Remediation
From Google Cloud Consoleβ
- Go to
BigQueryby visiting: https://console.cloud.google.com/bigquery. - Select the dataset from
Resources. - Click
SHARINGnear the right side of the window and selectPermissions. - Review each attached role.
- Click the delete icon for each member
allUsersorallAuthenticatedUsers. On the popup, clickRemove.
From Google Cloud CLIβ
List the name of all datasets.
bq ls
Retrieve the dataset details:
bq show \
--format=prettyjson {{project-id}}:{{dataset-name}} > {{path-to-file}}
In the access section of the JSON file, update the dataset information to remove all roles containing allUsers or allAuthenticatedUsers.
Update the dataset:
bq update \
--source {{path-to-file}} {{project-id}}:{{dataset-name}}