepted`, `rejected`, `unknownFutureValue`. Required.| +|status|microsoft.graph.requestStatus|The current status of the governance request. The possible values are: `pending`, `accepted`, `rejected`, `unknownFutureValue`. Required.| ## Response -If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.tenantGovernanceServices.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object in the response body. +If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object in the response body. ## Examples @@ -116,7 +118,7 @@ The following example shows the response. ``` http @@ -124,7 +126,7 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceRequest", + "@odata.type": "#microsoft.graph.governanceRequest", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", "governingTenantName": "Contoso, Inc", @@ -175,4 +177,3 @@ Content-Type: application/json } } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-list-governanceinvitations.md b/api-reference/beta/api/tenantgovernanceservices-list-governanceinvitations.md index 3f7c314ad40..d5076b73269 100644 --- a/api-reference/beta/api/tenantgovernanceservices-list-governanceinvitations.md +++ b/api-reference/beta/api/tenantgovernanceservices-list-governanceinvitations.md @@ -3,6 +3,8 @@ title: "List governanceInvitations" description: "Get a list of governance invitations." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # List governanceInvitations -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -107,7 +109,7 @@ The following example shows the response. ``` http @@ -117,7 +119,7 @@ Content-Type: application/json { "value": [ { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceInvitation", + "@odata.type": "#microsoft.graph.governanceInvitation", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", @@ -129,4 +131,3 @@ Content-Type: application/json ] } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-list-governancepolicytemplates.md b/api-reference/beta/api/tenantgovernanceservices-list-governancepolicytemplates.md index 6b8e9b55968..e34da9a3415 100644 --- a/api-reference/beta/api/tenantgovernanceservices-list-governancepolicytemplates.md +++ b/api-reference/beta/api/tenantgovernanceservices-list-governancepolicytemplates.md @@ -1,20 +1,22 @@ --- -title: "List governancePolicyTemplates" +title: "List tenantGovernancePolicyTemplates" description: "Get a list of governance policy templates." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType --- -# List governancePolicyTemplates +# List tenantGovernancePolicyTemplates -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Get a list of the [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) objects and their properties. Policy templates define the configuration that is applied when establishing governance relationships. +Get a list of the [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) objects and their properties. Policy templates define the configuration that is applied when establishing governance relationships. [!INCLUDE [national-cloud-support](../../includes/global-us.md)] @@ -53,7 +55,7 @@ Don't supply a request body for this method. ## Response -If successful, this method returns a `200 OK` response code and a collection of [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) objects in the response body. +If successful, this method returns a `200 OK` response code and a collection of [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) objects in the response body. ## Examples @@ -107,7 +109,7 @@ The following example shows the response. ``` http @@ -117,7 +119,7 @@ Content-Type: application/json { "value": [ { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governancePolicyTemplate", + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", "displayName": "Monitor Entra resource configurations", "description": "Grants Global reader and provisions a custom multi-tenant application to monitor conditional access policies", @@ -165,4 +167,3 @@ Content-Type: application/json ] } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-list-governancerelationships.md b/api-reference/beta/api/tenantgovernanceservices-list-governancerelationships.md index 1d8ce723f47..6dbb1f2f4dc 100644 --- a/api-reference/beta/api/tenantgovernanceservices-list-governancerelationships.md +++ b/api-reference/beta/api/tenantgovernanceservices-list-governancerelationships.md @@ -3,6 +3,8 @@ title: "List governanceRelationships" description: "Get a list of governance relationships." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # List governanceRelationships -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -107,7 +109,7 @@ The following example shows the response. ``` http @@ -117,7 +119,7 @@ Content-Type: application/json { "value": [ { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceRelationship", + "@odata.type": "#microsoft.graph.governanceRelationship", "createdType": "approvedByAdmin", "creationDateTime": "2025-09-11T17:07:41.2019694Z", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", @@ -170,4 +172,3 @@ Content-Type: application/json ] } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-list-governancerequests.md b/api-reference/beta/api/tenantgovernanceservices-list-governancerequests.md index 45e84ca4af6..9cad3336ac8 100644 --- a/api-reference/beta/api/tenantgovernanceservices-list-governancerequests.md +++ b/api-reference/beta/api/tenantgovernanceservices-list-governancerequests.md @@ -3,6 +3,8 @@ title: "List governanceRequests" description: "Get a list of governance requests." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # List governanceRequests -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -107,7 +109,7 @@ The following example shows the response. ``` http @@ -117,7 +119,7 @@ Content-Type: application/json { "value": [ { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceRequest", + "@odata.type": "#microsoft.graph.governanceRequest", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", "governingTenantName": "Contoso, Inc", @@ -170,4 +172,3 @@ Content-Type: application/json ] } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-list-relatedtenants.md b/api-reference/beta/api/tenantgovernanceservices-list-relatedtenants.md index ff8e1d0f67b..5379c60f55e 100644 --- a/api-reference/beta/api/tenantgovernanceservices-list-relatedtenants.md +++ b/api-reference/beta/api/tenantgovernanceservices-list-relatedtenants.md @@ -3,6 +3,8 @@ title: "List relatedTenants" description: "Get a list of relatedTenant objects and their properties." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # List relatedTenants -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -107,7 +109,7 @@ The following example shows the response. ``` http @@ -118,7 +120,7 @@ Content-Type: application/json "@odata.context": "https://graph.microsoft.com/beta/$metadata#directory/tenantGovernance/relatedTenants", "value": [ { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.relatedTenant", + "@odata.type": "#microsoft.graph.relatedTenant", "id": "aaaabbbb-0000-cccc-1111-dddd2222eeee", "createdDateTime": "2026-02-15T05:34:29.4426526Z", "b2BRegistrationMetrics": { @@ -175,7 +177,7 @@ Content-Type: application/json "billingMetrics": null }, { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.relatedTenant", + "@odata.type": "#microsoft.graph.relatedTenant", "id": "bbbbcccc-1111-dddd-2222-eeee3333ffff", "createdDateTime": "2026-02-16T05:35:45.2357127Z", "b2BRegistrationMetrics": null, diff --git a/api-reference/beta/api/tenantgovernanceservices-post-governanceinvitations.md b/api-reference/beta/api/tenantgovernanceservices-post-governanceinvitations.md index cc85f418ae0..d117b81453b 100644 --- a/api-reference/beta/api/tenantgovernanceservices-post-governanceinvitations.md +++ b/api-reference/beta/api/tenantgovernanceservices-post-governanceinvitations.md @@ -3,6 +3,8 @@ title: "Create governanceInvitation" description: "Create a new governance invitation to establish a relationship with a governed tenant." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # Create governanceInvitation -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -46,7 +48,7 @@ POST /directory/tenantGovernance/governanceInvitations ## Request body -In the request body, supply a JSON representation of the [microsoft.graph.tenantGovernanceServices.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object. +In the request body, supply a JSON representation of the [microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object. You can specify the following properties when creating a **governanceInvitation**. @@ -58,7 +60,7 @@ You can specify the following properties when creating a **governanceInvitation* ## Response -If successful, this method returns a `201 Created` response code and a [microsoft.graph.tenantGovernanceServices.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object in the response body. +If successful, this method returns a `201 Created` response code and a [microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object in the response body. ## Examples @@ -117,7 +119,7 @@ The following example shows the response. ``` http @@ -125,7 +127,7 @@ HTTP/1.1 201 Created Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceInvitation", + "@odata.type": "#microsoft.graph.governanceInvitation", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", @@ -135,4 +137,3 @@ Content-Type: application/json "expirationDateTime": "2026-01-31T18:25:09.4212828Z" } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-post-governancepolicytemplates.md b/api-reference/beta/api/tenantgovernanceservices-post-governancepolicytemplates.md index bc3f5bee17c..5c7541d1046 100644 --- a/api-reference/beta/api/tenantgovernanceservices-post-governancepolicytemplates.md +++ b/api-reference/beta/api/tenantgovernanceservices-post-governancepolicytemplates.md @@ -1,20 +1,22 @@ --- -title: "Create governancePolicyTemplate" +title: "Create tenantGovernancePolicyTemplate" description: "Create a new governance policy template." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType --- -# Create governancePolicyTemplate +# Create tenantGovernancePolicyTemplate -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Create a new [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) that defines the configuration for establishing governance relationships, including role assignments and applications to provision. +Create a new [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) that defines the configuration for establishing governance relationships, including role assignments and applications to provision. [!INCLUDE [national-cloud-support](../../includes/global-us.md)] @@ -46,22 +48,22 @@ POST /directory/tenantGovernance/governancePolicyTemplates ## Request body -In the request body, supply a JSON representation of the [microsoft.graph.tenantGovernanceServices.governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) object. +In the request body, supply a JSON representation of the [microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object. -You can specify the following properties when creating a **governancePolicyTemplate**. +You can specify the following properties when creating a **tenantGovernancePolicyTemplate**. |Property|Type|Description| |:---|:---|:---| |displayName|String|The display name of the policy template. Required.| |description|String|A description of the policy template. Required.| -|multiTenantApplicationsToProvision|[microsoft.graph.tenantGovernanceServices.multiTenantApplicationsToProvision](../resources/tenantgovernanceservices-multitenantapplicationstoprovision.md) collection|A collection of multitenant applications to be provisioned in the governed tenant when the governance relationship is established. Required.| -|delegatedAdministrationRoleAssignments|[microsoft.graph.tenantGovernanceServices.delegatedAdministrationRoleAssignment](../resources/tenantgovernanceservices-delegatedadministrationroleassignment.md) collection|A collection of delegated administration role assignments to be applied in the governed tenant when the governance relationship is established. Required.| +|multiTenantApplicationsToProvision|[microsoft.graph.multiTenantApplicationsToProvision](../resources/tenantgovernanceservices-multitenantapplicationstoprovision.md) collection|A collection of multitenant applications to be provisioned in the governed tenant when the governance relationship is established. Required.| +|delegatedAdministrationRoleAssignments|[microsoft.graph.delegatedAdministrationRoleAssignment](../resources/tenantgovernanceservices-delegatedadministrationroleassignment.md) collection|A collection of delegated administration role assignments to be applied in the governed tenant when the governance relationship is established. Required.| ## Response -If successful, this method returns a `201 Created` response code and a [microsoft.graph.tenantGovernanceServices.governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) object in the response body. +If successful, this method returns a `201 Created` response code and a [microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object in the response body. ## Examples @@ -158,7 +160,7 @@ The following example shows the response. ``` http @@ -166,7 +168,7 @@ HTTP/1.1 201 Created Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governancePolicyTemplate", + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", "displayName": "Monitor Entra resource configurations", "description": "Grants Global reader and provisions a custom multi-tenant application to monitor conditional access policies", @@ -212,4 +214,3 @@ Content-Type: application/json ] } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-post-governancerequests.md b/api-reference/beta/api/tenantgovernanceservices-post-governancerequests.md index 951288631ea..ec509fca55b 100644 --- a/api-reference/beta/api/tenantgovernanceservices-post-governancerequests.md +++ b/api-reference/beta/api/tenantgovernanceservices-post-governancerequests.md @@ -3,6 +3,8 @@ title: "Create governanceRequest" description: "Create a new governance request to establish a relationship with a governed tenant." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # Create governanceRequest -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -46,20 +48,20 @@ POST /directory/tenantGovernance/governanceRequests ## Request body -In the request body, supply a JSON representation of the [microsoft.graph.tenantGovernanceServices.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object. +In the request body, supply a JSON representation of the [microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object. You can specify the following properties when creating a **governanceRequest**. |Property|Type|Description| |:---|:---|:---| |governedTenantId|String|The Microsoft Entra tenant ID of the governed tenant. Required.| -|governancePolicyTemplate@odata.bind|[microsoft.graph.tenantGovernanceServices.governancePolicyTemplate](../resources/tenantgovernanceservices-governancePolicyTemplate.md)|Provide the governance policy template ID that is used to generate the `policySnapshot`. Required.| +|governancePolicyTemplate@odata.bind|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md)|Provide the governance policy template ID that is used to generate the `policySnapshot`. Required.| ## Response -If successful, this method returns a `201 Created` response code and a [microsoft.graph.tenantGovernanceServices.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object in the response body. +If successful, this method returns a `201 Created` response code and a [microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object in the response body. ## Examples @@ -119,7 +121,7 @@ The following example shows the response. ``` http @@ -127,7 +129,7 @@ HTTP/1.1 201 Created Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceRequest", + "@odata.type": "#microsoft.graph.governanceRequest", "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", "governingTenantName": "Contoso, Inc", @@ -178,4 +180,3 @@ Content-Type: application/json } } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-relatedtenant-get.md b/api-reference/beta/api/tenantgovernanceservices-relatedtenant-get.md index 05cc8915e34..a2235edf498 100644 --- a/api-reference/beta/api/tenantgovernanceservices-relatedtenant-get.md +++ b/api-reference/beta/api/tenantgovernanceservices-relatedtenant-get.md @@ -1,8 +1,10 @@ --- title: "Get relatedTenant" -description: "Read the properties and relationships of microsoft.graph.tenantGovernanceServices.relatedTenant object." +description: "Read the properties and relationships of microsoft.graph.relatedTenant object." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,11 +12,11 @@ doc_type: apiPageType # Get relatedTenant -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Read the properties and relationships of [microsoft.graph.tenantGovernanceServices.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) object. +Read the properties and relationships of [microsoft.graph.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) object. [!INCLUDE [national-cloud-support](../../includes/global-us.md)] @@ -53,7 +55,7 @@ Don't supply a request body for this method. ## Response -If successful, this method returns a `200 OK` response code and a [microsoft.graph.tenantGovernanceServices.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) object in the response body. +If successful, this method returns a `200 OK` response code and a [microsoft.graph.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) object in the response body. ## Examples @@ -107,7 +109,7 @@ The following example shows the response. ``` http @@ -115,7 +117,7 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.relatedTenant", + "@odata.type": "#microsoft.graph.relatedTenant", "id": "aaaabbbb-0000-cccc-1111-dddd2222eeee", "createdDateTime": "2026-02-15T05:34:29.4426526Z", "b2BRegistrationMetrics": { @@ -215,4 +217,3 @@ Content-Type: application/json } } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-relatedtenant-refresh.md b/api-reference/beta/api/tenantgovernanceservices-relatedtenant-refresh.md index 2c2588659b3..4679726ee80 100644 --- a/api-reference/beta/api/tenantgovernanceservices-relatedtenant-refresh.md +++ b/api-reference/beta/api/tenantgovernanceservices-relatedtenant-refresh.md @@ -3,6 +3,8 @@ title: "relatedTenant: refresh" description: "Refresh the related tenants list" author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # relatedTenant: refresh -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -107,4 +109,3 @@ The following example shows the response. ``` http HTTP/1.1 204 No Content ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-relatedtenant-refreshstatus.md b/api-reference/beta/api/tenantgovernanceservices-relatedtenant-refreshstatus.md index 241db0b67f4..bf6d83e9edd 100644 --- a/api-reference/beta/api/tenantgovernanceservices-relatedtenant-refreshstatus.md +++ b/api-reference/beta/api/tenantgovernanceservices-relatedtenant-refreshstatus.md @@ -3,6 +3,8 @@ title: "relatedTenant: refreshStatus" description: "Get the status of the related tenants refresh action" author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # relatedTenant: refreshStatus -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -103,7 +105,7 @@ The following example shows the response. ``` http @@ -111,10 +113,9 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.relatedTenantsRefreshStatus", + "@odata.type": "#microsoft.graph.relatedTenantsRefreshStatus", "mostRecentRefreshTime": "2025-03-10T14:30:00Z", "mostRecentRefreshRequestStatus": "Completed", "isFirstRefresh": true } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md b/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md index 9d516f490d9..df69ed40ab0 100644 --- a/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md +++ b/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md @@ -3,6 +3,8 @@ title: "tenantGovernanceSetting: enableRelatedTenants" description: "Enable the related tenants feature for tenant discovery." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # tenantGovernanceSetting: enableRelatedTenants -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -110,4 +112,3 @@ The following example shows the response. ``` http HTTP/1.1 204 No Content ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-get.md b/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-get.md index a8846b9dc67..c1dbff4bd26 100644 --- a/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-get.md +++ b/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-get.md @@ -3,6 +3,8 @@ title: "Get tenantGovernanceSetting" description: "Read the properties of the tenant governance settings singleton." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # Get tenantGovernanceSetting -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -53,7 +55,7 @@ Don't supply a request body for this method. ## Response -If successful, this method returns a `200 OK` response code and a [microsoft.graph.tenantGovernanceServices.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) object in the response body. +If successful, this method returns a `200 OK` response code and a [microsoft.graph.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) object in the response body. ## Examples @@ -107,7 +109,7 @@ The following example shows the response. ``` http @@ -115,9 +117,8 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.tenantGovernanceSetting", + "@odata.type": "#microsoft.graph.tenantGovernanceSetting", "isRelatedTenantsEnabled": true, "canReceiveInvitations": false } ``` - diff --git a/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-update.md b/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-update.md index 4e60dd13499..0d3b531cc76 100644 --- a/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-update.md +++ b/api-reference/beta/api/tenantgovernanceservices-tenantgovernancesetting-update.md @@ -3,6 +3,8 @@ title: "Update tenantGovernanceSetting" description: "Update the canReceiveInvitations property of the tenant governance settings." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: apiPageType @@ -10,7 +12,7 @@ doc_type: apiPageType # Update tenantGovernanceSetting -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -57,7 +59,7 @@ PATCH /directory/tenantGovernance/settings ## Response -If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.tenantGovernanceServices.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) object in the response body. +If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) object in the response body. ## Examples @@ -116,7 +118,7 @@ The following example shows the response. ``` http @@ -124,9 +126,8 @@ HTTP/1.1 200 OK Content-Type: application/json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.tenantGovernanceSetting", + "@odata.type": "#microsoft.graph.tenantGovernanceSetting", "isRelatedTenantsEnabled": true, "canReceiveInvitations": true } ``` - diff --git a/api-reference/beta/resources/directory.md b/api-reference/beta/resources/directory.md index e267c100d19..c89dbc5e29e 100644 --- a/api-reference/beta/resources/directory.md +++ b/api-reference/beta/resources/directory.md @@ -4,6 +4,8 @@ description: "Deleted items remain available to restore for up to 30 days. After ms.localizationpriority: medium author: "FaithOmbongi" ms.date: 11/17/2025 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.subservice: "entra-directory-management" doc_type: resourcePageType toc.title: Deleted item @@ -75,7 +77,7 @@ Inherits from [entity](entity.md). | remoteTenantGroups | [remoteTenantGroup](remotetenantgroup.md) collection | Collection of groups in remote Microsoft Entra tenants that are available in the directory. | | subscriptions | [companySubscription](companysubscription.md) collection | List of commercial subscriptions that an organization has. | |templates|[template](../resources/template.md) |A container for templates, such as device templates used for onboarding devices in Microsoft Entra ID. | -|tenantGovernance|[microsoft.graph.tenantGovernanceServices.tenantGovernance](../resources/tenantgovernanceservices-tenantgovernance.md)|Container for Microsoft Entra Tenant Governance capabilities.| +|tenantGovernance|[microsoft.graph.tenantGovernance](../resources/tenantgovernanceservices-tenantgovernance.md)|Container for Microsoft Entra Tenant Governance capabilities.| ## JSON representation diff --git a/api-reference/beta/resources/enums-tenantgovernanceservices.md b/api-reference/beta/resources/enums-tenantgovernanceservices.md index 607a0fce80a..d17c42191ba 100644 --- a/api-reference/beta/resources/enums-tenantgovernanceservices.md +++ b/api-reference/beta/resources/enums-tenantgovernanceservices.md @@ -3,6 +3,8 @@ title: "Tenant governance enum values" description: "Microsoft Graph tenant governance enumeration values" author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: enumTypes @@ -10,9 +12,11 @@ doc_type: enumTypes # Microsoft Graph tenant governance enumeration values -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph -### permissionType values +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +### applicationPermissionType values |Member| |:---| @@ -48,6 +52,6 @@ Namespace: microsoft.graph.tenantGovernanceServices diff --git a/api-reference/beta/resources/tenantgovernanceservices-resourcepermission.md b/api-reference/beta/resources/tenantgovernanceservices-applicationresourcepermission.md similarity index 59% rename from api-reference/beta/resources/tenantgovernanceservices-resourcepermission.md rename to api-reference/beta/resources/tenantgovernanceservices-applicationresourcepermission.md index bcd9fa85937..f16dc0f0a02 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-resourcepermission.md +++ b/api-reference/beta/resources/tenantgovernanceservices-applicationresourcepermission.md @@ -1,27 +1,29 @@ --- -title: "resourcePermission resource type" +title: "applicationResourcePermission resource type" description: "Represents a permission required by an application to access a resource." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType --- -# resourcePermission resource type +# applicationResourcePermission resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a permission required by an application to access a resource. This is used when defining the permissions needed by multi-tenant applications provisioned in governed tenants. This resource is defined in the **permissions** property of [requiredResourceAccess](../resources/tenantgovernanceservices-requiredresourceaccess.md). +Represents a permission required by an application to access a resource. This is used when defining the permissions needed by multi-tenant applications provisioned in governed tenants. This resource is defined in the **permissions** property of [applicationsRequiredResourceAccess](../resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md). ## Properties |Property|Type|Description| |:---|:---|:---| |id|String|The unique identifier of the permission.| |name|String|The name of the permission.| -|type|[permissionType](../resources/enums-tenantgovernanceservices.md#permissiontype-values)|The type of permission. The possible values are: `role`, `scope`, `unknownFutureValue`.| +|type|[applicationPermissionType](../resources/enums-tenantgovernanceservices.md#applicationpermissiontype-values)|The type of permission. The possible values are: `role`, `scope`, `unknownFutureValue`.| ## Relationships None. @@ -30,12 +32,12 @@ None. The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.resourcePermission", + "@odata.type": "#microsoft.graph.applicationResourcePermission", "id": "String", "name": "String", "type": "String" diff --git a/api-reference/beta/resources/tenantgovernanceservices-requiredresourceaccess.md b/api-reference/beta/resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md similarity index 60% rename from api-reference/beta/resources/tenantgovernanceservices-requiredresourceaccess.md rename to api-reference/beta/resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md index 6d74de738ec..e90ce5cb944 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-requiredresourceaccess.md +++ b/api-reference/beta/resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md @@ -1,16 +1,18 @@ --- -title: "requiredResourceAccess resource type" +title: "applicationsRequiredResourceAccess resource type" description: "Represents the permissions required by an application to access a specific resource." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType --- -# requiredResourceAccess resource type +# applicationsRequiredResourceAccess resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -19,7 +21,7 @@ Represents the permissions required by an application to access a specific resou ## Properties |Property|Type|Description| |:---|:---|:---| -|permissions|[microsoft.graph.tenantGovernanceServices.resourcePermission](../resources/tenantgovernanceservices-resourcepermission.md) collection|The collection of resource permissions required by the application.| +|permissions|[microsoft.graph.applicationResourcePermission](../resources/tenantgovernanceservices-applicationresourcepermission.md) collection|The collection of resource permissions required by the application.| |resourceAppId|String|The **appId** (client ID) of the resource that the application needs to access.| ## Relationships @@ -29,16 +31,16 @@ None. The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.requiredResourceAccess", + "@odata.type": "#microsoft.graph.applicationsRequiredResourceAccess", "resourceAppId": "String", "permissions": [ { - "@odata.type": "microsoft.graph.tenantGovernanceServices.resourcePermission" + "@odata.type": "microsoft.graph.applicationResourcePermission" } ] } diff --git a/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetrics.md b/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetrics.md index 6ab72ce18d4..c2f2a80c463 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetrics.md +++ b/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetrics.md @@ -3,6 +3,8 @@ title: "b2bRegistrationMetrics resource type" description: "Represents B2B collaboration guest registration metrics between two related tenants." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # b2bRegistrationMetrics resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -26,24 +28,23 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). ## Relationships |Relationship|Type|Description| |:---|:---|:---| -|initial|[microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsInitial](../resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md)|B2B registration metrics corresponding to initial snapshots where metrics were aggregated for the first time.| -|investigationHints|[microsoft.graph.tenantGovernanceServices.actionStep](../resources/tenantgovernanceservices-actionstep.md) collection|Ordered drill-in guidance for investigating B2B registration metrics. This collection is returned only when explicitly requested by using a nested `$expand` query parameter, for example `$expand=b2BRegistrationMetrics($expand=investigationHints)`.| -|recent|[microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsRecent](../resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md)|B2B registration metrics corresponding to recent snapshots where metrics were found to have sufficiently changed.| +|initial|[microsoft.graph.b2BRegistrationMetricsInitial](../resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md)|B2B registration metrics corresponding to initial snapshots where metrics were aggregated for the first time.| +|investigationHints|[microsoft.graph.investigationActionStep](../resources/tenantgovernanceservices-investigationactionstep.md) collection|Ordered drill-in guidance for investigating B2B registration metrics. This collection is returned only when explicitly requested by using a nested `$expand` query parameter, for example `$expand=b2BRegistrationMetrics($expand=investigationHints)`.| +|recent|[microsoft.graph.b2BRegistrationMetricsRecent](../resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md)|B2B registration metrics corresponding to recent snapshots where metrics were found to have sufficiently changed.| ## JSON representation The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.b2bRegistrationMetrics", + "@odata.type": "#microsoft.graph.b2bRegistrationMetrics", "id": "String (identifier)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetricsbase.md b/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetricsbase.md index ebdfbce3b96..c3c38eaac0e 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetricsbase.md +++ b/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetricsbase.md @@ -3,6 +3,8 @@ title: "b2BRegistrationMetricsBase resource type" description: "Abstract base type for B2B registration metrics." author: "akhil-potturi" ms.date: 03/16/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # b2BRegistrationMetricsBase resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -43,14 +45,14 @@ The following JSON representation shows the resource type. ```json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsBase", + "@odata.type": "#microsoft.graph.b2BRegistrationMetricsBase", "id": "String (identifier)", "watermarkDateTime": "String (timestamp)", "inboundTotalUsers": "String", diff --git a/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md b/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md index 01f1056434e..b1c6b52a178 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md +++ b/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md @@ -3,6 +3,8 @@ title: "b2BRegistrationMetricsInitial resource type" description: "Represents the initial snapshot of B2B registration metrics when the relationship was first discovered." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,22 +12,22 @@ doc_type: resourcePageType # b2BRegistrationMetricsInitial resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] Represents the initial snapshot of B2B registration metrics captured when the relationship between two tenants was first discovered, establishing a baseline for guest counts. -Inherits from [microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md). +Inherits from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md). ## Properties |Property|Type|Description| |:---|:---|:---| |createdDateTime|DateTimeOffset|Timestamp that represents the date time that B2B registration data was initially aggregated.| |id|String|Unique identifier for the metrics snapshot. Inherited from [microsoft.graph.entity](../resources/entity.md).| -|inboundTotalUsers|String|The total number of inbound B2B guest users registered. Inherited from [microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| -|outboundTotalUsers|String|The total number of outbound B2B users from this tenant registered in other tenants. Inherited from [microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| -|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| +|inboundTotalUsers|String|The total number of inbound B2B guest users registered. Inherited from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| +|outboundTotalUsers|String|The total number of outbound B2B users from this tenant registered in other tenants. Inherited from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| ## Relationships None. @@ -35,14 +37,14 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsInitial", + "@odata.type": "#microsoft.graph.b2BRegistrationMetricsInitial", "id": "String (identifier)", "watermarkDateTime": "String (timestamp)", "inboundTotalUsers": "String", @@ -50,4 +52,3 @@ The following JSON representation shows the resource type. "createdDateTime": "String (timestamp)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md b/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md index 7ce3cc87756..37c39b19408 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md +++ b/api-reference/beta/resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md @@ -3,6 +3,8 @@ title: "b2BRegistrationMetricsRecent resource type" description: "Represents the most recent snapshot of B2B registration metrics." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,22 +12,22 @@ doc_type: resourcePageType # b2BRegistrationMetricsRecent resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] Represents the most recent snapshot of B2B registration metrics, showing current guest counts between related tenants. -Inherits from [microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md). +Inherits from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md). ## Properties |Property|Type|Description| |:---|:---|:---| |id|String|Unique identifier for the metrics snapshot. Inherited from [microsoft.graph.entity](../resources/entity.md).| -|inboundTotalUsers|String|The total number of inbound B2B guest users registered. Inherited from [microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| -|outboundTotalUsers|String|The total number of outbound B2B users from this tenant registered in other tenants. Inherited from [microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| +|inboundTotalUsers|String|The total number of inbound B2B guest users registered. Inherited from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| +|outboundTotalUsers|String|The total number of outbound B2B users from this tenant registered in other tenants. Inherited from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| |updateDateTime|DateTimeOffset|Timestamp that represents the most recent time B2B registration data was aggregated and have sufficiently changed for the related tenant.| -|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| ## Relationships None. @@ -35,14 +37,14 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.b2BRegistrationMetricsRecent", + "@odata.type": "#microsoft.graph.b2BRegistrationMetricsRecent", "id": "String (identifier)", "watermarkDateTime": "String (timestamp)", "inboundTotalUsers": "String", @@ -50,4 +52,3 @@ The following JSON representation shows the resource type. "updateDateTime": "String (timestamp)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetrics.md b/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetrics.md index e8cd95ded9d..abbb58cdda0 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetrics.md +++ b/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetrics.md @@ -3,6 +3,8 @@ title: "b2BSignInActivityMetrics resource type" description: "Represents B2B sign-in activity metrics showing guest user authentication between two related tenants." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # b2BSignInActivityMetrics resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -26,24 +28,23 @@ Inherits from [b2BSignInActivityMetricsBase](../resources/tenantgovernanceservic ## Relationships |Relationship|Type|Description| |:---|:---|:---| -|initial|[microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsInitial](../resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md)|B2B sign-in activity metrics corresponding to initial snapshots where metrics were aggregated for the first time.| -|investigationHints|[microsoft.graph.tenantGovernanceServices.actionStep](../resources/tenantgovernanceservices-actionstep.md) collection|Ordered drill-in guidance for investigating sign-in user and application counts. This collection is returned only when explicitly requested by using a nested `$expand` query parameter, for example `$expand=b2BSignInActivityMetrics($expand=investigationHints)`.| -|recent|[microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsRecent](../resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md)|B2B sign-in activity metrics corresponding to recent snapshots where metrics were found to have sufficiently changed.| +|initial|[microsoft.graph.b2BSignInActivityMetricsInitial](../resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md)|B2B sign-in activity metrics corresponding to initial snapshots where metrics were aggregated for the first time.| +|investigationHints|[microsoft.graph.investigationActionStep](../resources/tenantgovernanceservices-investigationactionstep.md) collection|Ordered drill-in guidance for investigating sign-in user and application counts. This collection is returned only when explicitly requested by using a nested `$expand` query parameter, for example `$expand=b2BSignInActivityMetrics($expand=investigationHints)`.| +|recent|[microsoft.graph.b2BSignInActivityMetricsRecent](../resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md)|B2B sign-in activity metrics corresponding to recent snapshots where metrics were found to have sufficiently changed.| ## JSON representation The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetrics", + "@odata.type": "#microsoft.graph.b2BSignInActivityMetrics", "id": "String (identifier)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md b/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md index abf54adb84e..f74be1f6d96 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md +++ b/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md @@ -3,6 +3,8 @@ title: "b2BSignInActivityMetricsBase resource type" description: "Abstract base type for B2B sign-in activity metrics." author: "akhil-potturi" ms.date: 03/19/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # b2BSignInActivityMetricsBase resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -45,14 +47,14 @@ The following JSON representation shows the resource type. ```json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase", + "@odata.type": "#microsoft.graph.b2BSignInActivityMetricsBase", "id": "String (identifier)", "watermarkDateTime": "String (timestamp)", "inboundMonthlyTotalUsers": "String", diff --git a/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md b/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md index 9c97be28ca4..22f5041d63b 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md +++ b/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md @@ -3,6 +3,8 @@ title: "b2BSignInActivityMetricsInitial resource type" description: "Represents the initial snapshot of B2B sign-in activity metrics." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,24 +12,24 @@ doc_type: resourcePageType # b2BSignInActivityMetricsInitial resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] Represents the initial snapshot of B2B sign-in activity metrics captured when the [related tenant](../resources/tenantgovernanceservices-relatedtenant.md) was first discovered, establishing a baseline for monthly active guests and applications. -Inherits from [microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md). +Inherits from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md). ## Properties |Property|Type|Description| |:---|:---|:---| |createdDateTime|DateTimeOffset|Timestamp that represents when the time B2B sign-in activity content was initially aggregated for the related tenant.| |id|String|Unique identifier for the metrics snapshot. Inherited from [microsoft.graph.entity](../resources/entity.md).| -|inboundMonthlyTotalApplications|String|The total number of applications accessed by inbound users in the last month. Inherited from [microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| -|inboundMonthlyTotalUsers|String|The total number of unique inbound users with sign-in activity in the last month. Inherited from [microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| -|outboundMonthlyTotalApplications|String|The total number of applications accessed by outbound users in the last month. Inherited from [microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| -|outboundMonthlyTotalUsers|String|The total number of unique outbound users with sign-in activity in the last month. Inherited from [microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| -|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|inboundMonthlyTotalApplications|String|The total number of applications accessed by inbound users in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|inboundMonthlyTotalUsers|String|The total number of unique inbound users with sign-in activity in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|outboundMonthlyTotalApplications|String|The total number of applications accessed by outbound users in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|outboundMonthlyTotalUsers|String|The total number of unique outbound users with sign-in activity in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| ## Relationships None. @@ -37,14 +39,14 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsInitial", + "@odata.type": "#microsoft.graph.b2BSignInActivityMetricsInitial", "id": "String (identifier)", "watermarkDateTime": "String (timestamp)", "inboundMonthlyTotalUsers": "String", @@ -54,4 +56,3 @@ The following JSON representation shows the resource type. "createdDateTime": "String (timestamp)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md b/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md index 4e05d313808..c4bba579d73 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md +++ b/api-reference/beta/resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md @@ -3,6 +3,8 @@ title: "b2BSignInActivityMetricsRecent resource type" description: "Represents the most recent snapshot of B2B sign-in activity metrics." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,24 +12,24 @@ doc_type: resourcePageType # b2BSignInActivityMetricsRecent resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] Represents the most recent snapshot of B2B sign-in activity metrics for a [related tenant](../resources/tenantgovernanceservices-relatedtenant.md), showing current monthly active guests and application counts. -Inherits from [microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md). +Inherits from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md). ## Properties |Property|Type|Description| |:---|:---|:---| |id|String|Unique identifier for the metrics snapshot. Inherited from [microsoft.graph.entity](../resources/entity.md).| -|inboundMonthlyTotalApplications|String|The total number of applications accessed by inbound users in the last month. Inherited from [microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| -|inboundMonthlyTotalUsers|String|The total number of unique inbound users with sign-in activity in the last month. Inherited from [microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| -|outboundMonthlyTotalApplications|String|The total number of applications accessed by outbound users in the last month. Inherited from [microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| -|outboundMonthlyTotalUsers|String|The total number of unique outbound users with sign-in activity in the last month. Inherited from [microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|inboundMonthlyTotalApplications|String|The total number of applications accessed by inbound users in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|inboundMonthlyTotalUsers|String|The total number of unique inbound users with sign-in activity in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|outboundMonthlyTotalApplications|String|The total number of applications accessed by outbound users in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|outboundMonthlyTotalUsers|String|The total number of unique outbound users with sign-in activity in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| |updateDateTime|DateTimeOffset|Timestamp that represents the most recent time B2B registration data was aggregated and have sufficiently changed for the related tenant.| -|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| ## Relationships None. @@ -37,14 +39,14 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetricsRecent", + "@odata.type": "#microsoft.graph.b2BSignInActivityMetricsRecent", "id": "String (identifier)", "watermarkDateTime": "String (timestamp)", "inboundMonthlyTotalUsers": "String", @@ -54,4 +56,3 @@ The following JSON representation shows the resource type. "updateDateTime": "String (timestamp)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-billingmetrics.md b/api-reference/beta/resources/tenantgovernanceservices-billingmetrics.md index e30444e307c..b220d0826da 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-billingmetrics.md +++ b/api-reference/beta/resources/tenantgovernanceservices-billingmetrics.md @@ -3,6 +3,8 @@ title: "billingMetrics resource type" description: "Represents billing account connection metrics showing commerce relationships between two related tenants." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # billingMetrics resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -26,24 +28,23 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). ## Relationships |Relationship|Type|Description| |:---|:---|:---| -|initial|[microsoft.graph.tenantGovernanceServices.billingMetricsInitial](../resources/tenantgovernanceservices-billingmetricsinitial.md)|Billing metrics corresponding to initial snapshots where metrics were aggregated for the first time.| -|investigationHints|[microsoft.graph.tenantGovernanceServices.actionStep](../resources/tenantgovernanceservices-actionstep.md) collection|Ordered drill-in guidance for investigating billing relationship counts. This collection is returned only when explicitly requested by using a nested `$expand` query parameter, for example `$expand=billingMetrics($expand=investigationHints)`.| -|recent|[microsoft.graph.tenantGovernanceServices.billingMetricsRecent](../resources/tenantgovernanceservices-billingmetricsrecent.md)|Billing metrics corresponding to recent snapshots where metrics were found to have sufficiently changed.| +|initial|[microsoft.graph.billingMetricsInitial](../resources/tenantgovernanceservices-billingmetricsinitial.md)|Billing metrics corresponding to initial snapshots where metrics were aggregated for the first time.| +|investigationHints|[microsoft.graph.investigationActionStep](../resources/tenantgovernanceservices-investigationactionstep.md) collection|Ordered drill-in guidance for investigating billing relationship counts. This collection is returned only when explicitly requested by using a nested `$expand` query parameter, for example `$expand=billingMetrics($expand=investigationHints)`.| +|recent|[microsoft.graph.billingMetricsRecent](../resources/tenantgovernanceservices-billingmetricsrecent.md)|Billing metrics corresponding to recent snapshots where metrics were found to have sufficiently changed.| ## JSON representation The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.billingMetrics", + "@odata.type": "#microsoft.graph.billingMetrics", "id": "String (identifier)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-billingmetricsbase.md b/api-reference/beta/resources/tenantgovernanceservices-billingmetricsbase.md index a5195af9e5f..c98afe488ed 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-billingmetricsbase.md +++ b/api-reference/beta/resources/tenantgovernanceservices-billingmetricsbase.md @@ -3,6 +3,8 @@ title: "billingMetricsBase resource type" description: "Abstract base type for billing metrics." author: "akhil-potturi" ms.date: 03/16/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # billingMetricsBase resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -49,14 +51,14 @@ The following JSON representation shows the resource type. ```json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.billingMetricsBase", + "@odata.type": "#microsoft.graph.billingMetricsBase", "id": "String (identifier)", "watermarkDateTime": "String (timestamp)", "localAssociatedTenantCount": "String", diff --git a/api-reference/beta/resources/tenantgovernanceservices-billingmetricsinitial.md b/api-reference/beta/resources/tenantgovernanceservices-billingmetricsinitial.md index 7fa5d4d7fea..8f6fed5e667 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-billingmetricsinitial.md +++ b/api-reference/beta/resources/tenantgovernanceservices-billingmetricsinitial.md @@ -3,6 +3,8 @@ title: "billingMetricsInitial resource type" description: "Represents the initial snapshot of billing metrics when the relationship was first discovered." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,27 +12,27 @@ doc_type: resourcePageType # billingMetricsInitial resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] Represents the initial snapshot of billing metrics captured when the [related tenant](../resources/tenantgovernanceservices-relatedtenant.md) was first discovered, establishing a baseline for billing account associations and associated tenant connection counts. -Inherits from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md). +Inherits from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md). ## Properties |Property|Type|Description| |:---|:---|:---| |createdDateTime|DateTimeOffset|Timestamp that represents when billing metrics are initially aggregated for the related tenant.| -|foreignAssociatedTenantBillingManagementActiveCount|String|The number of foreign associated tenants with active billing management. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| -|foreignAssociatedTenantCount|String|The total number of foreign associated tenants. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| -|foreignAssociatedTenantProvisioningActiveCount|String|The number of foreign associated tenants with active provisioning. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|foreignAssociatedTenantBillingManagementActiveCount|String|The number of foreign associated tenants with active billing management. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|foreignAssociatedTenantCount|String|The total number of foreign associated tenants. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|foreignAssociatedTenantProvisioningActiveCount|String|The number of foreign associated tenants with active provisioning. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| |id|String|Unique identifier for the metrics snapshot. Inherited from [microsoft.graph.entity](../resources/entity.md).| -|localAssociatedTenantBillingManagementActiveCount|String|The number of local associated tenants with active billing management. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| -|localAssociatedTenantCount|String|The total number of local associated tenants. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| -|localAssociatedTenantIds|Collection(String)|The list of local associated tenant IDs. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| -|localAssociatedTenantProvisioningActiveCount|String|The number of local associated tenants with active provisioning. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| -|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantBillingManagementActiveCount|String|The number of local associated tenants with active billing management. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantCount|String|The total number of local associated tenants. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantIds|Collection(String)|The list of local associated tenant IDs. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantProvisioningActiveCount|String|The number of local associated tenants with active provisioning. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| ## Relationships None. @@ -40,14 +42,14 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.billingMetricsInitial", + "@odata.type": "#microsoft.graph.billingMetricsInitial", "id": "String (identifier)", "watermarkDateTime": "String (timestamp)", "localAssociatedTenantCount": "String", @@ -62,4 +64,3 @@ The following JSON representation shows the resource type. "createdDateTime": "String (timestamp)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-billingmetricsrecent.md b/api-reference/beta/resources/tenantgovernanceservices-billingmetricsrecent.md index 375bc23cdcf..85191239940 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-billingmetricsrecent.md +++ b/api-reference/beta/resources/tenantgovernanceservices-billingmetricsrecent.md @@ -3,6 +3,8 @@ title: "billingMetricsRecent resource type" description: "Represents the most recent snapshot of billing metrics." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,27 +12,27 @@ doc_type: resourcePageType # billingMetricsRecent resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] Represents the most recent snapshot of billing metrics, showing current billing account associations and associated tenant connection counts. -Inherits from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md). +Inherits from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md). ## Properties |Property|Type|Description| |:---|:---|:---| -|foreignAssociatedTenantBillingManagementActiveCount|String|The number of foreign associated tenants with active billing management. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| -|foreignAssociatedTenantCount|String|The total number of foreign associated tenants. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| -|foreignAssociatedTenantProvisioningActiveCount|String|The number of foreign associated tenants with active provisioning. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|foreignAssociatedTenantBillingManagementActiveCount|String|The number of foreign associated tenants with active billing management. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|foreignAssociatedTenantCount|String|The total number of foreign associated tenants. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|foreignAssociatedTenantProvisioningActiveCount|String|The number of foreign associated tenants with active provisioning. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| |id|String|Unique identifier for the metrics snapshot. Inherited from [microsoft.graph.entity](../resources/entity.md).| -|localAssociatedTenantBillingManagementActiveCount|String|The number of local associated tenants with active billing management. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| -|localAssociatedTenantCount|String|The total number of local associated tenants. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| -|localAssociatedTenantIds|Collection(String)|The list of local associated tenant IDs. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| -|localAssociatedTenantProvisioningActiveCount|String|The number of local associated tenants with active provisioning. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantBillingManagementActiveCount|String|The number of local associated tenants with active billing management. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantCount|String|The total number of local associated tenants. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantIds|Collection(String)|The list of local associated tenant IDs. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantProvisioningActiveCount|String|The number of local associated tenants with active provisioning. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| |updateDateTime|DateTimeOffset|Timestamp that represents when billing metrics are aggregated and have sufficiently changed for the related tenant.| -|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.tenantGovernanceServices.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| ## Relationships None. @@ -40,14 +42,14 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.billingMetricsRecent", + "@odata.type": "#microsoft.graph.billingMetricsRecent", "id": "String (identifier)", "watermarkDateTime": "String (timestamp)", "localAssociatedTenantCount": "String", @@ -62,4 +64,3 @@ The following JSON representation shows the resource type. "updateDateTime": "String (timestamp)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-delegatedadministrationroleassignment.md b/api-reference/beta/resources/tenantgovernanceservices-delegatedadministrationroleassignment.md index 64fa22de6bd..eabc9377a5c 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-delegatedadministrationroleassignment.md +++ b/api-reference/beta/resources/tenantgovernanceservices-delegatedadministrationroleassignment.md @@ -3,6 +3,8 @@ title: "delegatedAdministrationRoleAssignment resource type" description: "Represents a role assignment configuration for delegated administration in a governance relationship." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,18 +12,18 @@ doc_type: resourcePageType # delegatedAdministrationRoleAssignment resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a role assignment configuration for delegated administration in a governance relationship. Specifies which security group in the governing tenant should be assigned which roles in the governed tenant. This resource is defined in the **delegatedAdministrationRoleAssignment ** property of [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md). +Represents a role assignment configuration for delegated administration in a governance relationship. Specifies which security group in the governing tenant should be assigned which roles in the governed tenant. This resource is defined in the **delegatedAdministrationRoleAssignment ** property of [governancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md). ## Properties |Property|Type|Description| |:---|:---|:---| |groupDisplayName|String|The display name of the security group referenced by the **group** navigation property. Server-populated and read-only; returns `null` if the referenced group has been deleted.| -|roleTemplates|[microsoft.graph.tenantGovernanceServices.roleTemplate](../resources/tenantgovernanceservices-roletemplate.md) collection|A collection of role templates that define the roles to be assigned to the group in the governed tenant. | +|roleTemplates|[microsoft.graph.roleTemplate](../resources/tenantgovernanceservices-roletemplate.md) collection|A collection of role templates that define the roles to be assigned to the group in the governed tenant. | ## Relationships |Relationship|Type|Description| @@ -32,18 +34,17 @@ Represents a role assignment configuration for delegated administration in a gov The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.delegatedAdministrationRoleAssignment", + "@odata.type": "#microsoft.graph.delegatedAdministrationRoleAssignment", "groupDisplayName": "String", "roleTemplates": [ { - "@odata.type": "microsoft.graph.tenantGovernanceServices.roleTemplate" + "@odata.type": "microsoft.graph.roleTemplate" } ] } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md b/api-reference/beta/resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md index f1909741113..95a327d0204 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md +++ b/api-reference/beta/resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md @@ -3,6 +3,8 @@ title: "delegatedAdministrationRoleAssignmentSnapshot resource type" description: "Represents a snapshot of a delegated administration role assignment configuration stored in a governance relationship or request." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # delegatedAdministrationRoleAssignmentSnapshot resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -21,7 +23,7 @@ Represents a snapshot of a delegated administration role assignment configuratio |:---|:---|:---| |groupDisplayName|String|The display name of the security group identified by **groupId** at the time the snapshot was created. Read-only.| |groupId|String|The object ID of the role-assignable security group in the governing tenant that will be assigned the specified roles.| -|roleTemplates|[microsoft.graph.tenantGovernanceServices.roleTemplate](../resources/tenantgovernanceservices-roletemplate.md) collection|The collection of role templates that define the Microsoft Entra roles to be assigned.| +|roleTemplates|[microsoft.graph.roleTemplate](../resources/tenantgovernanceservices-roletemplate.md) collection|The collection of role templates that define the Microsoft Entra roles to be assigned.| ## Relationships None. @@ -30,17 +32,17 @@ None. The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.delegatedAdministrationRoleAssignmentSnapshot", + "@odata.type": "#microsoft.graph.delegatedAdministrationRoleAssignmentSnapshot", "groupDisplayName": "String", "groupId": "String", "roleTemplates": [ { - "@odata.type": "microsoft.graph.tenantGovernanceServices.roleTemplate" + "@odata.type": "microsoft.graph.roleTemplate" } ] } diff --git a/api-reference/beta/resources/tenantgovernanceservices-governanceinvitation.md b/api-reference/beta/resources/tenantgovernanceservices-governanceinvitation.md index 082325d86c9..9345ae2b557 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-governanceinvitation.md +++ b/api-reference/beta/resources/tenantgovernanceservices-governanceinvitation.md @@ -3,6 +3,8 @@ title: "governanceInvitation resource type" description: "Represents an invitation sent by a governing tenant to establish a governance relationship with a governed tenant." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # governanceInvitation resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -23,9 +25,9 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). ## Methods |Method|Return type|Description| |:---|:---|:---| -|[List](../api/tenantgovernanceservices-list-governanceinvitations.md)|[microsoft.graph.tenantGovernanceServices.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) collection|Get a list of the [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) objects and their properties.| -|[Create](../api/tenantgovernanceservices-post-governanceinvitations.md)|[microsoft.graph.tenantGovernanceServices.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md)|Create a new governance invitation.| -|[Get](../api/tenantgovernanceservices-governanceinvitation-get.md)|[microsoft.graph.tenantGovernanceServices.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md)|Read the properties of a [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object.| +|[List](../api/tenantgovernanceservices-list-governanceinvitations.md)|[microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) collection|Get a list of the [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) objects and their properties.| +|[Create](../api/tenantgovernanceservices-post-governanceinvitations.md)|[microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md)|Create a new governance invitation.| +|[Get](../api/tenantgovernanceservices-governanceinvitation-get.md)|[microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md)|Read the properties of a [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object.| |[Delete](../api/tenantgovernanceservices-governanceinvitation-delete.md)|None|Delete a governance invitation.| ## Properties @@ -47,14 +49,14 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceInvitation", + "@odata.type": "#microsoft.graph.governanceInvitation", "id": "String (identifier)", "governingTenantId": "String", "governedTenantId": "String", @@ -64,4 +66,3 @@ The following JSON representation shows the resource type. "expirationDateTime": "String (timestamp)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-governancerelationship.md b/api-reference/beta/resources/tenantgovernanceservices-governancerelationship.md index bea97df7cfd..d61f3ebcca5 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-governancerelationship.md +++ b/api-reference/beta/resources/tenantgovernanceservices-governancerelationship.md @@ -3,6 +3,8 @@ title: "governanceRelationship resource type" description: "Represents an established governance relationship between a governing tenant and a governed tenant." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # governanceRelationship resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -23,22 +25,22 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). ## Methods |Method|Return type|Description| |:---|:---|:---| -|[List](../api/tenantgovernanceservices-list-governancerelationships.md)|[microsoft.graph.tenantGovernanceServices.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) collection|Get a list of the [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) objects and their properties.| -|[Get](../api/tenantgovernanceservices-governancerelationship-get.md)|[microsoft.graph.tenantGovernanceServices.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md)|Read the properties of a [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) object.| -|[Update](../api/tenantgovernanceservices-governancerelationship-update.md)|[microsoft.graph.tenantGovernanceServices.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md)|Update the **status** property to initiate termination of the governance relationship.| +|[List](../api/tenantgovernanceservices-list-governancerelationships.md)|[microsoft.graph.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) collection|Get a list of the [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) objects and their properties.| +|[Get](../api/tenantgovernanceservices-governancerelationship-get.md)|[microsoft.graph.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md)|Read the properties of a [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) object.| +|[Update](../api/tenantgovernanceservices-governancerelationship-update.md)|[microsoft.graph.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md)|Update the **status** property to initiate termination of the governance relationship.| ## Properties |Property|Type|Description| |:---|:---|:---| -|createdType|microsoft.graph.tenantGovernanceServices.relationshipCreationType|Indicates how the relationship was created. The possible values are: `approvedByAdmin`, `addOnTenant`, `unknownFutureValue`.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|createdType|microsoft.graph.relationshipCreationType|Indicates how the relationship was created. The possible values are: `approvedByAdmin`, `addOnTenant`, `unknownFutureValue`.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| |creationDateTime|DateTimeOffset|The date and time when the relationship was created. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2026 is `2026-01-01T00:00:00Z`.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| |governedTenantId|String|The Microsoft Entra tenant ID of the governed tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| |governedTenantName|String|The display name of the governed tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| |governingTenantId|String|The Microsoft Entra tenant ID of the governing tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| |governingTenantName|String|The display name of the governing tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| |id|String|The unique identifier for the governance relationship. Inherited from [entity](../resources/entity.md).

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| -|policySnapshot|[microsoft.graph.tenantGovernanceServices.relationshipPolicy](../resources/tenantgovernanceservices-relationshippolicy.md)|A snapshot of the governance policy applied to this relationship, including delegated administration role assignments and multi-tenant applications to provision.| -|status|microsoft.graph.tenantGovernanceServices.relationshipStatus|The current status of the governance relationship. The possible values are: `active`, `terminated`, `terminationRequestedByGoverningTenant`, `unknownFutureValue`.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|policySnapshot|[microsoft.graph.relationshipPolicy](../resources/tenantgovernanceservices-relationshippolicy.md)|A snapshot of the governance policy applied to this relationship, including delegated administration role assignments and multi-tenant applications to provision.| +|status|microsoft.graph.relationshipStatus|The current status of the governance relationship. The possible values are: `active`, `terminated`, `terminationRequestedByGoverningTenant`, `unknownFutureValue`.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| ## Relationships None. @@ -48,14 +50,14 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceRelationship", + "@odata.type": "#microsoft.graph.governanceRelationship", "createdType": "String", "creationDateTime": "String (timestamp)", "id": "String (identifier)", @@ -65,8 +67,7 @@ The following JSON representation shows the resource type. "governingTenantName": "String", "governedTenantName": "String", "policySnapshot": { - "@odata.type": "microsoft.graph.tenantGovernanceServices.relationshipPolicy" + "@odata.type": "microsoft.graph.relationshipPolicy" } } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-governancerequest.md b/api-reference/beta/resources/tenantgovernanceservices-governancerequest.md index bc4654bf490..0214137287f 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-governancerequest.md +++ b/api-reference/beta/resources/tenantgovernanceservices-governancerequest.md @@ -3,6 +3,8 @@ title: "governanceRequest resource type" description: "Represents a request from a governing tenant to establish a governance relationship with a governed tenant." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # governanceRequest resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -23,10 +25,10 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). ## Methods |Method|Return type|Description| |:---|:---|:---| -|[List](../api/tenantgovernanceservices-list-governancerequests.md)|[microsoft.graph.tenantGovernanceServices.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) collection|Get a list of the [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) objects and their properties.| -|[Create](../api/tenantgovernanceservices-post-governancerequests.md)|[microsoft.graph.tenantGovernanceServices.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md)|Create a new governance request to establish a relationship with a governed tenant.| -|[Get](../api/tenantgovernanceservices-governancerequest-get.md)|[microsoft.graph.tenantGovernanceServices.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md)|Read the properties of a [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object.| -|[Update](../api/tenantgovernanceservices-governancerequest-update.md)|[microsoft.graph.tenantGovernanceServices.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md)|Update the **status** property to accept or reject the governance request.| +|[List](../api/tenantgovernanceservices-list-governancerequests.md)|[microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) collection|Get a list of the [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) objects and their properties.| +|[Create](../api/tenantgovernanceservices-post-governancerequests.md)|[microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md)|Create a new governance request to establish a relationship with a governed tenant.| +|[Get](../api/tenantgovernanceservices-governancerequest-get.md)|[microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md)|Read the properties of a [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object.| +|[Update](../api/tenantgovernanceservices-governancerequest-update.md)|[microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md)|Update the **status** property to accept or reject the governance request.| ## Properties |Property|Type|Description| @@ -37,28 +39,28 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). |governingTenantId|String|The Microsoft Entra tenant ID of the governing tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| |governingTenantName|String|The display name of the governing tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| |id|String|The unique identifier for the governance request. Inherited from [entity](../resources/entity.md).

