azure-openai-stored-files

Uploaded files for assistants, batch, or fine-tuning can contain arbitrary sensitive data.

azurecritical service: azure:openai emits CanReadData

Where it sits

locationAzure OpenAI File.{filename,purpose,content}
location kinddata_record
data kindscredential password api_key access_key secret_key oauth_token connection_string source_code_secret sensitive_data pii customer_data
emits edgeCanReadData
serviceAzure OpenAI / AI Services (azure:openai)

Collection recipe

access modedata_plane
operationGET /openai/files/{file-id}/content
response path$value
encodingbinary
params{"resource_id": "\u003cazure-resource-id\u003e"}

Required permissions

Microsoft.CognitiveServices/accounts/OpenAI/files/read

References

move · open · esc close