gcp-cloudbuild-build-step-environment

Build-step environment entries persist literal name/value strings in the build record.

gcpcritical service: gcp:cloudbuild emits ContainsCredential

Where it sits

locationcloudbuild.projects.builds.get.steps[].env[]
location kindenvironment_variable
data kindscredential password api_key access_key secret_key oauth_token connection_string
emits edgeContainsCredential
serviceCloud Build (gcp:cloudbuild)

Collection recipe

access moderead_api
operationcloudbuild.projects.builds.get
response pathsteps[].env[]
encodinglist
params{"name": "\u003cresource-name\u003e"}

Required permissions

cloudbuild.builds.get

References

move · open · esc close