azure-policy-effect-declaration

Type: regulative

Decision

A guardrail must declare exactly one effect: deny, config, or allowed.

Why

Without a declared effect, a guardrail does not state whether it blocks, configures, or permits.

Violations

Anchor

no-unapproved-resources

Implements

Files

← Back to knowledge graph