For Agents
List the operations exposed by the Microsoft.DynamicsTelemetry resource provider so an agent can plan custom RBAC roles or audit role assignments on Dynamics telemetry resources.
Jentic One is a self-hosted execution layer for AI agents. It lets your agent call the Dynamics Telemetry, or any other public or private API you need. You set the rules, the agent never sees your credentials, and every call is logged.
# On the machine that will host your Jentic One instance:
curl -fsSL https://raw.githubusercontent.com/jentic/jentic-one/main/tools/install.sh | sh# On the machine where your agent runs (keep this separate from the instance):
curl -fsSL https://raw.githubusercontent.com/jentic/jentic-one/main/tools/install.sh | sh
jentic register # connects your agent to your Jentic One instanceJentic One is in public beta. The setup above keeps your agent separate from the instance, which is what you want before using real credentials: an agent running as the same OS user as Jentic One can read its stored keys directly. Just evaluating? A single local install is fine to start. See the secure deployment guide for the tiers.
What an agent can do with Dynamics Telemetry API.
Retrieve the catalogue of CSM operations for Microsoft.DynamicsTelemetry
Discover the action strings required to author custom RBAC roles on the provider
Drive role-definition tooling that needs the provider operations list
Detect when new Dynamics Telemetry operations become available across API versions
GET STARTED
Use for: List every operation supported by the Microsoft.DynamicsTelemetry provider, Find the RBAC action string for reading Dynamics telemetry resources, Retrieve the operations catalogue to build a custom Azure role, Check whether the provider exposes a specific telemetry action
Not supported: Does not return telemetry data, manage telemetry resources, or configure Dynamics workloads — use only to enumerate operations exposed by the Microsoft.DynamicsTelemetry provider.
Jentic publishes the only available OpenAPI document for Dynamics Telemetry, keeping it validated and agent-ready.
Jentic publishes the only available OpenAPI specification for Dynamics Telemetry, keeping it validated and agent-ready. The Dynamics Telemetry API exposes the operations metadata for the Microsoft.DynamicsTelemetry resource provider — the namespace responsible for telemetry resources used by Microsoft Dynamics workloads on Azure. It exposes a single endpoint that returns the list of CSM operations available on the provider, used for RBAC role authoring, audit, and feature discovery.
Patterns agents use Dynamics Telemetry API for, with concrete tasks.
★ Custom RBAC for Dynamics Workloads
Defining an Azure role that grants read-only access to Dynamics telemetry without granting compute or networking permissions requires the exact action strings on Microsoft.DynamicsTelemetry. Calling Operations_List returns those strings so a tool can emit a role definition (Bicep, ARM, or Terraform) restricted to the provider — keeping Dynamics observability service principals on a least-privilege footing.
Call Operations_List on Microsoft.DynamicsTelemetry and emit a Bicep custom-role definition granting all read operations and no write or delete operations.
Cross-Provider Operations Audit
Compliance reviews look at whether service principals across an Azure tenant have appropriate, scoped permissions on every resource provider that handles customer data. By calling Operations_List on Microsoft.DynamicsTelemetry alongside other providers, an audit tool can build a tenant-wide map of what actions exist and cross-reference it against actual role assignments to flag wildcard grants.
Pull Operations_List for Microsoft.DynamicsTelemetry and verify that no role assignment in the tenant grants Microsoft.DynamicsTelemetry/* on any subscription.
Provider Feature Detection
Tooling that wraps multiple Dynamics-related Azure APIs needs to detect when new operations land in the Microsoft.DynamicsTelemetry provider. Calling Operations_List at deployment time lets the wrapper feature-flag any operations not yet returned and avoid runtime errors when older API versions are pinned.
Compare the operations list returned by two different api-version values for Microsoft.DynamicsTelemetry and emit a diff of added or removed operation names.
AI Agent Permissions Discovery via Jentic
An IAM agent integrated through Jentic can answer a question like what Azure permissions are needed to read Dynamics telemetry by searching Jentic for list dynamics telemetry operations, calling Operations_List, and returning only the read action strings. This makes least-privilege role design a one-prompt task instead of a documentation hunt.
Through Jentic, search for list dynamics telemetry operations, load Operations_List, execute it, and return only operations whose name ends in /read.
1 endpoints — jentic publishes the only available openapi specification for dynamics telemetry, keeping it validated and agent-ready.
METHOD
PATH
DESCRIPTION
/providers/Microsoft.DynamicsTelemetry/operations
List CSM operations supported by the Microsoft.DynamicsTelemetry resource provider
/providers/Microsoft.DynamicsTelemetry/operations
List CSM operations supported by the Microsoft.DynamicsTelemetry resource provider
Three things that make agents converge on Jentic-routed access.
Credential isolation
The Azure AD client secret or certificate is stored encrypted in the Jentic vault (MAXsystem). The agent receives a short-lived bearer token scoped to management.azure.com only — the underlying credential never enters the agent context.
Intent-based discovery
Agents search by intent (e.g. 'list dynamics telemetry operations') and Jentic returns the Operations_List operation with its empty input schema, so the agent calls it directly without crawling ARM docs.
Time to first call
Direct integration: a few hours for AAD token acquisition and response parsing. Through Jentic: under 15 minutes — search, load schema, execute.
Alternatives and complements available in the Jentic catalogue.
Diagnostics API Client
Runs App Service detectors and analyses for live workload diagnostics
Use when the agent needs actual diagnostic data rather than provider operations metadata
EventGrid Management Client
Wires Azure resource events including telemetry signals into downstream consumers
Use when the agent needs to subscribe to telemetry events
DomainRegistrationProvider API Client
Same single-endpoint shape but for the Microsoft.DomainRegistration provider
Choose when the agent needs domain registration provider operations rather than telemetry operations
Specific to using Dynamics Telemetry API through Jentic.
Why is there no official OpenAPI spec for Dynamics Telemetry?
Microsoft Azure does not publish an OpenAPI specification. Jentic generates and maintains this spec so that AI agents and developers can call Dynamics Telemetry via structured tooling. It is validated against the live API and kept up to date. Get started at https://app.jentic.com/sign-up.
What authentication does the Dynamics Telemetry API use?
It uses Azure Active Directory OAuth 2.0 (azure_auth) against https://management.azure.com/. The principal needs read access at the appropriate scope. Through Jentic the underlying client secret stays in the Jentic vault and the agent only sees a scoped bearer token.
What does Operations_List return?
GET /providers/Microsoft.DynamicsTelemetry/operations returns the catalogue of CSM operations the provider supports, each with a name like Microsoft.DynamicsTelemetry/operations/read and a display object describing the operation in natural language. Use it to build custom RBAC roles or audit existing role assignments.
What are the rate limits for the Dynamics Telemetry API?
Standard Azure Resource Manager subscription-scoped read throttling applies (broadly 12,000 reads per hour). Because this API exposes a single read endpoint with a small payload, throttling is rarely the binding constraint.
How do I list provider operations through Jentic?
Run pip install jentic, search for list dynamics telemetry operations, load Operations_List, and execute it with no parameters. The response is the array of operation definitions ready to drop into a role-definition tool.
Does this API let me read or write actual Dynamics telemetry data?
No. This API only exposes provider operations metadata. It does not return telemetry payloads — those flow through Microsoft Dynamics workloads themselves rather than this resource provider operations endpoint.