openapi: 3.2.0 info: title: Groups.resource Specific Permission Grant API version: v1.0 servers: - url: https://graph.microsoft.com/v1.0/ description: Core security: - azureaadv2: [] tags: - name: groups.resourceSpecificPermissionGrant paths: /groups/{group-id}/permissionGrants: get: tags: - groups.resourceSpecificPermissionGrant summary: List permissionGrants of a group description: List all resource-specific permission grants on the group. This list specifies the Microsoft Entra apps that have access to the group, along with the corresponding resource-specific access that each app has. externalDocs: description: Find more info here url: https://learn.microsoft.com/graph/api/group-list-permissiongrants?view=graph-rest-1.0 operationId: group_ListPermissionGrant parameters: - name: group-id in: path description: The unique identifier of group required: true style: simple schema: type: string x-ms-docs-key-type: group - $ref: '#/components/parameters/top' - $ref: '#/components/parameters/skip' - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' - $ref: '#/components/parameters/count' - name: $orderby in: query description: Order items by property values style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: $ref: '#/components/responses/microsoft.graph.resourceSpecificPermissionGrantCollectionResponse' default: $ref: '#/components/responses/error' x-ms-pageable: nextLinkName: '@odata.nextLink' operationName: listMore x-ms-docs-operation-type: operation post: tags: - groups.resourceSpecificPermissionGrant summary: Create new navigation property to permissionGrants for groups operationId: group_CreatePermissionGrant parameters: - name: group-id in: path description: The unique identifier of group required: true style: simple schema: type: string x-ms-docs-key-type: group requestBody: description: New navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.resourceSpecificPermissionGrant' required: true responses: 2XX: description: Created navigation property. content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.resourceSpecificPermissionGrant' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /groups/{group-id}/permissionGrants/{resourceSpecificPermissionGrant-id}: get: tags: - groups.resourceSpecificPermissionGrant summary: Get permissionGrants from groups operationId: group_GetPermissionGrant parameters: - name: group-id in: path description: The unique identifier of group required: true style: simple schema: type: string x-ms-docs-key-type: group - name: resourceSpecificPermissionGrant-id in: path description: The unique identifier of resourceSpecificPermissionGrant required: true style: simple schema: type: string x-ms-docs-key-type: resourceSpecificPermissionGrant - name: $select in: query description: Select properties to be returned style: form explode: false schema: uniqueItems: true type: array items: type: string - name: $expand in: query description: Expand related entities style: form explode: false schema: uniqueItems: true type: array items: type: string responses: 2XX: description: Retrieved navigation property content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.resourceSpecificPermissionGrant' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation patch: tags: - groups.resourceSpecificPermissionGrant summary: Update the navigation property permissionGrants in groups operationId: group_UpdatePermissionGrant parameters: - name: group-id in: path description: The unique identifier of group required: true style: simple schema: type: string x-ms-docs-key-type: group - name: resourceSpecificPermissionGrant-id in: path description: The unique identifier of resourceSpecificPermissionGrant required: true style: simple schema: type: string x-ms-docs-key-type: resourceSpecificPermissionGrant requestBody: description: New navigation property values content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.resourceSpecificPermissionGrant' required: true responses: 2XX: description: Success content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.resourceSpecificPermissionGrant' default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation delete: tags: - groups.resourceSpecificPermissionGrant summary: Delete navigation property permissionGrants for groups operationId: group_DeletePermissionGrant parameters: - name: group-id in: path description: The unique identifier of group required: true style: simple schema: type: string x-ms-docs-key-type: group - name: resourceSpecificPermissionGrant-id in: path description: The unique identifier of resourceSpecificPermissionGrant required: true style: simple schema: type: string x-ms-docs-key-type: resourceSpecificPermissionGrant - name: If-Match in: header description: ETag style: simple schema: type: string