gcp-dataproc-job-driver-output

Driver output can echo application arguments, configuration, and secrets.

gcpcritical service: gcp:dataproc emits ContainsSecret

Where it sits

locationdataproc.projects.regions.jobs.get.driverOutputResourceUri -> Cloud Storage object bytes
location kindlog_field
data kindscredential password api_key oauth_token private_key connection_string sensitive_data
emits edgeContainsSecret
serviceDataproc (gcp:dataproc)

Collection recipe

access modeindirect_destination
operationdataproc.projects.regions.jobs.get
response pathdriverOutputResourceUri -> Cloud Storage object bytes
encodingbinary
params{"name": "\u003cresource-name\u003e"}

Required permissions

dataproc.jobs.get
storage.objects.get

References

move · open · esc close