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| -|policySnapshot|[microsoft.graph.tenantGovernanceServices.relationshipPolicy](../resources/tenantgovernanceservices-relationshippolicy.md)|A snapshot of the governance policy to be applied if the request is accepted, including delegated administration role assignments and multi-tenant applications to provision.| +|policySnapshot|[microsoft.graph.relationshipPolicy](../resources/tenantgovernanceservices-relationshippolicy.md)|A snapshot of the governance policy to be applied if the request is accepted, including delegated administration role assignments and multi-tenant applications to provision.| |requestDateTime|DateTimeOffset|The date and time when the request was created. The timestamp type represents date and time information using ISO 8601 format and is always in UTC.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| -|status|microsoft.graph.tenantGovernanceServices.requestStatus|The current status of the governance request. The possible values are: `pending`, `accepted`, `rejected`, `unknownFutureValue`.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|status|microsoft.graph.requestStatus|The current status of the governance request. The possible values are: `pending`, `accepted`, `rejected`, `unknownFutureValue`.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| ## Relationships |Relationship|Type|Description| |:---|:---|:---| -|governancePolicyTemplate|[microsoft.graph.tenantGovernanceServices.governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md)|The governance policy template associated with this request.| +|governancePolicyTemplate|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md)|The governance policy template associated with this request.| ## JSON representation The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governanceRequest", + "@odata.type": "#microsoft.graph.governanceRequest", "id": "String (identifier)", "governingTenantId": "String", "governingTenantName": "String", @@ -68,8 +70,7 @@ The following JSON representation shows the resource type. "requestDateTime": "String (timestamp)", "status": "String", "policySnapshot": { - "@odata.type": "microsoft.graph.tenantGovernanceServices.relationshipPolicy" + "@odata.type": "microsoft.graph.relationshipPolicy" } } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-actionstep.md b/api-reference/beta/resources/tenantgovernanceservices-investigationactionstep.md similarity index 77% rename from api-reference/beta/resources/tenantgovernanceservices-actionstep.md rename to api-reference/beta/resources/tenantgovernanceservices-investigationactionstep.md index 49906cf0255..c748e02d5b6 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-actionstep.md +++ b/api-reference/beta/resources/tenantgovernanceservices-investigationactionstep.md @@ -1,16 +1,18 @@ --- -title: "actionStep resource type" +title: "investigationActionStep resource type" description: "Represents an ordered investigation step returned with related tenant metrics to help callers drill into the signals behind an aggregate metric." author: "akhil-potturi" ms.date: 07/09/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType --- -# actionStep resource type +# investigationActionStep resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -20,7 +22,7 @@ Represents an ordered investigation step returned with [related tenant](../resou |Property|Type|Description| |:---|:---|:---| -|actionUrl|[microsoft.graph.tenantGovernanceServices.actionUrl](../resources/tenantgovernanceservices-actionurl.md)|The follow-on API reference for the step, containing the URL template and a machine-readable execution directive that a client uses to retrieve the drill-in data.| +|actionUrl|[microsoft.graph.investigationActionUrl](../resources/tenantgovernanceservices-investigationactionurl.md)|The follow-on API reference for the step, containing the URL template and a machine-readable execution directive that a client uses to retrieve the drill-in data.| |stepNumber|String|The one-based order, as a string, in which the step should be evaluated by a client. Steps are intended to be run in ascending **stepNumber** order because later steps can depend on the output of earlier steps. This value is the key of the resource.| |text|String|Human-readable guidance that explains what the step does and why it's useful for investigating the related metric.| @@ -34,17 +36,17 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.actionStep", + "@odata.type": "#microsoft.graph.investigationActionStep", "stepNumber": "String (identifier)", "text": "String", "actionUrl": { - "@odata.type": "microsoft.graph.tenantGovernanceServices.actionUrl" + "@odata.type": "microsoft.graph.investigationActionUrl" } } ``` diff --git a/api-reference/beta/resources/tenantgovernanceservices-actionurl.md b/api-reference/beta/resources/tenantgovernanceservices-investigationactionurl.md similarity index 79% rename from api-reference/beta/resources/tenantgovernanceservices-actionurl.md rename to api-reference/beta/resources/tenantgovernanceservices-investigationactionurl.md index e4db4af7fae..6f57ecc1579 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-actionurl.md +++ b/api-reference/beta/resources/tenantgovernanceservices-investigationactionurl.md @@ -1,20 +1,22 @@ --- -title: "actionUrl resource type" +title: "investigationActionUrl resource type" description: "Represents a follow-on API reference for an investigation step returned with related tenant metrics." author: "akhil-potturi" ms.date: 07/09/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType --- -# actionUrl resource type +# investigationActionUrl resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a follow-on API reference for an investigation step returned with [related tenant](../resources/tenantgovernanceservices-relatedtenant.md) metrics. It identifies an existing Microsoft Graph or Azure Resource Manager (ARM) API that a client can call to reveal more detail behind an aggregate metric. The **actionUrl** property of the [actionStep](../resources/tenantgovernanceservices-actionstep.md) resource uses this type. +Represents a follow-on API reference for an investigation step returned with [related tenant](../resources/tenantgovernanceservices-relatedtenant.md) metrics. It identifies an existing Microsoft Graph or Azure Resource Manager (ARM) API that a client can call to reveal more detail behind an aggregate metric. The **actionUrl** property of the [investigationActionStep](../resources/tenantgovernanceservices-investigationactionstep.md) resource uses this type. ## Properties @@ -32,12 +34,12 @@ None. The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.actionUrl", + "@odata.type": "#microsoft.graph.investigationActionUrl", "displayName": "String", "url": "String" } diff --git a/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetrics.md b/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetrics.md index f919a911689..e02cd0947c0 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetrics.md +++ b/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetrics.md @@ -3,6 +3,8 @@ title: "multiTenantApplicationMetrics resource type" description: "Represents multi-tenant application usage metrics between two related tenants." author: "akhil-potturi" ms.date: 03/19/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # multiTenantApplicationMetrics resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -26,24 +28,23 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). ## Relationships |Relationship|Type|Description| |:---|:---|:---| -|initial|[microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsInitial](../resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md)|Multitenant application metrics corresponding to initial snapshots where metrics were aggregated for the first time.| -|investigationHints|[microsoft.graph.tenantGovernanceServices.actionStep](../resources/tenantgovernanceservices-actionstep.md) collection|Ordered drill-in guidance for investigating multitenant application counts. This collection is returned only when explicitly requested by using a nested `$expand` query parameter, for example `$expand=multiTenantApplicationMetrics($expand=investigationHints)`.| -|recent|[microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsRecent](../resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md)|Multitenant application metrics corresponding to recent snapshots where metrics were found to have sufficiently changed.| +|initial|[microsoft.graph.multiTenantApplicationMetricsInitial](../resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md)|Multitenant application metrics corresponding to initial snapshots where metrics were aggregated for the first time.| +|investigationHints|[microsoft.graph.investigationActionStep](../resources/tenantgovernanceservices-investigationactionstep.md) collection|Ordered drill-in guidance for investigating multitenant application counts. This collection is returned only when explicitly requested by using a nested `$expand` query parameter, for example `$expand=multiTenantApplicationMetrics($expand=investigationHints)`.| +|recent|[microsoft.graph.multiTenantApplicationMetricsRecent](../resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md)|Multitenant application metrics corresponding to recent snapshots where metrics were found to have sufficiently changed.| ## JSON representation The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetrics", + "@odata.type": "#microsoft.graph.multiTenantApplicationMetrics", "id": "String (identifier)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md b/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md index 8d45517f8dc..a53ae50fa51 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md +++ b/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md @@ -3,6 +3,8 @@ title: "multiTenantApplicationMetricsBase resource type" description: "Abstract base type for multi-tenant application metrics." author: "akhil-potturi" ms.date: 03/19/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # multiTenantApplicationMetricsBase resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -43,14 +45,14 @@ The following JSON representation shows the resource type. ```json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsBase", + "@odata.type": "#microsoft.graph.multiTenantApplicationMetricsBase", "id": "String (identifier)", "watermarkDateTime": "String (timestamp)", "inboundMonthlyTotalApplications": "String", diff --git a/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md b/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md index 1902f97cd02..6feee763f2f 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md +++ b/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md @@ -3,6 +3,8 @@ title: "multiTenantApplicationMetricsInitial resource type" description: "Represents the initial snapshot of multi-tenant application metrics when the relationship was first discovered." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,22 +12,22 @@ doc_type: resourcePageType # multiTenantApplicationMetricsInitial resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] Represents the initial snapshot of multi-tenant application metrics captured when the [related tenant](../resources/tenantgovernanceservices-relatedtenant.md) was first discovered, establishing a baseline for application usage across tenant boundaries. -Inherits from [microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md). +Inherits from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md). ## Properties |Property|Type|Description| |:---|:---|:---| |createdDateTime|DateTimeOffset|Timestamp that represents when multitenant application metrics are initially aggregated for the related tenant.| |id|String|Unique identifier for the metrics snapshot. Inherited from [microsoft.graph.entity](../resources/entity.md).| -|inboundMonthlyTotalApplications|String|The total number of inbound multi-tenant applications in the last month. Inherited from [microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| -|outboundMonthlyTotalApplications|String|The total number of outbound multi-tenant applications in the last month. Inherited from [microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| -|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| +|inboundMonthlyTotalApplications|String|The total number of inbound multi-tenant applications in the last month. Inherited from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| +|outboundMonthlyTotalApplications|String|The total number of outbound multi-tenant applications in the last month. Inherited from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| ## Relationships None. @@ -34,14 +36,14 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsInitial", + "@odata.type": "#microsoft.graph.multiTenantApplicationMetricsInitial", "id": "String (identifier)", "watermarkDateTime": "String (timestamp)", "inboundMonthlyTotalApplications": "String", @@ -49,4 +51,3 @@ The following JSON representation shows the resource type. "createdDateTime": "String (timestamp)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md b/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md index 40490090281..0a2d2e7246f 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md +++ b/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md @@ -3,6 +3,8 @@ title: "multiTenantApplicationMetricsRecent resource type" description: "Represents the most recent snapshot of multi-tenant application metrics." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,22 +12,22 @@ doc_type: resourcePageType # multiTenantApplicationMetricsRecent resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] Represents the most recent snapshot of multi-tenant application metrics, showing current application usage across [related tenants](../resources/tenantgovernanceservices-relatedtenant.md). -Inherits from [microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md). +Inherits from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md). ## Properties |Property|Type|Description| |:---|:---|:---| |id|String|Unique identifier for the metrics snapshot. Inherited from [microsoft.graph.entity](../resources/entity.md).| -|inboundMonthlyTotalApplications|String|The total number of inbound multi-tenant applications in the last month. Inherited from [microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| -|outboundMonthlyTotalApplications|String|The total number of outbound multi-tenant applications in the last month. Inherited from [microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| +|inboundMonthlyTotalApplications|String|The total number of inbound multi-tenant applications in the last month. Inherited from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| +|outboundMonthlyTotalApplications|String|The total number of outbound multi-tenant applications in the last month. Inherited from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| |updateDateTime|DateTimeOffset|Timestamp that represents when multitenant application metrics are aggregated and have sufficiently changed for the related tenant.| -|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| ## Relationships None. @@ -35,14 +37,14 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetricsRecent", + "@odata.type": "#microsoft.graph.multiTenantApplicationMetricsRecent", "id": "String (identifier)", "watermarkDateTime": "String (timestamp)", "inboundMonthlyTotalApplications": "String", @@ -50,4 +52,3 @@ The following JSON representation shows the resource type. "updateDateTime": "String (timestamp)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationstoprovision.md b/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationstoprovision.md index ea7943fe781..9778e588789 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationstoprovision.md +++ b/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationstoprovision.md @@ -3,6 +3,8 @@ title: "multiTenantApplicationsToProvision resource type" description: "Represents a multi-tenant application to be provisioned in a governed tenant." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,11 +12,11 @@ doc_type: resourcePageType # multiTenantApplicationsToProvision resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Represents a multi-tenant application that should be provisioned in the governed tenant when a governance relationship is established. This allows the governing tenant to deploy management or monitoring applications into the governed tenant. This resource is defined in the **multiTenantApplicationsToProvision** property of [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md). +Represents a multi-tenant application that should be provisioned in the governed tenant when a governance relationship is established. This allows the governing tenant to deploy management or monitoring applications into the governed tenant. This resource is defined in the **multiTenantApplicationsToProvision** property of [governancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md). ## Properties @@ -23,7 +25,7 @@ Represents a multi-tenant application that should be provisioned in the governed |appId|String|The **appId** (client ID) of the multi-tenant application.| |displayName|String|The display name of the application.| |objectId|String|The object ID of the service principal in the governing tenant.| -|requiredResourceAccesses|[microsoft.graph.tenantGovernanceServices.requiredResourceAccess](../resources/tenantgovernanceservices-requiredresourceaccess.md) collection|The collection of resource accesses (permissions) required by the application.| +|requiredResourceAccesses|[microsoft.graph.applicationsRequiredResourceAccess](../resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md) collection|The collection of resource accesses (permissions) required by the application.| ## Relationships None. @@ -32,20 +34,19 @@ None. The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.multiTenantApplicationsToProvision", + "@odata.type": "#microsoft.graph.multiTenantApplicationsToProvision", "appId": "String", "objectId": "String", "displayName": "String", "requiredResourceAccesses": [ { - "@odata.type": "microsoft.graph.tenantGovernanceServices.requiredResourceAccess" + "@odata.type": "microsoft.graph.applicationsRequiredResourceAccess" } ] } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md b/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md index 4586cf0ee60..92433a68951 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md +++ b/api-reference/beta/resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md @@ -3,6 +3,8 @@ title: "multiTenantApplicationsToProvisionSnapshot resource type" description: "Represents a snapshot of a multi-tenant application configuration stored in a governance relationship or request." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # multiTenantApplicationsToProvisionSnapshot resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -22,7 +24,7 @@ Represents a snapshot of a multi-tenant application configuration that was captu |appId|String|The **appId** (client ID) of the multi-tenant application.| |displayName|String|The display name of the application.| |objectId|String|The object ID of the service principal in the governing tenant.| -|requiredResourceAccesses|[microsoft.graph.tenantGovernanceServices.requiredResourceAccess](../resources/tenantgovernanceservices-requiredresourceaccess.md) collection|The collection of resource accesses (permissions) required by the application.| +|requiredResourceAccesses|[microsoft.graph.applicationsRequiredResourceAccess](../resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md) collection|The collection of resource accesses (permissions) required by the application.| ## Relationships None. @@ -31,18 +33,18 @@ None. The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.multiTenantApplicationsToProvisionSnapshot", + "@odata.type": "#microsoft.graph.multiTenantApplicationsToProvisionSnapshot", "appId": "String", "objectId": "String", "displayName": "String", "requiredResourceAccesses": [ { - "@odata.type": "microsoft.graph.tenantGovernanceServices.requiredResourceAccess" + "@odata.type": "microsoft.graph.applicationsRequiredResourceAccess" } ] } diff --git a/api-reference/beta/resources/tenantgovernanceservices-relatedtenant.md b/api-reference/beta/resources/tenantgovernanceservices-relatedtenant.md index 195d4c36e54..cf3b726fe77 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-relatedtenant.md +++ b/api-reference/beta/resources/tenantgovernanceservices-relatedtenant.md @@ -3,6 +3,8 @@ title: "relatedTenant resource type" description: "Represents a tenant that has been discovered as related to the current tenant through tenant discovery." author: "hafowler" ms.date: 03/19/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # relatedTenant resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -26,10 +28,10 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). ## Methods |Method|Return type|Description| |:---|:---|:---| -|[List](../api/tenantgovernanceservices-list-relatedtenants.md)|[microsoft.graph.tenantGovernanceServices.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) collection|Get a list of the [relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) objects and their properties.| -|[Get](../api/tenantgovernanceservices-relatedtenant-get.md)|[microsoft.graph.tenantGovernanceServices.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md)|Read the properties of a [relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) object.| +|[List](../api/tenantgovernanceservices-list-relatedtenants.md)|[microsoft.graph.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) collection|Get a list of the [relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) objects and their properties.| +|[Get](../api/tenantgovernanceservices-relatedtenant-get.md)|[microsoft.graph.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md)|Read the properties of a [relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) object.| |[Refresh](../api/tenantgovernanceservices-relatedtenant-refresh.md)|None|Trigger a refresh operation to update the list of related tenants.| -|[Refresh status](../api/tenantgovernanceservices-relatedtenant-refreshstatus.md)|[microsoft.graph.tenantGovernanceServices.relatedTenantsRefreshStatus](../resources/tenantgovernanceservices-relatedtenantsrefreshstatus.md)|Check the status of a related tenants refresh operation.| +|[Refresh status](../api/tenantgovernanceservices-relatedtenant-refreshstatus.md)|[microsoft.graph.relatedTenantsRefreshStatus](../resources/tenantgovernanceservices-relatedtenantsrefreshstatus.md)|Check the status of a related tenants refresh operation.| ## Properties |Property|Type|Description| @@ -41,11 +43,11 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). ## Relationships |Relationship|Type|Description| |:---|:---|:---| -|appB2BSignInActivityMetrics|[microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetrics](../resources/tenantgovernanceservices-b2bsigninactivitymetrics.md)|B2B sign-in activity metrics for this related tenant. Expanded by default.| -|b2BRegistrationMetrics|[microsoft.graph.tenantGovernanceServices.b2bRegistrationMetrics](../resources/tenantgovernanceservices-b2bregistrationmetrics.md)|B2B registration metrics for this related tenant. Expanded by default.| -|b2BSignInActivityMetrics|[microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetrics](../resources/tenantgovernanceservices-b2bsigninactivitymetrics.md)|B2B sign-in activity metrics for this related tenant. Expanded by default.| -|billingMetrics|[microsoft.graph.tenantGovernanceServices.billingMetrics](../resources/tenantgovernanceservices-billingmetrics.md)|Billing metrics for this related tenant. Expanded by default.| -|multiTenantApplicationMetrics|[microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetrics](../resources/tenantgovernanceservices-multitenantapplicationmetrics.md)|Multi-tenant application usage metrics for this related tenant. Expanded by default.| +|appB2BSignInActivityMetrics|[microsoft.graph.b2BSignInActivityMetrics](../resources/tenantgovernanceservices-b2bsigninactivitymetrics.md)|B2B sign-in activity metrics for this related tenant. Expanded by default.| +|b2BRegistrationMetrics|[microsoft.graph.b2bRegistrationMetrics](../resources/tenantgovernanceservices-b2bregistrationmetrics.md)|B2B registration metrics for this related tenant. Expanded by default.| +|b2BSignInActivityMetrics|[microsoft.graph.b2BSignInActivityMetrics](../resources/tenantgovernanceservices-b2bsigninactivitymetrics.md)|B2B sign-in activity metrics for this related tenant. Expanded by default.| +|billingMetrics|[microsoft.graph.billingMetrics](../resources/tenantgovernanceservices-billingmetrics.md)|Billing metrics for this related tenant. Expanded by default.| +|multiTenantApplicationMetrics|[microsoft.graph.multiTenantApplicationMetrics](../resources/tenantgovernanceservices-multitenantapplicationmetrics.md)|Multi-tenant application usage metrics for this related tenant. Expanded by default.| The metrics relationships support the `$expand` query parameter. Each metrics category also exposes an **investigationHints** relationship that returns ordered, actionable guidance for drilling into the signals behind an aggregate metric. Investigation hints aren't returned by default; to retrieve them, use a nested `$expand` on the metrics relationship. For example, the following request returns the B2B registration metrics for a related tenant together with the investigation hints for those metrics: @@ -53,23 +55,22 @@ The metrics relationships support the `$expand` query parameter. Each metrics ca GET https://graph.microsoft.com/beta/directory/tenantGovernance/relatedTenants/{id}?$expand=b2BRegistrationMetrics($expand=investigationHints) ``` -Each hint is an [actionStep](../resources/tenantgovernanceservices-actionstep.md) that pairs human-readable guidance with a Microsoft Graph or Azure Resource Manager URL that you can call to investigate the users, applications, sign-in activity, or billing relationships behind the count. For more information, see [actionStep](../resources/tenantgovernanceservices-actionstep.md). +Each hint is an [investigationActionStep](../resources/tenantgovernanceservices-investigationactionstep.md) that pairs human-readable guidance with a Microsoft Graph or Azure Resource Manager URL that you can call to investigate the users, applications, sign-in activity, or billing relationships behind the count. For more information, see [investigationActionStep](../resources/tenantgovernanceservices-investigationactionstep.md). ## JSON representation The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.relatedTenant", + "@odata.type": "#microsoft.graph.relatedTenant", "id": "String (identifier)", "createdDateTime": "String (timestamp)", "isMicrosoftInfrastructure": "Boolean" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-relatedtenantsrefreshrequest.md b/api-reference/beta/resources/tenantgovernanceservices-relatedtenantsrefreshrequest.md index df766e4341f..82cc5d28ea3 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-relatedtenantsrefreshrequest.md +++ b/api-reference/beta/resources/tenantgovernanceservices-relatedtenantsrefreshrequest.md @@ -3,6 +3,8 @@ title: "relatedTenantsRefreshRequest resource type" description: "Represents a request to refresh related tenants data." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # relatedTenantsRefreshRequest resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -35,14 +37,14 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.relatedTenantsRefreshRequest", + "@odata.type": "#microsoft.graph.relatedTenantsRefreshRequest", "id": "String (identifier)", "location": "String" } diff --git a/api-reference/beta/resources/tenantgovernanceservices-relatedtenantsrefreshstatus.md b/api-reference/beta/resources/tenantgovernanceservices-relatedtenantsrefreshstatus.md index 0e96276909a..a5699aace16 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-relatedtenantsrefreshstatus.md +++ b/api-reference/beta/resources/tenantgovernanceservices-relatedtenantsrefreshstatus.md @@ -3,6 +3,8 @@ title: "relatedTenantsRefreshStatus resource type" description: "Represents the status of a related tenants refresh operation." author: "akhil-potturi" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # relatedTenantsRefreshStatus resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -31,15 +33,14 @@ None. The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.relatedTenantsRefreshStatus", + "@odata.type": "#microsoft.graph.relatedTenantsRefreshStatus", "mostRecentRefreshTime": "String", "mostRecentRefreshRequestStatus": "String", "isFirstRefresh": "Boolean" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-relationshippolicy.md b/api-reference/beta/resources/tenantgovernanceservices-relationshippolicy.md index a23fe3cab8c..16a6d333458 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-relationshippolicy.md +++ b/api-reference/beta/resources/tenantgovernanceservices-relationshippolicy.md @@ -3,6 +3,8 @@ title: "relationshipPolicy resource type" description: "Represents a snapshot of governance policy configuration stored in a governance relationship or request." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # relationshipPolicy resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -20,9 +22,9 @@ Represents a snapshot of governance policy configuration that is stored in a [go ## Properties |Property|Type|Description| |:---|:---|:---| -|delegatedAdministrationRoleAssignments|[microsoft.graph.tenantGovernanceServices.delegatedAdministrationRoleAssignmentSnapshot](../resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md) collection|A snapshot of the delegated administration role assignments configured in this policy.| +|delegatedAdministrationRoleAssignments|[microsoft.graph.delegatedAdministrationRoleAssignmentSnapshot](../resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md) collection|A snapshot of the delegated administration role assignments configured in this policy.| |governedTenantCanTerminate|Boolean|Indicates whether the governed tenant can terminate the relationship.| -|multiTenantApplicationsToProvision|[microsoft.graph.tenantGovernanceServices.multiTenantApplicationsToProvisionSnapshot](../resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md) collection|A snapshot of the multi-tenant applications to be provisioned in the governed tenant.| +|multiTenantApplicationsToProvision|[microsoft.graph.multiTenantApplicationsToProvisionSnapshot](../resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md) collection|A snapshot of the multi-tenant applications to be provisioned in the governed tenant.| |policyId|String|The identifier of the source policy template from which this snapshot was created.| ## Relationships @@ -32,23 +34,22 @@ None. The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.relationshipPolicy", + "@odata.type": "#microsoft.graph.relationshipPolicy", "policyId": "String", "multiTenantApplicationsToProvision": [ { - "@odata.type": "microsoft.graph.tenantGovernanceServices.multiTenantApplicationsToProvisionSnapshot" + "@odata.type": "microsoft.graph.multiTenantApplicationsToProvisionSnapshot" } ], "delegatedAdministrationRoleAssignments": [ { - "@odata.type": "microsoft.graph.tenantGovernanceServices.delegatedAdministrationRoleAssignmentSnapshot" + "@odata.type": "microsoft.graph.delegatedAdministrationRoleAssignmentSnapshot" } ] } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-roletemplate.md b/api-reference/beta/resources/tenantgovernanceservices-roletemplate.md index ee3b8c2d0a7..6c74d440cf7 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-roletemplate.md +++ b/api-reference/beta/resources/tenantgovernanceservices-roletemplate.md @@ -3,6 +3,8 @@ title: "roleTemplate resource type" description: "Represents a Microsoft Entra role template definition." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # roleTemplate resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -30,14 +32,13 @@ None. The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.roleTemplate", + "@odata.type": "#microsoft.graph.roleTemplate", "id": "String", "name": "String" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-tenantgovernance-overview.md b/api-reference/beta/resources/tenantgovernanceservices-tenantgovernance-overview.md index 1ac3d5ea5c6..9df2648957f 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-tenantgovernance-overview.md +++ b/api-reference/beta/resources/tenantgovernanceservices-tenantgovernance-overview.md @@ -1,20 +1,22 @@ --- title: "Overview of Tenant Governance APIs in Microsoft Graph" description: "Discover, manage, and govern Microsoft Entra tenants at scale with Tenant Governance APIs in Microsoft Graph. Learn about related tenants, governance relationships and associated settings." -author: "FaithOmbongi" -ms.author: "ombongifaith" +author: "akhil-potturi" +ms.author: "potturiakhil" ms.reviewer: "hafowler,akhil.potturi,jeffsta" ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: conceptualPageType -ms.date: 03/19/2026 +ms.date: 09/23/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.topic: overview #customer intent: As a developer, I want to learn how to use the tenant governance APIs in Microsoft Graph to programmatically discover related tenants and establish governance relationships. --- # Overview of Tenant Governance APIs in Microsoft Graph -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -51,7 +53,7 @@ A *governance relationship* is a directional connection between two Microsoft En To establish a governance relationship, both tenants participate in a three-step handshake: 1. The future **governed** tenant sends a [governance invitation](../resources/tenantgovernanceservices-governanceinvitation.md) to the future governing tenant. The future governing tenant must have enabled receiving governance invitations through the [Update tenantGovernanceSetting](../api/tenantgovernanceservices-tenantgovernancesetting-update.md) operation. -2. The future **governing** tenant sends a [governance request](../resources/tenantgovernanceservices-governancerequest.md) to the future governed tenant, which includes a selected [governance policy template](../resources/tenantgovernanceservices-governancepolicytemplate.md). +2. The future **governing** tenant sends a [governance request](../resources/tenantgovernanceservices-governancerequest.md) to the future governed tenant, which includes a selected [governance policy template](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md). 3. The future **governed** tenant reviews and accepts the request. Upon acceptance, a [governance relationship](../resources/tenantgovernanceservices-governancerelationship.md) is created. > [!NOTE] @@ -69,11 +71,11 @@ The following governance models are supported: | Multiple | ❌ No | Multiple relationships between the same 2 tenants is not supported. | | Cloud solution providers | ❌ No | Coexistence of CSP relationships created through Partner Center and tenant governance relationships is not supported. | -When you create a new add-on tenant from an existing tenant, Tenant Governance automatically establishes a governance relationship between the parent (governing) tenant and the new (governed) tenant using a default [governance policy template](../resources/tenantgovernanceservices-governancepolicytemplate.md). This process ensures that newly created tenants are immediately under centralized governance. +When you create a new add-on tenant from an existing tenant, Tenant Governance automatically establishes a governance relationship between the parent (governing) tenant and the new (governed) tenant using a default [governance policy template](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md). This process ensures that newly created tenants are immediately under centralized governance. ## Governance policy templates -A [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) defines the configuration for governance relationships, including delegated administration role assignments and multi-tenant applications to provision. Policy templates are reusable across governance relationships, enabling consistent governance at scale. When a governance relationship is established, the system captures and stores a policy snapshot with the relationship, preserving the policy state at the time of creation. +A [governancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) defines the configuration for governance relationships, including delegated administration role assignments and multi-tenant applications to provision. Policy templates are reusable across governance relationships, enabling consistent governance at scale. When a governance relationship is established, the system captures and stores a policy snapshot with the relationship, preserving the policy state at the time of creation. > [!NOTE] > Updating a governance policy template doesn't automatically update existing relationships that were created using that template. To apply policy changes to an active relationship, you must create a new governance request. @@ -106,5 +108,5 @@ All tenant governance activities are logged in the Microsoft Entra [audit logs]( - [governanceInvitation resource type](../resources/tenantgovernanceservices-governanceinvitation.md) - [governanceRequest resource type](../resources/tenantgovernanceservices-governancerequest.md) - [governanceRelationship resource type ](../resources/tenantgovernanceservices-governancerelationship.md) -- [governancePolicyTemplate resource type](../resources/tenantgovernanceservices-governancepolicytemplate.md) +- [governancePolicyTemplate resource type](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) - [tenantgovernancesetting resource type](../resources/tenantgovernanceservices-tenantgovernancesetting.md) diff --git a/api-reference/beta/resources/tenantgovernanceservices-tenantgovernance.md b/api-reference/beta/resources/tenantgovernanceservices-tenantgovernance.md index ef744114113..786de41b7ad 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-tenantgovernance.md +++ b/api-reference/beta/resources/tenantgovernanceservices-tenantgovernance.md @@ -3,6 +3,8 @@ title: "tenantGovernance resource type" description: "Container for Microsoft Entra Tenant Governance capabilities." author: "hafowler" ms.date: 03/19/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # tenantGovernance resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -30,25 +32,24 @@ None. ## Relationships |Relationship|Type|Description| |:---|:---|:---| -|governanceInvitations|[microsoft.graph.tenantGovernanceServices.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) collection|Collection of governance invitations associated with the tenant.| -|governancePolicyTemplates|[microsoft.graph.tenantGovernanceServices.governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) collection|Collection of governance policy templates associated with the tenant.| -|governanceRelationships|[microsoft.graph.tenantGovernanceServices.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) collection|Collection of governance relationships associated with the tenant.| -|governanceRequests|[microsoft.graph.tenantGovernanceServices.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) collection|Collection of governance requests associated with the tenant.| -|relatedTenants|[microsoft.graph.tenantGovernanceServices.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) collection|Collection of related tenants associated with the tenant.| -|settings|[microsoft.graph.tenantGovernanceServices.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md)|Settings for the tenant governance container.| +|governanceInvitations|[microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) collection|Collection of governance invitations associated with the tenant.| +|governancePolicyTemplates|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) collection|Collection of governance policy templates associated with the tenant.| +|governanceRelationships|[microsoft.graph.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) collection|Collection of governance relationships associated with the tenant.| +|governanceRequests|[microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) collection|Collection of governance requests associated with the tenant.| +|relatedTenants|[microsoft.graph.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) collection|Collection of related tenants associated with the tenant.| +|settings|[microsoft.graph.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md)|Settings for the tenant governance container.| ## JSON representation The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.tenantGovernance", + "@odata.type": "#microsoft.graph.tenantGovernance", "id": "String (identifier)" } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-governancepolicytemplate.md b/api-reference/beta/resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md similarity index 60% rename from api-reference/beta/resources/tenantgovernanceservices-governancepolicytemplate.md rename to api-reference/beta/resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md index 40d4a00e0b9..01ed8cafe21 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-governancepolicytemplate.md +++ b/api-reference/beta/resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md @@ -1,16 +1,18 @@ --- -title: "governancePolicyTemplate resource type" +title: "tenantGovernancePolicyTemplate resource type" description: "Represents a policy template that defines the configuration for governance relationships." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType --- -# governancePolicyTemplate resource type +# tenantGovernancePolicyTemplate resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -24,23 +26,23 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). ## Methods |Method|Return type|Description| |:---|:---|:---| -|[List](../api/tenantgovernanceservices-list-governancepolicytemplates.md)|[microsoft.graph.tenantGovernanceServices.governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) collection|Get a list of the [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) objects and their properties.| -|[Create](../api/tenantgovernanceservices-post-governancepolicytemplates.md)|[microsoft.graph.tenantGovernanceServices.governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md)|Create a new governance policy template.| -|[Get](../api/tenantgovernanceservices-governancepolicytemplate-get.md)|[microsoft.graph.tenantGovernanceServices.governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md)|Read the properties of a [governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md) object, including the system-provided default template.| -|[Update](../api/tenantgovernanceservices-governancepolicytemplate-update.md)|[microsoft.graph.tenantGovernanceServices.governancePolicyTemplate](../resources/tenantgovernanceservices-governancepolicytemplate.md)|Update the properties of a governance policy template, including the system-provided default template.| +|[List](../api/tenantgovernanceservices-list-governancepolicytemplates.md)|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) collection|Get a list of the [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) objects and their properties.| +|[Create](../api/tenantgovernanceservices-post-governancepolicytemplates.md)|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md)|Create a new governance policy template.| +|[Get](../api/tenantgovernanceservices-governancepolicytemplate-get.md)|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md)|Read the properties of a [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object, including the system-provided default template.| +|[Update](../api/tenantgovernanceservices-governancepolicytemplate-update.md)|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md)|Update the properties of a governance policy template, including the system-provided default template.| |[Delete](../api/tenantgovernanceservices-delete-governancepolicytemplates.md)|None|Delete a governance policy template.| ## Properties |Property|Type|Description| |:---|:---|:---| |createdDateTime|DateTimeOffset|The date and time when the template was created. The timestamp type represents date and time information using ISO 8601 format and is always in UTC.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| -|delegatedAdministrationRoleAssignments|[microsoft.graph.tenantGovernanceServices.delegatedAdministrationRoleAssignment](../resources/tenantgovernanceservices-delegatedadministrationroleassignment.md) collection|A collection of delegated administration role assignments to be applied in the governed tenant when the governance relationship is established.| +|delegatedAdministrationRoleAssignments|[microsoft.graph.delegatedAdministrationRoleAssignment](../resources/tenantgovernanceservices-delegatedadministrationroleassignment.md) collection|A collection of delegated administration role assignments to be applied in the governed tenant when the governance relationship is established.| |description|String|A description of the policy template.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| |displayName|String|The display name of the policy template.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| |governedTenantCanTerminate|Boolean|Not implemented.| |id|String|The unique identifier for the policy template. Is `default` for the default template. Inherited from [entity](../resources/entity.md).

