Azure AI + machine learning built-in role

Cognitive Services Usages Reader

Reads Azure AI services usage and quota information. The role contains one subscription-level control-plane Action and no DataActions, resource administration, model deployment, or inference access.

Role-definition permissions are imported from Microsoft Learn. Practical scope, use cases, prerequisites, best practices, security considerations, assignment guidance, and relationships have been reviewed against the official sources below.

Role definition ID: bba48692-92b0-4667-a9ad-c31c7b334ac2

Control-plane actions (1)

Data-plane actions (0)

None — this role grants no data-plane (data access) actions.

Excluded actions (0)

None

Assignable scopes (1)

Practical scope

Microsoft requires this role at subscription scope; it is not available as a resource-level quota role. The assignment exposes usage information for Azure AI services locations in that subscription.

Common use cases (2)

Prerequisites (2)

Best practices (3)

Security considerations (3)

Assignment guidance

Assign Cognitive Services Usages Reader at subscription scope only to principals that must view Azure AI quota. Pair it with the appropriate resource-scoped OpenAI or Cognitive Services role and remove it when quota visibility is no longer needed.

Related roles (3)

Editorial sources (5)

Official Microsoft Learn documentation →