> For the complete documentation index, see [llms.txt](https://docs.powermonitor.com.br/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.powermonitor.com.br/en/power-monitor/governanca.md).

# Governance

Overview of the Power Monitor Governance module: the complete inventory of your Microsoft Fabric and Power BI tenant, with owners, access, schedules, infrastructure and deleted items.

## Overview

The **Governance** module is where you find the **complete inventory** of your Microsoft Fabric and Power BI tenant: everything that exists, where it is, who created it, who last modified it, who has access and how artifacts are distributed across workspaces, capacities, gateways and domains.

While the [Monitoring](/en/power-monitor/monitoramento.md) module shows the health and consumption of the environment in real time, Governance answers cataloging, auditing and operational questions: how many workspaces exist, which reports are published to the web, which models have RLS, which gateways are outdated, which connections use a password, when each refresh is scheduled and what has been deleted from the tenant.

## Governance menu screens

In the menu, **Workspaces**, **Semantic Models** and **Storage** appear on their own at the top, since they are the most used inventory screens. The others are organized in six collapsible groups:

* [**Reports**](/en/power-monitor/governanca/relatorios.md#the-reports-menu-group): the consumption artifacts, with one screen per type (reports, paginated reports, dashboards, apps and others).
* [**Data and Engineering**](/en/power-monitor/governanca/dados-e-engenharia.md): the Fabric artifacts that move, transform and process data (mirroring, data engineering, data science, development and real time).
* [**Infrastructure**](/en/power-monitor/governanca/infraestrutura.md): what supports execution (capacities, gateways, connections and Azure quotas).
* [**Operations**](/en/power-monitor/governanca/operacao.md): the artifact lifecycle (schedules, deployment pipelines and their deployment history, model change history, workspace Git status and what was deleted).
* [**Compliance**](/en/power-monitor/governanca/conformidade.md): the exposure, compliance and privacy screens (public links, organization-wide links, labels, naming conventions, personal data, privacy risks, compliance posture, departed owners and access reviews).
* [**Tenant**](/en/power-monitor/governanca/tenant.md): what belongs to the whole organization rather than to a workspace (tenant settings, licenses and domains).

Clicking a group name only expands or collapses the list, without changing the screen, and the group of the screen currently open is already expanded. A group with no screen you can open (because they are exclusive to Administrators or blocked for your user) does not appear in the menu.

The screens appear in the menu in this order:

| Screen                                                                                                  | What it shows                                                                                                                                                                                                                |
| ------------------------------------------------------------------------------------------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| [Workspaces](/en/power-monitor/governanca/workspaces.md)                                                | Inventory and governance of the tenant's workspaces                                                                                                                                                                          |
| [Semantic Models](/en/power-monitor/governanca/modelos-semanticos.md)                                   | Semantic models, connection modes, RLS and criticality                                                                                                                                                                       |
| [Storage](/en/power-monitor/governanca/armazenamento.md)                                                | Lakehouses, Warehouses, SQL databases, KQL databases and Event Streams (includes the [SQL Performance Analysis](/en/power-monitor/governanca/armazenamento/analise-de-performance-sql.md), opened from the row actions menu) |
| **Reports** (group)                                                                                     |                                                                                                                                                                                                                              |
| ↳ [Reports](/en/power-monitor/governanca/relatorios.md)                                                 | Power BI reports                                                                                                                                                                                                             |
| ↳ [Paginated Reports](/en/power-monitor/governanca/relatorios/relatorios-paginados.md)                  | Paginated reports (Power BI Report Builder)                                                                                                                                                                                  |
| ↳ [Dashboards](/en/power-monitor/governanca/relatorios/dashboards.md)                                   | Power BI dashboards                                                                                                                                                                                                          |
| ↳ [KQL Dashboards](/en/power-monitor/governanca/relatorios/kql-dashboards.md)                           | Real-time dashboards (KQL)                                                                                                                                                                                                   |
| ↳ [Apps](/en/power-monitor/governanca/relatorios/apps.md)                                               | Power BI/Fabric apps published to users                                                                                                                                                                                      |
| ↳ [Explorations](/en/power-monitor/governanca/relatorios/exploracoes.md)                                | Explorations                                                                                                                                                                                                                 |
| ↳ [Metric Sets](/en/power-monitor/governanca/relatorios/conjuntos-de-metricas.md)                       | Metric Sets                                                                                                                                                                                                                  |
| [**Data and Engineering**](/en/power-monitor/governanca/dados-e-engenharia.md) (group)                  |                                                                                                                                                                                                                              |
| ↳ [Fabric Mirroring](/en/power-monitor/governanca/dados-e-engenharia/fabric-mirroring.md)               | Mirrored Databases and their synchronization status                                                                                                                                                                          |
| ↳ [Data Engineering](/en/power-monitor/governanca/dados-e-engenharia/engenharia-de-dados.md)            | Data Pipelines, Dataflows, Copy Jobs, Notebooks, Environments, dbt, Spark Job Definitions and Apache Airflow Jobs                                                                                                            |
| ↳ [Data Science](/en/power-monitor/governanca/dados-e-engenharia/ciencia-de-dados.md)                   | ML Models, Data Agents, ML Experiments, Ontologies and Graph Models                                                                                                                                                          |
| ↳ [Ontologies](/en/power-monitor/governanca/dados-e-engenharia/ontologias.md)                           | Structure of the ontologies (entities, relationships, data bindings, rules and metrics) and the problems found                                                                                                               |
| ↳ [Development](/en/power-monitor/governanca/dados-e-engenharia/desenvolvimento.md)                     | Variable Libraries, App Backend and User Data Functions                                                                                                                                                                      |
| ↳ [Real Time](/en/power-monitor/governanca/dados-e-engenharia/tempo-real.md)                            | Reflex, Eventhouses, Event Subscriptions and KQL Querysets                                                                                                                                                                   |
| [**Infrastructure**](/en/power-monitor/governanca/infraestrutura.md) (group)                            |                                                                                                                                                                                                                              |
| ↳ [Capacities](/en/power-monitor/governanca/infraestrutura/capacidades.md)                              | Capacity inventory, cost, pause/resume/change size (SKU) via Azure, schedules, autoscaling and time-based alerts                                                                                                             |
| ↳ [Gateways](/en/power-monitor/governanca/infraestrutura/gateways.md)                                   | Data gateways, version status, permissions and reverse lineage                                                                                                                                                               |
| ↳ [Connections](/en/power-monitor/governanca/infraestrutura/conexoes.md)                                | Single inventory of connections and data sources, privacy, credentials, permissions and lineage                                                                                                                              |
| ↳ [Azure Quotas](/en/power-monitor/governanca/infraestrutura/azure-quotas.md)                           | Fabric Capacity Units limit and current usage per Azure subscription and region                                                                                                                                              |
| [**Operations**](/en/power-monitor/governanca/operacao.md) (group)                                      |                                                                                                                                                                                                                              |
| ↳ [Schedules](/en/power-monitor/governanca/operacao/agendamentos.md)                                    | Refresh schedules for models and job schedules for Fabric items, heat map and Refresh Execution Timeline                                                                                                                     |
| ↳ [Deployment Pipelines](/en/power-monitor/governanca/operacao/pipelines-de-implantacao.md)             | The tenant's deployment pipelines, their stages and administrators, queried live in Power BI                                                                                                                                 |
| ↳ [Deployment history](/en/power-monitor/governanca/operacao/historico-de-deploys.md)                   | Deployments between pipeline stages: who did them, when, what changed and whether they succeeded                                                                                                                             |
| ↳ [Model History](/en/power-monitor/governanca/operacao/historico-de-modelos.md)                        | Structural changes to semantic models, with version comparison and an optional breaking-change alert                                                                                                                         |
| ↳ [Workspace Git](/en/power-monitor/governanca/operacao/git-dos-workspaces.md)                          | Workspaces connected to Git, uncommitted changes and conflicts                                                                                                                                                               |
| ↳ [Deleted Artifacts](/en/power-monitor/governanca/operacao/artefatos-excluidos.md)                     | Items that no longer exist in the tenant and the date they were detected                                                                                                                                                     |
| [**Compliance**](/en/power-monitor/governanca/conformidade.md) (group)                                  |                                                                                                                                                                                                                              |
| ↳ [Public Links](/en/power-monitor/governanca/conformidade/links-publicos.md)                           | The tenant's "Publish to web" links                                                                                                                                                                                          |
| ↳ [Organization-wide Links](/en/power-monitor/governanca/conformidade/links-para-toda-a-organizacao.md) | "People in your organization" sharing links, queried live in Power BI                                                                                                                                                        |
| ↳ [Labels and Certification](/en/power-monitor/governanca/conformidade/rotulos-e-certificacao.md)       | Purview sensitivity labels, certification and exposure of each artifact                                                                                                                                                      |
| ↳ [Naming conventions](/en/power-monitor/governanca/conformidade/convencao-de-nomes.md)                 | Items whose name does not follow the organization's naming rules (rules are managed by Administrators)                                                                                                                       |
| ↳ [Personal data discovery](/en/power-monitor/governanca/conformidade/descoberta-de-dados-pessoais.md)  | Models with columns that are candidates for personal data, identified by the column name                                                                                                                                     |
| ↳ [Privacy risks](/en/power-monitor/governanca/conformidade/riscos-de-privacidade.md)                   | Crossings between personal data candidates and label, RLS, exposure, exports, access origin and lack of use                                                                                                                  |
| ↳ [Compliance posture](/en/power-monitor/governanca/conformidade/postura-de-conformidade.md)            | Indicative score from 0 to 100, controls, governance coverage and credential hygiene                                                                                                                                         |
| ↳ [Departed Owners](/en/power-monitor/governanca/conformidade/responsaveis-desligados.md)               | Owners and responsible users whose accounts were blocked or deleted from Microsoft Entra ID (**Administrators** only)                                                                                                        |
| ↳ [Access reviews](/en/power-monitor/governanca/conformidade/revisoes-de-acesso.md)                     | Campaigns in which owners confirm who should keep access to each workspace (campaigns: **Administrators** only)                                                                                                              |
| [**Tenant**](/en/power-monitor/governanca/tenant.md) (group)                                            |                                                                                                                                                                                                                              |
| ↳ [Tenant Settings](/en/power-monitor/governanca/tenant/configuracoes-do-tenant.md)                     | Security-sensitive Power BI/Fabric tenant settings (publish to web, external sharing, guests, export), what changed and each setting's history with the likely author                                                        |
| ↳ [Power BI Licenses](/en/power-monitor/governanca/tenant/licencas-power-bi.md)                         | The tenant's Free, Pro and Premium Per User licenses, where each one comes from, who actually uses it, findings, savings opportunities and the estimated savings with Power Embedded (**Administrators** only)               |
| ↳ [Domains](/en/power-monitor/governanca/tenant/dominios.md)                                            | Fabric domains and subdomains and the distribution of workspaces                                                                                                                                                             |