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| |lastModifiedDateTime|DateTimeOffset|The date and time when the template was last modified. The timestamp type represents date and time information using ISO 8601 format and is always in UTC.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| -|multiTenantApplicationsToProvision|[microsoft.graph.tenantGovernanceServices.multiTenantApplicationsToProvision](../resources/tenantgovernanceservices-multitenantapplicationstoprovision.md) collection|A collection of multi-tenant applications to be provisioned in the governed tenant when the governance relationship is established.| +|multiTenantApplicationsToProvision|[microsoft.graph.multiTenantApplicationsToProvision](../resources/tenantgovernanceservices-multitenantapplicationstoprovision.md) collection|A collection of multi-tenant applications to be provisioned in the governed tenant when the governance relationship is established.| |version|String|The version of the policy template. Version count increased by 1 when updated.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| ## Relationships @@ -51,14 +53,14 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.governancePolicyTemplate", + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", "id": "String (identifier)", "displayName": "String", "description": "String", @@ -68,14 +70,13 @@ The following JSON representation shows the resource type. "version": "String", "multiTenantApplicationsToProvision": [ { - "@odata.type": "microsoft.graph.tenantGovernanceServices.multiTenantApplicationsToProvision" + "@odata.type": "microsoft.graph.multiTenantApplicationsToProvision" } ], "delegatedAdministrationRoleAssignments": [ { - "@odata.type": "microsoft.graph.tenantGovernanceServices.delegatedAdministrationRoleAssignment" + "@odata.type": "microsoft.graph.delegatedAdministrationRoleAssignment" } ] } ``` - diff --git a/api-reference/beta/resources/tenantgovernanceservices-tenantgovernancesetting.md b/api-reference/beta/resources/tenantgovernanceservices-tenantgovernancesetting.md index 515353fb8f9..437cdbf998a 100644 --- a/api-reference/beta/resources/tenantgovernanceservices-tenantgovernancesetting.md +++ b/api-reference/beta/resources/tenantgovernanceservices-tenantgovernancesetting.md @@ -3,6 +3,8 @@ title: "tenantGovernanceSetting resource type" description: "Represents the tenant governance settings that control related tenant discovery and invitation capabilities." author: "hafowler" ms.date: 03/10/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 ms.localizationpriority: medium ms.subservice: "entra-tenant-governance" doc_type: resourcePageType @@ -10,7 +12,7 @@ doc_type: resourcePageType # tenantGovernanceSetting resource type -Namespace: microsoft.graph.tenantGovernanceServices +Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] @@ -23,8 +25,8 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). ## Methods |Method|Return type|Description| |:---|:---|:---| -|[Get](../api/tenantgovernanceservices-tenantgovernancesetting-get.md)|[microsoft.graph.tenantGovernanceServices.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md)|Read the properties of the [tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) singleton.| -|[Update](../api/tenantgovernanceservices-tenantgovernancesetting-update.md)|[microsoft.graph.tenantGovernanceServices.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md)|Update the **canReceiveInvitations** property of the tenant governance settings.| +|[Get](../api/tenantgovernanceservices-tenantgovernancesetting-get.md)|[microsoft.graph.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md)|Read the properties of the [tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) singleton.| +|[Update](../api/tenantgovernanceservices-tenantgovernancesetting-update.md)|[microsoft.graph.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md)|Update the **canReceiveInvitations** property of the tenant governance settings.| |[Enable related tenants](../api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md)|None|Enable the related tenants feature for tenant discovery.| ## Properties @@ -41,16 +43,15 @@ The following JSON representation shows the resource type. ``` json { - "@odata.type": "#microsoft.graph.tenantGovernanceServices.tenantGovernanceSetting", + "@odata.type": "#microsoft.graph.tenantGovernanceSetting", "isRelatedTenantsEnabled": "Boolean", "canReceiveInvitations": "Boolean" } ``` - diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index ebe99e17c91..0c2a43c99d5 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -3799,23 +3799,46 @@ ] }, { - "name": "Tenant governance (preview)", + "name": "Tenant governance", "overview": "../../resources/tenantgovernanceservices-tenantgovernance-overview.md", "resources": [ - "microsoft.graph.tenantGovernanceServices.tenantGovernanceSetting", - "microsoft.graph.tenantGovernanceServices.relatedTenant", - "microsoft.graph.tenantGovernanceServices.governancePolicyTemplate", - "microsoft.graph.tenantGovernanceServices.governanceInvitation", - "microsoft.graph.tenantGovernanceServices.governanceRequest", - "microsoft.graph.tenantGovernanceServices.governanceRelationship" + "microsoft.graph.governanceInvitation", + "microsoft.graph.governanceRelationship", + "microsoft.graph.governanceRequest", + "microsoft.graph.relatedTenant", + "microsoft.graph.tenantGovernance", + "microsoft.graph.tenantGovernancePolicyTemplate", + "microsoft.graph.tenantGovernanceSetting" ], "complexTypes": [ - "microsoft.graph.tenantGovernanceServices.b2BSignInActivityMetrics", - "microsoft.graph.tenantGovernanceServices.b2bRegistrationMetrics", - "microsoft.graph.tenantGovernanceServices.billingMetrics", - "microsoft.graph.tenantGovernanceServices.actionStep", - "microsoft.graph.tenantGovernanceServices.actionUrl", - "microsoft.graph.tenantGovernanceServices.multiTenantApplicationMetrics" + "microsoft.graph.applicationResourcePermission", + "microsoft.graph.applicationsRequiredResourceAccess", + "microsoft.graph.b2bRegistrationMetrics", + "microsoft.graph.b2BRegistrationMetricsBase", + "microsoft.graph.b2BRegistrationMetricsInitial", + "microsoft.graph.b2BRegistrationMetricsRecent", + "microsoft.graph.b2BSignInActivityMetrics", + "microsoft.graph.b2BSignInActivityMetricsBase", + "microsoft.graph.b2BSignInActivityMetricsInitial", + "microsoft.graph.b2BSignInActivityMetricsRecent", + "microsoft.graph.billingMetrics", + "microsoft.graph.billingMetricsBase", + "microsoft.graph.billingMetricsInitial", + "microsoft.graph.billingMetricsRecent", + "microsoft.graph.delegatedAdministrationRoleAssignment", + "microsoft.graph.delegatedAdministrationRoleAssignmentSnapshot", + "microsoft.graph.investigationActionStep", + "microsoft.graph.investigationActionUrl", + "microsoft.graph.multiTenantApplicationMetrics", + "microsoft.graph.multiTenantApplicationMetricsBase", + "microsoft.graph.multiTenantApplicationMetricsInitial", + "microsoft.graph.multiTenantApplicationMetricsRecent", + "microsoft.graph.multiTenantApplicationsToProvision", + "microsoft.graph.multiTenantApplicationsToProvisionSnapshot", + "microsoft.graph.relatedTenantsRefreshRequest", + "microsoft.graph.relatedTenantsRefreshStatus", + "microsoft.graph.relationshipPolicy", + "microsoft.graph.roleTemplate" ] }, { diff --git a/api-reference/v1.0/api/tenantgovernanceservices-delete-governancepolicytemplates.md b/api-reference/v1.0/api/tenantgovernanceservices-delete-governancepolicytemplates.md new file mode 100644 index 00000000000..dc1a95b9078 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-delete-governancepolicytemplates.md @@ -0,0 +1,76 @@ +--- +title: "Delete tenantGovernancePolicyTemplate" +description: "Delete a governance policy template." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Delete tenantGovernancePolicyTemplate + +Namespace: microsoft.graph + +Delete a [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object. You can't delete the default template or templates currently used by active relationships. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-delete-governancepolicytemplates-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-apis-write](../includes/rbac-for-apis/rbac-tenant-governance-apis-write.md)] + +## HTTP request + + +``` http +DELETE /directory/tenantGovernance/governancePolicyTemplates/{governancePolicyTemplateId} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `204 No Content` response code. + +## Examples + +### Request + +The following example shows a request. + +``` http +DELETE https://graph.microsoft.com/v1.0/directory/tenantGovernance/governancePolicyTemplates/aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-governanceinvitation-delete.md b/api-reference/v1.0/api/tenantgovernanceservices-governanceinvitation-delete.md new file mode 100644 index 00000000000..d422beca0e0 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-governanceinvitation-delete.md @@ -0,0 +1,76 @@ +--- +title: "Delete governanceInvitation" +description: "Delete a governance invitation." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Delete governanceInvitation + +Namespace: microsoft.graph + +Delete a [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-governanceinvitation-delete-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-apis-write](../includes/rbac-for-apis/rbac-tenant-governance-apis-write.md)] + +## HTTP request + + +``` http +DELETE /directory/tenantGovernance/governanceInvitations/{governanceInvitationId} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `204 No Content` response code. + +## Examples + +### Request + +The following example shows a request. + +``` http +DELETE https://graph.microsoft.com/v1.0/directory/tenantGovernance/governanceInvitations/aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-governanceinvitation-get.md b/api-reference/v1.0/api/tenantgovernanceservices-governanceinvitation-get.md new file mode 100644 index 00000000000..2b5c0d0933e --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-governanceinvitation-get.md @@ -0,0 +1,94 @@ +--- +title: "Get governanceInvitation" +description: "Read the properties of a governance invitation." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Get governanceInvitation + +Namespace: microsoft.graph + +Read the properties of a [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-governanceinvitation-get-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-read](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/tenantGovernance/governanceInvitations/{governanceInvitationId} +``` + +## Optional query parameters + +This method doesn't support OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/tenantGovernance/governanceInvitations/aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.governanceInvitation", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", + "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", + "governingTenantName": "Contoso, Inc", + "governedTenantName": "Fabrikam", + "createdDateTime": "2026-01-01T18:25:09.4212828Z", + "expirationDateTime": "2026-01-31T18:25:09.4212828Z" +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-governancepolicytemplate-get.md b/api-reference/v1.0/api/tenantgovernanceservices-governancepolicytemplate-get.md new file mode 100644 index 00000000000..b6daa03ce2d --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-governancepolicytemplate-get.md @@ -0,0 +1,174 @@ +--- +title: "Get tenantGovernancePolicyTemplate" +description: "Read the properties of a governance policy template." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Get tenantGovernancePolicyTemplate + +Namespace: microsoft.graph + +Read the properties of a [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-governancepolicytemplate-get-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-read](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/tenantGovernance/governancePolicyTemplates/{governancePolicyTemplateId} +GET /directory/tenantGovernance/governancePolicyTemplates/default +``` + +## Optional query parameters + +This method doesn't support OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object in the response body. + +## Examples + +### Example 1: Get a specific governance policy template + +#### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/tenantGovernance/governancePolicyTemplates/aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "displayName": "Monitor Entra resource configurations", + "description": "Grants Global reader and provisions a custom multi-tenant application to monitor conditional access policies", + "createdDateTime": "2026-03-06T22:29:00.2110638Z", + "lastModifiedDateTime": "2026-03-06T22:29:00.2110638Z", + "version": "1.0", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] +} +``` + +### Example 2: Get the default governance policy template + +#### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/tenantGovernance/governancePolicyTemplates/default +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", + "id": "default", + "displayName": "Default Policy Template", + "description": "The system-provided default governance policy template", + "createdDateTime": "2026-03-06T22:29:00.2110638Z", + "lastModifiedDateTime": "2026-03-06T22:29:00.2110638Z", + "version": "1.0", + "multiTenantApplicationsToProvision": [], + "delegatedAdministrationRoleAssignments": [] +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-governancepolicytemplate-update.md b/api-reference/v1.0/api/tenantgovernanceservices-governancepolicytemplate-update.md new file mode 100644 index 00000000000..957ebd93475 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-governancepolicytemplate-update.md @@ -0,0 +1,298 @@ +--- +title: "Update tenantGovernancePolicyTemplate" +description: "Update the properties of a governance policy template." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Update tenantGovernancePolicyTemplate + +Namespace: microsoft.graph + +Update the properties of a [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-governancepolicytemplate-update-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-write](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-write.md)] + +## HTTP request + + +``` http +PATCH /directory/tenantGovernance/governancePolicyTemplates/{governancePolicyTemplateId} +PATCH /directory/tenantGovernance/governancePolicyTemplates/default +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +[!INCLUDE [table-intro](../../includes/update-property-table-intro.md)] + + +|Property|Type|Description| +|:---|:---|:---| +|displayName|String|The display name of the policy template. | +|description|String|A description of the policy template.| +|multiTenantApplicationsToProvision|[microsoft.graph.multiTenantApplicationsToProvision](../resources/tenantgovernanceservices-multitenantapplicationstoprovision.md) collection|A collection of multitenant applications to be provisioned in the governed tenant when the governance relationship is established. | +|delegatedAdministrationRoleAssignments|[microsoft.graph.delegatedAdministrationRoleAssignment](../resources/tenantgovernanceservices-delegatedadministrationroleassignment.md) collection|A collection of delegated administration role assignments to be applied in the governed tenant when the governance relationship is established. | + + + +## Response + +If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object in the response body. + +## Examples + +### Example 1: Update a custom governance policy template + +#### Request + +The following example shows a request. + +``` http +PATCH https://graph.microsoft.com/v1.0/directory/tenantGovernance/governancePolicyTemplates/aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb +Content-Type: application/json + +{ + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] +} +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "displayName": "Monitor Entra resource configurations", + "description": "Grants Global reader and provisions a custom multi-tenant application to monitor conditional access policies", + "createdDateTime": "2026-03-06T22:29:00.2110638Z", + "lastModifiedDateTime": "2026-03-06T22:29:00.2110638Z", + "version": "1.0", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] +} +``` + +### Example 2: Update the default governance policy template + +#### Request + +The following example shows a request. + +``` http +PATCH https://graph.microsoft.com/v1.0/directory/tenantGovernance/governancePolicyTemplates/default +Content-Type: application/json + +{ + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] +} +``` + +#### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", + "id": "default", + "displayName": "Default Policy Template", + "description": "The system-provided default governance policy template", + "version": "1.0", + "createdDateTime": "2026-03-06T22:29:00.2110638Z", + "lastModifiedDateTime": "2026-03-06T22:29:00.2110638Z", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-governancerelationship-get.md b/api-reference/v1.0/api/tenantgovernanceservices-governancerelationship-get.md new file mode 100644 index 00000000000..a8992de88a7 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-governancerelationship-get.md @@ -0,0 +1,135 @@ +--- +title: "Get governanceRelationship" +description: "Read the properties of a governance relationship." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Get governanceRelationship + +Namespace: microsoft.graph + +Read the properties of a [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-governancerelationship-get-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-read](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/tenantGovernance/governanceRelationships/{governanceRelationshipId} +``` + +## Optional query parameters + +This method doesn't support OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [microsoft.graph.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/tenantGovernance/governanceRelationships/aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.governanceRelationship", + "createdType": "approvedByAdmin", + "creationDateTime": "2025-09-11T17:07:41.2019694Z", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "status": "Active", + "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", + "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", + "governingTenantName": "Contoso, Inc", + "governedTenantName": "Fabrikam", + "policySnapshot": { + "policyId": "d3d3d3d3-eeee-ffff-aaaa-b4b4b4b4b4b4", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] + } +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-governancerelationship-update.md b/api-reference/v1.0/api/tenantgovernanceservices-governancerelationship-update.md new file mode 100644 index 00000000000..2ad0acb1354 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-governancerelationship-update.md @@ -0,0 +1,146 @@ +--- +title: "Update governanceRelationship" +description: "Update the status property to initiate termination of a governance relationship." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Update governanceRelationship + +Namespace: microsoft.graph + +Update the **status** property of a [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) to initiate the termination process. There are two models for termination: +1) Initiated by the governing tenant: After the governing tenant updates the `status` to `terminationRequestedByGoverningTenant`, the governed tenant may subsequently update the `status` to `terminated`. +1) Directly terminated by the governed tenant: The governed tenant updates the `status` to `terminated` to immediately terminate the relationship. + +When the governed tenant updates the `status` to `terminated` in either model, the resources that were provisioned in the governed tenant upon relationship creation are deleted. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-governancerelationship-update-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-write](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-write.md)] + +## HTTP request + + +``` http +PATCH /directory/tenantGovernance/governanceRelationships/{governanceRelationshipId} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +[!INCLUDE [table-intro](../../includes/update-property-table-intro.md)] + + +|Property|Type|Description| +|:---|:---|:---| +|status|microsoft.graph.relationshipStatus|The current status of the governance relationship. The possible values are: `active`, `terminated`, `terminationRequestedByGoverningTenant`, `unknownFutureValue`. Required.| + +## Response + +If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +PATCH https://graph.microsoft.com/v1.0/directory/tenantGovernance/governanceRelationships/aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb +Content-Type: application/json + +{ + "status": "terminated" +} +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.governanceRelationship", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "status": "terminated", + "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", + "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", + "governingTenantName": "Contoso, Inc", + "governedTenantName": "Fabrikam", + "policySnapshot": { + "policyId": "d3d3d3d3-eeee-ffff-aaaa-b4b4b4b4b4b4", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] + }, + "createdType": "approvedByAdmin", + "creationDateTime": "2025-09-11T17:07:41.2019694Z" +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-governancerequest-get.md b/api-reference/v1.0/api/tenantgovernanceservices-governancerequest-get.md new file mode 100644 index 00000000000..736185ea0a8 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-governancerequest-get.md @@ -0,0 +1,135 @@ +--- +title: "Get governanceRequest" +description: "Read the properties of a governance request." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Get governanceRequest + +Namespace: microsoft.graph + +Read the properties of a [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-governancerequest-get-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-read](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/tenantGovernance/governanceRequests/{governanceRequestId} +``` + +## Optional query parameters + +This method doesn't support OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/tenantGovernance/governanceRequests/aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.governanceRequest", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", + "governingTenantName": "Contoso, Inc", + "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", + "governedTenantName": "Fabrikam", + "expirationDateTime": "2025-09-17T02:36:22.714163Z", + "requestDateTime": "2025-09-03T02:36:22.7141627Z", + "status": "pending", + "policySnapshot": { + "policyId": "d3d3d3d3-eeee-ffff-aaaa-b4b4b4b4b4b4", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] + } +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-governancerequest-update.md b/api-reference/v1.0/api/tenantgovernanceservices-governancerequest-update.md new file mode 100644 index 00000000000..b3e6c27966a --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-governancerequest-update.md @@ -0,0 +1,144 @@ +--- +title: "Update governanceRequest" +description: "Update the status property to accept or reject a governance request." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Update governanceRequest + +Namespace: microsoft.graph + +Update the **status** property of a [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) to accept or reject the governance request. Only the governed tenant can update the request status. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-governancerequest-update-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-apis-write](../includes/rbac-for-apis/rbac-tenant-governance-apis-write.md)] + +## HTTP request + + +``` http +PATCH /directory/tenantGovernance/governanceRequests/{governanceRequestId} +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +[!INCLUDE [table-intro](../../includes/update-property-table-intro.md)] + + +|Property|Type|Description| +|:---|:---|:---| +|status|microsoft.graph.requestStatus|The current status of the governance request. The possible values are: `pending`, `accepted`, `rejected`, `unknownFutureValue`. Required.| + + + +## Response + +If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +PATCH https://graph.microsoft.com/v1.0/directory/tenantGovernance/governanceRequests/aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb +Content-Type: application/json + +{ + "status": "accepted" +} +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.governanceRequest", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", + "governingTenantName": "Contoso, Inc", + "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", + "governedTenantName": "Fabrikam", + "expirationDateTime": "2025-09-17T02:36:22.714163Z", + "requestDateTime": "2025-09-03T02:36:22.7141627Z", + "status": "pending", + "policySnapshot": { + "policyId": "d3d3d3d3-eeee-ffff-aaaa-b4b4b4b4b4b4", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] + } +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-list-governanceinvitations.md b/api-reference/v1.0/api/tenantgovernanceservices-list-governanceinvitations.md new file mode 100644 index 00000000000..e4059922f82 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-list-governanceinvitations.md @@ -0,0 +1,98 @@ +--- +title: "List governanceInvitations" +description: "Get a list of governance invitations." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# List governanceInvitations + +Namespace: microsoft.graph + +Get a list of the [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) objects and their properties. This API method returns all governance invitations where the calling tenant is either the governing tenant or the governed tenant. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-list-governanceinvitations-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-read](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/tenantGovernance/governanceInvitations +``` + +## Optional query parameters + +This method supports the `$filter`, `$orderby`, `$top` and `$skip` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/tenantGovernance/governanceInvitations +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.governanceInvitation", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", + "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", + "governingTenantName": "Contoso, Inc", + "governedTenantName": "Fabrikam", + "createdDateTime": "2026-01-01T18:25:09.4212828Z", + "expirationDateTime": "2026-01-31T18:25:09.4212828Z" + } + ] +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-list-governancepolicytemplates.md b/api-reference/v1.0/api/tenantgovernanceservices-list-governancepolicytemplates.md new file mode 100644 index 00000000000..b2ac8b4ced7 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-list-governancepolicytemplates.md @@ -0,0 +1,134 @@ +--- +title: "List governancePolicyTemplates" +description: "Get a list of governance policy templates." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# List governancePolicyTemplates + +Namespace: microsoft.graph + +Get a list of the [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) objects and their properties. Policy templates define the configuration that is applied when establishing governance relationships. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-list-governancepolicytemplates-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-read](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/tenantGovernance/governancePolicyTemplates +``` + +## Optional query parameters + +This method supports the `$filter`, `$orderby`, `$top`, `$skip`, and `$skiptoken` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/tenantGovernance/governancePolicyTemplates +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "displayName": "Monitor Entra resource configurations", + "description": "Grants Global reader and provisions a custom multi-tenant application to monitor conditional access policies", + "createdDateTime": "2026-03-06T22:29:00.2110638Z", + "lastModifiedDateTime": "2026-03-06T22:29:00.2110638Z", + "version": "1.0", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] + } + ] +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-list-governancerelationships.md b/api-reference/v1.0/api/tenantgovernanceservices-list-governancerelationships.md new file mode 100644 index 00000000000..137df63d3e4 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-list-governancerelationships.md @@ -0,0 +1,139 @@ +--- +title: "List governanceRelationships" +description: "Get a list of governance relationships." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# List governanceRelationships + +Namespace: microsoft.graph + +Get a list of the [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) objects and their properties. This API method returns all governance relationships where the calling tenant is either the governing tenant or the governed tenant. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-list-governancerelationships-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-read](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/tenantGovernance/governanceRelationships +``` + +## Optional query parameters + +This method supports the `$filter`, `$orderby`, `$top`, `$skip`, and `$skiptoken` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/tenantGovernance/governanceRelationships +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.governanceRelationship", + "createdType": "approvedByAdmin", + "creationDateTime": "2025-09-11T17:07:41.2019694Z", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "status": "Active", + "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", + "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", + "governingTenantName": "Contoso, Inc", + "governedTenantName": "Fabrikam", + "policySnapshot": { + "policyId": "d3d3d3d3-eeee-ffff-aaaa-b4b4b4b4b4b4", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] + } + } + ] +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-list-governancerequests.md b/api-reference/v1.0/api/tenantgovernanceservices-list-governancerequests.md new file mode 100644 index 00000000000..fbb728ee546 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-list-governancerequests.md @@ -0,0 +1,139 @@ +--- +title: "List governanceRequests" +description: "Get a list of governance requests." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# List governanceRequests + +Namespace: microsoft.graph + +Get a list of the [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) objects and their properties. This API method returns all governance requests where the calling tenant is either the governing tenant or the governed tenant. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-list-governancerequests-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-read](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/tenantGovernance/governanceRequests +``` + +## Optional query parameters + +This method supports the `$filter`, `$orderby`, `$top`, `$skip`, and `$skiptoken` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/tenantGovernance/governanceRequests +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "value": [ + { + "@odata.type": "#microsoft.graph.governanceRequest", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", + "governingTenantName": "Contoso, Inc", + "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", + "governedTenantName": "Fabrikam", + "expirationDateTime": "2025-09-17T02:36:22.714163Z", + "requestDateTime": "2025-09-03T02:36:22.7141627Z", + "status": "pending", + "policySnapshot": { + "policyId": "d3d3d3d3-eeee-ffff-aaaa-b4b4b4b4b4b4", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] + } + } + ] +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-list-relatedtenants.md b/api-reference/v1.0/api/tenantgovernanceservices-list-relatedtenants.md new file mode 100644 index 00000000000..d8d2ff296da --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-list-relatedtenants.md @@ -0,0 +1,171 @@ +--- +title: "List relatedTenants" +description: "Get a list of relatedTenant objects and their properties." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# List relatedTenants + +Namespace: microsoft.graph + +Get a list of [relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) objects and their properties, including relationship metrics. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-list-relatedtenants-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-apis-read](../includes/rbac-for-apis/rbac-tenant-governance-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/tenantGovernance/relatedTenants +``` + +## Optional query parameters + +This method doesn't support OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a collection of [relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) objects in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/tenantGovernance/relatedTenants +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#directory/tenantGovernance/relatedTenants", + "value": [ + { + "@odata.type": "#microsoft.graph.relatedTenant", + "id": "aaaabbbb-0000-cccc-1111-dddd2222eeee", + "createdDateTime": "2026-02-15T05:34:29.4426526Z", + "isMicrosoftInfrastructure": false, + "b2BRegistrationMetrics": { + "initial": { + "createdDateTime": "2026-02-13T20:54:25Z", + "watermarkDateTime": "2026-02-12T00:00:00Z", + "inboundTotalUsers": 1, + "outboundTotalUsers": 0 + }, + "recent": { + "updateDateTime": "2026-02-16T23:13:49Z", + "watermarkDateTime": "2026-02-15T00:00:00Z", + "inboundTotalUsers": 0, + "outboundTotalUsers": 0 + } + }, + "b2BSignInActivityMetrics": { + "initial": { + "createdDateTime": "2026-02-17T08:08:23Z", + "watermarkDateTime": "2026-02-15T00:00:00Z", + "inboundMonthlyTotalUsers": 1, + "outboundMonthlyTotalUsers": 0, + "inboundMonthlyTotalApplications": 10, + "outboundMonthlyTotalApplications": 0 + }, + "recent": { + "updateDateTime": "2026-02-17T08:08:23Z", + "watermarkDateTime": "2026-02-15T00:00:00Z", + "inboundMonthlyTotalUsers": 1, + "outboundMonthlyTotalUsers": 0, + "inboundMonthlyTotalApplications": 10, + "outboundMonthlyTotalApplications": 0 + } + }, + "appB2BSignInActivityMetrics": { + "initial": { + "createdDateTime": "2026-02-17T08:08:23Z", + "watermarkDateTime": "2026-02-15T00:00:00Z", + "inboundMonthlyTotalUsers": 1, + "outboundMonthlyTotalUsers": 0, + "inboundMonthlyTotalApplications": 1, + "outboundMonthlyTotalApplications": 0 + }, + "recent": { + "updateDateTime": "2026-02-17T08:08:23Z", + "watermarkDateTime": "2026-02-15T00:00:00Z", + "inboundMonthlyTotalUsers": 1, + "outboundMonthlyTotalUsers": 0, + "inboundMonthlyTotalApplications": 1, + "outboundMonthlyTotalApplications": 0 + } + }, + "multiTenantApplicationMetrics": null, + "billingMetrics": null + }, + { + "@odata.type": "#microsoft.graph.relatedTenant", + "id": "bbbbcccc-1111-dddd-2222-eeee3333ffff", + "createdDateTime": "2026-02-16T05:35:45.2357127Z", + "isMicrosoftInfrastructure": false, + "b2BRegistrationMetrics": null, + "b2BSignInActivityMetrics": null, + "appB2BSignInActivityMetrics": null, + "multiTenantApplicationMetrics": { + "initial": { + "createdDateTime": "2026-02-15T08:29:31Z", + "watermarkDateTime": "2026-02-14T00:00:00Z", + "inboundMonthlyTotalApplications": 10, + "outboundMonthlyTotalApplications": 0 + }, + "recent": { + "updateDateTime": "2026-02-15T08:29:31Z", + "watermarkDateTime": "2026-02-14T00:00:00Z", + "inboundMonthlyTotalApplications": 10, + "outboundMonthlyTotalApplications": 0 + } + }, + "billingMetrics": null + } + ] +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-post-governanceinvitations.md b/api-reference/v1.0/api/tenantgovernanceservices-post-governanceinvitations.md new file mode 100644 index 00000000000..079ccf230fc --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-post-governanceinvitations.md @@ -0,0 +1,104 @@ +--- +title: "Create governanceInvitation" +description: "Create a new governance invitation to establish a relationship with a governed tenant." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Create governanceInvitation + +Namespace: microsoft.graph + +Create a new [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) to establish a governance relationship with a governed tenant. Invitations provide an alternative mechanism to governance requests for initiating relationships. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-post-governanceinvitations-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-apis-write](../includes/rbac-for-apis/rbac-tenant-governance-apis-write.md)] + +## HTTP request + + +``` http +POST /directory/tenantGovernance/governanceInvitations +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the [microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object. + +You can specify the following properties when creating a **governanceInvitation**. + +|Property|Type|Description| +|:---|:---|:---| +|governingTenantId|String|The Microsoft Entra tenant ID of the governing tenant. Required.| + + + +## Response + +If successful, this method returns a `201 Created` response code and a [microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/directory/tenantGovernance/governanceInvitations +Content-Type: application/json + +{ + "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee" +} +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.governanceInvitation", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", + "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", + "governingTenantName": "Contoso, Inc", + "governedTenantName": "Fabrikam", + "createdDateTime": "2026-01-01T18:25:09.4212828Z", + "expirationDateTime": "2026-01-31T18:25:09.4212828Z" +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-post-governancepolicytemplates.md b/api-reference/v1.0/api/tenantgovernanceservices-post-governancepolicytemplates.md new file mode 100644 index 00000000000..bda23b3471d --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-post-governancepolicytemplates.md @@ -0,0 +1,181 @@ +--- +title: "Create tenantGovernancePolicyTemplate" +description: "Create a new governance policy template." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Create tenantGovernancePolicyTemplate + +Namespace: microsoft.graph + +Create a new [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) that defines the configuration for establishing governance relationships, including role assignments and applications to provision. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-post-governancepolicytemplates-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-write](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-write.md)] + +## HTTP request + + +``` http +POST /directory/tenantGovernance/governancePolicyTemplates +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the [microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object. + +You can specify the following properties when creating a **tenantGovernancePolicyTemplate**. + +|Property|Type|Description| +|:---|:---|:---| +|displayName|String|The display name of the policy template. Required.| +|description|String|A description of the policy template. Required.| +|multiTenantApplicationsToProvision|[microsoft.graph.multiTenantApplicationsToProvision](../resources/tenantgovernanceservices-multitenantapplicationstoprovision.md) collection|A collection of multitenant applications to be provisioned in the governed tenant when the governance relationship is established. Required.| +|delegatedAdministrationRoleAssignments|[microsoft.graph.delegatedAdministrationRoleAssignment](../resources/tenantgovernanceservices-delegatedadministrationroleassignment.md) collection|A collection of delegated administration role assignments to be applied in the governed tenant when the governance relationship is established. Required.| + + + +## Response + +If successful, this method returns a `201 Created` response code and a [microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/directory/tenantGovernance/governancePolicyTemplates +Content-Type: application/json + +{ + "displayName": "Monitor Entra resource configurations", + "description": "Grants Global reader and provisions a custom multi-tenant application to monitor conditional access policies", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] + } +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "displayName": "Monitor Entra resource configurations", + "description": "Grants Global reader and provisions a custom multi-tenant application to monitor conditional access policies", + "createdDateTime": "2026-03-06T22:29:00.2110638Z", + "lastModifiedDateTime": "2026-03-06T22:29:00.2110638Z", + "version": "1.0", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-post-governancerequests.md b/api-reference/v1.0/api/tenantgovernanceservices-post-governancerequests.md new file mode 100644 index 00000000000..af094703f37 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-post-governancerequests.md @@ -0,0 +1,147 @@ +--- +title: "Create governanceRequest" +description: "Create a new governance request to establish a relationship with a governed tenant." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Create governanceRequest + +Namespace: microsoft.graph + +Create a new [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) to establish a governance relationship with a governed tenant. The governed tenant can then accept or reject the request. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-post-governancerequests-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-write](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-write.md)] + +## HTTP request + + +``` http +POST /directory/tenantGovernance/governanceRequests +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the [microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object. + +You can specify the following properties when creating a **governanceRequest**. + +|Property|Type|Description| +|:---|:---|:---| +|governedTenantId|String|The Microsoft Entra tenant ID of the governed tenant. Required.| +|tenantGovernancePolicyTemplate@odata.bind|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantGovernancePolicyTemplate.md)|Provide the governance policy template ID that is used to generate the `policySnapshot`. Required.| + + + +## Response + +If successful, this method returns a `201 Created` response code and a [microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/directory/tenantGovernance/governanceRequests +Content-Type: application/json + +{ + "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", + "tenantGovernancePolicyTemplate@odata.bind": "https://graph.microsoft.com/v1.0/directory/tenantGovernance/governancePolicyTemplates/d3d3d3d3-eeee-ffff-aaaa-b4b4b4b4b4b4" +} +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.governanceRequest", + "id": "aaaaaaaa-0000-1111-2222-bbbbbbbbbbbb", + "governingTenantId": "aaaabbbb-0000-cccc-1111-dddd2222eeee", + "governingTenantName": "Contoso, Inc", + "governedTenantId": "bbbbcccc-1111-dddd-2222-eeee3333ffff", + "governedTenantName": "Fabrikam", + "expirationDateTime": "2025-09-17T02:36:22.714163Z", + "requestDateTime": "2025-09-03T02:36:22.7141627Z", + "status": "pending", + "policySnapshot": { + "policyId": "d3d3d3d3-eeee-ffff-aaaa-b4b4b4b4b4b4", + "multiTenantApplicationsToProvision": [ + { + "appId": "66667777-aaaa-8888-bbbb-9999cccc0000", + "objectId": "cccccccc-2222-3333-4444-dddddddddddd", + "displayName": "Mega Monitor", + "requiredResourceAccesses": [ + { + "resourceAppId": "00000003-0000-0000-c000-000000000000", + "permissions": [ + { + "id": "633e0fce-8c58-4cfb-9495-12bbd5a24f7c", + "name": "Policy.Read.ConditionalAccess", + "type": "scope" + }, + { + "id": "e1fe6dd8-ba31-4d61-89e7-88639da4683d", + "name": "User.Read", + "type": "scope" + } + ] + } + ] + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "roleTemplates": [ + { + "id": "f2ef992c-3afb-46b9-b7cf-a126ee74c451", + "name": "Global Reader" + } + ], + "group": { + "id": "ffffffff-5555-6666-7777-aaaaaaaaaaaa" + } + } + ] + } +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-relatedtenant-get.md b/api-reference/v1.0/api/tenantgovernanceservices-relatedtenant-get.md new file mode 100644 index 00000000000..09e26d1000b --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-relatedtenant-get.md @@ -0,0 +1,185 @@ +--- +title: "Get relatedTenant" +description: "Read the properties and relationships of a relatedTenant object." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Get relatedTenant + +Namespace: microsoft.graph + +Read the properties and relationships of a [relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) object. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-relatedtenant-get-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-apis-read](../includes/rbac-for-apis/rbac-tenant-governance-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/tenantGovernance/relatedTenants/{relatedTenantId} +``` + +## Optional query parameters + +This method doesn't support OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [microsoft.graph.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/tenantGovernance/relatedTenants/{relatedTenantId} +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.relatedTenant", + "id": "aaaabbbb-0000-cccc-1111-dddd2222eeee", + "createdDateTime": "2026-02-15T05:34:29.4426526Z", + "isMicrosoftInfrastructure": false, + "b2BRegistrationMetrics": { + "initial": { + "createdDateTime": "2026-02-13T20:54:25Z", + "watermarkDateTime": "2026-02-12T00:00:00Z", + "inboundTotalUsers": 1, + "outboundTotalUsers": 0 + }, + "recent": { + "updateDateTime": "2026-02-16T23:13:49Z", + "watermarkDateTime": "2026-02-15T00:00:00Z", + "inboundTotalUsers": 0, + "outboundTotalUsers": 0 + } + }, + "b2BSignInActivityMetrics": { + "initial": { + "createdDateTime": "2026-02-17T08:08:23Z", + "watermarkDateTime": "2026-02-15T00:00:00Z", + "inboundMonthlyTotalUsers": 1, + "outboundMonthlyTotalUsers": 0, + "inboundMonthlyTotalApplications": 10, + "outboundMonthlyTotalApplications": 0 + }, + "recent": { + "updateDateTime": "2026-02-17T08:08:23Z", + "watermarkDateTime": "2026-02-15T00:00:00Z", + "inboundMonthlyTotalUsers": 1, + "outboundMonthlyTotalUsers": 0, + "inboundMonthlyTotalApplications": 10, + "outboundMonthlyTotalApplications": 0 + } + }, + "appB2BSignInActivityMetrics": { + "initial": { + "createdDateTime": "2026-02-17T08:08:23Z", + "watermarkDateTime": "2026-02-15T00:00:00Z", + "inboundMonthlyTotalUsers": 1, + "outboundMonthlyTotalUsers": 0, + "inboundMonthlyTotalApplications": 1, + "outboundMonthlyTotalApplications": 0 + }, + "recent": { + "updateDateTime": "2026-02-17T08:08:23Z", + "watermarkDateTime": "2026-02-15T00:00:00Z", + "inboundMonthlyTotalUsers": 1, + "outboundMonthlyTotalUsers": 0, + "inboundMonthlyTotalApplications": 1, + "outboundMonthlyTotalApplications": 0 + } + }, + "multiTenantApplicationMetrics": { + "initial": { + "createdDateTime": "2026-01-01T00:00:00Z", + "watermarkDateTime": "2026-12-30T04:00:00Z", + "inboundMonthlyTotalApplications": 10, + "outboundMonthlyTotalApplications": 0 + }, + "recent": { + "updateDateTime": "2026-01-01T00:00:00Z", + "watermarkDateTime": "2026-12-30T04:00:00Z", + "inboundMonthlyTotalApplications": 10, + "outboundMonthlyTotalApplications": 0 + } + }, + "billingMetrics": { + "initial": { + "createdDateTime": "2025-10-02T12:09:40Z", + "watermarkDateTime": "2025-10-01T00:00:00Z", + "localAssociatedTenantCount": 2, + "localAssociatedTenantBillingManagementActiveCount": 1, + "localAssociatedTenantProvisioningActiveCount": 2, + "localAssociatedTenantIds": [ + "/providers/Microsoft.Billing/billingAccounts/00000000-0000-0000-0000-000000000000:00000000-0000-0000-0000-000000000000_2019-05-31/associatedTenants/11111111-1111-1111-1111-111111111111", + "/providers/Microsoft.Billing/billingAccounts/9a157b81-1503-516b-4fe8-7849e97ca70e:e6bd1c01-9e9b-4fa7-a9f1-6fe6cbad31fa_2019-05-31/associatedTenants/22222222-2222-2222-2222-222222222222" + ], + "foreignAssociatedTenantCount": 0, + "foreignAssociatedTenantBillingManagementActiveCount": 0, + "foreignAssociatedTenantProvisioningActiveCount": 0 + }, + "recent": { + "updateDateTime": "2025-11-02T12:09:40Z", + "watermarkDateTime": "2025-11-01T00:00:00Z", + "localAssociatedTenantCount": 3, + "localAssociatedTenantBillingManagementActiveCount": 2, + "localAssociatedTenantProvisioningActiveCount": 2, + "localAssociatedTenantIds": [ + "/providers/Microsoft.Billing/billingAccounts/00000000-0000-0000-0000-000000000000:00000000-0000-0000-0000-000000000000_2019-05-31/associatedTenants/11111111-1111-1111-1111-111111111111", + "/providers/Microsoft.Billing/billingAccounts/9a157b81-1503-516b-4fe8-7849e97ca70e:e6bd1c01-9e9b-4fa7-a9f1-6fe6cbad31fa_2019-05-31/associatedTenants/22222222-2222-2222-2222-222222222222", + "/providers/Microsoft.Billing/billingAccounts/ffffffff-ffff-ffff-ffff-ffffffffffff:eeeeeeee-eeee-eeee-eeee-eeeeeeeeeeee_2019-05-31/associatedTenants/33333333-3333-3333-3333-333333333333" + ], + "foreignAssociatedTenantCount": 1, + "foreignAssociatedTenantBillingManagementActiveCount": 0, + "foreignAssociatedTenantProvisioningActiveCount": 1, + } + } +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-relatedtenant-refresh.md b/api-reference/v1.0/api/tenantgovernanceservices-relatedtenant-refresh.md new file mode 100644 index 00000000000..2c015d85efc --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-relatedtenant-refresh.md @@ -0,0 +1,76 @@ +--- +title: "relatedTenant: refresh" +description: "Refresh the list of related tenants." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# relatedTenant: refresh + +Namespace: microsoft.graph + +Refresh the list of [related tenants](../resources/tenantgovernanceservices-relatedtenant.md). The list is also automatically refreshed daily. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-relatedtenant-refresh-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-apis-write](../includes/rbac-for-apis/rbac-tenant-governance-apis-write.md)] + +## HTTP request + + +``` http +POST /directory/tenantGovernance/relatedTenants/refresh +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this action returns a `204 No Content` response code. + +## Examples + +### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/directory/tenantGovernance/relatedTenants/refresh +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md b/api-reference/v1.0/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md new file mode 100644 index 00000000000..31ed554d9f6 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md @@ -0,0 +1,79 @@ +--- +title: "tenantGovernanceSetting: enableRelatedTenants" +description: "Enable the related tenants feature for tenant discovery." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# tenantGovernanceSetting: enableRelatedTenants + +Namespace: microsoft.graph + +Enable the related tenants feature for tenant discovery. After calling this action, the **isRelatedTenantsEnabled** property of [tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) is set to `true`, which allows the use of related tenant APIs. + +> [!IMPORTANT] +> This action must be called before using any related tenant APIs. Related tenant APIs won't run successfully unless this feature is explicitly enabled. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-apis-write](../includes/rbac-for-apis/rbac-tenant-governance-apis-write.md)] + +## HTTP request + + +``` http +POST /directory/tenantGovernance/settings/enableRelatedTenants +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this action returns a `204 No Content` response code. + +## Examples + +### Request + +The following example shows a request. + +``` http +POST https://graph.microsoft.com/v1.0/directory/tenantGovernance/settings/enableRelatedTenants +``` + +### Response + +The following example shows the response. + +``` http +HTTP/1.1 204 No Content +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-tenantgovernancesetting-get.md b/api-reference/v1.0/api/tenantgovernanceservices-tenantgovernancesetting-get.md new file mode 100644 index 00000000000..2f394991379 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-tenantgovernancesetting-get.md @@ -0,0 +1,89 @@ +--- +title: "Get tenantGovernanceSetting" +description: "Read the properties of the tenant governance settings singleton." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Get tenantGovernanceSetting + +Namespace: microsoft.graph + +Read the properties of the [tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) singleton, which controls related tenant discovery and invitation capabilities. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-tenantgovernancesetting-get-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-relationship-apis-read](../includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md)] + +## HTTP request + + +``` http +GET /directory/tenantGovernance/settings +``` + +## Optional query parameters + +This method doesn't support OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| + +## Request body + +Don't supply a request body for this method. + +## Response + +If successful, this method returns a `200 OK` response code and a [microsoft.graph.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +GET https://graph.microsoft.com/v1.0/directory/tenantGovernance/settings +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.tenantGovernanceSetting", + "isRelatedTenantsEnabled": true, + "canReceiveInvitations": false +} +``` diff --git a/api-reference/v1.0/api/tenantgovernanceservices-tenantgovernancesetting-update.md b/api-reference/v1.0/api/tenantgovernanceservices-tenantgovernancesetting-update.md new file mode 100644 index 00000000000..94891f49352 --- /dev/null +++ b/api-reference/v1.0/api/tenantgovernanceservices-tenantgovernancesetting-update.md @@ -0,0 +1,98 @@ +--- +title: "Update tenantGovernanceSetting" +description: "Update the canReceiveInvitations property of the tenant governance settings." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: apiPageType +--- + +# Update tenantGovernanceSetting + +Namespace: microsoft.graph + +Update the **canReceiveInvitations** property of the [tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) singleton. This property controls whether the tenant can receive governance invitations. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/tenantgovernanceservices-tenantgovernancesetting-update-permissions.md)] + +[!INCLUDE [rbac-tenant-governance-apis-write](../includes/rbac-for-apis/rbac-tenant-governance-apis-write.md)] + +## HTTP request + + +``` http +PATCH /directory/tenantGovernance/settings +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +[!INCLUDE [table-intro](../../includes/update-property-table-intro.md)] + + +|Property|Type|Description| +|:---|:---|:---| +|canReceiveInvitations|Boolean| Indicates whether the tenant can receive governance invitations. When set to `false`, the tenant can't receive new governance invitations. When set to `true`, other tenants can send your tenant invitations by providing your tenant ID or domain name. This setting is disabled by default. Required.| + + + +## Response + +If successful, this method returns a `200 OK` response code and an updated [microsoft.graph.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) object in the response body. + +## Examples + +### Request + +The following example shows a request. + +``` http +PATCH https://graph.microsoft.com/v1.0/directory/tenantGovernance/settings +Content-Type: application/json + +{ + "canReceiveInvitations": true +} +``` + +### Response + +The following example shows the response. +>**Note:** The response object shown here might be shortened for readability. + +``` http +HTTP/1.1 200 OK +Content-Type: application/json + +{ + "@odata.type": "#microsoft.graph.tenantGovernanceSetting", + "isRelatedTenantsEnabled": true, + "canReceiveInvitations": true +} +``` diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-delete-governancepolicytemplates-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-delete-governancepolicytemplates-permissions.md new file mode 100644 index 00000000000..b4609f271a5 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-delete-governancepolicytemplates-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-PolicyTemplate.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-delete-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-delete-permissions.md new file mode 100644 index 00000000000..9ca4c3d3237 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-delete-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Invitation.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-get-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-get-permissions.md new file mode 100644 index 00000000000..ececa1ae507 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Invitation.Read.All|TenantGovernance-Invitation.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TenantGovernance-Invitation.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-get-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-get-permissions.md new file mode 100644 index 00000000000..ce7f167a68c --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-PolicyTemplate.Read.All|TenantGovernance-PolicyTemplate.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TenantGovernance-PolicyTemplate.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-update-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-update-permissions.md new file mode 100644 index 00000000000..b4609f271a5 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-update-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-PolicyTemplate.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-get-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-get-permissions.md new file mode 100644 index 00000000000..f596ecd8e1e --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Relationship.Read.All|TenantGovernance-Relationship.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TenantGovernance-Relationship.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-update-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-update-permissions.md new file mode 100644 index 00000000000..9451dc94d8d --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-update-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Relationship.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-get-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-get-permissions.md new file mode 100644 index 00000000000..e0ecb7653f4 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Request.Read.All|TenantGovernance-Request.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TenantGovernance-Request.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-update-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-update-permissions.md new file mode 100644 index 00000000000..70cb3a4c15f --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-update-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Request.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governanceinvitations-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governanceinvitations-permissions.md new file mode 100644 index 00000000000..ececa1ae507 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governanceinvitations-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Invitation.Read.All|TenantGovernance-Invitation.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TenantGovernance-Invitation.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancepolicytemplates-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancepolicytemplates-permissions.md new file mode 100644 index 00000000000..ce7f167a68c --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancepolicytemplates-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-PolicyTemplate.Read.All|TenantGovernance-PolicyTemplate.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TenantGovernance-PolicyTemplate.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerelationships-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerelationships-permissions.md new file mode 100644 index 00000000000..f596ecd8e1e --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerelationships-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Relationship.Read.All|TenantGovernance-Relationship.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TenantGovernance-Relationship.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerequests-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerequests-permissions.md new file mode 100644 index 00000000000..e0ecb7653f4 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerequests-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Request.Read.All|TenantGovernance-Request.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TenantGovernance-Request.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-relatedtenants-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-relatedtenants-permissions.md new file mode 100644 index 00000000000..be6b39c5626 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-relatedtenants-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-RelatedTenant.Read.All|TenantGovernance-RelatedTenant.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TenantGovernance-RelatedTenant.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governanceinvitations-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governanceinvitations-permissions.md new file mode 100644 index 00000000000..9ca4c3d3237 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governanceinvitations-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Invitation.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancepolicytemplates-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancepolicytemplates-permissions.md new file mode 100644 index 00000000000..b4609f271a5 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancepolicytemplates-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-PolicyTemplate.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancerequests-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancerequests-permissions.md new file mode 100644 index 00000000000..70cb3a4c15f --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancerequests-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Request.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-get-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-get-permissions.md new file mode 100644 index 00000000000..be6b39c5626 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-RelatedTenant.Read.All|TenantGovernance-RelatedTenant.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TenantGovernance-RelatedTenant.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-refresh-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-refresh-permissions.md new file mode 100644 index 00000000000..99de1b80297 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-refresh-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-RelatedTenant.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants-permissions.md new file mode 100644 index 00000000000..3dbb65666b6 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Setting.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-get-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-get-permissions.md new file mode 100644 index 00000000000..4a291cdcec9 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-get-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Setting.Read.All|TenantGovernance-Setting.ReadWrite.All| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|TenantGovernance-Setting.Read.All|Not available.| diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-update-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-update-permissions.md new file mode 100644 index 00000000000..3dbb65666b6 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-update-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|TenantGovernance-Setting.ReadWrite.All|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| diff --git a/api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-apis-read.md b/api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-apis-read.md new file mode 100644 index 00000000000..af9394ebf7e --- /dev/null +++ b/api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-apis-read.md @@ -0,0 +1,10 @@ +--- +author: hafowler +ms.topic: include +--- + +> [!IMPORTANT] +> For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json). The following least privileged roles are supported for this operation. +> - Tenant Governance Administrator +> - Global Reader +> - Tenant Governance Reader diff --git a/api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-apis-write.md b/api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-apis-write.md new file mode 100644 index 00000000000..b23910e4711 --- /dev/null +++ b/api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-apis-write.md @@ -0,0 +1,7 @@ +--- +author: hafowler +ms.topic: include +--- + +> [!IMPORTANT] +> For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json). *Tenant Governance Administrator* is the least privileged role supported for this operation. diff --git a/api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md b/api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md new file mode 100644 index 00000000000..248b62a64d2 --- /dev/null +++ b/api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-read.md @@ -0,0 +1,12 @@ +--- +author: hafowler +ms.topic: include +--- + +> [!IMPORTANT] +> For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json). The following least privileged roles are supported for this operation. +> - Tenant Governance Administrator +> - Tenant Governance Relationship Administrator +> - Global Reader +> - Tenant Governance Reader +> - Tenant Governance Relationship Reader diff --git a/api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-write.md b/api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-write.md new file mode 100644 index 00000000000..9a12c19ec61 --- /dev/null +++ b/api-reference/v1.0/includes/rbac-for-apis/rbac-tenant-governance-relationship-apis-write.md @@ -0,0 +1,9 @@ +--- +author: hafowler +ms.topic: include +--- + +> [!IMPORTANT] +> For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json). The following least privileged roles are supported for this operation. +> - Tenant Governance Administrator +> - Tenant Governance Relationship Administrator diff --git a/api-reference/v1.0/resources/directory.md b/api-reference/v1.0/resources/directory.md index 2fc4ad1bcc1..3e02d6d7e4f 100644 --- a/api-reference/v1.0/resources/directory.md +++ b/api-reference/v1.0/resources/directory.md @@ -6,7 +6,9 @@ author: "vimranga" ms.subservice: "entra-directory-management" doc_type: resourcePageType toc.title: Deleted item -ms.date: 06/23/2025 +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 --- # directory resource type @@ -57,6 +59,7 @@ Inherits from [entity](entity.md). |publicKeyInfrastructure|[publicKeyInfrastructureRoot](../resources/publickeyinfrastructureroot.md)|The collection of public key infrastructure instances for the certificate-based authentication feature for users in a Microsoft Entra tenant.| | remoteTenantGroups | [remoteTenantGroup](remotetenantgroup.md) collection | Collection of groups in remote Microsoft Entra tenants that are available in the directory. | | subscriptions | [companySubscription](companysubscription.md) collection | List of commercial subscriptions that an organization acquired. | +| tenantGovernance | [microsoft.graph.tenantGovernance](tenantgovernanceservices-tenantgovernance.md) | Container for Microsoft Entra Tenant Governance capabilities. | ## JSON representation diff --git a/api-reference/v1.0/resources/enums-tenantgovernanceservices.md b/api-reference/v1.0/resources/enums-tenantgovernanceservices.md new file mode 100644 index 00000000000..e9db449360b --- /dev/null +++ b/api-reference/v1.0/resources/enums-tenantgovernanceservices.md @@ -0,0 +1,56 @@ +--- +title: "Tenant governance enum values" +description: "Microsoft Graph tenant governance enumeration values" +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: enumTypes +--- + +# Microsoft Graph tenant governance enumeration values + +Namespace: microsoft.graph + +### applicationPermissionType values + +|Member| +|:---| +|role| +|scope| +|unknownFutureValue| + + +### relationshipCreationType values + +|Member| +|:---| +|approvedByAdmin| +|addOnTenant| +|unknownFutureValue| + +### relationshipStatus values + +|Member| +|:---| +|active| +|terminated| +|terminationRequestedByGoverningTenant| +|unknownFutureValue| + +### requestStatus values + +|Member| +|:---| +|pending| +|accepted| +|rejected| +|unknownFutureValue| + + diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-applicationresourcepermission.md b/api-reference/v1.0/resources/tenantgovernanceservices-applicationresourcepermission.md new file mode 100644 index 00000000000..40745a1541a --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-applicationresourcepermission.md @@ -0,0 +1,43 @@ +--- +title: "applicationResourcePermission resource type" +description: "Represents a permission required by an application to access a resource." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# applicationResourcePermission resource type + +Namespace: microsoft.graph + +Represents a permission required by an application to access a resource. This is used when defining the permissions needed by multi-tenant applications provisioned in governed tenants. This resource is defined in the **permissions** property of [applicationsRequiredResourceAccess](../resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|id|String|The unique identifier of the permission.| +|name|String|The name of the permission.| +|type|[applicationPermissionType](../resources/enums-tenantgovernanceservices.md#applicationpermissiontype-values)|The type of permission. The possible values are: `role`, `scope`, `unknownFutureValue`.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.applicationResourcePermission", + "id": "String", + "name": "String", + "type": "String" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md b/api-reference/v1.0/resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md new file mode 100644 index 00000000000..03b07600a2e --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md @@ -0,0 +1,45 @@ +--- +title: "applicationsRequiredResourceAccess resource type" +description: "Represents the permissions required by an application to access a specific resource." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# applicationsRequiredResourceAccess resource type + +Namespace: microsoft.graph + +Represents the permissions required by an application to access a specific resource. This is used when [defining multi-tenant applications to provision in governed tenants](../resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|permissions|[microsoft.graph.applicationResourcePermission](../resources/tenantgovernanceservices-applicationresourcepermission.md) collection|The collection of resource permissions required by the application.| +|resourceAppId|String|The **appId** (client ID) of the resource that the application needs to access.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.applicationsRequiredResourceAccess", + "resourceAppId": "String", + "permissions": [ + { + "@odata.type": "microsoft.graph.applicationResourcePermission" + } + ] +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetrics.md b/api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetrics.md new file mode 100644 index 00000000000..ea92701f6ce --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetrics.md @@ -0,0 +1,40 @@ +--- +title: "b2bRegistrationMetrics resource type" +description: "Represents B2B collaboration guest registration metrics between two related tenants." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# b2bRegistrationMetrics resource type + +Namespace: microsoft.graph + +Represents B2B collaboration metrics that track guest registrations between the calling tenant and a [related tenant](../resources/tenantgovernanceservices-relatedtenant.md). Includes both initial and recent snapshots showing inbound and outbound guest counts. + +## Properties +None. + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|initial|[microsoft.graph.b2BRegistrationMetricsInitial](../resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md)|B2B registration metrics corresponding to initial snapshots where metrics were aggregated for the first time.| +|recent|[microsoft.graph.b2BRegistrationMetricsRecent](../resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md)|B2B registration metrics corresponding to recent snapshots where metrics were found to have sufficiently changed.| + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.b2bRegistrationMetrics" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetricsbase.md b/api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetricsbase.md new file mode 100644 index 00000000000..aaea8395040 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetricsbase.md @@ -0,0 +1,53 @@ +--- +title: "b2BRegistrationMetricsBase resource type" +description: "Abstract base type for B2B registration metrics." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# b2BRegistrationMetricsBase resource type + +Namespace: microsoft.graph + +This resource is an abstract base type and does not appear directly in API responses. Use the concrete types [b2BRegistrationMetricsInitial](tenantgovernanceservices-b2bregistrationmetricsinitial.md) or [b2BRegistrationMetricsRecent](tenantgovernanceservices-b2bregistrationmetricsrecent.md). + +Abstract base type that defines common properties for B2B registration metrics snapshots. + +## Properties + +| Property | Type | Description | +|:---------|:-----|:------------| +| inboundTotalUsers | String | The total number of inbound B2B guest users registered. | +| outboundTotalUsers | String | The total number of outbound B2B users from this tenant registered in other tenants. | +| watermarkDateTime | DateTimeOffset | The date and time when the metrics snapshot was taken. | + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +> [!NOTE] +> This abstract type is not returned in API responses. See concrete implementations. + + +```json +{ + "@odata.type": "#microsoft.graph.b2BRegistrationMetricsBase", + "watermarkDateTime": "String (timestamp)", + "inboundTotalUsers": "String", + "outboundTotalUsers": "String" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md b/api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md new file mode 100644 index 00000000000..31969613a72 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md @@ -0,0 +1,49 @@ +--- +title: "b2BRegistrationMetricsInitial resource type" +description: "Represents the initial snapshot of B2B registration metrics when the relationship was first discovered." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# b2BRegistrationMetricsInitial resource type + +Namespace: microsoft.graph + +Represents the initial snapshot of B2B registration metrics captured when the relationship between two tenants was first discovered, establishing a baseline for guest counts. + +Inherits from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|createdDateTime|DateTimeOffset|Timestamp that represents the date time that B2B registration data was initially aggregated.| +|inboundTotalUsers|String|The total number of inbound B2B guest users registered. Inherited from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| +|outboundTotalUsers|String|The total number of outbound B2B users from this tenant registered in other tenants. Inherited from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.b2BRegistrationMetricsInitial", + "watermarkDateTime": "String (timestamp)", + "inboundTotalUsers": "String", + "outboundTotalUsers": "String", + "createdDateTime": "String (timestamp)" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md b/api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md new file mode 100644 index 00000000000..8e68077725e --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md @@ -0,0 +1,49 @@ +--- +title: "b2BRegistrationMetricsRecent resource type" +description: "Represents the most recent snapshot of B2B registration metrics." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# b2BRegistrationMetricsRecent resource type + +Namespace: microsoft.graph + +Represents the most recent snapshot of B2B registration metrics, showing current guest counts between related tenants. + +Inherits from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundTotalUsers|String|The total number of inbound B2B guest users registered. Inherited from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| +|outboundTotalUsers|String|The total number of outbound B2B users from this tenant registered in other tenants. Inherited from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| +|updateDateTime|DateTimeOffset|Timestamp that represents the most recent time B2B registration data was aggregated and have sufficiently changed for the related tenant.| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.b2BRegistrationMetricsBase](../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.b2BRegistrationMetricsRecent", + "watermarkDateTime": "String (timestamp)", + "inboundTotalUsers": "String", + "outboundTotalUsers": "String", + "updateDateTime": "String (timestamp)" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetrics.md b/api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetrics.md new file mode 100644 index 00000000000..be0761e66ac --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetrics.md @@ -0,0 +1,40 @@ +--- +title: "b2BSignInActivityMetrics resource type" +description: "Represents B2B sign-in activity metrics showing guest user authentication between two related tenants." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# b2BSignInActivityMetrics resource type + +Namespace: microsoft.graph + +Represents B2B sign-in activity metrics that track monthly active guest users and applications accessed between the calling tenant and a [related tenant](../resources/tenantgovernanceservices-relatedtenant.md). Includes both initial and recent snapshots with inbound and outbound activity counts. + +## Properties +None. + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|initial|[microsoft.graph.b2BSignInActivityMetricsInitial](../resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md)|B2B sign-in activity metrics corresponding to initial snapshots where metrics were aggregated for the first time.| +|recent|[microsoft.graph.b2BSignInActivityMetricsRecent](../resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md)|B2B sign-in activity metrics corresponding to recent snapshots where metrics were found to have sufficiently changed.| + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.b2BSignInActivityMetrics" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md b/api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md new file mode 100644 index 00000000000..6f3fb60b0dd --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md @@ -0,0 +1,57 @@ +--- +title: "b2BSignInActivityMetricsBase resource type" +description: "Abstract base type for B2B sign-in activity metrics." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# b2BSignInActivityMetricsBase resource type + +Namespace: microsoft.graph + +This resource is an abstract base type and does not appear directly in API responses. Use the concrete types [b2BSignInActivityMetricsInitial](tenantgovernanceservices-b2bsigninactivitymetricsinitial.md) or [b2BSignInActivityMetricsRecent](tenantgovernanceservices-b2bsigninactivitymetricsrecent.md). + +Abstract base type that defines common properties for B2B sign-in activity metrics. + +## Properties + +| Property | Type | Description | +|:---------|:-----|:------------| +| inboundMonthlyTotalApplications | String | The total number of applications accessed by inbound users in the last month. | +| inboundMonthlyTotalUsers | String | The total number of unique inbound users with sign-in activity in the last month. | +| outboundMonthlyTotalApplications | String | The total number of applications accessed by outbound users in the last month. | +| outboundMonthlyTotalUsers | String | The total number of unique outbound users with sign-in activity in the last month. | +| watermarkDateTime | DateTimeOffset | The date and time when the metrics snapshot was taken. | + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +> [!NOTE] +> This abstract type is not returned in API responses. See concrete implementations. + + +```json +{ + "@odata.type": "#microsoft.graph.b2BSignInActivityMetricsBase", + "watermarkDateTime": "String (timestamp)", + "inboundMonthlyTotalUsers": "String", + "inboundMonthlyTotalApplications": "String", + "outboundMonthlyTotalUsers": "String", + "outboundMonthlyTotalApplications": "String" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md b/api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md new file mode 100644 index 00000000000..78426408cdf --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md @@ -0,0 +1,53 @@ +--- +title: "b2BSignInActivityMetricsInitial resource type" +description: "Represents the initial snapshot of B2B sign-in activity metrics." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# b2BSignInActivityMetricsInitial resource type + +Namespace: microsoft.graph + +Represents the initial snapshot of B2B sign-in activity metrics captured when the [related tenant](../resources/tenantgovernanceservices-relatedtenant.md) was first discovered, establishing a baseline for monthly active guests and applications. + +Inherits from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|createdDateTime|DateTimeOffset|Timestamp that represents when the time B2B sign-in activity content was initially aggregated for the related tenant.| +|inboundMonthlyTotalApplications|String|The total number of applications accessed by inbound users in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|inboundMonthlyTotalUsers|String|The total number of unique inbound users with sign-in activity in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|outboundMonthlyTotalApplications|String|The total number of applications accessed by outbound users in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|outboundMonthlyTotalUsers|String|The total number of unique outbound users with sign-in activity in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.b2BSignInActivityMetricsInitial", + "watermarkDateTime": "String (timestamp)", + "inboundMonthlyTotalUsers": "String", + "inboundMonthlyTotalApplications": "String", + "outboundMonthlyTotalUsers": "String", + "outboundMonthlyTotalApplications": "String", + "createdDateTime": "String (timestamp)" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md b/api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md new file mode 100644 index 00000000000..79ceb697a72 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md @@ -0,0 +1,53 @@ +--- +title: "b2BSignInActivityMetricsRecent resource type" +description: "Represents the most recent snapshot of B2B sign-in activity metrics." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# b2BSignInActivityMetricsRecent resource type + +Namespace: microsoft.graph + +Represents the most recent snapshot of B2B sign-in activity metrics for a [related tenant](../resources/tenantgovernanceservices-relatedtenant.md), showing current monthly active guests and application counts. + +Inherits from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundMonthlyTotalApplications|String|The total number of applications accessed by inbound users in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|inboundMonthlyTotalUsers|String|The total number of unique inbound users with sign-in activity in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|outboundMonthlyTotalApplications|String|The total number of applications accessed by outbound users in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|outboundMonthlyTotalUsers|String|The total number of unique outbound users with sign-in activity in the last month. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| +|updateDateTime|DateTimeOffset|Timestamp that represents the most recent time B2B registration data was aggregated and have sufficiently changed for the related tenant.| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.b2BSignInActivityMetricsBase](../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.b2BSignInActivityMetricsRecent", + "watermarkDateTime": "String (timestamp)", + "inboundMonthlyTotalUsers": "String", + "inboundMonthlyTotalApplications": "String", + "outboundMonthlyTotalUsers": "String", + "outboundMonthlyTotalApplications": "String", + "updateDateTime": "String (timestamp)" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-billingmetrics.md b/api-reference/v1.0/resources/tenantgovernanceservices-billingmetrics.md new file mode 100644 index 00000000000..a599761b781 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-billingmetrics.md @@ -0,0 +1,40 @@ +--- +title: "billingMetrics resource type" +description: "Represents billing account connection metrics showing commerce relationships between two related tenants." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# billingMetrics resource type + +Namespace: microsoft.graph + +Represents billing metrics that show commerce and billing account connections between the calling tenant and a [related tenant](../resources/tenantgovernanceservices-relatedtenant.md). Tracks associated billing relationships where one tenant manages billing or provisioning for another tenant's subscriptions. Includes both initial and recent snapshots with local (calling tenant as primary billing tenant) and foreign (related tenant as primary billing tenant) connection counts. + +## Properties +None. + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|initial|[microsoft.graph.billingMetricsInitial](../resources/tenantgovernanceservices-billingmetricsinitial.md)|Billing metrics corresponding to initial snapshots where metrics were aggregated for the first time.| +|recent|[microsoft.graph.billingMetricsRecent](../resources/tenantgovernanceservices-billingmetricsrecent.md)|Billing metrics corresponding to recent snapshots where metrics were found to have sufficiently changed.| + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.billingMetrics" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-billingmetricsbase.md b/api-reference/v1.0/resources/tenantgovernanceservices-billingmetricsbase.md new file mode 100644 index 00000000000..aa75b2ddf24 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-billingmetricsbase.md @@ -0,0 +1,64 @@ +--- +title: "billingMetricsBase resource type" +description: "Abstract base type for billing metrics." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# billingMetricsBase resource type + +Namespace: microsoft.graph + +> [!IMPORTANT] +> This is an abstract base type and does not appear directly in API responses. Use the concrete types [billingMetricsInitial](tenantgovernanceservices-billingmetricsinitial.md) or [billingMetricsRecent](tenantgovernanceservices-billingmetricsrecent.md). + +Abstract base type that defines common properties for billing metrics. + +## Properties + +| Property | Type | Description | +|:---------|:-----|:------------| +| foreignAssociatedTenantBillingManagementActiveCount | String | The number of foreign associated tenants with active billing management. | +| foreignAssociatedTenantCount | String | The total number of foreign associated tenants. | +| foreignAssociatedTenantProvisioningActiveCount | String | The number of foreign associated tenants with active provisioning. | +| localAssociatedTenantBillingManagementActiveCount | String | The number of local associated tenants with active billing management. | +| localAssociatedTenantCount | String | The total number of local associated tenants. | +| localAssociatedTenantIds | Collection(String) | The list of local associated tenant IDs. | +| localAssociatedTenantProvisioningActiveCount | String | The number of local associated tenants with active provisioning. | +| watermarkDateTime | DateTimeOffset | The date and time when the metrics snapshot was taken. | + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +> [!NOTE] +> This abstract type is not returned in API responses. See concrete implementations. + + +```json +{ + "@odata.type": "#microsoft.graph.billingMetricsBase", + "watermarkDateTime": "String (timestamp)", + "localAssociatedTenantCount": "String", + "localAssociatedTenantBillingManagementActiveCount": "String", + "localAssociatedTenantProvisioningActiveCount": "String", + "localAssociatedTenantIds": ["String"], + "foreignAssociatedTenantCount": "String", + "foreignAssociatedTenantBillingManagementActiveCount": "String", + "foreignAssociatedTenantProvisioningActiveCount": "String" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-billingmetricsinitial.md b/api-reference/v1.0/resources/tenantgovernanceservices-billingmetricsinitial.md new file mode 100644 index 00000000000..411254f54bb --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-billingmetricsinitial.md @@ -0,0 +1,61 @@ +--- +title: "billingMetricsInitial resource type" +description: "Represents the initial snapshot of billing metrics when the relationship was first discovered." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# billingMetricsInitial resource type + +Namespace: microsoft.graph + +Represents the initial snapshot of billing metrics captured when the [related tenant](../resources/tenantgovernanceservices-relatedtenant.md) was first discovered, establishing a baseline for billing account associations and associated tenant connection counts. + +Inherits from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|createdDateTime|DateTimeOffset|Timestamp that represents when billing metrics are initially aggregated for the related tenant.| +|foreignAssociatedTenantBillingManagementActiveCount|String|The number of foreign associated tenants with active billing management. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|foreignAssociatedTenantCount|String|The total number of foreign associated tenants. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|foreignAssociatedTenantProvisioningActiveCount|String|The number of foreign associated tenants with active provisioning. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantBillingManagementActiveCount|String|The number of local associated tenants with active billing management. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantCount|String|The total number of local associated tenants. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantIds|Collection(String)|The list of local associated tenant IDs. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantProvisioningActiveCount|String|The number of local associated tenants with active provisioning. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.billingMetricsInitial", + "watermarkDateTime": "String (timestamp)", + "localAssociatedTenantCount": "String", + "localAssociatedTenantBillingManagementActiveCount": "String", + "localAssociatedTenantProvisioningActiveCount": "String", + "localAssociatedTenantIds": [ + "String" + ], + "foreignAssociatedTenantCount": "String", + "foreignAssociatedTenantBillingManagementActiveCount": "String", + "foreignAssociatedTenantProvisioningActiveCount": "String", + "createdDateTime": "String (timestamp)" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-billingmetricsrecent.md b/api-reference/v1.0/resources/tenantgovernanceservices-billingmetricsrecent.md new file mode 100644 index 00000000000..00569f26f93 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-billingmetricsrecent.md @@ -0,0 +1,61 @@ +--- +title: "billingMetricsRecent resource type" +description: "Represents the most recent snapshot of billing metrics." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# billingMetricsRecent resource type + +Namespace: microsoft.graph + +Represents the most recent snapshot of billing metrics, showing current billing account associations and associated tenant connection counts. + +Inherits from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|foreignAssociatedTenantBillingManagementActiveCount|String|The number of foreign associated tenants with active billing management. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|foreignAssociatedTenantCount|String|The total number of foreign associated tenants. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|foreignAssociatedTenantProvisioningActiveCount|String|The number of foreign associated tenants with active provisioning. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantBillingManagementActiveCount|String|The number of local associated tenants with active billing management. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantCount|String|The total number of local associated tenants. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantIds|Collection(String)|The list of local associated tenant IDs. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|localAssociatedTenantProvisioningActiveCount|String|The number of local associated tenants with active provisioning. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| +|updateDateTime|DateTimeOffset|Timestamp that represents when billing metrics are aggregated and have sufficiently changed for the related tenant.| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.billingMetricsBase](../resources/tenantgovernanceservices-billingmetricsbase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.billingMetricsRecent", + "watermarkDateTime": "String (timestamp)", + "localAssociatedTenantCount": "String", + "localAssociatedTenantBillingManagementActiveCount": "String", + "localAssociatedTenantProvisioningActiveCount": "String", + "localAssociatedTenantIds": [ + "String" + ], + "foreignAssociatedTenantCount": "String", + "foreignAssociatedTenantBillingManagementActiveCount": "String", + "foreignAssociatedTenantProvisioningActiveCount": "String", + "updateDateTime": "String (timestamp)" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-delegatedadministrationroleassignment.md b/api-reference/v1.0/resources/tenantgovernanceservices-delegatedadministrationroleassignment.md new file mode 100644 index 00000000000..0eb9aa6e3e1 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-delegatedadministrationroleassignment.md @@ -0,0 +1,48 @@ +--- +title: "delegatedAdministrationRoleAssignment resource type" +description: "Represents a role assignment configuration for delegated administration in a governance relationship." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# delegatedAdministrationRoleAssignment resource type + +Namespace: microsoft.graph + +Represents a role assignment configuration for delegated administration in a governance relationship. Specifies which security group in the governing tenant should be assigned which roles in the governed tenant. This resource is defined in the **delegatedAdministrationRoleAssignment ** property of [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md). + + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|groupDisplayName|String|The display name of the security group referenced by the **group** navigation property. Server-populated and read-only; returns `null` if the referenced group has been deleted.| +|roleTemplates|[microsoft.graph.roleTemplate](../resources/tenantgovernanceservices-roletemplate.md) collection|A collection of role templates that define the roles to be assigned to the group in the governed tenant. | + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|group|[group](../resources/group.md)|The security group in the governing tenant that will receive the role assignments in the governed tenant. This group must be role-assignable.| + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.delegatedAdministrationRoleAssignment", + "groupDisplayName": "String", + "roleTemplates": [ + { + "@odata.type": "microsoft.graph.roleTemplate" + } + ] +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md b/api-reference/v1.0/resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md new file mode 100644 index 00000000000..db5e5a828f5 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md @@ -0,0 +1,47 @@ +--- +title: "delegatedAdministrationRoleAssignmentSnapshot resource type" +description: "Represents a snapshot of a delegated administration role assignment configuration stored in a governance relationship or request." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# delegatedAdministrationRoleAssignmentSnapshot resource type + +Namespace: microsoft.graph + +Represents a snapshot of a delegated administration role assignment configuration that was captured when a [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) or [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) was created. This preserves the role assignment configuration as it was defined at that point in time. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|groupDisplayName|String|The display name of the security group identified by **groupId** at the time the snapshot was created. Read-only.| +|groupId|String|The object ID of the role-assignable security group in the governing tenant that will be assigned the specified roles.| +|roleTemplates|[microsoft.graph.roleTemplate](../resources/tenantgovernanceservices-roletemplate.md) collection|The collection of role templates that define the Microsoft Entra roles to be assigned.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.delegatedAdministrationRoleAssignmentSnapshot", + "groupDisplayName": "String", + "groupId": "String", + "roleTemplates": [ + { + "@odata.type": "microsoft.graph.roleTemplate" + } + ] +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-governanceinvitation.md b/api-reference/v1.0/resources/tenantgovernanceservices-governanceinvitation.md new file mode 100644 index 00000000000..bbcb33dd97a --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-governanceinvitation.md @@ -0,0 +1,62 @@ +--- +title: "governanceInvitation resource type" +description: "Represents an invitation sent by a governing tenant to establish a governance relationship with a governed tenant." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# governanceInvitation resource type + +Namespace: microsoft.graph + +Represents an invitation sent by a future governed tenant to a future governing tenant. This invitation authorizes the governing tenant to send a [governance request](../resources/tenantgovernanceservices-governancerequest.md) to the governed tenant to establish a [governance relationship](../resources/tenantgovernanceservices-governanceinvitation.md). The invitation expires after 30 days. + + + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[List](../api/tenantgovernanceservices-list-governanceinvitations.md)|[microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) collection|Get a list of the [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) objects and their properties.| +|[Create](../api/tenantgovernanceservices-post-governanceinvitations.md)|[microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md)|Create a new governance invitation.| +|[Get](../api/tenantgovernanceservices-governanceinvitation-get.md)|[microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md)|Read the properties of a [governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) object.| +|[Delete](../api/tenantgovernanceservices-governanceinvitation-delete.md)|None|Delete a governance invitation.| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|createdDateTime|DateTimeOffset|The date and time when the invitation was created. The timestamp type represents date and time information using ISO 8601 format and is always in UTC.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| +|expirationDateTime|DateTimeOffset|The date and time when the invitation expires. The timestamp type represents date and time information using ISO 8601 format and is always in UTC.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| +|governedTenantId|String|The Microsoft Entra tenant ID of the governed tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|governedTenantName|String|The display name of the governed tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|governingTenantId|String|The Microsoft Entra tenant ID of the governing tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|governingTenantName|String|The display name of the governing tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|id|String|The unique identifier for the governance invitation.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.governanceInvitation", + "id": "String (identifier)", + "governingTenantId": "String", + "governedTenantId": "String", + "governingTenantName": "String", + "governedTenantName": "String", + "createdDateTime": "String (timestamp)", + "expirationDateTime": "String (timestamp)" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-governancerelationship.md b/api-reference/v1.0/resources/tenantgovernanceservices-governancerelationship.md new file mode 100644 index 00000000000..0e487f33ce6 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-governancerelationship.md @@ -0,0 +1,67 @@ +--- +title: "governanceRelationship resource type" +description: "Represents an established governance relationship between a governing tenant and a governed tenant." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# governanceRelationship resource type + +Namespace: microsoft.graph + +Represents an established governance relationship between a governing tenant and a governed tenant. A governance relationship is created when a [governanceRequest](tenantgovernanceservices-governancerequest.md) is accepted by the governed tenant. + + + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[List](../api/tenantgovernanceservices-list-governancerelationships.md)|[microsoft.graph.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) collection|Get a list of the [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) objects and their properties.| +|[Get](../api/tenantgovernanceservices-governancerelationship-get.md)|[microsoft.graph.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md)|Read the properties of a [governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) object.| +|[Update](../api/tenantgovernanceservices-governancerelationship-update.md)|[microsoft.graph.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md)|Update the **status** property to initiate termination of the governance relationship.| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|createdType|microsoft.graph.relationshipCreationType|Indicates how the relationship was created. The possible values are: `approvedByAdmin`, `addOnTenant`, `unknownFutureValue`.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|creationDateTime|DateTimeOffset|The date and time when the relationship was created. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2026 is `2026-01-01T00:00:00Z`.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| +|governedTenantId|String|The Microsoft Entra tenant ID of the governed tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|governedTenantName|String|The display name of the governed tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|governingTenantId|String|The Microsoft Entra tenant ID of the governing tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|governingTenantName|String|The display name of the governing tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|id|String|The unique identifier for the governance relationship.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|policySnapshot|[microsoft.graph.relationshipPolicy](../resources/tenantgovernanceservices-relationshippolicy.md)|A snapshot of the governance policy applied to this relationship, including delegated administration role assignments and multi-tenant applications to provision.| +|status|microsoft.graph.relationshipStatus|The current status of the governance relationship. The possible values are: `active`, `terminated`, `terminationRequestedByGoverningTenant`, `unknownFutureValue`.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.governanceRelationship", + "createdType": "String", + "creationDateTime": "String (timestamp)", + "id": "String (identifier)", + "status": "String", + "governingTenantId": "String", + "governedTenantId": "String", + "governingTenantName": "String", + "governedTenantName": "String", + "policySnapshot": { + "@odata.type": "microsoft.graph.relationshipPolicy" + } +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-governancerequest.md b/api-reference/v1.0/resources/tenantgovernanceservices-governancerequest.md new file mode 100644 index 00000000000..f78922ecaa6 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-governancerequest.md @@ -0,0 +1,70 @@ +--- +title: "governanceRequest resource type" +description: "Represents a request from a governing tenant to establish a governance relationship with a governed tenant." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# governanceRequest resource type + +Namespace: microsoft.graph + +Represents a request from a governing tenant to establish a governance relationship with a governed tenant. The governed tenant can accept or reject the request. When accepted, a [governanceRelationship](tenantgovernanceservices-governancerelationship.md) is created. + + + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[List](../api/tenantgovernanceservices-list-governancerequests.md)|[microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) collection|Get a list of the [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) objects and their properties.| +|[Create](../api/tenantgovernanceservices-post-governancerequests.md)|[microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md)|Create a new governance request to establish a relationship with a governed tenant.| +|[Get](../api/tenantgovernanceservices-governancerequest-get.md)|[microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md)|Read the properties of a [governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) object.| +|[Update](../api/tenantgovernanceservices-governancerequest-update.md)|[microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md)|Update the **status** property to accept or reject the governance request.| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|expirationDateTime|DateTimeOffset|The date and time when the request expires if not accepted or rejected. The timestamp type represents date and time information using ISO 8601 format and is always in UTC.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| +|governedTenantId|String|The Microsoft Entra tenant ID of the governed tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|governedTenantName|String|The display name of the governed tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|governingTenantId|String|The Microsoft Entra tenant ID of the governing tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|governingTenantName|String|The display name of the governing tenant.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|id|String|The unique identifier for the governance request.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|policySnapshot|[microsoft.graph.relationshipPolicy](../resources/tenantgovernanceservices-relationshippolicy.md)|A snapshot of the governance policy to be applied if the request is accepted, including delegated administration role assignments and multi-tenant applications to provision.| +|requestDateTime|DateTimeOffset|The date and time when the request was created. The timestamp type represents date and time information using ISO 8601 format and is always in UTC.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| +|status|microsoft.graph.requestStatus|The current status of the governance request. The possible values are: `pending`, `accepted`, `rejected`, `unknownFutureValue`.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|governancePolicyTemplate|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md)|The governance policy template associated with this request.| + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.governanceRequest", + "id": "String (identifier)", + "governingTenantId": "String", + "governingTenantName": "String", + "governedTenantId": "String", + "governedTenantName": "String", + "expirationDateTime": "String (timestamp)", + "requestDateTime": "String (timestamp)", + "status": "String", + "policySnapshot": { + "@odata.type": "microsoft.graph.relationshipPolicy" + } +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetrics.md b/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetrics.md new file mode 100644 index 00000000000..d5111df1e6a --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetrics.md @@ -0,0 +1,40 @@ +--- +title: "multiTenantApplicationMetrics resource type" +description: "Represents multi-tenant application usage metrics between two related tenants." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# multiTenantApplicationMetrics resource type + +Namespace: microsoft.graph + +Represents multi-tenant application usage metrics that track the number of applications used across tenant boundaries. Includes both initial and recent snapshots showing monthly counts of inbound and outbound multi-tenant application usage associated with [related tenants](../resources/tenantgovernanceservices-relatedtenant.md). + +## Properties +None. + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|initial|[microsoft.graph.multiTenantApplicationMetricsInitial](../resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md)|Multitenant application metrics corresponding to initial snapshots where metrics were aggregated for the first time.| +|recent|[microsoft.graph.multiTenantApplicationMetricsRecent](../resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md)|Multitenant application metrics corresponding to recent snapshots where metrics were found to have sufficiently changed.| + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.multiTenantApplicationMetrics" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md b/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md new file mode 100644 index 00000000000..0b6cb0fcf9d --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md @@ -0,0 +1,53 @@ +--- +title: "multiTenantApplicationMetricsBase resource type" +description: "Abstract base type for multi-tenant application metrics." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# multiTenantApplicationMetricsBase resource type + +Namespace: microsoft.graph + +This resource is an abstract base type and does not appear directly in API responses. Use the concrete types [multiTenantApplicationMetricsInitial](tenantgovernanceservices-multitenantapplicationmetricsinitial.md) or [multiTenantApplicationMetricsRecent](tenantgovernanceservices-multitenantapplicationmetricsrecent.md). + +Abstract base type that defines common properties for multi-tenant application metrics. + +## Properties + +| Property | Type | Description | +|:---------|:-----|:------------| +| inboundMonthlyTotalApplications | String | The total number of inbound multi-tenant applications in the last month. | +| outboundMonthlyTotalApplications | String | The total number of outbound multi-tenant applications in the last month. | +| watermarkDateTime | DateTimeOffset | The date and time when the metrics snapshot was taken. | + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +> [!NOTE] +> This abstract type is not returned in API responses. See concrete implementations. + + +```json +{ + "@odata.type": "#microsoft.graph.multiTenantApplicationMetricsBase", + "watermarkDateTime": "String (timestamp)", + "inboundMonthlyTotalApplications": "String", + "outboundMonthlyTotalApplications": "String" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md b/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md new file mode 100644 index 00000000000..35d4f088bc7 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md @@ -0,0 +1,48 @@ +--- +title: "multiTenantApplicationMetricsInitial resource type" +description: "Represents the initial snapshot of multi-tenant application metrics when the relationship was first discovered." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# multiTenantApplicationMetricsInitial resource type + +Namespace: microsoft.graph + +Represents the initial snapshot of multi-tenant application metrics captured when the [related tenant](../resources/tenantgovernanceservices-relatedtenant.md) was first discovered, establishing a baseline for application usage across tenant boundaries. + +Inherits from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|createdDateTime|DateTimeOffset|Timestamp that represents when multitenant application metrics are initially aggregated for the related tenant.| +|inboundMonthlyTotalApplications|String|The total number of inbound multi-tenant applications in the last month. Inherited from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| +|outboundMonthlyTotalApplications|String|The total number of outbound multi-tenant applications in the last month. Inherited from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.multiTenantApplicationMetricsInitial", + "watermarkDateTime": "String (timestamp)", + "inboundMonthlyTotalApplications": "String", + "outboundMonthlyTotalApplications": "String", + "createdDateTime": "String (timestamp)" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md b/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md new file mode 100644 index 00000000000..f4c16e8435f --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md @@ -0,0 +1,49 @@ +--- +title: "multiTenantApplicationMetricsRecent resource type" +description: "Represents the most recent snapshot of multi-tenant application metrics." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# multiTenantApplicationMetricsRecent resource type + +Namespace: microsoft.graph + +Represents the most recent snapshot of multi-tenant application metrics, showing current application usage across [related tenants](../resources/tenantgovernanceservices-relatedtenant.md). + +Inherits from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md). + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundMonthlyTotalApplications|String|The total number of inbound multi-tenant applications in the last month. Inherited from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| +|outboundMonthlyTotalApplications|String|The total number of outbound multi-tenant applications in the last month. Inherited from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| +|updateDateTime|DateTimeOffset|Timestamp that represents when multitenant application metrics are aggregated and have sufficiently changed for the related tenant.| +|watermarkDateTime|DateTimeOffset|The date and time when the metrics snapshot was taken. Inherited from [microsoft.graph.multiTenantApplicationMetricsBase](../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.multiTenantApplicationMetricsRecent", + "watermarkDateTime": "String (timestamp)", + "inboundMonthlyTotalApplications": "String", + "outboundMonthlyTotalApplications": "String", + "updateDateTime": "String (timestamp)" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationstoprovision.md b/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationstoprovision.md new file mode 100644 index 00000000000..2760a9e282d --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationstoprovision.md @@ -0,0 +1,50 @@ +--- +title: "multiTenantApplicationsToProvision resource type" +description: "Represents a multi-tenant application to be provisioned in a governed tenant." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# multiTenantApplicationsToProvision resource type + +Namespace: microsoft.graph + +Represents a multi-tenant application that should be provisioned in the governed tenant when a governance relationship is established. This allows the governing tenant to deploy management or monitoring applications into the governed tenant. This resource is defined in the **multiTenantApplicationsToProvision** property of [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md). + + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|appId|String|The **appId** (client ID) of the multi-tenant application.| +|displayName|String|The display name of the application.| +|objectId|String|The object ID of the service principal in the governing tenant.| +|requiredResourceAccesses|[microsoft.graph.applicationsRequiredResourceAccess](../resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md) collection|The collection of resource accesses (permissions) required by the application.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.multiTenantApplicationsToProvision", + "appId": "String", + "objectId": "String", + "displayName": "String", + "requiredResourceAccesses": [ + { + "@odata.type": "microsoft.graph.applicationsRequiredResourceAccess" + } + ] +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md b/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md new file mode 100644 index 00000000000..f936973daed --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md @@ -0,0 +1,49 @@ +--- +title: "multiTenantApplicationsToProvisionSnapshot resource type" +description: "Represents a snapshot of a multi-tenant application configuration stored in a governance relationship or request." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# multiTenantApplicationsToProvisionSnapshot resource type + +Namespace: microsoft.graph + +Represents a snapshot of a multi-tenant application configuration that was captured when a [governance relationship](../resources/tenantgovernanceservices-governancerelationship.md) or [request](../resources/tenantgovernanceservices-governancerequest.md) was created. This preserves the application configuration as it was defined at that point in time. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|appId|String|The **appId** (client ID) of the multi-tenant application.| +|displayName|String|The display name of the application.| +|objectId|String|The object ID of the service principal in the governing tenant.| +|requiredResourceAccesses|[microsoft.graph.applicationsRequiredResourceAccess](../resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md) collection|The collection of resource accesses (permissions) required by the application.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.multiTenantApplicationsToProvisionSnapshot", + "appId": "String", + "objectId": "String", + "displayName": "String", + "requiredResourceAccesses": [ + { + "@odata.type": "microsoft.graph.applicationsRequiredResourceAccess" + } + ] +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-relatedtenant.md b/api-reference/v1.0/resources/tenantgovernanceservices-relatedtenant.md new file mode 100644 index 00000000000..669b426cafe --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-relatedtenant.md @@ -0,0 +1,63 @@ +--- +title: "relatedTenant resource type" +description: "Represents a tenant that has been discovered as related to the current tenant through tenant discovery." +author: "hafowler" +ms.date: 09/14/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# relatedTenant resource type + +Namespace: microsoft.graph + +Represents a tenant that has been discovered as related to the current tenant through the tenant discovery feature. Related tenants are discovered based on B2B collaboration activity, billing relationships, multi-tenant application usage, and other indicators of inter-tenant relationships. + +> [!IMPORTANT] +> The related tenants feature must be explicitly enabled before the tenant governance APIs can be used. To enable related tenants, call the [enableRelatedTenants](../api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md) action. + + + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[List](../api/tenantgovernanceservices-list-relatedtenants.md)|[microsoft.graph.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) collection|Get a list of the [relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) objects and their properties.| +|[Get](../api/tenantgovernanceservices-relatedtenant-get.md)|[microsoft.graph.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md)|Read the properties and relationships of a [relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) object.| +|[Refresh](../api/tenantgovernanceservices-relatedtenant-refresh.md)|None|Refresh the list of related tenants.| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|createdDateTime|DateTimeOffset|The date and time when the related tenant was discovered. The timestamp type represents date and time information using ISO 8601 format and is always in UTC.| +|id|String|The Microsoft Entra tenant ID of the related tenant.| +|isMicrosoftInfrastructure|Boolean|Indicates whether the related tenant is a Microsoft infrastructure tenant. Read-only.| + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|appB2BSignInActivityMetrics|[microsoft.graph.b2BSignInActivityMetrics](../resources/tenantgovernanceservices-b2bsigninactivitymetrics.md)|B2B sign-in activity metrics for this related tenant. Expanded by default.| +|b2BRegistrationMetrics|[microsoft.graph.b2bRegistrationMetrics](../resources/tenantgovernanceservices-b2bregistrationmetrics.md)|B2B registration metrics for this related tenant. Expanded by default.| +|b2BSignInActivityMetrics|[microsoft.graph.b2BSignInActivityMetrics](../resources/tenantgovernanceservices-b2bsigninactivitymetrics.md)|B2B sign-in activity metrics for this related tenant. Expanded by default.| +|billingMetrics|[microsoft.graph.billingMetrics](../resources/tenantgovernanceservices-billingmetrics.md)|Billing metrics for this related tenant. Expanded by default.| +|multiTenantApplicationMetrics|[microsoft.graph.multiTenantApplicationMetrics](../resources/tenantgovernanceservices-multitenantapplicationmetrics.md)|Multi-tenant application usage metrics for this related tenant. Expanded by default.| + +The metrics relationships support the `$expand` query parameter. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.relatedTenant", + "id": "String (identifier)", + "createdDateTime": "String (timestamp)", + "isMicrosoftInfrastructure": "Boolean" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-relatedtenantsrefreshrequest.md b/api-reference/v1.0/resources/tenantgovernanceservices-relatedtenantsrefreshrequest.md new file mode 100644 index 00000000000..08d4b68213c --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-relatedtenantsrefreshrequest.md @@ -0,0 +1,43 @@ +--- +title: "relatedTenantsRefreshRequest resource type" +description: "Represents a request to refresh related tenants data." +author: "akhil-potturi" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# relatedTenantsRefreshRequest resource type + +Namespace: microsoft.graph + +Represents a request to [refresh related tenants](../api/tenantgovernanceservices-relatedtenant-refresh.md) data outside the regular refresh schedule. + +## Methods +None. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|location|String|The location URL where the status of the refresh request can be retrieved.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.relatedTenantsRefreshRequest", + "location": "String" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-relationshippolicy.md b/api-reference/v1.0/resources/tenantgovernanceservices-relationshippolicy.md new file mode 100644 index 00000000000..39c2db529cb --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-relationshippolicy.md @@ -0,0 +1,56 @@ +--- +title: "relationshipPolicy resource type" +description: "Represents a snapshot of governance policy configuration stored in a governance relationship or request." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# relationshipPolicy resource type + +Namespace: microsoft.graph + +Represents a snapshot of governance policy configuration that is stored in a [governanceRelationship](tenantgovernanceservices-governancerelationship.md) or [governanceRequest](tenantgovernanceservices-governancerequest.md). This snapshot preserves the policy state at the time the relationship was created or requested. + + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|delegatedAdministrationRoleAssignments|[microsoft.graph.delegatedAdministrationRoleAssignmentSnapshot](../resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md) collection|A snapshot of the delegated administration role assignments configured in this policy.| +|governedTenantCanTerminate|Boolean|Indicates whether the governed tenant can terminate the relationship.| +|multiTenantApplicationsToProvision|[microsoft.graph.multiTenantApplicationsToProvisionSnapshot](../resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md) collection|A snapshot of the multi-tenant applications to be provisioned in the governed tenant.| +|policyId|String|The identifier of the source policy template from which this snapshot was created.| +|version|Int32|The version of the source policy template from which this snapshot was created.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.relationshipPolicy", + "policyId": "String", + "version": "Int32", + "governedTenantCanTerminate": "Boolean", + "multiTenantApplicationsToProvision": [ + { + "@odata.type": "microsoft.graph.multiTenantApplicationsToProvisionSnapshot" + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "@odata.type": "microsoft.graph.delegatedAdministrationRoleAssignmentSnapshot" + } + ] +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-roletemplate.md b/api-reference/v1.0/resources/tenantgovernanceservices-roletemplate.md new file mode 100644 index 00000000000..1e977929cfc --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-roletemplate.md @@ -0,0 +1,42 @@ +--- +title: "roleTemplate resource type" +description: "Represents a Microsoft Entra role template definition." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# roleTemplate resource type + +Namespace: microsoft.graph + +Represents a [Microsoft Entra role template definition](../resources/unifiedroledefinition.md) used in [delegated administration role assignments](../resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md). The role template specifies which Microsoft Entra role should be assigned. + + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|id|String|The template ID of the Microsoft Entra role (e.g., `62e90394-69f5-4237-9190-012177145e10` for Global Administrator).| +|name|String|The display name of the role (e.g., "Global Administrator", "Helpdesk Administrator").| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.roleTemplate", + "id": "String", + "name": "String" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernance-overview.md b/api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernance-overview.md new file mode 100644 index 00000000000..f408f2126d8 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernance-overview.md @@ -0,0 +1,110 @@ +--- +title: "Overview of Tenant Governance APIs in Microsoft Graph" +description: "Discover, manage, and govern Microsoft Entra tenants at scale with Tenant Governance APIs in Microsoft Graph. Learn about related tenants, governance relationships and associated settings." +author: "akhil-potturi" +ms.author: "potturiakhil" +ms.reviewer: "hafowler,akhil.potturi,jeffsta" +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: conceptualPageType +ms.date: 09/23/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.topic: overview +#customer intent: As a developer, I want to learn how to use the tenant governance APIs in Microsoft Graph to programmatically discover related tenants and establish governance relationships. +--- + +# Overview of Tenant Governance APIs in Microsoft Graph + +Namespace: microsoft.graph + +The tenant governance APIs in Microsoft Graph enable IT administrators to programmatically discover, manage, and govern Microsoft Entra tenants at scale. Modern organizations often manage multiple tenants due to mergers, acquisitions, geographic expansion, and decentralized IT models, which can lead to tenant sprawl. + +[Microsoft Entra Tenant Governance](/entra/id-governance/tenant-governance/overview) helps organizations centrally manage their tenant ecosystem through cross-tenant delegated administration and governance relationships. Use these APIs to programmatically manage the following capabilities: + +- Discover related tenants across your organization's tenant ecosystem. +- Establish governance relationships between governing tenant and governed tenants. +- Configure cross-tenant delegated administration to centrally manage governed tenants. +- Provision and manage multi-tenant applications across governed tenants. +- Define governance policy templates to enforce consistent governance. + +## Discover related tenants + +A *related tenant* is a Microsoft Entra tenant that demonstrates a verifiable connection to your tenant based on observable discovery signals. These signals are derived from real configuration and activity data, including: + +- **B2B collaboration**: Cross-tenant policies, cross-tenant identity interactions, such as guest user registrations and sign-in activity. +- **Multi-tenant applications**: Applications registered in one tenant that are consented to or accessed by users in another tenant. +- **Shared billing accounts**: Tenants connected through one or more shared billing accounts. + +Related tenants are identified based on observable connections between your tenant and other tenants. These connections help you discover both intentional external partnerships and unmanaged tenants in your organization. + +Before you can discover related tenants, you must enable the feature through the [enableRelatedTenants](../api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md) action on the [tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) resource. + +Use the [relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) resource type and its associated methods to discover, review, and get the latest view of tenants that interact with your tenant, including aggregated metrics for associated activities. + +## Manage governance relationships + +A *governance relationship* is a directional connection between two Microsoft Entra tenants where one tenant (the *governing* tenant) governs another tenant (the *governed* tenant). Governance relationships enable organizations to centrally manage multiple tenants at scale for cross-tenant delegated administration, multi-tenant application management, and configuration management. + +### Relationship handshake + +To establish a governance relationship, both tenants participate in a three-step handshake: + +1. The future **governed** tenant sends a [governance invitation](../resources/tenantgovernanceservices-governanceinvitation.md) to the future governing tenant. The future governing tenant must have enabled receiving governance invitations through the [Update tenantGovernanceSetting](../api/tenantgovernanceservices-tenantgovernancesetting-update.md) operation. +2. The future **governing** tenant sends a [governance request](../resources/tenantgovernanceservices-governancerequest.md) to the future governed tenant, which includes a selected [governance policy template](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md). +3. The future **governed** tenant reviews and accepts the request. Upon acceptance, a [governance relationship](../resources/tenantgovernanceservices-governancerelationship.md) is created. + +> [!NOTE] +> Tenants can skip the invitation step when the future governing tenant identifies the future governed tenant as a related tenant through tenant discovery with a shared billing signal, or when the tenants already have an active governance relationship. + +### Governance models + +The following governance models are supported: + +| Model | Supported | Description | +|:---|:---|:---| +| One-to-many | ✅ Yes | A tenant can govern multiple tenants. | +| Many-to-one | ✅ Yes | Multiple tenants can govern a single tenant. | +| Multi-tier | ❌ No | A tenant can't be both a governing and governed tenant. For example, if Contoso governs Fabrikam, Fabrikam can't govern another tenant. | +| Multiple | ❌ No | Multiple relationships between the same 2 tenants is not supported. | +| Cloud solution providers | ❌ No | Coexistence of CSP relationships created through Partner Center and tenant governance relationships is not supported. | + +When you create a new add-on tenant from an existing tenant, Tenant Governance automatically establishes a governance relationship between the parent (governing) tenant and the new (governed) tenant using a default [governance policy template](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md). This process ensures that newly created tenants are immediately under centralized governance. + +## Governance policy templates + +A [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) defines the configuration for governance relationships, including delegated administration role assignments and multi-tenant applications to provision. Policy templates are reusable across governance relationships, enabling consistent governance at scale. When a governance relationship is established, the system captures and stores a policy snapshot with the relationship, preserving the policy state at the time of creation. + +> [!NOTE] +> Updating a governance policy template doesn't automatically update existing relationships that were created using that template. To apply policy changes to an active relationship, you must create a new governance request. + +## Configure cross-tenant delegated administration + +Cross-tenant delegated administration uses granular delegated admin privileges (GDAP) technology to enable administrators from the governing tenant to manage governed tenants without creating local or B2B accounts. When a governance relationship with delegated administration is established, the system creates GDAP role assignments in the governed tenant. + +A governance policy template defines which Microsoft Entra built-in roles are enabled for delegated administration. You configure this through the **delegatedAdministrationRoleAssignments** property of the **tenantGovernancePolicyTemplate** resource, which specifies the security group in the governing tenant that receives the role assignments and the roles to be assigned. + +Governed tenants have full visibility into governing tenant admin activity. The governed tenant's sign-in and audit logs capture all actions that delegated administrators perform. + +## Manage multitenant applications within your governed ecosystem + +Through governance policy templates, you can select custom, multi-tenant applications to provision across governed tenants. When a governance relationship is established, the system creates a service principal with the same permissions in the governed tenant. + +This capability enables centralized application management at scale from the governing tenant, eliminating the need to manage application access on a per-tenant basis. Configure multi-tenant applications through the **multiTenantApplicationsToProvision** property of the **tenantGovernancePolicyTemplate** resource. + +## Maintain tenant configurations using Tenant Configuration Management APIs + +In addition to the tenant governance APIs, you can use the [Tenant Configuration Management APIs](../resources/unified-tenant-configuration-management-api-overview.md) and their associated methods to maintain consistent tenant configurations for different workloads across governed tenants. This includes creating a baseline of settings such as security defaults, conditional access policies, and identity providers, then applying that baseline to governed tenants and tracking configuration drift over time. + +## Audit logs + +All tenant governance activities are logged in the Microsoft Entra [audit logs](../resources/directoryaudit.md) of both the governing and governed tenants, providing full visibility into governance actions and changes. This includes governance relationship creation and termination, policy template updates, delegated administration activities, and multi-tenant application provisioning. + +## Related content + +- [relatedTenant resource type](../resources/tenantgovernanceservices-relatedtenant.md) +- [governanceInvitation resource type](../resources/tenantgovernanceservices-governanceinvitation.md) +- [governanceRequest resource type](../resources/tenantgovernanceservices-governancerequest.md) +- [governanceRelationship resource type ](../resources/tenantgovernanceservices-governancerelationship.md) +- [tenantGovernancePolicyTemplate resource type](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) +- [tenantgovernancesetting resource type](../resources/tenantgovernanceservices-tenantgovernancesetting.md) diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernance.md b/api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernance.md new file mode 100644 index 00000000000..b4ac47a4ba4 --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernance.md @@ -0,0 +1,46 @@ +--- +title: "tenantGovernance resource type" +description: "Container for Microsoft Entra Tenant Governance capabilities." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# tenantGovernance resource type + +Namespace: microsoft.graph + +Container for Microsoft Entra Tenant Governance capabilities. + + +## Methods +None. + +## Properties +None. + +## Relationships +|Relationship|Type|Description| +|:---|:---|:---| +|governanceInvitations|[microsoft.graph.governanceInvitation](../resources/tenantgovernanceservices-governanceinvitation.md) collection|Collection of governance invitations associated with the tenant.| +|governancePolicyTemplates|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) collection|Collection of governance policy templates associated with the tenant.| +|governanceRelationships|[microsoft.graph.governanceRelationship](../resources/tenantgovernanceservices-governancerelationship.md) collection|Collection of governance relationships associated with the tenant.| +|governanceRequests|[microsoft.graph.governanceRequest](../resources/tenantgovernanceservices-governancerequest.md) collection|Collection of governance requests associated with the tenant.| +|relatedTenants|[microsoft.graph.relatedTenant](../resources/tenantgovernanceservices-relatedtenant.md) collection|Collection of related tenants associated with the tenant.| +|settings|[microsoft.graph.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md)|Settings for the tenant governance container.| + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.tenantGovernance" +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md b/api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md new file mode 100644 index 00000000000..575a2988e2a --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md @@ -0,0 +1,76 @@ +--- +title: "tenantGovernancePolicyTemplate resource type" +description: "Represents a policy template that defines the configuration for governance relationships." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# tenantGovernancePolicyTemplate resource type + +Namespace: microsoft.graph + +Represents a policy template that defines the configuration for governance relationships, including delegated administration role assignments and multi-tenant applications to provision. Policy templates are used when creating [governanceRequest](tenantgovernanceservices-governancerequest.md) objects and are stored as [snapshots](tenantgovernanceservices-relationshippolicy.md) in established [governanceRelationship](tenantgovernanceservices-governancerelationship.md) objects. + +The system provides a default policy template with the ID `default`. This template serves as a reusable configuration that is applied when governance relationships are automatically created for add-on tenants. The default template cannot be deleted. + + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[List](../api/tenantgovernanceservices-list-governancepolicytemplates.md)|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) collection|Get a list of the [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) objects and their properties.| +|[Create](../api/tenantgovernanceservices-post-governancepolicytemplates.md)|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md)|Create a new governance policy template.| +|[Get](../api/tenantgovernanceservices-governancepolicytemplate-get.md)|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md)|Read the properties of a [tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md) object, including the system-provided default template.| +|[Update](../api/tenantgovernanceservices-governancepolicytemplate-update.md)|[microsoft.graph.tenantGovernancePolicyTemplate](../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md)|Update the properties of a governance policy template, including the system-provided default template.| +|[Delete](../api/tenantgovernanceservices-delete-governancepolicytemplates.md)|None|Delete a governance policy template.| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|createdDateTime|DateTimeOffset|The date and time when the template was created. The timestamp type represents date and time information using ISO 8601 format and is always in UTC.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| +|delegatedAdministrationRoleAssignments|[microsoft.graph.delegatedAdministrationRoleAssignment](../resources/tenantgovernanceservices-delegatedadministrationroleassignment.md) collection|A collection of delegated administration role assignments to be applied in the governed tenant when the governance relationship is established.| +|description|String|A description of the policy template.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|displayName|String|The display name of the policy template.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|governedTenantCanTerminate|Boolean|Not implemented.| +|id|String|The unique identifier for the policy template. Is `default` for the default template.

