azure-monitor-action-group-webhook-properties
Action-group webhook URIs can carry query tokens and expose Entra application identifiers.
Where it sits
| location | Microsoft.Insights/actionGroups.properties.webhookReceivers[].{serviceUri,identifierUri,objectId,tenantId,useAadAuth} |
|---|---|
| location kind | config_field |
| data kinds | credential webhook_secret sensitive_data |
| emits edge | ContainsSecret |
| service | Azure Monitor / Activity Log (azure:monitor) |
Collection recipe
| access mode | read_api |
|---|---|
| operation | Action Groups - Get |
| response path | properties.webhookReceivers[] |
| encoding | json |
| params | {"resource_id": "\u003cazure-resource-id\u003e"} |
Required permissions
Microsoft.Insights/actionGroups/read