Azure DevOps built-in role

Load Test Reader

Views Azure Load Testing resources, tests, test profiles, and their runs without changing or executing those service assets. The role combines service-read and alert-rule control-plane Actions with read-only test DataActions; Playwright workspaces are excluded.

Role-definition permissions are imported from Microsoft Learn. Practical scope, use cases, prerequisites, best practices, security considerations, assignment guidance, and relationships have been reviewed against the official sources below.

Role definition ID: 3ae3fb29-0000-4ccd-bf80-542e7b26e081

Control-plane actions (4)

Data-plane actions (3)

Excluded actions (2)

Assignable scopes (1)

Practical scope

Assign directly on the Azure Load Testing resource. A resource-group or subscription assignment is inherited by every load-testing resource below it and also broadens the supporting authorization, alert-rule, and resource-group visibility in the definition.

Common use cases (2)

Prerequisites (2)

Best practices (3)

Security considerations (3)

Assignment guidance

Assign Load Test Reader directly on the load-testing resource to observers and reviewers. Do not add managed-identity target permissions for a reader-only workflow, and elevate to Contributor only for approved test authoring or execution.

Related roles (2)

Editorial sources (8)

Official Microsoft Learn documentation →