Supports `$filter` (`eq`, `ne`) and `$orderBy`.| +|lastModifiedDateTime|DateTimeOffset|The date and time when the template was last modified. The timestamp type represents date and time information using ISO 8601 format and is always in UTC.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| +|multiTenantApplicationsToProvision|[microsoft.graph.multiTenantApplicationsToProvision](../resources/tenantgovernanceservices-multitenantapplicationstoprovision.md) collection|A collection of multi-tenant applications to be provisioned in the governed tenant when the governance relationship is established.| +|version|String|The version of the policy template. Version count increased by 1 when updated.

Supports `$filter` (`lt`, `le`, `gt`, `ge`, `eq`, `ne`) and `$orderBy`.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.tenantGovernancePolicyTemplate", + "id": "String (identifier)", + "displayName": "String", + "description": "String", + "governedTenantCanTerminate": "Boolean", + "createdDateTime": "String (timestamp)", + "lastModifiedDateTime": "String (timestamp)", + "version": "String", + "multiTenantApplicationsToProvision": [ + { + "@odata.type": "microsoft.graph.multiTenantApplicationsToProvision" + } + ], + "delegatedAdministrationRoleAssignments": [ + { + "@odata.type": "microsoft.graph.delegatedAdministrationRoleAssignment" + } + ] +} +``` diff --git a/api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernancesetting.md b/api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernancesetting.md new file mode 100644 index 00000000000..1800f1bba6b --- /dev/null +++ b/api-reference/v1.0/resources/tenantgovernanceservices-tenantgovernancesetting.md @@ -0,0 +1,51 @@ +--- +title: "tenantGovernanceSetting resource type" +description: "Represents the tenant governance settings that control related tenant discovery and invitation capabilities." +author: "hafowler" +ms.date: 08/13/2026 +ai-usage: ai-assisted +ms.custom: msecd-doc-authoring-1028 +ms.localizationpriority: medium +ms.subservice: "entra-tenant-governance" +doc_type: resourcePageType +--- + +# tenantGovernanceSetting resource type + +Namespace: microsoft.graph + +Represents the tenant governance settings that control related tenant discovery and invitation capabilities. This is a singleton resource. + + + +## Methods +|Method|Return type|Description| +|:---|:---|:---| +|[Get](../api/tenantgovernanceservices-tenantgovernancesetting-get.md)|[microsoft.graph.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md)|Read the properties of the [tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md) singleton.| +|[Update](../api/tenantgovernanceservices-tenantgovernancesetting-update.md)|[microsoft.graph.tenantGovernanceSetting](../resources/tenantgovernanceservices-tenantgovernancesetting.md)|Update the **canReceiveInvitations** property of the tenant governance settings.| +|[Enable related tenants](../api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md)|None|Enable the related tenants feature for tenant discovery.| + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|canReceiveInvitations|Boolean|Indicates whether the tenant can receive governance invitations. When set to `false`, the tenant cannot receive new governance invitations. When set to `true`, other tenants can send your tenant invitations by providing your tenant id or domain name. Default value is `false`.| +|isRelatedTenantsEnabled|Boolean|Indicates whether the related tenants feature is enabled for tenant discovery. When set to `false`, related tenant APIs don't work. This property can be enabled by calling the [enableRelatedTenants](../api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md) action. Default value is `false`.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.tenantGovernanceSetting", + "isRelatedTenantsEnabled": "Boolean", + "canReceiveInvitations": "Boolean" +} +``` diff --git a/api-reference/v1.0/toc/toc.mapping.json b/api-reference/v1.0/toc/toc.mapping.json index f5f00057c40..4d053be2fdc 100644 --- a/api-reference/v1.0/toc/toc.mapping.json +++ b/api-reference/v1.0/toc/toc.mapping.json @@ -2347,6 +2347,47 @@ "multiTenantOrganizationPartnerConfigurationTemplate", "multiTenantOrganizationIdentitySyncPolicyTemplate" ] + }, + { + "name": "Tenant governance", + "overview": "../../resources/tenantgovernanceservices-tenantgovernance-overview.md", + "resources": [ + "microsoft.graph.governanceInvitation", + "microsoft.graph.governanceRelationship", + "microsoft.graph.governanceRequest", + + "microsoft.graph.relatedTenant", + "microsoft.graph.tenantGovernance", + "microsoft.graph.tenantGovernancePolicyTemplate", + "microsoft.graph.tenantGovernanceSetting" + ], + "complexTypes": [ + "microsoft.graph.applicationResourcePermission", + "microsoft.graph.applicationsRequiredResourceAccess", + "microsoft.graph.b2bRegistrationMetrics", + "microsoft.graph.b2BRegistrationMetricsBase", + "microsoft.graph.b2BRegistrationMetricsInitial", + "microsoft.graph.b2BRegistrationMetricsRecent", + "microsoft.graph.b2BSignInActivityMetrics", + "microsoft.graph.b2BSignInActivityMetricsBase", + "microsoft.graph.b2BSignInActivityMetricsInitial", + "microsoft.graph.b2BSignInActivityMetricsRecent", + "microsoft.graph.billingMetrics", + "microsoft.graph.billingMetricsBase", + "microsoft.graph.billingMetricsInitial", + "microsoft.graph.billingMetricsRecent", + "microsoft.graph.delegatedAdministrationRoleAssignment", + "microsoft.graph.delegatedAdministrationRoleAssignmentSnapshot", + "microsoft.graph.multiTenantApplicationMetrics", + "microsoft.graph.multiTenantApplicationMetricsBase", + "microsoft.graph.multiTenantApplicationMetricsInitial", + "microsoft.graph.multiTenantApplicationMetricsRecent", + "microsoft.graph.multiTenantApplicationsToProvision", + "microsoft.graph.multiTenantApplicationsToProvisionSnapshot", + "microsoft.graph.relatedTenantsRefreshRequest", + "microsoft.graph.relationshipPolicy", + "microsoft.graph.roleTemplate" + ] } ] }, diff --git a/changelog/Microsoft.TenantGovernance.json b/changelog/Microsoft.TenantGovernance.json index be00560f085..2f9f2d95ee9 100644 --- a/changelog/Microsoft.TenantGovernance.json +++ b/changelog/Microsoft.TenantGovernance.json @@ -1,5 +1,521 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Relationship", + "ChangedApiName": "tenantGovernance", + "ChangeType": "Addition", + "Description": "Added the **tenantGovernance** relationship to the [directory](https://learn.microsoft.com/en-us/graph/api/resources/directory?view=graph-rest-v1.0) resource.", + "Target": "directory" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Enumeration", + "ChangedApiName": "applicationPermissionType", + "ChangeType": "Addition", + "Description": "Added the **applicationPermissionType** enumeration type.", + "Target": "applicationPermissionType" + }, + + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Enumeration", + "ChangedApiName": "relationshipCreationType", + "ChangeType": "Addition", + "Description": "Added the **relationshipCreationType** enumeration type.", + "Target": "relationshipCreationType" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Enumeration", + "ChangedApiName": "relationshipStatus", + "ChangeType": "Addition", + "Description": "Added the **relationshipStatus** enumeration type.", + "Target": "relationshipStatus" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Enumeration", + "ChangedApiName": "requestStatus", + "ChangeType": "Addition", + "Description": "Added the **requestStatus** enumeration type.", + "Target": "requestStatus" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "delegatedAdministrationRoleAssignment", + "ChangeType": "Addition", + "Description": "Added the [delegatedAdministrationRoleAssignment](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-delegatedadministrationroleassignment?view=graph-rest-v1.0) resource.", + "Target": "delegatedAdministrationRoleAssignment" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "delegatedAdministrationRoleAssignmentSnapshot", + "ChangeType": "Addition", + "Description": "Added the [delegatedAdministrationRoleAssignmentSnapshot](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot?view=graph-rest-v1.0) resource.", + "Target": "delegatedAdministrationRoleAssignmentSnapshot" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Relationship", + "ChangedApiName": "group", + "ChangeType": "Addition", + "Description": "Added the **group** relationship to the [delegatedAdministrationRoleAssignment](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-delegatedadministrationroleassignment?view=graph-rest-v1.0) resource.", + "Target": "delegatedAdministrationRoleAssignment" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "multiTenantApplicationsToProvision", + "ChangeType": "Addition", + "Description": "Added the [multiTenantApplicationsToProvision](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-multitenantapplicationstoprovision?view=graph-rest-v1.0) resource.", + "Target": "multiTenantApplicationsToProvision" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "multiTenantApplicationsToProvisionSnapshot", + "ChangeType": "Addition", + "Description": "Added the [multiTenantApplicationsToProvisionSnapshot](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot?view=graph-rest-v1.0) resource.", + "Target": "multiTenantApplicationsToProvisionSnapshot" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "relationshipPolicy", + "ChangeType": "Addition", + "Description": "Added the [relationshipPolicy](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-relationshippolicy?view=graph-rest-v1.0) resource.", + "Target": "relationshipPolicy" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "applicationResourcePermission", + "ChangeType": "Addition", + "Description": "Added the **applicationResourcePermission** resource.", + "Target": "applicationResourcePermission" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "roleTemplate", + "ChangeType": "Addition", + "Description": "Added the [roleTemplate](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-roletemplate?view=graph-rest-v1.0) resource.", + "Target": "roleTemplate" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "b2bRegistrationMetrics", + "ChangeType": "Addition", + "Description": "Added the [b2bRegistrationMetrics](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-b2bregistrationmetrics?view=graph-rest-v1.0) resource.", + "Target": "b2bRegistrationMetrics" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "b2BRegistrationMetricsBase", + "ChangeType": "Addition", + "Description": "Added the [b2BRegistrationMetricsBase](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-b2bregistrationmetricsbase?view=graph-rest-v1.0) resource.", + "Target": "b2BRegistrationMetricsBase" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "b2BRegistrationMetricsInitial", + "ChangeType": "Addition", + "Description": "Added the [b2BRegistrationMetricsInitial](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-b2bregistrationmetricsinitial?view=graph-rest-v1.0) resource.", + "Target": "b2BRegistrationMetricsInitial" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "b2BRegistrationMetricsRecent", + "ChangeType": "Addition", + "Description": "Added the [b2BRegistrationMetricsRecent](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-b2bregistrationmetricsrecent?view=graph-rest-v1.0) resource.", + "Target": "b2BRegistrationMetricsRecent" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "b2BSignInActivityMetrics", + "ChangeType": "Addition", + "Description": "Added the [b2BSignInActivityMetrics](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-b2bsigninactivitymetrics?view=graph-rest-v1.0) resource.", + "Target": "b2BSignInActivityMetrics" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "b2BSignInActivityMetricsBase", + "ChangeType": "Addition", + "Description": "Added the [b2BSignInActivityMetricsBase](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-b2bsigninactivitymetricsbase?view=graph-rest-v1.0) resource.", + "Target": "b2BSignInActivityMetricsBase" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "b2BSignInActivityMetricsInitial", + "ChangeType": "Addition", + "Description": "Added the [b2BSignInActivityMetricsInitial](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial?view=graph-rest-v1.0) resource.", + "Target": "b2BSignInActivityMetricsInitial" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "b2BSignInActivityMetricsRecent", + "ChangeType": "Addition", + "Description": "Added the [b2BSignInActivityMetricsRecent](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent?view=graph-rest-v1.0) resource.", + "Target": "b2BSignInActivityMetricsRecent" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "billingMetrics", + "ChangeType": "Addition", + "Description": "Added the [billingMetrics](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-billingmetrics?view=graph-rest-v1.0) resource.", + "Target": "billingMetrics" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "billingMetricsBase", + "ChangeType": "Addition", + "Description": "Added the [billingMetricsBase](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-billingmetricsbase?view=graph-rest-v1.0) resource.", + "Target": "billingMetricsBase" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "billingMetricsInitial", + "ChangeType": "Addition", + "Description": "Added the [billingMetricsInitial](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-billingmetricsinitial?view=graph-rest-v1.0) resource.", + "Target": "billingMetricsInitial" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "billingMetricsRecent", + "ChangeType": "Addition", + "Description": "Added the [billingMetricsRecent](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-billingmetricsrecent?view=graph-rest-v1.0) resource.", + "Target": "billingMetricsRecent" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "governanceInvitation", + "ChangeType": "Addition", + "Description": "Added the [governanceInvitation](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-governanceinvitation?view=graph-rest-v1.0) resource.", + "Target": "governanceInvitation" + }, + + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "tenantGovernancePolicyTemplate", + "ChangeType": "Addition", + "Description": "Added the **tenantGovernancePolicyTemplate** resource.", + "Target": "tenantGovernancePolicyTemplate" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "governanceRelationship", + "ChangeType": "Addition", + "Description": "Added the [governanceRelationship](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-governancerelationship?view=graph-rest-v1.0) resource.", + "Target": "governanceRelationship" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "governanceRequest", + "ChangeType": "Addition", + "Description": "Added the [governanceRequest](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-governancerequest?view=graph-rest-v1.0) resource.", + "Target": "governanceRequest" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "multiTenantApplicationMetrics", + "ChangeType": "Addition", + "Description": "Added the [multiTenantApplicationMetrics](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-multitenantapplicationmetrics?view=graph-rest-v1.0) resource.", + "Target": "multiTenantApplicationMetrics" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "multiTenantApplicationMetricsBase", + "ChangeType": "Addition", + "Description": "Added the [multiTenantApplicationMetricsBase](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-multitenantapplicationmetricsbase?view=graph-rest-v1.0) resource.", + "Target": "multiTenantApplicationMetricsBase" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "multiTenantApplicationMetricsInitial", + "ChangeType": "Addition", + "Description": "Added the [multiTenantApplicationMetricsInitial](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-multitenantapplicationmetricsinitial?view=graph-rest-v1.0) resource.", + "Target": "multiTenantApplicationMetricsInitial" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "multiTenantApplicationMetricsRecent", + "ChangeType": "Addition", + "Description": "Added the [multiTenantApplicationMetricsRecent](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-multitenantapplicationmetricsrecent?view=graph-rest-v1.0) resource.", + "Target": "multiTenantApplicationMetricsRecent" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "relatedTenant", + "ChangeType": "Addition", + "Description": "Added the [relatedTenant](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-relatedtenant?view=graph-rest-v1.0) resource.", + "Target": "relatedTenant" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "relatedTenantsRefreshRequest", + "ChangeType": "Addition", + "Description": "Added the [relatedTenantsRefreshRequest](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-relatedtenantsrefreshrequest?view=graph-rest-v1.0) resource.", + "Target": "relatedTenantsRefreshRequest" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "tenantGovernanceSetting", + "ChangeType": "Addition", + "Description": "Added the [tenantGovernanceSetting](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-tenantgovernancesetting?view=graph-rest-v1.0) resource.", + "Target": "tenantGovernanceSetting" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "enableRelatedTenants", + "ChangeType": "Addition", + "Description": "Added the [enableRelatedTenants](https://learn.microsoft.com/en-us/graph/api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants?view=graph-rest-v1.0) method to the [tenantGovernanceSetting](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-tenantgovernancesetting?view=graph-rest-v1.0) resource.", + "Target": "tenantGovernanceSetting" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "refresh", + "ChangeType": "Addition", + "Description": "Added the [refresh](https://learn.microsoft.com/en-us/graph/api/tenantgovernanceservices-relatedtenant-refresh?view=graph-rest-v1.0) method to the [relatedTenant](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-relatedtenant?view=graph-rest-v1.0) resource.", + "Target": "relatedTenant" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "applicationsRequiredResourceAccess", + "ChangeType": "Addition", + "Description": "Added the **applicationsRequiredResourceAccess** resource.", + "Target": "applicationsRequiredResourceAccess" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Property", + "ChangedApiName": "groupDisplayName", + "ChangeType": "Addition", + "Description": "Added the **groupDisplayName** property to the [delegatedAdministrationRoleAssignment](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-delegatedadministrationroleassignment?view=graph-rest-v1.0) resource.", + "Target": "delegatedAdministrationRoleAssignment" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Property", + "ChangedApiName": "groupDisplayName", + "ChangeType": "Addition", + "Description": "Added the **groupDisplayName** property to the [delegatedAdministrationRoleAssignmentSnapshot](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot?view=graph-rest-v1.0) resource.", + "Target": "delegatedAdministrationRoleAssignmentSnapshot" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Property", + "ChangedApiName": "isMicrosoftInfrastructure", + "ChangeType": "Addition", + "Description": "Added the **isMicrosoftInfrastructure** property to the [relatedTenant](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-relatedtenant?view=graph-rest-v1.0) resource.", + "Target": "relatedTenant" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Resource", + "ChangedApiName": "tenantGovernance", + "ChangeType": "Addition", + "Description": "Added the [tenantGovernance](https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-tenantgovernance?view=graph-rest-v1.0) resource.", + "Target": "tenantGovernance" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Delete tenantGovernancePolicyTemplate", + "ChangeType": "Addition", + "Description": "Added the **Delete tenantGovernancePolicyTemplate** method to the **tenantGovernancePolicyTemplate** resource.", + "Target": "tenantGovernancePolicyTemplate" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Delete governanceInvitation", + "ChangeType": "Addition", + "Description": "Added the **Delete governanceInvitation** method to the **governanceInvitation** resource.", + "Target": "governanceInvitation" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Get governanceInvitation", + "ChangeType": "Addition", + "Description": "Added the **Get governanceInvitation** method to the **governanceInvitation** resource.", + "Target": "governanceInvitation" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Get tenantGovernancePolicyTemplate", + "ChangeType": "Addition", + "Description": "Added the **Get tenantGovernancePolicyTemplate** method to the **tenantGovernancePolicyTemplate** resource.", + "Target": "tenantGovernancePolicyTemplate" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Update tenantGovernancePolicyTemplate", + "ChangeType": "Addition", + "Description": "Added the **Update tenantGovernancePolicyTemplate** method to the **tenantGovernancePolicyTemplate** resource.", + "Target": "tenantGovernancePolicyTemplate" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Get governanceRelationship", + "ChangeType": "Addition", + "Description": "Added the **Get governanceRelationship** method to the **governanceRelationship** resource.", + "Target": "governanceRelationship" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Update governanceRelationship", + "ChangeType": "Addition", + "Description": "Added the **Update governanceRelationship** method to the **governanceRelationship** resource.", + "Target": "governanceRelationship" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Get governanceRequest", + "ChangeType": "Addition", + "Description": "Added the **Get governanceRequest** method to the **governanceRequest** resource.", + "Target": "governanceRequest" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Update governanceRequest", + "ChangeType": "Addition", + "Description": "Added the **Update governanceRequest** method to the **governanceRequest** resource.", + "Target": "governanceRequest" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "List governanceInvitations", + "ChangeType": "Addition", + "Description": "Added the **List governanceInvitations** method to the **governanceInvitation** resource.", + "Target": "governanceInvitation" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "List governancePolicyTemplates", + "ChangeType": "Addition", + "Description": "Added the **List governancePolicyTemplates** method to the **tenantGovernancePolicyTemplate** resource.", + "Target": "tenantGovernancePolicyTemplate" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "List governanceRelationships", + "ChangeType": "Addition", + "Description": "Added the **List governanceRelationships** method to the **governanceRelationship** resource.", + "Target": "governanceRelationship" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "List governanceRequests", + "ChangeType": "Addition", + "Description": "Added the **List governanceRequests** method to the **governanceRequest** resource.", + "Target": "governanceRequest" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "List relatedTenants", + "ChangeType": "Addition", + "Description": "Added the **List relatedTenants** method to the **relatedTenant** resource.", + "Target": "relatedTenant" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Create governanceInvitation", + "ChangeType": "Addition", + "Description": "Added the **Create governanceInvitation** method to the **governanceInvitation** resource.", + "Target": "governanceInvitation" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Create tenantGovernancePolicyTemplate", + "ChangeType": "Addition", + "Description": "Added the **Create tenantGovernancePolicyTemplate** method to the **tenantGovernancePolicyTemplate** resource.", + "Target": "tenantGovernancePolicyTemplate" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Create governanceRequest", + "ChangeType": "Addition", + "Description": "Added the **Create governanceRequest** method to the **governanceRequest** resource.", + "Target": "governanceRequest" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Get relatedTenant", + "ChangeType": "Addition", + "Description": "Added the **Get relatedTenant** method to the **relatedTenant** resource.", + "Target": "relatedTenant" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Get tenantGovernanceSetting", + "ChangeType": "Addition", + "Description": "Added the **Get tenantGovernanceSetting** method to the **tenantGovernanceSetting** resource.", + "Target": "tenantGovernanceSetting" + }, + { + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "ApiChange": "Method", + "ChangedApiName": "Update tenantGovernanceSetting", + "ChangeType": "Addition", + "Description": "Added the **Update tenantGovernanceSetting** method to the **tenantGovernanceSetting** resource.", + "Target": "tenantGovernanceSetting" + } + ], + "Id": "cc2128cc-bb8d-47f5-be18-72247114efc1", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-08-13T20:46:53.4701010Z", + "WorkloadArea": "Tenants", + "SubArea": "Tenant governance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 2a23b753c40..164a092244c 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -167,6 +167,10 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] - Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) and [getAllTranscripts](/graph/api/onlinemeeting-getalltranscripts) methods to document a service-update issue that can cause paginated requests to return an empty collection followed by duplicate items. - Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) method to return a Microsoft Graph URL that you can use to download recording content. +### Tenants | Tenant governance + +- Promoted the [tenantGovernance](/graph/api/resources/tenantgovernanceservices-tenantgovernance) resource type and related methods from beta to v1.0 for discovering related tenants and managing governance invitations, requests, relationships, settings, and policy templates across Microsoft Entra tenants. + ## August 2026: New in preview only diff --git a/redirects/.openpublishing.redirection.2026-09.json b/redirects/.openpublishing.redirection.2026-09.json new file mode 100644 index 00000000000..21d4a6dc47c --- /dev/null +++ b/redirects/.openpublishing.redirection.2026-09.json @@ -0,0 +1,29 @@ +{ + "redirections": [ + { + "source_path_from_root": "/api-reference/beta/resources/tenantgovernanceservices-actionstep.md", + "redirect_url": "https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-investigationactionstep?view=graph-rest-beta&preserve-view=true", + "redirect_document_id": false + }, + { + "source_path_from_root": "/api-reference/beta/resources/tenantgovernanceservices-actionurl.md", + "redirect_url": "https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-investigationactionurl?view=graph-rest-beta&preserve-view=true", + "redirect_document_id": false + }, + { + "source_path_from_root": "/api-reference/beta/resources/tenantgovernanceservices-governancepolicytemplate.md", + "redirect_url": "https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-tenantgovernancepolicytemplate?view=graph-rest-beta&preserve-view=true", + "redirect_document_id": false + }, + { + "source_path_from_root": "/api-reference/beta/resources/tenantgovernanceservices-requiredresourceaccess.md", + "redirect_url": "https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-applicationsrequiredresourceaccess?view=graph-rest-beta&preserve-view=true", + "redirect_document_id": false + }, + { + "source_path_from_root": "/api-reference/beta/resources/tenantgovernanceservices-resourcepermission.md", + "redirect_url": "https://learn.microsoft.com/en-us/graph/api/resources/tenantgovernanceservices-applicationresourcepermission?view=graph-rest-beta&preserve-view=true", + "redirect_document_id": false + } + ] +} From 30bd5c818cf9b2f9608601d45580e9603ddfed75 Mon Sep 17 00:00:00 2001 From: Mor Moverman <312480154+mormov@users.noreply.github.com> Date: Fri, 25 Sep 2026 19:04:53 +0300 Subject: [PATCH 162/189] Update alerts v2 known limitations guidance (#29632) * Revise known differences for v2 API alerts Updated known differences and limitations for v2 API, including details on Microsoft Sentinel coverage, standalone alerts, tuned alerts, low-signal Exchange Online events, and Intune-originated alerts. * Update links in migration documentation for clarity * Fix formatting for Intune-originated alerts section * Updated links in known differences and limitations in migration doc * Update links to relative links * Fix formatting of Microsoft Sentinel coverage note --- concepts/alertsv1-alertsv2-migration.md | 10 ++++++---- 1 file changed, 6 insertions(+), 4 deletions(-) diff --git a/concepts/alertsv1-alertsv2-migration.md b/concepts/alertsv1-alertsv2-migration.md index b2819734acd..44f72b3633e 100644 --- a/concepts/alertsv1-alertsv2-migration.md +++ b/concepts/alertsv1-alertsv2-migration.md @@ -176,10 +176,12 @@ Use an API testing tool like [Graph Explorer](https://aka.ms/ge) to validate you ## Known differences and limitations -- **Microsoft Sentinel coverage**: Sentinel-generated alerts aren't returned by the v2 API unless your Sentinel workspace is connected to the Microsoft Defender portal. In the interim, use the [Sentinel REST API](/rest/api/loganalytics/) to retrieve these alerts. -- **Standalone alerts**: Alerts that exist outside of the Microsoft 365 Defender incident model—including standalone detections not promoted to an incident—aren't returned by the v2 API. -- **Tuned alerts**: Alerts suppressed by alert-tuning rules aren't returned through the `alerts_v2` endpoint. -- **Low-signal Exchange Online events**: Certain low-signal Exchange Online events, such as mailbox rule creation and message delays, aren't included in `alerts_v2`. Retrieve these through audit logs or other relevant data sources. +- **Microsoft Sentinel coverage**: Sentinel\-generated alerts aren't returned by the v2 API unless your Microsoft Sentinel workspace is connected to the Microsoft Defender portal. In the interim, use the [Sentinel REST API](/rest/api/loganalytics/) to retrieve these alerts. +- **Standalone alerts**: Alerts that exist outside of the Microsoft 365 Defender incident model, including standalone detections not promoted to an incident, aren't returned by the v2 API. Retrieve alerts through the originating product's API or data source. +- **Tuned alerts**: Alerts suppressed by alert\-tuning rules aren't returned through the alerts\_v2 endpoint. Review the relevant alert\-tuning configuration and use the originating product's API or data source if needed. +- **Low\-signal Exchange Online events**: Certain low\-signal Exchange Online events, such as mailbox rule creation and message delays, aren't included in alerts\_v2. Retrieve these through audit logs or other relevant Exchange Online data sources, such as [Microsoft Purview Audit](/purview/audit-search) for mailbox\-rule activity and [Exchange Online Message Trace](/exchange/monitoring/trace-an-email-message/message-trace-modern-eac) for message\-delivery and delay investigations. +- **Intune\-originated alerts**: Intune\-originated alerts aren't available through alerts\_v2. Retrieve the relevant data through the Microsoft Graph Intune APIs that correspond to your specific scenario. See [Working with Intune in Microsoft Graph](/graph/api/resources/intune-graph-overview) and [Intune devices and apps API overview](/graph/intune-concept-overview). + ## Related content From 61f9e34d057ebc96e576bdbd0d13bad66db62cc6 Mon Sep 17 00:00:00 2001 From: Anusree-stack <245328036+Anusree-stack@users.noreply.github.com> Date: Mon, 28 Sep 2026 20:33:02 +0530 Subject: [PATCH 163/189] Add Roles and prerequisites section to M365 cross-tenant access policy overview (#29646) Replaces the vague 'High-level access or permission considerations' paragraph with a structured 'Roles and prerequisites' section that: - Calls out Microsoft 365 collaboration trust as a hard prerequisite for every capability (default or partner-specific settings both satisfy it) - Splits required Microsoft Entra roles by operation: Security Administrator/Global Administrator for the Entra trust, Exchange Administrator/Global Administrator for M365 capability configuration - Retains the Microsoft Graph delegated permissions guidance --- ...365-cross-tenant-access-policy-overview.md | 31 +++++++++++++++++-- 1 file changed, 28 insertions(+), 3 deletions(-) diff --git a/api-reference/beta/resources/m365-cross-tenant-access-policy-overview.md b/api-reference/beta/resources/m365-cross-tenant-access-policy-overview.md index 6662c032100..0b8704264a1 100644 --- a/api-reference/beta/resources/m365-cross-tenant-access-policy-overview.md +++ b/api-reference/beta/resources/m365-cross-tenant-access-policy-overview.md @@ -6,7 +6,7 @@ ms.author: anusreenandy ms.localizationpriority: medium ms.subservice: entra-sign-in ms.custom: scenarios:getting-started -ms.date: 07/10/2026 +ms.date: 09/25/2026 ms.topic: concept-article doc_type: conceptualPageType --- @@ -68,9 +68,34 @@ Microsoft 365 cross-tenant access policy is an inbound control: the resource ten The API is the recommended path away from the legacy OrgRel model for MailTips, calendar sharing, and free/busy. It's designed for organizations that collaborate with external partners through Microsoft 365 apps, operate multiple Microsoft 365 tenants, or go through mergers, acquisitions, and reorganizations that require secure cross-tenant resource sharing. -### High-level access or permission considerations +### Roles and prerequisites -Configuring cross-tenant capabilities requires a privileged administrator role (such as Global Administrator) on the resource tenant and delegated Microsoft Graph permissions, including `Policy.ReadWrite.CrossTenantAccess` and `Policy.ReadWrite.CrossTenantCapability`. A Microsoft Entra cross-tenant access trust with the partner must already exist: most capabilities require Microsoft 365 collaboration trust, Shared Channels require B2B direct connect, and mailbox migration requires app service connect. For authentication details, see [Authentication and authorization basics](/graph/auth/auth-concepts). Configuration is available through Microsoft Graph and the Microsoft Graph PowerShell SDK, with Microsoft Admin Center support planned after general availability. +Before you configure Microsoft 365 cross-tenant access policy, make sure the following are in place on the resource tenant. + +#### Microsoft Entra cross-tenant trust (prerequisite) + +A Microsoft Entra cross-tenant access trust is **required** before any Microsoft 365 capability can take effect. The type of trust depends on the capability: + +- **Microsoft 365 collaboration trust** — required for every Microsoft 365 capability configured through this API. Either the tenant's default Microsoft 365 collaboration settings or a partner-specific configuration satisfies this requirement. Without it, the capability is authored but has no effect at runtime. +- **B2B direct connect** — required for cross-tenant Teams Shared Channels, which are configured directly in Microsoft Entra rather than through this API. +- **App service connect** — required for mailbox migration between tenants. + +For how to establish the trust, see [Microsoft Entra cross-tenant access overview](/entra/external-id/cross-tenant-access-overview). + +#### Required Microsoft Entra roles + +Configuring the Entra trust and configuring the Microsoft 365 capability are two separate operations and require different roles on the resource tenant. + +| Operation | Required Microsoft Entra role | +| --- | --- | +| Configure the Microsoft Entra cross-tenant access trust with the partner. | **Security Administrator** or **Global Administrator** | +| Configure Microsoft 365 capabilities through this API (create, update, or delete `m365Capability`). | **Exchange Administrator** or **Global Administrator** | + +Assign the least-privileged role that matches the operation. + +#### Microsoft Graph permissions + +Calls to the API also require delegated Microsoft Graph permissions, including `Policy.ReadWrite.CrossTenantAccess` and `Policy.ReadWrite.CrossTenantCapability`. For details, see [Authentication and authorization basics](/graph/auth/auth-concepts). Configuration is available today through Microsoft Graph and the Microsoft Graph PowerShell SDK, with Microsoft Admin Center support planned after general availability. ### Integration opportunities with other APIs From 5db98dc9ead2df65776cb5d298c3ef31576d4289 Mon Sep 17 00:00:00 2001 From: SukanyaDas-MSFT Date: Mon, 28 Sep 2026 22:14:41 +0530 Subject: [PATCH 164/189] Remove metered API instances (#29565) * Remove metered API instances * Update documentation via Content Mentor Quick Workspace * Update documentation via Content Mentor Quick Workspace * Update documentation via Content Mentor Quick Workspace * Update documentation via Content Mentor Quick Workspace * Delete teams-licenses.md * Remove cross links from files * Removing teams-licenses references * Redirection * Update .openpublishing.redirection.json * Update doc as per Graph team review * Update teams-embed-within-own-app.md --------- Co-authored-by: Nick Walker --- .openpublishing.redirection.json | 5 + api-reference/beta/api/callrecording-get.md | 3 +- api-reference/beta/api/calltranscript-get.md | 3 +- .../includes/teams-model-A-and-B-errors.md | 13 - .../includes/teams-model-A-only-errors.md | 14 - .../includes/teamworkdevice-api-disclaimer.md | 2 - api-reference/v1.0/api/callrecording-get.md | 3 +- ...otification-in-microsoft-teams-overview.md | 2 +- concepts/teams-embed-within-own-app.md | 20 +- concepts/teams-licenses.md | 241 ------------------ concepts/toc.yml | 2 - concepts/toolkit/components/chat.md | 1 - concepts/whats-new-earlier.md | 7 +- 13 files changed, 17 insertions(+), 299 deletions(-) delete mode 100644 api-reference/includes/teams-model-A-and-B-errors.md delete mode 100644 api-reference/includes/teams-model-A-only-errors.md delete mode 100644 concepts/teams-licenses.md diff --git a/.openpublishing.redirection.json b/.openpublishing.redirection.json index df1e2b5be7b..6dc25e873e1 100644 --- a/.openpublishing.redirection.json +++ b/.openpublishing.redirection.json @@ -289,6 +289,11 @@ "source_path": "api-reference/v1.0/resources/formatprotection.md", "redirect_url": "/graph/api/resources/workbookformatprotection.md?view=graph-rest-1.0", "redirect_document_id": false + }, + { + "source_path": "concepts/teams-licenses.md", + "redirect_url": "/graph/", + "redirect_document_id": false } ] } diff --git a/api-reference/beta/api/callrecording-get.md b/api-reference/beta/api/callrecording-get.md index a35072da72a..ecce01600f4 100644 --- a/api-reference/beta/api/callrecording-get.md +++ b/api-reference/beta/api/callrecording-get.md @@ -5,7 +5,7 @@ author: "v-sdhakshina" ms.localizationpriority: medium ms.subservice: "teams" doc_type: apiPageType -ms.date: 12/02/2025 +ms.date: 09/08/2026 --- # Get callRecording @@ -20,7 +20,6 @@ For a recording, this API returns the metadata of the single recording associate > [!NOTE] > For online meetings: -> * This is a metered API. For more information, see [payment models for meeting APIs](/graph/teams-licenses#payment-models-for-meeting-apis). > * This API doesn't support meetings created by using the [create onlineMeeting API](/graph/api/application-post-onlinemeetings) that are not associated with an event on the user's calendar. > * This API might not return a call recording if multiple meetings are scheduled under a single channel post thread. > * This API works differently in one or more national clouds. For details, see [Microsoft Teams API implementation differences in national clouds](/graph/teamwork-national-cloud-differences). diff --git a/api-reference/beta/api/calltranscript-get.md b/api-reference/beta/api/calltranscript-get.md index c319d5468d9..a48cfd696d5 100644 --- a/api-reference/beta/api/calltranscript-get.md +++ b/api-reference/beta/api/calltranscript-get.md @@ -5,7 +5,7 @@ author: "mankadnandan" ms.localizationpriority: medium ms.subservice: "teams" doc_type: apiPageType -ms.date: 09/18/2025 +ms.date: 09/08/2026 --- @@ -22,7 +22,6 @@ Retrieving the transcript returns the metadata of the single transcript associat > [!NOTE] > For online meetings: > -> * This is a metered API. For more information, see [payment models for meeting APIs](/graph/teams-licenses#payment-models-for-meeting-apis). > * This API doesn't support meetings created using the [create onlineMeeting API](/graph/api/application-post-onlinemeetings) that are not associated with an event on the user's calendar. > * This API might not return a call transcript if multiple meetings are scheduled under a single channel post thread. > * This API works differently in one or more national clouds. For details, see [Implementation differences in national clouds](/graph/teamwork-national-cloud-differences). diff --git a/api-reference/includes/teams-model-A-and-B-errors.md b/api-reference/includes/teams-model-A-and-B-errors.md deleted file mode 100644 index 49adf0f4de8..00000000000 --- a/api-reference/includes/teams-model-A-and-B-errors.md +++ /dev/null @@ -1,13 +0,0 @@ ---- -author: MariaWissler -ms.topic: include ---- - - - -This API has [licensing and payment requirements](/graph/teams-licenses). If these requirements are not met, the API returns one of the following errors. - -| Sample error type | Status code | Sample error message | -|:---------------------------------|:-----------------------|:----------------------------------------------------------------------------------------------------------| -| E5 license requirement not met | 402 (Payment Required) | `"...needs a valid license to access this API..."`
`"...tenant needs a valid license to access this API..."` | -| Evaluation capacity exceeded | 402 (Payment Required) | `"...evaluation mode capacity has been exceeded. Use a valid billing model..."` | diff --git a/api-reference/includes/teams-model-A-only-errors.md b/api-reference/includes/teams-model-A-only-errors.md deleted file mode 100644 index e62f51bf6d4..00000000000 --- a/api-reference/includes/teams-model-A-only-errors.md +++ /dev/null @@ -1,14 +0,0 @@ ---- -author: MariaWissler -ms.topic: include ---- - - - -This API has [licensing and payment requirements](/graph/teams-licenses). If these requirements are not met, the API returns one of the following errors. - -| Sample error type | Status code | Sample error messages | -|:---------------------------------|:-----------------------|:----------------------------------------------------------------------------------------------------------| -| E5 license requirement not met | 402 (Payment Required) | `"...needs a valid license to access this API..."`
`"...tenant needs a valid license to access this API..."` | -| Model B is not supported for API | 402 (Payment Required) | `"...the 'model' query parameter does not support value 'B' for this API. Use billing model 'A'..."` | -| Evaluation capacity exceeded | 402 (Payment Required) | `"...evaluation mode capacity has been exceeded. Use a valid billing model..."` | diff --git a/api-reference/includes/teamworkdevice-api-disclaimer.md b/api-reference/includes/teamworkdevice-api-disclaimer.md index 2d660281892..7107f3b6b7c 100644 --- a/api-reference/includes/teamworkdevice-api-disclaimer.md +++ b/api-reference/includes/teamworkdevice-api-disclaimer.md @@ -6,8 +6,6 @@ ms.date: 01/25/2022 - >**Note**: > Microsoft is temporarily offering usage of the APIs for managing Microsoft Teams-enabled devices at no charge. > Microsoft expects to charge for the use of some or all of these APIs in the future. Microsoft will provide advanced notice of pricing changes. -> For details about the current licensing model, see [Licensing and payment requirements](/graph/teams-licenses). diff --git a/api-reference/v1.0/api/callrecording-get.md b/api-reference/v1.0/api/callrecording-get.md index 2197ad1b3bd..3862d055e08 100644 --- a/api-reference/v1.0/api/callrecording-get.md +++ b/api-reference/v1.0/api/callrecording-get.md @@ -5,7 +5,7 @@ author: "v-sdhakshina" ms.localizationpriority: medium ms.subservice: "teams" doc_type: apiPageType -ms.date: 12/02/2025 +ms.date: 09/08/2026 --- # Get callRecording @@ -20,7 +20,6 @@ For a recording, this API returns the metadata of the single recording associate > > For online meetings: > -> * This is a metered API. For more information, see [payment models for meeting APIs](/graph/teams-licenses#payment-models-for-meeting-apis). > * This API doesn't support meetings created using the [create onlineMeeting API](/graph/api/application-post-onlinemeetings) that are not associated with an event on the user's calendar. > * This API works differently in one or more national clouds. For details, see [Microsoft Teams API implementation differences in national clouds](/graph/teamwork-national-cloud-differences). diff --git a/concepts/teams-change-notification-in-microsoft-teams-overview.md b/concepts/teams-change-notification-in-microsoft-teams-overview.md index 652084adbe1..5c55e3a5fe3 100644 --- a/concepts/teams-change-notification-in-microsoft-teams-overview.md +++ b/concepts/teams-change-notification-in-microsoft-teams-overview.md @@ -20,7 +20,7 @@ Change notifications for Microsoft Teams resources using Microsoft Graph enable Microsoft Teams supports two types of change notifications: -* **Change notification to track all changes related to a resource across the tenant:** For example, you can subscribe to changes in messages in any channel across the tenant and get notified whenever a message is created, updated, or deleted in any channel in the tenant. These notifications might have [licensing and payment requirements](/graph/teams-licenses), such as change notifications for [messages](teams-changenotifications-chatmessage.md) and [membership](teams-changenotifications-chatMembership.md). +* **Change notification to track all changes related to a resource across the tenant:** For example, you can subscribe to changes in messages in any channel across the tenant and get notified whenever a message is created, updated, or deleted in any channel in the tenant. * **Change notification to track all changes for a specific resource:** For example, you can subscribe to changes in messages in a particular channel and get notified whenever a message is created, updated, or deleted. diff --git a/concepts/teams-embed-within-own-app.md b/concepts/teams-embed-within-own-app.md index fecae605a32..60fd82c1729 100644 --- a/concepts/teams-embed-within-own-app.md +++ b/concepts/teams-embed-within-own-app.md @@ -4,7 +4,7 @@ description: "Learn how to embed the Microsoft Teams experience within your own author: "erichui-ms" ms.localizationpriority: high ms.subservice: "teams" -ms.date: 11/07/2024 +ms.date: 09/22/2026 ms.topic: how-to --- @@ -29,7 +29,7 @@ The architecture includes three components: > [!NOTE] > You might also choose to have the server component, instead of the chat UI, make all the API requests to Teams APIs, and cache all the messages. For example, if you have another backend system component that also needs to make API requests, such as for compliance and auditing, you might choose to centralize the API requests and caching on the server component instead. -- A **cache** that persists messages. To improve the response time for your application and to potentially lower the costs for you, minimize reading the same message multiple times by storing messages in this cache. You do not want to be surprised by the API consumption charges later. To learn how to set up a cache, see [Add caching to improve performance in Azure API Management](/azure/api-management/api-management-howto-cache). +- A **cache** that persists messages. Store messages in the cache to minimize repeated reads and improve your application's response time. To learn how to set up a cache, see [Add caching to improve performance in Azure API Management](/azure/api-management/api-management-howto-cache). After you set up these components, you can start using Teams APIs. @@ -241,7 +241,7 @@ Microsoft Graph provides several ways to retrieve chat messages: - [Get all messages from all chats](/graph/api/chats-getallmessages) (across all chats): `GET /users/{user-id | user-principal-name}/chats/getAllMessages` - [List messages in a chat](/graph/api/chat-list-messages) (per chat): `GET /chats/{chat-id}/messages` -By using `/getAllMessages`, you can get messages across all chats for a user. This API is designed for backend applications, such as audit and compliance applications, which often get messages across all chats at once. It supports [application](/graph/auth/auth-concepts) permissions only. Also, this is a [metered API](/graph/metered-api-overview). +By using `/getAllMessages`, you can get messages across all chats for a user. This API is designed for backend applications, such as audit and compliance applications, which often get messages across all chats at once. It supports [application](/graph/auth/auth-concepts) permissions only. By using `/messages`, you can make API calls from the UI using [delegated](/graph/auth/auth-concepts) permissions, as described in [Step 1](#step-1-design-and-set-up-architecture). @@ -457,7 +457,7 @@ Some messages are [system messages](/graph/system-messages). For example, the fo ## Step 5: Cache messages -Because each message you get from [getAllMessages](/microsoftteams/export-teams-content#how-to-access-teams-export-apis) or [change notification](/graph/api/resources/changenotificationcollection) is subject to [consumption charges](/graph/teams-licenses), you will want to minimize reading the same message multiple times. We recommend that you cache messages for at least a few hours so a user can quickly reopen a recent chat. Do not cache messages for longer than what is allowed per your organization's retention policies. +To minimize reading the same message multiple times from [getAllMessages](/microsoftteams/export-teams-content#how-to-access-teams-export-apis) or [change notification](/graph/api/resources/changenotificationcollection), cache messages for at least a few hours. Caching allows users to quickly reopen recent chats. Don't cache messages longer than permitted by your organization's retention policies. In [Step 6](#step-6-subscribe-to-change-notifications), you will decide whether the cache is per-user or not. @@ -760,6 +760,7 @@ Content-type: application/json "notificationUrlAppId": null } ``` + ## Step 9: Get and set viewpoints A [viewpoint](/graph/api/resources/chatviewpoint) in a chat marks the timestamp at which the chat was last read by users, so that users can see that any messages under the viewpoint are unread. @@ -839,20 +840,13 @@ The viewpoint of a chat for a user is updated whenever the user [marks the chat ## Cost estimation -Currently, retrieving messages per-user, per-chat ([Step 4](#step-4-retrieve-messages)) does not involve consumptions charges (but has throttling limits). Only change notifications have consumption charges of $0.00075 per message. - -If your app has 50 users, and each user receives messages from 20 users and sends 300 messages per month, the approximate cost would be: -- 50 recipients x (20 senders x 300 messages/month/sender)/recipient x $0.00075/message -= 300,000 messages/month x $0.00075/message -= $225/month. - -For the most up-to-date pricing information, see [Microsoft Teams API licensing and payment requirements](/graph/teams-licenses). +Currently, retrieving messages per-user, per-chat ([Step 4](#step-4-retrieve-messages)) does not involve consumptions charges (but has throttling limits). ## Related content - [Add reactions to chat messages](/graph/api/chatmessage-setreaction) - [Add @metions, images, attachments, HTML styling, adaptive cards to chat messages](/graph/api/chatmessage-post?#examples) -- [Hide a chat from users](/graph/api/chat-hideforuser) +- [Hide a chat from users](/graph/api/chat-hideforuser) - [Remove a member from a chat](/graph/api/chat-delete-members) - [Check chat membership](/graph/api/chat-list) - [Subscribe to change notifications of other resources](/graph/teams-change-notification-in-microsoft-teams-overview) diff --git a/concepts/teams-licenses.md b/concepts/teams-licenses.md deleted file mode 100644 index 364748a371c..00000000000 --- a/concepts/teams-licenses.md +++ /dev/null @@ -1,241 +0,0 @@ ---- -title: "Payment models and licensing requirements for Microsoft Teams APIs" -description: "Learn about the payment models and license requirements that apply to some Microsoft Teams APIs in Microsoft Graph: model=A, model=B, and evaluation mode." -author: "MSFTRickyCastaneda" -ms.localizationpriority: high -ms.subservice: "teams" -ms.date: 11/07/2024 -ms.custom: sfi-image-nochange -ms.topic: article ---- - -# Payment models and licensing requirements for Microsoft Teams APIs - -> [!IMPORTANT] -> Starting August 25, 2025, the Teams APIs listed in this article are no longer metered, and no billing configuration is required to use these APIs. If your application is configured for billing, no action is required. This article is provided for reference as the final billing cycle for metered Microsoft Teams APIs concludes. -> -> As a result of this change, the `model` query parameter is no longer required and is ignored when supplied. License enforcement isn't applicable unless explicitly specified in the documentation for the respective API. -> -> The following exceptions apply: -> - Teams meeting AI insights APIs continue to require [Microsoft 365 Copilot](https://www.microsoft.com/microsoft-365/copilot) license. -> - [Data Loss Protection](/graph/api/chatmessage-update) (DLP) PATCH APIs require a [license](/office365/servicedescriptions/microsoft-365-service-descriptions/microsoft-365-tenantlevel-services-licensing-guidance/microsoft-365-security-compliance-licensing-guidance#microsoft-purview-data-loss-prevention-graph-apis-for-teams-data-loss-prevention-dlp-and-for-teams-export) that includes the Microsoft Communications DLP [service plan](/azure/active-directory/enterprise-users/licensing-service-plan-reference). -> -> This article is deprecated and will be removed in June 2026. It's provided for reference only. - -This article describes the payment models and licensing requirements for Microsoft Teams APIs in Microsoft Graph. For a high-level description of metered APIs and services in Microsoft Graph, see [Overview of metered APIs and services in Microsoft Graph](metered-api-overview.md). - -Some APIs provide the option to choose a licensing and payment model via the `model` query parameter; others only support one model or don't support a licensing and payment model. - -The following table lists the APIs and [change notification](/graph/api/subscription-post-subscriptions) `resources` that currently support payment models. - -| APIs or [change notification](/graph/api/subscription-post-subscriptions) `resources` | Payment models | -|:------------------|:---------------| -| [Change notification](/graph/api/subscription-post-subscriptions) `resources`:
  • /chats/getAllMessges
  • /teams/getAllMessages
  • /chats/getAllMembers
  • /teams/getAllMembers
| A, B | -| [Change notification](/graph/api/subscription-post-subscriptions) `resources`:
  • /users/{user-id}/chats/getAllMessages
  • /me/chats/getAllMessages
  • /appCatalogs/teamsApps/{app-id}/installedToChats
  • /appCatalogs/teamsApps/{app-id}/installedToChats/getAllMessages
  • /appCatalogs/teamsApps/{app-id}/installedToChats/getAllMembers
| B | -| [Export APIs](/microsoftteams/export-teams-content):
  • [GET /users/{user-id}/chats/getAllMessages](/graph/api/chats-getallmessages)
  • [GET /users/{user-id}/chats/getAllRetainedMessages](/graph/api/chat-getallretainedmessages)
  • [GET /me/chats/getAllMessages](/graph/api/chats-getallmessages)
  • [GET /teams/{team-id}/channels/getAllMessages](/graph/api/channel-getallmessages)
  • [GET /teams/{team-id}/channels/getAllRetainedMessages](/graph/api/channel-getallretainedmessages)
  • [GET /teamwork/deletedTeams/{deletedTeamId}/channels/getAllMessages](/graph/api/deletedteam-getallmessages)
| A, B | -| PATCH APIs, when updating the `policyViolation` property:
  • [PATCH /teams/{team-id}/channels/{channel-id}/messages/{message-id}](/graph/api/chatmessage-update)
  • [PATCH /teams/(team-id)/channels/{channel-id}/messages/{message-id}/replies/{reply-id}](/graph/api/chatmessage-update)
  • [PATCH /chats/{chatThread-id}/messages/{message-id}](/graph/api/chatmessage-update)
| A | -| Teams meeting APIs:
  • [GET /users/{userId}/onlineMeetings/{meetingId}/transcripts/{transcriptId}/content](/graph/api/calltranscript-get#example-2-get-a-calltranscript-content)
  • [GET /users/{userId}/onlineMeetings/{meetingId}/transcripts/{transcriptId}/metadataContent](/graph/api/calltranscript-get#example-4-get-a-calltranscript-metadatacontent)
  • [GET /users/{userId}/onlineMeetings/{meetingId}/recordings/{recordingId}/content](/graph/api/callrecording-get#example-2-get-callrecording-content)
  • [GET /copilot/users/{userId}/onlineMeetings/{meetingId}/aiInsights/{aiInsightId}](/microsoft-365-copilot/extensibility/api/ai-services/meeting-insights/callaiinsight-get)
| No model parameter | - -> [!NOTE] -> To set up an active Azure subscription for your application for billing purposes, see [Enable metered Microsoft 365 APIs and services](/graph/metered-api-setup). For more information, see [Payment and billing updates](#payment-and-billing). - -## Payment models - -The following payment models are available: - -- [`model=A`](#modela-requirements) is restricted to applications performing a [security or compliance function](https://www.microsoft.com/licensing/terms/productoffering/MicrosoftAzure/MCA#ServiceSpecificTerms), and requires a [supported license](#required-licenses-for-modela). - -- [`model=B`](#modelb-requirements) is restricted to applications that don't perform a -[security or compliance function](https://www.microsoft.com/licensing/terms/productoffering/MicrosoftAzure/MCA#ServiceSpecificTerms). -There are no licensing requirements for `model=B`. - -- [Evaluation mode (default)](#evaluation-mode-default-requirements) enables access to APIs with limited usage per requesting application for evaluation purposes. Change notifications aren't sent if the limit is exceeded. - -> [!NOTE] -> To add or change a payment model for a subscribed resource of a change notification, you must create a new change notification subscription with the new payment model. Updating an existing change notification does not work. - -### `model=A` requirements - -`model=A` is restricted to applications performing a security or compliance function. For details, see the API Terms for Security & Compliance Applications section -of the [product terms for Microsoft Azure Services](https://www.microsoft.com/licensing/terms/productoffering/MicrosoftAzure/MCA#ServiceSpecificTerms). - -The following APIs support the `model=A` parameter. - -| APIs or [change notification](/graph/api/subscription-post-subscriptions) `resources` | Who needs a [license](#required-licenses-for-modela) | [Seeded capacity](#seeded-capacity) | [Price for additional use](#payment-and-billing) | Notes | -|:---------------------------------------------------------------|:----------------|:---------|:-------|:--------------| -| [Change notification](/graph/api/subscription-post-subscriptions) `resources`:
  • /chats/getAllMessges
  • /teams/getAllMessages
| Message sender | (800 messages × supported licenses with DLP enabled) per month per app | $0.00075 per message | Seeded capacity is shared with conversationMember change notifications | -| [Change notification](/graph/api/subscription-post-subscriptions) `resources`:
  • /chats/getAllMembers
  • /teams/getAllMembers
| Any user in the tenant | (800 notifications × supported licenses with DLP enabled) per month per app | $0.00075 per notification | Seeded capacity is shared with chatMessage change notifications | -| APIs:
  • [GET /users/{user-id}/chats/getAllMessages](/graph/api/chats-getallmessages)
  • [GET /users/{user-id}/chats/getAllRetainedMessages](/graph/api/chat-getallretainedmessages)
  • [GET /me/chats/getAllMessages](/graph/api/chats-getallmessages)
| Named user | (1600 messages × supported licenses with DLP enabled) per month per app | $0.00075 per message | The named user is the user identified in the GET request URL. Requests that return an empty list isn't charged. Seeded capacity is shared with channel export. | -| APIs:
  • [GET /teams/{team-id}/channels/getAllMessages](/graph/api/channel-getallmessages)
  • [GET /teams/{team-id}/channels/getAllRetainedMessages](/graph/api/channel-getallretainedmessages)
  • [GET /teamwork/deletedTeams/{deletedTeamId}/channels/getAllMessages](/graph/api/deletedteam-getallmessages)
| Any team member | (1600 messages × supported licenses with DLP enabled) per month per app | $0.00075 per message | Requests that return an empty list isn't charged. Seeded capacity is shared with chat export. | -| APIs, when updating the `policyViolation` property:
  • [PATCH /teams{team-id}/channels/{channel-id}/messages/{message-id}](/graph/api/chatmessage-update)
  • [PATCH /teams/(team-id)/channels/{channel-id}/messages/{message-id}/replies/{reply-id}](/graph/api/chatmessage-update)
  • [PATCH /chats/{chatThread-id}/messages/{message-id}](/graph/api/chatmessage-update)
| Message sender | (800 messages × supported licenses with DLP enabled) per month per app | $0.00075 per message | - -#### Required licenses for `model=A` - -The user needs a license that supports -the Microsoft Communications DLP [service plan](/azure/active-directory/enterprise-users/licensing-service-plan-reference), -such as one of these [supported licenses](/office365/servicedescriptions/microsoft-365-service-descriptions/microsoft-365-tenantlevel-services-licensing-guidance/microsoft-365-security-compliance-licensing-guidance#microsoft-purview-data-loss-prevention-graph-apis-for-teams-data-loss-prevention-dlp-and-for-teams-export). -Which user needs the license varies by API; -for details, see [`model=A` requirements](#modela-requirements). - -Guest users are exempt from these licensing requirements. -Similarly, messages sent from outside the tenant (federated chat) are exempt. -Consumption meters still apply. - -It's the responsibility of the tenant owner (not the app owner) to ensure that users are properly licensed. -Admins can use the [Information protection license report](/microsoftteams/teams-analytics-and-reports/information-protection-license-report) in -[Teams admin center](https://admin.teams.microsoft.com/analytics/reports) -to see which users don't have a supported license. - -Many supported licenses offer free trials. -[Office 365 E5](https://www.microsoft.com/microsoft-365/enterprise/office-365-e5?activetab=pivot%3aoverviewtab) -for instance has a **Free trial** link under the **Buy** button. - -You might qualify for one through the [Microsoft 365 Developer Program](https://developer.microsoft.com/microsoft-365/dev-program); for details, see the [FAQ](/office/developer-program/microsoft-365-developer-program-faq#who-qualifies-for-a-microsoft-365-e5-developer-subscription-). Alternatively, you can [sign up for a 1-month free trial or purchase a Microsoft 365 plan](https://www.microsoft.com/en-us/microsoft-365/try). - -> [!NOTE] -> The Microsoft Communications DLP [service plan](/azure/active-directory/enterprise-users/licensing-service-plan-reference) must be enabled before it can be licensed. You can manage licenses in the [Microsoft Entra admin center](https://entra.microsoft.com/#blade/Microsoft_AAD_IAM/LicensesMenuBlade/Products) or the [Microsoft 365 admin center](https://admin.microsoft.com). You can also assign licenses to a group account by using [Microsoft Graph Graph REST API and PowerShell SDK](/azure/active-directory/enterprise-users/licensing-ps-examples). - -### `model=B` requirements - -`model=B` is restricted to applications that don't perform a security or compliance function. For details, see the [API Terms for Security & Compliance Applications](https://www.microsoft.com/licensing/terms/productoffering/MicrosoftAzure/MCA#ServiceSpecificTerms) section of the product terms for Microsoft Azure Services. - -The following APIs support the `model=B` parameter. - -| APIs or [change notification](/graph/api/subscription-post-subscriptions) `resources` | [Seeded capacity](#seeded-capacity) | [Price for use](#payment-and-billing) | Notes | -|:---------------------------------------------------------------|:----------------|:-------|:------| -| [Change notification](/graph/api/subscription-post-subscriptions) `resources`:
