azure-cosmosdb-item-documents

Cosmos items are arbitrary JSON documents and may hold credentials or regulated customer data.

azurecritical service: azure:cosmosdb emits CanReadData

Where it sits

locationCosmos DB SQL container items
location kinddata_record
data kindscredential password api_key access_key secret_key oauth_token connection_string sensitive_data pii customer_data
emits edgeCanReadData
serviceCosmos DB (azure:cosmosdb)

Collection recipe

access modedata_plane
operationItems - Query
response pathDocuments[]
encodingjson
params{"resource_id": "\u003cazure-resource-id\u003e"}

Required permissions

Microsoft.DocumentDB/databaseAccounts/sqlDatabases/containers/items/read

References

move · open · esc close