Multi-cloud honesty
Service coverage
Every individual service across Azure, AWS, GCP, Kubernetes, identity systems, and hybrid connectivity — with a fully / partially / planned / not-supported grade per capability. We do not pretend coverage we haven't built. See the guide.
Legend:●Production-quality◐Common case covered◔Synthesised from adjacent data○Planned✕Not in scope
| Service | Disc | Inv | Topo | Sec | Net | IAM | Obs | $ | Recs |
|---|---|---|---|---|---|---|---|---|---|
Azure Container Instances azure.compute.aci | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Functions azure.compute.functions | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Batch azure.compute.batch | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Managed Disks azure.compute.disks | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Spring Apps azure.compute.springapps | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Service Fabric azure.compute.servicefabric | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Public IP azure.network.publicip | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Front Door azure.network.frontdoor | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure CDN azure.network.cdn | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Private DNS Zone azure.network.privatedns | ● | ● | ◐ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure DNS azure.network.publicdns | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
ExpressRoute azure.network.expressroute | ● | ● | ◐ | ◐ | ✕ | ◐ | ◐ | ● | ● |
VPN Gateway azure.network.vpngateway | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Virtual WAN azure.network.virtualwan | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Route Table / UDR azure.network.routetable | ● | ● | ◐ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Network Watcher azure.network.networkwatcher | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Bastion azure.network.bastion | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
DDoS Protection azure.network.ddos | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure NetApp Files azure.storage.netapp | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Data Box Edge azure.storage.databoxedge | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
SQL Managed Instance azure.db.sqlmi | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Database for PostgreSQL azure.db.postgres | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Database for MySQL azure.db.mysql | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Database for MariaDB azure.db.mariadb | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Cosmos DB azure.db.cosmos | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Cache for Redis azure.db.redis | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Synapse Analytics azure.db.synapse | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Data Explorer azure.db.kusto | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure AI Search azure.db.search | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Microsoft Entra ID azure.identity.entraid | ● | ● | ○ | ◐ | ✕ | ● | ◐ | ● | ● |
User-Assigned Managed Identity azure.identity.uami | ● | ● | ○ | ◐ | ✕ | ● | ◐ | ● | ○ |
Privileged Identity Management azure.identity.pim | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure AD B2C azure.identity.b2c | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Microsoft Defender for Cloud azure.security.defender | ● | ● | ○ | ● | ✕ | ◐ | ◐ | ● | ● |
Microsoft Sentinel azure.security.sentinel | ● | ● | ○ | ◐ | ✕ | ◐ | ● | ● | ○ |
Azure Policy azure.security.policy | ● | ● | ○ | ● | ✕ | ◐ | ◐ | ● | ○ |
App Configuration azure.security.appconfig | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Application Gateway WAF v2 azure.security.appgateway_waf | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Front Door WAF azure.security.frontdoor_waf | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Cognitive Services azure.ai.cognitiveservices | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Machine Learning azure.ai.ml | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Bot Service azure.ai.bot | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Monitor azure.obs.monitor | ● | ● | ○ | ◐ | ✕ | ◐ | ● | ● | ○ |
Log Analytics azure.obs.loganalytics | ● | ● | ○ | ◐ | ✕ | ◐ | ● | ● | ○ |
Application Insights azure.obs.appinsights | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Activity Log azure.obs.activitylog | ● | ● | ○ | ◐ | ✕ | ◐ | ● | ● | ○ |
Azure Service Health azure.obs.servicehealth | ● | ● | ○ | ◐ | ✕ | ◐ | ● | ● | ○ |
Azure DevOps azure.devops.devops | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Container Registry azure.devops.acr | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Service Bus azure.integration.servicebus | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Event Hubs azure.integration.eventhub | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Event Grid azure.integration.eventgrid | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Logic Apps azure.integration.logicapps | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
API Management azure.integration.apim | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Notification Hubs azure.integration.notificationhubs | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Relay azure.integration.relay | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Resource Manager azure.mgmt.arm | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Policy azure.mgmt.policy | ● | ● | ○ | ● | ✕ | ◐ | ◐ | ● | ○ |
Blueprints (legacy) azure.mgmt.blueprints | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Cost Management azure.mgmt.cost | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Automation Account azure.mgmt.automation | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ● |
Azure Arc azure.mgmt.arc | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Lighthouse azure.mgmt.lighthouse | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Advisor azure.mgmt.advisor | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ● |
Resource Graph azure.mgmt.resourcegraph | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
IoT Hub azure.iot.hub | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
IoT Central azure.iot.central | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Digital Twins azure.iot.digitaltwins | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Device Provisioning Service azure.iot.dps | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Sphere azure.iot.sphere | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Communication Services azure.media.acs | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Maps azure.media.maps | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Recovery Services Vault azure.migration.recoveryvault | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Azure Migrate azure.migration.databoxedge | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
Database Migration Service azure.migration.dms | ● | ● | ○ | ◐ | ✕ | ◐ | ◐ | ● | ○ |
EC2 aws.compute.ec2 | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Auto Scaling Groups aws.compute.asg | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
ECS aws.compute.ecs | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
EKS aws.compute.eks | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Fargate aws.compute.fargate | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Lambda aws.compute.lambda | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ◐ |
Batch aws.compute.batch | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
App Runner aws.compute.apprunner | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
VPC aws.network.vpc | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Subnet aws.network.subnet | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Security Group aws.network.sg | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ◐ |
