Skip to content

Commit

Permalink
GCP IAM Updates Detected
Browse files Browse the repository at this point in the history
  • Loading branch information
jdyke committed Dec 6, 2023
1 parent a254259 commit d6f4af2
Show file tree
Hide file tree
Showing 17 changed files with 26 additions and 9 deletions.
1 change: 1 addition & 0 deletions roles/binaryauthorization.serviceAgent
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
"description": "Can read Notes and Occurrences from the Container Analysis Service to find and verify signatures.",
"etag": "AA==",
"includedPermissions": [
"artifactregistry.dockerimages.get",
"artifactregistry.repositories.downloadArtifacts",
"binaryauthorization.attestors.get",
"binaryauthorization.attestors.list",
Expand Down
2 changes: 1 addition & 1 deletion roles/blockchainnodeengine.viewer
Original file line number Diff line number Diff line change
Expand Up @@ -12,6 +12,6 @@
"resourcemanager.projects.list"
],
"name": "roles/blockchainnodeengine.viewer",
"stage": "BETA",
"stage": "GA",
"title": "Blockchain Node Engine Viewer"
}
3 changes: 3 additions & 0 deletions roles/commercebusinessenablement.admin
Original file line number Diff line number Diff line change
Expand Up @@ -8,6 +8,9 @@
"commercebusinessenablement.partnerAccounts.list",
"commercebusinessenablement.partnerInfo.get",
"commercebusinessenablement.resellerConfig.get",
"commercebusinessenablement.resellerConfig.update",
"commercebusinessenablement.resellerRestrictions.list",
"commercebusinessenablement.resellerRestrictions.update",
"resourcemanager.organizations.get",
"resourcemanager.projects.get",
"resourcemanager.projects.list"
Expand Down
1 change: 1 addition & 0 deletions roles/commercebusinessenablement.viewer
Original file line number Diff line number Diff line change
Expand Up @@ -7,6 +7,7 @@
"commercebusinessenablement.partnerAccounts.list",
"commercebusinessenablement.partnerInfo.get",
"commercebusinessenablement.resellerConfig.get",
"commercebusinessenablement.resellerRestrictions.list",
"resourcemanager.organizations.get",
"resourcemanager.projects.get",
"resourcemanager.projects.list"
Expand Down
4 changes: 3 additions & 1 deletion roles/datamigration.serviceAgent
Original file line number Diff line number Diff line change
Expand Up @@ -21,6 +21,7 @@
"cloudsql.instances.delete",
"cloudsql.instances.demoteMaster",
"cloudsql.instances.get",
"cloudsql.instances.import",
"cloudsql.instances.list",
"cloudsql.instances.migrate",
"cloudsql.instances.promoteReplica",
Expand Down Expand Up @@ -52,7 +53,8 @@
"compute.subnetworks.get",
"compute.subnetworks.list",
"compute.subnetworks.use",
"storage.objects.get"
"storage.objects.get",
"storage.objects.list"
],
"name": "roles/datamigration.serviceAgent",
"stage": "GA",
Expand Down
1 change: 1 addition & 0 deletions roles/dataplex.serviceAgent
Original file line number Diff line number Diff line change
Expand Up @@ -111,6 +111,7 @@
"datacatalog.catalogs.searchAll",
"datacatalog.categories.getIamPolicy",
"datacatalog.categories.setIamPolicy",
"datacatalog.entries.get",
"datacatalog.taxonomies.create",
"datacatalog.taxonomies.delete",
"datacatalog.taxonomies.get",
Expand Down
3 changes: 3 additions & 0 deletions roles/editor
Original file line number Diff line number Diff line change
Expand Up @@ -2017,6 +2017,7 @@
"commercebusinessenablement.refunds.start",
"commercebusinessenablement.refunds.update",
"commercebusinessenablement.resellerConfig.get",
"commercebusinessenablement.resellerConfig.update",
"commercebusinessenablement.resellerDiscountConfig.get",
"commercebusinessenablement.resellerDiscountOffers.cancel",
"commercebusinessenablement.resellerDiscountOffers.create",
Expand All @@ -2028,6 +2029,8 @@
"commercebusinessenablement.resellerPrivateOfferPlans.list",
"commercebusinessenablement.resellerPrivateOfferPlans.publish",
"commercebusinessenablement.resellerPrivateOfferPlans.update",
"commercebusinessenablement.resellerRestrictions.list",
"commercebusinessenablement.resellerRestrictions.update",
"commerceoffercatalog.agreements.get",
"commerceoffercatalog.agreements.list",
"commerceoffercatalog.documents.get",
Expand Down
2 changes: 1 addition & 1 deletion roles/fleetengine.deliveryAdmin
Original file line number Diff line number Diff line change
Expand Up @@ -22,6 +22,6 @@