  • /chats/getAllMessages
  • /teams/getAllMessages
  • /users/{user-id}/chats/getAllMessages
  • /me/chats/getAllMessages
  • /appCatalogs/teamsApps/{app-id}/installedToChats/getAllMessages
| None | $0.00075 per message | | -| [Change notification](/graph/api/subscription-post-subscriptions) `resources`:
  • /chats/getAllMembers
  • /teams/getAllMembers
  • /appCatalogs/teamsApps/{app-id}/installedToChats/getAllMembers
| None | $0.00075 per notification | | -| [Change notification](/graph/api/subscription-post-subscriptions) `resources`:
  • /appCatalogs/teamsApps/{app-id}/installedToChats
| None | $0.00075 per message | | -| APIs:
  • [GET /users/{user-id}/chats/getAllMessages](/graph/api/chats-getallmessages)
  • [GET /users/{user-id}/chats/getAllRetainedMessages](/graph/api/chat-getallretainedmessages)
  • [GET /me/chats/getAllMessages](/graph/api/chats-getallmessages)
| None | $0.00075 per message | Requests that return an empty list isn't charged. | -| APIs:
  • [GET /teams/{team-id}/channels/getAllMessages](/graph/api/channel-getallmessages)
  • [GET /teams/{team-id}/channels/getAllRetainedMessages](/graph/api/channel-getallretainedmessages)
  • [GET /teamwork/deletedTeams/{deletedTeamId}/channels/getAllMessages](/graph/api/deletedteam-getallmessages)
| None | $0.00075 per message | Requests that return an empty list isn't charged. | - -### Evaluation mode (default) requirements - -The following APIs support evaluation mode. The evaluation quota is enforced per app, per tenant, per month. The quota is reset at the beginning of each calendar month, and any unused amount doesn't get carried over to the next month. - -| APIs or [change notification](/graph/api/subscription-post-subscriptions) `resources` | Evaluation quota | [Price for additional use](#payment-and-billing) | Notes | -|:-----------------------------|:----------------|:-------|:------| -| [Change notification](/graph/api/subscription-post-subscriptions) `resources`:
  • /chats/getAllMessges
  • /teams/getAllMessages
  • /users/{user-id}/chats/getAllMessages
  • /me/chats/getAllMessages
  • /appCatalogs/teamsApps/{app-id}/installedToChats/getAllMessages
| 500 messages per month per tenant per app | N/A | -| [Change notification](/graph/api/subscription-post-subscriptions) `resources`:
  • /chats/getAllMembers
  • /teams/getAllMembers
  • /appCatalogs/teamsApps/{app-id}/installedToChats/getAllMembers
| 500 messages per month per tenant per app | N/A | -| [Change notification](/graph/api/subscription-post-subscriptions) `resources`:
  • /appCatalogs/teamsApps/{app-id}/installedToChats
| 500 messages per month per app | N/A | -| APIs:
  • [GET /users/{user-id}/chats/getAllMessages](/graph/api/chats-getallmessages)
  • [GET /users/{user-id}/chats/getAllRetainedMessages](/graph/api/chat-getallretainedmessages)
  • [GET /me/chats/getAllMessages](/graph/api/chats-getallmessages)
| 500 messages per month per tenant per app | N/A | Requests that return an empty list isn't charged. | -| APIs:
  • [GET /teams/{team-id}/channels/getAllMessages](/graph/api/channel-getallmessages)
  • [GET /teams/{team-id}/channels/getAllRetainedMessages](/graph/api/channel-getallretainedmessages)
  • [GET /teamwork/deletedTeams/{deletedTeamId}/channels/getAllMessages](/graph/api/deletedteam-getallmessages)
| 500 messages per month per tenant per app | N/A | Requests that return an empty list isn't charged. | -| APIs, when updating the `policyViolation` property:
  • [PATCH /teams{team-id}/channels/{channel-id}/messages/{message-id}](/graph/api/chatmessage-update)
  • [PATCH /teams/(team-id)/channels/{channel-id}/messages/{message-id}/replies/{reply-id}](/graph/api/chatmessage-update)
  • [PATCH /chats/{chatThread-id}/messages/{message-id}](/graph/api/chatmessage-update)
| 500 messages per month per tenant per app | N/A | -| Teams meeting transcript APIs:
  • [GET /users/{userId}/onlineMeetings/{meetingId}/transcripts/{transcriptId}/content](/graph/api/calltranscript-get#example-2-get-a-calltranscript-content)
  • [GET /users/{userId}/onlineMeetings/{meetingId}/transcripts/{transcriptId}/metadataContent](/graph/api/calltranscript-get#example-4-get-a-calltranscript-metadatacontent)
| 600 minutes per month per tenant per app | N/A | -| Teams meeting recording APIs:
  • [GET /users/{userId}/onlineMeetings/{meetingId}/recordings/{recordingId}/content](/graph/api/callrecording-get#example-2-get-callrecording-content)
| 600 minutes per month per tenant per app | N/A | - -## Seeded capacity - -Seeded capacity is the amount of capacity that an app can use before a consumption meter is charged. Capacity is pooled at the tenant level—the seeded capacity for all users in the tenant is compared against the app's usage in the tenant. Seeded capacity is per app per tenant—an app doesn't run out of seeded capacity if another app runs out. Seeded capacity is reset at the beginning of each calendar month, and any unused amount doesn't get carried over to the next month. - -| Payment model | Use cases | Seeded capacity | License required | Azure subscription required | -|:-----------|:---------------|:---------------|:-----------|:-----------| -| `model=A` | Security and Compliance | See [`model=A` requirements](#modela-requirements)| Yes (Microsoft 365 E5 eligible license) | Yes | -| `model=B` | Backup and restore, migration, sentiment analysis, analytics and insights | None | No | Yes | - -Seeded capacity isn't applicable for Teams meeting APIs. For details, see [Payment requirements for Meeting APIs](#payment-requirements-for-meeting-apis). - -## Payment requirements for meeting APIs - -This section describes the payment requirements for Teams meeting transcript and recording APIs. These APIs don't support the model A and model B payment models and can be used by any application, regardless of the use case. - -These APIs support an [evaluation mode](#evaluation-mode-default-requirements) that apps can use without configuring Azure billing. The following table summarizes the evaluation mode behavior. - -| Azure billing setup | Result | -| -------- | -------- | -| Not configured | Evaluation mode capacity is available for download. The API fails with error code `402` (Payment Required). | -| Configured | Unlimited meeting content is available for download and priced based on per minute of content, as described in the following table. Engineering RPS limits still apply. | - -The following table lists the prices for using Teams meeting APIs, applicable to both beta and v1.0 endpoints. - -| APIs | [Seeded capacity](#seeded-capacity) | [Price for use](#payment-and-billing) | Notes | -|:---------------------------------------------------------------|:----------------|:-------|:------| -| Teams meeting recording APIs:
  • [GET /users/{userId}/onlineMeetings/{meetingId}/recordings/{recordingId}/content](/graph/api/callrecording-get#example-2-get-callrecording-content)
| None | $0.003 per minute | The duration is rounded down to the nearest minute. | -| Teams meeting transcript APIs:
  • [GET /users/{userId}/onlineMeetings/{meetingId}/transcripts/{transcriptId}/content](/graph/api/calltranscript-get#example-2-get-a-calltranscript-content)
  • [GET /users/{userId}/onlineMeetings/{meetingId}/transcripts/{transcriptId}/metadataContent](/graph/api/calltranscript-get#example-4-get-a-calltranscript-metadatacontent)
| None | $0.0022 per minute | The duration is rounded down to the nearest minute. | - -## License requirements for Teams meeting AI insights APIs - -This section describes the license requirements for Teams meeting AI insights APIs. To access the beta endpoint, users must have a [Microsoft 365 Copilot](https://www.microsoft.com/en-us/microsoft-365/copilot) license. Payment models or evaluation mode aren't applicable for these APIs; they can be used by any application for users who have the required license. - -## Payment and billing - -If your applications are using any of the aforementioned APIs or [change notification](/graph/api/subscription-post-subscriptions) `resources`, you must follow the steps described in [Enable metered Microsoft 365 APIs and services](/graph/metered-api-setup) to set up an active Azure subscription for billing purposes. - -The organization that owns the app registration is responsible for the payment. The Azure subscription should also be active in the same tenant. For multitenant apps, the organization that registered the app might be different than the organization that runs the app. - -## Payment-related errors - -If incorrect licensing is detected, the API call fails and data isn't returned. -Specifically, for most APIs, attempting to GET messages for an unlicensed user, results in a `402` error code. -For change notifications, messages sent by unlicensed users don't generate a change notification. -API calls and change notifications used in evaluation mode in excess of the evaluation quota fails. - -| Error code | Scenario | Sample error message | -|:-----------|:-----------|:-----------------| -| 402 (Payment Required) | Missing an active Azure billing subscription |`...To call this API, the app must be associated with an Azure subscription, see https://aka.ms/teams-api-payment-requirements for details....`| -| 402 (Payment Required) | Passing `model=A` without a Microsoft E5 license or without DLP enabled |`...needs a valid license to access this API...`, `...tenant needs a valid license to access this API...`| -| 402 (Payment Required) | Calling Patch API passing `model=B` |`...query parameter 'model' does not support value 'B' for this API. Use billing model 'A'...`| -| 402 (Payment Required) | `Evaluation mode` capacity exceeded |`...evaluation capacity for the month has exceeded. To continue beyond the evalution limits complete billing onboarding...`| - -> [!NOTE] -> A successful API call does not mean that the required licensing is in place. Similarly, API success in evaluation model does not guarantee that the call is within seeded capacity. - -## View the costs billed for the metered Microsoft Teams APIs - -This section describes how to monitor costs billed for the metered Microsoft Teams APIs. - -A subscription owner, or anyone with appropriate [RBAC (Roles Based Access Control) permissions](/azure/cost-management-billing/costs/assign-access-acm-data), can use **Cost Analysis** to track metered API consumption, as follows: - -1. Sign in to the Azure portal at https://portal.azure.com. -2. Go to [**Cost Management + Billing > Cost Management > Cost analysis**](https://ms.portal.azure.com/#view/Microsoft_Azure_CostManagement/Menu/~/costanalysis). -3. For the filter near the top, select **Service name: Microsoft Graph Services**. -4. For the **Group by** dropdown menu near the right, select **Meter**. - -This view offers a convenient way to observe API consumption per day over a period of time. - -You can also use the pie charts near the bottom to further breakdown the costs for analysis, using the **Resource** and **Meter** filters. - -![Screenshot of the Cost Management and Billing page in the Azure portal](images/cost-analysis-sample.png) - -For more information about cost management, see [Cost Management + Billing documentation](/azure/cost-management-billing/). - -## Monitor the number of messages billed for the metered Teams APIs - -This section describes how to monitor the number of messages billed for the metered Teams APIs. Unlike with cost analysis, you can analyze the usage of messages within the seeded capacity, not just the ones above the seeded capacity for billing, if applicable to the selected licensing models. - -A subscription owner, or anyone with required [RBAC (Roles Based Access Control) permissions](/azure/cost-management-billing/costs/assign-access-acm-data), can set up a report, in CSV format, with the billing details for the entire subscription. You can export the report periodically (daily, weekly, monthly). For details, see [Tutorial: Create and manage exported data](/azure/cost-management-billing/costs/tutorial-export-acm-data?tabs=azure-portal). - -![Screenshot of an exported CSV file](images/teams-export-csv-sample.png) - -## Estimate the number of messages in your Teams - -This section describes how to look up the number of messages in your Teams tenant. It can help you estimate the cost for using the metered APIs. If a message is retrieved through metered APIs multiple times, it's billed multiple times. Keep it in mind when you estimate the cost based on the number of messages in your Teams tenant. For example, if you called `getAllMessages` (without any filters) yesterday, and then call it again (without any filters) today, all messages from earlier than today are billed twice. For this reason, when using metered APIs, we recommend that you use filters (for example, `$top=10`, `$filter=lastModifiedDateTime gt 2019-03-17T07:13:28.000z`) or [change notifications](/graph/teams-change-notification-in-microsoft-teams-overview) to avoid retrieving the same message multiple times. - -You can also call the [getTeamsUserActivityUserDetail](/graph/api/reportroot-getteamsuseractivityuserdetail) API, or you can use the [Microsoft Teams Admin Center](https://admin.teams.microsoft.com/) as follows: - -> **Note:** You must be either a Global Reader or Teams service admin to view the report in the [Microsoft Teams Admin Center](https://admin.teams.microsoft.com/). For details, see [Use Teams administrator roles to manage Teams](/microsoftteams/using-admin-roles). - -1. In the left pane, choose **Analytics & reports** > **Usage reports**. -2. On the **View reports** tab, under **Report**, choose **Teams user activity**. -3. Under **Date range**, select a range. -4. Choose **Run report**. - -![Screenshot of the Teams User Activity report](images/teams-user-activity-report-sample.png) - -## Frequently asked questions - -| Scenario | Details | -|:-------------------------|:--------| -| Why was the number of messages billed higher than the number of messages in my Teams? | If your app is retrieving the same message multiple times, it is billed for multiple times. One way to avoid it is to use [change notifications](/graph/api/subscription-post-subscriptions) instead of [export APIs](/microsoftteams/export-teams-content). If you must use export APIs, make sure to use filters (for example, `$filter=lastModifiedDateTime`, `$filter=from`). | -| Did billing actually started on July 5? | Yes, we're onboarding partners in phases. For continued access, follow the instructions on [Enable metered Microsoft 365 APIs and services](/graph/metered-api-setup) to set up an active Azure subscription for billing purposes. -| What should I expect after setting up an Azure subscription? | Billing is effective immediately. You can monitor the costs as described in the [View the costs billed for the metered Microsoft Teams APIs](#view-the-costs-billed-for-the-metered-microsoft-teams-apis) section above. | -| Do I need to provide an Azure subscription if my application isn't calling metered APIs? | We recommend that you provide an Azure subscription because most scenarios use metered APIs. | -| What happens if no Azure subscription is provided? | * No payment-related errors occur if the application isn't calling metered APIs.
* If no model parameter is passed, the `evaluation model` value is used by default.
* If calling a metered API passing `model=A`, provide a Microsoft 365 E5 eligible license and Azure subscription.
* If passing `model=B` when calling metered APIs, provide an active Azure subscription.
| -| How do I create an Azure subscription? | The Azure subscription must be available in the same tenant where the app is registered. Customers with MCA or EA agreements can get a subscription from their existing account. Is also possible to create a PAYG subscription using a credit card or pay by check or wire transfer. For details, see [Enable metered Microsoft 365 APIs and services](/graph/metered-api-setup) and [cost management and billing](/azure/cost-management-billing/microsoft-customer-agreement). | -| Who is responsible for the payment in the case of multitenant apps? | The organization that owns the app registration. | -| Is possible to differentiate billing from multitenant or single tenant app? | Yes, this information must be provided as part of Azure billing details. | -| Is there a charge when no message is returned using any model? | To discourage frequent [polling](/graph/api/resources/teams-api-overview), API requests that return an empty list of messages aren't charged. | -| Where can I monitor the cost and billing? | A subscription owner, or anyone with appropriate RBAC (Roles Based Access Control) can use Azure Cost Analysis tool to track consumption per day or filter by meter, service name, resource ID among other parameters. For more details, please see [View the costs billed for the metered Microsoft Teams APIs](#view-the-costs-billed-for-the-metered-microsoft-teams-apis) above. | -| Is there a volume discount? | Flat rates apply. | -| Are these APIs enrolled in [Microsoft Azure Consumption Commitment (MACC) program](/azure/marketplace/azure-consumption-commitment-enrollment)? | Not at this time.| - diff --git a/concepts/toc.yml b/concepts/toc.yml index 6edff8e815a..4a860d056a6 100644 --- a/concepts/toc.yml +++ b/concepts/toc.yml @@ -987,8 +987,6 @@ items: - name: Approvals app APIs href: approvals-app-api.md displayName: approvals, Approvals API, get approvals - - name: Payment models and licensing requirements - href: teams-licenses.md - name: Implementation differences in national clouds href: teamwork-national-cloud-differences.md - name: Tenants diff --git a/concepts/toolkit/components/chat.md b/concepts/toolkit/components/chat.md index 6bfd63a5223..51b976ff2e6 100644 --- a/concepts/toolkit/components/chat.md +++ b/concepts/toolkit/components/chat.md @@ -15,7 +15,6 @@ ms.topic: article > [!NOTE] > This component is in preview and is subject to change. The use of these components in production applications is not supported. > This component is currently only available as a React component and doesn't have a web component equivalent. -> This feature takes advantage of real-time endpoints, high-capacity APIs, and is subject to the same billing model described in the [payment models and licensing requirements for Microsoft Teams APIs](/graph/teams-licenses). The chat component enables the user to have 1:1 or group conversations. This component doesn't support channel conversations. The component allows for rendering conversations and authoring new messages. All data is stored in Microsoft Teams. diff --git a/concepts/whats-new-earlier.md b/concepts/whats-new-earlier.md index 065a598792a..ad29e6cf471 100644 --- a/concepts/whats-new-earlier.md +++ b/concepts/whats-new-earlier.md @@ -560,7 +560,7 @@ Manage Teams apps at the channel level within a team using the following APIs: ### Teamwork and communications | Messaging -- Removed the `model` parameters and payment-model guidance from Microsoft Teams export APIs and related change-notification documentation. The `model` query parameter is no longer required and is ignored if supplied. For more information, see [Payment models and licensing requirements for Microsoft Teams APIs](/graph/teams-licenses). +- Removed the `model` parameters and payment-model guidance from Microsoft Teams export APIs and related change-notification documentation. The `model` query parameter is no longer required and is ignored if supplied. - The following Microsoft Teams APIs support **@odata.nextLink** pagination to handle increased channel limits. When the result set spans multiple pages, the response includes the **@odata.nextLink** property with a URL for retrieving the next page of results: - [List channels](/graph/api/channel-list) - [List incomingChannels](/graph/api/team-list-incomingchannels) @@ -3388,10 +3388,6 @@ When a Microsoft service fails to provision a user, group, or organizational con For details, see the [related changelog section](https://developer.microsoft.com/en-us/graph/changelog/?search=9bb64b16-cc35-474d-8036-e8d5d1534fa1). -### Teams meeting APIs - -Pricing updates for the Teams meeting APIs apply starting January 1, 2024. For more information, see [Payment models and licensing requirements for Microsoft Teams APIs](/graph/teams-licenses#payment-requirements-for-meeting-apis). - ### Teamwork and communications | Calls and online meetings Manage change notifications for virtual events using the [Create](/graph/api/subscription-post-subscriptions), [Get](/graph/api/subscription-get), [Update](/graph/api/subscription-update), and [Delete](/graph/api/subscription-delete) operations of the [subscription](/graph/api/resources/subscription) resource. @@ -5197,7 +5193,6 @@ Enable support for delegated permissions (`Contacts.Read` or `Contacts.ReadWrite ### Teamwork - [Get all chat messages across all channels](/graph/api/channel-getallmessages) in a [team](/graph/api/resources/team). - [Get all messages from all the chats](/graph/api/chats-getallmessages) that a user participates in, including one-on-one chats, group chats, and meeting chats. -- Check out the [licensing and payment models](teams-licenses.md) that apply to Microsoft Teams APIs in Microsoft Graph. ### Users User licenses for Azure Active Directory (Azure AD) services now support a timestamp for when the [state of the license assignment](/graph/api/resources/licenseassignmentstate) is last updated. From ea4db2a1cb0750c2d61f18da7128f77e7e6b67f9 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 28 Sep 2026 19:12:36 -0600 Subject: [PATCH 165/189] Update reference TOC (#29655) Co-authored-by: Microsoft Graph DevX Tooling --- .../toc/device-and-app-management/toc.yml | 16 +- .../beta/toc/identity-and-access/toc.yml | 6 + api-reference/beta/toc/security/toc.yml | 4 + api-reference/beta/toc/tenants/toc.yml | 138 ++++++++++++------ api-reference/v1.0/toc/tenants/toc.yml | 126 ++++++++++++++++ 5 files changed, 230 insertions(+), 60 deletions(-) diff --git a/api-reference/beta/toc/device-and-app-management/toc.yml b/api-reference/beta/toc/device-and-app-management/toc.yml index b6ed24a6356..0c414a27db1 100644 --- a/api-reference/beta/toc/device-and-app-management/toc.yml +++ b/api-reference/beta/toc/device-and-app-management/toc.yml @@ -122,20 +122,6 @@ items: href: ../../api/cloudlicensing-assignmenterror-get-assignedto.md - name: Get usageRight href: ../../api/cloudlicensing-assignmenterror-get-usageright.md - - name: Usage right - items: - - name: Usage right - href: ../../resources/cloudlicensing-usageright.md - - name: List for group - href: ../../api/cloudlicensing-groupcloudlicensing-list-usagerights.md - - name: List for user - href: ../../api/cloudlicensing-usercloudlicensing-list-usagerights.md - - name: List for device - href: ../../api/cloudlicensing-devicecloudlicensing-list-usagerights.md - - name: Get - href: ../../api/cloudlicensing-usageright-get.md - - name: List assignments - href: ../../api/cloudlicensing-usageright-list-assignments.md - name: Waiting member items: - name: Waiting member @@ -588,6 +574,8 @@ items: href: ../../api/cloudpcreports-getremoteconnectionhistoricalreports.md - name: Get total aggregated remote connection reports href: ../../api/cloudpcreports-gettotalaggregatedremoteconnectionreports.md + - name: Retrieve Cloud PC performance metrics report + href: ../../api/cloudpcreports-retrievecloudpcperformancemetricsreport.md - name: Retrieve Cloud PC tenant metrics report href: ../../api/cloudpcreports-retrievecloudpctenantmetricsreport.md - name: Retrieve cross-region disaster recovery report diff --git a/api-reference/beta/toc/identity-and-access/toc.yml b/api-reference/beta/toc/identity-and-access/toc.yml index 9d596297696..bb0147be1ee 100644 --- a/api-reference/beta/toc/identity-and-access/toc.yml +++ b/api-reference/beta/toc/identity-and-access/toc.yml @@ -136,6 +136,8 @@ items: href: ../../api/device-update.md - name: Delete href: ../../api/device-delete.md + - name: Provision + href: ../../api/device-provision.md - name: Get delta href: ../../api/device-delta.md - name: List member of @@ -677,6 +679,10 @@ items: href: ../../api/customappscope-update.md - name: Delete for Exchange Online href: ../../api/customappscope-delete.md + - name: Complex types + items: + - name: Provision response + href: ../../resources/provisionresponse.md - name: Governance displayName: Identity Governance, Access reviews, Entitlement Management, Terms of Use, Privileged Identity Management, Microsoft Entra ID Governance items: diff --git a/api-reference/beta/toc/security/toc.yml b/api-reference/beta/toc/security/toc.yml index 17b21548e4d..709c5ceddfc 100644 --- a/api-reference/beta/toc/security/toc.yml +++ b/api-reference/beta/toc/security/toc.yml @@ -712,6 +712,10 @@ items: href: ../../resources/dlpactioninfo.md - name: Embedding input href: ../../resources/embeddinginput.md + - name: Evaluation error detail + href: ../../resources/evaluationerrordetail.md + - name: Evaluation incomplete activity metadata + href: ../../resources/evaluationincompleteactivitymetadata.md - name: Evaluation scope href: ../../resources/evaluationscope.md - name: Group scope diff --git a/api-reference/beta/toc/tenants/toc.yml b/api-reference/beta/toc/tenants/toc.yml index c33d3760f45..7c407009782 100644 --- a/api-reference/beta/toc/tenants/toc.yml +++ b/api-reference/beta/toc/tenants/toc.yml @@ -290,20 +290,44 @@ items: href: ../../api/multitenantorganizationidentitysyncpolicytemplate-update.md - name: Reset href: ../../api/multitenantorganizationidentitysyncpolicytemplate-resettodefaultsettings.md -- name: Tenant governance (preview) +- name: Tenant governance items: - name: Overview href: ../../resources/tenantgovernanceservices-tenantgovernance-overview.md - - name: Tenant governance setting + - name: Governance invitation items: - - name: Tenant governance setting - href: ../../resources/tenantgovernanceservices-tenantgovernancesetting.md + - name: Governance invitation + href: ../../resources/tenantgovernanceservices-governanceinvitation.md + - name: List + href: ../../api/tenantgovernanceservices-list-governanceinvitations.md + - name: Create + href: ../../api/tenantgovernanceservices-post-governanceinvitations.md - name: Get - href: ../../api/tenantgovernanceservices-tenantgovernancesetting-get.md + href: ../../api/tenantgovernanceservices-governanceinvitation-get.md + - name: Delete + href: ../../api/tenantgovernanceservices-governanceinvitation-delete.md + - name: Governance relationship + items: + - name: Governance relationship + href: ../../resources/tenantgovernanceservices-governancerelationship.md + - name: List + href: ../../api/tenantgovernanceservices-list-governancerelationships.md + - name: Get + href: ../../api/tenantgovernanceservices-governancerelationship-get.md - name: Update - href: ../../api/tenantgovernanceservices-tenantgovernancesetting-update.md - - name: Enable related tenants - href: ../../api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md + href: ../../api/tenantgovernanceservices-governancerelationship-update.md + - name: Governance request + items: + - name: Governance request + href: ../../resources/tenantgovernanceservices-governancerequest.md + - name: List + href: ../../api/tenantgovernanceservices-list-governancerequests.md + - name: Create + href: ../../api/tenantgovernanceservices-post-governancerequests.md + - name: Get + href: ../../api/tenantgovernanceservices-governancerequest-get.md + - name: Update + href: ../../api/tenantgovernanceservices-governancerequest-update.md - name: Related tenant items: - name: Related tenant @@ -316,10 +340,12 @@ items: href: ../../api/tenantgovernanceservices-relatedtenant-refresh.md - name: Refresh status href: ../../api/tenantgovernanceservices-relatedtenant-refreshstatus.md - - name: Governance policy template + - name: Tenant governance + href: ../../resources/tenantgovernanceservices-tenantgovernance.md + - name: Tenant governance policy template items: - - name: Governance policy template - href: ../../resources/tenantgovernanceservices-governancepolicytemplate.md + - name: Tenant governance policy template + href: ../../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md - name: List href: ../../api/tenantgovernanceservices-list-governancepolicytemplates.md - name: Create @@ -330,54 +356,74 @@ items: href: ../../api/tenantgovernanceservices-governancepolicytemplate-update.md - name: Delete href: ../../api/tenantgovernanceservices-delete-governancepolicytemplates.md - - name: Governance invitation - items: - - name: Governance invitation - href: ../../resources/tenantgovernanceservices-governanceinvitation.md - - name: List - href: ../../api/tenantgovernanceservices-list-governanceinvitations.md - - name: Create - href: ../../api/tenantgovernanceservices-post-governanceinvitations.md - - name: Get - href: ../../api/tenantgovernanceservices-governanceinvitation-get.md - - name: Delete - href: ../../api/tenantgovernanceservices-governanceinvitation-delete.md - - name: Governance request - items: - - name: Governance request - href: ../../resources/tenantgovernanceservices-governancerequest.md - - name: List - href: ../../api/tenantgovernanceservices-list-governancerequests.md - - name: Create - href: ../../api/tenantgovernanceservices-post-governancerequests.md - - name: Get - href: ../../api/tenantgovernanceservices-governancerequest-get.md - - name: Update - href: ../../api/tenantgovernanceservices-governancerequest-update.md - - name: Governance relationship + - name: Tenant governance setting items: - - name: Governance relationship - href: ../../resources/tenantgovernanceservices-governancerelationship.md - - name: List - href: ../../api/tenantgovernanceservices-list-governancerelationships.md + - name: Tenant governance setting + href: ../../resources/tenantgovernanceservices-tenantgovernancesetting.md - name: Get - href: ../../api/tenantgovernanceservices-governancerelationship-get.md + href: ../../api/tenantgovernanceservices-tenantgovernancesetting-get.md - name: Update - href: ../../api/tenantgovernanceservices-governancerelationship-update.md + href: ../../api/tenantgovernanceservices-tenantgovernancesetting-update.md + - name: Enable related tenants + href: ../../api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md - name: Complex types items: - - name: Action step - href: ../../resources/tenantgovernanceservices-actionstep.md - - name: Action URL - href: ../../resources/tenantgovernanceservices-actionurl.md + - name: Application resource permission + href: ../../resources/tenantgovernanceservices-applicationresourcepermission.md + - name: Applications required resource access + href: ../../resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md - name: B 2 b registration metrics href: ../../resources/tenantgovernanceservices-b2bregistrationmetrics.md + - name: B 2 b registration metrics base + href: ../../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md + - name: B 2 b registration metrics initial + href: ../../resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md + - name: B 2 b registration metrics recent + href: ../../resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md - name: B 2 b sign in activity metrics href: ../../resources/tenantgovernanceservices-b2bsigninactivitymetrics.md + - name: B 2 b sign in activity metrics base + href: ../../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md + - name: B 2 b sign in activity metrics initial + href: ../../resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md + - name: B 2 b sign in activity metrics recent + href: ../../resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md - name: Billing metrics href: ../../resources/tenantgovernanceservices-billingmetrics.md + - name: Billing metrics base + href: ../../resources/tenantgovernanceservices-billingmetricsbase.md + - name: Billing metrics initial + href: ../../resources/tenantgovernanceservices-billingmetricsinitial.md + - name: Billing metrics recent + href: ../../resources/tenantgovernanceservices-billingmetricsrecent.md + - name: Delegated administration role assignment + href: ../../resources/tenantgovernanceservices-delegatedadministrationroleassignment.md + - name: Delegated administration role assignment snapshot + href: ../../resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md + - name: Investigation action step + href: ../../resources/tenantgovernanceservices-investigationactionstep.md + - name: Investigation action URL + href: ../../resources/tenantgovernanceservices-investigationactionurl.md - name: Multitenant application metrics href: ../../resources/tenantgovernanceservices-multitenantapplicationmetrics.md + - name: Multitenant application metrics base + href: ../../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md + - name: Multitenant application metrics initial + href: ../../resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md + - name: Multitenant application metrics recent + href: ../../resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md + - name: Multitenant applications to provision + href: ../../resources/tenantgovernanceservices-multitenantapplicationstoprovision.md + - name: Multitenant applications to provision snapshot + href: ../../resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md + - name: Related tenants refresh request + href: ../../resources/tenantgovernanceservices-relatedtenantsrefreshrequest.md + - name: Related tenants refresh status + href: ../../resources/tenantgovernanceservices-relatedtenantsrefreshstatus.md + - name: Relationship policy + href: ../../resources/tenantgovernanceservices-relationshippolicy.md + - name: Role template + href: ../../resources/tenantgovernanceservices-roletemplate.md - name: Tenant information items: - name: Tenant information diff --git a/api-reference/v1.0/toc/tenants/toc.yml b/api-reference/v1.0/toc/tenants/toc.yml index 4b6902eabfc..30be07aadf6 100644 --- a/api-reference/v1.0/toc/tenants/toc.yml +++ b/api-reference/v1.0/toc/tenants/toc.yml @@ -213,6 +213,132 @@ items: href: ../../api/multitenantorganizationidentitysyncpolicytemplate-update.md - name: Reset href: ../../api/multitenantorganizationidentitysyncpolicytemplate-resettodefaultsettings.md +- name: Tenant governance + items: + - name: Overview + href: ../../resources/tenantgovernanceservices-tenantgovernance-overview.md + - name: Governance invitation + items: + - name: Governance invitation + href: ../../resources/tenantgovernanceservices-governanceinvitation.md + - name: List + href: ../../api/tenantgovernanceservices-list-governanceinvitations.md + - name: Create + href: ../../api/tenantgovernanceservices-post-governanceinvitations.md + - name: Get + href: ../../api/tenantgovernanceservices-governanceinvitation-get.md + - name: Delete + href: ../../api/tenantgovernanceservices-governanceinvitation-delete.md + - name: Governance relationship + items: + - name: Governance relationship + href: ../../resources/tenantgovernanceservices-governancerelationship.md + - name: List + href: ../../api/tenantgovernanceservices-list-governancerelationships.md + - name: Get + href: ../../api/tenantgovernanceservices-governancerelationship-get.md + - name: Update + href: ../../api/tenantgovernanceservices-governancerelationship-update.md + - name: Governance request + items: + - name: Governance request + href: ../../resources/tenantgovernanceservices-governancerequest.md + - name: List + href: ../../api/tenantgovernanceservices-list-governancerequests.md + - name: Create + href: ../../api/tenantgovernanceservices-post-governancerequests.md + - name: Get + href: ../../api/tenantgovernanceservices-governancerequest-get.md + - name: Update + href: ../../api/tenantgovernanceservices-governancerequest-update.md + - name: Related tenant + items: + - name: Related tenant + href: ../../resources/tenantgovernanceservices-relatedtenant.md + - name: List + href: ../../api/tenantgovernanceservices-list-relatedtenants.md + - name: Get + href: ../../api/tenantgovernanceservices-relatedtenant-get.md + - name: Refresh + href: ../../api/tenantgovernanceservices-relatedtenant-refresh.md + - name: Tenant governance + href: ../../resources/tenantgovernanceservices-tenantgovernance.md + - name: Tenant governance policy template + items: + - name: Tenant governance policy template + href: ../../resources/tenantgovernanceservices-tenantgovernancepolicytemplate.md + - name: List + href: ../../api/tenantgovernanceservices-list-governancepolicytemplates.md + - name: Create + href: ../../api/tenantgovernanceservices-post-governancepolicytemplates.md + - name: Get + href: ../../api/tenantgovernanceservices-governancepolicytemplate-get.md + - name: Update + href: ../../api/tenantgovernanceservices-governancepolicytemplate-update.md + - name: Delete + href: ../../api/tenantgovernanceservices-delete-governancepolicytemplates.md + - name: Tenant governance setting + items: + - name: Tenant governance setting + href: ../../resources/tenantgovernanceservices-tenantgovernancesetting.md + - name: Get + href: ../../api/tenantgovernanceservices-tenantgovernancesetting-get.md + - name: Update + href: ../../api/tenantgovernanceservices-tenantgovernancesetting-update.md + - name: Enable related tenants + href: ../../api/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants.md + - name: Complex types + items: + - name: Application resource permission + href: ../../resources/tenantgovernanceservices-applicationresourcepermission.md + - name: Applications required resource access + href: ../../resources/tenantgovernanceservices-applicationsrequiredresourceaccess.md + - name: B 2 b registration metrics + href: ../../resources/tenantgovernanceservices-b2bregistrationmetrics.md + - name: B 2 b registration metrics base + href: ../../resources/tenantgovernanceservices-b2bregistrationmetricsbase.md + - name: B 2 b registration metrics initial + href: ../../resources/tenantgovernanceservices-b2bregistrationmetricsinitial.md + - name: B 2 b registration metrics recent + href: ../../resources/tenantgovernanceservices-b2bregistrationmetricsrecent.md + - name: B 2 b sign in activity metrics + href: ../../resources/tenantgovernanceservices-b2bsigninactivitymetrics.md + - name: B 2 b sign in activity metrics base + href: ../../resources/tenantgovernanceservices-b2bsigninactivitymetricsbase.md + - name: B 2 b sign in activity metrics initial + href: ../../resources/tenantgovernanceservices-b2bsigninactivitymetricsinitial.md + - name: B 2 b sign in activity metrics recent + href: ../../resources/tenantgovernanceservices-b2bsigninactivitymetricsrecent.md + - name: Billing metrics + href: ../../resources/tenantgovernanceservices-billingmetrics.md + - name: Billing metrics base + href: ../../resources/tenantgovernanceservices-billingmetricsbase.md + - name: Billing metrics initial + href: ../../resources/tenantgovernanceservices-billingmetricsinitial.md + - name: Billing metrics recent + href: ../../resources/tenantgovernanceservices-billingmetricsrecent.md + - name: Delegated administration role assignment + href: ../../resources/tenantgovernanceservices-delegatedadministrationroleassignment.md + - name: Delegated administration role assignment snapshot + href: ../../resources/tenantgovernanceservices-delegatedadministrationroleassignmentsnapshot.md + - name: Multitenant application metrics + href: ../../resources/tenantgovernanceservices-multitenantapplicationmetrics.md + - name: Multitenant application metrics base + href: ../../resources/tenantgovernanceservices-multitenantapplicationmetricsbase.md + - name: Multitenant application metrics initial + href: ../../resources/tenantgovernanceservices-multitenantapplicationmetricsinitial.md + - name: Multitenant application metrics recent + href: ../../resources/tenantgovernanceservices-multitenantapplicationmetricsrecent.md + - name: Multitenant applications to provision + href: ../../resources/tenantgovernanceservices-multitenantapplicationstoprovision.md + - name: Multitenant applications to provision snapshot + href: ../../resources/tenantgovernanceservices-multitenantapplicationstoprovisionsnapshot.md + - name: Related tenants refresh request + href: ../../resources/tenantgovernanceservices-relatedtenantsrefreshrequest.md + - name: Relationship policy + href: ../../resources/tenantgovernanceservices-relationshippolicy.md + - name: Role template + href: ../../resources/tenantgovernanceservices-roletemplate.md - name: Tenant information items: - name: Tenant information From 7b6a8f4981032693706e0c7af2426b0493ce7979 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 28 Sep 2026 19:13:00 -0600 Subject: [PATCH 166/189] Update generated permissions tables with build 245156 (#29653) Co-authored-by: Microsoft Graph DevX Tooling --- ...orts-retrievecloudpcperformancemetricsreport.md | 2 +- .../security-security-gethuntingschematables.md | 6 +----- ...oudlicensing-list-waitingmembers-permissions.md | 14 ++++++++++---- ...ecloudpcperformancemetricsreport-permissions.md | 1 + ...-security-gethuntingschematables-permissions.md | 3 ++- ...delete-governancepolicytemplates-permissions.md | 1 + ...ices-governanceinvitation-delete-permissions.md | 1 + ...ervices-governanceinvitation-get-permissions.md | 1 + ...ces-governancepolicytemplate-get-permissions.md | 1 + ...-governancepolicytemplate-update-permissions.md | 1 + ...vices-governancerelationship-get-permissions.md | 1 + ...es-governancerelationship-update-permissions.md | 1 + ...ceservices-governancerequest-get-permissions.md | 1 + ...ervices-governancerequest-update-permissions.md | 1 + ...vices-list-governanceinvitations-permissions.md | 1 + ...s-list-governancepolicytemplates-permissions.md | 1 + ...ces-list-governancerelationships-permissions.md | 1 + ...services-list-governancerequests-permissions.md | 1 + ...anceservices-list-relatedtenants-permissions.md | 1 + ...vices-post-governanceinvitations-permissions.md | 1 + ...s-post-governancepolicytemplates-permissions.md | 1 + ...services-post-governancerequests-permissions.md | 1 + ...rnanceservices-relatedtenant-get-permissions.md | 1 + ...ceservices-relatedtenant-refresh-permissions.md | 1 + ...ancesetting-enablerelatedtenants-permissions.md | 1 + ...ices-tenantgovernancesetting-get-permissions.md | 1 + ...s-tenantgovernancesetting-update-permissions.md | 1 + 27 files changed, 37 insertions(+), 11 deletions(-) diff --git a/api-reference/beta/api/cloudpcreports-retrievecloudpcperformancemetricsreport.md b/api-reference/beta/api/cloudpcreports-retrievecloudpcperformancemetricsreport.md index 776e96e98da..431ea6c01bd 100644 --- a/api-reference/beta/api/cloudpcreports-retrievecloudpcperformancemetricsreport.md +++ b/api-reference/beta/api/cloudpcreports-retrievecloudpcperformancemetricsreport.md @@ -22,7 +22,7 @@ This API supports only Windows 365 Enterprise Cloud PCs and Windows 365 Frontlin Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/cloudpcreports-retrievecloudpcperformancemetricsreport-permissions.md)] ## HTTP request diff --git a/api-reference/beta/api/security-security-gethuntingschematables.md b/api-reference/beta/api/security-security-gethuntingschematables.md index 7bd8fd06635..9bba580c13c 100644 --- a/api-reference/beta/api/security-security-gethuntingschematables.md +++ b/api-reference/beta/api/security-security-gethuntingschematables.md @@ -30,11 +30,7 @@ Common use cases include: Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). - + [!INCLUDE [permissions-table](../includes/permissions/security-security-gethuntingschematables-permissions.md)] >[!IMPORTANT] diff --git a/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-list-waitingmembers-permissions.md b/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-list-waitingmembers-permissions.md index b80402105b1..3ebb21771d8 100644 --- a/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-list-waitingmembers-permissions.md +++ b/api-reference/beta/includes/permissions/cloudlicensing-devicecloudlicensing-list-waitingmembers-permissions.md @@ -1,6 +1,12 @@ - -|Permission type|Least privileged permission|Higher privileged permissions| +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| |:---|:---|:---| -|Delegated (work or school account)|CloudLicensing-Allotment.Read|CloudLicensing-Allotment.ReadWrite| +|Delegated (work or school account)|Device-CloudLicensing.Read|Device-CloudLicensing.Read.All, Device.Read.All, Directory.Read.All, Directory.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|CloudLicensing-Allotment.Read.All|CloudLicensing-Allotment.ReadWrite.All| +|Application|Device-CloudLicensing.Read.All|Device.Read.All, Device.ReadWrite.All, Directory.Read.All, Directory.ReadWrite.All| + diff --git a/api-reference/beta/includes/permissions/cloudpcreports-retrievecloudpcperformancemetricsreport-permissions.md b/api-reference/beta/includes/permissions/cloudpcreports-retrievecloudpcperformancemetricsreport-permissions.md index 1a8dccc7f27..40572c1013d 100644 --- a/api-reference/beta/includes/permissions/cloudpcreports-retrievecloudpcperformancemetricsreport-permissions.md +++ b/api-reference/beta/includes/permissions/cloudpcreports-retrievecloudpcperformancemetricsreport-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|CloudPC.Read.All|CloudPC.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|CloudPC.Read.All|CloudPC.ReadWrite.All| + diff --git a/api-reference/beta/includes/permissions/security-security-gethuntingschematables-permissions.md b/api-reference/beta/includes/permissions/security-security-gethuntingschematables-permissions.md index ae1d3706f8c..aa82e151d64 100644 --- a/api-reference/beta/includes/permissions/security-security-gethuntingschematables-permissions.md +++ b/api-reference/beta/includes/permissions/security-security-gethuntingschematables-permissions.md @@ -1,5 +1,5 @@ --- -description: Automatically generated file. DO NOT MODIFY +description: "Automatically generated file. DO NOT MODIFY" ms.topic: include ms.localizationpriority: medium --- @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|ThreatHunting.Read.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|ThreatHunting.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-delete-governancepolicytemplates-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-delete-governancepolicytemplates-permissions.md index b4609f271a5..3e6879de138 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-delete-governancepolicytemplates-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-delete-governancepolicytemplates-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-PolicyTemplate.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-delete-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-delete-permissions.md index 9ca4c3d3237..5688285ebc8 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-delete-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-delete-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Invitation.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-get-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-get-permissions.md index ececa1ae507..9b8c497e1a7 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governanceinvitation-get-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Invitation.Read.All|TenantGovernance-Invitation.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TenantGovernance-Invitation.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-get-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-get-permissions.md index ce7f167a68c..c2f7d9bc1d3 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-get-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-PolicyTemplate.Read.All|TenantGovernance-PolicyTemplate.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TenantGovernance-PolicyTemplate.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-update-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-update-permissions.md index b4609f271a5..3e6879de138 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-update-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancepolicytemplate-update-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-PolicyTemplate.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-get-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-get-permissions.md index f596ecd8e1e..52b2c7f1cd0 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-get-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Relationship.Read.All|TenantGovernance-Relationship.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TenantGovernance-Relationship.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-update-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-update-permissions.md index 9451dc94d8d..51a968fb84e 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-update-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerelationship-update-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Relationship.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-get-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-get-permissions.md index e0ecb7653f4..873e2f5c8e7 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-get-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Request.Read.All|TenantGovernance-Request.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TenantGovernance-Request.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-update-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-update-permissions.md index 70cb3a4c15f..36c48f495cc 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-update-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-governancerequest-update-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Request.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governanceinvitations-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governanceinvitations-permissions.md index ececa1ae507..9b8c497e1a7 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governanceinvitations-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governanceinvitations-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Invitation.Read.All|TenantGovernance-Invitation.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TenantGovernance-Invitation.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancepolicytemplates-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancepolicytemplates-permissions.md index ce7f167a68c..c2f7d9bc1d3 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancepolicytemplates-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancepolicytemplates-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-PolicyTemplate.Read.All|TenantGovernance-PolicyTemplate.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TenantGovernance-PolicyTemplate.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerelationships-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerelationships-permissions.md index f596ecd8e1e..52b2c7f1cd0 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerelationships-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerelationships-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Relationship.Read.All|TenantGovernance-Relationship.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TenantGovernance-Relationship.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerequests-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerequests-permissions.md index e0ecb7653f4..873e2f5c8e7 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerequests-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-governancerequests-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Request.Read.All|TenantGovernance-Request.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TenantGovernance-Request.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-relatedtenants-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-relatedtenants-permissions.md index be6b39c5626..d214456cef9 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-relatedtenants-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-list-relatedtenants-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-RelatedTenant.Read.All|TenantGovernance-RelatedTenant.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TenantGovernance-RelatedTenant.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governanceinvitations-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governanceinvitations-permissions.md index 9ca4c3d3237..5688285ebc8 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governanceinvitations-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governanceinvitations-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Invitation.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancepolicytemplates-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancepolicytemplates-permissions.md index b4609f271a5..3e6879de138 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancepolicytemplates-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancepolicytemplates-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-PolicyTemplate.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancerequests-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancerequests-permissions.md index 70cb3a4c15f..36c48f495cc 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancerequests-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-post-governancerequests-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Request.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-get-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-get-permissions.md index be6b39c5626..d214456cef9 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-get-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-RelatedTenant.Read.All|TenantGovernance-RelatedTenant.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TenantGovernance-RelatedTenant.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-refresh-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-refresh-permissions.md index 99de1b80297..50474db0715 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-refresh-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-relatedtenant-refresh-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-RelatedTenant.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants-permissions.md index 3dbb65666b6..1c3ae5df79e 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-enablerelatedtenants-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Setting.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-get-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-get-permissions.md index 4a291cdcec9..4f83b2d5a69 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-get-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-get-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Setting.Read.All|TenantGovernance-Setting.ReadWrite.All| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|TenantGovernance-Setting.Read.All|Not available.| + diff --git a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-update-permissions.md b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-update-permissions.md index 3dbb65666b6..1c3ae5df79e 100644 --- a/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-update-permissions.md +++ b/api-reference/v1.0/includes/permissions/tenantgovernanceservices-tenantgovernancesetting-update-permissions.md @@ -9,3 +9,4 @@ ms.localizationpriority: medium |Delegated (work or school account)|TenantGovernance-Setting.ReadWrite.All|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| |Application|Not supported.|Not supported.| + From 481df98ebcd70eacf998c64be7a342a96a22569d Mon Sep 17 00:00:00 2001 From: Philippe Signoret Date: Tue, 29 Sep 2026 03:13:47 +0200 Subject: [PATCH 167/189] Document shared 700-value app role and permission scope limit (#29648) --- api-reference/beta/resources/apiapplication.md | 2 +- api-reference/beta/resources/application.md | 2 +- api-reference/beta/resources/serviceprincipal.md | 4 ++-- api-reference/v1.0/resources/apiapplication.md | 2 +- api-reference/v1.0/resources/application.md | 2 +- api-reference/v1.0/resources/serviceprincipal.md | 4 ++-- 6 files changed, 8 insertions(+), 8 deletions(-) diff --git a/api-reference/beta/resources/apiapplication.md b/api-reference/beta/resources/apiapplication.md index f64dfa76138..76f02760b7d 100644 --- a/api-reference/beta/resources/apiapplication.md +++ b/api-reference/beta/resources/apiapplication.md @@ -22,7 +22,7 @@ Specifies settings for an [application](application.md) that implements a web AP |:---------------|:--------|:----------| |acceptMappedClaims| Boolean | When `true`, allows an application to use claims mapping without specifying a custom signing key. | |knownClientApplications| Guid collection |Used for bundling consent if you have a solution that contains two parts: a client app and a custom web API app. If you set the appID of the client app to this value, the user only consents once to the client app. Microsoft Entra ID knows that consenting to the client means implicitly consenting to the web API and automatically provisions service principals for both APIs at the same time. Both the client and the web API app must be registered in the same tenant.| -|oauth2PermissionScopes| [permissionScope](permissionscope.md) collection | The definition of the delegated permissions exposed by the web API represented by this application registration. These delegated permissions may be requested by a client application, and may be granted by users or administrators during consent. Delegated permissions are sometimes referred to as OAuth 2.0 scopes. | +|oauth2PermissionScopes| [permissionScope](permissionscope.md) collection | The definition of the delegated permissions exposed by the web API represented by this application registration. These delegated permissions may be requested by a client application, and may be granted by users or administrators during consent. Delegated permissions are sometimes referred to as OAuth 2.0 scopes.

These scopes and the application's **appRoles** share a default limit of 700 permission definitions per application. Enabled and disabled definitions both count. For counting rules, behavior for existing objects above the limit, and design guidance, see [App role limits](/entra/identity-platform/howto-add-app-roles-in-apps#app-role-limits). | |preAuthorizedApplications| [preAuthorizedApplication](preauthorizedapplication.md) collection | Lists the client applications that are preauthorized with the specified delegated permissions to access this application's APIs. Users aren't required to consent to any preauthorized application (for the permissions specified). However, any other permissions not listed in preAuthorizedApplications (requested through incremental consent for example) will require user consent. | |requestedAccessTokenVersion| Int32 | Specifies the access token version expected by this resource. This changes the version and format of the JWT produced independent of the endpoint or client used to request the access token.

The endpoint used, v1.0 or v2.0, is chosen by the client and only impacts the version of id_tokens. Resources need to explicitly configure **requestedAccessTokenVersion** to indicate the supported access token format.

Possible values for **requestedAccessTokenVersion** are `1`, `2`, or `null`. If the value is `null`, this defaults to `1`, which corresponds to the v1.0 endpoint.

If **signInAudience** on the application is configured as `AzureADandPersonalMicrosoftAccount` or `PersonalMicrosoftAccount`, the value for this property must be `2`. | diff --git a/api-reference/beta/resources/application.md b/api-reference/beta/resources/application.md index 4e647763f98..51a41429ad8 100644 --- a/api-reference/beta/resources/application.md +++ b/api-reference/beta/resources/application.md @@ -70,7 +70,7 @@ This resource supports: | api | [apiApplication](apiapplication.md) | Specifies settings for an application that implements a web API. | | appId | String | The unique identifier for the application that is assigned by Microsoft Entra ID. Not nullable. Read-only. Alternate key. Supports `$filter` (`eq`). | |applicationTemplateId | String | Unique identifier of the [applicationTemplate](../resources/applicationtemplate.md). Supports `$filter` (`eq`, `not`, `ne`). Read-only. `null` if the app wasn't created from an application template.| -| appRoles | [appRole](approle.md) collection | The collection of roles defined for the application. With [app role assignments](approleassignment.md), these roles can be assigned to users, groups, or service principals associated with other applications. Not nullable. | +| appRoles | [appRole](approle.md) collection | The collection of roles defined for the application. With [app role assignments](approleassignment.md), these roles can be assigned to users, groups, or service principals associated with other applications. Not nullable.

App roles and exposed delegated permission scopes (**api.oauth2PermissionScopes**) share a default limit of 700 permission definitions per application. Enabled and disabled definitions both count. This limit is separate from the aggregate 1,200-entry application manifest limit and from app role assignment limits. For counting rules, behavior for existing objects above the limit, and design guidance, see [App role limits](/entra/identity-platform/howto-add-app-roles-in-apps#app-role-limits). | |authenticationBehaviors|[authenticationBehaviors](../resources/authenticationbehaviors.md)| The collection of breaking change behaviors related to token issuance that are configured for the application. Authentication behaviors are unset by default (`null`) and must be explicitly enabled or disabled. Nullable. Requires `$select` to retrieve.

For more information about authentication behaviors, see [Manage application authenticationBehaviors to avoid unverified use of email claims for user identification or authorization](/graph/applications-authenticationbehaviors).| |certification|[certification](certification.md)|Specifies the certification status of the application.| |createdByAppId|String|The **appId** of the application that created this application. Set internally by Microsoft Entra ID. Read-only.| diff --git a/api-reference/beta/resources/serviceprincipal.md b/api-reference/beta/resources/serviceprincipal.md index 51e64c17649..326bf3c94f1 100644 --- a/api-reference/beta/resources/serviceprincipal.md +++ b/api-reference/beta/resources/serviceprincipal.md @@ -90,7 +90,7 @@ This resource supports using [delta query](/graph/delta-query-overview) to track |applicationTemplateId|String|Unique identifier of the [applicationTemplate](../resources/applicationtemplate.md). Supports `$filter` (`eq`, `not`, `ne`). Read-only. `null` if the app wasn't created from an application template.| |appOwnerOrganizationId|Guid|Contains the tenant ID where the application is registered. This is applicable only to service principals backed by applications. Supports `$filter` (`eq`, `ne`, `NOT`, `ge`, `le`).| |appRoleAssignmentRequired|Boolean|Specifies whether users or other service principals need to be granted an app role assignment for this service principal before users can sign in or apps can get tokens. The default value is `false`. Not nullable.

