{"_id":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1","_rev":"9-dc4fbc9b8d3b729d2b3ce530e7cabb31","name":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1","dist-tags":{"latest":"1.5.0","alpha":"1.5.1-alpha.2"},"versions":{"1.0.0":{"name":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1","description":"Policy pack implementing Payment Card Industry Data Security Standard version 3.2.1 Benchmark for Google Cloud Services","version":"1.0.0","author":{"name":"AutoCloud"},"license":"MPL-2.0","main":"dist/index.js","types":"dist/index.d.ts","repository":{"type":"git","url":"git+https://github.com/cloudgraphdev/cloudgraph-policy-packs.git","directory":"src/gcp/pci-dss-3.2.1"},"bugs":{"url":"https://github.com/cloudgraphdev/cloudgraph-policy-packs/issues"},"publishConfig":{"access":"public"},"directories":{"test":"tests"},"devDependencies":{"@autocloud/eslint-config":"^0.1.0","@cloudgraph/sdk":"^0.18.1","@types/jest":"^27.4.0","@types/node":"^15.12.4","@types/pino":"^6.3.11","@typescript-eslint/eslint-plugin":"^4.28.5","@typescript-eslint/parser":"^4.28.5","cpx":"^1.5.0","cuid":"^2.1.8","eslint":"^7.25.0","eslint-config-airbnb-base":"14.2.1","eslint-config-prettier":"^6.11.0","eslint-plugin-import":"^2.22.1","eslint-plugin-prettier":"^3.4.0","jest":"^27.0.6","prettier":"^2.4.1","shx":"^0.3.3","ts-jest":"^27.0.4","tslib":"^1","typescript":"^4.3.5"},"engines":{"node":">=16.0.0"},"homepage":"https://www.cloudgraph.dev/","keywords":["cloudgraph"],"prettier":{"semi":false,"singleQuote":true},"scripts":{"build":"yarn prepack","clean":"rm -rf dist","lint":"eslint","prepack":"rm -rf dist && tsc -b","publish":"yarn npm publish","test":"NODE_ENV=test jest"},"gitHead":"e854a377ae2b9844d652602132256f9679815754","_id":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1@1.0.0","_nodeVersion":"16.14.2","_npmVersion":"8.10.0","dist":{"integrity":"sha512-DGbo8FXMmkRt7yht1NlPuY5ZGdUqsrOQGWGb8fXG/wQGXBLc0TMngTihY8D0klc1iAVxLrUk/jWyCOaeUlACbQ==","shasum":"a6b12e3f0e1149035b106e70c1083afc28d7fc2e","tarball":"https://registry.npmjs.org/@cloudgraph/policy-pack-gcp-pci-dss-3.2.1/-/policy-pack-gcp-pci-dss-3.2.1-1.0.0.tgz","fileCount":6,"unpackedSize":4117,"signatures":[{"keyid":"SHA256:jl3bwswu80PjjokCgh0o2w5c2U4LhQAE57gj9cz1kzA","sig":"MEYCIQChswnzXBMQp6QGi6TE/xmx4ppM9sHuQEw0xVMRNGGFhgIhAJ4RNYSK7VxuXr/31Mv1LEFWKZuPWBWC98wOMmsVCq9K"}],"npm-signature":"-----BEGIN PGP SIGNATURE-----\r\nVersion: OpenPGP.js v4.10.10\r\nComment: https://openpgpjs.org\r\n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\r\nOPir5EJMJisQot2K8hPa9qKpdyfU9EFxpjg=\r\n=bsIi\r\n-----END PGP SIGNATURE-----\r\n"},"_npmUser":{"name":"ckoning","email":"chris@autocloud.dev"},"maintainers":[{"name":"ckoning","email":"chris@autocloud.dev"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages","tmp":"tmp/policy-pack-gcp-pci-dss-3.2.1_1.0.0_1652378616060_0.9767519408482923"},"_hasShrinkwrap":false},"1.1.0":{"name":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1","description":"Policy pack implementing Payment Card Industry Data Security Standard version 3.2.1 Benchmark for Google Cloud Services","version":"1.1.0","author":{"name":"AutoCloud"},"license":"MPL-2.0","main":"dist/index.js","types":"dist/index.d.ts","repository":{"type":"git","url":"git+https://github.com/cloudgraphdev/cloudgraph-policy-packs.git","directory":"src/gcp/pci-dss-3.2.1"},"bugs":{"url":"https://github.com/cloudgraphdev/cloudgraph-policy-packs/issues"},"publishConfig":{"access":"public"},"directories":{"test":"tests"},"devDependencies":{"@autocloud/eslint-config":"^0.1.0","@cloudgraph/sdk":"^0.18.1","@types/jest":"^27.4.0","@types/node":"^15.12.4","@types/pino":"^6.3.11","@typescript-eslint/eslint-plugin":"^4.28.5","@typescript-eslint/parser":"^4.28.5","cpx":"^1.5.0","cuid":"^2.1.8","eslint":"^7.25.0","eslint-config-airbnb-base":"14.2.1","eslint-config-prettier":"^6.11.0","eslint-plugin-import":"^2.22.1","eslint-plugin-prettier":"^3.4.0","jest":"^27.0.6","prettier":"^2.4.1","shx":"^0.3.3","ts-jest":"^27.0.4","tslib":"^1","typescript":"^4.3.5"},"engines":{"node":">=16.0.0"},"homepage":"https://www.cloudgraph.dev/","keywords":["cloudgraph"],"prettier":{"semi":false,"singleQuote":true},"scripts":{"build":"yarn prepack","clean":"rm -rf dist","lint":"eslint","prepack":"rm -rf dist && tsc -b","publish":"yarn npm publish","test":"NODE_ENV=test jest"},"gitHead":"dbbafcc4c50cbb4ea782be61e220f6c46052994b","_id":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1@1.1.0","_nodeVersion":"16.15.0","_npmVersion":"8.10.0","dist":{"integrity":"sha512-GvQfkLQILIo9lN1bY7l+WUg1VjMFfT6tpCjj0o6/rrNr5OSacIAjpYBEwdW1mHEFLK15w0iWRpuX9ePb/+7gkw==","shasum":"9a0c8f95f3355ddb5f8ae2f8d3760fb21538d8c5","tarball":"https://registry.npmjs.org/@cloudgraph/policy-pack-gcp-pci-dss-3.2.1/-/policy-pack-gcp-pci-dss-3.2.1-1.1.0.tgz","fileCount":21,"unpackedSize":107707,"signatures":[{"keyid":"SHA256:jl3bwswu80PjjokCgh0o2w5c2U4LhQAE57gj9cz1kzA","sig":"MEQCICXI8Dlg6gfz7FUSBjDTBNlgjarkr6y66m1lUNFE9888AiAZWG7wTRjHHi0xlGVvIuyAWAzSjuawg8cIytiGqVboZg=="}],"npm-signature":"-----BEGIN PGP SIGNATURE-----\r\nVersion: OpenPGP.js v4.10.10\r\nComment: https://openpgpjs.org\r\n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\r\n+FVhoslcM2NtT7j6NJdEwRDb3CPPKNwCl9E=\r\n=IiTH\r\n-----END PGP SIGNATURE-----\r\n"},"_npmUser":{"name":"ckoning","email":"chris@autocloud.dev"},"maintainers":[{"name":"ckoning","email":"chris@autocloud.dev"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages","tmp":"tmp/policy-pack-gcp-pci-dss-3.2.1_1.1.0_1653598143285_0.6208064954784698"},"_hasShrinkwrap":false},"1.2.0":{"name":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1","description":"Policy pack implementing Payment Card Industry Data Security Standard version 3.2.1 Benchmark for Google Cloud