gcp-artifactregistry-artifact-file-bytes

Downloaded packages, archives, and container layers may contain hard-coded secrets or sensitive source artifacts.

gcpcritical service: gcp:artifactregistry emits CanReadData

Where it sits

locationartifactregistry.projects.locations.repositories.files.download.HTTP response body
location kindcode_artifact
data kindssource_code_secret credential private_key customer_data
emits edgeCanReadData
serviceArtifact Registry (gcp:artifactregistry)

Collection recipe

access moderead_api
operationartifactregistry.projects.locations.repositories.files.download
response pathHTTP response body
encodingbinary
params{"name": "projects/\u003cproject\u003e/locations/\u003clocation\u003e/repositories/\u003crepository\u003e/files/\u003cfile\u003e"}

Required permissions

artifactregistry.repositories.downloadArtifacts

References

move · open · esc close