LOG-006: Reporting API Access

Platform
Google Workspace
Category
Logging, Alerting & Monitoring
Severity
Low
Zero Trust pillar
Visibility & Analytics (weight 1)
Golden fixtures
3
Branch coverage
Observed: fixtures prove the verdicts they exercise
Provenance
baseline

What it checks

Access to the Reports API should be reviewed to ensure only authorized service accounts and applications can retrieve audit and usage data

Recommended value

Reports API access restricted to authorized service accounts only

Remediation

Admin Console > Security > API controls > Domain-wide delegation > Review grants with Reports API scopes > Remove unauthorized access

Fixture-proven verdicts

Every verdict below is proven by a golden fixture in the module's gating test suite. This table derives from the last green run; it cannot be edited by hand.

Verdict scenarios for LOG-006
ScenarioExpected verdict
cleanPASS
known-badWARN
throttledNot Assessed

Framework mappings

NIST SP 800-53
AU-9, AC-3
CIS Benchmark
7.6
MITRE ATT&CK
T1530