- Entra admin roles scan job (ScanEntraAdminRolesJob) - Report service with fingerprint deduplication - Finding generator with high-privilege role catalog - Admin roles summary widget on tenant view page - Alert integration for entra.admin_roles findings - Graph contracts for roleDefinitions + roleAssignments - Entra permissions registry (config/entra_permissions.php) - StoredReport fingerprint migration - OperationCatalog label + duration for entra.admin_roles.scan - SummaryCountsNormalizer: filter zeros, humanize keys globally - 11 new test files (71+ tests, 286+ assertions) - Spec + tasks + checklist updates
13 lines
322 B
PHP
13 lines
322 B
PHP
<?php
|
|
|
|
return [
|
|
'permissions' => [
|
|
[
|
|
'key' => 'RoleManagement.Read.Directory',
|
|
'type' => 'application',
|
|
'description' => 'Read directory role definitions and assignments for Entra admin roles evidence.',
|
|
'features' => ['entra-admin-roles'],
|
|
],
|
|
],
|
|
];
|