Skip to content

Windows Defender

Add API Permissions for Windows Defender

vScope requires specific API permissions within Azure to access and inventory your Windows Defender data. Follow the steps below to grant these permissions:

  1. Click + Add a permission again.

    Azure portal showing the '+ Add a permission' button for app registration

  2. Select APIs my organization uses and search for WindowsDefenderATP.

    Azure adding permission for app registration for Windows Defender

  3. Under Application permissions, enable AdvancedQuery.Read.All in the AdvancedQuery section and Machine.Read.All in the Machine section, then click Add permissions.

    Request API permissions Azure Portal

  4. Click Grant admin consent to finalize permissions.

    Azure API permissions grant admin consent

Once these permissions are granted, vScope will be able to inventory your Windows Defender data through the Azure API.