Attribute Definition Reader
Enabled
Description
Read the definition of custom security attributes.
Details
Users with this role can read the definition of custom security attributes.
Directory Actions2
microsoft.directory/attributeSets/allProperties/readmicrosoft.directory/customSecurityAttributeDefinitions/allProperties/read
Graph API Permissions2
Microsoft do not provide a direct mapping between Directory actions and Graph API permissions, despite this being necessary for delegated (interactive) access. MSAdminRoles.com has meticulously compiled a list of the Graph API permissions that each built-in admin role enables you to utilise. Please note this listing is not 100% accurate. Graph API permissions and Entra RBAC operate as two independent authorisation planes and do not map to each other on a one-to-one basis.
CustomSecAttributeAssignment.Read.AllCustomSecAttributeDefinition.Read.All