Services","version":"1.2.0","author":{"name":"AutoCloud"},"license":"MPL-2.0","main":"dist/index.js","types":"dist/index.d.ts","repository":{"type":"git","url":"git+https://github.com/cloudgraphdev/cloudgraph-policy-packs.git","directory":"src/gcp/pci-dss-3.2.1"},"bugs":{"url":"https://github.com/cloudgraphdev/cloudgraph-policy-packs/issues"},"publishConfig":{"access":"public"},"directories":{"test":"tests"},"devDependencies":{"@autocloud/eslint-config":"^0.1.0","@cloudgraph/sdk":"^0.18.1","@types/jest":"^27.4.0","@types/node":"^15.12.4","@types/pino":"^6.3.11","@typescript-eslint/eslint-plugin":"^4.28.5","@typescript-eslint/parser":"^4.28.5","cpx":"^1.5.0","cuid":"^2.1.8","eslint":"^7.25.0","eslint-config-airbnb-base":"14.2.1","eslint-config-prettier":"^6.11.0","eslint-plugin-import":"^2.22.1","eslint-plugin-prettier":"^3.4.0","jest":"^27.0.6","prettier":"^2.4.1","shx":"^0.3.3","ts-jest":"^27.0.4","tslib":"^1","typescript":"^4.3.5"},"engines":{"node":">=16.0.0"},"homepage":"https://www.cloudgraph.dev/","keywords":["cloudgraph"],"prettier":{"semi":false,"singleQuote":true},"scripts":{"build":"pnpm prepack","clean":"rm -rf dist","lint":"eslint","prepack":"rm -rf dist && tsc -b","test":"NODE_ENV=test jest"},"gitHead":"0a3278eb6efb547a18993b5a675e9788c399ecfb","_id":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1@1.2.0","_nodeVersion":"18.4.0","_npmVersion":"8.12.1","dist":{"integrity":"sha512-rL25kYO8fETtwQoASBAM2SMbUoB9Vof2mHtC8Iu94QXdTyHUglMYXECiFBX9UKICUPxqz9KBc4Xqc1NGhMJJOQ==","shasum":"7948331c17b74e434b9a8842e3ac481d4db5a034","tarball":"https://registry.npmjs.org/@cloudgraph/policy-pack-gcp-pci-dss-3.2.1/-/policy-pack-gcp-pci-dss-3.2.1-1.2.0.tgz","fileCount":5,"unpackedSize":25760,"signatures":[{"keyid":"SHA256:jl3bwswu80PjjokCgh0o2w5c2U4LhQAE57gj9cz1kzA","sig":"MEYCIQCYVE6SvSQkcmaYzt+/eLbBUBfI4pI3SEVvs5GLYFu69QIhAMjcZaIvJ1wm9NZc2/FCt/r26Z31Ta8McO6MAFwENPjT"}],"npm-signature":"-----BEGIN PGP SIGNATURE-----\r\nVersion: OpenPGP.js v4.10.10\r\nComment: https://openpgpjs.org\r\n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\r\ne4hhjmZgYiSlQE3VvaFV/yaTYkiwpYq+cyY=\r\n=wCkC\r\n-----END PGP SIGNATURE-----\r\n"},"_npmUser":{"name":"ckoning","email":"chris@autocloud.dev"},"maintainers":[{"name":"ckoning","email":"chris@autocloud.dev"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages","tmp":"tmp/policy-pack-gcp-pci-dss-3.2.1_1.2.0_1657048223034_0.09248321228136214"},"_hasShrinkwrap":false},"1.3.0":{"name":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1","description":"Policy pack implementing Payment Card Industry Data Security Standard version 3.2.1 Benchmark for Google Cloud Services","version":"1.3.0","author":{"name":"AutoCloud"},"license":"MPL-2.0","main":"dist/index.js","types":"dist/index.d.ts","repository":{"type":"git","url":"git+https://github.com/cloudgraphdev/cloudgraph-policy-packs.git","directory":"src/gcp/pci-dss-3.2.1"},"bugs":{"url":"https://github.com/cloudgraphdev/cloudgraph-policy-packs/issues"},"publishConfig":{"access":"public"},"directories":{"test":"tests"},"devDependencies":{"@autocloud/eslint-config":"^0.1.0","@cloudgraph/sdk":"^0.21.0","@types/jest":"^27.4.0","@types/node":"^15.12.4","@types/pino":"^6.3.11","@typescript-eslint/eslint-plugin":"^4.28.5","@typescript-eslint/parser":"^4.28.5","cpx":"^1.5.0","cuid":"^2.1.8","eslint":"^7.25.0","eslint-config-airbnb-base":"14.2.1","eslint-config-prettier":"^6.11.0","eslint-plugin-import":"^2.22.1","eslint-plugin-prettier":"^3.4.0","jest":"^27.0.6","prettier":"^2.4.1","shx":"^0.3.3","ts-jest":"^27.0.4","tslib":"^1","typescript":"^4.3.5"},"engines":{"node":">=16.0.0"},"homepage":"https://www.cloudgraph.dev/","keywords":["cloudgraph"],"prettier":{"semi":false,"singleQuote":true},"scripts":{"build":"pnpm prepack","clean":"rm -rf dist","lint":"eslint","prepack":"rm -rf dist && tsc -b","test":"NODE_ENV=test jest"},"gitHead":"1a44e66ae8ef4128c3d2d9927234067e0125fe67","_id":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1@1.3.0","_nodeVersion":"17.9.1","_npmVersion":"8.11.0","dist":{"integrity":"sha512-3QZSU7z+UoHg2dB2SCWUyRRSYsf48q9c2Nr0PTJLYZKz6n8BLWT0oipWaNsOYnlW62knrT1na3mrx+Rvz0aKfg==","shasum":"1b95495bc925bc947228c45d35f61f66159ccecc","tarball":"https://registry.npmjs.org/@cloudgraph/policy-pack-gcp-pci-dss-3.2.1/-/policy-pack-gcp-pci-dss-3.2.1-1.3.0.tgz","fileCount":33,"unpackedSize":41500,"signatures":[{"keyid":"SHA256:jl3bwswu80PjjokCgh0o2w5c2U4LhQAE57gj9cz1kzA","sig":"MEUCIQCEQZ8alhqaZCg7HyVHkdLhor0mn9k+CU4DnRdk7StTXAIgZ5ery811qBh79grGIN9/1tX1KI9LtLIjoqT30l9Thg4="}],"npm-signature":"-----BEGIN PGP SIGNATURE-----\r\nVersion: OpenPGP.js v4.10.10\r\nComment: https://openpgpjs.org\r\n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\r\nSvONJ9LKjiskzux63ag+mQ4iWQNZ+xTIpCY=\r\n=brfy\r\n-----END PGP SIGNATURE-----\r\n"},"_npmUser":{"name":"ckoning","email":"chris@autocloud.dev"},"maintainers":[{"name":"ckoning","email":"chris@autocloud.dev"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages","tmp":"tmp/policy-pack-gcp-pci-dss-3.2.1_1.3.0_1657558802314_0.8265222827167986"},"_hasShrinkwrap":false},"1.3.1":{"name":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1","description":"Policy pack implementing Payment Card Industry Data Security Standard version 3.2.1 Benchmark for Google Cloud Services","version":"1.3.1","author":{"name":"AutoCloud"},"license":"MPL-2.0","main":"dist/index.js","types":"dist/index.d.ts","repository":{"type":"git","url":"git+https://github.com/cloudgraphdev/cloudgraph-policy-packs.git","directory":"src/gcp/pci-dss-3.2.1"},"bugs":{"url":"https://github.com/cloudgraphdev/cloudgraph-policy-packs/issues"},"publishConfig":{"access":"public"},"directories":{"test":"tests"},"devDependencies":{"@autocloud/eslint-config":"^0.1.0","@cloudgraph/sdk":"^0.21.0","@types/jest":"^27.4.0","@types/node":"^15.12.4","@types/pino":"^6.3.11","@typescript-eslint/eslint-plugin":"^4.28.5","@typescript-eslint/parser":"^4.28.5","cpx":"^1.5.0","cuid":"^2.1.8","eslint":"^7.25.0","eslint-config-airbnb-base":"14.2.1","eslint-config-prettier":"^6.11.0","eslint-plugin-import":"^2.22.1","eslint-plugin-prettier":"^3.4.0","jest":"^27.0.6","prettier":"^2.4.1","shx":"^0.3.3","ts-jest":"^27.0.4","tslib":"^1","typescript":"^4.3.5"},"engines":{"node":">=16.0.0"},"homepage":"https://www.cloudgraph.dev/","keywords":["cloudgraph"],"prettier":{"semi":false,"singleQuote":true},"scripts":{"build":"pnpm