Skip to main content

Google Connectors

Google Cloud Asset Inventory

The Google Cloud Asset connector integrates with [Google Cloud Asset Inventory](https://cloud.google.com/asset-inventory) to synchronize Compute Engine virtual machine instances into the Brinqa platform as host assets. For every configured scope (organization, folder, or project) it searches all `compute.googleapis.com/Instance` resources, then enriches each one with its latest historical state so that network configuration, scheduling, attached service accounts, and instance-group membership are captured in a single host record. Resource labels are surfaced both as tags and as dynamically generated per-label attributes.

Google Security Command Center

The Google Security Center connector integrates with Google Cloud Security Command Center (SCC), Cloud Asset Inventory, and the in-cluster Kubernetes API to give Brinqa a unified view of GCP exposure. It pulls SCC findings (vulnerabilities, misconfiguration violations, threat alerts) and the cloud assets they target — compute instances, networks, firewalls, GKE clusters, Cloud SQL, Cloud Run / Cloud Functions / App Engine, load balancers, IAM bindings, and project-level metadata — then dives into each GKE cluster's API server to enumerate namespaces, pods, service accounts (Workload Identity), services, ingresses, deployments, daemonsets, and RBAC roles. The result is one connected graph spanning GCP control-plane state and in-cluster posture, suitable for blast-radius analysis.