Skip to main content

πŸ”Œ Google IAM Policy Binding - object.extracts.yaml

  • Contextual name: πŸ”Œ object.extracts.yaml
  • ID: /types/CA10__CaGoogleIamPolicyBinding__c/object.extracts.yaml
  • Located in: πŸ“• Google IAM Policy Binding

Used In​

LogicPolicyFlags
🧠 prod.logic.yaml πŸŸ’πŸ“ Google IAM Roles related to KMS are not assigned to separate users 🟒🟒 x3
🧠 prod.logic.yaml πŸŸ’πŸ“ Google IAM Service Account has admin privileges 🟒🟒 x3
🧠 prod.logic.yaml πŸŸ’πŸ“ Google IAM Users are assigned the Service Account User or Service Account Token Creator roles at Project level 🟒🟒 x3
🧠 prod.logic.yaml πŸŸ’πŸ“ Google Storage Bucket is anonymously or publicly accessible 🟒🟒 x3
🧠 prod.logic.yaml πŸŸ’πŸ“ Google User has both Service Account Admin and Service Account User roles assigned 🟒🟒 x3

Content​

Open File

---
extracts:
- name: "Name"
value:
FIELD:
path: "Name"
undeterminedIf:
isEmpty: "Name should not be empty"
- name: "CA10__membersAllUsers__c"
value:
FIELD:
path: "CA10__membersAllUsers__c"
undeterminedIf:
isEmpty: "Field should not be empty"
- name: "CA10__membersAllAuthenticatedUsers__c"
value:
FIELD:
path: "CA10__membersAllAuthenticatedUsers__c"
undeterminedIf:
isEmpty: "Field should not be empty"