prepack","clean":"rm -rf dist","lint":"eslint","prepack":"rm -rf dist && tsc -b","test":"NODE_ENV=test jest"},"gitHead":"638084869af8d6e699c5120760d9d32df76406b1","_id":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1@1.3.1","_nodeVersion":"17.9.1","_npmVersion":"8.11.0","dist":{"integrity":"sha512-3BpDhTS96YecslJnFCKsx8P3LtODMuolsFAHWLaC2beDjWkqSKFE9fwI4Zm/sw6Vo2TRXwgG6AEei2XPL7FvtA==","shasum":"761c01baaf3b8f8de2bc2dff516f843b871aac59","tarball":"https://registry.npmjs.org/@cloudgraph/policy-pack-gcp-pci-dss-3.2.1/-/policy-pack-gcp-pci-dss-3.2.1-1.3.1.tgz","fileCount":61,"unpackedSize":183460,"signatures":[{"keyid":"SHA256:jl3bwswu80PjjokCgh0o2w5c2U4LhQAE57gj9cz1kzA","sig":"MEUCIQDJXIkekubGhCuwHOh2tz0eSPbITm1PU59mI4yJBWdxSQIgTEp0kZDBebjYSdQhyixQkJ9QrtCUe5sNiB+JGPoPkpY="}],"npm-signature":"-----BEGIN PGP SIGNATURE-----\r\nVersion: OpenPGP.js v4.10.10\r\nComment: https://openpgpjs.org\r\n\r\nwsFzBAEBCAAGBQJizJB1ACEJED1NWxICdlZqFiEECWMYAoorWMhJKdjhPU1b\r\nEgJ2VmpMvBAAkb0D2s9XvSw/zf/KpguouVT3W5Ugiao7f1YB7yBsLke4jLNW\r\nokFT16GYOzeLp5e7T32s1Ii7oZB5HCbUbCmSfwT0aOpwxsNhHCa7XW/r4Ev+\r\n/aSxq7GbT+68kIMLQq6XqlVcCetzb8qXj7CdGhr5Bt8iCLC45Gqi3U8gHiXa\r\nFJLaKS4vgK8loFp0O5buBOZcynOU1XfPOU4L6VTc+dZtS8b6bOrRl54eBMbv\r\nCTzZJY8g3rn+zMq5WNWPuU/1WQPZbMhqRU9l4OfpiRAyuuEPCZQYG4x0zplR\r\nKz3SwQCLUI/MBkbKrIQXZYevYyGH7yz18QAKYZq1jbtC/za3kEPwvwRIF1BZ\r\nkVyi/mhYGnhRm32qgri6lyGcGoB8hpcQH3yhkyA7WN6v4ldvb/zDuLWV6aMi\r\nqNY88pePeeSforl//zkLvgFhBuma2tsBmCMl1m4RdciCe36LiDHI9KFbKkQU\r\nnegcFrq0dQXSPEbTtrX/kJKoasJIzl8S/2Ohj+k/eFWBvkhu8ypKEJvjaSOQ\r\nW+K89UvCUg3KWC6lNMbyB0YNAyt0IJihoshN/LEwz6XpJ1alMF7nf+PuMMV/\r\n9AMuab/60ab1gdhYS5oYgTHjOPuNGyyQEW9cYo0yMF1qiveLtob7uIc2UfAa\r\nBjPsucMKqx+/Tw867CuMSsU0Z7ToKdoiBOk=\r\n=IvRM\r\n-----END PGP SIGNATURE-----\r\n"},"_npmUser":{"name":"ckoning","email":"chris@autocloud.dev"},"maintainers":[{"name":"ckoning","email":"chris@autocloud.dev"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages","tmp":"tmp/policy-pack-gcp-pci-dss-3.2.1_1.3.1_1657573493426_0.04910360577273454"},"_hasShrinkwrap":false},"1.4.0":{"name":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1","description":"Policy pack implementing Payment Card Industry Data Security Standard version 3.2.1 Benchmark for Google Cloud Services","version":"1.4.0","author":{"name":"AutoCloud"},"license":"MPL-2.0","main":"dist/index.js","types":"dist/index.d.ts","repository":{"type":"git","url":"git+https://github.com/cloudgraphdev/cloudgraph-policy-packs.git","directory":"src/gcp/pci-dss-3.2.1"},"bugs":{"url":"https://github.com/cloudgraphdev/cloudgraph-policy-packs/issues"},"publishConfig":{"access":"public"},"directories":{"test":"tests"},"devDependencies":{"@autocloud/eslint-config":"^0.1.0","@cloudgraph/sdk":"^0.21.1","@types/jest":"^27.4.0","@types/node":"^15.12.4","@types/pino":"^6.3.11","@typescript-eslint/eslint-plugin":"^4.28.5","@typescript-eslint/parser":"^4.28.5","cpx":"^1.5.0","cuid":"^2.1.8","eslint":"^7.25.0","eslint-config-airbnb-base":"14.2.1","eslint-config-prettier":"^6.11.0","eslint-plugin-import":"^2.22.1","eslint-plugin-prettier":"^3.4.0","jest":"^27.0.6","prettier":"^2.4.1","shx":"^0.3.3","ts-jest":"^27.0.4","tslib":"^1","typescript":"^4.3.5"},"engines":{"node":">=16.0.0"},"homepage":"https://www.cloudgraph.dev/","keywords":["cloudgraph"],"prettier":{"semi":false,"singleQuote":true},"scripts":{"build":"pnpm prepack","clean":"rm -rf dist","lint":"eslint","test":"NODE_ENV=test jest"},"_id":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1@1.4.0","_integrity":"sha512-DPiY6RxITMIoxDRZ3JcG3y0Ba85POBOoLZzrFH47IwWzWDT7iKcJ0Z7x35WJl1OBLItsDOoejLYRjFPLcUDH4Q==","_resolved":"/private/var/folders/bg/rvffzk01675c1h3n5znh7r_00000gn/T/13f5cd49b9a49bb3e396637fd8e831bd/cloudgraph-policy-pack-gcp-pci-dss-3.2.1-1.4.0.tgz","_from":"file:cloudgraph-policy-pack-gcp-pci-dss-3.2.1-1.4.0.tgz","_nodeVersion":"17.9.1","_npmVersion":"8.15.1","dist":{"integrity":"sha512-DPiY6RxITMIoxDRZ3JcG3y0Ba85POBOoLZzrFH47IwWzWDT7iKcJ0Z7x35WJl1OBLItsDOoejLYRjFPLcUDH4Q==","shasum":"698841b47d36cf1f60585753d9090489da63f535","tarball":"https://registry.npmjs.org/@cloudgraph/policy-pack-gcp-pci-dss-3.2.1/-/policy-pack-gcp-pci-dss-3.2.1-1.4.0.tgz","fileCount":62,"unpackedSize":199799,"signatures":[{"keyid":"SHA256:jl3bwswu80PjjokCgh0o2w5c2U4LhQAE57gj9cz1kzA","sig":"MEUCIQDdWdL4YCbuhvHbgfqQ1c7BwrbV87JuJK+Tc3zJQ1T0qwIgPViCeUz0038eUjMjorrkIC0xq4QawatFAbDwKZrXa8c="}],"npm-signature":"-----BEGIN PGP SIGNATURE-----\r\nVersion: OpenPGP.js v4.10.10\r\nComment: https://openpgpjs.org\r\n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\r\n6jbdwZhIobv9nC6WHeJr6ncaiT3MMeGJCZE=\r\n=yuv9\r\n-----END PGP SIGNATURE-----\r\n"},"_npmUser":{"name":"ckoning","email":"chris@autocloud.dev"},"maintainers":[{"name":"ckoning","email":"chris@autocloud.dev"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages","tmp":"tmp/policy-pack-gcp-pci-dss-3.2.1_1.4.0_1659395050145_0.4372550818979932"},"_hasShrinkwrap":false},"1.4.1-alpha.1":{"name":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1","description":"Policy pack implementing Payment Card Industry Data Security Standard version 3.2.1 Benchmark for Google Cloud