Reference
Power App (Canvas App)
All Power Apps (Canvas Apps) in your tenant
Part of the Power Apps inventory.
Scan settings
| Default scanning interval | Allowed scanning intervals | Data removal during incremental scan |
|---|---|---|
| Daily | Daily, Weekly, Bi-Weekly, Monthly, Never, Initial | Yes |
Properties
| Property | Type | Description | Automation placeholder |
|---|---|---|---|
| Alm Mode | String | {{PowerAppCanvasApp.AppAlmMode}} | |
| AppId Id | String | {{PowerAppCanvasApp.AppId}} | |
| App Open Uri | String | {{PowerAppCanvasApp.AppOpenUri}} | |
| Plan Classification | String | {{PowerAppCanvasApp.AppPlanClassification}} | |
| App Type | String | Allowed values: Canvas, SharePoint Form, System. | {{PowerAppCanvasApp.AppType}} |
| App Version | DateTime | {{PowerAppCanvasApp.AppVersion}} | |
| Bypass Consent | Boolean | {{PowerAppCanvasApp.BypassConsent}} | |
| Initially Scanned | DateTime | Shows when this object was initially found in a scan. | {{PowerAppCanvasApp.CreatedTime}} |
| Created By | String | PowerApps created by the user | {{PowerAppCanvasApp.Createdby}} |
| Created By User | String | {{PowerAppCanvasApp.CreatedbyName}} | |
| Description | String | {{PowerAppCanvasApp.Description}} | |
| Display Name | String | {{PowerAppCanvasApp.DisplayName}} | |
| Environment | Environment | PowerApps in the environment Default scanning interval: Initial. | {{PowerAppCanvasApp.Environment}} |
| Power App Environment | String | {{PowerAppCanvasApp.EnvironmentName}} | |
| Is Featured App | Boolean | {{PowerAppCanvasApp.IsFeaturedApp}} | |
| Is Hero App | Boolean | {{PowerAppCanvasApp.IsHeroApp}} | |
| Modified by | String | Modified PowerApps by the user | {{PowerAppCanvasApp.LastModifiedBy}} |
| Modified by User | String | {{PowerAppCanvasApp.LastModifiedByName}} | |
| Last scan update | DateTime | Shows when this object was last updated in a scan. If an object is found during a scan but no property has been changed this date will not change. | {{PowerAppCanvasApp.LastModifiedTime}} |
| Last published | DateTime | {{PowerAppCanvasApp.LastPublishTime}} | |
| Last published by | String | Published PowerApps by user | {{PowerAppCanvasApp.LastPublishedBy}} |
| Last published by User | String | {{PowerAppCanvasApp.LastPublishedByName}} | |
| Min Client Version | String | {{PowerAppCanvasApp.MinClientVersion}} | |
| Owner | String | PowerApps owned by the user | {{PowerAppCanvasApp.Owner}} |
| Owner User | String | {{PowerAppCanvasApp.OwnerName}} | |
| Created date | DateTime | {{PowerAppCanvasApp.PowerAppCreatedTime}} | |
| Last modified | DateTime | {{PowerAppCanvasApp.PowerAppModified}} | |
| Risk Score | Int32 | Stores risk score | {{PowerAppCanvasApp.RiskScore}} |
| Risk Score Update | DateTime | Stores risk score update | {{PowerAppCanvasApp.RiskScoreLastUpdate}} |
| Risk Score Value | String | Stores risk score value like Low_Low | {{PowerAppCanvasApp.RiskScoreValue}} |
| Shared Groups Count | Int32 | {{PowerAppCanvasApp.SharedGroupsCount}} | |
| Shared Users Count | Int32 | {{PowerAppCanvasApp.SharedUsersCount}} | |
| Shared with everyone in tenant | Boolean | Shows if this Power App can be viewed and used by all users of current tenant (Permission: Everyone in {TenantName}) | {{PowerAppCanvasApp.SharedWithEveryoneInTenant}} |
| Status | String | {{PowerAppCanvasApp.Status}} | |
| Uses Custom Api | Boolean | {{PowerAppCanvasApp.UsesCustomApi}} | |
| Uses OnPremise Gateway | Boolean | {{PowerAppCanvasApp.UsesOnPremiseGateway}} | |
| Uses Only Grandfathered Premium Apis | Boolean | {{PowerAppCanvasApp.UsesOnlyGrandfatheredPremiumApis}} | |
| Uses Premium Api | Boolean | {{PowerAppCanvasApp.UsesPremiumApi}} |
Relations
| Relation | Service | Description |
|---|---|---|
| Group | Microsoft 365 | Groups which are co-owners of the PowerApp |
| Group | Microsoft 365 | Groups which can use the PowerApp |
| User | Microsoft 365 | Users co-owning the PowerApp |
| User | Microsoft 365 | User who created the app |
| User | Microsoft 365 | Users co-owning the PowerApp |
| User | Microsoft 365 | Users who can use the power app (direct or via security group) |
| User | Microsoft 365 | User who modified the app |
| User | Microsoft 365 | User who published the app |
| User | Microsoft 365 | Users owning the PowerApp |
| User | Microsoft 365 | Users who can use the power app (direct or via security group) |
| Connection | Power Apps | Connections used in the Power App |
| Environment | Power Apps | All Power App environments in your tenant |
| Version | Power Apps | All versions of your Power Apps |
Segments
| Segment | Description |
|---|---|
| Apps shared with groups | Power Apps that are shared with one or more groups. |
| Apps shared with everyone | Power Apps that are shared with all users in the tenant. |
| Canvas Apps | All Power Apps built as Canvas apps. |
| Apps using custom connectors | Power Apps that depend on custom (non-Microsoft) connectors. |
| Apps using on-premise gateway | Power Apps that connect to on-premise data sources through a gateway. |
| Apps using premium APIs | Power Apps that use premium connectors and therefore require premium licensing. |
| SharePoint Form Apps | Power Apps that customize SharePoint list forms. |
| System Apps | Power Apps that are part of Dataverse model-driven solutions or system apps. |
Actions
This object does currently not have any actions.
Policies that check this object
| Policy | Severity | Description |
|---|---|---|
| Power Apps requiring a premium license | Information | Shows Power Apps with premium connectors, custom connectors, common data service etc. |
| Power Apps (Canvas Apps) without Owners | High | Shows PowerApps with no Owners |
| Power Apps that bypass user consent | High | Apps with BypassConsent skip the connector consent prompt and silently use shared credentials. |
| Power Apps inactive for 90+ days | Information | Apps that have not been modified for 90 days are likely no longer maintained. |
| Power Apps not published in the last year | Medium | Apps that have not been republished in over a year may be abandoned and ready for decommission. |
| Power Apps (Canvas Apps) shared with everyone | Information | Shows Power Apps that all users of current tenant can viewed and used. |
| Power Apps shared with more than 100 users | Information | Apps shared with very large groups of users should be evaluated for tenant-wide sharing or governance. |
| Power Apps using custom connectors | Medium | Apps using custom connectors bypass first-party connector governance and must be reviewed. |
| Power Apps relying on grandfathered premium APIs | Medium | Apps still using grandfathered premium connectors will eventually require premium licenses. |
| Power Apps using an on-premise data gateway | Medium | Apps reaching on-premise data sources increase the attack surface and depend on gateway availability. |
| Power Apps without a description | Information | Apps without a description are harder for end users to discover and for admins to govern. |