## Permissions and visibility

* **Open screen, restricted action.** Governance screens can be viewed by any user profile, except **Departed Owners** and **Power BI Licenses**, which are exclusive to **Administrators** because they contain personal data. **Write actions** (for example, pausing or changing the size (SKU) of a capacity, creating or editing schedules, granting access to the Service Principal, triggering scans, turning on monitoring) are exclusive to **Administrators**. For other profiles, these controls are hidden or disabled with the tooltip "This action is restricted to organization administrators."
* **Workspace scope.** A user may have visibility restricted to some workspaces (configured in [Users](/en/power-monitor/usuarios.md)). In that case, the lists show only the artifacts from those workspaces.
* **Page blocking.** An administrator can block specific pages for a user; the page disappears from the menu and direct access through the URL is denied.

## Concepts you will encounter

A **Workspace** is where Fabric and Power BI artifacts are organized and published. Almost every artifact belongs to a workspace.

**Criticality** and other **governance metadata** (owner, business area contact, area and subarea) are information assigned by your organization to workspaces and artifacts to prioritize attention on the most sensitive items. When filled in, they appear in the **Governance** section of the details modal.

**RLS (Row-Level Security)** is the row-level security of semantic models, which restricts which data each user can see.

**Connection mode** describes how a semantic model accesses data, for example **Import** (data is copied into the model), **DirectQuery** (the model queries the source on each interaction) or **Composite** (a combination of both).

**SKU** is the size of a capacity (for example, F2, F64, A1, P1), which determines the amount of Capacity Units (CU) purchased.

**Service Principal** is the application identity that Power Monitor uses to read the Fabric, Power BI and Azure APIs on behalf of your organization. Several screens offer shortcuts to grant it the permissions it needs.

