manifests/collectors/Monitor/SmartDetectorAlertRules.psd1

#
# GENERATED by scripts/ConvertTo-ScoutCollectorDefinition.ps1 from Modules/Public/InventoryModules/Monitor/SmartDetectorAlertRules.ps1 (AB#5660).
# Field expressions are copied verbatim from the original collector and evaluate in an
# equivalent scope -- see docs/design/decisions/declarative-collectors.md.
# Review before trusting; regenerate rather than hand-patch if the source collector changes.
#
@{
    ResourceTypes = @(
        'microsoft.alertsmanagement/smartdetectoralertrules'
    )

    ResourceTypeMatching = 'Grouped'

    AdditionalFilter = $null

    FilterPreamble = ''

    RowLoopVariable = '1'

    Preamble = @'
$ResUCount = 1
            # An EMPTY $sub1 is not $null -- the match is empty for any resource whose subscription
            # is outside the requested scope -- and reading .Name off an empty collection throws
            # under StrictMode (AB#5671). Resolved once here, as VirtualMachine.ps1 already does.
            $sub1 = $SUB | Where-Object { $_.Id -eq $1.subscriptionId }
            # The else arm is $null, NOT '': with StrictMode off $sub1.Name on an unmatched ($null)
            # $sub1 evaluated to $null, and the ~110 collectors that still read $sub1.Name directly
            # emit $null here. '' was a silent behaviour change -- the declarative equivalence proof
            # caught it on 11 collectors, and it would have been invisible on the rest (AB#5659).
            $SubscriptionName = if ($sub1) { @($sub1)[0].Name } else { $null }
            $data = $1.PROPERTIES
            # AB#5671: an untagged resource's Resource Graph row OMITS the tags property rather
            # than carrying an empty object, so the raw read throws under StrictMode -- and so
            # does psobject.properties on a $null. The historic '0' sentinel existed only to make
            # the tag loop below run ONCE for an untagged resource, but '0'.Name throws too; an
            # empty tag object runs it once AND emits the identical [string]-cast empty Name/Value.
            $RowTags = Get-AZSCSafeProperty -InputObject $1 -Path 'tags'
            $TagProps = if ($null -ne $RowTags) { $RowTags.psobject.properties } else { $null }
            $Tags = if (![string]::IsNullOrEmpty($TagProps)) { $TagProps } else { [pscustomobject]@{ Name = $null; Value = $null } }
 
            # Detector info
            $detectorId = if ((Get-AZSCSafeProperty -InputObject $data -Path 'detector' -Enumerate)) { (Get-AZSCSafeProperty -InputObject $data -Path 'detector.id' -Enumerate) } else { 'N/A' }
            $detectorName = if ((Get-AZSCSafeProperty -InputObject $data -Path 'detector' -Enumerate)) { (Get-AZSCSafeProperty -InputObject $data -Path 'detector.name' -Enumerate) } else { 'N/A' }
 
            # Scope (target Application Insights / resource)
            $scopeResourceId = if ((Get-AZSCSafeProperty -InputObject $data -Path 'scope' -Enumerate)) { (Get-AZSCSafeProperty -InputObject $data -Path 'scope' -Enumerate) -join '; ' } else { 'N/A' }
 
            # Action groups
            $actionGroupStr = 'None'
            if ((Get-AZSCSafeProperty -InputObject $data -Path 'actionGroups' -Enumerate) -and (Get-AZSCSafeProperty -InputObject $data -Path 'actionGroups.groupIds' -Enumerate)) {
                $actionGroupStr = ((Get-AZSCSafeProperty -InputObject $data -Path 'actionGroups.groupIds' -Enumerate) | ForEach-Object { ($_ -split '/')[-1] }) -join '; '
            }
'@


    AdditionalRowLoops = @()

    TagLoop = @{
        Variable = 'Tag'
        Source = '$Tags'
        Preamble = ''
    }

    Fields = @(
        @{
            Name = 'ID'
            Expression = '$1.id'
        }
        @{
            Name = 'Subscription'
            Expression = '$SubscriptionName'
        }
        @{
            Name = 'Resource Group'
            Expression = '$1.RESOURCEGROUP'
        }
        @{
            Name = 'Alert Rule Name'
            Expression = '$1.NAME'
        }
        @{
            Name = 'Location'
            Expression = '$1.LOCATION'
        }
        @{
            Name = 'State'
            Expression = 'if ((Get-AZSCSafeProperty -InputObject $data -Path ''state'' -Enumerate)) { (Get-AZSCSafeProperty -InputObject $data -Path ''state'' -Enumerate) } else { ''N/A'' }'
        }
        @{
            Name = 'Severity'
            Expression = 'if ((Get-AZSCSafeProperty -InputObject $data -Path ''severity'' -Enumerate)) { (Get-AZSCSafeProperty -InputObject $data -Path ''severity'' -Enumerate) } else { ''N/A'' }'
        }
        @{
            Name = 'Frequency'
            Expression = 'if ((Get-AZSCSafeProperty -InputObject $data -Path ''frequency'' -Enumerate)) { (Get-AZSCSafeProperty -InputObject $data -Path ''frequency'' -Enumerate) } else { ''N/A'' }'
        }
        @{
            Name = 'Detector ID'
            Expression = '$detectorId'
        }
        @{
            Name = 'Detector Name'
            Expression = '$detectorName'
        }
        @{
            Name = 'Target Scope'
            Expression = '$scopeResourceId'
        }
        @{
            Name = 'Action Groups'
            Expression = '$actionGroupStr'
        }
        @{
            Name = 'Throttling Duration'
            Expression = 'if ((Get-AZSCSafeProperty -InputObject $data -Path ''throttlingDuration'' -Enumerate)) { (Get-AZSCSafeProperty -InputObject $data -Path ''throttlingDuration'' -Enumerate) } else { ''PT0M'' }'
        }
        @{
            Name = 'Resource U'
            Expression = '$ResUCount'
        }
        @{
            Name = 'Tag Name'
            Expression = '[string]$Tag.Name'
        }
        @{
            Name = 'Tag Value'
            Expression = '[string]$Tag.Value'
        }
    )

    Export = @{
        WorksheetName = 'Smart Detector Alerts'
        TableNamePrefix = 'SmartAlertTable_'
        Columns = @(
            'Subscription'
            'Resource Group'
            'Alert Rule Name'
            'Location'
            'State'
            'Severity'
            'Frequency'
            'Detector ID'
            'Detector Name'
            'Target Scope'
            'Action Groups'
            'Throttling Duration'
            'Resource U'
        )
        TagColumns = @()
        TagColumnsBefore = $null
        NumberFormat = '0'
        ConditionalText = @()
    }

    SourceCollector = 'Modules/Public/InventoryModules/Monitor/SmartDetectorAlertRules.ps1'
}