Skip to content

Commit 93c2e44

Browse files
Microsoft Graph DevX ToolingMicrosoft Graph DevX Tooling
authored andcommitted
Correct errors in permissions reference
1 parent b19d03c commit 93c2e44

File tree

1 file changed

+28
-27
lines changed

1 file changed

+28
-27
lines changed

concepts/permissions-reference.md

Lines changed: 28 additions & 27 deletions
Original file line numberDiff line numberDiff line change
@@ -983,7 +983,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
983983
|--|--|--|
984984
| Identifier | 284383ee-7f6e-4e40-a2a8-e85dcb029101 | - |
985985
| DisplayText | Initiate outgoing 1 to 1 calls from the app | - |
986-
| Description | Allows the app to place outbound calls to a single user and transfer calls to users in your organizations directory, without a signed-in user. | - |
986+
| Description | Allows the app to place outbound calls to a single user and transfer calls to users in your organization's directory, without a signed-in user. | - |
987987
| AdminConsentRequired | Yes | - |
988988

989989
---
@@ -2093,7 +2093,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
20932093
|--|--|--|
20942094
| Identifier | 243333ab-4d21-40cb-a475-36241daa0842 | 44642bfe-8385-4adc-8fc6-fe3cb2c375c3 |
20952095
| DisplayText | Read and write Microsoft Intune devices | Read and write Microsoft Intune devices |
2096-
| Description | Allows the app to read and write the properties of devices managed by Microsoft Intune, without a signed-in user. Does not allow high impact operations such as remote wipe and password reset on the devices owner | Allows the app to read and write the properties of devices managed by Microsoft Intune. Does not allow high impact operations such as remote wipe and password reset on the devices owner. |
2096+
| Description | Allows the app to read and write the properties of devices managed by Microsoft Intune, without a signed-in user. Does not allow high impact operations such as remote wipe and password reset on the device's owner | Allows the app to read and write the properties of devices managed by Microsoft Intune. Does not allow high impact operations such as remote wipe and password reset on the device's owner. |
20972097
| AdminConsentRequired | Yes | Yes |
20982098

20992099
[!INCLUDE [DeviceManagementManagedDevices.ReadWrite.All](../includes/permissions-notes/devicemanagementmanageddevices.readwrite.all.md)]
@@ -3145,7 +3145,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
31453145
|--|--|--|
31463146
| Identifier | e321f0bb-e7f7-481e-bb28-e3b0b32d4bd0 | 43781733-b5a7-4d1b-98f4-e8edff23e1a9 |
31473147
| DisplayText | Read identity providers | Read identity providers |
3148-
| Description | Allows the app to read your organizations identity (authentication) providers properties without a signed in user. | Allows the app to read your organizations identity (authentication) providers properties on behalf of the user. |
3148+
| Description | Allows the app to read your organization's identity (authentication) providers' properties without a signed in user. | Allows the app to read your organization's identity (authentication) providers' properties on behalf of the user. |
31493149
| AdminConsentRequired | Yes | Yes |
31503150

31513151
---
@@ -3156,7 +3156,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
31563156
|--|--|--|
31573157
| Identifier | 90db2b9a-d928-4d33-a4dd-8442ae3d41e4 | f13ce604-1677-429f-90bd-8a10b9f01325 |
31583158
| DisplayText | Read and write identity providers | Read and write identity providers |
3159-
| Description | Allows the app to read and write your organizations identity (authentication) providers properties without a signed in user. | Allows the app to read and write your organizations identity (authentication) providers properties on behalf of the user. |
3159+
| Description | Allows the app to read and write your organization's identity (authentication) providers' properties without a signed in user. | Allows the app to read and write your organization's identity (authentication) providers' properties on behalf of the user. |
31603160
| AdminConsentRequired | Yes | Yes |
31613161

31623162
---
@@ -4784,8 +4784,8 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
47844784
| Category | Application | Delegated |
47854785
|--|--|--|
47864786
| Identifier | b21b72f6-4e6a-4533-9112-47eea9f97b28 | d146432f-b803-4ed4-8d42-ba74193a6ede |
4787-
| DisplayText | Read your organizations identity protection policy | Read your organizations identity protection policy |
4788-
| Description | Allows the app to read your organizations identity protection policy without a signed-in user. | Allows the app to read your organizations identity protection policy on behalf of the signed-in user. |
4787+
| DisplayText | Read your organization's identity protection policy | Read your organization's identity protection policy |
4788+
| Description | Allows the app to read your organization's identity protection policy without a signed-in user. | Allows the app to read your organization's identity protection policy on behalf of the signed-in user. |
47894789
| AdminConsentRequired | Yes | Yes |
47904790

