gcp-workflows-workflow-source

Workflow source can embed credentials in request headers, arguments, URLs, or expressions.

gcpcritical service: gcp:workflows emits ContainsCredential

Where it sits

locationworkflows.projects.locations.workflows.get.sourceContents
location kindcode_artifact
data kindssource_code_secret credential password api_key private_key connection_string
emits edgeContainsCredential
serviceWorkflows (gcp:workflows)

Collection recipe

access moderead_api
operationworkflows.projects.locations.workflows.get
response pathsourceContents
encodingstring
params{"name": "\u003cresource-name\u003e"}

Required permissions

workflows.workflows.get

References

move · open · esc close