azure_analyze_function_apps
Analyze Azure Functions security configurations to uncover authentication weaknesses, network exposure, and integration risks. Provides detailed assessment of Event Grid, Service Bus, and dead letter queue security.
Instructions
ENHANCED v1.14.0 Azure Functions security analysis: authentication settings, managed identity, VNet integration, CORS configuration, application settings for secrets, runtime version vulnerabilities, Event Grid trigger security, Service Bus queue/topic permissions, integration authentication validation. Returns: trigger exposure risks, Event Grid subscription configurations, Service Bus SAS policies, dead letter queue security.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| subscriptionId | Yes | Azure subscription ID | |
| resourceGroup | No | Optional: Filter by specific resource group | |
| validateEventGrid | No | Validate Event Grid trigger security and subscription configurations. Default: true | |
| validateServiceBus | No | Validate Service Bus queue/topic trigger security and SAS policy permissions. Default: true | |
| checkIntegrationSecurity | No | Comprehensive analysis of integration security (Event Grid, Service Bus, Storage Queue). Default: true | |
| format | No | Output format: 'markdown' (default, human-readable) or 'json' (machine-readable) |