azure-blueprints-deployment-stack-parameters
Deployment Stack parameter values may persist plaintext deployment credentials.
Where it sits
| location | Microsoft.Resources/deploymentStacks.properties.parameters.*.value |
| location kind | iac_template |
| data kinds | credential password api_key access_key secret_key oauth_token connection_string |
| emits edge | ContainsSecret |
| service | Blueprints/Deployment Stacks (azure:blueprints) |
Collection recipe
| access mode | read_api |
| operation | Deployment Stacks - Get At Resource Group |
| response path | properties.parameters |
| encoding | json |
| params | {"resource_id": "\u003cazure-resource-id\u003e"} |
Required permissions
Microsoft.Resources/deploymentStacks/read
References