gcp-bigquery-row-access-filter-expression

Row access policy predicates can contain sensitive literals and schema identifiers.

gcphigh service: gcp:bigquery emits ContainsSecret

Where it sits

locationbigquery.rowAccessPolicies.get.filterPredicate
location kindpolicy_document
data kindscredential api_key sensitive_data pii
emits edgeContainsSecret
serviceBigQuery (gcp:bigquery)

Collection recipe

access moderead_api
operationbigquery.rowAccessPolicies.get
response pathfilterPredicate
encodingstring
params{"name": "\u003cresource-name\u003e"}

Required permissions

bigquery.rowAccessPolicies.get

References

move · open · esc close