Azure Security built-in role

Attestation Contributor

Can read write or delete the attestation provider instance

Control-plane and data-plane permissions below are imported directly from Microsoft Learn. In-app editorial guidance (use cases, best practices, security notes) and least-privilege recommendations are still pending review.

Role definition ID: bbf86eb8-f7b4-4cce-96e4-18cddf81d86e

Control-plane actions (3)

Data-plane actions (0)

None — this role grants no data-plane (data access) actions.

Excluded actions (0)

None

Assignable scopes (1)

Official Microsoft Learn documentation →