Tasks.ReadWrite.All
Export JSON
Export CSV
Copy URL
Print
Application
Read/Write
All Resources
Allows the app to create, read, update and delete all users’ tasks and task lists in your organization, without a signed-in user
Delegated Access
App-Only Access
Permission Details
Application Permission
Read and write all users’ tasks and tasklists
Allows the app to create, read, update and delete all users’ tasks and task lists in your organization, without a signed-in user
Permission ID:
44e666d1-d276-445b-a5fc-8815eeb81d55
Properties
| Property | Type | Description |
|---|---|---|
id |
string |
The unique identifier for an entity. Read-only. |
startDateTime |
object |
The date and time in the specified time zone at which the task is scheduled to start. |
body |
object |
The task body that typically contains information about the task. |
categories |
array |
The categories associated with the task. Each category corresponds to the displayName property of an outlookCategory that the user has defined. |
importance |
microsoft.graph.importance |
|
attachmentSessions |
microsoft.graph.attachmentSession collection |
|
lastModifiedDateTime |
date-time |
The date and time when the task was last modified. By default, it is in UTC. You can provide a custom time zone in the request header. The property value uses ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2020 would look like this: '2020-01-01T00:00:00Z'. |
createdDateTime |
date-time |
The date and time when the task was created. By default, it is in UTC. You can provide a custom time zone in the request header. The property value uses ISO 8601 format. For example, midnight UTC on Jan 1, 2020 would look like this: '2020-01-01T00:00:00Z'. |
extensions |
microsoft.graph.extension collection |
The collection of open extensions defined for the task. Nullable. |
checklistItems |
microsoft.graph.checklistItem collection |
A collection of smaller subtasks linked to the more complex parent task. |
title |
stringNullable |
A brief description of the task. |
isReminderOn |
boolean |
Set to true if an alert is set to remind the user of the task. |
singleValueExtendedProperties |
microsoft.graph.singleValueExtendedProperty collection |
A collection of custom fields linked to the task. |
linkedResources |
microsoft.graph.linkedResource collection |
A collection of resources linked to the task. |
dueDateTime |
object |
The date and time in the specified time zone that the task is to be finished. |
Showing 15 of 22 properties. View all on Microsoft Learn →
JSON Representation
JSON representation
{
"id": "String",
"startDateTime": "{...}",
"body": "{...}",
"categories": "array",
"importance": "microsoft.graph.importance",
"attachmentSessions": "[...]",
"lastModifiedDateTime": "String",
"createdDateTime": "String",
"extensions": "[...]",
"checklistItems": "[...]",
"title": "String",
"isReminderOn": "Boolean",
"singleValueExtendedProperties": "[...]",
"linkedResources": "[...]",
"dueDateTime": "{...}",
"hasAttachments": "Boolean",
"reminderDateTime": "{...}",
"attachments": "[...]",
"recurrence": "{...}",
"completedDateTime": "{...}"
}
Relationships
| Relationship | Type | Description |
|---|---|---|
linkedResources |
linkedResource collection |
A collection of resources linked to the task. |
checklistItems |
checklistItem collection |
A collection of checklistItems linked to a task. |
attachments |
attachmentBase collection |
A collection of file attachments for the task. |
attachmentSessions |
attachmentSession collection |
A collection of attachment sessions for the task. |
extensions |
extension collection |
The collection of open extensions defined for the task. Nullable. |
Graph Methods
Delegated access
App-only access
Code Examples
C# / .NET SDK
// Install: dotnet add package Microsoft.Graph
// Install: dotnet add package Azure.Identity
using Microsoft.Graph;
using Azure.Identity;
// Application permissions - daemon/service app
var tenantId = "YOUR_TENANT_ID";
var clientId = "YOUR_CLIENT_ID";
var clientSecret = "YOUR_CLIENT_SECRET";
var credential = new ClientSecretCredential(tenantId, clientId, clientSecret);
var graphClient = new GraphServiceClient(credential);
// Example: GET /users/{user-id}
var users = await graphClient.Users.GetAsync();
foreach (var user in users?.Value ?? [])
{
Console.WriteLine($"User: {user.DisplayName}");
}
JavaScript / TypeScript
// npm install @azure/msal-browser @microsoft/microsoft-graph-client
import { PublicClientApplication } from "@azure/msal-browser";
import { Client } from "@microsoft/microsoft-graph-client";
import { AuthCodeMSALBrowserAuthenticationProvider } from
"@microsoft/microsoft-graph-client/authProviders/authCodeMsalBrowser";
const msalConfig = {
auth: {
clientId: "YOUR_CLIENT_ID",
authority: "https://login.microsoftonline.com/YOUR_TENANT_ID"
}
};
const pca = new PublicClientApplication(msalConfig);
await pca.initialize();
// Application: Use client credentials (Node.js backend only)
// npm install @azure/identity @microsoft/microsoft-graph-client
import { ClientSecretCredential } from "@azure/identity";
import { TokenCredentialAuthenticationProvider } from
"@microsoft/microsoft-graph-client/authProviders/azureTokenCredentials";
const credential = new ClientSecretCredential(
"YOUR_TENANT_ID",
"YOUR_CLIENT_ID",
"YOUR_CLIENT_SECRET"
);
const authProvider = new TokenCredentialAuthenticationProvider(credential, {
scopes: ["https://graph.microsoft.com/.default"]
});
const graphClient = Client.initWithMiddleware({ authProvider });
const result = await graphClient.api("/users").get();
console.log(result);
PowerShell
# Install Microsoft Graph PowerShell module
Install-Module Microsoft.Graph -Scope CurrentUser
# Application access with certificate
$params = @{
ClientId = "YOUR_CLIENT_ID"
TenantId = "YOUR_TENANT_ID"
CertificateThumbprint = "YOUR_CERT_THUMBPRINT"
}
Connect-MgGraph @params
# Or with client secret (not recommended for production)
# Connect-MgGraph -ClientSecretCredential $credential
# Example: GET /users
$result = Invoke-MgGraphRequest -Method GET -Uri "https://graph.microsoft.com/v1.0/users"
$result | ConvertTo-Json -Depth 5
# Always disconnect when done
Disconnect-MgGraph
Python
# pip install msgraph-sdk azure-identity
from azure.identity import InteractiveBrowserCredential, ClientSecretCredential
from msgraph import GraphServiceClient
import asyncio
# Application permissions - client credentials
credential = ClientSecretCredential(
tenant_id="YOUR_TENANT_ID",
client_id="YOUR_CLIENT_ID",
client_secret="YOUR_CLIENT_SECRET"
)
scopes = ["https://graph.microsoft.com/.default"]
client = GraphServiceClient(credential, scopes)
async def get_users():
# Example: GET /users
result = await client.users.get()
for user in result.value:
print(f"User: {user.display_name}")
return result
asyncio.run(get_users())
App Registration
1
Navigate to Azure Portal
Go to App registrations in Microsoft Entra admin center
2
Add API Permission
Select your app → API permissions → Add a permission → Microsoft Graph
3
Select Permission Type
Choose Application permissions and search for Tasks.ReadWrite.All
4
Grant Admin Consent
Application permissions always require admin consent. Click "Grant admin consent" in the Azure portal.