A **Scan** is the periodic collection that feeds the inventory. Scan schedules and history are in the [Mapping](/en/power-monitor/mapeamento.md) module.

A **Deleted artifact** is an item that no longer appears in the tenant. It is removed from all inventory screens and counts and is listed in [Deleted Artifacts](/en/power-monitor/governanca/operacao/artefatos-excluidos.md).

## Features common to inventory screens

* **Cards by type** at the top, which also work as a quick filter.
* **Column filters** in the table header and **sorting** by clicking the column title.
* **Row actions menu (⋮)**, also opened by right-clicking the row, with the **Open details** item and a submenu that goes directly to each tab of the modal.
* **Details modal** with the **Overview** and **Users & Permissions** tabs and, depending on the artifact type, **Schedules**, **Dependencies** (dependency graph declared by Fabric), **Lineage** and others.
* **Export** (**Export** button) to CSV or JSON on the governance audit screens, always with the complete filtered result, not just the visible page.

The privacy and compliance screens are **decision support, not legal advice**: see the overview in [Privacy and compliance](/en/power-monitor/governanca/conformidade/privacidade-e-conformidade.md).

Each screen page has a **Features** section that describes, one by one, what each card, filter, column, menu and modal on that screen is, what it is for and how to use it.

### On-demand governance audits

The [Deployment Pipelines](/en/power-monitor/governanca/operacao/pipelines-de-implantacao.md), [Labels and Certification](/en/power-monitor/governanca/conformidade/rotulos-e-certificacao.md) and [Departed Owners](/en/power-monitor/governanca/conformidade/responsaveis-desligados.md) screens follow their own format: **KPI cards** that summarize the findings (and do not change with the filters), simple **search and filters**, the list of findings and the **Export** button. They are queried when you open the screen (fully or partially live against the Microsoft APIs) and display clear warnings when some configuration is missing, such as the Service Principal or an additional Microsoft Graph permission. [Deleted Artifacts](/en/power-monitor/governanca/operacao/artefatos-excluidos.md) and [Domains](/en/power-monitor/governanca/tenant/dominios.md) are also read-only screens, fed by Power Monitor scans. [Tenant Settings](/en/power-monitor/governanca/tenant/configuracoes-do-tenant.md), [Power BI Licenses](/en/power-monitor/governanca/tenant/licencas-power-bi.md) and [Azure Quotas](/en/power-monitor/governanca/infraestrutura/azure-quotas.md) are fed by their own daily collections and show, at the top of the screen, the **Collection** line with the status of the last run; the run history and the **Run now** and **Pause** buttons are on the collection screens of [Mapping](/en/power-monitor/mapeamento.md) (Administrators only).

## How to use

The steps below apply to most Governance screens. The details of each screen (columns, tabs, specific actions) are on each screen's page.

### How to open a Governance screen

1. In the side menu, click **Governance**.
2. Click the desired screen, for example *Governance › Workspaces*. For grouped screens, open the group first (for example, *Governance › Compliance › Public Links*).

If a screen does not appear in your menu, it may have been blocked for your user by an administrator (see [Permissions and visibility](#permissions-and-visibility)).

### How to filter and sort an inventory table

{% stepper %}
{% step %}

#### Use the cards by type

On screens that have artifact type cards at the top, click a card to restrict the table to that type.
{% endstep %}

{% step %}

#### Filter by column

Type the term in the filter box below the column title (for example, **Name**) or choose options from the column's selection list. The table is filtered automatically.
{% endstep %}

{% step %}

#### Sort

Click the title of a sortable column. The first click sorts in descending order; click again to reverse it.
{% endstep %}
{% endstepper %}

Pagination is in the table footer.

### How to open the details of an item

1. Click the table row, or the row's **⋮** button › **Open details**. Right-clicking the row opens the same menu.
2. To go directly to a tab of the modal, hover over **Open details** and choose the tab in the submenu.
3. Navigate through the modal tabs (for example, **Overview** and **Users & Permissions**) and close it to return to the list.

### How to perform administration actions

Write actions (editing governance metadata, turning on monitoring, pausing capacities, granting permissions to the Service Principal, etc.) are at the top of the screen, in the row's **⋮** menu or inside the details modal.

