Microsoft mitigates Power Platform information disclosure vulnerability
msrc.microsoft.com
msrc.microsoft.com
This feature allows you to define an api and run it from a Microsoft server somewhere to validate it works.
What security assumptions are applied to the environment from where these run? Are those assumptions universal?