azure-vm-run-command-protected-inputs

Protected parameters and run-as passwords are plaintext create/update inputs and are not returned by GET.

azurecritical service: azure:vm emits ContainsSecret

Where it sits

locationMicrosoft.Compute/virtualMachines/runCommands.properties.{protectedParameters,runAsPassword}
location kindsecret_value
data kindscredential password api_key access_key secret_key oauth_token connection_string
emits edgeContainsSecret
serviceVirtual Machines (azure:vm)

Collection recipe

access modewrite_only_input
operationVirtual Machine Run Commands - Create Or Update
response pathrequest.properties.{protectedParameters,runAsPassword}
encodingjson
params{"resource_id": "\u003cazure-resource-id\u003e"}

Required permissions

Microsoft.Compute/virtualMachines/runCommands/write

References

move · open · esc close