azure-automation-certificate-private-key

Automation certificate assets can provide an exportable private key to runbooks. No single Azure RBAC action authorizes this service-native path; its own authentication and authorization apply.

azurecritical service: azure:automation emits ContainsSecret

Where it sits

locationAutomation certificate asset content
location kindcertificate_material
data kindscredential private_key certificate password
emits edgeContainsSecret
serviceAzure Automation (azure:automation)

Collection recipe

access modedata_plane
operationGet-AutomationCertificate inside runbook
response pathX509Certificate2
encodingjson
params{"resource_id": "\u003cazure-resource-id\u003e"}

References

move · open · esc close