Azure AI + machine learning built-in role

Healthcare Agent Editor

Edits Healthcare Agent bot resources, scenarios, and configuration while the product access matrix excludes bot instance keys, secrets, and end-user inputs and provides read-only access to skills, channels, and user management. The imported role has Healthcare Agent DataActions and no control-plane Actions.

Role-definition permissions are imported from Microsoft Learn. Practical scope, use cases, prerequisites, best practices, security considerations, assignment guidance, and relationships have been reviewed against the official sources below.

Role definition ID: af854a69-80ce-4ff7-8447-f1118a2e0ca8

Control-plane actions (0)

None — this role grants no control-plane management actions.

Data-plane actions (18)

Excluded actions (0)

None

Assignable scopes (1)

Practical scope

Assign on the individual Healthcare Agent service resource whose bot content the editor maintains. A parent-scope assignment is inherited by every instance below it.

Common use cases (2)

Prerequisites (2)

Best practices (3)

Security considerations (3)

Assignment guidance

Assign Healthcare Agent Editor on the individual instance to bot authors who change scenarios and configuration but do not administer secrets or user access. Keep Admin with service owners and use Reader for view-only users.

Related roles (2)

Editorial sources (5)

Official Microsoft Learn documentation →