What problem does it solve? Auditing Google Cloud Storage buckets for misconfigurations, excessive permissions, and compliance gaps is complex and error-prone when done manually. This Skill provides structured guidelines and reference procedures to systematically evaluate GCS security posture against baseline controls and risk frameworks. ## Core Features & Use Cases - Baseline Control Checks: Evaluate per-bucket and project-level controls including Uniform Bucket-Level Access (UBLA), public access prevention, TLS enforcement, and audit logging. - Toxic Combination Detection: Identify multi-parameter risk archetypes and shadow access paths that create hidden exposure. - Risk Framework Alignment: Classify buckets by data sensitivity and map findings to SAIF risk factors and telemetry log signals. - Use Case: A cloud security engineer needs to audit dozens of GCS buckets before a compliance review. Use this Skill to systematically check each bucket against baseline controls, flag toxic permission combinations, and generate findings aligned with SAIF risk categories. ## Quick Start Audit my GCS buckets for security misconfigurations, toxic access combinations, and SAIF risk factors.