gcp-logging-log-entry-payloads

Application, platform, and audit log payloads can contain request bodies, headers, tokens, stack traces, or customer records.

gcpcritical service: gcp:logging emits CanReadData

Where it sits

locationlogging.entries.list.entries[].{textPayload,jsonPayload,protoPayload}
location kindlog_field
data kindscredential password api_key oauth_token customer_data pii sensitive_data
emits edgeCanReadData
serviceCloud Logging / Audit Logs (gcp:logging)

Collection recipe

access moderead_api
operationlogging.entries.list
response pathentries[].{textPayload,jsonPayload,protoPayload}
encodingjson
params{"filter": "\u003cfilter\u003e", "resourceNames": ["projects/\u003cproject\u003e"]}

Required permissions

logging.logEntries.list

References

move · open · esc close