Skip to content

A Cloud Shell script creates the App Registration and prints the values to paste back.

  1. In Dave, go to Integrations → Add integration → Microsoft Azure to get the setup script.

  2. Open Azure Cloud Shell. If it starts in PowerShell, type bash first — the script is Bash.

  3. Check you are on the right subscription:

    Terminal window
    az account show --query id -o tsv
  4. Run the script. It creates an App Registration named Dave Integration, generates a client secret, assigns Reader and Monitoring Reader, then prints the four values you need.

  5. Paste them into Directory (tenant) ID, Subscription ID, Application (client) ID and Client secret.

  6. Set a Label — the name you will use to refer to this subscription, e.g. prod.

  7. Choose Connect Azure Subscription.

The secret is shown once, and it expires — when it lapses the health check starts failing, so note the expiry. If Azure rejects the credentials, use Fix credentials.

Create the App Registration yourself, assign Reader and Monitoring Reader under the subscription’s Access control (IAM), then collect:

Field Where
Directory (tenant) ID Entra ID → Overview
Subscription ID Subscriptions → the subscription
Application (client) ID Entra ID → App registrations → your app → Overview
Client secret that app → Certificates & secrets → New client secret → Value