gcp-firestore-document-name-identifiers

Document paths often encode customer or tenant identifiers.

gcpmedium service: gcp:firestore emits ContainsSecret

Where it sits

locationfirestore.projects.databases.documents.get.name
location kindmetadata
data kindspii sensitive_data
emits edgeContainsSecret
serviceFirestore / Datastore (gcp:firestore)

Collection recipe

access moderead_api
operationfirestore.projects.databases.documents.get
response pathname
encodingstring
params{"name": "\u003cresource-name\u003e"}

Required permissions

datastore.entities.get

References

move · open · esc close