responses: 2XX: description: Success default: $ref: '#/components/responses/error' x-ms-docs-operation-type: operation /groups/{group-id}/permissionGrants/$count: get: tags: - groups.resourceSpecificPermissionGrant summary: Get the number of the resource operationId: group.permissionGrant_GetCount parameters: - name: group-id in: path description: The unique identifier of group required: true style: simple schema: type: string x-ms-docs-key-type: group - $ref: '#/components/parameters/search' - $ref: '#/components/parameters/filter' responses: 2XX: $ref: '#/components/responses/ODataCountResponse' default: $ref: '#/components/responses/error' components: responses: microsoft.graph.resourceSpecificPermissionGrantCollectionResponse: description: Retrieved collection content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.resourceSpecificPermissionGrantCollectionResponse' error: description: error content: application/json: schema: $ref: '#/components/schemas/microsoft.graph.ODataErrors.ODataError' ODataCountResponse: description: The count of the resource content: text/plain: schema: $ref: '#/components/schemas/ODataCountResponse' parameters: top: name: $top in: query description: Show only the first n items style: form explode: false schema: minimum: 0 type: integer example: 50 count: name: $count in: query description: Include count of items style: form explode: false schema: type: boolean filter: name: $filter in: query description: Filter items by property values style: form explode: false schema: type: string search: name: $search in: query description: Search items by search phrases style: form explode: false schema: type: string skip: name: $skip in: query description: Skip the first n items style: form explode: false schema: minimum: 0 type: integer schemas: microsoft.graph.ODataErrors.InnerError: type: object additionalProperties: type: object description: The structure of this object is service-specific microsoft.graph.directoryObject: allOf: - $ref: '#/components/schemas/microsoft.graph.entity' - title: directoryObject type: object properties: deletedDateTime: pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$ type: - string - 'null' description: Date and time when this object was deleted. Always null when the object hasn't been deleted. format: date-time additionalProperties: type: object microsoft.graph.ODataErrors.ErrorDetails: required: - code - message type: object properties: code: type: string message: type: string target: type: - string - 'null' additionalProperties: type: object microsoft.graph.resourceSpecificPermissionGrantCollectionResponse: title: Collection of resourceSpecificPermissionGrant type: object properties: value: type: array items: $ref: '#/components/schemas/microsoft.graph.resourceSpecificPermissionGrant' '@odata.nextLink': type: - string - 'null' additionalProperties: type: object microsoft.graph.ODataErrors.MainError: required: - code - message type: object properties: code: type: string message: type: string x-ms-primary-error-message: true target: type: - string - 'null' details: type: array items: $ref: '#/components/schemas/microsoft.graph.ODataErrors.ErrorDetails' innerError: $ref: '#/components/schemas/microsoft.graph.ODataErrors.InnerError' additionalProperties: type: object microsoft.graph.ODataErrors.ODataError: required: - error type: object properties: error: $ref: '#/components/schemas/microsoft.graph.ODataErrors.MainError' additionalProperties: type: object microsoft.graph.entity: title: entity type: object properties: id: type: string description: The unique identifier for an entity. Read-only. additionalProperties: type: object ODataCountResponse: type: integer format: int32 microsoft.graph.resourceSpecificPermissionGrant: allOf: - $ref: '#/components/schemas/microsoft.graph.directoryObject' - title: resourceSpecificPermissionGrant type: object properties: clientAppId: type: - string - 'null' description: ID of the service principal of the Microsoft Entra app that has been granted access. Read-only. clientId: type: - string - 'null' description: ID of the Microsoft Entra app that has been granted access. Read-only. permission: type: - string - 'null' description: The name of the resource-specific permission. Read-only. permissionType: type: - string - 'null' description: 'The type of permission. The possible values are: Application, Delegated. Read-only.' resourceAppId: type: - string - 'null' description: ID of the Microsoft Entra app that is hosting the resource. Read-only. additionalProperties: type: object securitySchemes: azureaadv2: type: oauth2 flows: authorizationCode: authorizationUrl: https://login.microsoftonline.com/common/oauth2/v2.0/authorize tokenUrl: https://login.microsoftonline.com/common/oauth2/v2.0/token scopes: {}