feat: Spec 105 — Entra Admin Roles Evidence + Findings #128
Loading…
Reference in New Issue
Block a user
No description provided.
Delete Branch "105-entra-admin-roles-evidence-findings"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Summary
Automated scanning of Entra ID directory roles to surface high-privilege role assignments as trackable findings with alerting support.
What's included
Core Services
UI
ENTRA_ROLES_VIEWfor viewing,ENTRA_ROLES_MANAGEfor scan triggerInfrastructure
entraRoleDefinitions+entraRoleAssignmentsconfig/entra_permissions.php— Entra permission registryStoredReport.fingerprintmigration (deduplication support)OperationCataloglabel + duration forentra.admin_roles.scanentra:scan-admin-rolesfor CLI/scheduled useGlobal UX improvement
report_deduped: 1→Report deduped: 1). Affects all operation notifications.Test Coverage
Spec artifacts
specs/105-entra-admin-roles-evidence-findings/tasks.md— Full task breakdown (38 tasks, all complete)specs/105-entra-admin-roles-evidence-findings/checklists/requirements.md— All items checkedFiles changed
46 files changed, 3641 insertions(+), 15 deletions(-)