Google Cloud Asset Inventory
The Google Cloud Asset connector integrates with [Google Cloud Asset Inventory](https://cloud.google.com/asset-inventory) to synchronize Compute Engine virtual machine instances into the Brinqa platform as host assets. For every configured scope (organization, folder, or project) it searches all `compute.googleapis.com/Instance` resources, then enriches each one with its latest historical state so that network configuration, scheduling, attached service accounts, and instance-group membership are captured in a single host record. Resource labels are surfaced both as tags and as dynamically generated per-label attributes.
Google Threat Intelligence
The Google Threat Intelligence connector integrates with the [VirusTotal](https://www.virustotal.com/) platform to synchronize real-time vulnerability threat data and ASM (Attack Surface Management) search issue findings and entity assets into the Brinqa platform. It uses the VirusTotal API v3 to retrieve CVE records from vulnerability collections, security issues from the ASM search issues endpoint, and asset entities from the ASM search entities endpoint.
Google Security Command Center
The Google Security Center connector integrates with Google Cloud Security Command Center (SCC), Cloud Asset Inventory, and the in-cluster Kubernetes API to give Brinqa a unified view of GCP exposure. It pulls SCC findings (vulnerabilities, misconfiguration violations, threat alerts) and the cloud assets they target — compute instances, networks, firewalls, GKE clusters, Cloud SQL, Cloud Run / Cloud Functions / App Engine, load balancers, IAM bindings, and project-level metadata — then dives into each GKE cluster's API server to enumerate namespaces, pods, service accounts (Workload Identity), services, ingresses, deployments, daemonsets, and RBAC roles. The result is one connected graph spanning GCP control-plane state and in-cluster posture, suitable for blast-radius analysis.