Supports `$filter` (`eq`, `ne`, `NOT`). | -|appRoles|[appRole](approle.md) collection|The roles exposed by the application, which this service principal represents. For more information, see the **appRoles** property definition on the [application](application.md) entity. Not nullable. | +|appRoles|[appRole](approle.md) collection|The roles exposed by the application, which this service principal represents. For more information, see the **appRoles** property definition on the [application](application.md) entity. Not nullable.

App roles and exposed delegated permission scopes (**publishedPermissionScopes**) share a default limit of 700 permission definitions per service principal, including definitions inherited from the application and definitions added directly to the service principal. Enabled and disabled definitions both count. This limit counts definitions, not app role assignments. For counting rules, behavior for existing objects above the limit, and design guidance, see [App role limits](/entra/identity-platform/howto-add-app-roles-in-apps#app-role-limits). | |createdByAppId|String|The **appId** of the application that created this service principal. Set internally by Microsoft Entra ID. Read-only.| |customSecurityAttributes|[customSecurityAttributeValue](../resources/customsecurityattributevalue.md)|An open complex type that holds the value of a custom security attribute that is assigned to a directory object. Nullable.

Requires `$select` to retrieve. Supports `$filter` (`eq`, `ne`, `not`, `startsWith`). Filter value is case sensitive.
  • To read this property, the calling app must be assigned the *CustomSecAttributeAssignment.Read.All* permission. To write this property, the calling app must be assigned the *CustomSecAttributeAssignment.ReadWrite.All* permissions.
  • To read or write this property in delegated scenarios, the admin must be assigned the *Attribute Assignment Administrator* role.
| | deletedDateTime | DateTimeOffset | The date and time the service principal was deleted. Read-only. | @@ -113,7 +113,7 @@ This resource supports using [delta query](/graph/delta-query-overview) to track |permissionGrantPreApprovalPolicies|[permissionGrantPreApprovalPolicy](../resources/permissiongrantpreapprovalpolicy.md) collection|The list of preapproval policies that has been assigned to the service principal.| |preferredTokenSigningKeyEndDateTime|DateTimeOffset|Specifies the expiration date of the keyCredential used for token signing, marked by **preferredTokenSigningKeyThumbprint**. Updating this attribute isn't currently supported. For details, see [ServicePrincipal property differences](/graph/migrate-azure-ad-graph-property-differences#serviceprincipal-property-differences).| |preferredTokenSigningKeyThumbprint|String|This property can be used on SAML applications (apps that have **preferredSingleSignOnMode** set to `saml`) to control which certificate is used to sign the SAML responses. For applications that aren't SAML, don't write or otherwise rely on this property. | -|publishedPermissionScopes|[permissionScope](permissionscope.md) collection|The delegated permissions exposed by the application. For more information, see the **oauth2PermissionScopes** property on the [application](application.md) entity's **api** property. Not nullable.
**Note:** This property is named **oauth2PermissionScopes** in v1.0.| +|publishedPermissionScopes|[permissionScope](permissionscope.md) collection|The delegated permissions exposed by the application. For more information, see the **oauth2PermissionScopes** property on the [application](application.md) entity's **api** property. Not nullable.
**Note:** This property is named **oauth2PermissionScopes** in v1.0.

These scopes and **appRoles** share a default limit of 700 permission definitions per service principal. Enabled and disabled definitions both count. For counting rules, behavior for existing objects above the limit, and design guidance, see [App role limits](/entra/identity-platform/howto-add-app-roles-in-apps#app-role-limits).| |publisherName| String | The name of the Microsoft Entra tenant that published the application. | |replyUrls|String collection|The URLs that user tokens are sent to for sign in with the associated application, or the redirect URIs that OAuth 2.0 authorization codes and access tokens are sent to for the associated application. Not nullable. | |samlMetadataUrl|String|The url where the service exposes SAML metadata for federation.| diff --git a/api-reference/v1.0/resources/apiapplication.md b/api-reference/v1.0/resources/apiapplication.md index 9b9665d4a3d..0d8d50a6b91 100644 --- a/api-reference/v1.0/resources/apiapplication.md +++ b/api-reference/v1.0/resources/apiapplication.md @@ -20,7 +20,7 @@ Specifies settings for an [application](application.md) that implements a web AP |:---------------|:--------|:----------| |acceptMappedClaims| Boolean | When `true`, allows an application to use claims mapping without specifying a custom signing key. | |knownClientApplications| Guid collection |Used for bundling consent if you have a solution that contains two parts: a client app and a custom web API app. If you set the appID of the client app to this value, the user only consents once to the client app. Microsoft Entra ID knows that consenting to the client means implicitly consenting to the web API and automatically provisions service principals for both APIs at the same time. Both the client and the web API app must be registered in the same tenant.| -|oauth2PermissionScopes| [permissionScope](permissionscope.md) collection | The definition of the delegated permissions exposed by the web API represented by this application registration. These delegated permissions may be requested by a client application, and may be granted by users or administrators during consent. Delegated permissions are sometimes referred to as OAuth 2.0 scopes. | +|oauth2PermissionScopes| [permissionScope](permissionscope.md) collection | The definition of the delegated permissions exposed by the web API represented by this application registration. These delegated permissions may be requested by a client application, and may be granted by users or administrators during consent. Delegated permissions are sometimes referred to as OAuth 2.0 scopes.

These scopes and the application's **appRoles** share a default limit of 700 permission definitions per application. Enabled and disabled definitions both count. For counting rules, behavior for existing objects above the limit, and design guidance, see [App role limits](/entra/identity-platform/howto-add-app-roles-in-apps#app-role-limits). | |preAuthorizedApplications| [preAuthorizedApplication](preauthorizedapplication.md) collection | Lists the client applications that are preauthorized with the specified delegated permissions to access this application's APIs. Users aren't required to consent to any preauthorized application (for the permissions specified). However, any other permissions not listed in preAuthorizedApplications (requested through incremental consent for example) will require user consent. | |requestedAccessTokenVersion| Int32 | Specifies the access token version expected by this resource. This changes the version and format of the JWT produced independent of the endpoint or client used to request the access token.

The endpoint used, v1.0 or v2.0, is chosen by the client and only impacts the version of id_tokens. Resources need to explicitly configure **requestedAccessTokenVersion** to indicate the supported access token format.

Possible values for **requestedAccessTokenVersion** are `1`, `2`, or `null`. If the value is `null`, this defaults to `1`, which corresponds to the v1.0 endpoint.

If **signInAudience** on the application is configured as `AzureADandPersonalMicrosoftAccount` or `PersonalMicrosoftAccount`, the value for this property must be `2`. | diff --git a/api-reference/v1.0/resources/application.md b/api-reference/v1.0/resources/application.md index 780b48344a6..2363df4293d 100644 --- a/api-reference/v1.0/resources/application.md +++ b/api-reference/v1.0/resources/application.md @@ -68,7 +68,7 @@ This resource supports: | api | [apiApplication](apiapplication.md) | Specifies settings for an application that implements a web API. | | appId | String | The unique identifier for the application that is assigned to an application by Microsoft Entra ID. Not nullable. Read-only. Alternate key. Supports `$filter` (`eq`). | | applicationTemplateId | String | Unique identifier of the [applicationTemplate](../resources/applicationtemplate.md). Supports `$filter` (`eq`, `not`, `ne`). Read-only. `null` if the app wasn't created from an application template.| -| appRoles | [appRole](approle.md) collection | The collection of roles defined for the application. With [app role assignments](approleassignment.md), these roles can be assigned to users, groups, or service principals associated with other applications. Not nullable. | +| appRoles | [appRole](approle.md) collection | The collection of roles defined for the application. With [app role assignments](approleassignment.md), these roles can be assigned to users, groups, or service principals associated with other applications. Not nullable.

App roles and exposed delegated permission scopes (**api.oauth2PermissionScopes**) share a default limit of 700 permission definitions per application. Enabled and disabled definitions both count. This limit is separate from the aggregate 1,200-entry application manifest limit and from app role assignment limits. For counting rules, behavior for existing objects above the limit, and design guidance, see [App role limits](/entra/identity-platform/howto-add-app-roles-in-apps#app-role-limits). | |authenticationBehaviors|[authenticationBehaviors](../resources/authenticationbehaviors.md)| The set of breaking change behaviors related to token issuance that are configured for the application. Authentication behaviors are unset by default (`null`) and must be explicitly enabled or disabled. Nullable. Returned only on `$select`. Requires `$select` to retrieve.

For more information about authentication behaviors, see [Manage application authenticationBehaviors](/graph/applications-authenticationbehaviors).| |certification|[certification](certification.md)|Specifies the certification status of the application.| |createdByAppId|String|The **appId** of the application that created this application. Set internally by Microsoft Entra ID. Read-only.| diff --git a/api-reference/v1.0/resources/serviceprincipal.md b/api-reference/v1.0/resources/serviceprincipal.md index 2a724be8bed..744e9df685b 100644 --- a/api-reference/v1.0/resources/serviceprincipal.md +++ b/api-reference/v1.0/resources/serviceprincipal.md @@ -83,7 +83,7 @@ This resource supports using [delta query](/graph/delta-query-overview) to track |applicationTemplateId|String|Unique identifier of the [applicationTemplate](../resources/applicationtemplate.md). Supports `$filter` (`eq`, `not`, `ne`). Read-only. `null` if the service principal wasn't created from an application template.| |appOwnerOrganizationId|Guid|Contains the tenant ID where the application is registered. This is applicable only to service principals backed by applications. Supports `$filter` (`eq`, `ne`, `NOT`, `ge`, `le`).| |appRoleAssignmentRequired|Boolean|Specifies whether users or other service principals need to be granted an app role assignment for this service principal before users can sign in or apps can get tokens. The default value is `false`. Not nullable.

Supports `$filter` (`eq`, `ne`, `NOT`). | -|appRoles|[appRole](approle.md) collection|The roles exposed by the application that's linked to this service principal. For more information, see the **appRoles** property definition on the [application](application.md) entity. Not nullable. | +|appRoles|[appRole](approle.md) collection|The roles exposed by the application that's linked to this service principal. For more information, see the **appRoles** property definition on the [application](application.md) entity. Not nullable.

App roles and exposed delegated permission scopes (**oauth2PermissionScopes**) share a default limit of 700 permission definitions per service principal, including definitions inherited from the application and definitions added directly to the service principal. Enabled and disabled definitions both count. This limit counts definitions, not app role assignments. For counting rules, behavior for existing objects above the limit, and design guidance, see [App role limits](/entra/identity-platform/howto-add-app-roles-in-apps#app-role-limits). | |createdByAppId|String|The **appId** of the application that created this service principal. Set internally by Microsoft Entra ID. Read-only.| |customSecurityAttributes|[customSecurityAttributeValue](../resources/customsecurityattributevalue.md)|An open complex type that holds the value of a custom security attribute that is assigned to a directory object. Nullable.

Requires `$select` to retrieve. Supports `$filter` (`eq`, `ne`, `not`, `startsWith`). Filter value is case sensitive.
  • To read this property, the calling app must be assigned the *CustomSecAttributeAssignment.Read.All* permission. To write this property, the calling app must be assigned the *CustomSecAttributeAssignment.ReadWrite.All* permissions.
  • To read or write this property in delegated scenarios, the admin must be assigned the *Attribute Assignment Administrator* role.| | deletedDateTime | DateTimeOffset | The date and time the service principal was deleted. Read-only. | @@ -98,7 +98,7 @@ This resource supports using [delta query](/graph/delta-query-overview) to track |logoutUrl|String| Specifies the URL that the Microsoft's authorization service uses to sign out a user using OpenID Connect [front-channel](https://openid.net/specs/openid-connect-frontchannel-1_0.html), [back-channel](https://openid.net/specs/openid-connect-backchannel-1_0.html), or SAML sign out protocols.| |notes|String|Free text field to capture information about the service principal, typically used for operational purposes. Maximum allowed size is 1,024 characters.| |notificationEmailAddresses|String collection|Specifies the list of email addresses where Microsoft Entra ID sends a notification when the active certificate is near the expiration date. This is only for the certificates used to sign the SAML token issued for Microsoft Entra Gallery applications.| -|oauth2PermissionScopes|[permissionScope](permissionScope.md) collection|The delegated permissions exposed by the application. For more information, see the **oauth2PermissionScopes** property on the [application](application.md) entity's **api** property. Not nullable.| +|oauth2PermissionScopes|[permissionScope](permissionScope.md) collection|The delegated permissions exposed by the application. For more information, see the **oauth2PermissionScopes** property on the [application](application.md) entity's **api** property. Not nullable.

    These scopes and **appRoles** share a default limit of 700 permission definitions per service principal. Enabled and disabled definitions both count. For counting rules, behavior for existing objects above the limit, and design guidance, see [App role limits](/entra/identity-platform/howto-add-app-roles-in-apps#app-role-limits).| | passwordCredentials | [passwordCredential](passwordcredential.md) collection|The collection of password credentials associated with the application. Not nullable.| |preferredSingleSignOnMode|string|Specifies the single sign-on mode configured for this application. Microsoft Entra ID uses the preferred single sign-on mode to launch the application from Microsoft 365 or the My Apps portal. The supported values are `password`, `saml`, `notSupported`, and `oidc`. **Note:** This field might be `null` for older SAML apps and for OIDC applications where it isn't set automatically.| |preferredTokenSigningKeyThumbprint|String|This property can be used on SAML applications (apps that have **preferredSingleSignOnMode** set to `saml`) to control which certificate is used to sign the SAML responses. For applications that aren't SAML, don't write or otherwise rely on this property.| From 57741d6e6741f157587e80744375a014689f3d8d Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 28 Sep 2026 19:14:05 -0600 Subject: [PATCH 168/189] Update reference TOC (#29647) Co-authored-by: Microsoft Graph DevX Tooling From 426835890cabdc6541e823a03211ac3d07cc7fba Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 28 Sep 2026 19:14:24 -0600 Subject: [PATCH 169/189] Update generated permissions tables with build 244887 (#29645) Co-authored-by: Microsoft Graph DevX Tooling From c339ae55ed4dadc337956cf8c7eafcf1d3f159d5 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 28 Sep 2026 19:14:43 -0600 Subject: [PATCH 170/189] Update reference TOC (#29639) Co-authored-by: Microsoft Graph DevX Tooling From 648d70686786ea0adf5fea9e4d959361874c3ec0 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 28 Sep 2026 19:15:00 -0600 Subject: [PATCH 171/189] Update generated permissions tables with build 244172 (#29629) Co-authored-by: Microsoft Graph DevX Tooling From b856d7e93d32f42cf81289d801874c14b22ed089 Mon Sep 17 00:00:00 2001 From: Dan Winter Date: Mon, 28 Sep 2026 21:15:36 -0400 Subject: [PATCH 172/189] docs: API reference for isPatternToken (Microsoft.FileServices) (#29637) * docs: add isPatternToken to fileStorageContainerCustomPropertyValue Documents the isPatternToken property added to microsoft.graph.fileStorageContainerCustomPropertyValue (Microsoft.FileServices), promoted to Prod in both beta and v1.0. - Resource pages: add property + JSON representation entry - API operation pages: add isPatternToken to creatable/updatable property tables - Changelog: Microsoft.FileServices.json (beta + v1.0 records) - What's New: September 2026 GA and preview sections Schema PR: https://dev.azure.com/msazure/One/_git/AD-AggregatorService-Workloads/pullrequest/17270802 API review PR: https://dev.azure.com/msazure/One/_git/AD-AggregatorService-Workloads/pullrequest/17212260 Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply batched suggestions from code review Co-authored-by: Jarbas Horst <26866873+JarbasHorst@users.noreply.github.com> * Update whats-new-overview.md * Apply batched suggestions from code review Co-authored-by: Jarbas Horst <26866873+JarbasHorst@users.noreply.github.com> * Update filestoragecontainer-update-customproperty.md * Update filestoragecontainer-post-customproperty.md * Fix order of properties in JSON example * Update filestoragecontainer-post-customproperty.md * Update filestoragecontainer-update-customproperty.md * Update filestoragecontainercustompropertyvalue.md * Update filestoragecontainercustompropertyvalue.md * Update GA promotion dates Co-authored-by: JarbasHorst <26866873+JarbasHorst@users.noreply.github.com> * Update filestoragecontainer-post-customproperty.md * Update filestoragecontainer-update-customproperty.md --------- Co-authored-by: Dan Winter Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Jarbas Horst <26866873+JarbasHorst@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> --- ...ilestoragecontainer-post-customproperty.md | 3 +- ...estoragecontainer-update-customproperty.md | 5 +-- ...filestoragecontainercustompropertyvalue.md | 6 ++-- ...ilestoragecontainer-post-customproperty.md | 3 +- ...estoragecontainer-update-customproperty.md | 5 +-- ...filestoragecontainercustompropertyvalue.md | 8 +++-- changelog/Microsoft.FileServices.json | 36 +++++++++++++++++++ concepts/whats-new-overview.md | 5 +++ 8 files changed, 60 insertions(+), 11 deletions(-) diff --git a/api-reference/beta/api/filestoragecontainer-post-customproperty.md b/api-reference/beta/api/filestoragecontainer-post-customproperty.md index 2b141684e79..899c2e711af 100644 --- a/api-reference/beta/api/filestoragecontainer-post-customproperty.md +++ b/api-reference/beta/api/filestoragecontainer-post-customproperty.md @@ -48,8 +48,9 @@ You can specify the following properties when you create a custom property. |Property|Type|Description| |:---|:---|:---| -|value|String|The value of the custom property. Required.| +|isPatternToken|Boolean|Indicates whether **value** is a `urlTemplate` pattern (for example, a token such as `{itemId}` used to configure redirect behavior when opening files), rather than a literal value that consumers must resolve before use. Optional. The default value is `false`.| |isSearchable|Boolean|A flag to indicate whether the property is searchable. Optional. The default value is `false`.| +|value|String|The value of the custom property. Required.| ## Response diff --git a/api-reference/beta/api/filestoragecontainer-update-customproperty.md b/api-reference/beta/api/filestoragecontainer-update-customproperty.md index 3039491fb69..a9c32bcebd8 100644 --- a/api-reference/beta/api/filestoragecontainer-update-customproperty.md +++ b/api-reference/beta/api/filestoragecontainer-update-customproperty.md @@ -14,7 +14,7 @@ Namespace: microsoft.graph [!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] -Update one or multiple custom properties on a [fileStorageContainer](../resources/filestoragecontainer.md). Only the **value** and **isSearchable** attributes of custom properties can be updated. Only the custom properties specified in the request body are updated. If a custom property specified in the request body doesn't exist on the container, it will be created. +Update one or multiple custom properties on a [fileStorageContainer](../resources/filestoragecontainer.md). Only the **value**, **isSearchable**, and **isPatternToken** attributes of custom properties can be updated. Only the custom properties specified in the request body are updated. If a custom property specified in the request body doesn't exist on the container, it will be created. Updating a custom property to a `null` value deletes the property from the container. @@ -51,8 +51,9 @@ The following properties on custom properties can be modified. |Property|Type|Description| |:---|:---|:---| -|value|String|The value of the custom property.| +|isPatternToken|Boolean|Indicates whether **value** is a `urlTemplate` pattern (for example, a token such as `{itemId}` used to configure redirect behavior when opening files), rather than a literal value that consumers must resolve before use. | |isSearchable|Boolean|Indicates whether the property is searchable.| +|value|String|The value of the custom property.| ## Response diff --git a/api-reference/beta/resources/filestoragecontainercustompropertyvalue.md b/api-reference/beta/resources/filestoragecontainercustompropertyvalue.md index 47bf66f89ff..f2743e44a2b 100644 --- a/api-reference/beta/resources/filestoragecontainercustompropertyvalue.md +++ b/api-reference/beta/resources/filestoragecontainercustompropertyvalue.md @@ -21,6 +21,7 @@ Contains the custom property values that are stored in a [fileStorageContainerCu ## Properties |Property|Type|Description| |:---|:---|:---| +|isPatternToken|Boolean|Indicates whether **value** is a `urlTemplate` pattern (for example, a token such as `{itemId}` used to configure redirect behavior when opening files), rather than a literal value that consumers must resolve before use. Optional. The default value is `false`.| |isSearchable|Boolean|Indicates whether the custom property is searchable. Optional. The default value is `false`.| |value|String|The value of the custom property. Required.| @@ -39,8 +40,9 @@ The following JSON representation shows the resource type. ``` json { "@odata.type": "#microsoft.graph.fileStorageContainerCustomPropertyValue", - "value": "String", - "isSearchable": "Boolean" + "isPatternToken": "Boolean", + "isSearchable": "Boolean", + "value": "String" } ``` diff --git a/api-reference/v1.0/api/filestoragecontainer-post-customproperty.md b/api-reference/v1.0/api/filestoragecontainer-post-customproperty.md index 8cd914497d0..b5123e6a795 100644 --- a/api-reference/v1.0/api/filestoragecontainer-post-customproperty.md +++ b/api-reference/v1.0/api/filestoragecontainer-post-customproperty.md @@ -45,8 +45,9 @@ You can specify the following properties when you create a custom property. |Property|Type|Description| |:---|:---|:---| -|value|String|The value of the custom property. Required.| +|isPatternToken|Boolean|Indicates whether **value** is a `urlTemplate` pattern (for example, a token such as `{itemId}` used to configure redirect behavior when opening files), rather than a literal value that consumers must resolve before use. Optional. The default value is `false`.| |isSearchable|Boolean|A flag to indicate whether the property is searchable. Optional. The default value is `false`.| +|value|String|The value of the custom property. Required.| ## Response diff --git a/api-reference/v1.0/api/filestoragecontainer-update-customproperty.md b/api-reference/v1.0/api/filestoragecontainer-update-customproperty.md index c5131941fcf..683f55f607f 100644 --- a/api-reference/v1.0/api/filestoragecontainer-update-customproperty.md +++ b/api-reference/v1.0/api/filestoragecontainer-update-customproperty.md @@ -12,7 +12,7 @@ ms.date: 09/26/2024 Namespace: microsoft.graph -Update one or multiple custom properties on a [fileStorageContainer](../resources/filestoragecontainer.md). Only the **value** and **isSearchable** attributes of custom properties can be updated. Only the custom properties specified in the request body are updated. If a custom property specified in the request body doesn't exist on the container, it will be created. +Update one or multiple custom properties on a [fileStorageContainer](../resources/filestoragecontainer.md). Only the **value**, **isSearchable**, and **isPatternToken** attributes of custom properties can be updated. Only the custom properties specified in the request body are updated. If a custom property specified in the request body doesn't exist on the container, it will be created. Updating a custom property to a `null` value deletes the property from the container. @@ -49,8 +49,9 @@ The following properties on custom properties can be modified. |Property|Type|Description| |:---|:---|:---| -|value|String|The value of the custom property.| +|isPatternToken|Boolean|Indicates whether **value** is a `urlTemplate` pattern (for example, a token such as `{itemId}` used to configure redirect behavior when opening files), rather than a literal value that consumers must resolve before use.| |isSearchable|Boolean|Indicates whether the property is searchable.| +|value|String|The value of the custom property.| ## Response diff --git a/api-reference/v1.0/resources/filestoragecontainercustompropertyvalue.md b/api-reference/v1.0/resources/filestoragecontainercustompropertyvalue.md index 94aa6a78353..b1dc6aab82f 100644 --- a/api-reference/v1.0/resources/filestoragecontainercustompropertyvalue.md +++ b/api-reference/v1.0/resources/filestoragecontainercustompropertyvalue.md @@ -5,7 +5,7 @@ author: "tonchan-msft" ms.localizationpriority: medium ms.subservice: "onedrive" doc_type: resourcePageType -ms.date: 05/24/2024 +ms.date: 09/25/2026 --- # fileStorageContainerCustomPropertyValue resource type @@ -18,6 +18,7 @@ Contains the custom property values stored in a [fileStorageContainerCustomPrope ## Properties |Property|Type|Description| |:---|:---|:---| +|isPatternToken|Boolean|Indicates whether **value** is a `urlTemplate` pattern (for example, a token such as `{itemId}` used to configure redirect behavior when opening files), rather than a literal value that consumers must resolve before use. Optional. The default value is `false`.| |isSearchable|Boolean|Indicates whether the custom property is searchable. Optional. The default value is `false`.| |value|String|Value of the custom property. Required.| @@ -35,8 +36,9 @@ The following JSON representation shows the resource type. ``` json { "@odata.type": "#microsoft.graph.fileStorageContainerCustomPropertyValue", - "value": "String", - "isSearchable": "Boolean" + "isPatternToken": "Boolean", + "isSearchable": "Boolean", + "value": "String" } ``` diff --git a/changelog/Microsoft.FileServices.json b/changelog/Microsoft.FileServices.json index 8da0b644fc2..9bb454a66ea 100644 --- a/changelog/Microsoft.FileServices.json +++ b/changelog/Microsoft.FileServices.json @@ -1,5 +1,41 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "dbb55514-22af-42cd-bfb2-24cc634d50bb", + "ApiChange": "Property", + "ChangedApiName": "isPatternToken", + "ChangeType": "Addition", + "Description": "Added the **isPatternToken** property to the [fileStorageContainerCustomPropertyValue](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainercustompropertyvalue?view=graph-rest-beta) resource.", + "Target": "fileStorageContainerCustomPropertyValue" + } + ], + "Id": "dbb55514-22af-42cd-bfb2-24cc634d50bb", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-23T22:31:57.8802635Z", + "WorkloadArea": "Files", + "SubArea": "" + }, + { + "ChangeList": [ + { + "Id": "8eb79a5b-1816-4896-a341-f6574cd40f5f", + "ApiChange": "Property", + "ChangedApiName": "isPatternToken", + "ChangeType": "Addition", + "Description": "Added the **isPatternToken** property to the [fileStorageContainerCustomPropertyValue](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainercustompropertyvalue?view=graph-rest-1.0) resource.", + "Target": "fileStorageContainerCustomPropertyValue" + } + ], + "Id": "8eb79a5b-1816-4896-a341-f6574cd40f5f", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-09-23T22:31:57.8809144Z", + "WorkloadArea": "Files", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 164a092244c..6b5fdf7e51c 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -20,6 +20,10 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what ## September 2026: New and generally available +### Files + +Added the **isPatternToken** property to the [fileStorageContainerCustomPropertyValue](/graph/api/resources/filestoragecontainercustompropertyvalue) resource to indicate whether a custom property value is a `urlTemplate` pattern that consumers must resolve before use, rather than a literal value. + ### Groups Added the **onPremisesExtensionAttributes** property to the [group](/graph/api/resources/group) resource. Use it to access extension attributes 1-15 synchronized from on-premises Active Directory. @@ -67,6 +71,7 @@ Added the **isDisabled** property to the [agentIdentityBlueprint](/graph/api/res ### Files - Added the **userObjectId** parameter to the [getByUser](/graph/api/filestoragecontainer-getbyuser?view=graph-rest-beta&preserve-view=true) method on the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource to retrieve a list of file storage containers owned by a user by passing the user's Microsoft Entra ID object ID. +- Added the **isPatternToken** property to the [fileStorageContainerCustomPropertyValue](/graph/api/resources/filestoragecontainercustompropertyvalue?view=graph-rest-beta&preserve-view=true) resource to indicate whether a custom property value is a `urlTemplate` pattern that consumers must resolve before use, rather than a literal value. ### Identity and access | Directory management From a47698c445bd1d87ee8a24026b7c87d9a5229ba5 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 28 Sep 2026 19:16:01 -0600 Subject: [PATCH 173/189] Update generated permissions tables with build 244633 (#29638) Co-authored-by: Microsoft Graph DevX Tooling From 67682b6c559b4a0ec6e661dddb9d4b6447a9e426 Mon Sep 17 00:00:00 2001 From: Zhengning-Lu <74710380+Zhengning-Lu@users.noreply.github.com> Date: Mon, 28 Sep 2026 18:16:32 -0700 Subject: [PATCH 174/189] Document Secure by Default configuration for protection scopes (#29635) * Document Secure by Default configuration Add policyConfiguration and errorSettings resource docs, expose the configuration on policy scopes and compute responses, and update the TOC, changelog, and What's New. * Address review feedback on complex-type resource docs * Address content review feedback Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --- .../tenantprotectionscopecontainer-compute.md | 11 +++- .../userprotectionscopecontainer-compute.md | 11 +++- api-reference/beta/resources/errorsettings.md | 48 ++++++++++++++ .../beta/resources/policyconfiguration.md | 50 ++++++++++++++ .../beta/resources/policyscopebase.md | 6 +- .../beta/resources/policytenantscope.md | 4 ++ .../beta/resources/policyuserscope.md | 6 +- api-reference/beta/toc/toc.mapping.json | 2 + .../Microsoft.DataClassificationService.json | 66 +++++++++++++++++++ concepts/whats-new-overview.md | 2 + 10 files changed, 200 insertions(+), 6 deletions(-) create mode 100644 api-reference/beta/resources/errorsettings.md create mode 100644 api-reference/beta/resources/policyconfiguration.md diff --git a/api-reference/beta/api/tenantprotectionscopecontainer-compute.md b/api-reference/beta/api/tenantprotectionscopecontainer-compute.md index a5d4eb58cbc..15dd709213c 100644 --- a/api-reference/beta/api/tenantprotectionscopecontainer-compute.md +++ b/api-reference/beta/api/tenantprotectionscopecontainer-compute.md @@ -88,7 +88,7 @@ Content-type: application/json ### Response -The following example shows the response. It indicates that for uploads to `public.contoso.com`, there's a policy applicable to "All" users (tenant scope) that requires inline evaluation and triggers a browser restriction. +The following example shows the response. It includes the effective Secure by Default configuration, which indicates that incomplete policy evaluations are audited and blocked. > **Note:** The response object shown here might be shortened for readability. @@ -117,7 +117,14 @@ Content-type: application/json } ], "policyActions": [ - ] + ], + "policyConfiguration": { + "errorSettings": { + "errorAction": "audit,block", + "isEnabled": true + }, + "lastModifiedDateTime": "2026-09-22T12:00:00Z" + } } ] } diff --git a/api-reference/beta/api/userprotectionscopecontainer-compute.md b/api-reference/beta/api/userprotectionscopecontainer-compute.md index d8658e91530..76fa87525ca 100644 --- a/api-reference/beta/api/userprotectionscopecontainer-compute.md +++ b/api-reference/beta/api/userprotectionscopecontainer-compute.md @@ -100,7 +100,7 @@ Client-Request-Id: 50dc805c-3af4-42d9-ad16-a746235cc736 ### Response -The following example shows the response. It indicates that for the `uploadText` activity to `public.contoso.com`, policies require inline evaluation and trigger a `browserRestriction` action (likely blocking uploads based on sensitive content). +The following example shows the response. It includes the effective Secure by Default configuration, which indicates that incomplete policy evaluations are audited and blocked. > **Note:** The response object shown here might be shortened for readability. @@ -120,7 +120,14 @@ Client-Request-Id: 50dc805c-3af4-42d9-ad16-a746235cc736 "value": "83ef208a-0396-4893-9d4f-d36efbffc8bd" } ], - "policyActions": [] + "policyActions": [], + "policyConfiguration": { + "errorSettings": { + "errorAction": "audit,block", + "isEnabled": true + }, + "lastModifiedDateTime": "2026-09-22T12:00:00Z" + } }, { "activities": "uploadText", diff --git a/api-reference/beta/resources/errorsettings.md b/api-reference/beta/resources/errorsettings.md new file mode 100644 index 00000000000..e427568c8e2 --- /dev/null +++ b/api-reference/beta/resources/errorsettings.md @@ -0,0 +1,48 @@ +--- +title: "errorSettings resource type" +description: "Represents settings that control enforcement behavior when policy evaluation can't be completed." +author: "zhengnlu" +ms.date: 09/23/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# errorSettings resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents settings that control enforcement behavior when policy evaluation can't be completed. This type is used by the **errorSettings** property of [policyConfiguration](../resources/policyconfiguration.md). + +## Methods + +None. + +## Properties + +| Property | Type | Description | +| :--- | :--- | :--- | +| errorAction | [errorActions](../resources/enums.md#erroractions-values) | The action that the enforcement plane takes when policy evaluation can't be completed. This flagged enumeration allows multiple members to be selected simultaneously. The possible values are: `none`, `audit`, `block`, `unknownFutureValue`. Don't combine `none` with another value. | +| isEnabled | Boolean | Indicates whether Secure by Default is enabled for the protection scope. | + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +```json +{ + "@odata.type": "#microsoft.graph.errorSettings", + "errorAction": "String", + "isEnabled": "Boolean" +} +``` diff --git a/api-reference/beta/resources/policyconfiguration.md b/api-reference/beta/resources/policyconfiguration.md new file mode 100644 index 00000000000..41b2fbcb695 --- /dev/null +++ b/api-reference/beta/resources/policyconfiguration.md @@ -0,0 +1,50 @@ +--- +title: "policyConfiguration resource type" +description: "Represents the effective configuration that applies to policy evaluation scenarios." +author: "zhengnlu" +ms.date: 09/23/2026 +ms.localizationpriority: medium +ms.subservice: "security" +doc_type: resourcePageType +--- + +# policyConfiguration resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Represents the effective configuration that applies to policy evaluation scenarios. This type is used by the **policyConfiguration** property of [policyScopeBase](../resources/policyscopebase.md). + +## Methods + +None. + +## Properties + +| Property | Type | Description | +| :--- | :--- | :--- | +| errorSettings | [errorSettings](../resources/errorsettings.md) | Settings that control enforcement behavior when policy evaluation can't be completed. | +| lastModifiedDateTime | DateTimeOffset | The date and time when the effective policy configuration was last modified. The timestamp is always in UTC. | + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +```json +{ + "@odata.type": "#microsoft.graph.policyConfiguration", + "errorSettings": { + "@odata.type": "#microsoft.graph.errorSettings" + }, + "lastModifiedDateTime": "DateTimeOffset" +} +``` diff --git a/api-reference/beta/resources/policyscopebase.md b/api-reference/beta/resources/policyscopebase.md index 9398a8360a9..b4f3c3f9d70 100644 --- a/api-reference/beta/resources/policyscopebase.md +++ b/api-reference/beta/resources/policyscopebase.md @@ -27,6 +27,7 @@ Used as a base type for more specific policy scopes like [policyTenantScope](../ |locationExclusions|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations excluded from the policy scope. When specified, the effective scope is the set of locations in **locations** minus the locations in **locationExclusions**. Required.| |locations|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|The locations (like domains or URLs) to be protected. Required.| |policyActions|Collection([microsoft.graph.dlpActionInfo](../resources/dlpactioninfo.md))|The enforcement actions to take if the policy conditions are met within this scope. Required.| +|policyConfiguration|[policyConfiguration](../resources/policyconfiguration.md)|The effective configuration for policy evaluation scenarios. This property can be omitted or `null` when no configuration is available or applicable.| ## Relationships @@ -60,6 +61,9 @@ The following JSON representation shows the resource type. { "@odata.type": "microsoft.graph.dlpActionInfo" } - ] + ], + "policyConfiguration": { + "@odata.type": "#microsoft.graph.policyConfiguration" + } } ``` diff --git a/api-reference/beta/resources/policytenantscope.md b/api-reference/beta/resources/policytenantscope.md index db3a4fdb367..2ff7b00918d 100644 --- a/api-reference/beta/resources/policytenantscope.md +++ b/api-reference/beta/resources/policytenantscope.md @@ -29,6 +29,7 @@ Inherits from [policyScopeBase](../resources/policyscopebase.md). |locationExclusions|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations excluded from the tenant-level policy scope. When specified, the effective scope is the set of locations in **locations** minus the locations in **locationExclusions**. Inherited from `policyScopeBase`. Required.| |locations|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations protected at the tenant level. Inherited from `policyScopeBase`. Required.| |policyActions|Collection([microsoft.graph.dlpActionInfo](../resources/dlpactioninfo.md))|Enforcement actions at the tenant level. Inherited from `policyScopeBase`. Required.| +|policyConfiguration|[policyConfiguration](../resources/policyconfiguration.md)|The effective configuration for policy evaluation scenarios. This property can be omitted or `null` when no configuration is available or applicable. Inherited from `policyScopeBase`.| |policyScope|[microsoft.graph.policyBinding](../resources/policybinding.md)|Specifies the users and groups included in or excluded from this tenant-level policy scope.| ## Relationships @@ -64,6 +65,9 @@ The following JSON representation shows the resource type. "@odata.type": "microsoft.graph.dlpActionInfo" } ], + "policyConfiguration": { + "@odata.type": "#microsoft.graph.policyConfiguration" + }, "policyScope": { "@odata.type": "microsoft.graph.policyBinding" } diff --git a/api-reference/beta/resources/policyuserscope.md b/api-reference/beta/resources/policyuserscope.md index b1eba485c46..742006cfcc1 100644 --- a/api-reference/beta/resources/policyuserscope.md +++ b/api-reference/beta/resources/policyuserscope.md @@ -29,6 +29,7 @@ Inherits from [policyScopeBase](../resources/policyscopebase.md). |locationExclusions|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations excluded from the user-level policy scope. When specified, the effective scope is the set of locations in **locations** minus the locations in **locationExclusions**. Inherited from `policyScopeBase`. Required.| |locations|Collection([microsoft.graph.policyLocation](../resources/policylocation.md))|Locations protected for this user. Inherited from `policyScopeBase`. Required.| |policyActions|Collection([microsoft.graph.dlpActionInfo](../resources/dlpactioninfo.md))|Enforcement actions applicable to this user. Inherited from `policyScopeBase`. Required.| +|policyConfiguration|[policyConfiguration](../resources/policyconfiguration.md)|The effective configuration for policy evaluation scenarios. This property can be omitted or `null` when no configuration is available or applicable. Inherited from `policyScopeBase`.| ## Relationships @@ -62,6 +63,9 @@ The following JSON representation shows the resource type. { "@odata.type": "microsoft.graph.dlpActionInfo" } - ] + ], + "policyConfiguration": { + "@odata.type": "#microsoft.graph.policyConfiguration" + } } ``` diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 0c2a43c99d5..6f1acd5286d 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -2967,6 +2967,7 @@ "customMetadataDictionary", "deviceMetadata", "dlpActionInfo", + "errorSettings", "evaluationErrorDetail", "evaluationIncompleteActivityMetadata", "evaluationScope", @@ -2979,6 +2980,7 @@ "notifyUserAction", "operatingSystemSpecifications", "policyBinding", + "policyConfiguration", "policyLocation", "policyLocationApplication", "policyLocationDomain", diff --git a/changelog/Microsoft.DataClassificationService.json b/changelog/Microsoft.DataClassificationService.json index 7e4a1aa29dd..ca8c283c7d4 100644 --- a/changelog/Microsoft.DataClassificationService.json +++ b/changelog/Microsoft.DataClassificationService.json @@ -1,5 +1,71 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "ee73f8d3-0ced-448f-80d0-289f07fa667d", + "ApiChange": "ComplexType", + "ChangedApiName": "errorSettings", + "ChangeType": "Addition", + "Description": "Added the [errorSettings](https://learn.microsoft.com/en-us/graph/api/resources/errorsettings?view=graph-rest-beta) complex type to represent enforcement behavior when policy evaluation can't be completed.", + "Target": "errorSettings" + }, + { + "Id": "ee73f8d3-0ced-448f-80d0-289f07fa667d", + "ApiChange": "Property", + "ChangedApiName": "errorAction", + "ChangeType": "Addition", + "Description": "Added the **errorAction** property to the [errorSettings](https://learn.microsoft.com/en-us/graph/api/resources/errorsettings?view=graph-rest-beta) complex type.", + "Target": "errorSettings" + }, + { + "Id": "ee73f8d3-0ced-448f-80d0-289f07fa667d", + "ApiChange": "Property", + "ChangedApiName": "isEnabled", + "ChangeType": "Addition", + "Description": "Added the **isEnabled** property to the [errorSettings](https://learn.microsoft.com/en-us/graph/api/resources/errorsettings?view=graph-rest-beta) complex type.", + "Target": "errorSettings" + }, + { + "Id": "ee73f8d3-0ced-448f-80d0-289f07fa667d", + "ApiChange": "ComplexType", + "ChangedApiName": "policyConfiguration", + "ChangeType": "Addition", + "Description": "Added the [policyConfiguration](https://learn.microsoft.com/en-us/graph/api/resources/policyconfiguration?view=graph-rest-beta) complex type to represent configuration that applies to policy evaluation scenarios.", + "Target": "policyConfiguration" + }, + { + "Id": "ee73f8d3-0ced-448f-80d0-289f07fa667d", + "ApiChange": "Property", + "ChangedApiName": "errorSettings", + "ChangeType": "Addition", + "Description": "Added the **errorSettings** property to the [policyConfiguration](https://learn.microsoft.com/en-us/graph/api/resources/policyconfiguration?view=graph-rest-beta) complex type.", + "Target": "policyConfiguration" + }, + { + "Id": "ee73f8d3-0ced-448f-80d0-289f07fa667d", + "ApiChange": "Property", + "ChangedApiName": "lastModifiedDateTime", + "ChangeType": "Addition", + "Description": "Added the **lastModifiedDateTime** property to the [policyConfiguration](https://learn.microsoft.com/en-us/graph/api/resources/policyconfiguration?view=graph-rest-beta) complex type.", + "Target": "policyConfiguration" + }, + { + "Id": "ee73f8d3-0ced-448f-80d0-289f07fa667d", + "ApiChange": "Property", + "ChangedApiName": "policyConfiguration", + "ChangeType": "Addition", + "Description": "Added the **policyConfiguration** property to the [policyScopeBase](https://learn.microsoft.com/en-us/graph/api/resources/policyscopebase?view=graph-rest-beta) resource type to expose the effective Secure by Default configuration returned by the protection scope APIs.", + "Target": "policyScopeBase" + } + ], + "Id": "ee73f8d3-0ced-448f-80d0-289f07fa667d", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-23T18:06:29.0888048Z", + "WorkloadArea": "Security", + "SubArea": "Data security and compliance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 6b5fdf7e51c..2788c2d4365 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -89,6 +89,8 @@ Added the **sensitivityLabel** property to the [searchHit](/graph/api/resources/ Added the `contentFiltering` member to the [userActivityTypes](/graph/api/resources/enums-security?view=graph-rest-beta&preserve-view=true#useractivitytypes-values) enumeration used by the [compute protection scopes for a user](/graph/api/userprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) and [compute protection scopes for a tenant](/graph/api/tenantprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) APIs, enabling applications to determine whether data loss prevention policies govern content filtering before evaluating content. +Added the **policyConfiguration** property to the [policyScopeBase](/graph/api/resources/policyscopebase?view=graph-rest-beta&preserve-view=true) resource type. Enforcement planes can use the effective Secure by Default configuration returned by the protection scope APIs to determine whether to audit or block content when policy evaluation can't be completed. + Updated the [contentActivity](/graph/api/resources/contentactivity?view=graph-rest-beta&preserve-view=true) resource to support reporting Secure by Default policy evaluations that couldn't be completed. Enforcement planes can submit structured incomplete-inspection reasons through the existing content activity ingestion API. ### Security | Audit log query From 4c088894cff5376f876b8c7b3f126972951a36db Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Mon, 28 Sep 2026 19:16:53 -0600 Subject: [PATCH 175/189] Update reference TOC (#29630) Co-authored-by: Microsoft Graph DevX Tooling From b32a05dbc7b81fe4af3994b8200383f8ff0d13b1 Mon Sep 17 00:00:00 2001 From: lasharma6199068 <278895872+lasharma6199068@users.noreply.github.com> Date: Tue, 29 Sep 2026 06:47:47 +0530 Subject: [PATCH 176/189] V1 Documentation for Anonymous CS Capabilities (#29600) * init * Update reference TOC --------- Co-authored-by: Lavanya Sharma Co-authored-by: Microsoft Graph DevX Tooling --- .../anonymouscalendarsharingfreebusydetail.md | 49 +++++++++++++++++++ ...nonymouscalendarsharingfreebusyreviewer.md | 49 +++++++++++++++++++ .../anonymouscalendarsharingfreebusysimple.md | 49 +++++++++++++++++++ .../v1.0/resources/m365capabilitybase.md | 3 ++ api-reference/v1.0/toc/tenants/toc.yml | 6 +++ api-reference/v1.0/toc/toc.mapping.json | 3 ++ changelog/Microsoft.M365.XTAP.json | 34 +++++++++++++ concepts/whats-new-overview.md | 4 ++ 8 files changed, 197 insertions(+) create mode 100644 api-reference/v1.0/resources/anonymouscalendarsharingfreebusydetail.md create mode 100644 api-reference/v1.0/resources/anonymouscalendarsharingfreebusyreviewer.md create mode 100644 api-reference/v1.0/resources/anonymouscalendarsharingfreebusysimple.md diff --git a/api-reference/v1.0/resources/anonymouscalendarsharingfreebusydetail.md b/api-reference/v1.0/resources/anonymouscalendarsharingfreebusydetail.md new file mode 100644 index 00000000000..e9ee3d2ba3b --- /dev/null +++ b/api-reference/v1.0/resources/anonymouscalendarsharingfreebusydetail.md @@ -0,0 +1,49 @@ +--- +title: "anonymousCalendarSharingFreeBusyDetail resource type" +description: "Represents a capability for anonymous detailed free/busy calendar sharing." +author: "lasharma" +ms.date: 09/16/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# anonymousCalendarSharingFreeBusyDetail resource type + +Namespace: microsoft.graph + +Represents authorization for anonymous external users to view detailed calendar free/busy information, including meeting subject and location. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.anonymousCalendarSharingFreeBusyDetail", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/anonymouscalendarsharingfreebusyreviewer.md b/api-reference/v1.0/resources/anonymouscalendarsharingfreebusyreviewer.md new file mode 100644 index 00000000000..181cff683f9 --- /dev/null +++ b/api-reference/v1.0/resources/anonymouscalendarsharingfreebusyreviewer.md @@ -0,0 +1,49 @@ +--- +title: "anonymousCalendarSharingFreeBusyReviewer resource type" +description: "Represents a capability for anonymous reviewer-level free/busy calendar sharing." +author: "lasharma" +ms.date: 09/16/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# anonymousCalendarSharingFreeBusyReviewer resource type + +Namespace: microsoft.graph + +Represents authorization for anonymous external users to view calendar free/busy information at reviewer fidelity, the most detailed sharing level. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.anonymousCalendarSharingFreeBusyReviewer", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/anonymouscalendarsharingfreebusysimple.md b/api-reference/v1.0/resources/anonymouscalendarsharingfreebusysimple.md new file mode 100644 index 00000000000..5914a6e3ba4 --- /dev/null +++ b/api-reference/v1.0/resources/anonymouscalendarsharingfreebusysimple.md @@ -0,0 +1,49 @@ +--- +title: "anonymousCalendarSharingFreeBusySimple resource type" +description: "Represents a capability for anonymous simple free/busy calendar sharing." +author: "lasharma" +ms.date: 09/16/2026 +ms.localizationpriority: medium +ms.subservice: "entra-sign-in" +doc_type: resourcePageType +--- + +# anonymousCalendarSharingFreeBusySimple resource type + +Namespace: microsoft.graph + +Represents authorization for anonymous external users to view simple calendar free/busy status, shown as busy or free. + +Inherits from [m365CapabilityBase](../resources/m365capabilitybase.md). + +## Methods +This resource is part of a polymorphic collection managed by the [m365CapabilityBase](../resources/m365capabilitybase.md) base type. Operations are performed through the base type endpoints on the [crossTenantAccessPolicyConfigurationDefault](../resources/crosstenantaccesspolicyconfigurationdefault.md) or [crossTenantAccessPolicyConfigurationPartner](../resources/crosstenantaccesspolicyconfigurationpartner.md) resources. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|inboundAccess|[m365CapabilityInboundAccess](../resources/m365capabilityinboundaccess.md)|The inbound access settings for the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|lastModifiedDateTime|DateTimeOffset|The automatically updated last modified timestamp for the capability. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| +|name|String|The name or identifier of the capability. Inherited from [m365CapabilityBase](../resources/m365capabilitybase.md).| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.anonymousCalendarSharingFreeBusySimple", + "name": "String (identifier)", + "lastModifiedDateTime": "String (timestamp)", + "inboundAccess": {"@odata.type": "microsoft.graph.m365CapabilityInboundAccess"} +} +``` diff --git a/api-reference/v1.0/resources/m365capabilitybase.md b/api-reference/v1.0/resources/m365capabilitybase.md index 0aeeace3145..9d283b2d50a 100644 --- a/api-reference/v1.0/resources/m365capabilitybase.md +++ b/api-reference/v1.0/resources/m365capabilitybase.md @@ -17,6 +17,9 @@ Represents an abstract base type for cross-tenant Microsoft 365 capabilities. Th The following types derive from **m365CapabilityBase**: +- [anonymousCalendarSharingFreeBusyDetail](../resources/anonymouscalendarsharingfreebusydetail.md) +- [anonymousCalendarSharingFreeBusyReviewer](../resources/anonymouscalendarsharingfreebusyreviewer.md) +- [anonymousCalendarSharingFreeBusySimple](../resources/anonymouscalendarsharingfreebusysimple.md) - [crossTenantCalendarAvailabilityBasic](../resources/crosstenantcalendaravailabilitybasic.md) - [crossTenantCalendarAvailabilityLimitedDetails](../resources/crosstenantcalendaravailabilitylimiteddetails.md) - [crossTenantCalendarSharingFreeBusyDetail](../resources/crosstenantcalendarsharingfreebusydetail.md) diff --git a/api-reference/v1.0/toc/tenants/toc.yml b/api-reference/v1.0/toc/tenants/toc.yml index 30be07aadf6..dd3db8ced81 100644 --- a/api-reference/v1.0/toc/tenants/toc.yml +++ b/api-reference/v1.0/toc/tenants/toc.yml @@ -126,6 +126,12 @@ items: items: - name: Overview href: ../../resources/m365-cross-tenant-access-policy-overview.md + - name: Anonymous calendar sharing free busy detail + href: ../../resources/anonymouscalendarsharingfreebusydetail.md + - name: Anonymous calendar sharing free busy reviewer + href: ../../resources/anonymouscalendarsharingfreebusyreviewer.md + - name: Anonymous calendar sharing free busy simple + href: ../../resources/anonymouscalendarsharingfreebusysimple.md - name: Cross-tenant calendar availability basic href: ../../resources/crosstenantcalendaravailabilitybasic.md - name: Cross-tenant calendar availability limited details diff --git a/api-reference/v1.0/toc/toc.mapping.json b/api-reference/v1.0/toc/toc.mapping.json index 4d053be2fdc..0a98910f955 100644 --- a/api-reference/v1.0/toc/toc.mapping.json +++ b/api-reference/v1.0/toc/toc.mapping.json @@ -2314,6 +2314,9 @@ "name": "Microsoft 365 capabilities", "overview": "../../resources/m365-cross-tenant-access-policy-overview.md", "resources": [ + "anonymousCalendarSharingFreeBusyDetail", + "anonymousCalendarSharingFreeBusyReviewer", + "anonymousCalendarSharingFreeBusySimple", "crossTenantCalendarAvailabilityBasic", "crossTenantCalendarAvailabilityLimitedDetails", "crossTenantCalendarSharingFreeBusyDetail", diff --git a/changelog/Microsoft.M365.XTAP.json b/changelog/Microsoft.M365.XTAP.json index 2bdb7c59e6e..a88409d46a7 100644 --- a/changelog/Microsoft.M365.XTAP.json +++ b/changelog/Microsoft.M365.XTAP.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "0c0ae1fe-3b89-4b87-a7e0-81804d84b6a1", + "ApiChange": "Resource", + "ChangedApiName": "anonymousCalendarSharingFreeBusyDetail", + "ChangeType": "Addition", + "Description": "Added the [anonymousCalendarSharingFreeBusyDetail](https://learn.microsoft.com/en-us/graph/api/resources/anonymouscalendarsharingfreebusydetail?view=graph-rest-1.0) resource.", + "Target": "anonymousCalendarSharingFreeBusyDetail" + }, + { + "Id": "0c0ae1fe-3b89-4b87-a7e0-81804d84b6a1", + "ApiChange": "Resource", + "ChangedApiName": "anonymousCalendarSharingFreeBusyReviewer", + "ChangeType": "Addition", + "Description": "Added the [anonymousCalendarSharingFreeBusyReviewer](https://learn.microsoft.com/en-us/graph/api/resources/anonymouscalendarsharingfreebusyreviewer?view=graph-rest-1.0) resource.", + "Target": "anonymousCalendarSharingFreeBusyReviewer" + }, + { + "Id": "0c0ae1fe-3b89-4b87-a7e0-81804d84b6a1", + "ApiChange": "Resource", + "ChangedApiName": "anonymousCalendarSharingFreeBusySimple", + "ChangeType": "Addition", + "Description": "Added the [anonymousCalendarSharingFreeBusySimple](https://learn.microsoft.com/en-us/graph/api/resources/anonymouscalendarsharingfreebusysimple?view=graph-rest-1.0) resource.", + "Target": "anonymousCalendarSharingFreeBusySimple" + } + ], + "Id": "0c0ae1fe-3b89-4b87-a7e0-81804d84b6a1", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-09-15T18:20:39.1328015Z", + "WorkloadArea": "Identity and access", + "SubArea": "Identity and sign-in" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 2788c2d4365..ef198d2752f 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -38,6 +38,10 @@ Added the **onPremisesExtensionAttributes** property to the [group](/graph/api/r - [accessReviewInstanceDecisionItemApplyResult](/graph/api/resources/enums#accessreviewinstancedecisionitemapplyresult-values) enumeration type to represent the result of applying a recorded decision to the target resource. - Clarified that the [List resources](/graph/api/accesspackagecatalog-list-resources) method returns SharePoint Online resources only when it's called with delegated permissions. To retrieve SharePoint site information with application permissions, use the [sites: getAllSites](/graph/api/site-getallsites) method. +### Identity and access | Identity and sign-in + +Added the [anonymousCalendarSharingFreeBusyDetail](/graph/api/resources/anonymouscalendarsharingfreebusydetail), [anonymousCalendarSharingFreeBusyReviewer](/graph/api/resources/anonymouscalendarsharingfreebusyreviewer), and [anonymousCalendarSharingFreeBusySimple](/graph/api/resources/anonymouscalendarsharingfreebusysimple) resource types. Use these cross-tenant access policy capabilities to authorize anonymous external users to view calendar free/busy information at different levels of detail. + ### Teamwork and communications | Messaging Updated the [getAllRetainedMessages](/graph/api/channel-getallretainedmessages) method to support exporting retained versions of private-channel messages that were edited or deleted after the tenant completed private-channel storage migration. From 5ed632d48c2188f5b7935473bd5826bbaa8fd168 Mon Sep 17 00:00:00 2001 From: myra-ramdenbourg <108485108+myra-ramdenbourg@users.noreply.github.com> Date: Mon, 28 Sep 2026 18:18:55 -0700 Subject: [PATCH 177/189] Document disableNesting for groups (#29558) * Document disableNesting for groups Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> * Limit disableNesting documentation to beta Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> * Address disableNesting review feedback Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> --------- Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> --- api-reference/beta/resources/group.md | 4 +++- changelog/Microsoft.DirectoryServices.json | 18 ++++++++++++++++++ concepts/whats-new-overview.md | 4 ++++ 3 files changed, 25 insertions(+), 1 deletion(-) diff --git a/api-reference/beta/resources/group.md b/api-reference/beta/resources/group.md index c31ebc6434e..c2463f89340 100644 --- a/api-reference/beta/resources/group.md +++ b/api-reference/beta/resources/group.md @@ -6,7 +6,7 @@ author: "yuhko-msft" ms.reviewer: "mbhargav, khotzteam, aadgroupssg" ms.subservice: "entra-groups" doc_type: resourcePageType -ms.date: 10/04/2024 +ms.date: 09/04/2026 --- # group resource type @@ -160,6 +160,7 @@ name. | | createdDateTime | DateTimeOffset | Timestamp of when the group was created. The value can't be modified and is automatically populated when the group is created. The Timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`.

    Returned by default. Read-only. | | deletedDateTime | DateTimeOffset | For some Microsoft Entra objects (user, group, application), if the object is deleted, it is first logically deleted, and this property is updated with the date and time when the object was deleted. Otherwise this property is null. If the object is restored, this property is updated to `null`. Inherited from [directoryObject](../resources/directoryobject.md). | | description | String | An optional description for the group.

    Returned by default. Supports `$filter` (`eq`, `ne`, `not`, `ge`, `le`, `startsWith`) and `$search`. | +| disableNesting | Boolean | Indicates whether other groups can be added as members of this group. The default value is `false`. When set to `true`, other groups can't be added as members. You can set this property only for security groups that have **isAssignableToRole** set to `false`. The property is read-only for Microsoft 365 groups and groups that have **isAssignableToRole** set to `true`. Not nullable.

    Requires `$select` to retrieve. Supports `$filter` (`eq`). The least privileged permission to read or write this property is `Group-NestingSupport.ReadWrite.All`. | | displayName | String | The display name for the group. Required. Maximum length is 256 characters.

    Returned by default. Supports `$filter` (`eq`, `ne`, `not`, `ge`, `le`, `in`, `startsWith`, and `eq` on `null` values), `$search`, and `$orderby`. | | expirationDateTime | DateTimeOffset | Timestamp of when the group is set to expire. It is `null` for security groups, but for Microsoft 365 groups, it represents when the group is set to expire as defined in the [groupLifecyclePolicy](../resources/grouplifecyclepolicy.md). The Timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2014 is `2014-01-01T00:00:00Z`.

    Returned by default. Supports `$filter` (`eq`, `ne`, `not`, `ge`, `le`, `in`). Read-only. | | groupTypes | String collection | Specifies the group type and its membership.

    If the collection contains `Unified`, the group is a Microsoft 365 group; otherwise, it's either a security group or a distribution group. For details, see [groups overview](groups-overview.md).

    If the collection includes `DynamicMembership`, the group has dynamic membership; otherwise, membership is static.

