Der Autopilot-Status im Geräte-Detail (Profil-Zuweisung / letzter Kontakt)
braucht DeviceManagementServiceConfig.Read.All. Das Flag -IncludeDeviceActions
fügt den Scope jetzt hinzu (Read/Write und Read-Only). Ist ohnehin Offboarding
aktiv, wird die ReadWrite-Variante bevorzugt und die Read-Variante entfernt.
Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
- docs/App-Registration.md: alle benoetigten Graph-Berechtigungen
(Kern, Geraete-Tab, Read-Only) + Auth-Konfiguration
- docs/Setup-AppRegistration.ps1: legt die App-Registrierung automatisch an
(Rechte, Public-Client-Flow, Redirect-URIs, optional Admin-Consent);
Berechtigungs-IDs werden live aufgeloest
- README/CHANGELOG verlinkt, ToolVersion + build-local auf 0.1.27
Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>