GraphServicePrincipal¶
Represents Entra ID service principals collected from Microsoft Graph.
Labels: :GraphObject:GraphServicePrincipal
Properties:
createdByAppId- Application ID of the creatoragentAppId- Agent application ID, when present-
agentIdentityBlueprintId- Agent identity blueprint ID, when present -
odataType- Lowercase@odata.type, when returned by Microsoft Graph -
displayName- Service principal's display name accountEnabled- Whether the service principal is enabledalternativeNames- Alternative names for the service principalappId- Associated application IDappOwnerOrganizationId- Owner organization IDpublisherName- Publisher nameservicePrincipalType- Type of service principalloginUrl- Login URL for the service principallogoutUrl- Logout URL for the service principalreplyUrls- Array of reply URLsservicePrincipalNames- Array of service principal names
Agent identity IDs are stored as properties; they do not create separate agent identity relationships.
Relationships¶
Incoming¶
- GraphApplication →
CREATED→ GraphServicePrincipal - Creator identified bycreatedByAppId
Outgoing¶
- GraphServicePrincipal →
HAS_PUBLISHED_SCOPE→ GraphApplicationScope - Scopes frompublishedPermissionScopes