Skip to main content
Version: 2.2.0

Test-MtEntraAgentHighRiskGraphPermissions

SYNOPSIS​

Finds Agent Identities with high-risk Microsoft Graph permissions.

SYNTAX​

Test-MtEntraAgentHighRiskGraphPermissions [-ProgressAction <ActionPreference>] [<CommonParameters>]

DESCRIPTION​

Checks application and delegated Microsoft Graph permissions assigned to Agent Identities. Reports permissions that Maester classifies as high risk and that Microsoft does not currently list as blocked for Agent Identities.

EXAMPLES​

EXAMPLE 1​

Test-MtEntraAgentHighRiskGraphPermissions

Returns true when no Agent Identity has a listed high-risk Graph permission.

PARAMETERS​

-ProgressAction​

Determines how PowerShell responds to progress updates generated by a script, cmdlet, or provider, such as the progress bars generated by Write-Progress.

Type: ActionPreference
Parameter Sets: (All)
Aliases: proga

Required: False
Position: Named
Default value: None
Accept pipeline input: False
Accept wildcard characters: False

CommonParameters​

This cmdlet supports the common parameters: -Debug, -ErrorAction, -ErrorVariable, -InformationAction, -InformationVariable, -OutVariable, -OutBuffer, -PipelineVariable, -Verbose, -WarningAction, and -WarningVariable. For more information, see about_CommonParameters.

INPUTS​

OUTPUTS​

System.Boolean​

NOTES​

https://maester.dev/docs/commands/Test-MtEntraAgentHighRiskGraphPermissions