Control: Prevent public users from having access to resources via IAM
Usage
Run the control in your terminal:
powerpipe control run gcp_compliance.control.denylist_public_users
Snapshot and share results via Turbot Pipes:
powerpipe loginpowerpipe control run gcp_compliance.control.denylist_public_users --share
SQL
This control uses a named query:
iam_user_denylist_public