Azure AI + machine learning built-in role

Cognitive Services LUIS Owner

Formerly provided full LUIS read, test, write, deploy, delete, and key-listing access through control-plane Actions and LUIS DataActions. LUIS authoring and runtime endpoints are fully retired as of March 31, 2026, and requests fail. This overlay is retained only for migration and access cleanup; it is not a recommendation for a new assignment.

Role-definition permissions are imported from Microsoft Learn. Practical scope, use cases, prerequisites, best practices, security considerations, assignment guidance, and relationships have been reviewed against the official sources below.

Role definition ID: f72c8140-2111-481c-87ff-72b910f6e3f8

Control-plane actions (4)

Data-plane actions (1)

Excluded actions (0)

None

Assignable scopes (1)

Practical scope

Azure role assignments apply at the selected scope and are inherited by child scopes. Use the narrowest supported resource, resource-group, subscription, or management-group scope that contains the intended resources. Existing assignments for this retired service must be removed at the scope where they were created; an inherited assignment cannot be removed from a child resource.

Common use cases (2)

Prerequisites (2)

Best practices (4)

Security considerations (2)

Assignment guidance

Do not assign this role. Locate existing assignments in Access control (IAM), confirm the retired workload no longer depends on them, and remove each assignment at its originating scope. Reassess access separately for the replacement service.

Editorial sources (6)

Official Microsoft Learn documentation →