{% hint style="info" %}
Requires the **Administrator** profile. For other profiles, these controls are hidden or disabled with the tooltip "This action is restricted to organization administrators."
{% endhint %}

See the **Features** section of each screen's page for the step-by-step of each action, for example [Workspaces](/en/power-monitor/governanca/workspaces.md#features) and [Capacities](/en/power-monitor/governanca/infraestrutura/capacidades.md#features).

## How the screens relate to each other

The screens describe the same tenant from different angles, and navigation between them usually uses the workspace as the central axis.

### Surveying a specific workspace

{% stepper %}
{% step %}

#### Workspaces

Locate the workspace and check its state, associated capacity and criticality.
{% endstep %}

{% step %}

#### Reports and Semantic Models

See which reports are published in it and which models feed them, with their connection modes.
{% endstep %}

{% step %}

#### Storage, Data Engineering and Real Time

See which data artifacts, pipelines and real-time items support this workspace.
{% endstep %}

{% step %}

#### Connections and Schedules

Identify the data sources used and when refreshes and jobs are scheduled.
{% endstep %}
{% endstepper %}

### Auditing owners and access

{% stepper %}
{% step %}

#### Identify the owners

On inventory screens, use the **Created by** and **Modified by** filters. To find artifacts whose owner or responsible user has left the company, use [Departed Owners](/en/power-monitor/governanca/conformidade/responsaveis-desligados.md) (Administrators only).
{% endstep %}

{% step %}

#### Check who has access

Open the artifact's details modal on the **Users & Permissions** tab. For gateways and connections, use the **Permissions** tab. For a tenant-wide view, use the Audit screens: [Service Principals](/en/power-monitor/auditoria/service-principals.md), [Row-Level Security](/en/power-monitor/auditoria/seguranca-em-nivel-de-linha.md) and [Direct Sharing](/en/power-monitor/auditoria/compartilhamento-direto.md).
{% endstep %}

{% step %}

#### Check external exposure

In [Public Links](/en/power-monitor/governanca/conformidade/links-publicos.md), see the reports published to the web; in [Organization-wide Links](/en/power-monitor/governanca/conformidade/links-para-toda-a-organizacao.md), the links open to anyone in the company; and in [Labels and Certification](/en/power-monitor/governanca/conformidade/rotulos-e-certificacao.md), whether any content labeled as confidential is exposed.
{% endstep %}
{% endstepper %}

### Surveying the tenant's infrastructure

{% stepper %}
{% step %}

#### Capacities

See how many capacities exist, their state, SKU, region, cost over the last 30 days and pause and SKU change schedules.
{% endstep %}

{% step %}

#### Gateways

See the registered gateways and which ones are outdated or out of support.
{% endstep %}

{% step %}

#### Connections

See the connections of each gateway, the sources without privacy or with a password and who uses them.
{% endstep %}

{% step %}

#### Schedules

Use the heat map to identify times when refreshes and jobs are concentrated on the capacities.
{% endstep %}
{% endstepper %}

## Related pages

* [Monitoring module](/en/power-monitor/monitoramento.md): real-time consumption and health of the same artifacts
* [Performance module](/en/power-monitor/performance.md): execution time, performance assessment, model cleanup and Lakehouse and Warehouse
* [Data Quality module](/en/power-monitor/qualidade-de-dados.md): lineage, data dictionary, scores and X-ray
* [Mapping module](/en/power-monitor/mapeamento.md): scans that feed the inventory
* [Privacy and compliance](/en/power-monitor/governanca/conformidade/privacidade-e-conformidade.md): overview of the privacy screens (LGPD and GDPR)
* [Governance Dashboard](/en/power-monitor/dashboards/dashboard-de-governanca.md)
* [Users](/en/power-monitor/usuarios.md): profiles, workspace scope and page blocking


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation by asking a question.

Perform an HTTP GET request on the following URL with the `ask` and `goal` query parameters:

```
GET https://docs.powermonitor.com.br/en/power-monitor/governanca.md?ask=<question>&goal=<user_goal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is what the user is ultimately trying to achieve, the reason they need the answer. Sharing it helps GitBook give you a better, more relevant answer. A goal is most helpful when it describes the outcome the user wants rather than restating the question. For example, with `ask=how do I create an API token`, a goal like `automate deployments from our CI pipeline` lets GitBook tailor the answer to that use case.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
