Why Nintex is requesting to have Read and Write permission to Azure Active Directory for the User Directory Lookup below:
User Directory Lookup leveraging on our Xtensions functionality for Azure Active Directory and Azure Active Directory Administration connector which requires Write permission.
For this functionality to work, we needed to use Azure Active Directory Administration connections because it provided access to Read the directory permissions.
The permissions were inherited because we are using this:
Connections created in the User Directory Lookup settings page will not be accessible to workflow designers, and thus any write operations using that connection will not be accessible to workflow designs.