Permissions Required
As part of protecting customer data, Druva installs an application in the customer’s tenant, which helps data flow between Druva and the customer. The customer needs to consent to certain permissions for this application.
This article helps you understand the permissions that Druva requires to protect your Microsoft Power Platform data.
Permissions required for the Druva for Microsoft Power Platform are:
API | Permission | Description | Type |
Microsoft Graph |
| Read all groups | Application |
Microsoft Graph |
| Read all users' full profiles | Application |
Microsoft Graph |
| Read all group memberships | Application |
Microsoft Graph |
| Sign in and read user profile | Delegated |
Power BI Service |
| Read and write all datasets | Delegated |
Power BI Service |
| Read and write all content in tenant | Delegated |
Power BI Service |
| Read and write dataflows | Delegated |
Power BI Service |
| Read and write dashboards | Delegated |
Power Platform API |
| Read Application Packages | Delegated |
Power Platform API |
| Read Environments | Delegated |
Power Platform API |
| Read Power App | Delegated |
PowerApps Service |
| Access the PowerApps Service API | Delegated |
📝NOTE: Power Automate will require additional permissions when support is added in a future release.
❗IMPORTANT: In addition to the Microsoft Graph permissions above, additional configuration is required in Microsoft Entra ID and the Power BI admin center for Power BI, and in Microsoft Power Platform for Power Apps. These configurations authorize the Druva Service Principal to access the required APIs and resources. For more information, see Tenant Environment Authorization.