azure-adls-filesystem-acl-identities
POSIX ACLs expose user/object IDs and authorization structure.
Where it sits
| location | Data Lake Storage Gen2 Path x-ms-acl, owner, group |
| location kind | policy_document |
| data kinds | sensitive_data pii |
| emits edge | ContainsSecret |
| service | Data Lake Storage Gen2 (azure:adls) |
Collection recipe
| access mode | data_plane |
| operation | Path - Get Properties |
| response path | headers.{x-ms-acl,x-ms-owner,x-ms-group} |
| encoding | json |
| params | {"resource_id": "\u003cazure-resource-id\u003e"} |
Required permissions
Microsoft.Storage/storageAccounts/blobServices/containers/blobs/read
References