Cloud Infrastructure

GCP Service Account Permission Reference

Search GCP IAM roles and permissions to understand predefined vs custom roles, Workload Identity Federation, service account impersonation, and resource hierarchy inheritance.

No data is transmitted โ€” everything runs locally

GCP Service Account Permission Reference

The GCP Service Account Permission Reference covers predefined and custom IAM roles, Workload Identity Federation, service account impersonation, and resource hierarchy inheritance.

โ€ข Look up the minimal GCP role needed for a CI/CD service account

โ€ข Understand Workload Identity Federation before replacing service account JSON keys

โ€ข Find the correct permission for service account impersonation in GKE

โ€ข Check deny policy precedence when debugging unexpected GCP access denials

Cloud NAT Bandwidth Cost Calculator โ€” Calculate NAT Gateway vs NAT instance cost from daily outbound traffic volume.
Open Cloud NAT Bandwidth Cost Calculator โ†’
What does this tool tell you?
The GCP Service Account Permission Reference covers predefined and custom IAM roles, Workload Identity Federation, service account impersonation, and resource hierarchy inheritance.
What affects the result most?
GCP IAM roles vs permissions: roles/storage.objectViewer vs storage.objects.get โ€” the role bundles permissions. Predefined vs custom roles: predefined roles updated by Google, custom roles frozen at creation. Service account impersonation: iam.serviceAccounts.actAs permission โ€” frequently misconfigured in CI/CD.
How should I use the result?
Use this tool to orient quickly to the concepts, field names, or values you are about to look up in a full specification or vendor documentation. It summarizes the common cases; the authoritative source remains whichever standard or vendor doc defines the values themselves.
Cloud credential management. 1Password Teams for cloud engineers managing IAM keys, service account credentials, and API tokens.
View cloud credential management โ†’
External site ยท Independent provider ยท We may receive a commission ยท Not a recommendation