    Returned by default. Supports `$filter` (`eq`, `not`). | @@ -305,6 +306,7 @@ The following JSON representation shows the resource type. "createdDateTime": "String (timestamp)", "deletedDateTime": "String (timestamp)", "description": "String", + "disableNesting": "Boolean", "displayName": "String", "expirationDateTime": "String (timestamp)", "groupTypes": ["String"], diff --git a/changelog/Microsoft.DirectoryServices.json b/changelog/Microsoft.DirectoryServices.json index a05cadd0201..a0d875e447a 100644 --- a/changelog/Microsoft.DirectoryServices.json +++ b/changelog/Microsoft.DirectoryServices.json @@ -1,5 +1,23 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "10ba31ea-f389-4d87-811d-a64335a59673", + "ApiChange": "Property", + "ChangedApiName": "disableNesting", + "ChangeType": "Addition", + "Description": "Added the **disableNesting** property to the [group](https://learn.microsoft.com/en-us/graph/api/resources/group?view=graph-rest-beta) resource.", + "Target": "group" + } + ], + "Id": "10ba31ea-f389-4d87-811d-a64335a59673", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-09-04T18:20:57.3566900Z", + "WorkloadArea": "Groups", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index ef198d2752f..d39e46ac0f7 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -81,6 +81,10 @@ Added the **isDisabled** property to the [agentIdentityBlueprint](/graph/api/res - Added the [provision](/graph/api/device-provision?view=graph-rest-beta&preserve-view=true) action to the [device](/graph/api/resources/device?view=graph-rest-beta&preserve-view=true) resource to enable approved Virtual Desktop Infrastructure (VDI) providers to provision devices in a customer's directory. +### Groups + +- Added the **disableNesting** property to the [group](/graph/api/resources/group?view=graph-rest-beta&preserve-view=true) resource. Use it to prevent other groups from being added as members of a security group. + ### Identity and access | Governance Clarified that the [Get accessPackageResourceEnvironment](/graph/api/accesspackageresourceenvironment-get?view=graph-rest-beta&preserve-view=true) method returns SharePoint Online resource environments only when it's called with delegated permissions. A SharePoint Online resource environment corresponds to a SharePoint root site, so to retrieve root site information with application permissions, use the [List sites](/graph/api/site-list?view=graph-rest-beta&preserve-view=true) method with the `$filter=siteCollection/root ne null` query option. From db3296e175af4c18874d8124b694976030b43fc4 Mon Sep 17 00:00:00 2001 From: Ritika Date: Tue, 29 Sep 2026 06:51:08 +0530 Subject: [PATCH 178/189] Enhanced Restore Variable Retention Period changes - Prod Beta (#28756) * updated documentation of relavtn apis * ensured int is supplied * review comments * misc * Update retentionperiodchange.md * Apply suggestions from code review Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> * Fix formatting in retention period change documentation * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Apply suggestions from code review Co-authored-by: MSFT-Andrea * review comments * undoing changes unrelated to this PR * description updated * Apply suggestions from code review Co-authored-by: MSFT-Andrea * Update reference TOC * Apply suggestions from code review Co-authored-by: MSFT-Andrea * docs: document supported retention periods Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --------- Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Co-authored-by: MSFT-Andrea Co-authored-by: Microsoft Graph DevX Tooling Co-authored-by: Saksham Sharma Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: sakshamshar --- ...uprestoreroot-list-driveprotectionunits.md | 13 ++++- ...restoreroot-list-mailboxprotectionunits.md | 13 ++++- ...kuprestoreroot-list-siteprotectionunits.md | 13 ++++- .../beta/api/protectionunitbase-get.md | 6 +- .../beta/resources/driveprotectionunit.md | 4 ++ api-reference/beta/resources/enums.md | 10 ++++ .../beta/resources/mailboxprotectionunit.md | 4 ++ .../beta/resources/protectionunitbase.md | 6 +- .../beta/resources/retentionperiodchange.md | 43 ++++++++++++++ .../beta/resources/retentionsetting.md | 2 +- .../beta/resources/siteprotectionunit.md | 5 +- .../beta/toc/backup-and-recovery/toc.yml | 2 + api-reference/beta/toc/toc.mapping.json | 1 + changelog/Microsoft.EnhancedRestore.json | 58 +++++++++++++++++++ concepts/whats-new-earlier.md | 3 + 15 files changed, 173 insertions(+), 10 deletions(-) create mode 100644 api-reference/beta/resources/retentionperiodchange.md diff --git a/api-reference/beta/api/backuprestoreroot-list-driveprotectionunits.md b/api-reference/beta/api/backuprestoreroot-list-driveprotectionunits.md index 44bef4c7287..1bea524931b 100644 --- a/api-reference/beta/api/backuprestoreroot-list-driveprotectionunits.md +++ b/api-reference/beta/api/backuprestoreroot-list-driveprotectionunits.md @@ -151,7 +151,11 @@ HTTP/1.1 200 OK }, "lastModifiedDateTime": "2015-06-19T12:01:03.45Z", "error": null, - "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z" + "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z", + "pendingRetentionPeriodChange": { + "status": "inProgress", + "targetRetentionPeriodInDays": 720 + } }, { "@odata.type": "#microsoft.graph.driveProtectionUnit", @@ -188,7 +192,12 @@ HTTP/1.1 200 OK }, "lastModifiedDateTime": "2015-06-19T12:01:03.45Z", "error": null, - "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z" + "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z", + "pendingRetentionPeriodChange": { + "status": "none", + "targetRetentionPeriodInDays": 90, + "effectiveFromDateTime": "2026-04-29T12:01:03.45Z" + } }, { "@odata.type": "#microsoft.graph.driveProtectionUnit", diff --git a/api-reference/beta/api/backuprestoreroot-list-mailboxprotectionunits.md b/api-reference/beta/api/backuprestoreroot-list-mailboxprotectionunits.md index 56343181e2e..d66df63147d 100644 --- a/api-reference/beta/api/backuprestoreroot-list-mailboxprotectionunits.md +++ b/api-reference/beta/api/backuprestoreroot-list-mailboxprotectionunits.md @@ -153,7 +153,11 @@ HTTP/1.1 200 OK }, "lastModifiedDateTime": "2015-06-19T12:01:03.45Z", "error": null, - "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z" + "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z", + "pendingRetentionPeriodChange": { + "status": "inProgress", + "targetRetentionPeriodInDays": 720 + } }, { "@odata.type": "#microsoft.graph.mailboxProtectionUnit", @@ -191,7 +195,12 @@ HTTP/1.1 200 OK }, "lastModifiedDateTime": "2015-06-19T12:01:03.45Z", "error": null, - "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z" + "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z", + "pendingRetentionPeriodChange": { + "status": "none", + "targetRetentionPeriodInDays": 90, + "effectiveFromDateTime": "2026-07-29T12:01:03.45Z" + } }, { "@odata.type": "#microsoft.graph.mailboxProtectionUnit", diff --git a/api-reference/beta/api/backuprestoreroot-list-siteprotectionunits.md b/api-reference/beta/api/backuprestoreroot-list-siteprotectionunits.md index 727f4bfe93a..5d00a76431b 100644 --- a/api-reference/beta/api/backuprestoreroot-list-siteprotectionunits.md +++ b/api-reference/beta/api/backuprestoreroot-list-siteprotectionunits.md @@ -153,7 +153,12 @@ HTTP/1.1 200 OK }, "lastModifiedDateTime": "2015-06-19T12:01:03.45Z", "error": null, - "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z" + "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z", + "pendingRetentionPeriodChange": { + "status": "none", + "targetRetentionPeriodInDays": 90, + "effectiveFromDateTime": "2026-07-02T12:01:03.45Z" + } }, { "@odata.type": "#microsoft.graph.siteProtectionUnit", @@ -190,7 +195,11 @@ HTTP/1.1 200 OK }, "lastModifiedDateTime": "2015-06-19T12:01:03.45Z", "error": null, - "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z" + "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z", + "pendingRetentionPeriodChange": { + "status": "inProgress", + "targetRetentionPeriodInDays": 720 + } }, { "@odata.type": "#microsoft.graph.siteProtectionUnit", diff --git a/api-reference/beta/api/protectionunitbase-get.md b/api-reference/beta/api/protectionunitbase-get.md index 88693847429..b989646a643 100644 --- a/api-reference/beta/api/protectionunitbase-get.md +++ b/api-reference/beta/api/protectionunitbase-get.md @@ -139,6 +139,10 @@ HTTP/1.1 200 OK } }, "lastModifiedDateTime": "2015-06-19T12:01:03.45Z", - "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z" + "offboardRequestedDateTime": "0001-01-01T00:00:00.0000000Z", + "pendingRetentionPeriodChange": { + "status": "inProgress", + "targetRetentionPeriodInDays": 720 + } } ``` diff --git a/api-reference/beta/resources/driveprotectionunit.md b/api-reference/beta/resources/driveprotectionunit.md index 8f9d935df8f..9d71dc4a6b0 100644 --- a/api-reference/beta/resources/driveprotectionunit.md +++ b/api-reference/beta/resources/driveprotectionunit.md @@ -39,6 +39,7 @@ Inherits from [protectionUnitBase](../resources/protectionunitbase.md). |id|String|Unique identifier of the protection policy associated with this protection unit.| |lastModifiedBy|[identitySet](../resources/identityset.md)|The identity of person who last modified the protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |lastModifiedDateTime|DateTimeOffset|The time of last modification of the protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| +|pendingRetentionPeriodChange|[retentionPeriodChange](../resources/retentionperiodchange.md)|The retention period change to be applied to the protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |policyId|String|Unique identifier of the protection policy associated with this protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |protectionSources|protectionSource|Indicates the sources by which a protection unit is currently protected. A protection unit protected by multiple sources is indicated by comma-separated values. The possible values are: `none`, `manual`, `dynamicRule`, `unknownFutureValue`. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |status|[protectionUnitStatus](../resources/protectionunitbase.md#protectionunitstatus-values)|The individual enablement/disablement/removal status of the protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md). The possible values are: `protectRequested`, `protected`, `unprotectRequested`, `unprotected`, `removeRequested`, `unknownFutureValue`, `offboardRequested`, `offboarded`, and `cancelOffboardRequested`. Use the `Prefer: include-unknown-enum-members` request header to get the following values from this [evolvable enum](/graph/best-practices-concept#handling-future-members-in-evolvable-enumerations): `offboardRequested`, `offboarded`, and `cancelOffboardRequested`.| @@ -72,6 +73,9 @@ The following JSON representation shows the resource type. "lastModifiedBy": {"@odata.type": "microsoft.graph.identitySet"}, "lastModifiedDateTime": "String (timestamp)", "offboardRequestedDateTime": "String (timestamp)", + "pendingRetentionPeriodChange": { + "@odata.type": "microsoft.graph.retentionPeriodChange" + }, "policyId": "String", "protectionSources": "String", "status": "String" diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index f94698def4e..59d66941339 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -6261,6 +6261,16 @@ Possible values for user account types (group membership), per Windows definitio |performance| |unknownFutureValue| +### retentionPeriodChangeStatus values + +|Member| +|:---| +|none| +|inProgress| +|failed| +|completed| +|unknownFutureValue| + ### accessReviewInstanceDecisionItemApplyResult values |Member| diff --git a/api-reference/beta/resources/mailboxprotectionunit.md b/api-reference/beta/resources/mailboxprotectionunit.md index 96ab46fc40c..0e76fb41e69 100644 --- a/api-reference/beta/resources/mailboxprotectionunit.md +++ b/api-reference/beta/resources/mailboxprotectionunit.md @@ -40,6 +40,7 @@ Inherits from [protectionUnitBase](../resources/protectionunitbase.md). |lastModifiedBy|[identitySet](../resources/identityset.md)|The identity of person who last modified the protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |lastModifiedDateTime|DateTimeOffset|The time the protection unit was last modified. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |mailboxType|[mailboxType](../resources/enums.md#mailboxtype-values)|The type of mailbox which is assigned to the user with id: `directoryObjectId`.The possible values are: `unknown`, `user`, `shared`, `unknownFutureValue`.| +|pendingRetentionPeriodChange|[retentionPeriodChange](../resources/retentionperiodchange.md)|The retention period change to be applied to the protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |policyId|String|Unique identifier of the protection policy associated with this protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |protectionSources|protectionSource|Indicates the sources by which a protection unit is currently protected. A protection unit protected by multiple sources is indicated by comma-separated values. The possible values are: `none`, `manual`, `dynamicRule`, `unknownFutureValue`. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |status|[protectionUnitStatus](../resources/protectionunitbase.md#protectionunitstatus-values)|The individual enablement/disablement/removal status of the protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md). The possible values are: `protectRequested`, `protected`, `unprotectRequested`, `unprotected`, `removeRequested`, `offboardRequested`, `offboarded`, `cancelOffboardRequested`, `unknownFutureValue`.| @@ -74,6 +75,9 @@ The following JSON representation shows the resource type. "lastModifiedDateTime": "String (timestamp)", "mailboxType": "String", "offboardRequestedDateTime": "String (timestamp)", + "pendingRetentionPeriodChange": { + "@odata.type": "microsoft.graph.retentionPeriodChange" + }, "policyId": "String", "protectionSources": "String", "status": "String" diff --git a/api-reference/beta/resources/protectionunitbase.md b/api-reference/beta/resources/protectionunitbase.md index c9526dd563b..90bb985ca56 100644 --- a/api-reference/beta/resources/protectionunitbase.md +++ b/api-reference/beta/resources/protectionunitbase.md @@ -40,10 +40,11 @@ Inherits from [entity](entity.md). |id|String|The unique identifier of the protection unit. Inherited from [entity](entity.md).| |lastModifiedBy|[identitySet](../resources/identityset.md)|The identity of person who last modified the protection unit.| |lastModifiedDateTime|DateTimeOffset|Timestamp of the last modification of this protection unit.| +|offboardRequestedDateTime|DateTimeOffset|The time when protection unit offboard was requested. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2024, is `2024-01-01T00:00:00Z`.| +|pendingRetentionPeriodChange|[retentionPeriodChange](../resources/retentionperiodchange.md)|The retention period change to be applied to the protection unit.| |policyId|String|The unique identifier of the protection policy based on which protection unit was created.| |protectionSources|protectionSource|Indicates the sources by which a protection unit is currently protected. A protection unit protected by multiple sources is indicated by comma-separated values. The possible values are: `none`, `manual`, `dynamicRule`, `unknownFutureValue`.| |status|[protectionUnitStatus](../resources/protectionunitbase.md#protectionunitstatus-values)|The status of the protection unit. The possible values are: `protectRequested`, `protected`, `unprotectRequested`, `unprotected`, `removeRequested`, `unknownFutureValue`.| -|offboardRequestedDateTime|DateTimeOffset|The time when protection unit offboard was requested.| ### protectionUnitStatus values |Member | Description | @@ -83,6 +84,9 @@ The following JSON representation shows the resource type. "lastModifiedBy": {"@odata.type": "microsoft.graph.identitySet"}, "lastModifiedDateTime": "String (timestamp)", "offboardRequestedDateTime": "String (timestamp)", + "pendingRetentionPeriodChange": { + "@odata.type": "microsoft.graph.retentionPeriodChange" + }, "policyId": "String", "protectionSources": "String", "status": "String" diff --git a/api-reference/beta/resources/retentionperiodchange.md b/api-reference/beta/resources/retentionperiodchange.md new file mode 100644 index 00000000000..387b50a161e --- /dev/null +++ b/api-reference/beta/resources/retentionperiodchange.md @@ -0,0 +1,43 @@ +--- +title: "retentionPeriodChange resource type" +description: "Describes the retention period changes to be applied to a protection unit." +author: "rigera" +ms.date: 04/28/2026 +ms.localizationpriority: medium +ms.subservice: "m365-backup-storage" +doc_type: resourcePageType +--- + +# retentionPeriodChange resource type + +Namespace: microsoft.graph + +[!INCLUDE [beta-disclaimer](../../includes/beta-disclaimer.md)] + +Describes the retention period changes to be applied to a protection unit. + +## Properties +|Property|Type|Description| +|:---|:---|:---| +|effectiveFromDateTime|DateTimeOffset|The date and time from which the retention period change takes effect. The timestamp type represents date and time information using ISO 8601 format and is always in UTC. For example, midnight UTC on Jan 1, 2026, is `2026-01-01T00:00:00Z`.| +|status|retentionPeriodChangeStatus|Indicates the progress of the application of the retention period change. The possible values are: `none`, `inProgress`, `failed`, `completed`, `unknownFutureValue`.| +|targetRetentionPeriodInDays|Int32|Specifies the retention period, in days, that applies after the change is completed.| + +## Relationships +None. + +## JSON representation +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.retentionPeriodChange", + "status": "String", + "targetRetentionPeriodInDays": "Int32", + "effectiveFromDateTime": "String (timestamp)" +} +``` diff --git a/api-reference/beta/resources/retentionsetting.md b/api-reference/beta/resources/retentionsetting.md index b02c1f42fdd..cdb7513d498 100644 --- a/api-reference/beta/resources/retentionsetting.md +++ b/api-reference/beta/resources/retentionsetting.md @@ -22,7 +22,7 @@ Contains the details of the retention settings for a protection policy. |Property|Type|Description| |:---|:---|:---| |interval|String|The frequency of the backup.| -|period|Duration|The period of time to retain the protected data for a single Microsoft 365 service.| +|period|Duration|The period of time to retain the protected data for a single Microsoft 365 service. The possible values are: `P90D`, `P180D`, `P365D`, `P730D`, `P1095D`, `P1460D`, `P1825D`, `P2190D`, `P2555D`, `P2920D`, `P3285D`, and `P3650D`. Other values aren't supported.| ## Relationships diff --git a/api-reference/beta/resources/siteprotectionunit.md b/api-reference/beta/resources/siteprotectionunit.md index 9446064def4..283668f4e71 100644 --- a/api-reference/beta/resources/siteprotectionunit.md +++ b/api-reference/beta/resources/siteprotectionunit.md @@ -38,6 +38,7 @@ Inherits from [protectionUnitBase](../resources/protectionunitbase.md). |id|String|Unique identifier of the protection policy associated with this protection unit.| |lastModifiedBy|[identitySet](../resources/identityset.md)|The identity of the person who last modified the protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |lastModifiedDateTime|DateTimeOffset|The time the protection unit was last modified. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| +|pendingRetentionPeriodChange|[retentionPeriodChange](../resources/retentionperiodchange.md)|The retention period change to be applied to the protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |policyId|String|Unique identifier of the protection policy associated with this protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |protectionSources|protectionSource|Indicates the sources by which a protection unit is currently protected. A protection unit protected by multiple sources is indicated by comma-separated values. The possible values are: `none`, `manual`, `dynamicRule`, `unknownFutureValue`. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| |siteId|String|Unique identifier of the SharePoint site.| @@ -45,7 +46,6 @@ Inherits from [protectionUnitBase](../resources/protectionunitbase.md). |siteWebUrl|String|The web URL of the SharePoint site.| |status|[protectionUnitStatus](../resources/protectionunitbase.md#protectionunitstatus-values)|The individual enablement/disablement/removal status of the protection unit. Inherited from [protectionUnitBase](../resources/protectionunitbase.md). The possible values are: `protectRequested`, `protected`, `unprotectRequested`, `unprotected`, `removeRequested`, `offboardRequested`, `offboarded`, `cancelOffboardRequested`, `unknownFutureValue`.| |offboardRequestedDateTime|DateTimeOffset|The time when protection unit offboard was requested. Inherited from [protectionUnitBase](../resources/protectionunitbase.md).| - ## Relationships None. @@ -73,6 +73,9 @@ The following JSON representation shows the resource type. "lastModifiedBy": {"@odata.type": "microsoft.graph.identitySet"}, "lastModifiedDateTime": "String (timestamp)", "offboardRequestedDateTime": "String (timestamp)", + "pendingRetentionPeriodChange": { + "@odata.type": "microsoft.graph.retentionPeriodChange" + }, "policyId": "String", "protectionSources": "String", "siteId": "String", diff --git a/api-reference/beta/toc/backup-and-recovery/toc.yml b/api-reference/beta/toc/backup-and-recovery/toc.yml index 1008db154ab..59ba6b5c963 100644 --- a/api-reference/beta/toc/backup-and-recovery/toc.yml +++ b/api-reference/beta/toc/backup-and-recovery/toc.yml @@ -514,6 +514,8 @@ items: href: ../../resources/restorepointsearchresult.md - name: Restore search artifact query expression href: ../../resources/restoresearchartifactqueryexpression.md + - name: Retention period change + href: ../../resources/retentionperiodchange.md - name: Retention setting href: ../../resources/retentionsetting.md - name: Service status diff --git a/api-reference/beta/toc/toc.mapping.json b/api-reference/beta/toc/toc.mapping.json index 6f1acd5286d..df910315024 100644 --- a/api-reference/beta/toc/toc.mapping.json +++ b/api-reference/beta/toc/toc.mapping.json @@ -297,6 +297,7 @@ "browseQueryResponseItem", "notificationRecipients", "protectionPolicyArtifactCount", + "retentionPeriodChange", "retentionSetting", "restorePointSearchResponse", "restorePointSearchResult", diff --git a/changelog/Microsoft.EnhancedRestore.json b/changelog/Microsoft.EnhancedRestore.json index 30386890a5b..6a5c0d537bd 100644 --- a/changelog/Microsoft.EnhancedRestore.json +++ b/changelog/Microsoft.EnhancedRestore.json @@ -2859,6 +2859,64 @@ "CreatedDateTime": "2026-04-06T00:00:00Z", "WorkloadArea": "Backup and recovery", "SubArea": "Microsoft 365 backup and storage" + }, + { + "ChangeList": [ + { + "Id": "a1ca6a77-fe6a-4bdd-bee3-4c3896eb7f1b", + "ApiChange": "Enumeration", + "ChangedApiName": "retentionPeriodChangeStatus", + "ChangeType": "Addition", + "Description": "Added the **retentionPeriodChangeStatus** enumeration type.", + "Target": "retentionPeriodChangeStatus" + }, + { + "Id": "a1ca6a77-fe6a-4bdd-bee3-4c3896eb7f1b", + "ApiChange": "Resource", + "ChangedApiName": "retentionPeriodChange", + "ChangeType": "Addition", + "Description": "Added the [retentionPeriodChange](https://learn.microsoft.com/en-us/graph/api/resources/retentionPeriodChange?view=graph-rest-beta) resource.", + "Target": "retentionPeriodChange" + }, + { + "Id": "a1ca6a77-fe6a-4bdd-bee3-4c3896eb7f1b", + "ApiChange": "Property", + "ChangedApiName": "pendingRetentionPeriodChange", + "ChangeType": "Addition", + "Description": "Added the **pendingRetentionPeriodChange** property to the [protectionUnitBase](https://learn.microsoft.com/en-us/graph/api/resources/protectionUnitBase?view=graph-rest-beta) resource.", + "Target": "protectionUnitBase" + }, + { + "Id": "a1ca6a77-fe6a-4bdd-bee3-4c3896eb7f1b", + "ApiChange": "Property", + "ChangedApiName": "pendingRetentionPeriodChange", + "ChangeType": "Addition", + "Description": "Added the **pendingRetentionPeriodChange** property to the [driveProtectionUnit](https://learn.microsoft.com/en-us/graph/api/resources/driveProtectionUnit?view=graph-rest-beta) resource.", + "Target": "driveProtectionUnit" + }, + { + "Id": "a1ca6a77-fe6a-4bdd-bee3-4c3896eb7f1b", + "ApiChange": "Property", + "ChangedApiName": "pendingRetentionPeriodChange", + "ChangeType": "Addition", + "Description": "Added the **pendingRetentionPeriodChange** property to the [mailboxProtectionUnit](https://learn.microsoft.com/en-us/graph/api/resources/mailboxProtectionUnit?view=graph-rest-beta) resource.", + "Target": "mailboxProtectionUnit" + }, + { + "Id": "a1ca6a77-fe6a-4bdd-bee3-4c3896eb7f1b", + "ApiChange": "Property", + "ChangedApiName": "pendingRetentionPeriodChange", + "ChangeType": "Addition", + "Description": "Added the **pendingRetentionPeriodChange** property to the [siteProtectionUnit](https://learn.microsoft.com/en-us/graph/api/resources/siteProtectionUnit?view=graph-rest-beta) resource.", + "Target": "siteProtectionUnit" + } + ], + "Id": "a1ca6a77-fe6a-4bdd-bee3-4c3896eb7f1b", + "Cloud": "Prod", + "Version": "beta", + "CreatedDateTime": "2026-04-29T09:42:41.6636999Z", + "WorkloadArea": "Backup and recovery", + "SubArea": "Microsoft 365 backup and storage" } ] } diff --git a/concepts/whats-new-earlier.md b/concepts/whats-new-earlier.md index ad29e6cf471..cde664c5f13 100644 --- a/concepts/whats-new-earlier.md +++ b/concepts/whats-new-earlier.md @@ -78,6 +78,9 @@ Added the **permissions** relationship to the [list](/graph/api/resources/list) ### Backup and recovery | Microsoft 365 Backup and Storage Added the **createdBy**, **createdDateTime**, **lastModifiedBy**, and **lastModifiedDateTime** properties to the [browseQueryResponseItem](/graph/api/resources/browsequeryresponseitem?view=graph-rest-beta&preserve-view=true) resource. Use these properties to get the identity and timestamp details for when a browse item was created and last modified. + +Use the **pendingRetentionPeriodChange** property on [protectionUnitBase](/graph/api/resources/protectionunitbase?view=graph-rest-beta&preserve-view=true), [driveProtectionUnit](/graph/api/resources/driveprotectionunit?view=graph-rest-beta&preserve-view=true), [mailboxProtectionUnit](/graph/api/resources/mailboxprotectionunit?view=graph-rest-beta&preserve-view=true), and [siteProtectionUnit](/graph/api/resources/siteprotectionunit?view=graph-rest-beta&preserve-view=true) to describe the retention period changes applied to a protection unit. This property represents the updated retention period for backups, the date from which the change takes effect, and the status of applying the change. + - Added the **optimizedBrowse** parameter to the [sharePointBrowseSession: browse](/graph/api/sharepointbrowsesession-browse?view=graph-rest-beta&preserve-view=true) method of the [sharePointBrowseSession](/graph/api/resources/sharepointbrowsesession?view=graph-rest-beta&preserve-view=true) resource. Set this parameter to `true` to retrieve files and folders in a single request when the backup artifact has a single site and a single document library. - Added the **optimizedBrowse** parameter to the [oneDriveForBusinessBrowseSession: browse](/graph/api/onedriveforbusinessbrowsesession-browse?view=graph-rest-beta&preserve-view=true) method of the [oneDriveForBusinessBrowseSession](/graph/api/resources/onedriveforbusinessbrowsesession?view=graph-rest-beta&preserve-view=true) resource. Set this parameter to `true` to retrieve files and folders in a single request when the backup artifact has a single site and a single document library. From 95ed26473fa2cd4b13983fdadb715835f4c09005 Mon Sep 17 00:00:00 2001 From: Dan Winter Date: Tue, 29 Sep 2026 10:41:51 -0400 Subject: [PATCH 179/189] docs: add isOfficeRestricted to fileStorageContainerType settings (v1.0) (#29619) * docs: add isOfficeRestricted to fileStorageContainerType settings (v1.0) Promotes the beta docs change (microsoftgraph/microsoft-graph-docs#29335) to v1.0 following the schema promotion in AD-AggregatorService-Workloads PR 17213355 (API review PR 16374412). - Added isOfficeRestricted property to fileStorageContainerTypeSettings and fileStorageContainerTypeRegistrationSettings resources - Added isOfficeRestricted member to fileStorageContainerTypeSettingsOverride enum - Added v1.0 changelog entry - Added What's New entry Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Apply suggestion from @JarbasHorst * Update enums.md --------- Co-authored-by: Dan Winter Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Jarbas Horst <26866873+JarbasHorst@users.noreply.github.com> --- api-reference/beta/resources/enums.md | 2 +- api-reference/v1.0/resources/enums.md | 1 + ...toragecontainertyperegistrationsettings.md | 4 ++- .../filestoragecontainertypesettings.md | 6 ++-- changelog/Microsoft.FileServices.json | 34 +++++++++++++++++++ concepts/whats-new-overview.md | 3 +- 6 files changed, 45 insertions(+), 5 deletions(-) diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index 59d66941339..6713861d941 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -5855,8 +5855,8 @@ Possible values for user account types (group membership), per Windows definitio |isItemVersioningEnabled| |itemMajorVersionLimit| |maxStoragePerContainerInBytes| -|isOfficeRestricted| |unknownFutureValue| +|isOfficeRestricted| ### aggregationPeriod values diff --git a/api-reference/v1.0/resources/enums.md b/api-reference/v1.0/resources/enums.md index 5752be147eb..512f49f8178 100644 --- a/api-reference/v1.0/resources/enums.md +++ b/api-reference/v1.0/resources/enums.md @@ -4221,6 +4221,7 @@ Possible values for user account types (group membership), per Windows definitio |itemMajorVersionLimit| |maxStoragePerContainerInBytes| |unknownFutureValue| +|isOfficeRestricted| ### workLocationSource values diff --git a/api-reference/v1.0/resources/filestoragecontainertyperegistrationsettings.md b/api-reference/v1.0/resources/filestoragecontainertyperegistrationsettings.md index cea405dd059..45e51d77b83 100644 --- a/api-reference/v1.0/resources/filestoragecontainertyperegistrationsettings.md +++ b/api-reference/v1.0/resources/filestoragecontainertyperegistrationsettings.md @@ -2,7 +2,7 @@ title: "fileStorageContainerTypeRegistrationSettings resource type" description: "Represents the settings associated with a fileStorageContainerTypeRegistration." author: "javieralvarezchiang" -ms.date: 11/12/2025 +ms.date: 09/21/2026 ms.localizationpriority: medium ms.subservice: "onedrive" doc_type: resourcePageType @@ -22,6 +22,7 @@ Represents the settings associated with a [fileStorageContainerTypeRegistration] |:---|:---|:---| |isDiscoverabilityEnabled|Boolean|Indicates whether items from containers are surfaced in experiences such as **My Activity** or Microsoft 365.| |isItemVersioningEnabled|Boolean|Indicates whether item versioning is enabled.| +|isOfficeRestricted|Boolean|Indicates whether Office apps (Word, Excel, and PowerPoint) for desktop and web are restricted for containers of this container type.| |isSearchEnabled|Boolean|Indicates whether search is enabled.| |isSharingRestricted|Boolean|Only the manager and owner can share files in the container if restricted sharing is enabled.| |itemMajorVersionLimit|Int64|Maximum number of versions. Versioning must be enabled (`"isItemVersioningEnabled"=true`).| @@ -44,6 +45,7 @@ The following JSON representation shows the resource type. "@odata.type": "#microsoft.graph.fileStorageContainerTypeRegistrationSettings", "isDiscoverabilityEnabled": "Boolean", "isItemVersioningEnabled": "Boolean", + "isOfficeRestricted": "Boolean", "isSearchEnabled": "Boolean", "isSharingRestricted": "Boolean", "itemMajorVersionLimit": "Int64", diff --git a/api-reference/v1.0/resources/filestoragecontainertypesettings.md b/api-reference/v1.0/resources/filestoragecontainertypesettings.md index 9fbc6708081..a6bdc8d5397 100644 --- a/api-reference/v1.0/resources/filestoragecontainertypesettings.md +++ b/api-reference/v1.0/resources/filestoragecontainertypesettings.md @@ -2,7 +2,7 @@ title: "fileStorageContainerTypeSettings resource type" description: "Represents the settings associated with a fileStorageContainerType." author: "javieralvarezchiang" -ms.date: 11/12/2025 +ms.date: 09/21/2026 ms.localizationpriority: medium ms.subservice: "onedrive" doc_type: resourcePageType @@ -20,9 +20,10 @@ Represents the settings associated with a [fileStorageContainerType](../resource ## Properties |Property|Type|Description| |:---|:---|:---| -|consumingTenantOverridables|fileStorageContainerTypeSettingsOverride|A comma-separated list of settings that can be overridden in the consuming tenant. The possible values are: `urlTemplate`, `isDiscoverabilityEnabled`, `isSearchEnabled`, `isItemVersioningEnabled`, `itemMajorVersionLimit`, `maxStoragePerContainerInBytes`, `unknownFutureValue`.| +|consumingTenantOverridables|fileStorageContainerTypeSettingsOverride|A comma-separated list of settings that can be overridden in the consuming tenant. The possible values are: `urlTemplate`, `isDiscoverabilityEnabled`, `isSearchEnabled`, `isItemVersioningEnabled`, `itemMajorVersionLimit`, `maxStoragePerContainerInBytes`, `unknownFutureValue`, `isOfficeRestricted`.| |isDiscoverabilityEnabled|Boolean|Indicates whether items from containers are surfaced in experiences such as **My Activity** or Microsoft 365.| |isItemVersioningEnabled|Boolean|Indicates whether item versioning is enabled.| +|isOfficeRestricted|Boolean|Indicates whether Office apps (Word, Excel, and PowerPoint) for desktop and web are restricted for containers of this container type.| |isSearchEnabled|Boolean|Indicates whether search is enabled.| |isSharingRestricted|Boolean|Only the manager and owner can share files in the container if restricted sharing is enabled.| |itemMajorVersionLimit|Int64|Maximum number of versions. Versioning must be enabled (`"isItemVersioningEnabled"=true`).| @@ -46,6 +47,7 @@ The following JSON representation shows the resource type. "consumingTenantOverridables": "fileStorageContainerTypeSettingsOverride", "isDiscoverabilityEnabled": "Boolean", "isItemVersioningEnabled": "Boolean", + "isOfficeRestricted": "Boolean", "isSearchEnabled": "Boolean", "isSharingRestricted": "Boolean", "itemMajorVersionLimit": "Int64", diff --git a/changelog/Microsoft.FileServices.json b/changelog/Microsoft.FileServices.json index 9bb454a66ea..dcad3997ada 100644 --- a/changelog/Microsoft.FileServices.json +++ b/changelog/Microsoft.FileServices.json @@ -36,6 +36,40 @@ "WorkloadArea": "Files", "SubArea": "" }, + { + "ChangeList": [ + { + "Id": "14e0763b-a717-45d7-96c9-705180a8add3", + "ApiChange": "Member", + "ChangedApiName": "isOfficeRestricted", + "ChangeType": "Addition", + "Description": "Added the `isOfficeRestricted` member to the **fileStorageContainerTypeSettingsOverride** enumeration.", + "Target": "fileStorageContainerTypeSettingsOverride" + }, + { + "Id": "14e0763b-a717-45d7-96c9-705180a8add3", + "ApiChange": "Property", + "ChangedApiName": "isOfficeRestricted", + "ChangeType": "Addition", + "Description": "Added the **isOfficeRestricted** property to the [fileStorageContainerTypeRegistrationSettings](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainertyperegistrationsettings) resource.", + "Target": "fileStorageContainerTypeRegistrationSettings" + }, + { + "Id": "14e0763b-a717-45d7-96c9-705180a8add3", + "ApiChange": "Property", + "ChangedApiName": "isOfficeRestricted", + "ChangeType": "Addition", + "Description": "Added the **isOfficeRestricted** property to the [fileStorageContainerTypeSettings](https://learn.microsoft.com/en-us/graph/api/resources/filestoragecontainertypesettings) resource.", + "Target": "fileStorageContainerTypeSettings" + } + ], + "Id": "14e0763b-a717-45d7-96c9-705180a8add3", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-09-21T17:05:42.0119258Z", + "WorkloadArea": "Files", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index d39e46ac0f7..fc63395b726 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -22,7 +22,8 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what ### Files -Added the **isPatternToken** property to the [fileStorageContainerCustomPropertyValue](/graph/api/resources/filestoragecontainercustompropertyvalue) resource to indicate whether a custom property value is a `urlTemplate` pattern that consumers must resolve before use, rather than a literal value. +- Added the **isPatternToken** property to the [fileStorageContainerCustomPropertyValue](/graph/api/resources/filestoragecontainercustompropertyvalue) resource to indicate whether a custom property value is a `urlTemplate` pattern that consumers must resolve before use, rather than a literal value. +- Added the **isOfficeRestricted** property to the [fileStorageContainerTypeSettings](/graph/api/resources/filestoragecontainertypesettings) and [fileStorageContainerTypeRegistrationSettings](/graph/api/resources/filestoragecontainertyperegistrationsettings) resources, and the **fileStorageContainerTypeSettingsOverride** enumeration. ### Groups From e13776b5cc0911c9822a011eec65a122d4f9167f Mon Sep 17 00:00:00 2001 From: diksha27 Date: Tue, 29 Sep 2026 22:30:52 +0530 Subject: [PATCH 180/189] Promote audit query record count properties (#29611) Co-authored-by: guptadiksha_microsoft Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: diksha27 <11848211+diksha27@users.noreply.github.com> Copilot-Session: 8f226070-c37a-4daa-8e68-8134980847f0 --- ...rity-auditcoreroot-post-auditlogqueries.md | 5 ++- .../v1.0/resources/security-auditlogquery.md | 13 +++++-- changelog/Microsoft.M365.AuditCore.json | 34 +++++++++++++++++++ concepts/whats-new-overview.md | 6 +++- 4 files changed, 54 insertions(+), 4 deletions(-) diff --git a/api-reference/v1.0/api/security-auditcoreroot-post-auditlogqueries.md b/api-reference/v1.0/api/security-auditcoreroot-post-auditlogqueries.md index ca80bbda605..a7209380ba2 100644 --- a/api-reference/v1.0/api/security-auditcoreroot-post-auditlogqueries.md +++ b/api-reference/v1.0/api/security-auditcoreroot-post-auditlogqueries.md @@ -5,7 +5,7 @@ author: "arishojaswi" ms.localizationpriority: medium ms.subservice: "security" doc_type: apiPageType -ms.date: 10/29/2024 +ms.date: 09/18/2026 --- # Create auditLogQuery @@ -63,6 +63,9 @@ You can specify the following properties when creating a **auditLogQuery**. If successful, this method returns a `201 Created` response code and a [auditLogQuery](../resources/security-auditlogquery.md) object in the response body. +> [!NOTE] +> This method is subject to tenant-level daily submission and concurrent-query limits. A tenant receives a baseline allocation, and tenants with more eligible licenses can receive a higher allocation. For details and retry guidance, see [Microsoft Graph service-specific throttling limits](/graph/throttling-limits#security-audit-log-query-service-limits). + ## Examples ### Request diff --git a/api-reference/v1.0/resources/security-auditlogquery.md b/api-reference/v1.0/resources/security-auditlogquery.md index 2b1195304c3..a6589521f91 100644 --- a/api-reference/v1.0/resources/security-auditlogquery.md +++ b/api-reference/v1.0/resources/security-auditlogquery.md @@ -5,7 +5,7 @@ author: "imsandhya7-spec" ms.subservice: security ms.localizationpriority: medium doc_type: resourcePageType -ms.date: 06/17/2026 +ms.date: 09/18/2026 toc.title: "Audit log query" --- # auditLogQuery resource type @@ -28,19 +28,25 @@ Inherits from [microsoft.graph.entity](../resources/entity.md). |Property|Type|Description| |:---|:---|:---| |administrativeUnitIdFilters|String collection|The collection of administrative unit IDs to filter on.| +|approximateReturnedRecordCount|Int64|The approximate number of records retrieved by the query. This value can be higher or lower than **recordCountLimit** due to distributed counting. Read-only.| |displayName|String|The display name of the audit log query.| |filterEndDateTime|DateTimeOffset|The end date and time of the audit log query filter.| |filterStartDateTime|DateTimeOffset|The start date and time of the audit log query filter.| |id|String|The unique identifier for the audit log query. Inherited from [entity](../resources/entity.md).| |ipAddressFilters|String collection|The collection of IP addresses to filter on.| +|isRecordCountLimitExceeded|Boolean|Indicates whether the query exceeded the per-search record-count limit. The default value is `false`. A value of `true` is authoritative and isn't derived from **approximateReturnedRecordCount**. Read-only.| |keywordFilter|String|The keyword to filter on.| |objectIdFilters|String collection|The collection of object IDs to filter on.| |operationFilters|String collection|The collection of operations to filter on.| +|recordCountLimit|Int64|The record-count threshold used to limit query result retrieval. Read-only.| |recordTypeFilters|[microsoft.graph.security.auditLogRecordType](../resources/security-auditlogrecordtype.md) collection|The collection of record types to filter on.| |serviceFilters|String collection|The collection of services to filter on.| |status|microsoft.graph.security.auditLogQueryStatus|The status of the audit log query. Possible values are: `notStarted`, `running`, `succeeded`, `failed`, `cancelled`, `unknownFutureValue`.| |userPrincipalNameFilters|String collection|The collection of user principal names to filter on.| +> [!NOTE] +> An audit log query can complete successfully after exceeding its record-count limit. Use **isRecordCountLimitExceeded** to determine whether the limit was exceeded. For information about tenant and per-query allocations, see [Microsoft Graph service-specific throttling limits](/graph/throttling-limits#security-audit-log-query-service-limits). + ## Relationships |Relationship|Type|Description| @@ -71,6 +77,9 @@ The following JSON representation shows the resource type. "ipAddressFilters": ["String"], "objectIdFilters": ["String"], "administrativeUnitIdFilters": ["String"], - "status": "String" + "status": "String", + "approximateReturnedRecordCount": "Int64", + "isRecordCountLimitExceeded": "Boolean", + "recordCountLimit": "Int64" } ``` diff --git a/changelog/Microsoft.M365.AuditCore.json b/changelog/Microsoft.M365.AuditCore.json index cbac4cf775d..6d59bcc64b4 100644 --- a/changelog/Microsoft.M365.AuditCore.json +++ b/changelog/Microsoft.M365.AuditCore.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "9159447c-6f67-4107-9780-705afa0d58be", + "ApiChange": "Property", + "ChangedApiName": "approximateReturnedRecordCount", + "ChangeType": "Addition", + "Description": "Added the **approximateReturnedRecordCount** property to the [auditLogQuery](https://learn.microsoft.com/en-us/graph/api/resources/security-auditlogquery?view=graph-rest-v1.0) resource.", + "Target": "auditLogQuery" + }, + { + "Id": "9159447c-6f67-4107-9780-705afa0d58be", + "ApiChange": "Property", + "ChangedApiName": "isRecordCountLimitExceeded", + "ChangeType": "Addition", + "Description": "Added the **isRecordCountLimitExceeded** property to the [auditLogQuery](https://learn.microsoft.com/en-us/graph/api/resources/security-auditlogquery?view=graph-rest-v1.0) resource.", + "Target": "auditLogQuery" + }, + { + "Id": "9159447c-6f67-4107-9780-705afa0d58be", + "ApiChange": "Property", + "ChangedApiName": "recordCountLimit", + "ChangeType": "Addition", + "Description": "Added the **recordCountLimit** property to the [auditLogQuery](https://learn.microsoft.com/en-us/graph/api/resources/security-auditlogquery?view=graph-rest-v1.0) resource.", + "Target": "auditLogQuery" + } + ], + "Id": "9159447c-6f67-4107-9780-705afa0d58be", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-09-17T15:46:31.2367608Z", + "WorkloadArea": "Security", + "SubArea": "Compliance" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index fc63395b726..4262ab0d58c 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -3,7 +3,7 @@ title: "What's new in Microsoft Graph" description: "Find out what's new in Microsoft Graph APIs, SDKs, documentation, and other resources." author: "lauragra" ms.localizationpriority: high -ms.date: 09/14/2026 +ms.date: 09/18/2026 ms.topic: whats-new --- @@ -43,6 +43,10 @@ Added the **onPremisesExtensionAttributes** property to the [group](/graph/api/r Added the [anonymousCalendarSharingFreeBusyDetail](/graph/api/resources/anonymouscalendarsharingfreebusydetail), [anonymousCalendarSharingFreeBusyReviewer](/graph/api/resources/anonymouscalendarsharingfreebusyreviewer), and [anonymousCalendarSharingFreeBusySimple](/graph/api/resources/anonymouscalendarsharingfreebusysimple) resource types. Use these cross-tenant access policy capabilities to authorize anonymous external users to view calendar free/busy information at different levels of detail. +### Security | Audit log query + +- Added the **isRecordCountLimitExceeded**, **recordCountLimit**, and **approximateReturnedRecordCount** properties to the [auditLogQuery](/graph/api/resources/security-auditlogquery) resource. Use these properties to determine whether a completed query exceeded the per-search record-count limit and to inspect the applicable limit and approximate returned record count. + ### Teamwork and communications | Messaging Updated the [getAllRetainedMessages](/graph/api/channel-getallretainedmessages) method to support exporting retained versions of private-channel messages that were edited or deleted after the tenant completed private-channel storage migration. From d7650a6c05f77e8e046bd654e08a6858415ffac6 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Tue, 29 Sep 2026 15:43:04 -0600 Subject: [PATCH 181/189] Update generated permissions tables with build 245670 (#29662) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/api/device-provision.md | 2 +- .../beta/includes/permissions/device-provision-permissions.md | 3 ++- 2 files changed, 3 insertions(+), 2 deletions(-) diff --git a/api-reference/beta/api/device-provision.md b/api-reference/beta/api/device-provision.md index 5bd12c6c29a..85052d9062e 100644 --- a/api-reference/beta/api/device-provision.md +++ b/api-reference/beta/api/device-provision.md @@ -97,4 +97,4 @@ Content-Type: application/json "challenge": "Y2hhbGxlbmdlVmFsdWVFeGFtcGxl", "deviceId": "2ec25e3b-9243-4f3c-8c83-2e2a9b8a4f1a" } -``` \ No newline at end of file +``` diff --git a/api-reference/beta/includes/permissions/device-provision-permissions.md b/api-reference/beta/includes/permissions/device-provision-permissions.md index 63f33365f63..00e806e2acb 100644 --- a/api-reference/beta/includes/permissions/device-provision-permissions.md +++ b/api-reference/beta/includes/permissions/device-provision-permissions.md @@ -8,4 +8,5 @@ ms.localizationpriority: medium |:---|:---|:---| |Delegated (work or school account)|Device.ProvisionForVDI|Not available.| |Delegated (personal Microsoft account)|Not supported.|Not supported.| -|Application|Not supported.|Not supported.| \ No newline at end of file +|Application|Not supported.|Not supported.| + From 3a5621fc19cc8c8a40bbe9aed22104fc7d08154d Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Thu, 1 Oct 2026 08:18:37 -0600 Subject: [PATCH 182/189] Update reference TOC (#29676) Co-authored-by: Microsoft Graph DevX Tooling --- api-reference/beta/toc/security/toc.yml | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/api-reference/beta/toc/security/toc.yml b/api-reference/beta/toc/security/toc.yml index 709c5ceddfc..2634795efc8 100644 --- a/api-reference/beta/toc/security/toc.yml +++ b/api-reference/beta/toc/security/toc.yml @@ -712,6 +712,8 @@ items: href: ../../resources/dlpactioninfo.md - name: Embedding input href: ../../resources/embeddinginput.md + - name: Error settings + href: ../../resources/errorsettings.md - name: Evaluation error detail href: ../../resources/evaluationerrordetail.md - name: Evaluation incomplete activity metadata @@ -734,6 +736,8 @@ items: href: ../../resources/operatingsystemspecifications.md - name: Policy binding href: ../../resources/policybinding.md + - name: Policy configuration + href: ../../resources/policyconfiguration.md - name: Policy location application href: ../../resources/policylocationapplication.md - name: Policy location domain From 84e9b3cb0ed47fe50a0e95caac91aa29bccd8920 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Thu, 1 Oct 2026 08:19:46 -0600 Subject: [PATCH 183/189] Update reference TOC (#29669) Co-authored-by: Microsoft Graph DevX Tooling From 8839841a86251d8715fe0571843f54a0f23713d5 Mon Sep 17 00:00:00 2001 From: Jarbas Horst <26866873+JarbasHorst@users.noreply.github.com> Date: Thu, 1 Oct 2026 16:20:04 +0200 Subject: [PATCH 184/189] Archived the August 2026 entries of the What's new topic (#29666) * Update whats-new-overview.md * Update whats-new-earlier.md * Update whats-new-earlier.md * Update whats-new-overview.md * Update whats-new-overview.md * Update whats-new-earlier.md --- concepts/whats-new-earlier.md | 132 +++++++++++++++++++++++++++ concepts/whats-new-overview.md | 160 +++------------------------------ 2 files changed, 142 insertions(+), 150 deletions(-) diff --git a/concepts/whats-new-earlier.md b/concepts/whats-new-earlier.md index cde664c5f13..ec2b732979f 100644 --- a/concepts/whats-new-earlier.md +++ b/concepts/whats-new-earlier.md @@ -12,6 +12,138 @@ ms.topic: whats-new Find information about previous additions and updates to Microsoft Graph APIs, documentation, SDKs, and other resources. +## August 2026: New and generally available + +### Applications + +- Added the [authenticationBehaviors](/graph/api/resources/authenticationbehaviors) resource type and the **coopEnforcement** property to the v1.0 endpoint. Application owners can use the property to explicitly test Cross-Origin-Opener-Policy enforcement, temporarily suppress enforcement while remediating an incompatible browser authentication flow, or return to the service default. The property is available in the global service only and isn't available in national cloud deployments. +- Added the **authenticationBehaviors** property to the [application](/graph/api/resources/application) resource type in v1.0. Returned only on `$select`. + +### Change notifications | Subscription + +- Added support for delivering change notifications to Web Push endpoints (RFC 8291) for the [subscription](/graph/api/resources/subscription) resource type. +- Added the [getVapidPublicKey](/graph/api/subscription-getvapidpublickey) method to obtain the VAPID public key (RFC 8292) used when creating Web Push subscriptions. + +### Files + +- Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer) resource type to create or update up to 20 columnDefinition objects in a single request. +- Added the **appliedByUser** parameter to the [assignSensitivityLabel](/graph/api/driveitem-assignsensitivitylabel) action on the [driveItem](/graph/api/resources/driveitem) resource. This parameter allows app-only callers to specify the user identity on whose behalf the sensitivity label is applied. + +### Identity and access | Directory management + +- Added the **managerApplications** property to the [agentIdentity](/graph/api/resources/agentidentity) and [agentIdentityBlueprintPrincipal](/graph/api/resources/agentidentityblueprintprincipal) resources to identify the applications that manage the backing agent identity blueprint. +- Added the [recovery](/graph/api/resources/entrarecoveryservices-recovery) resource type and related methods to programmatically recover critical Microsoft Entra directory objects from automatically created point-in-time snapshots. Use these APIs to inspect available snapshots, preview and scope changes before restoration, run recovery jobs, monitor progress, and review failed changes. + +### Identity and access | Governance + +- Added the [externalSapAcConnectionInfo](/graph/api/resources/externalsapacconnectioninfo) complex type, along with the supporting [authenticationInfo](/graph/api/resources/authenticationinfo) and [clientCredentialAuthenticationInfo](/graph/api/resources/clientcredentialauthenticationinfo) types, to configure connections from Microsoft Entra entitlement management to SAP Access Control (AC) systems. Set these on the **connectionInfo** property of an [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) when its **connectorType** is `sapAc`. +- Promoted the **Lifecycle Workflows provisioning and workflow subject** APIs from beta to v1.0, introducing a broader, extensible subject model for workflows and surfacing per-subject processing results. The promoted surface includes: + - [workflowSubject](/graph/api/resources/identitygovernance-workflowsubject) base type and its [provisioningObjectWorkflowSubject](/graph/api/resources/identitygovernance-provisioningobjectworkflowsubject) and [directoryObjectWorkflowSubject](/graph/api/resources/identitygovernance-directoryobjectworkflowsubject) derived types + - [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult) resource with the **subjectProcessingResults** navigation property on the [run](/graph/api/resources/identitygovernance-run) and [workflow](/graph/api/resources/identitygovernance-workflow) resources + - [subjectSummary](/graph/api/resources/identitygovernance-subjectsummary) resource and the [summary](/graph/api/identitygovernance-subjectprocessingresult-summary) method on the [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult) resource + - [activateAndWait](/graph/api/identitygovernance-workflow-activateandwait) action on the [workflow](/graph/api/resources/identitygovernance-workflow) resource, returning the [awaitedWorkflowProcessingResult](/graph/api/resources/identitygovernance-awaitedworkflowprocessingresult) resource + - [provisioningAttributeMapping](/graph/api/resources/identitygovernance-provisioningattributemapping) and [attributeSetEntry](/graph/api/resources/identitygovernance-attributesetentry) resources + - [customTaskExtensionResponseData](/graph/api/resources/identitygovernance-customtaskextensionresponsedata) resource, the **replyMode** property on [customTaskExtension](/graph/api/resources/identitygovernance-customtaskextension), and the **targetSubject** property on [customTaskExtensionCalloutData](/graph/api/resources/identitygovernance-customtaskextensioncalloutdata) + - **targetSubjectType** property on [workflowBase](/graph/api/resources/identitygovernance-workflowbase) and **workflowSubject** property on [taskProcessingResult](/graph/api/resources/identitygovernance-taskprocessingresult) + - [subjectType](/graph/api/resources/enums-identitygovernance#subjecttype-values) and [customTaskExtensionReplyMode](/graph/api/resources/enums-identitygovernance#customtaskextensionreplymode-values) enumerations, along with the `extensibility` and `extensibilityOnDemand` enumeration members +- Added the [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) resource type and methods to [create](/graph/api/entitlementmanagement-post-externaloriginresourceconnectors), [list](/graph/api/entitlementmanagement-list-externaloriginresourceconnectors), [get](/graph/api/externaloriginresourceconnector-get), [update](/graph/api/externaloriginresourceconnector-update), and [delete](/graph/api/externaloriginresourceconnector-delete) connections from Microsoft Entra entitlement management to SAP Identity Access Governance (SAP IAG). For an SAP IAG connector, specify the SAP IAG endpoint, OAuth token endpoint, and client ID, along with the Azure subscription, resource group, key vault, and secret that identify where its client secret is stored. The connector is associated with an access package resource so that entitlement management can provision access to resources in SAP IAG through access packages. +- Added the **reviewerId** and **scopeType** properties to [accessReviewReviewerScope](/graph/api/resources/accessreviewreviewerscope) to specify a reviewer directly or as a well-known scope instead of through a query. +- Added the **applyDescription** property to [accessReviewInstanceDecisionItem](/graph/api/resources/accessreviewinstancedecisionitem) to describe the result of applying a decision. +- Added the **appRoleId** and **appRoleDisplayName** properties to [accessReviewInstanceDecisionItemServicePrincipalResource](/graph/api/resources/accessreviewinstancedecisionitemserviceprincipalresource) to identify the app role under review. +- Added the **errors** property to [accessReviewInstance](/graph/api/resources/accessreviewinstance) and the [accessReviewError](/graph/api/resources/accessreviewerror) resource type to report errors that occur during the review instance lifecycle. +- Added the [accessReviewPrincipalScope](/graph/api/resources/accessreviewprincipalscope), [accessReviewResourceScope](/graph/api/resources/accessreviewresourcescope), and [accessReviewAccessPackageAssignmentPolicyScope](/graph/api/resources/accessreviewaccesspackageassignmentpolicyscope) resource types. Use them in the **principalScopes** and **resourceScopes** properties of [principalResourceMembershipsScope](/graph/api/resources/principalresourcemembershipsscope) to state which principals have their access to which resources reviewed without writing a query expression. +- Added the **accessReviewPrincipalScopeType**, **accessReviewResourceScopeType**, and **accessReviewReviewerScopeType** enumeration types to identify well-known principal, resource, and reviewer scopes. + +### Identity and access | Identity and sign-in + +Added support for managing Microsoft 365 cross-tenant capabilities in cross-tenant access policies. Use the [m365CapabilityBase](/graph/api/resources/m365capabilitybase) resource and the **m365Capabilities** relationship to manage which Microsoft 365 experiences—such as calendar sharing, MailTips, places booking, and cross-tenant migration—are enabled between tenants. For the default policy, you can [list](/graph/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities), [create](/graph/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities), and [update](/graph/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities) capabilities. For partner policies, you can [list](/graph/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities), [create](/graph/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities), [update](/graph/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities), and [delete](/graph/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities) capabilities. + +### Mail + +Added the [note](/graph/api/resources/note) resource type and methods to [list](/graph/api/user-list-notes), [create](/graph/api/user-post-notes), [get](/graph/api/note-get), [update](/graph/api/note-update), and [delete](/graph/api/note-delete) quick-capture notes in a user's _Notes_ folder. Use [delta query](/graph/api/note-delta) to synchronize notes that were added, updated, or deleted since the previous request. You can also [list](/graph/api/note-list-attachments), [add](/graph/api/note-post-attachments), and [delete](/graph/api/attachment-delete) inline image attachments, and use open or legacy extended properties to store custom data on a note. + +### Mailbox import and export + +- Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources/mailboxfolder) resource type in v1.0. Use this property to identify folders created by Outlook by using a locale-independent name. +- Added the [Delete mailboxItem](/graph/api/mailboxfolder-delete-items) method to the [mailboxItem](/graph/api/resources/mailboxitem) resource type in v1.0. Use this method to delete an individual mailbox item from a mailbox folder with Exchange soft-delete or hard-delete semantics. + +### Security + +Updated the retirement date for the legacy Microsoft Graph [security alerts API](/graph/api/resources/alert) from August 31, 2026 to October 15, 2026. + +### Teamwork and communications | Calls and online meetings + +- Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) and [getAllTranscripts](/graph/api/onlinemeeting-getalltranscripts) methods to document a service-update issue that can cause paginated requests to return an empty collection followed by duplicate items. +- Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) method to return a Microsoft Graph URL that you can use to download recording content. + +### Tenants | Tenant governance + +Promoted the [tenantGovernance](/graph/api/resources/tenantgovernanceservices-tenantgovernance) resource type and related methods from beta to v1.0 for discovering related tenants and managing governance invitations, requests, relationships, settings, and policy templates across Microsoft Entra tenants. + +## August 2026: New in preview only + +### Applications + +Added the **coopEnforcement** property to the [authenticationBehaviors](/graph/api/resources/authenticationbehaviors?view=graph-rest-beta&preserve-view=true) resource. Application owners can use it to explicitly test Cross-Origin-Opener-Policy enforcement, temporarily suppress enforcement while remediating an incompatible browser authentication flow, or return to the service default. + +### Device and app management | Cloud licensing + +Added cloud licensing support for devices, enabling license assignment and usage tracking for device-based licensing scenarios. The new capabilities include: +- Added the [deviceCloudLicensing](/graph/api/resources/cloudlicensing-devicecloudlicensing?view=graph-rest-beta&preserve-view=true) resource type and the **cloudLicensing** property to the [device](/graph/api/resources/device?view=graph-rest-beta&preserve-view=true) resource. +- Use the [List usageRights for device](/graph/api/cloudlicensing-devicecloudlicensing-list-usagerights?view=graph-rest-beta&preserve-view=true) method to retrieve usage rights granted to a device through direct assignments and transitive group-based assignments. +- Use the [Create assignment for device](/graph/api/cloudlicensing-devicecloudlicensing-post-assignments?view=graph-rest-beta&preserve-view=true) method to assign licenses directly to devices. +- Use the [List waitingMembers for device](/graph/api/cloudlicensing-devicecloudlicensing-list-waitingmembers?view=graph-rest-beta&preserve-view=true) method to retrieve devices in the waiting room due to license capacity limits. + +### Device and app management | Cloud PC + +Added the [retrieveCloudPcPerformanceMetricsReport](/graph/api/cloudpcreports-retrievecloudpcperformancemetricsreport?view=graph-rest-beta&preserve-view=true) method to the [cloudPcReports](/graph/api/resources/cloudpcreports?view=graph-rest-beta&preserve-view=true) resource type. Use it to get VM-level utilization and performance metrics for a specific Cloud PC, including CPU, memory, and network metrics. + +### Files + +- Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns?view=graph-rest-beta&preserve-view=true) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource type to create or update up to 20 columnDefinition objects in a single request. +- Added the **appliedByUser** parameter to the [assignSensitivityLabel](/graph/api/driveitem-assignsensitivitylabel?view=graph-rest-beta&preserve-view=true) action on the [driveItem](/graph/api/resources/driveitem?view=graph-rest-beta&preserve-view=true) resource. This parameter allows app-only callers to specify the user identity on whose behalf the sensitivity label is applied, enabling label assignment for SharePoint Embedded containers. + +### Identity and access | Governance + +Added support for configurable time-based lifecycle workflow triggers through the [timeBasedAttributeTriggerV2](/graph/api/resources/identitygovernance-timebasedattributetriggerv2?view=graph-rest-beta&preserve-view=true) resource. Select a date-type user attribute and configure an operator to run workflows on an exact date, within a rolling window, or between two offsets before or after that date. + +### Identity and access | Identity and sign-in + +- Added the [anonymousCalendarSharingFreeBusySimple](/graph/api/resources/anonymouscalendarsharingfreebusysimple?view=graph-rest-beta&preserve-view=true), [anonymousCalendarSharingFreeBusyDetail](/graph/api/resources/anonymouscalendarsharingfreebusydetail?view=graph-rest-beta&preserve-view=true), and [anonymousCalendarSharingFreeBusyReviewer](/graph/api/resources/anonymouscalendarsharingfreebusyreviewer?view=graph-rest-beta&preserve-view=true) capabilities that derive from [m365CapabilityBase](/graph/api/resources/m365capabilitybase?view=graph-rest-beta&preserve-view=true). Use these capabilities in cross-tenant access policies to authorize anonymous external users to view calendar free/busy information at simple, detailed, or reviewer fidelity. + +### Mail + +Changed the **members** property on the [distributionList](/graph/api/resources/distributionlist?view=graph-rest-beta&preserve-view=true) resource to an expandable relationship. Use `$expand=members` with the [Get distribution list](/graph/api/distributionlist-get?view=graph-rest-beta&preserve-view=true) method instead of the removed standalone methods for listing and getting members. + +### Security | Advanced hunting + +Added the [getHuntingSchemaTables](/graph/api/security-security-gethuntingschematables?view=graph-rest-beta&preserve-view=true) function to the [security](/graph/api/resources/security?view=graph-rest-beta&preserve-view=true) resource. Use it to retrieve only the advanced hunting tables that the signed-in user can access, returned as a collection so that you can apply OData query parameters to request a targeted subset of tables and columns. + +### Security | Alerts and incidents + +Added the [createAlert](/graph/api/security-alert-createalert?view=graph-rest-beta&preserve-view=true) action to the [alert](/graph/api/resources/security-alert?view=graph-rest-beta&preserve-view=true) resource for creating Microsoft 365 Defender alerts programmatically, including alert properties, incident-linking options, workspace routing, and inline entity definitions in a single request. + +### Security | Case management + +- Added the **slaPolicies** property to the [case](/graph/api/resources/security-casemanagement-case?view=graph-rest-beta&preserve-view=true) resource type, a read-only collection of [caseSlaPolicyEntry](/graph/api/resources/security-casemanagement-caseslapolicyentry?view=graph-rest-beta&preserve-view=true) objects that report the current status and breach target time of each SLA policy applied to a case. +- Added the [download attachment content](/graph/api/security-casemanagement-attachment-download-content?view=graph-rest-beta&preserve-view=true) and [upload attachment content](/graph/api/security-casemanagement-attachment-upload-content?view=graph-rest-beta&preserve-view=true) methods to the [attachment](/graph/api/resources/security-casemanagement-attachment?view=graph-rest-beta&preserve-view=true) resource type to transfer case evidence in chunks and retrieve it after malware scanning. +- Added the [get relation](/graph/api/security-casemanagement-relation-get?view=graph-rest-beta&preserve-view=true) and [delete relation](/graph/api/security-casemanagement-relation-delete?view=graph-rest-beta&preserve-view=true) methods to the [relation](/graph/api/resources/security-casemanagement-relation?view=graph-rest-beta&preserve-view=true) resource type to read and remove links between a case and related security resources. +- Added the [delete task](/graph/api/security-casemanagement-task-delete?view=graph-rest-beta&preserve-view=true) method to the [task](/graph/api/resources/security-casemanagement-task?view=graph-rest-beta&preserve-view=true) resource type to remove a task from a case. + +### Security | Data security and compliance + +- Added the `privacyDataMatch`, `aiPowered`, and `unknownFutureValue` members to the **classificationMethod** enumeration for the [sensitiveType](/graph/api/resources/sensitivetype?view=graph-rest-beta&preserve-view=true) resource. These members support privacy data matching based on tenant data, AI-powered classification that can benefit from supported caller-supplied embeddings, and forward-compatible handling of future values. +- Replaced the **offsetChunks** property and **embeddingOffsetChunk** resource type with the **chunkOffsets** property