Services","version":"1.4.1-alpha.1","author":{"name":"AutoCloud"},"license":"MPL-2.0","main":"dist/index.js","types":"dist/index.d.ts","repository":{"url":"git+https://github.com/cloudgraphdev/cloudgraph-policy-packs.git","directory":"src/gcp/pci-dss-3.2.1"},"bugs":{"url":"https://github.com/cloudgraphdev/cloudgraph-policy-packs/issues"},"publishConfig":{"access":"public"},"directories":{"test":"tests"},"devDependencies":{"@autocloud/eslint-config":"^0.1.0","@cloudgraph/sdk":"^0.21.1","@types/jest":"^27.4.0","@types/node":"^15.12.4","@types/pino":"^6.3.11","@typescript-eslint/eslint-plugin":"^4.28.5","@typescript-eslint/parser":"^4.28.5","cpx":"^1.5.0","cuid":"^2.1.8","eslint":"^7.25.0","eslint-config-airbnb-base":"14.2.1","eslint-config-prettier":"^6.11.0","eslint-plugin-import":"^2.22.1","eslint-plugin-prettier":"^3.4.0","jest":"^27.0.6","prettier":"^2.4.1","shx":"^0.3.3","ts-jest":"^27.0.4","tslib":"^1","typescript":"^4.3.5"},"engines":{"node":">=16.0.0"},"homepage":"https://www.cloudgraph.dev/","keywords":["cloudgraph"],"prettier":{"semi":false,"singleQuote":true},"scripts":{"build":"npm run prepack","clean":"rm -rf dist","lint":"eslint","prepack":"rm -rf dist && tsc -b","test":"NODE_ENV=test jest","release":"npx semantic-release --no-ci -e semantic-release-monorepo"},"readme":"# PCI Data Security Standard version 3.2.1\n\nPolicy Pack based on the [PCI DSS version 3.2.1](https://www.pcisecuritystandards.org/documents/PCI_DSS-QRG-v3_2_1.pdf) benchmark provided by the [Payment Card Industry Data Security Standard (PCI DSS)](https://www.pcisecuritystandards.org/)\n\n## First Steps\n\n1. Install [Cloud Graph CLI](https://docs.cloudgraph.dev/quick-start).\n2. Set up the [GCP Provider](https://www.npmjs.com/package/@cloudgraph/cg-provider-gcp) for CG with the `cg init gcp` command.\n3. Add Policy Pack for GCP PCI DSS benchmark using `cg policy add gcp-pci-dss-3.2.1` command.\n4. Execute the ruleset using the scan command `cg scan gcp`.\n5. Query the findings using the different options:\n\n   5a. Querying findings by provider:\n\n   ```graphql\n   query {\n     querygcpFindings {\n       PCIFindings {\n         id\n         resourceId\n         result\n       }\n     }\n   }\n   ```\n\n   5b. Querying findings by specific benchmark:\n\n   ```graphql\n   query {\n     querygcpCISFindings {\n       id\n       resourceId\n       result\n     }\n   }\n   ```\n\n   5c. Querying findings by resource:\n\n   ```graphql\n   query {\n     querygcpIamPolicy {\n       id\n       PCIFindings {\n         id\n         resourceId\n         result\n       }\n     }\n   }\n   ```\n\n## Available Ruleset\n| Rule             | Description                                                                                                                                                         |\n| ------------------ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------- |\n| vm-check-1      | Compute instance 'block-project-ssh-keys' should be enabled                                                                                                     |\n| vm-check-2      | Compute instances 'Enable connecting to serial ports' should not be enabled                                                                                     |\n| storage-check-1 | SQL database instances should not permit access from 0.0.0.0/0                                                                                                  |\n| vm-check-3      | Compute instances should not use the default service account                                                                                                    |\n| vm-check-4      | Compute instances should not use the default service account with full access to all Cloud APIs                                                                 |\n| dns-check-1     | DNS managed zone DNSSEC key-signing keys should not use RSASHA1                                                                                                 |\n| dns-check-2     | DNS managed zone DNSSEC should be enabled                                                                                                                       |\n| dns-check-3     | DNS managed zone DNSSEC zone-signing keys should not use RSASHA1                                                                                                |\n| storage-check-2 | SQL database instances should require incoming connections to use SSL                                                                                           |\n| iam-check-3     | User-managed service accounts should not have admin privileges                                                                                                  |\n| kms-check-1     | KMS keys should not be anonymously or publicly accessible                                                                                                       |\n| iam-check-4     | IAM default audit log config should not exempt any users                                                                                                        |\n| iam-check-1        | IAM users should not have both KMS admin and any of the KMS encrypter/decrypter roles                                         |\n| iam-check-2        | IAM users should not have project-level \"Service Account User\" or \"Service Account Token Creator\" roles                       |\n| monitoring-check-1 | Logging metric filter and alert for audit configuration changes should be configured                                          |\n| monitoring-check-2 | Logging metric filter and alert for Custom Role changes should be configured                                                  |\n| monitoring-check-3 | Logging metric filter and alert for network changes should be configured                                                      |\n| monitoring-check-4 | Logging metric filter and alert for network firewall rule changes should be configured                                        |\n| monitoring-check-5 | Logging metric filter and alert for network route changes should be configured                                                |\n| monitoring-check-6 | Logging metric filter and alert for project ownership assignments/changes should be configured                                |\n| monitoring-check-7 | Logging metric filter and alert for SQL instance configuration changes should be