47914791
---
@@ -4951,8 +4951,8 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
49514951
| Category | Application | Delegated |
49524952
|--|--|--|
49534953
| Identifier | 2dcf8603-09eb-4078-b1ec-d30a1a76b873 | 7256e131-3efb-4323-9854-cf41c6021770 |
4954-
| DisplayText | Read and write your organizations identity protection policy | Read and write your organizations identity protection policy |
4955-
| Description | Allows the app to read and write your organizations identity protection policy without a signed-in user. | Allows the app to read and write your organizations identity protection policy on behalf of the signed-in user. |
4954+
| DisplayText | Read and write your organization's identity protection policy | Read and write your organization's identity protection policy |
4955+
| Description | Allows the app to read and write your organization's identity protection policy without a signed-in user. | Allows the app to read and write your organization's identity protection policy on behalf of the signed-in user. |
49564956
| AdminConsentRequired | Yes | Yes |
49574957

49584958
---
@@ -6088,8 +6088,8 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
60886088
| Category | Application | Delegated |
60896089
|--|--|--|
60906090
| Identifier | bf394140-e372-4bf9-a898-299cfc7564e5 | 64733abd-851e-478a-bffb-e47a14b18235 |
6091-
| DisplayText | Read your organizations security events | Read your organizations security events |
6092-
| Description | Allows the app to read your organizations security events without a signed-in user. | Allows the app to read your organizations security events on behalf of the signed-in user. |
6091+
| DisplayText | Read your organization's security events | Read your organization's security events |
6092+
| Description | Allows the app to read your organization's security events without a signed-in user. | Allows the app to read your organization's security events on behalf of the signed-in user. |
60936093
| AdminConsentRequired | Yes | Yes |
60946094

60956095
---
@@ -6099,8 +6099,8 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
60996099
| Category | Application | Delegated |
61006100
|--|--|--|
61016101
| Identifier | d903a879-88e0-4c09-b0c9-82f6a1333f84 | 6aedf524-7e1c-45a7-bd76-ded8cab8d0fc |
6102-
| DisplayText | Read and update your organizations security events | Read and update your organizations security events |
6103-
| Description | Allows the app to read your organizations security events without a signed-in user. Also allows the app to update editable properties in security events. | Allows the app to read your organizations security events on behalf of the signed-in user. Also allows the app to update editable properties in security events on behalf of the signed-in user. |
6102+
| DisplayText | Read and update your organization's security events | Read and update your organization's security events |
6103+
| Description | Allows the app to read your organization's security events without a signed-in user. Also allows the app to update editable properties in security events. | Allows the app to read your organization's security events on behalf of the signed-in user. Also allows the app to update editable properties in security events on behalf of the signed-in user. |
61046104
| AdminConsentRequired | Yes | Yes |
61056105

61066106
---
@@ -6479,7 +6479,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
64796479
|--|--|--|
64806480
| Identifier | - | 258f6531-6087-4cc4-bb90-092c5fb3ed3f |
64816481
| DisplayText | - | Send emails from mailboxes using SMTP AUTH. |
6482-
| Description | - | Allows the app to be able to send emails from the users mailbox using the SMTP AUTH client submission protocol. |
6482+
| Description | - | Allows the app to be able to send emails from the user's mailbox using the SMTP AUTH client submission protocol. |
64836483
| AdminConsentRequired | - | No |
64846484

64856485
![personal Microsoft accounts][MSA] The *SMTP.Send* delegated permission is available for consent in personal Microsoft accounts.
@@ -6602,7 +6602,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
66026602
|--|--|--|
66036603
| Identifier | - | f45671fb-e0fe-4b4b-be20-3d3ce43f1bcb |
66046604
| DisplayText | - | Read user's tasks and task lists |
6605-
| Description | - | Allows the app to read the signed-in users tasks and task lists, including any shared with the user. Doesn't include permission to create, delete, or update anything. |
6605+
| Description | - | Allows the app to read the signed-in user's tasks and task lists, including any shared with the user. Doesn't include permission to create, delete, or update anything. |
66066606
| AdminConsentRequired | - | No |
66076607

66086608
![personal Microsoft accounts][MSA] The *Tasks.Read* delegated permission is available for consent in personal Microsoft accounts.
@@ -6614,8 +6614,8 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
66146614
| Category | Application | Delegated |
66156615
|--|--|--|
66166616
| Identifier | f10e1f91-74ed-437f-a6fd-d6ae88e26c1f | - |
6617-
| DisplayText | Read all users tasks and tasklist | - |
6618-
| Description | Allows the app to read all users tasks and task lists in your organization, without a signed-in user. | - |
6617+
| DisplayText | Read all users' tasks and tasklist | - |
6618+
| Description | Allows the app to read all users' tasks and task lists in your organization, without a signed-in user. | - |
66196619
| AdminConsentRequired | Yes | - |
66206620