and [chunkOffsets](/graph/api/resources/chunkoffsets?view=graph-rest-beta&preserve-view=true) complex type in [embeddingInput](/graph/api/resources/embeddinginput?view=graph-rest-beta&preserve-view=true). Use **chunkOffsets** to associate precomputed embedding vectors with their source text ranges by using base64-encoded start positions and lengths. + +### Teamwork and communications | Calls and online meetings + +Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings?view=graph-rest-beta&preserve-view=true) and [getAllTranscripts](/graph/api/onlinemeeting-getalltranscripts?view=graph-rest-beta&preserve-view=true) methods to document a service-update issue that can cause paginated requests to return an empty collection followed by duplicate items. + +### Teamwork and communications | Messaging + +- Added the [agentCommunicationConfiguration](/graph/api/resources/agentcommunicationconfiguration?view=graph-rest-beta&preserve-view=true) resource type and related methods to configure how agents send and receive messages in Microsoft Teams. Define default communication settings on an [agentIdentityBlueprint](/graph/api/resources/agentidentityblueprint?view=graph-rest-beta&preserve-view=true) and override them for a specific agent on [agentIdentity](/graph/api/resources/agentidentity?view=graph-rest-beta&preserve-view=true). +- Added the [reorder sections](/graph/api/teamworksection-reorder?view=graph-rest-beta&preserve-view=true) and [reorder section items](/graph/api/teamworksectionitem-reorder?view=graph-rest-beta&preserve-view=true) actions. Use these actions to apply a complete custom order to a user's sections or to the items in a user-defined section. + ## July 2026: New and generally available ### Device and app management | Cloud PC diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 4262ab0d58c..83a9c970c8b 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -82,97 +82,17 @@ Added the **isDisabled** property to the [agentIdentityBlueprint](/graph/api/res - Added the **userObjectId** parameter to the [getByUser](/graph/api/filestoragecontainer-getbyuser?view=graph-rest-beta&preserve-view=true) method on the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource to retrieve a list of file storage containers owned by a user by passing the user's Microsoft Entra ID object ID. - Added the **isPatternToken** property to the [fileStorageContainerCustomPropertyValue](/graph/api/resources/filestoragecontainercustompropertyvalue?view=graph-rest-beta&preserve-view=true) resource to indicate whether a custom property value is a `urlTemplate` pattern that consumers must resolve before use, rather than a literal value. -### Identity and access | Directory management - -- Added the [provision](/graph/api/device-provision?view=graph-rest-beta&preserve-view=true) action to the [device](/graph/api/resources/device?view=graph-rest-beta&preserve-view=true) resource to enable approved Virtual Desktop Infrastructure (VDI) providers to provision devices in a customer's directory. - ### Groups - Added the **disableNesting** property to the [group](/graph/api/resources/group?view=graph-rest-beta&preserve-view=true) resource. Use it to prevent other groups from being added as members of a security group. -### Identity and access | Governance - -Clarified that the [Get accessPackageResourceEnvironment](/graph/api/accesspackageresourceenvironment-get?view=graph-rest-beta&preserve-view=true) method returns SharePoint Online resource environments only when it's called with delegated permissions. A SharePoint Online resource environment corresponds to a SharePoint root site, so to retrieve root site information with application permissions, use the [List sites](/graph/api/site-list?view=graph-rest-beta&preserve-view=true) method with the `$filter=siteCollection/root ne null` query option. - -### People and workplace intelligence | Analytics - -Added the **sensitivityLabel** property to the [searchHit](/graph/api/resources/searchhit?view=graph-rest-beta&preserve-view=true) resource type to provide sensitivity-label information for the search result resource. - -### Security | Data security and compliance - -Added the `contentFiltering` member to the [userActivityTypes](/graph/api/resources/enums-security?view=graph-rest-beta&preserve-view=true#useractivitytypes-values) enumeration used by the [compute protection scopes for a user](/graph/api/userprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) and [compute protection scopes for a tenant](/graph/api/tenantprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) APIs, enabling applications to determine whether data loss prevention policies govern content filtering before evaluating content. - -Added the **policyConfiguration** property to the [policyScopeBase](/graph/api/resources/policyscopebase?view=graph-rest-beta&preserve-view=true) resource type. Enforcement planes can use the effective Secure by Default configuration returned by the protection scope APIs to determine whether to audit or block content when policy evaluation can't be completed. - -Updated the [contentActivity](/graph/api/resources/contentactivity?view=graph-rest-beta&preserve-view=true) resource to support reporting Secure by Default policy evaluations that couldn't be completed. Enforcement planes can submit structured incomplete-inspection reasons through the existing content activity ingestion API. - -### Security | Audit log query - -- Added the **isRecordCountLimitExceeded**, **recordCountLimit**, and **approximateReturnedRecordCount** properties to the [auditLogQuery](/graph/api/resources/security-auditlogquery?view=graph-rest-beta&preserve-view=true) resource. Use these properties to determine whether a completed query exceeded the per-search record-count limit and to inspect the applicable limit and approximate returned record count. - -### Teamwork and communications | Messaging - -Updated the [getAllRetainedMessages](/graph/api/channel-getallretainedmessages?view=graph-rest-beta&preserve-view=true) method to document support for retained private-channel message versions captured after the tenant's private-channel storage migration completed. - -## August 2026: New and generally available - -### Applications - -- Added the [authenticationBehaviors](/graph/api/resources/authenticationbehaviors) resource type and the **coopEnforcement** property to the v1.0 endpoint. Application owners can use the property to explicitly test Cross-Origin-Opener-Policy enforcement, temporarily suppress enforcement while remediating an incompatible browser authentication flow, or return to the service default. The property is available in the global service only and isn't available in national cloud deployments. -- Added the **authenticationBehaviors** property to the [application](/graph/api/resources/application) resource type in v1.0. Returned only on `$select`. - -### Change notifications | Subscription - -- Added support for delivering change notifications to Web Push endpoints (RFC 8291) for the [subscription](/graph/api/resources/subscription) resource type. -- Added the [getVapidPublicKey](/graph/api/subscription-getvapidpublickey) method to obtain the VAPID public key (RFC 8292) used when creating Web Push subscriptions. - -### Files - -- Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer) resource type to create or update up to 20 columnDefinition objects in a single request. -- Added the **appliedByUser** parameter to the [assignSensitivityLabel](/graph/api/driveitem-assignsensitivitylabel) action on the [driveItem](/graph/api/resources/driveitem) resource. This parameter allows app-only callers to specify the user identity on whose behalf the sensitivity label is applied. - ### Identity and access | Directory management -- Added the **managerApplications** property to the [agentIdentity](/graph/api/resources/agentidentity) and [agentIdentityBlueprintPrincipal](/graph/api/resources/agentidentityblueprintprincipal) resources to identify the applications that manage the backing agent identity blueprint. - -Added the [recovery](/graph/api/resources/entrarecoveryservices-recovery) resource type and related methods to programmatically recover critical Microsoft Entra directory objects from automatically created point-in-time snapshots. Use these APIs to inspect available snapshots, preview and scope changes before restoration, run recovery jobs, monitor progress, and review failed changes. +- Added the [provision](/graph/api/device-provision?view=graph-rest-beta&preserve-view=true) action to the [device](/graph/api/resources/device?view=graph-rest-beta&preserve-view=true) resource to enable approved Virtual Desktop Infrastructure (VDI) providers to provision devices in a customer's directory. ### Identity and access | Governance -- Added the [externalSapAcConnectionInfo](/graph/api/resources/externalsapacconnectioninfo) complex type, along with the supporting [authenticationInfo](/graph/api/resources/authenticationinfo) and [clientCredentialAuthenticationInfo](/graph/api/resources/clientcredentialauthenticationinfo) types, to configure connections from Microsoft Entra entitlement management to SAP Access Control (AC) systems. Set these on the **connectionInfo** property of an [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) when its **connectorType** is `sapAc`. -- Promoted the **Lifecycle Workflows provisioning and workflow subject** APIs from beta to v1.0, introducing a broader, extensible subject model for workflows and surfacing per-subject processing results. The promoted surface includes: - - [workflowSubject](/graph/api/resources/identitygovernance-workflowsubject) base type and its [provisioningObjectWorkflowSubject](/graph/api/resources/identitygovernance-provisioningobjectworkflowsubject) and [directoryObjectWorkflowSubject](/graph/api/resources/identitygovernance-directoryobjectworkflowsubject) derived types - - [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult) resource with the **subjectProcessingResults** navigation property on the [run](/graph/api/resources/identitygovernance-run) and [workflow](/graph/api/resources/identitygovernance-workflow) resources - - [subjectSummary](/graph/api/resources/identitygovernance-subjectsummary) resource and the [summary](/graph/api/identitygovernance-subjectprocessingresult-summary) method on the [subjectProcessingResult](/graph/api/resources/identitygovernance-subjectprocessingresult) resource - - [activateAndWait](/graph/api/identitygovernance-workflow-activateandwait) action on the [workflow](/graph/api/resources/identitygovernance-workflow) resource, returning the [awaitedWorkflowProcessingResult](/graph/api/resources/identitygovernance-awaitedworkflowprocessingresult) resource - - [provisioningAttributeMapping](/graph/api/resources/identitygovernance-provisioningattributemapping) and [attributeSetEntry](/graph/api/resources/identitygovernance-attributesetentry) resources - - [customTaskExtensionResponseData](/graph/api/resources/identitygovernance-customtaskextensionresponsedata) resource, the **replyMode** property on [customTaskExtension](/graph/api/resources/identitygovernance-customtaskextension), and the **targetSubject** property on [customTaskExtensionCalloutData](/graph/api/resources/identitygovernance-customtaskextensioncalloutdata) - - **targetSubjectType** property on [workflowBase](/graph/api/resources/identitygovernance-workflowbase) and **workflowSubject** property on [taskProcessingResult](/graph/api/resources/identitygovernance-taskprocessingresult) - - [subjectType](/graph/api/resources/enums-identitygovernance#subjecttype-values) and [customTaskExtensionReplyMode](/graph/api/resources/enums-identitygovernance#customtaskextensionreplymode-values) enumerations, along with the `extensibility` and `extensibilityOnDemand` enumeration members -- Added the [externalOriginResourceConnector](/graph/api/resources/externaloriginresourceconnector) resource type and methods to [create](/graph/api/entitlementmanagement-post-externaloriginresourceconnectors), [list](/graph/api/entitlementmanagement-list-externaloriginresourceconnectors), [get](/graph/api/externaloriginresourceconnector-get), [update](/graph/api/externaloriginresourceconnector-update), and [delete](/graph/api/externaloriginresourceconnector-delete) connections from Microsoft Entra entitlement management to SAP Identity Access Governance (SAP IAG). For an SAP IAG connector, specify the SAP IAG endpoint, OAuth token endpoint, and client ID, along with the Azure subscription, resource group, key vault, and secret that identify where its client secret is stored. The connector is associated with an access package resource so that entitlement management can provision access to resources in SAP IAG through access packages. -- Added the **reviewerId** and **scopeType** properties to [accessReviewReviewerScope](/graph/api/resources/accessreviewreviewerscope) to specify a reviewer directly or as a well-known scope instead of through a query. -- Added the **applyDescription** property to [accessReviewInstanceDecisionItem](/graph/api/resources/accessreviewinstancedecisionitem) to describe the result of applying a decision. -- Added the **appRoleId** and **appRoleDisplayName** properties to [accessReviewInstanceDecisionItemServicePrincipalResource](/graph/api/resources/accessreviewinstancedecisionitemserviceprincipalresource) to identify the app role under review. -- Added the **errors** property to [accessReviewInstance](/graph/api/resources/accessreviewinstance) and the [accessReviewError](/graph/api/resources/accessreviewerror) resource type to report errors that occur during the review instance lifecycle. -- Added the [accessReviewPrincipalScope](/graph/api/resources/accessreviewprincipalscope), [accessReviewResourceScope](/graph/api/resources/accessreviewresourcescope), and [accessReviewAccessPackageAssignmentPolicyScope](/graph/api/resources/accessreviewaccesspackageassignmentpolicyscope) resource types. Use them in the **principalScopes** and **resourceScopes** properties of [principalResourceMembershipsScope](/graph/api/resources/principalresourcemembershipsscope) to state which principals have their access to which resources reviewed without writing a query expression. -- Added the **accessReviewPrincipalScopeType**, **accessReviewResourceScopeType**, and **accessReviewReviewerScopeType** enumeration types to identify well-known principal, resource, and reviewer scopes. - -### Identity and access | Identity and sign-in - -Added support for managing Microsoft 365 cross-tenant capabilities in cross-tenant access policies. Use the [m365CapabilityBase](/graph/api/resources/m365capabilitybase) resource and the **m365Capabilities** relationship to manage which Microsoft 365 experiences—such as calendar sharing, MailTips, places booking, and cross-tenant migration—are enabled between tenants. For the default policy, you can [list](/graph/api/crosstenantaccesspolicyconfigurationdefault-list-m365capabilities), [create](/graph/api/crosstenantaccesspolicyconfigurationdefault-post-m365capabilities), and [update](/graph/api/crosstenantaccesspolicyconfigurationdefault-update-m365capabilities) capabilities. For partner policies, you can [list](/graph/api/crosstenantaccesspolicyconfigurationpartner-list-m365capabilities), [create](/graph/api/crosstenantaccesspolicyconfigurationpartner-post-m365capabilities), [update](/graph/api/crosstenantaccesspolicyconfigurationpartner-update-m365capabilities), and [delete](/graph/api/crosstenantaccesspolicyconfigurationpartner-delete-m365capabilities) capabilities. - -### Mail - -- Added the [note](/graph/api/resources/note) resource type and methods to [list](/graph/api/user-list-notes), [create](/graph/api/user-post-notes), [get](/graph/api/note-get), [update](/graph/api/note-update), and [delete](/graph/api/note-delete) quick-capture notes in a user's _Notes_ folder. Use [delta query](/graph/api/note-delta) to synchronize notes that were added, updated, or deleted since the previous request. You can also [list](/graph/api/note-list-attachments), [add](/graph/api/note-post-attachments), and [delete](/graph/api/attachment-delete) inline image attachments, and use open or legacy extended properties to store custom data on a note. - -### Mailbox import and export - -- Added the **wellKnownName** property to the [mailboxFolder](/graph/api/resources/mailboxfolder) resource type in v1.0. Use this property to identify folders created by Outlook by using a locale-independent name. -- Added the [Delete mailboxItem](/graph/api/mailboxfolder-delete-items) method to the [mailboxItem](/graph/api/resources/mailboxitem) resource type in v1.0. Use this method to delete an individual mailbox item from a mailbox folder with Exchange soft-delete or hard-delete semantics. - -### Security - -Updated the retirement date for the legacy Microsoft Graph [security alerts API](/graph/api/resources/alert) from August 31, 2026 to October 15, 2026. +Clarified that the [Get accessPackageResourceEnvironment](/graph/api/accesspackageresourceenvironment-get?view=graph-rest-beta&preserve-view=true) method returns SharePoint Online resource environments only when it's called with delegated permissions. A SharePoint Online resource environment corresponds to a SharePoint root site, so to retrieve root site information with application permissions, use the [List sites](/graph/api/site-list?view=graph-rest-beta&preserve-view=true) method with the `$filter=siteCollection/root ne null` query option. ### Identity and access | Monitoring & health @@ -182,85 +102,25 @@ Updated the retirement date for the legacy Microsoft Graph [security alerts API] - Added the [nistClassification](/graph/api/resources/nistclassification?view=graph-rest-beta&preserve-view=true) resource and the **nistClassifications** property to the [recommendationBase](/graph/api/resources/recommendationbase?view=graph-rest-beta&preserve-view=true) resource to map recommendations to NIST Cybersecurity Framework 2.0 functions and categories. - Added the **categoryGroup** property (and the new **recommendationCategoryGroup** enumeration), **completedBySystemDateTime**, **completedByUserDateTime**, **failedReviewDateTime**, **needsMoreActionResourceCount**, **remediatedDateTime**, and **statusModifiedDateTime** properties to the [recommendationBase](/graph/api/resources/recommendationbase?view=graph-rest-beta&preserve-view=true) resource. Added the `microsoftEntraSuite` member to the **requiredLicenses** enumeration and the **lastRefreshedDateTime** property to the [recommendationConfiguration](/graph/api/resources/recommendationconfiguration?view=graph-rest-beta&preserve-view=true) resource. -### Teamwork and communications | Calls and online meetings - -- Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) and [getAllTranscripts](/graph/api/onlinemeeting-getalltranscripts) methods to document a service-update issue that can cause paginated requests to return an empty collection followed by duplicate items. -- Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings) method to return a Microsoft Graph URL that you can use to download recording content. - -### Tenants | Tenant governance - -- Promoted the [tenantGovernance](/graph/api/resources/tenantgovernanceservices-tenantgovernance) resource type and related methods from beta to v1.0 for discovering related tenants and managing governance invitations, requests, relationships, settings, and policy templates across Microsoft Entra tenants. - -## August 2026: New in preview only - - -### Applications - -- Added the **coopEnforcement** property to the [authenticationBehaviors](/graph/api/resources/authenticationbehaviors?view=graph-rest-beta&preserve-view=true) resource. Application owners can use it to explicitly test Cross-Origin-Opener-Policy enforcement, temporarily suppress enforcement while remediating an incompatible browser authentication flow, or return to the service default. - -### Device and app management | Cloud licensing - -Added cloud licensing support for devices, enabling license assignment and usage tracking for device-based licensing scenarios. The new capabilities include: - -- Added the [deviceCloudLicensing](/graph/api/resources/cloudlicensing-devicecloudlicensing?view=graph-rest-beta&preserve-view=true) resource type and the **cloudLicensing** property to the [device](/graph/api/resources/device?view=graph-rest-beta&preserve-view=true) resource. -- Use the [List usageRights for device](/graph/api/cloudlicensing-devicecloudlicensing-list-usagerights?view=graph-rest-beta&preserve-view=true) method to retrieve usage rights granted to a device through direct assignments and transitive group-based assignments. -- Use the [Create assignment for device](/graph/api/cloudlicensing-devicecloudlicensing-post-assignments?view=graph-rest-beta&preserve-view=true) method to assign licenses directly to devices. -- Use the [List waitingMembers for device](/graph/api/cloudlicensing-devicecloudlicensing-list-waitingmembers?view=graph-rest-beta&preserve-view=true) method to retrieve devices in the waiting room due to license capacity limits. - -### Device and app management | Cloud PC - -- Added the [retrieveCloudPcPerformanceMetricsReport](/graph/api/cloudpcreports-retrievecloudpcperformancemetricsreport?view=graph-rest-beta&preserve-view=true) method to the [cloudPcReports](/graph/api/resources/cloudpcreports?view=graph-rest-beta&preserve-view=true) resource type. Use it to get VM-level utilization and performance metrics for a specific Cloud PC, including CPU, memory, and network metrics. - -### Files - -- Added the [Upsert columns](/graph/api/filestoragecontainer-patch-columns?view=graph-rest-beta&preserve-view=true) method to the [fileStorageContainer](/graph/api/resources/filestoragecontainer?view=graph-rest-beta&preserve-view=true) resource type to create or update up to 20 columnDefinition objects in a single request. -- Added the **appliedByUser** parameter to the [assignSensitivityLabel](/graph/api/driveitem-assignsensitivitylabel?view=graph-rest-beta&preserve-view=true) action on the [driveItem](/graph/api/resources/driveitem?view=graph-rest-beta&preserve-view=true) resource. This parameter allows app-only callers to specify the user identity on whose behalf the sensitivity label is applied, enabling label assignment for SharePoint Embedded containers. - -### Identity and access | Governance - -- Added support for configurable time-based lifecycle workflow triggers through the [timeBasedAttributeTriggerV2](/graph/api/resources/identitygovernance-timebasedattributetriggerv2?view=graph-rest-beta&preserve-view=true) resource. Select a date-type user attribute and configure an operator to run workflows on an exact date, within a rolling window, or between two offsets before or after that date. - -### Identity and access | Identity and sign-in - -- Added the [anonymousCalendarSharingFreeBusySimple](/graph/api/resources/anonymouscalendarsharingfreebusysimple?view=graph-rest-beta&preserve-view=true), [anonymousCalendarSharingFreeBusyDetail](/graph/api/resources/anonymouscalendarsharingfreebusydetail?view=graph-rest-beta&preserve-view=true), and [anonymousCalendarSharingFreeBusyReviewer](/graph/api/resources/anonymouscalendarsharingfreebusyreviewer?view=graph-rest-beta&preserve-view=true) capabilities that derive from [m365CapabilityBase](/graph/api/resources/m365capabilitybase?view=graph-rest-beta&preserve-view=true). Use these capabilities in cross-tenant access policies to authorize anonymous external users to view calendar free/busy information at simple, detailed, or reviewer fidelity. - -### Mail - -- Changed the **members** property on the [distributionList](/graph/api/resources/distributionlist?view=graph-rest-beta&preserve-view=true) resource to an expandable relationship. Use `$expand=members` with the [Get distribution list](/graph/api/distributionlist-get?view=graph-rest-beta&preserve-view=true) method instead of the removed standalone methods for listing and getting members. - -### People and workplace intelligence - -- Updated [Manage profile source precedence in Microsoft 365](/graph/profilepriority-configure-profilepropertysetting) to clarify supported data sources for HR and work position data, explain how source precedence affects single-value versus multi-value properties, and add guidance on correctly configuring and removing tenant-level settings using the Microsoft Graph API or PowerShell. -- Added the [People data sources in Microsoft 365](/graph/people-data-sources) concept article that describes the data sources that build the Microsoft 365 user profile, including Microsoft Entra ID, Copilot connectors, Organizational data, SharePoint, People Skills, user edits, and the API user source. The article also provides a reference table of built-in source IDs (GUIDs) and explains how source metadata appears in the profile API output. - -### Security | Advanced hunting - -- Added the [getHuntingSchemaTables](/graph/api/security-security-gethuntingschematables?view=graph-rest-beta&preserve-view=true) function to the [security](/graph/api/resources/security?view=graph-rest-beta&preserve-view=true) resource. Use it to retrieve only the advanced hunting tables that the signed-in user can access, returned as a collection so that you can apply OData query parameters to request a targeted subset of tables and columns. - -### Security | Alerts and incidents +### People and workplace intelligence | Analytics -- Added the [createAlert](/graph/api/security-alert-createalert?view=graph-rest-beta&preserve-view=true) action to the [alert](/graph/api/resources/security-alert?view=graph-rest-beta&preserve-view=true) resource for creating Microsoft 365 Defender alerts programmatically, including alert properties, incident-linking options, workspace routing, and inline entity definitions in a single request. +Added the **sensitivityLabel** property to the [searchHit](/graph/api/resources/searchhit?view=graph-rest-beta&preserve-view=true) resource type to provide sensitivity-label information for the search result resource. -### Security | Case management +### Security | Audit log query -- Added the **slaPolicies** property to the [case](/graph/api/resources/security-casemanagement-case?view=graph-rest-beta&preserve-view=true) resource type, a read-only collection of [caseSlaPolicyEntry](/graph/api/resources/security-casemanagement-caseslapolicyentry?view=graph-rest-beta&preserve-view=true) objects that report the current status and breach target time of each SLA policy applied to a case. -- Added the [download attachment content](/graph/api/security-casemanagement-attachment-download-content?view=graph-rest-beta&preserve-view=true) and [upload attachment content](/graph/api/security-casemanagement-attachment-upload-content?view=graph-rest-beta&preserve-view=true) methods to the [attachment](/graph/api/resources/security-casemanagement-attachment?view=graph-rest-beta&preserve-view=true) resource type to transfer case evidence in chunks and retrieve it after malware scanning. -- Added the [get relation](/graph/api/security-casemanagement-relation-get?view=graph-rest-beta&preserve-view=true) and [delete relation](/graph/api/security-casemanagement-relation-delete?view=graph-rest-beta&preserve-view=true) methods to the [relation](/graph/api/resources/security-casemanagement-relation?view=graph-rest-beta&preserve-view=true) resource type to read and remove links between a case and related security resources. -- Added the [delete task](/graph/api/security-casemanagement-task-delete?view=graph-rest-beta&preserve-view=true) method to the [task](/graph/api/resources/security-casemanagement-task?view=graph-rest-beta&preserve-view=true) resource type to remove a task from a case. +- Added the **isRecordCountLimitExceeded**, **recordCountLimit**, and **approximateReturnedRecordCount** properties to the [auditLogQuery](/graph/api/resources/security-auditlogquery?view=graph-rest-beta&preserve-view=true) resource. Use these properties to determine whether a completed query exceeded the per-search record-count limit and to inspect the applicable limit and approximate returned record count. ### Security | Data security and compliance -- Added the `privacyDataMatch`, `aiPowered`, and `unknownFutureValue` members to the **classificationMethod** enumeration for the [sensitiveType](/graph/api/resources/sensitivetype?view=graph-rest-beta&preserve-view=true) resource. These members support privacy data matching based on tenant data, AI-powered classification that can benefit from supported caller-supplied embeddings, and forward-compatible handling of future values. -- Replaced the **offsetChunks** property and **embeddingOffsetChunk** resource type with the **chunkOffsets** property and [chunkOffsets](/graph/api/resources/chunkoffsets?view=graph-rest-beta&preserve-view=true) complex type in [embeddingInput](/graph/api/resources/embeddinginput?view=graph-rest-beta&preserve-view=true). Use **chunkOffsets** to associate precomputed embedding vectors with their source text ranges by using base64-encoded start positions and lengths. +Added the `contentFiltering` member to the [userActivityTypes](/graph/api/resources/enums-security?view=graph-rest-beta&preserve-view=true#useractivitytypes-values) enumeration used by the [compute protection scopes for a user](/graph/api/userprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) and [compute protection scopes for a tenant](/graph/api/tenantprotectionscopecontainer-compute?view=graph-rest-beta&preserve-view=true) APIs, enabling applications to determine whether data loss prevention policies govern content filtering before evaluating content. -### Teamwork and communications | Calls and online meetings +Added the **policyConfiguration** property to the [policyScopeBase](/graph/api/resources/policyscopebase?view=graph-rest-beta&preserve-view=true) resource type. Enforcement planes can use the effective Secure by Default configuration returned by the protection scope APIs to determine whether to audit or block content when policy evaluation can't be completed. -- Updated the [getAllRecordings](/graph/api/onlinemeeting-getallrecordings?view=graph-rest-beta&preserve-view=true) and [getAllTranscripts](/graph/api/onlinemeeting-getalltranscripts?view=graph-rest-beta&preserve-view=true) methods to document a service-update issue that can cause paginated requests to return an empty collection followed by duplicate items. +Updated the [contentActivity](/graph/api/resources/contentactivity?view=graph-rest-beta&preserve-view=true) resource to support reporting Secure by Default policy evaluations that couldn't be completed. Enforcement planes can submit structured incomplete-inspection reasons through the existing content activity ingestion API ### Teamwork and communications | Messaging -- Added the [agentCommunicationConfiguration](/graph/api/resources/agentcommunicationconfiguration?view=graph-rest-beta&preserve-view=true) resource type and related methods to configure how agents send and receive messages in Microsoft Teams. Define default communication settings on an [agentIdentityBlueprint](/graph/api/resources/agentidentityblueprint?view=graph-rest-beta&preserve-view=true) and override them for a specific agent on [agentIdentity](/graph/api/resources/agentidentity?view=graph-rest-beta&preserve-view=true). -- Added the [reorder sections](/graph/api/teamworksection-reorder?view=graph-rest-beta&preserve-view=true) and [reorder section items](/graph/api/teamworksectionitem-reorder?view=graph-rest-beta&preserve-view=true) actions. Use these actions to apply a complete custom order to a user's sections or to the items in a user-defined section. +Updated the [getAllRetainedMessages](/graph/api/channel-getallretainedmessages?view=graph-rest-beta&preserve-view=true) method to document support for retained private-channel message versions captured after the tenant's private-channel storage migration completed. ## Contribute to Microsoft Graph From 2f1f48045aa7bad94a145b4f23163831693af988 Mon Sep 17 00:00:00 2001 From: Jarbas Horst <26866873+JarbasHorst@users.noreply.github.com> Date: Thu, 1 Oct 2026 16:20:35 +0200 Subject: [PATCH 185/189] Fixed issues in list and listitem permission files (#29665) * Fixed issues in item and listitem permission files Fixed issues introduced via PR https://github.com/microsoftgraph/microsoft-graph-docs/pull/29025/changes. * Update listitem-list-permissions.md * Update listitem-list-permissions.md * Update list-list-permissions.md * Update list-list-permissions.md * Update listitem-list-permissions.md * Update listitem-list-permissions.md * Update list-list-permissions.md * Update listitem-list-permissions.md * Update listitem-list-permissions.md --- api-reference/beta/api/list-list-permissions.md | 8 +++++--- api-reference/beta/api/listitem-list-permissions.md | 8 +++++--- api-reference/v1.0/api/list-list-permissions.md | 2 +- api-reference/v1.0/api/listitem-list-permissions.md | 5 +++-- 4 files changed, 14 insertions(+), 9 deletions(-) diff --git a/api-reference/beta/api/list-list-permissions.md b/api-reference/beta/api/list-list-permissions.md index a2d48a18dc6..56935215c24 100644 --- a/api-reference/beta/api/list-list-permissions.md +++ b/api-reference/beta/api/list-list-permissions.md @@ -34,7 +34,8 @@ GET /sites/{site-id}/lists/{list-id}/permissions ``` ## Optional query parameters -This method supports some of the OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +This method supports the `$select`, `$filter`, `$count`, and `$top` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). ## Request headers |Name|Description| @@ -59,8 +60,9 @@ The following example shows a request. "name": "list_permission_list_nav_property" } --> - ---- +```msgraph-interactive +GET https://graph.microsoft.com/beta/sites/60a53b69-1342-4e9a-9d66-d2288f214b68/lists/b5dabb84-f89f-4317-a884-99b3d2067c2c/permissions +``` ### Response diff --git a/api-reference/beta/api/listitem-list-permissions.md b/api-reference/beta/api/listitem-list-permissions.md index 5538205732c..fb732755ae1 100644 --- a/api-reference/beta/api/listitem-list-permissions.md +++ b/api-reference/beta/api/listitem-list-permissions.md @@ -34,7 +34,8 @@ GET /sites/{site-id}/lists/{list-id}/items/{item-id}/permissions ``` ## Optional query parameters -This method supports some of the OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +This method supports the `$select`, `$filter`, `$count`, and `$top` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). ## Request headers |Name|Description| @@ -59,8 +60,9 @@ The following example shows a request. "name": "list_permission_listitem_nav_property" } --> - ---- +```msgraph-interactive +GET https://graph.microsoft.com/beta/sites/60a53b69-1342-4e9a-9d66-d2288f214b68/lists/b5dabb84-f89f-4317-a884-99b3d2067c2c/items/bdaa01cd-7ed2-4cd2-8292-2771e6f43148/permissions +``` ### Response diff --git a/api-reference/v1.0/api/list-list-permissions.md b/api-reference/v1.0/api/list-list-permissions.md index ce96ef2e599..cd6d4d07c9c 100644 --- a/api-reference/v1.0/api/list-list-permissions.md +++ b/api-reference/v1.0/api/list-list-permissions.md @@ -32,7 +32,7 @@ GET /sites/{site-id}/lists/{list-id}/permissions ``` ## Optional query parameters -This method supports $select, $filter, $count, and $top OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). +This method supports the `$select`, `$filter`, `$count`, and `$top` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). ## Request headers |Name|Description| diff --git a/api-reference/v1.0/api/listitem-list-permissions.md b/api-reference/v1.0/api/listitem-list-permissions.md index 0a9c5b1e15c..cc3c6d6928e 100644 --- a/api-reference/v1.0/api/listitem-list-permissions.md +++ b/api-reference/v1.0/api/listitem-list-permissions.md @@ -28,11 +28,12 @@ Choose the permission or permissions marked as least privileged for this API. Us } --> ```http -GET /sites/{site-id}/lists/{list-id}/permissions +GET /sites/{site-id}/lists/{list-id}/items/{item-id}/permissions ``` ## Optional query parameters -This method supports $select, $filter, $count, and $top OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). + +This method supports the `$select`, `$filter`, `$count`, and `$top` OData query parameters to help customize the response. For general information, see [OData query parameters](/graph/query-parameters). ## Request headers |Name|Description| From 8c92a80ce610b1cd1ed8ab5e08b8e05ea239ddc4 Mon Sep 17 00:00:00 2001 From: "snippet-gen-pull-automation[bot]" <95501462+snippet-gen-pull-automation[bot]@users.noreply.github.com> Date: Thu, 1 Oct 2026 08:21:19 -0600 Subject: [PATCH 186/189] Update reference TOC (#29664) Co-authored-by: Microsoft Graph DevX Tooling From 810b4a575519d7a1d4a8dd6883a06e9ce983f08f Mon Sep 17 00:00:00 2001 From: Corina <14900841+corinagum@users.noreply.github.com> Date: Thu, 1 Oct 2026 07:21:48 -0700 Subject: [PATCH 187/189] Add channel meeting permission guidance to callTranscript (#29658) * Add information on OnlineMeetingTranscript.Read.All * Apply batched suggestions from code review Co-authored-by: Jarbas Horst <26866873+JarbasHorst@users.noreply.github.com> --------- Co-authored-by: Jarbas Horst <26866873+JarbasHorst@users.noreply.github.com> --- api-reference/beta/api/calltranscript-get.md | 4 ++-- api-reference/v1.0/api/calltranscript-get.md | 4 ++-- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/api-reference/beta/api/calltranscript-get.md b/api-reference/beta/api/calltranscript-get.md index a48cfd696d5..8478c8fe15e 100644 --- a/api-reference/beta/api/calltranscript-get.md +++ b/api-reference/beta/api/calltranscript-get.md @@ -41,9 +41,9 @@ Choose the permission or permissions marked as least privileged for this API. Us |Application| OnlineMeetingTranscript.Read.All, OnlineMeetingTranscript.Read.Chat (for online meetings) CallTranscripts.Read.All (for ad hoc calls)| Not available.| > [!NOTE] -> The application permissions `OnlineMeetingTranscript.Read.Chat` uses [resource-specific consent](/microsoftteams/platform/graph-api/rsc/resource-specific-consent). The `OnlineMeetingTranscript.Read.Chat` permission applies only to scheduled private chat meetings, not to channel meetings. +> The application permissions `OnlineMeetingTranscript.Read.Chat` uses [resource-specific consent](/microsoftteams/platform/graph-api/rsc/resource-specific-consent). The `OnlineMeetingTranscript.Read.Chat` permission applies only to scheduled private chat meetings, not to channel meetings. For a channel meeting, use `OnlineMeetingTranscript.Read.All` with an application access policy. -To use application permissions for this API, tenant administrators must create an application access policy and grant it to a user. It authorizes the app configured in the policy to fetch online meetings and/or online meeting artifacts on behalf of that user (with the user ID specified in the request path). For more information, see [Allow applications to access online meetings on behalf of a user](/graph/cloud-communication-online-meeting-application-access-policy). +To use application permissions for this API, tenant administrators must create an *application access policy* and grant it to a user. It authorizes the app configured in the policy to fetch online meetings and/or online meeting artifacts on behalf of that user (with the user ID specified in the request path). For more information, see [Allow applications to access online meetings on behalf of a user](/graph/cloud-communication-online-meeting-application-access-policy). > [!NOTE] > For online meetings: diff --git a/api-reference/v1.0/api/calltranscript-get.md b/api-reference/v1.0/api/calltranscript-get.md index 8378e1c691f..01a1aec0735 100644 --- a/api-reference/v1.0/api/calltranscript-get.md +++ b/api-reference/v1.0/api/calltranscript-get.md @@ -38,9 +38,9 @@ Choose the permission or permissions marked as least privileged for this API. Us > [!NOTE] > -> The application permissions `OnlineMeetingTranscript.Read.Chat` uses [resource-specific consent](/microsoftteams/platform/graph-api/rsc/resource-specific-consent). The `OnlineMeetingTranscript.Read.Chat` permission applies only to scheduled private chat meetings, not to channel meetings. +> The application permissions `OnlineMeetingTranscript.Read.Chat` uses [resource-specific consent](/microsoftteams/platform/graph-api/rsc/resource-specific-consent). The `OnlineMeetingTranscript.Read.Chat` permission applies only to scheduled private chat meetings, not to channel meetings. For a channel meeting, use `OnlineMeetingTranscript.Read.All` with an application access policy. -To use application permission for this API, tenant administrators must create an application access policy and grant it to a user. It authorizes the app configured in the policy to fetch online meetings and/or online meeting artifacts on behalf of that user (with the user ID specified in the request path). For more information, see [Allow applications to access online meetings on behalf of a user](/graph/cloud-communication-online-meeting-application-access-policy). +To use application permission for this API, tenant administrators must create an *application access policy* and grant it to a user. It authorizes the app configured in the policy to fetch online meetings and/or online meeting artifacts on behalf of that user (with the user ID specified in the request path). For more information, see [Allow applications to access online meetings on behalf of a user](/graph/cloud-communication-online-meeting-application-access-policy). > [!NOTE] > For online meetings: From d48302ecb4ce47075f2ccb0c42826d5316d1bd0c Mon Sep 17 00:00:00 2001 From: Mayur Santani <6283407+mjsantani@users.noreply.github.com> Date: Thu, 1 Oct 2026 07:22:24 -0700 Subject: [PATCH 188/189] Promote device provisioning docs to v1.0 (ZTD 3P VDI) (#29641) * Promote device provisioning API documentation to v1.0 * Address device provisioning method label and example headings * Align v1.0 provisioning changelog with schema build artifact --------- Co-authored-by: Mayur Santani --- api-reference/v1.0/api/device-provision.md | 98 +++++++++++++++++++ .../device-provision-permissions.md | 11 +++ .../rbac-device-apis-provision.md | 7 ++ api-reference/v1.0/resources/device.md | 1 + .../v1.0/resources/provisionresponse.md | 48 +++++++++ api-reference/v1.0/toc/toc.mapping.json | 3 + ...Microsoft.ZeroTouchDeviceProvisioning.json | 34 +++++++ concepts/whats-new-overview.md | 4 + 8 files changed, 206 insertions(+) create mode 100644 api-reference/v1.0/api/device-provision.md create mode 100644 api-reference/v1.0/includes/permissions/device-provision-permissions.md create mode 100644 api-reference/v1.0/includes/rbac-for-apis/rbac-device-apis-provision.md create mode 100644 api-reference/v1.0/resources/provisionresponse.md diff --git a/api-reference/v1.0/api/device-provision.md b/api-reference/v1.0/api/device-provision.md new file mode 100644 index 00000000000..155d33a063e --- /dev/null +++ b/api-reference/v1.0/api/device-provision.md @@ -0,0 +1,98 @@ +--- +title: "device: provision" +description: "Provision a device on behalf of an approved Virtual Desktop Infrastructure (VDI) provider." +author: "mjsantani" +ms.localizationpriority: medium +ms.subservice: "entra-directory-management" +doc_type: apiPageType +ms.date: 09/24/2026 +--- + +# device: provision + +Namespace: microsoft.graph + +Provision a [device](../resources/device.md) on behalf of an approved Virtual Desktop Infrastructure (VDI) provider. + +This action wraps the Zero Touch Deployment (ZTD) protocol to create a device in a pending state in the customer's directory. The device can't be used for authentication until it completes its registration. The created device is stamped with a system label that identifies the approved VDI provider. + +Only VDI applications on Microsoft's approved list of VDI providers can successfully call this action. Calls from other applications are blocked even when the application is granted the required permission. + +## Permissions + +Choose the permission or permissions marked as least privileged for this API. Use a higher privileged permission or permissions [only if your app requires it](/graph/permissions-overview#best-practices-for-using-microsoft-graph-permissions). For details about delegated and application permissions, see [Permission types](/graph/permissions-overview#permission-types). To learn more about these permissions, see the [permissions reference](/graph/permissions-reference). + + +[!INCLUDE [permissions-table](../includes/permissions/device-provision-permissions.md)] + +[!INCLUDE [rbac-device-apis-provision](../includes/rbac-for-apis/rbac-device-apis-provision.md)] + +In addition to the permission, the calling application must be on Microsoft's approved list of VDI providers. + +## HTTP request + + +```http +POST /devices/provision +``` + +## Request headers + +|Name|Description| +|:---|:---| +|Authorization|Bearer {token}. Required. Learn more about [authentication and authorization](/graph/auth/auth-concepts).| +|Content-Type|application/json. Required.| + +## Request body + +In the request body, supply a JSON representation of the parameters. + +The following table shows the parameters that you can use with this action. + +|Parameter|Type|Description| +|:---|:---|:---| +|provisioningBlob|String|An opaque blob, generated by the Microsoft Entra device identity runtime library and shared with approved VDI providers, that contains the information required to provision the device. Required.| + +## Response + +If successful, this action returns a `201 Created` response code and a [provisionResponse](../resources/provisionresponse.md) in the response body. The response also includes a `Location` header that contains the URI of the created device object. + +## Examples + +#### Request + +The following example shows a request. + + +```http +POST https://graph.microsoft.com/v1.0/devices/provision +Content-Type: application/json + +{ + "provisioningBlob": "eyJ2ZXIiOiIxLjAiLCJub25jZSI6IjJkZjg1ZTdmYTk0ZjQ3In0" +} +``` + +#### Response + +The following example shows the response. + +>**Note:** The response object shown here might be shortened for readability. + +```http +HTTP/1.1 201 Created +Content-Type: application/json + +{ + "@odata.context": "https://graph.microsoft.com/v1.0/$metadata#microsoft.graph.provisionResponse", + "challenge": "Y2hhbGxlbmdlVmFsdWVFeGFtcGxl", + "deviceId": "2ec25e3b-9243-4f3c-8c83-2e2a9b8a4f1a" +} +``` \ No newline at end of file diff --git a/api-reference/v1.0/includes/permissions/device-provision-permissions.md b/api-reference/v1.0/includes/permissions/device-provision-permissions.md new file mode 100644 index 00000000000..63f33365f63 --- /dev/null +++ b/api-reference/v1.0/includes/permissions/device-provision-permissions.md @@ -0,0 +1,11 @@ +--- +description: "Automatically generated file. DO NOT MODIFY" +ms.topic: include +ms.localizationpriority: medium +--- + +|Permission type|Least privileged permissions|Higher privileged permissions| +|:---|:---|:---| +|Delegated (work or school account)|Device.ProvisionForVDI|Not available.| +|Delegated (personal Microsoft account)|Not supported.|Not supported.| +|Application|Not supported.|Not supported.| \ No newline at end of file diff --git a/api-reference/v1.0/includes/rbac-for-apis/rbac-device-apis-provision.md b/api-reference/v1.0/includes/rbac-for-apis/rbac-device-apis-provision.md new file mode 100644 index 00000000000..90b1346216c --- /dev/null +++ b/api-reference/v1.0/includes/rbac-for-apis/rbac-device-apis-provision.md @@ -0,0 +1,7 @@ +--- +author: mjsantani +ms.topic: include +--- + +> [!IMPORTANT] +> For delegated access using work or school accounts, the signed-in user must be assigned a supported [Microsoft Entra role](/entra/identity/role-based-access-control/permissions-reference?toc=%2Fgraph%2Ftoc.json) or a custom role that grants the permissions required for this operation. *Cloud Device Administrator* is the least privileged role supported for this operation. \ No newline at end of file diff --git a/api-reference/v1.0/resources/device.md b/api-reference/v1.0/resources/device.md index bfb8e6b11d3..27cd665f943 100644 --- a/api-reference/v1.0/resources/device.md +++ b/api-reference/v1.0/resources/device.md @@ -31,6 +31,7 @@ This resource supports: |[Get](../api/device-get.md) | [device](device.md) |Read properties and relationships of a device object.| |[Update](../api/device-update.md) | [device](device.md) |Update the properties of a device object. | |[Delete](../api/device-delete.md) | None |Delete a device object. | +|[device: provision](../api/device-provision.md) | [provisionResponse](provisionresponse.md) |Provision a device on behalf of an approved Virtual Desktop Infrastructure (VDI) provider. | |[Get delta](../api/device-delta.md)|[device](device.md) collection| Get incremental changes for devices. | |[List member of](../api/device-list-memberof.md) |[directoryObject](directoryobject.md) collection| List the groups and administrative units that the device is a direct member of. | |[List transitive member of](../api/device-list-transitivememberof.md) |[directoryObject](directoryobject.md) collection| List the groups and administrative units that the device is a member of. This operation is transitive. | diff --git a/api-reference/v1.0/resources/provisionresponse.md b/api-reference/v1.0/resources/provisionresponse.md new file mode 100644 index 00000000000..866e8a8e7ee --- /dev/null +++ b/api-reference/v1.0/resources/provisionresponse.md @@ -0,0 +1,48 @@ +--- +title: "provisionResponse resource type" +description: "Represents the response returned by the provision action when an approved Virtual Desktop Infrastructure (VDI) provider provisions a device." +author: "mjsantani" +ms.localizationpriority: medium +ms.subservice: "entra-directory-management" +doc_type: resourcePageType +ms.date: 09/24/2026 +--- + +# provisionResponse resource type + +Namespace: microsoft.graph + +Represents the response returned by the [provision](../api/device-provision.md) action of the [device](device.md) resource. + +An approved Virtual Desktop Infrastructure (VDI) provisioning service receives this response after it provisions a device and passes it to the device so that the device can complete its registration with the directory. + +## Methods + +None. + +## Properties + +|Property|Type|Description| +|:---|:---|:---| +|challenge|String|The cryptographic challenge that the device uses to complete its registration with the directory.| +|deviceId|String|The unique identifier of the provisioned device.| + +## Relationships + +None. + +## JSON representation + +The following JSON representation shows the resource type. + +``` json +{ + "@odata.type": "#microsoft.graph.provisionResponse", + "challenge": "String", + "deviceId": "String" +} +``` \ No newline at end of file diff --git a/api-reference/v1.0/toc/toc.mapping.json b/api-reference/v1.0/toc/toc.mapping.json index 0a98910f955..ecd727a952b 100644 --- a/api-reference/v1.0/toc/toc.mapping.json +++ b/api-reference/v1.0/toc/toc.mapping.json @@ -820,6 +820,9 @@ "deviceLocalCredentialInfo", "remoteTenantGroup" ], + "complexTypes": [ + "provisionResponse" + ], "childNodes": [ { "name": "Custom security attributes", diff --git a/changelog/Microsoft.ZeroTouchDeviceProvisioning.json b/changelog/Microsoft.ZeroTouchDeviceProvisioning.json index a1cf1c0665e..60e618b0d3d 100644 --- a/changelog/Microsoft.ZeroTouchDeviceProvisioning.json +++ b/changelog/Microsoft.ZeroTouchDeviceProvisioning.json @@ -1,5 +1,39 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "c731f545-89b6-4196-8177-6b0104c55784", + "ApiChange": "Resource", + "ChangedApiName": "provisionResponse", + "ChangeType": "Addition", + "Description": "Added the [provisionResponse](https://learn.microsoft.com/en-us/graph/api/resources/provisionresponse?view=graph-rest-1.0) resource.", + "Target": "provisionResponse" + }, + { + "Id": "c731f545-89b6-4196-8177-6b0104c55784", + "ApiChange": "Resource", + "ChangedApiName": "device", + "ChangeType": "Addition", + "Description": "Added the [device](https://learn.microsoft.com/en-us/graph/api/resources/device?view=graph-rest-1.0) resource.", + "Target": "device" + }, + { + "Id": "c731f545-89b6-4196-8177-6b0104c55784", + "ApiChange": "Method", + "ChangedApiName": "provision", + "ChangeType": "Addition", + "Description": "Added the [provision](https://learn.microsoft.com/en-us/graph/api/device-provision?view=graph-rest-1.0) method to the [device](https://learn.microsoft.com/en-us/graph/api/resources/device?view=graph-rest-1.0) resource.", + "Target": "device" + } + ], + "Id": "c731f545-89b6-4196-8177-6b0104c55784", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-09-26T00:53:53.5690957Z", + "WorkloadArea": "Identity and access", + "SubArea": "Identity and sign-in" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 83a9c970c8b..0473afe8629 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -29,6 +29,10 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what Added the **onPremisesExtensionAttributes** property to the [group](/graph/api/resources/group) resource. Use it to access extension attributes 1-15 synchronized from on-premises Active Directory. +### Identity and access | Directory management + +- Added the [provision](/graph/api/device-provision) action to the [device](/graph/api/resources/device) resource in v1.0 to enable approved Virtual Desktop Infrastructure (VDI) providers to provision devices in a customer's directory. + ### Identity and access | Governance - Promoted the **access reviews customer-provided data** APIs from beta to v1.0. Use them to review entitlement data that you upload for resources that Microsoft Entra doesn't discover itself, such as third-party applications. The promoted surface includes: From 8ceaf9b8c77dc24b50dc55fa0872c09cb37aac9b Mon Sep 17 00:00:00 2001 From: takanapa <34694468+takanapa@users.noreply.github.com> Date: Thu, 1 Oct 2026 07:24:35 -0700 Subject: [PATCH 189/189] docs: Document evolvable changeType enum in beta and v1.0 (#29540) * docs: document evolvable changeType enum (PR 16935425) Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Address review feedback: restore ms.date, link changeType enum type - Restore original ms.date in changenotification.md and commsnotification.md (front matter rule: leave ms.date unchanged when updating existing docs). - Use the changeType enum as the Type value in both Properties tables, linked per the resource-to-enum link rule. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * docs: Extend changeType sentinel documentation to v1.0 Document the reviewed v1.0 sentinel, correct the enum definition, and add the GA changelog and announcement. Schema PR: 17103633; Review PR: 17046412. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 97c3df23-afa7-4627-a170-f5c36fc59c5c * docs: Link v1.0 changeType enum references Address CelesteDG review feedback on PR #29540 by matching the beta enum type links in both v1.0 notification resource topics. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Copilot-Session: 97c3df23-afa7-4627-a170-f5c36fc59c5c * docs: Clarify changeType sentinel semantics Explain that unknownFutureValue reserves future enum extensibility without changing notification delivery in beta and v1.0. Use String for the beta commsNotification JSON representation. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --------- Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> Co-authored-by: Danipocket <88507770+Danipocket@users.noreply.github.com> Copilot-Session: 97c3df23-afa7-4627-a170-f5c36fc59c5c Copilot-Session: da3884a9-deb6-43c8-afdc-dab17352bcb0 --- .../beta/resources/changenotification.md | 4 +-- .../beta/resources/commsnotification.md | 6 ++-- api-reference/beta/resources/enums.md | 1 + .../v1.0/resources/changenotification.md | 3 +- .../v1.0/resources/commsnotification.md | 5 ++- api-reference/v1.0/resources/enums.md | 6 ++-- changelog/Microsoft.SubscriptionServices.json | 36 +++++++++++++++++++ concepts/whats-new-overview.md | 8 +++++ 8 files changed, 55 insertions(+), 14 deletions(-) diff --git a/api-reference/beta/resources/changenotification.md b/api-reference/beta/resources/changenotification.md index f6d873fc4b1..e12bf2992cc 100644 --- a/api-reference/beta/resources/changenotification.md +++ b/api-reference/beta/resources/changenotification.md @@ -29,7 +29,7 @@ None. | Property | Type | Description | |:---------|:-----|:------------| -| changeType | changeType | Indicates the type of change that will raise the change notification. Required and only present for change notifications. Mutually exclusive with **lifecycleEvent**. The supported values are: `created`, `updated`, `deleted`. | +| changeType | [changeType](../resources/enums.md#changetype-values) | Indicates the type of change that will raise the change notification. Required and only present for change notifications. Mutually exclusive with **lifecycleEvent**. The possible values are: `created`, `updated`, `deleted`, `unknownFutureValue`. `unknownFutureValue` is an evolvable enumeration sentinel reserved for future extensibility. Its addition does not introduce a new notification change type or change existing notification delivery. | | clientState | string | Value of the **clientState** property sent specified in the subscription request (if any). The maximum length is 255 characters. The client can check whether the change notification came from the service by comparing the values of the **clientState** property. The value of the **clientState** property sent with the subscription is compared with the value of the **clientState** property received with each change notification. Optional. | | encryptedContent | [changeNotificationEncryptedContent](changenotificationencryptedcontent.md) | (Preview) Encrypted content attached with the change notification. Only provided if **encryptionCertificate** and **includeResourceData** were defined during the subscription request and if the resource supports it. Optional. | | id | string | Unique ID for the notification. Optional. | @@ -84,5 +84,3 @@ The following JSON representation shows the resource type. "suppressions": [] } --> - - diff --git a/api-reference/beta/resources/commsnotification.md b/api-reference/beta/resources/commsnotification.md index dda9539131c..92ec4815f11 100644 --- a/api-reference/beta/resources/commsnotification.md +++ b/api-reference/beta/resources/commsnotification.md @@ -19,7 +19,7 @@ Communications notification base type that is published by Communications server ## Properties | Property | Type | Description | |:---------------|:--------|:-----------------------------------------------------------| -| changeType | String | The possible values are: `created`, `updated`, `deleted`. | +| changeType | [changeType](../resources/enums.md#changetype-values) | The possible values are: `created`, `updated`, `deleted`, `unknownFutureValue`. `unknownFutureValue` is an evolvable enumeration sentinel reserved for future extensibility. Its addition does not introduce a new notification change type or change existing notification delivery. | | resourceUrl | String | URI of the resource that was changed. | > **Note:** `resourceData` is available as additional data. It is either an entity or a collection of entities depending on the number of changes packaged in the notification. @@ -42,7 +42,7 @@ The following JSON representation shows the resource type. ```json { "@odata.type": "#microsoft.graph.commsNotification", - "changeType": "created | updated | deleted", + "changeType": "String", "resourceUrl": "String" } @@ -60,5 +60,3 @@ The following JSON representation shows the resource type. "suppressions": [] } --> - - diff --git a/api-reference/beta/resources/enums.md b/api-reference/beta/resources/enums.md index 6713861d941..acfdfc6ab84 100644 --- a/api-reference/beta/resources/enums.md +++ b/api-reference/beta/resources/enums.md @@ -1364,6 +1364,7 @@ This flagged enumeration identifies the actions taken when policy evaluation cou | created | | updated | | deleted | +| unknownFutureValue | ### countryLookupMethodType values diff --git a/api-reference/v1.0/resources/changenotification.md b/api-reference/v1.0/resources/changenotification.md index 3aa96bcabf3..7f0bbdd69c7 100644 --- a/api-reference/v1.0/resources/changenotification.md +++ b/api-reference/v1.0/resources/changenotification.md @@ -27,7 +27,7 @@ None. | Property | Type | Description | |:---------|:-----|:------------| -| changeType | changeType | Indicates the type of change that will raise the change notification. Required and only present for change notifications. Mutually exclusive with **lifecycleEvent**. The supported values are: `created`, `updated`, `deleted`. | +| changeType | [changeType](../resources/enums.md#changetype-values) | Indicates the type of change that will raise the change notification. Required and only present for change notifications. Mutually exclusive with **lifecycleEvent**. The possible values are: `created`, `updated`, `deleted`, `unknownFutureValue`. `unknownFutureValue` is an evolvable enumeration sentinel reserved for future extensibility. Its addition does not introduce a new notification change type or change existing notification delivery. | | clientState | string | Value of the **clientState** property sent in the subscription request (if any). The maximum length is 255 characters. The client can check whether the change notification came from the service by comparing the values of the **clientState** property. The value of the **clientState** property sent with the subscription is compared with the value of the **clientState** property received with each change notification. Optional. | | encryptedContent | [changeNotificationEncryptedContent](changenotificationencryptedcontent.md) | (Preview) Encrypted content attached with the change notification. Only provided if **encryptionCertificate** and **includeResourceData** were defined during the subscription request and if the resource supports it. Optional. | | id | string | Unique ID for the notification. Optional. | @@ -81,4 +81,3 @@ The following JSON representation shows the resource type. "suppressions": [] } --> - diff --git a/api-reference/v1.0/resources/commsnotification.md b/api-reference/v1.0/resources/commsnotification.md index 68e7e8b4c17..5274ee5c943 100644 --- a/api-reference/v1.0/resources/commsnotification.md +++ b/api-reference/v1.0/resources/commsnotification.md @@ -17,7 +17,7 @@ Communications notification base type that is published by Communications server ## Properties | Property | Type | Description | |:---------------|:--------|:-----------------------------------------------------------| -| changeType | String | The possible values are: `created`, `updated`, `deleted`. | +| changeType | [changeType](../resources/enums.md#changetype-values) | The possible values are: `created`, `updated`, `deleted`, `unknownFutureValue`. `unknownFutureValue` is an evolvable enumeration sentinel reserved for future extensibility. Its addition does not introduce a new notification change type or change existing notification delivery. | | resourceUrl | String | URI of the resource that was changed. | > **Note:** `resourceData` is available as additional data. It is either an entity or a collection of entities depending on the number of changes packaged in the notification. @@ -37,7 +37,7 @@ The following JSON representation shows the resource type. ```json { "@odata.type": "#microsoft.graph.commsNotification", - "changeType": "created | updated | deleted", + "changeType": "String", "resourceUrl": "String" } @@ -55,4 +55,3 @@ The following JSON representation shows the resource type. "suppressions": [] } --> - diff --git a/api-reference/v1.0/resources/enums.md b/api-reference/v1.0/resources/enums.md index 512f49f8178..2ae966b0b4d 100644 --- a/api-reference/v1.0/resources/enums.md +++ b/api-reference/v1.0/resources/enums.md @@ -1029,8 +1029,10 @@ Namespace: microsoft.graph | Member | | ------------------- | -| clientIpAddress | -| authenticatorAppGps | +| created | +| updated | +| deleted | +| unknownFutureValue | ### countryLookupMethodType values diff --git a/changelog/Microsoft.SubscriptionServices.json b/changelog/Microsoft.SubscriptionServices.json index b453137daf1..7e33b7180ac 100644 --- a/changelog/Microsoft.SubscriptionServices.json +++ b/changelog/Microsoft.SubscriptionServices.json @@ -1,5 +1,41 @@ { "changelog": [ + { + "ChangeList": [ + { + "Id": "a4d5cbcc-c7f0-499c-9f30-eda3104bbf16", + "ApiChange": "Member", + "ChangedApiName": "unknownFutureValue", + "ChangeType": "Addition", + "Description": "Added the **unknownFutureValue** member to the **changeType** enumeration in v1.0, previously available in beta, used by the [changeNotification](https://learn.microsoft.com/en-us/graph/api/resources/changenotification?view=graph-rest-v1.0) and [commsNotification](https://learn.microsoft.com/en-us/graph/api/resources/commsnotification?view=graph-rest-v1.0) resources.", + "Target": "changeType" + } + ], + "Id": "a4d5cbcc-c7f0-499c-9f30-eda3104bbf16", + "Cloud": "Prod", + "Version": "v1.0", + "CreatedDateTime": "2026-09-09T22:33:36.7456709Z", + "WorkloadArea": "Change notifications", + "SubArea": "" + }, + { + "ChangeList": [ + { + "Id": "0d8b88b5-d00e-4216-b98c-5beda8eadeb5", + "ApiChange": "Member", + "ChangedApiName": "unknownFutureValue", + "ChangeType": "Addition", + "Description": "Added the **unknownFutureValue** member to the **changeType** enumeration used by the [changeNotification](https://learn.microsoft.com/en-us/graph/api/resources/changenotification?view=graph-rest-beta) and [commsNotification](https://learn.microsoft.com/en-us/graph/api/resources/commsnotification?view=graph-rest-beta) resources.", + "Target": "changeType" + } + ], + "Id": "0d8b88b5-d00e-4216-b98c-5beda8eadeb5", + "Cloud": "prd", + "Version": "beta", + "CreatedDateTime": "2026-09-03T02:34:16.5190502Z", + "WorkloadArea": "Change notifications", + "SubArea": "" + }, { "ChangeList": [ { diff --git a/concepts/whats-new-overview.md b/concepts/whats-new-overview.md index 0473afe8629..8b97eee6f1e 100644 --- a/concepts/whats-new-overview.md +++ b/concepts/whats-new-overview.md @@ -20,6 +20,10 @@ For details about previous updates to Microsoft Graph, see [Microsoft Graph what ## September 2026: New and generally available +### Change notifications + +Promoted the `unknownFutureValue` member of the **changeType** enumeration from beta to v1.0. The enumeration is used by the [changeNotification](/graph/api/resources/changenotification) and [commsNotification](/graph/api/resources/commsnotification) resources to identify notification change types. + ### Files - Added the **isPatternToken** property to the [fileStorageContainerCustomPropertyValue](/graph/api/resources/filestoragecontainercustompropertyvalue) resource to indicate whether a custom property value is a `urlTemplate` pattern that consumers must resolve before use, rather than a literal value. @@ -76,6 +80,10 @@ Added the **isDisabled** property to the [agentIdentityBlueprint](/graph/api/res - Added the **customProperties** property to the [place](/graph/api/resources/place?view=graph-rest-beta&preserve-view=true) resource type to store customer-defined string key-value pairs. - Added the read-only **lastUpdatedTime** property to the [place](/graph/api/resources/place?view=graph-rest-beta&preserve-view=true) resource type to indicate when the place was last updated. +### Change notifications + +Added the `unknownFutureValue` member to the **changeType** enumeration used by the [changeNotification](/graph/api/resources/changenotification?view=graph-rest-beta&preserve-view=true) resource to support forward-compatible notification change types. + ### Device and app management | Cloud PC - Added the **isDisasterRecoveryActive** property to the [cloudPC](/graph/api/resources/cloudpc?view=graph-rest-beta&preserve-view=true) resource to indicate whether the Cloud PC currently runs in its disaster recovery region after a failover event.