🚀 Launch Week 10, September 22nd - 26th, 2025 🚀
Mods
GCP

Policy: GCP > IAM > Project User > Role Bindings > Approved

Configure Project User Role Bindings checking. This policy defines whether to verify the project user role bindings are approved, as well as the subsequent action to take on unapproved items.

If set to Enforce: Delete unapproved, any unapproved role bindings will be removed from the user while preserving the user account and their approved roles.

Targets

This policy targets the following resource types:

Primary Policy

This policy is used with the following primary policy:

Controls

Setting this policy configures this control:

Policy Specification

Schema Type
string
Default
Skip
Valid Values [YAML]
  • Skip
    
  • Check: Approved
    
  • Enforce: Delete unapproved
    
Examples [YAML]
  • Skip
    

Category

In Your Workspace

Developers