Skip to main content

Permissions Required for Power Platform

Permissions Required

As part of protecting customer data, Druva installs an application in the customer’s tenant, which helps data flow between Druva and the customer. The customer needs to consent to certain permissions for this application.

This article helps you understand the permissions that Druva requires to protect your Microsoft Power Platform data.

Permissions required for the Druva for Microsoft Power Platform are:

API

Permission

Description

Type

Microsoft Graph

Group.Read.All

Read all groups

Application

Microsoft Graph

User.Read.All

Read all users' full profiles

Application

Microsoft Graph

GroupMember.Read.All

Read all group memberships

Application

Microsoft Graph

User.Read

Sign in and read user profile

Delegated

Power BI Service

Dataset.ReadWrite.All

Read and write all datasets

Delegated

Power BI Service

Tenant.ReadWrite.All

Read and write all content in tenant

Delegated

Power BI Service

Dataflow.ReadWrite.All

Read and write dataflows

Delegated

Power BI Service

Dashboard.ReadWrite.All

Read and write dashboards

Delegated

Power Platform API

AppManagement.ApplicationPackages.Read

Read Application Packages

Delegated

Power Platform API

EnvironmentManagement.Environments.Read

Read Environments

Delegated

Power Platform API

PowerApps.Apps.Read

Read Power App

Delegated

PowerApps Service

User

Access the PowerApps Service API

Delegated


📝NOTE: Power Automate will require additional permissions when support is added in a future release.


❗IMPORTANT: In addition to the Microsoft Graph permissions above, additional configuration is required in Microsoft Entra ID and the Power BI admin center for Power BI, and in Microsoft Power Platform for Power Apps. These configurations authorize the Druva Service Principal to access the required APIs and resources. For more information, see Tenant Environment Authorization.

Did this answer your question?