"serviceusage.services.use"
],
"name": "roles/fleetengine.deliveryAdmin",
"stage": "ALPHA",
"stage": "GA",
"title": "Fleet Engine Delivery Admin"
}
2 changes: 1 addition & 1 deletion roles/fleetengine.ondemandAdmin
Original file line number Diff line number Diff line change
Expand Up @@ -21,6 +21,6 @@
"serviceusage.services.use"
],
"name": "roles/fleetengine.ondemandAdmin",
"stage": "ALPHA",
"stage": "GA",
"title": "Fleet Engine On-Demand Admin"
}
3 changes: 2 additions & 1 deletion roles/gkemulticloud.controlPlaneMachineServiceAgent
Original file line number Diff line number Diff line change
Expand Up @@ -4,7 +4,8 @@
"includedPermissions": [
"artifactregistry.dockerimages.get",
"artifactregistry.repositories.downloadArtifacts",
"artifactregistry.repositories.get"
"artifactregistry.repositories.get",
"serviceusage.services.use"
],
"name": "roles/gkemulticloud.controlPlaneMachineServiceAgent",
"stage": "GA",
Expand Down
1 change: 1 addition & 0 deletions roles/iam.securityReviewer
Original file line number Diff line number Diff line change
Expand Up @@ -438,6 +438,7 @@
"commercebusinessenablement.refunds.list",
"commercebusinessenablement.resellerDiscountOffers.list",
"commercebusinessenablement.resellerPrivateOfferPlans.list",
"commercebusinessenablement.resellerRestrictions.list",
"commerceoffercatalog.agreements.list",
"commerceoffercatalog.documents.list",
"commerceorggovernance.collections.list",
Expand Down
2 changes: 1 addition & 1 deletion roles/kubernetesmetadata.publisher
Original file line number Diff line number Diff line change
Expand Up @@ -7,6 +7,6 @@
"kubernetesmetadata.metadata.snapshot"
],
"name": "roles/kubernetesmetadata.publisher",
"stage": "ALPHA",
"stage": "BETA",
"title": "Metadata Publisher"
}
2 changes: 1 addition & 1 deletion roles/networkconnectivity.regionalEndpointViewer
Original file line number Diff line number Diff line change
Expand Up @@ -8,6 +8,6 @@
"resourcemanager.projects.list"
],
"name": "roles/networkconnectivity.regionalEndpointViewer",
"stage": "ALPHA",
"stage": "BETA",
"title": "Regional Endpoint Viewer"
}
3 changes: 3 additions & 0 deletions roles/owner
Original file line number Diff line number Diff line change
Expand Up @@ -2649,6 +2649,7 @@
"commercebusinessenablement.refunds.start",
"commercebusinessenablement.refunds.update",
"commercebusinessenablement.resellerConfig.get",
"commercebusinessenablement.resellerConfig.update",
"commercebusinessenablement.resellerDiscountConfig.get",
"commercebusinessenablement.resellerDiscountOffers.cancel",
"commercebusinessenablement.resellerDiscountOffers.create",
Expand All @@ -2660,6 +2661,8 @@
"commercebusinessenablement.resellerPrivateOfferPlans.list",
"commercebusinessenablement.resellerPrivateOfferPlans.publish",
"commercebusinessenablement.resellerPrivateOfferPlans.update",
"commercebusinessenablement.resellerRestrictions.list",
"commercebusinessenablement.resellerRestrictions.update",
"commerceoffercatalog.agreements.get",
"commerceoffercatalog.agreements.list",
"commerceoffercatalog.documents.get",
Expand Down
1 change: 1 addition & 0 deletions roles/viewer
Original file line number Diff line number Diff line change
Expand Up @@ -1054,6 +1054,7 @@
"commercebusinessenablement.resellerDiscountOffers.list",
"commercebusinessenablement.resellerPrivateOfferPlans.get",
"commercebusinessenablement.resellerPrivateOfferPlans.list",
"commercebusinessenablement.resellerRestrictions.list",
"commerceoffercatalog.agreements.get",
"commerceoffercatalog.agreements.list",
"commerceoffercatalog.documents.get",
Expand Down
2 changes: 1 addition & 1 deletion roles/workloadmanager.deploymentAdmin
Original file line number Diff line number Diff line change
Expand Up @@ -32,6 +32,6 @@
"workloadmanager.operations.list"
],
"name": "roles/workloadmanager.deploymentAdmin",
"stage": "ALPHA",
"stage": "BETA",
"title": "Workload Manager Deployment Admin"
}
2 changes: 1 addition & 1 deletion roles/workloadmanager.deploymentViewer
Original file line number Diff line number Diff line change
Expand Up @@ -10,6 +10,6 @@
"workloadmanager.deployments.list"
],
"name": "roles/workloadmanager.deploymentViewer",
"stage": "ALPHA",
"stage": "BETA",
"title": "Workload Manager Deployment Viewer"
}

0 comments on commit d6f4af2

Please sign in to comment.