Status: IN
Storage Delegator roles (Blob, File, Queue, Table) are specifically for creating user delegation SAS tokens signed with Azure AD — they do not grant direct data access.
Source: entries/2026/03/11/rbac-built-in-roles.md
JSON