azure-entra-application-password-credential-metadata

Application password credential identifiers, labels, and validity windows disclose credential inventory and operator annotations.

azurehigh service: azure:entra emits ContainsSecret

Where it sits

locationmicrosoft.graph.application.passwordCredentials[]
location kindmetadata
data kindscredential
emits edgeContainsSecret
serviceEntra ID (azure:entra)

Collection recipe

access moderead_api
operationGET /applications/{application-id}
response pathpasswordCredentials[]
encodingjson
params{"application-id": "\u003capplication-id\u003e"}

Required permissions

Application.Read.All

References

move · open · esc close