aws-tgw-resource-tags-value-config

Transit Gateway, attachment, route-table, and policy-table tag values are plaintext metadata.

awsmedium service: aws:tgw emits ContainsSecret

Where it sits

locationDescribeTags.Tags[].Value
location kindtag
data kindscredential sensitive_data
emits edgeContainsSecret
serviceTransit Gateway (aws:tgw)

Collection recipe

access moderead_api
operationDescribeTags
response pathTags[].Value
encodingstring
params{"Filters": [{"Name": "resource-id", "Values": ["\u003ctgw-resource-id\u003e"]}]}

Required permissions

ec2:DescribeTags

References

move · open · esc close