π Google IAM Policy Binding - object.extracts.yaml
- Contextual name: π object.extracts.yaml
- ID:
/types/CA10__CaGoogleIamPolicyBinding__c/object.extracts.yaml
- Located in: π Google IAM Policy Binding
Used Inβ
Logic | Policy | Flags |
---|---|---|
π§ prod.logic.yaml π’ | π Google IAM Roles related to KMS are not assigned to separate users π’ | π’ x3 |
π§ prod.logic.yaml π’ | π Google IAM Service Account has admin privileges π’ | π’ x3 |
π§ prod.logic.yaml π’ | π Google IAM Users are assigned the Service Account User or Service Account Token Creator roles at Project level π’ | π’ x3 |
π§ prod.logic.yaml π’ | π Google Storage Bucket is anonymously or publicly accessible π’ | π’ x3 |
π§ prod.logic.yaml π’ | π Google User has both Service Account Admin and Service Account User roles assigned π’ | π’ x3 |
Contentβ
---
extracts:
- name: "Name"
value:
FIELD:
path: "Name"
undeterminedIf:
isEmpty: "Name should not be empty"
- name: "CA10__membersAllUsers__c"
value:
FIELD:
path: "CA10__membersAllUsers__c"
undeterminedIf:
isEmpty: "Field should not be empty"
- name: "CA10__membersAllAuthenticatedUsers__c"
value:
FIELD:
path: "CA10__membersAllAuthenticatedUsers__c"
undeterminedIf:
isEmpty: "Field should not be empty"