Azure DevOps built-in role

Load Test Contributor

Reads the Azure Load Testing resource and carries supporting deployment and alert-rule control-plane Actions, while its DataActions create, update, delete, run, and stop load tests, test profiles, and profile runs. Playwright workspace operations are excluded, and the role does not change the top-level load-testing resource.

Role-definition permissions are imported from Microsoft Learn. Practical scope, use cases, prerequisites, best practices, security considerations, assignment guidance, and relationships have been reviewed against the official sources below.

Role definition ID: 749a398d-560b-491b-bb21-08924219302e

Control-plane actions (5)

Data-plane actions (3)

Excluded actions (2)

Assignable scopes (1)

Practical scope

Assign directly on the Azure Load Testing resource. Resource-group or subscription assignments are inherited by every load-testing resource below them and also make the role's supporting deployment and alert-rule Actions effective more broadly.

Common use cases (2)

Prerequisites (2)

Best practices (3)

Security considerations (3)

Assignment guidance

Assign Load Test Contributor to the performance team or CI identity directly on one load-testing resource. Configure the resource managed identity and its Key Vault, metrics, or target permissions separately, and use Reader when test changes or execution are unnecessary.

Related roles (2)

Editorial sources (8)

Official Microsoft Learn documentation →