azure-arm-deployments-template-content
ARM/Bicep-expanded templates can include hard-coded passwords, keys, connection strings, or script bodies.
Where it sits
| location | Microsoft.Resources/deployments.properties.template |
| location kind | template_document |
| data kinds | credential password api_key access_key secret_key oauth_token connection_string source_code_secret |
| emits edge | ContainsSecret |
| service | ARM/Bicep Deployments (azure:arm-deployments) |
Collection recipe
| access mode | read_api |
| operation | Deployments - Get |
| response path | properties.template |
| encoding | json |
| params | {"resource_id": "\u003cazure-resource-id\u003e"} |
Required permissions
Microsoft.Resources/deployments/read
References