diff --git a/policy/cloudresourcemanager/common_iam.rego b/policy/cloudresourcemanager/common_iam.rego new file mode 100644 index 0000000..3128d09 --- /dev/null +++ b/policy/cloudresourcemanager/common_iam.rego @@ -0,0 +1,10 @@ +package gcp.cloudresourcemanager.projects.iam + +policies [policy_name] { + policy := data.gcp.cloudresourcemanager.projects.iam.policy[policy_name] +} + +violations [policy_name] { + policy := data.gcp.cloudresourcemanager.projects.iam.policy[policy_name] + policy.valid != true +}