> For the complete documentation index, see [llms.txt](https://docs.forestall.io/fsprotect/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.forestall.io/fsprotect/search-and-reports/azure-entities/entra-id/group.md).

# Group

The **Group** entity represents a group in Azure Active Directory (Entra ID).

| Field                         | Type    | Possible Operators                                                 | Description                                           |
| ----------------------------- | ------- | ------------------------------------------------------------------ | ----------------------------------------------------- |
| Guid                          | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | Unique identifier for the entity in Forestall         |
| ObjectID                      | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | Azure AD Object ID of the group                       |
| FSName                        | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | Display name used in Forestall                        |
| WhenCreated                   | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | Date the group was created                            |
| Description                   | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | Description of the group                              |
| DisplayName                   | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | Display name of the group in Azure AD                 |
| IsAssignableToRole            | BOOLEAN | True / False                                                       | Whether the group can be assigned to an Azure AD role |
| OnPremSID                     | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | On-premises Security Identifier (SID)                 |
| OnPremSyncEnabled             | BOOLEAN | True / False                                                       | Whether the group is synced from on-premises AD       |
| SecurityEnabled               | BOOLEAN | True / False                                                       | Whether the group is security-enabled                 |
| SecurityIdentifier            | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | Security Identifier of the group                      |
| TenantID                      | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | Azure AD Tenant ID the group belongs to               |
| MailEnabled                   | BOOLEAN | True / False                                                       | Whether the group is mail-enabled                     |
| IsAZPrivileged                | BOOLEAN | True / False                                                       | Whether the group has privileged access in Azure      |
| IsStealth                     | BOOLEAN | True / False                                                       | Whether the group is a stealth (shadow) admin group   |
| IsAdmin                       | BOOLEAN | True / False                                                       | Whether the group has admin privileges                |
| GroupType                     | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | Type of group (e.g., Unified, Security)               |
| MembershipType                | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | Membership type (e.g., Assigned, Dynamic)             |
| MembershipRule                | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | Dynamic membership rule expression                    |
| MembershipRuleProcessingState | TEXT    | Like, Not Like, Equal, Not Equal, Is Empty                         | Processing state of the dynamic membership rule       |
| MemberCount                   | NUMBER  | Equal, Between, Smaller, Larger, Smaller or Equal, Larger or Equal | Number of members in the group                        |
| AZTier                        | NUMBER  | Equal, Between, Smaller, Larger, Smaller or Equal, Larger or Equal | Azure tier classification assigned by Forestall       |