configured                                   |\n| monitoring-check-8 | Logging metric filter and alert for Storage IAM permission changes should be configured                                       |\n| networking-check-1 | Network firewall rules should not permit ingress from 0.0.0.0/0 to port 22 (SSH)                                              |\n| networking-check-2 | Network firewall rules should not permit ingress from 0.0.0.0/0 to port 3389 (RDP)                                            |\n| networking-check-3 | The default network for a project should be deleted                                                                           |\n| networking-check-4 | Load balancer HTTPS or SSL proxy SSL policies should not have weak cipher suites                                              |\n| logging-check-1    | At least one project-level logging sink should be configured with an empty filter                                             |\n","readmeFilename":"README.md","gitHead":"e9dd79c6e4bca985dec38fb4797c1669759cb746","_id":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1@1.4.1-alpha.1","_nodeVersion":"18.12.1","_npmVersion":"8.19.3","dist":{"integrity":"sha512-Z6PfbUVVWMwrHNYGyHbcRv55xBTC+li1EL3gWN6LGF5UxXCPTPuHnqOIt5l6gI4+ZpNzhz1GN5+MWlIm7Im7rw==","shasum":"d65a81601b2d149f984ad3e78a9c705be87dbca7","tarball":"https://registry.npmjs.org/@cloudgraph/policy-pack-gcp-pci-dss-3.2.1/-/policy-pack-gcp-pci-dss-3.2.1-1.4.1-alpha.1.tgz","fileCount":61,"unpackedSize":184334,"signatures":[{"keyid":"SHA256:jl3bwswu80PjjokCgh0o2w5c2U4LhQAE57gj9cz1kzA","sig":"MEUCIFdHS+t8ecvBFwZK0kTiZeoZ/o6WaiJkd96Rp/u9wO3LAiEAj8FpD2rf+8IsdXFFkk4spT9uuM0lCkWrXv/JCJ7iWFo="}],"npm-signature":"-----BEGIN PGP SIGNATURE-----\r\nVersion: OpenPGP.js v4.10.10\r\nComment: https://openpgpjs.org\r\n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\r\n/8b1Eho7iQ5+eV1xVLp4O9HlSfqpvT98Lzs=\r\n=1cPj\r\n-----END PGP SIGNATURE-----\r\n"},"_npmUser":{"name":"ckoning","email":"chris@autocloud.dev"},"maintainers":[{"name":"ckoning","email":"chris@autocloud.dev"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages","tmp":"tmp/policy-pack-gcp-pci-dss-3.2.1_1.4.1-alpha.1_1670978834542_0.2996251701979442"},"_hasShrinkwrap":false},"1.5.0":{"name":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1","description":"Policy pack implementing Payment Card Industry Data Security Standard version 3.2.1 Benchmark for Google Cloud Services","version":"1.5.0","author":{"name":"AutoCloud"},"license":"MPL-2.0","main":"dist/index.js","types":"dist/index.d.ts","repository":{"url":"git+https://github.com/cloudgraphdev/cloudgraph-policy-packs.git","directory":"src/gcp/pci-dss-3.2.1"},"bugs":{"url":"https://github.com/cloudgraphdev/cloudgraph-policy-packs/issues"},"publishConfig":{"access":"public"},"directories":{"test":"tests"},"devDependencies":{"@autocloud/eslint-config":"^0.1.0","@cloudgraph/sdk":"^0.21.1","@types/jest":"^27.4.0","@types/node":"^15.12.4","@types/pino":"^6.3.11","@typescript-eslint/eslint-plugin":"^4.28.5","@typescript-eslint/parser":"^4.28.5","cpx":"^1.5.0","cuid":"^2.1.8","eslint":"^7.25.0","eslint-config-airbnb-base":"14.2.1","eslint-config-prettier":"^6.11.0","eslint-plugin-import":"^2.22.1","eslint-plugin-prettier":"^3.4.0","jest":"^27.0.6","prettier":"^2.4.1","shx":"^0.3.3","ts-jest":"^27.0.4","tslib":"^1","typescript":"^4.3.5"},"engines":{"node":">=16.0.0"},"homepage":"https://www.cloudgraph.dev/","keywords":["cloudgraph"],"prettier":{"semi":false,"singleQuote":true},"scripts":{"build":"npm run prepack","clean":"rm -rf dist","lint":"eslint","prepack":"rm -rf dist && tsc -b","test":"NODE_ENV=test jest","release":"npx semantic-release --no-ci"},"gitHead":"e891568cba457dbf0b00b222bd8d2c702b5448ab","_id":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1@1.5.0","_nodeVersion":"18.16.0","_npmVersion":"9.5.1","dist":{"integrity":"sha512-1DHFilpUizeLSQWtRTYjZJrArWaiyY2IxywKN7WPwSMl7t7tN3ESyhRjyD+W5pHQOPz3hqUEJfSzaulBMCP5ww==","shasum":"2d6a9a93564edb9306048c94a353b2d8cb97e903","tarball":"https://registry.npmjs.org/@cloudgraph/policy-pack-gcp-pci-dss-3.2.1/-/policy-pack-gcp-pci-dss-3.2.1-1.5.0.tgz","fileCount":61,"unpackedSize":193666,"signatures":[{"keyid":"SHA256:jl3bwswu80PjjokCgh0o2w5c2U4LhQAE57gj9cz1kzA","sig":"MEQCIArXirz+XOcuy7X1lTnPXF/6gKbVpipeSJEErt5CIwTsAiB87EurqlRa109dA8fB8BH4QuMEixteo07MPUiFKj4jMg=="}],"npm-signature":"-----BEGIN PGP SIGNATURE-----\r\nVersion: OpenPGP.js v4.10.10\r\nComment: https://openpgpjs.org\r\n\r\nwsFzBAEBCAAGBQJkS/vzACEJED1NWxICdlZqFiEECWMYAoorWMhJKdjhPU1b\r\nEgJ2VmolAQ/+KtGu26n2x3Rf330WQ6FfChM7TqA/cYmUO69OrHmLJHcG5iUH\r\nvTgmCJE1zGRWkU/nIqXTVbVkPxeZxz+ymkrFWkXRRbzT0N4z34yYqJXg2Gf+\r\nnoi9F/W/92LPsUMAZVnfQ/bvUqZtgiQFPKxEJSFNmp4sizP5lkfPs9SwwXg6\r\nHYCcEIgzvRHAcyNcG1ZrJ6CbQrv0O3qYhZiUeIYekKj6qqCp6a8eHNU/BlhT\r\nNtCDorqip5bBsBTgiC/nSNnjBT+gOQDryvSMsGa74zDO7U4Iv4a3PMVha0aR\r\nJbMs6gqyLk8HXjUTuexbN6InVymhchEjhjkpb6NaixJvvIboKK7eMwHUw7eN\r\nwIE0vboUxeD7iMucZHyR8RUaxa+WzKu230uwJgJcauSuDcME1UI4YPXvL14i\r\nZdoF2XTzMz4c+CncAdSVdN3w0UPY1wpNcSeM6RHttPY/j69nU8Eft+5bgdme\r\n51MBnVeJQTXjUsN/RwHirErLZH7ObF+nRLgeYNK6r00HnTDfoEjzvQVTJwgb\r\n/lrw8sus3rjUhpwP02Ay6/cbBlD281P7CwoQGtvFcXgxE9fWcYfEIYxz0g7U\r\npaZTB0MiU1RyqHV6veLV08HpMP8fMZAYTYJdl7wiAMZcPqR7F9fTgroleYHI\r\na/i1MFV8EWPLr+vfl89Yb0qXEWxJTJwU3cU=\r\n=k5se\r\n-----END PGP SIGNATURE-----\r\n"},"_npmUser":{"name":"ckoning","email":"chris@autocloud.dev"},"maintainers":[{"name":"ckoning","email":"chris@autocloud.dev"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages","tmp":"tmp/policy-pack-gcp-pci-dss-3.2.1_1.5.0_1682701299508_0.3808066666028118"},"_hasShrinkwrap":false},"1.5.1-alpha.1":{"name":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1","description":"Policy pack implementing Payment Card Industry Data Security Standard version 3.2.1 Benchmark for Google Cloud