gcp-vertexai-notebook-filesystem

Notebook cells, saved outputs, terminals, and local files can retain credentials and sensitive datasets.

gcpcritical service: gcp:vertexai emits CanReadData

Where it sits

locationJupyter contents API / mounted filesystem read.notebook cells, outputs, and files
location kindnotebook_content
data kindssource_code_secret credential private_key customer_data pii
emits edgeCanReadData
serviceVertex AI / Workbench (gcp:vertexai)

Collection recipe

access modedata_plane
operationJupyter contents API / mounted filesystem read
response pathnotebook cells, outputs, and files
encodingjson
params{"name": "\u003cresource-name\u003e"}

Required permissions

notebooks.instances.get

References

move · open · esc close