none
Graph Insights API is not respecting permissions RRS feed

  • Question

  • Hello, 

    I am making following request to Graph API: https://graph.microsoft.com/beta/me/insights/trending?$filter=resourceReference/type eq 'microsoft.graph.driveItem'&top=20

    All items has reference to Drive item, like this:

    "resourceReference":

    {
       "webUrl": "....",
       "id": "drives/blabla/items/itemid",
       "type": "microsoft.graph.driveItem"
    }

    The problem is that not all items accessible using Drive. For some items I am getting 403 errors:

    1. "Access to this site has been blocked. Please contact the administrator to resolve this problem." (for item with "containerType": "Site")

    2. "Cannot reference a user's drive from another user's personal site." (for item with "containerType": "OneDriveBusiness")

    Is it bug? Because it make no sense to return item which user cannot access.

    Wednesday, September 27, 2017 1:56 PM