Services","version":"1.5.1-alpha.1","author":{"name":"AutoCloud"},"license":"MPL-2.0","main":"dist/index.js","types":"dist/index.d.ts","repository":{"url":"git+https://github.com/cloudgraphdev/cloudgraph-policy-packs.git","directory":"src/gcp/pci-dss-3.2.1"},"bugs":{"url":"https://github.com/cloudgraphdev/cloudgraph-policy-packs/issues"},"publishConfig":{"access":"public"},"directories":{"test":"tests"},"devDependencies":{"@autocloud/eslint-config":"^0.1.0","@cloudgraph/sdk":"^0.21.1","@types/jest":"^27.4.0","@types/node":"^15.12.4","@types/pino":"^6.3.11","@typescript-eslint/eslint-plugin":"^4.28.5","@typescript-eslint/parser":"^4.28.5","cpx":"^1.5.0","cuid":"^2.1.8","eslint":"^7.25.0","eslint-config-airbnb-base":"14.2.1","eslint-config-prettier":"^6.11.0","eslint-plugin-import":"^2.22.1","eslint-plugin-prettier":"^3.4.0","jest":"^27.0.6","prettier":"^2.4.1","shx":"^0.3.3","ts-jest":"^27.0.4","tslib":"^1","typescript":"^4.3.5"},"engines":{"node":">=16.0.0"},"homepage":"https://www.cloudgraph.dev/","keywords":["cloudgraph"],"prettier":{"semi":false,"singleQuote":true},"scripts":{"build":"npm run prepack","clean":"rm -rf dist","lint":"eslint","prepack":"rm -rf dist && tsc -b","test":"NODE_ENV=test jest","release":"npx semantic-release"},"readme":"# PCI Data Security Standard version 3.2.1\n\nPolicy Pack based on the [PCI DSS version 3.2.1](https://www.pcisecuritystandards.org/documents/PCI_DSS-QRG-v3_2_1.pdf) benchmark provided by the [Payment Card Industry Data Security Standard (PCI DSS)](https://www.pcisecuritystandards.org/)\n\n## First Steps\n\n1. Install [Cloud Graph CLI](https://docs.cloudgraph.dev/quick-start).\n2. Set up the [GCP Provider](https://www.npmjs.com/package/@cloudgraph/cg-provider-gcp) for CG with the `cg init gcp` command.\n3. Add Policy Pack for GCP PCI DSS benchmark using `cg policy add gcp-pci-dss-3.2.1` command.\n4. Execute the ruleset using the scan command `cg scan gcp`.\n5. Query the findings using the different options:\n\n   5a. Querying findings by provider:\n\n   ```graphql\n   query {\n     querygcpFindings {\n       PCIFindings {\n         id\n         resourceId\n         result\n       }\n     }\n   }\n   ```\n\n   5b. Querying findings by specific benchmark:\n\n   ```graphql\n   query {\n     querygcpCISFindings {\n       id\n       resourceId\n       result\n     }\n   }\n   ```\n\n   5c. Querying findings by resource:\n\n   ```graphql\n   query {\n     querygcpIamPolicy {\n       id\n       PCIFindings {\n         id\n         resourceId\n         result\n       }\n     }\n   }\n   ```\n\n## Available Ruleset\n| Rule             | Description                                                                                                                                                         |\n| ------------------ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------- |\n| vm-check-1      | Compute instance 'block-project-ssh-keys' should be enabled                                                                                                     |\n| vm-check-2      | Compute instances 'Enable connecting to serial ports' should not be enabled                                                                                     |\n| storage-check-1 | SQL database instances should not permit access from 0.0.0.0/0                                                                                                  |\n| vm-check-3      | Compute instances should not use the default service account                                                                                                    |\n| vm-check-4      | Compute instances should not use the default service account with full access to all Cloud APIs                                                                 |\n| dns-check-1     | DNS managed zone DNSSEC key-signing keys should not use RSASHA1                                                                                                 |\n| dns-check-2     | DNS managed zone DNSSEC should be enabled                                                                                                                       |\n| dns-check-3     | DNS managed zone DNSSEC zone-signing keys should not use RSASHA1                                                                                                |\n| storage-check-2 | SQL database instances should require incoming connections to use SSL                                                                                           |\n| iam-check-3     | User-managed service accounts should not have admin privileges                                                                                                  |\n| kms-check-1     | KMS keys should not be anonymously or publicly accessible                                                                                                       |\n| iam-check-4     | IAM default audit log config should not exempt any users                                                                                                        |\n| iam-check-1        | IAM users should not have both KMS admin and any of the KMS encrypter/decrypter roles                                         |\n| iam-check-2        | IAM users should not have project-level \"Service Account User\" or \"Service Account Token Creator\" roles                       |\n| monitoring-check-1 | Logging metric filter and alert for audit configuration changes should be configured                                          |\n| monitoring-check-2 | Logging metric filter and alert for Custom Role changes should be configured                                                  |\n| monitoring-check-3 | Logging metric filter and alert for network changes should be configured                                                      |\n| monitoring-check-4 | Logging metric filter and alert for network firewall rule changes should be configured                                        |\n| monitoring-check-5 | Logging metric filter and alert for network route changes