Gives view-only rights within an Azure DevOps project, for example over releases and pipelines. Don't confuse it with Azure's Reader role or the agent pool Reader role.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Readers in context, with comparison tables and the common traps.
Terms in this definition
- Azure DevOps
Microsoft's suite of DevOps services, among them Azure Boards and Azure Pipelines.
- Foundry project
A container beneath a Foundry resource that keeps one team's agents, data, files, evaluations and project connections separate. Model deployments and resource-level connections are shared from the parent, and governance is not configured at this level.
- OVER
Gives a T-SQL window function its window: PARTITION BY, ORDER BY and, if wanted, a ROWS or RANGE frame. Rankings and running totals can then be worked out while every row is kept.
- Reader
Built-in Azure role for viewing resources only: it cannot modify or use them, for example by joining or associating them, and gives no keys or data access.
- Role
How an actor normally or expectedly behaves, or the part a person takes in a process. A single actor may hold more than one role.
- Agent pool
A set of agents for running Azure Pipelines jobs, created for the whole organisation and shared with projects. Pool roles and pipeline permissions govern who manages it and which pipelines may use it; in GitHub, runner groups play this part.
Related terms
- Azure DevOps security group
Groups like Readers, Contributors, Project Administrators and Project Collection Administrators that hand out permissions in Azure DevOps. Which features someone can use is decided separately by their access level: Stakeholder, Basic or Basic + Test Plans.
- Change tracking
A lightweight SQL feature that records, as part of each change, which rows were affected (their primary key, the operation and, optionally, the columns) without keeping old values. Readers call
CHANGETABLEand then fetch the current rows themselves. - Cloud-scale analytics
Retired guidance in Microsoft's adoption framework that covered data landing zones and data management. Microsoft now sends readers to its Fabric-based advice on bringing AI and analytics together on one data platform.
- Copilot security dashboard
Collects Purview signals about Copilot in one Microsoft 365 admin center page (Copilot > Overview > Security), offering shortcuts to set up DLP, deal with oversharing and tighten compliance. Global Readers may view it; an AI Administrator is needed to change anything.
- Field parameter
Puts a slicer in front of report readers so they can swap which measures or dimensions appear in a chart. Under the hood, Power BI stores it as a calculated table.
- Filters pane
The pane in a report where filters live, organised by scope: a single visual, the current page or every page, along with any drillthrough filters. Report authors may hide or lock individual filter cards, while readers can adjust whichever cards remain visible.
- Fixed identity
With single sign-on off, a Direct Lake model can be bound to one explicit cloud credential, such as a workspace identity or service principal. Permissions, RLS and CLS are then evaluated for that credential, not per viewer, so readers need no rights on the underlying item.
- Inclusiveness principle
The responsible AI principle that AI should engage and empower all people, breaking down barriers with accessibility features, language support and compatibility with screen readers and other assistive technology.