gcp-psc-service-attachment-consumer-identifiers

Private Service Connect consumer allow/deny lists and domain names expose tenant and project identifiers.

gcpmedium service: gcp:psc emits ContainsSecret

Where it sits

locationcompute.serviceAttachments.get.{consumerAcceptLists[],consumerRejectLists[],domainNames[]}
location kindconfig_field
data kindssensitive_data pii
emits edgeContainsSecret
servicePrivate Service Connect (gcp:psc)

Collection recipe

access moderead_api
operationcompute.serviceAttachments.get
response path{consumerAcceptLists[],consumerRejectLists[],domainNames[]}
encodingjson
params{"project": "\u003cproject\u003e", "region": "\u003cregion\u003e", "serviceAttachment": "\u003cattachment\u003e"}

Required permissions

compute.serviceAttachments.get

References

move · open · esc close