66216621
---
@@ -6636,7 +6636,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
66366636
| Category | Application | Delegated |
66376637
|--|--|--|
66386638
| Identifier | - | 2219042f-cab5-40cc-b0d2-16b1540b4c5f |
6639-
| DisplayText | - | Create, read, update, and delete users tasks and task lists |
6639+
| DisplayText | - | Create, read, update, and delete user's tasks and task lists |
66406640
| Description | - | Allows the app to create, read, update, and delete the signed-in user's tasks and task lists, including any shared with the user. |
66416641
| AdminConsentRequired | - | No |
66426642

@@ -6649,8 +6649,8 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
66496649
| Category | Application | Delegated |
66506650
|--|--|--|
66516651
| Identifier | 44e666d1-d276-445b-a5fc-8815eeb81d55 | - |
6652-
| DisplayText | Read and write all users tasks and tasklists | - |
6653-
| Description | Allows the app to create, read, update and delete all users tasks and task lists in your organization, without a signed-in user | - |
6652+
| DisplayText | Read and write all users' tasks and tasklists | - |
6653+
| Description | Allows the app to create, read, update and delete all users' tasks and task lists in your organization, without a signed-in user | - |
66546654
| AdminConsentRequired | Yes | - |
66556655

66566656
---
@@ -8113,7 +8113,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
81138113
|--|--|--|
81148114
| Identifier | 38d9df27-64da-44fd-b7c5-a6fbac20248f | aec28ec7-4d02-4e8c-b864-50163aea77eb |
81158115
| DisplayText | Read all users' authentication methods | Read all users' authentication methods |
8116-
| Description | Allows the app to read authentication methods of all users in your organization, without a signed-in user. Authentication methods include things like a users phone numbers and Authenticator app settings. This does not allow the app to see secret information like passwords, or to sign-in or otherwise use the authentication methods. | Allows the app to read authentication methods of all users in your organization that the signed-in user has access to. Authentication methods include things like a users phone numbers and Authenticator app settings. This does not allow the app to see secret information like passwords, or to sign-in or otherwise use the authentication methods. |
8116+
| Description | Allows the app to read authentication methods of all users in your organization, without a signed-in user. Authentication methods include things like a user's phone numbers and Authenticator app settings. This does not allow the app to see secret information like passwords, or to sign-in or otherwise use the authentication methods. | Allows the app to read authentication methods of all users in your organization that the signed-in user has access to. Authentication methods include things like a user's phone numbers and Authenticator app settings. This does not allow the app to see secret information like passwords, or to sign-in or otherwise use the authentication methods. |
81178117
| AdminConsentRequired | Yes | Yes |
81188118

81198119
---
@@ -8135,7 +8135,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
81358135
|--|--|--|
81368136
| Identifier | 50483e42-d915-4231-9639-7fdb7fd190e5 | b7887744-6746-4312-813d-72daeaee7e2d |
81378137
| DisplayText | Read and write all users' authentication methods | Read and write all users' authentication methods. |
8138-
| Description | Allows the application to read and write authentication methods of all users in your organization, without a signed-in user. Authentication methods include things like a users phone numbers and Authenticator app settings. This does not allow the app to see secret information like passwords, or to sign-in or otherwise use the authentication methods | Allows the app to read and write authentication methods of all users in your organization that the signed-in user has access to. Authentication methods include things like a users phone numbers and Authenticator app settings. This does not allow the app to see secret information like passwords, or to sign-in or otherwise use the authentication methods. |
8138+
| Description | Allows the application to read and write authentication methods of all users in your organization, without a signed-in user. Authentication methods include things like a user's phone numbers and Authenticator app settings. This does not allow the app to see secret information like passwords, or to sign-in or otherwise use the authentication methods | Allows the app to read and write authentication methods of all users in your organization that the signed-in user has access to. Authentication methods include things like a user's phone numbers and Authenticator app settings. This does not allow the app to see secret information like passwords, or to sign-in or otherwise use the authentication methods. |
81398139
| AdminConsentRequired | Yes | Yes |
81408140

81418141
---
@@ -8168,7 +8168,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
81688168
|--|--|--|
81698169
| Identifier | 4e774092-a092-48d1-90bd-baad67c7eb47 | 26e2f3e8-b2a1-47fc-9620-89bb5b042024 |
81708170
| DisplayText | Deliver and manage all user's notifications | Deliver and manage user's notifications |
8171-
| Description | Allows the app to send, read, update and delete users notifications, without a signed-in user. | Allows the app to send, read, update and delete users notifications. |
8171+
| Description | Allows the app to send, read, update and delete user's notifications, without a signed-in user. | Allows the app to send, read, update and delete user's notifications. |
81728172
| AdminConsentRequired | Yes | No |
81738173

