azure-purview-scan-credential-reference
Scan definitions reveal which stored credential or managed identity is used and the target scope.
Where it sits
| location | Purview Scan properties.credential reference and collection |
| location kind | config_field |
| data kinds | credential sensitive_data |
| emits edge | ContainsSecret |
| service | Microsoft Purview (azure:purview) |
Collection recipe
| access mode | data_plane |
| operation | Scans - Get |
| response path | properties.credential |
| encoding | json |
| params | {"resource_id": "\u003cazure-resource-id\u003e"} |
Required permissions
Microsoft.Purview/accounts/scan/read
References