should be configured                                                |\n| monitoring-check-6 | Logging metric filter and alert for project ownership assignments/changes should be configured                                |\n| monitoring-check-7 | Logging metric filter and alert for SQL instance configuration changes should be configured                                   |\n| monitoring-check-8 | Logging metric filter and alert for Storage IAM permission changes should be configured                                       |\n| networking-check-1 | Network firewall rules should not permit ingress from 0.0.0.0/0 to port 22 (SSH)                                              |\n| networking-check-2 | Network firewall rules should not permit ingress from 0.0.0.0/0 to port 3389 (RDP)                                            |\n| networking-check-3 | The default network for a project should be deleted                                                                           |\n| networking-check-4 | Load balancer HTTPS or SSL proxy SSL policies should not have weak cipher suites                                              |\n| logging-check-1    | At least one project-level logging sink should be configured with an empty filter                                             |\n","readmeFilename":"README.md","gitHead":"86a5d405eb844193934d8d0e3cee07881e0c38c1","_id":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1@1.5.1-alpha.1","_nodeVersion":"18.16.0","_npmVersion":"9.5.1","dist":{"integrity":"sha512-gQt5CCCW7fF3ZlYoy2Un9c98/BLk4dyV6pPE+90wxtFU8xLOyAcI/IYYAT7aJyOCA9wIhxWibom3/9lpNd6JAg==","shasum":"93f36c9aa7d10ce59274325efceaaaa5433516db","tarball":"https://registry.npmjs.org/@cloudgraph/policy-pack-gcp-pci-dss-3.2.1/-/policy-pack-gcp-pci-dss-3.2.1-1.5.1-alpha.1.tgz","fileCount":3,"unpackedSize":20806,"signatures":[{"keyid":"SHA256:jl3bwswu80PjjokCgh0o2w5c2U4LhQAE57gj9cz1kzA","sig":"MEQCIF3sV/KL0+IlyeS5EnjnM2IYQbcDjRzpZRh3EGc3KOx0AiB1eeLSqTqW48CFDwJfcnjcZzky/V2xJnD8M0LuZ9OE/g=="}]},"_npmUser":{"name":"ckoning","email":"chris@autocloud.dev"},"maintainers":[{"name":"ckoning","email":"chris@autocloud.dev"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages","tmp":"tmp/policy-pack-gcp-pci-dss-3.2.1_1.5.1-alpha.1_1684332814748_0.521918631709978"},"_hasShrinkwrap":false},"1.5.1-alpha.2":{"name":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1","description":"Policy pack implementing Payment Card Industry Data Security Standard version 3.2.1 Benchmark for Google Cloud Services","version":"1.5.1-alpha.2","author":{"name":"AutoCloud"},"license":"MPL-2.0","main":"dist/index.js","types":"dist/index.d.ts","repository":{"url":"git+https://github.com/cloudgraphdev/cloudgraph-policy-packs.git","directory":"src/gcp/pci-dss-3.2.1"},"bugs":{"url":"https://github.com/cloudgraphdev/cloudgraph-policy-packs/issues"},"publishConfig":{"access":"public"},"directories":{"test":"tests"},"devDependencies":{"@autocloud/eslint-config":"^0.1.0","@cloudgraph/sdk":"^0.21.1","@types/jest":"^27.4.0","@types/node":"^15.12.4","@types/pino":"^6.3.11","@typescript-eslint/eslint-plugin":"^4.28.5","@typescript-eslint/parser":"^4.28.5","cpx":"^1.5.0","cuid":"^2.1.8","eslint":"^7.25.0","eslint-config-airbnb-base":"14.2.1","eslint-config-prettier":"^6.11.0","eslint-plugin-import":"^2.22.1","eslint-plugin-prettier":"^3.4.0","jest":"^27.0.6","prettier":"^2.4.1","shx":"^0.3.3","ts-jest":"^27.0.4","tslib":"^1","typescript":"^4.3.5"},"engines":{"node":">=16.0.0"},"homepage":"https://www.cloudgraph.dev/","keywords":["cloudgraph"],"prettier":{"semi":false,"singleQuote":true},"scripts":{"build":"npm run prepack","clean":"rm -rf dist","lint":"eslint","prepack":"rm -rf dist && tsc -b","test":"NODE_ENV=test jest","release":"npx semantic-release"},"readme":"# PCI Data Security Standard version 3.2.1\n\nPolicy Pack based on the [PCI DSS version 3.2.1](https://www.pcisecuritystandards.org/documents/PCI_DSS-QRG-v3_2_1.pdf) benchmark provided by the [Payment Card Industry Data Security Standard (PCI DSS)](https://www.pcisecuritystandards.org/)\n\n## First Steps\n\n1. Install [Cloud Graph CLI](https://docs.cloudgraph.dev/quick-start).\n2. Set up the [GCP Provider](https://www.npmjs.com/package/@cloudgraph/cg-provider-gcp) for CG with the `cg init gcp` command.\n3. Add Policy Pack for GCP PCI DSS benchmark using `cg policy add gcp-pci-dss-3.2.1` command.\n4. Execute the ruleset using the scan command `cg scan gcp`.\n5. Query the findings using the different options:\n\n   5a. Querying findings by provider:\n\n   ```graphql\n   query {\n     querygcpFindings {\n       PCIFindings {\n         id\n         resourceId\n         result\n       }\n     }\n   }\n   ```\n\n   5b. Querying findings by specific benchmark:\n\n   ```graphql\n   query {\n     querygcpCISFindings {\n       id\n       resourceId\n       result\n     }\n   }\n   ```\n\n   5c. Querying findings by resource:\n\n   ```graphql\n   query {\n     querygcpIamPolicy {\n       id\n       PCIFindings {\n         id\n         resourceId\n         result\n       }\n     }\n   }\n   ```\n\n## Available Ruleset\n| Rule             | Description                                                                                                                                                         |\n| ------------------ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------- |\n| vm-check-1      | Compute instance 'block-project-ssh-keys' should be enabled                                                                                                     |\n| vm-check-2      | Compute instances 'Enable connecting to serial ports' should not be enabled                                                                                     |\n| storage-check-1 | SQL database instances should not permit access from 0.0.0.0/0                                                                                                  |\n| vm-check-3      | Compute instances should not use the default service account                                                                                                    |\n| vm-check-4      | Compute instances should not use the default service account with full access to all Cloud APIs                                                                 |\n| dns-check-1     | DNS managed zone DNSSEC key-signing keys should not use RSASHA1                                                                                                 |\n| dns-check-2     | DNS managed zone DNSSEC should be enabled                                                                                                                       |\n| dns-check-3     | DNS managed zone DNSSEC zone-signing keys should not use RSASHA1                                                                                                |\n| storage-check-2 | SQL database instances should require incoming connections to use SSL                                                                                           |\n| iam-check-3     | User-managed service accounts should not have admin privileges                                                                                                  |\n| kms-check-1     | KMS keys should not be anonymously or publicly accessible                                                                                                       |\n| iam-check-4     | IAM default audit log config should not exempt any users                                                                                                        |\n| iam-check-1        | IAM users should not have both KMS admin and any of the KMS encrypter/decrypter roles                                         |\n| iam-check-2        | IAM users should not have project-level \"Service Account User\" or \"Service Account Token Creator\" roles                       |\n| monitoring-check-1 | Logging metric filter and alert for audit configuration changes should be configured                                          |\n| monitoring-check-2 | Logging metric filter and alert for Custom Role changes should be configured                                                  |\n| monitoring-check-3 | Logging metric filter and alert for network changes should be configured                                                      |\n| monitoring-check-4 | Logging metric filter and alert for network firewall rule changes should be configured                                        |\n| monitoring-check-5 | Logging metric filter and alert for network route changes should be configured                                                |\n| monitoring-check-6 | Logging metric filter and alert for project ownership assignments/changes should be configured                                |\n| monitoring-check-7 | Logging metric filter and alert for SQL instance configuration changes should be configured                                   |\n| monitoring-check-8 | Logging metric filter and alert for Storage IAM permission changes should be configured                                       |\n| networking-check-1 | Network firewall rules should not permit ingress from 0.0.0.0/0 to port 22 (SSH)                                              |\n| networking-check-2 | Network firewall rules should not permit ingress from 0.0.0.0/0 to port 3389 (RDP)                                            |\n| networking-check-3 | The default network for a project should be deleted                                                                           |\n| networking-check-4 | Load balancer HTTPS or SSL proxy SSL policies should not have weak cipher suites                                              |\n| logging-check-1    | At least one project-level logging sink should be configured with an empty filter                                             |\n","readmeFilename":"README.md","gitHead":"56e160c22d22b176cde71fd342a22c93ee8aae85","_id":"@cloudgraph/policy-pack-gcp-pci-dss-3.2.1@1.5.1-alpha.2","_nodeVersion":"18.16.0","_npmVersion":"9.5.1","dist":{"integrity":"sha512-9Wcg3FDXvy506hO9REalrXK/y3pSxC9fWULF7syOfW0KkZ0FjgWACFb48LTpidw2YJQJxSSj3rkNFsRUl/32Uw==","shasum":"f99b3bc55b5b20460ea867e0705fb02b1215fce5","tarball":"https://registry.npmjs.org/@cloudgraph/policy-pack-gcp-pci-dss-3.2.1/-/policy-pack-gcp-pci-dss-3.2.1-1.5.1-alpha.2.tgz","fileCount":61,"unpackedSize":194449,"signatures":[{"keyid":"SHA256:jl3bwswu80PjjokCgh0o2w5c2U4LhQAE57gj9cz1kzA","sig":"MEQCIHVZHy0IUgisxLOECZ+q/FTdlEM6HaHJ8vTAMx7756QQAiAeNmjnCTiVwYzHUddUnNqQKZ7WP3U/yhPOs/LQKEsItw=="}]},"_npmUser":{"name":"ckoning","email":"chris@autocloud.dev"},"maintainers":[{"name":"ckoning","email":"chris@autocloud.dev"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages","tmp":"tmp/policy-pack-gcp-pci-dss-3.2.1_1.5.1-alpha.2_1684337791757_0.4989309642383888"},"_hasShrinkwrap":false}},"time":{"created":"2022-05-12T18:03:35.977Z","1.0.0":"2022-05-12T18:03:36.335Z","modified":"2023-05-17T15:36:32.136Z","1.1.0":"2022-05-26T20:49:03.494Z","1.2.0":"2022-07-05T19:10:23.205Z","1.3.0":"2022-07-11T17:00:02.737Z","1.3.1":"2022-07-11T21:04:53.678Z","1.4.0":"2022-08-01T23:04:10.379Z","1.4.1-alpha.1":"2022-12-14T00:47:14.689Z","1.5.0":"2023-04-28T17:01:39.697Z","1.5.1-alpha.1":"2023-05-17T14:13:34.925Z","1.5.1-alpha.2":"2023-05-17T15:36:31.990Z"},"maintainers":[{"name":"ckoning","email":"chris@autocloud.dev"}],"description":"Policy pack implementing Payment Card Industry Data Security Standard version 3.2.1 Benchmark for Google Cloud Services","homepage":"https://www.cloudgraph.dev/","keywords":["cloudgraph"],"repository":{"url":"git+https://github.com/cloudgraphdev/cloudgraph-policy-packs.git","directory":"src/gcp/pci-dss-3.2.1"},"author":{"name":"AutoCloud"},"bugs":{"url":"https://github.com/cloudgraphdev/cloudgraph-policy-packs/issues"},"license":"MPL-2.0","readme":"","readmeFilename":""}