81748174
---
@@ -8267,7 +8267,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
82678267
|--|--|--|
82688268
| Identifier | d4f67ec2-59b5-4bdc-b4af-d78f6f9c1954 | - |
82698269
| DisplayText | Read all virtual appointments for users, as authorized by online meetings application access policy | - |
8270-
| Description | Allows the application to read virtual appointments for all users, without a signed-in user. The app must also be authorized to access an individual users data by the online meetings application access policy. | - |
8270+
| Description | Allows the application to read virtual appointments for all users, without a signed-in user. The app must also be authorized to access an individual user's data by the online meetings application access policy. | - |
82718271
| AdminConsentRequired | Yes | - |
82728272

82738273
---
@@ -8289,7 +8289,7 @@ GET https://graph.microsoft.com/v1.0/servicePrincipals(appId='00000003-0000-0000
82898289
|--|--|--|
82908290
| Identifier | bf46a256-f47d-448f-ab78-f226fff08d40 | - |
82918291
| DisplayText | Read-write all virtual appointments for users, as authorized by online meetings app access policy | - |
8292-
| Description | Allows the application to read and write virtual appointments for all users, without a signed-in user. The app must also be authorized to access an individual users data by the online meetings application access policy. | - |
8292+
| Description | Allows the application to read and write virtual appointments for all users, without a signed-in user. The app must also be authorized to access an individual user's data by the online meetings application access policy. | - |
82938293
| AdminConsentRequired | Yes | - |
82948294

82958295
---
@@ -8403,9 +8403,9 @@ Learn more about [RSC authorization framework and RSC permissions](/microsofttea
84038403
| ChannelMember.Read.Group | 7e3614f5-3467-419c-9c63-dd0bbd2a88f9 | Read the members of channels of a team | Read the members of channels of a team, without a signed-in user |
84048404
| ChannelMember.ReadWrite.Group | 1342a0fc-cd33-4c75-ad65-d5defcfc7232 | Read and write the members of channels of a team | Read and write the members of channels of a team, without a signed-in user |
84058405
| ChannelMessage.Read.Group | 19103a54-c397-4bcd-be5a-ef111e0406fa | Read this team's channel messages | Allows the app to read this team's channel's messages, without a signed-in user. |
8406-
| ChannelMessage.Send.Group | 3e38d437-815b-4368-9f19-e39dea9a6c7f | Send mesages to this team's channels | Allows the app to send messages to this team's channels, without a signed-in user. |
8407-
| ChannelSettings.Read.Group | 0a7b3084-8d18-46f5-8aef-b5b829292c6f | Read the names, descriptions, and settings of this teams channels | Allows the app to read this team's channel names, channel descriptions, and channel settings, without a signed-in user. |
8408-
| ChannelSettings.ReadWrite.Group | d057ad03-b27b-49f7-8219-e0d4a706da55 | Update the names, descriptions, and settings of this teams channels | Allows the app to update and read the names, descriptions, and settings of this teams channels, without a signed-in user. |
8406+
| ChannelMessage.Send.Group | 3e38d437-815b-4368-9f19-e39dea9a6c7f | Send messages to this team's channels | Allows the app to send messages to this team's channels, without a signed-in user. |
8407+
| ChannelSettings.Read.Group | 0a7b3084-8d18-46f5-8aef-b5b829292c6f | Read the names, descriptions, and settings of this team's channels | Allows the app to read this team's channel names, channel descriptions, and channel settings, without a signed-in user. |
8408+
| ChannelSettings.ReadWrite.Group | d057ad03-b27b-49f7-8219-e0d4a706da55 | Update the names, descriptions, and settings of this team's channels | Allows the app to update and read the names, descriptions, and settings of this team's channels, without a signed-in user. |
84098409
| Chat.Manage.Chat | 4a14842e-6bb6-4088-b21a-7d0a24f835a6 | Manage this chat | Allows the app to manage the chat, the chat's members and grant access to the chat's data, without a signed-in user. |
84108410
| Chat.ManageDeletion.Chat | b827a2af-24b2-4f61-9eb3-8788e66a0d86 | Delete and recover deleted chat | Allows the app to delete and recover deleted chat, without a signed-in user. |
84118411
| ChatMember.Read.Chat | e854bbc6-07e3-45cc-af99-b6e78fab5b80 | Read this chat's members | Allows the app to read the members of this chat, without a signed-in user. |
@@ -8449,3 +8449,4 @@ Learn more about [RSC authorization framework and RSC permissions](/microsofttea
84498449
+ [Grant or revoke Microsoft Graph permissions programmatically](permissions-grant-via-msgraph.md)
84508450

84518451
[MSA]: images/permissions-reference/msa.svg "personal Microsoft accounts (MSA)"
8452+

0 commit comments

Comments
 (0)