Comprehensive coverage
200+ Azure resource types. 568+ Log Analytics tables. Refreshed weekly from Microsoft Learn so the schema in front of you matches the one in production.
Every resource type, every category, every column — cross-referenced with the Log Analytics tables they land in. KQL starters and PII flags included. No more tab-archaeology across learn.microsoft.com.
200+ Azure resource types. 568+ Log Analytics tables. Refreshed weekly from Microsoft Learn so the schema in front of you matches the one in production.
"What columns does AuditEvent emit on
Microsoft.KeyVault/vaults, and which table do they land in?"
Answered in seconds, not minutes.
Every category ships with a paste-ready KQL query targeting the correct
destination table — no guessing whether it lands in
AzureDiagnostics or a resource-specific table.
Columns are tagged high / medium / low PII so security and compliance can read the schema at a glance. No manual classification work.