Data protection

Storage bucket policy grant authenticated users object read access

Risk Level

Informational (4)

Compliance Frameworks


Google Cloud Storage service allows you to store and retrieve data in a bucket. It was found that the {GcpStorageBucket} bucket is allowing Storage Legacy Bucket Object Reader permissions to all authenticated users. This could result with any authenticated user with a Google account reading object data from the bucket.
  • Recommended Mitigation

    It is recommended to limit the bucket object read access to authorized users only.