gcp-vertexai-workbench-instance-owner-access-token-output

The Workbench VM-only helper returns a short-lived Google API bearer token for the instance owner; the official method declares no separate IAM permission and says not to invoke it directly.

gcpcritical service: gcp:vertexai emits ExposesCredential

Where it sits

locationnotebooks.projects.locations.instances.generateAccessToken.access_token
location kindoutput_value
data kindsoauth_token bearer_token credential
emits edgeExposesCredential
serviceVertex AI / Workbench (gcp:vertexai)

Collection recipe

access modecreation_response_only
operationnotebooks.projects.locations.instances.generateAccessToken
response pathaccess_token
encodingstring
params{"name": "\u003cresource-name\u003e"}

References

move · open · esc close