Path Lines of Code policy-library/lib/constraints.rego 31 policy-library/lib/util.rego 40 policy-library/policies/constraints/appengine_versions.yaml 13 policy-library/policies/constraints/bigquery_world_readable.yaml 13 policy-library/policies/constraints/dnssec_prevent_rsasha1_ksk.yaml 12 policy-library/policies/constraints/dnssec_prevent_rsasha1_zsk.yaml 12 policy-library/policies/constraints/gke_allow_only_private_cluster.yaml 11 policy-library/policies/constraints/gke_allowed_node_sa_scope.yaml 14 policy-library/policies/constraints/gke_container_optimized_os.yaml 16 policy-library/policies/constraints/gke_dashboard_disable.yaml 16 policy-library/policies/constraints/gke_disable_default_service_account.yaml 16 policy-library/policies/constraints/gke_disable_legacy_endpoints.yaml 16 policy-library/policies/constraints/gke_enable_alias_ip_ranges.yaml 15 policy-library/policies/constraints/gke_legacy_abac.yaml 16 policy-library/policies/constraints/gke_master_authorized_networks_enabled.yaml 15 policy-library/policies/constraints/gke_node_pool_auto_repair.yaml 12 policy-library/policies/constraints/gke_node_pool_auto_upgrade.yaml 17 policy-library/policies/constraints/gke_restrict_client_auth_methods.yaml 13 policy-library/policies/constraints/gke_restrict_pod_traffic.yaml 14 policy-library/policies/constraints/iam_deny_public.yaml 20 policy-library/policies/constraints/network_enable_flow_logs.yaml 16 policy-library/policies/constraints/network_enable_private_google_access.yaml 15 policy-library/policies/constraints/restrict_fw_rules_rdp_world_open.yaml 22 policy-library/policies/constraints/restrict_fw_rules_ssh_world_open.yaml 22 policy-library/policies/constraints/restrict_fw_rules_world_open.yaml 20 policy-library/policies/constraints/serviceusage_allow_basic_apis.yaml 75 policy-library/policies/constraints/sql_public_ip.yaml 15 policy-library/policies/constraints/sql_ssl.yaml 11 policy-library/policies/constraints/storage_bucket_policy_only.yaml 15 policy-library/policies/constraints/storage_denylist_public.yaml 17 policy-library/policies/templates/gcp_allowed_resource_types.yaml 58 policy-library/policies/templates/gcp_always_violates_v1.yaml 24 policy-library/policies/templates/gcp_app_service_versions.yaml 38 policy-library/policies/templates/gcp_appengine_location_v1.yaml 45 policy-library/policies/templates/gcp_bigquery_cmek_encryption_v1.yaml 29 policy-library/policies/templates/gcp_bigquery_dataset_world_readable_v1.yaml 31 policy-library/policies/templates/gcp_bigquery_table_retention_v1.yaml 95 policy-library/policies/templates/gcp_bq_dataset_location_v1.yaml 67 policy-library/policies/templates/gcp_cmek_rotation_v1.yaml 36 policy-library/policies/templates/gcp_cmek_settings_v1.yaml 69 policy-library/policies/templates/gcp_compute_allowed_networks.yaml 45 policy-library/policies/templates/gcp_compute_disk_resource_policies_v1.yaml 63 policy-library/policies/templates/gcp_compute_external_ip_address.yaml 72 policy-library/policies/templates/gcp_compute_ip_forward.yaml 76 policy-library/policies/templates/gcp_compute_zone_v1.yaml 63 policy-library/policies/templates/gcp_dataproc_location_v1.yaml 45 policy-library/policies/templates/gcp_dnssec_prevent_rsasha1_v1.yaml 43 policy-library/policies/templates/gcp_dnssec_v1.yaml 28 policy-library/policies/templates/gcp_enforce_labels_v1.yaml 122 policy-library/policies/templates/gcp_enforce_naming_v1.yaml 64 policy-library/policies/templates/gcp_gke_allowed_node_sa_v1.yaml 55 policy-library/policies/templates/gcp_gke_cluster_location.yaml 67 policy-library/policies/templates/gcp_gke_cluster_version_v1.yaml 89 policy-library/policies/templates/gcp_gke_container_optimized_os.yaml 48 policy-library/policies/templates/gcp_gke_dashboard_v1.yaml 35 policy-library/policies/templates/gcp_gke_disable_default_service_account_v1.yaml 36 policy-library/policies/templates/gcp_gke_disable_legacy_endpoints_v1.yaml 37 