gcp-datastream-forward-ssh-credentials-input

Forward-SSH connectivity configuration can carry either a password or a private key as plaintext input.

gcpcritical service: gcp:datastream emits ContainsCredential

Where it sits

locationdatastream.projects.locations.connectionProfiles.create/datastream.projects.locations.connectionProfiles.patch.request.forwardSshConnectivity.{password,privateKey}
location kindsecret_value
data kindspassword private_key credential
emits edgeContainsCredential
serviceDatastream / Data Fusion (gcp:datastream)

Collection recipe

access modewrite_only_input
operationdatastream.projects.locations.connectionProfiles.create/datastream.projects.locations.connectionProfiles.patch
response pathrequest.forwardSshConnectivity.{password,privateKey}
encodingjson
params{"name": "\u003cresource-name\u003e"}

Required permissions

datastream.connectionProfiles.create
datastream.connectionProfiles.update

References

move · open · esc close