policy-library/policies/templates/gcp_gke_enable_alias_ip_ranges.yaml 40 policy-library/policies/templates/gcp_gke_enable_private_endpoint.yaml 35 policy-library/policies/templates/gcp_gke_enable_shielded_nodes_v1.yaml 49 policy-library/policies/templates/gcp_gke_enable_stackdriver_kubernetes_engine_monitoring_v1.yaml 38 policy-library/policies/templates/gcp_gke_enable_stackdriver_logging_v1.yaml 35 policy-library/policies/templates/gcp_gke_enable_stackdriver_monitoring_v1.yaml 33 policy-library/policies/templates/gcp_gke_enable_workload_identity_v1.yaml 39 policy-library/policies/templates/gcp_gke_legacy_abac_v1.yaml 34 policy-library/policies/templates/gcp_gke_master_authorized_networks_enabled_v1.yaml 58 policy-library/policies/templates/gcp_gke_node_auto_repair_v1.yaml 36 policy-library/policies/templates/gcp_gke_node_auto_upgrade_v1.yaml 36 policy-library/policies/templates/gcp_gke_private_cluster_v1.yaml 30 policy-library/policies/templates/gcp_gke_restrict_client_auth_methods_v1.yaml 51 policy-library/policies/templates/gcp_gke_restrict_pod_traffic_v1.yaml 50 policy-library/policies/templates/gcp_glb_external_ip_access_constraint_v1.yaml 49 policy-library/policies/templates/gcp_iam_allow_ban_roles_v1.yaml 58 policy-library/policies/templates/gcp_iam_allowed_bindings.yaml 92 policy-library/policies/templates/gcp_iam_allowed_policy_member_domains.yaml 57 policy-library/policies/templates/gcp_iam_audit_log.yaml 76 policy-library/policies/templates/gcp_iam_custom_role_permissions_v1.yaml 79 policy-library/policies/templates/gcp_iam_required_bindings_v1.yaml 94 policy-library/policies/templates/gcp_iam_restrict_service_account_creation_v1.yaml 30 policy-library/policies/templates/gcp_iam_restrict_service_account_key_age_v1.yaml 45 policy-library/policies/templates/gcp_iam_restrict_service_account_key_type_v1.yaml 30 policy-library/policies/templates/gcp_lb_forwarding_rules.yaml 102 policy-library/policies/templates/gcp_network_enable_firewall_logs_v1.yaml 30 policy-library/policies/templates/gcp_network_enable_flow_logs_v1.yaml 36 policy-library/policies/templates/gcp_network_enable_private_google_access_v1.yaml 29 policy-library/policies/templates/gcp_network_restrict_default_v1.yaml 28 policy-library/policies/templates/gcp_network_routing_v1.yaml 33 policy-library/policies/templates/gcp_resource_value_pattern_v1.yaml 147 policy-library/policies/templates/gcp_restricted_firewall_rules_v1.yaml 434 policy-library/policies/templates/gcp_serviceusage_allowed_services_v1.yaml 56 policy-library/policies/templates/gcp_spanner_location_v1.yaml 46 policy-library/policies/templates/gcp_sql_allowed_authorized_networks_v1.yaml 71 policy-library/policies/templates/gcp_sql_backup_v1.yaml 35 policy-library/policies/templates/gcp_sql_instance_type_v1.yaml 58 policy-library/policies/templates/gcp_sql_location_v1.yaml 65 policy-library/policies/templates/gcp_sql_maintenance_window_v1.yaml 60 policy-library/policies/templates/gcp_sql_public_ip_v1.yaml 29 policy-library/policies/templates/gcp_sql_ssl_v1.yaml 30 policy-library/policies/templates/gcp_sql_world_readable_v1.yaml 31 policy-library/policies/templates/gcp_storage_bucket_policy_only_v1.yaml 40 policy-library/policies/templates/gcp_storage_bucket_retention_v1.yaml 152 policy-library/policies/templates/gcp_storage_bucket_world_readable_v1.yaml 49 policy-library/policies/templates/gcp_storage_cmek_encryption_v1.yaml 37 policy-library/policies/templates/gcp_storage_location_v1.yaml 65 policy-library/policies/templates/gcp_storage_logging_v1.yaml 37 policy-library/policies/templates/gcp_vpc_sc_allowed_regions.yaml 38 policy-library/policies/templates/gcp_vpc_sc_ensure_access_levels_v1.yaml 39 policy-library/policies/templates/gcp_vpc_sc_ensure_project_v1.yaml 38 policy-library/policies/templates/gcp_vpc_sc_ensure_services_v1.yaml 39 policy-library/policies/templates/gcp_vpc_sc_ip_range_v1.yaml 40 policy-library/policies/templates/gcp_vpc_sc_project_perimeter.yaml 60