Network ACL aws.network.nacl | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Route Table aws.network.routetable | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Internet Gateway aws.network.igw | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
NAT Gateway aws.network.natgw | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Transit Gateway aws.network.tgw | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
VPN Gateway aws.network.vpngw | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Direct Connect aws.network.directconnect | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
ELB (classic) aws.network.elb | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Application Load Balancer aws.network.alb | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Network Load Balancer aws.network.nlb | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
CloudFront aws.network.cloudfront | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Route 53 aws.network.route53 | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
PrivateLink aws.network.privatelink | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
S3 aws.storage.s3 | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ◐ |
EBS aws.storage.ebs | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
EFS aws.storage.efs | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
FSx aws.storage.fsx | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
S3 Glacier aws.storage.glacier | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
RDS aws.db.rds | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ◐ |
Aurora aws.db.aurora | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
DynamoDB aws.db.dynamodb | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
ElastiCache aws.db.elasticache | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
DocumentDB aws.db.documentdb | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Neptune aws.db.neptune | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Redshift aws.db.redshift | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
OpenSearch aws.db.opensearch | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
IAM aws.identity.iam | ◐ | ◐ | ○ | ○ | ✕ | ◐ | ○ | ◐ | ◐ |
Cognito aws.identity.cognito | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
AWS SSO / IAM Identity Center aws.identity.sso | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Secrets Manager aws.identity.secretsmanager | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
KMS aws.identity.kms | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Security Hub aws.security.securityhub | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ○ | ◐ | ○ |
GuardDuty aws.security.guardduty | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Inspector aws.security.inspector | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Macie aws.security.macie | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Detective aws.security.detective | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
AWS Config aws.security.config | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ○ | ◐ | ○ |
CloudTrail aws.security.cloudtrail | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
WAF aws.security.waf | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Shield aws.security.shield | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Firewall Manager aws.security.firewallmgr | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
CloudWatch Metrics aws.obs.cloudwatch | ◐ | ◐ | ○ | ○ | ✕ | ○ | ◐ | ◐ | ○ |
CloudWatch Logs aws.obs.cwlogs | ◐ | ◐ | ○ | ○ | ✕ | ○ | ◐ | ◐ | ○ |
X-Ray aws.obs.xray | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
EventBridge aws.obs.eventbridge | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
SQS aws.integration.sqs | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
SNS aws.integration.sns | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Step Functions aws.integration.stepfn | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
API Gateway aws.integration.apigw | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
AppSync aws.integration.appsync | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Organizations aws.mgmt.organizations | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Control Tower aws.mgmt.controltower | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Service Catalog aws.mgmt.servicecatalog | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
CloudFormation aws.mgmt.cfn | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Systems Manager aws.mgmt.ssm | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
ECR aws.devops.ecr | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
CodeBuild aws.devops.codebuild | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
CodePipeline aws.devops.codepipeline | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
CodeArtifact aws.devops.codeartifact | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Compute Engine gcp.compute.gce | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
GKE gcp.compute.gke | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ◐ |
Cloud Run gcp.compute.cloudrun | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud Functions gcp.compute.functions | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ◐ |
App Engine gcp.compute.appengine | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
GCP Batch gcp.compute.batch | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
VPC gcp.network.vpc | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Subnetwork gcp.network.subnet | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Firewall Rule gcp.network.firewall | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Routes gcp.network.routes | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud NAT gcp.network.cloudnat | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud Load Balancing gcp.network.lb | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud CDN gcp.network.cdn | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Private Service Connect gcp.network.psc | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud DNS gcp.network.dns | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud Armor gcp.network.cloudarmor | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Interconnect gcp.network.interconnect | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud VPN gcp.network.vpn | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud Storage gcp.storage.gcs | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ◐ |
Persistent Disk gcp.storage.disk | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Filestore gcp.storage.filestore | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud SQL gcp.db.cloudsql | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ◐ |
Spanner gcp.db.spanner | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Firestore gcp.db.firestore | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Bigtable gcp.db.bigtable | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
AlloyDB gcp.db.alloydb | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Memorystore gcp.db.memorystore | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud IAM gcp.identity.iam | ◐ | ◐ | ○ | ○ | ✕ | ◐ | ○ | ◐ | ○ |
Identity-Aware Proxy gcp.identity.iap | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Secret Manager gcp.identity.secretmanager | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud KMS gcp.identity.kms | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud Identity gcp.identity.cloudidentity | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Security Command Center gcp.security.scc | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ○ | ◐ | ○ |
Binary Authorization gcp.security.binaryauth | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Access Context Manager gcp.security.accesscontext | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
VPC Service Controls gcp.security.vpcsc | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Chronicle gcp.security.chronicle | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud Logging gcp.obs.logging | ◐ | ◐ | ○ | ○ | ✕ | ○ | ◐ | ◐ | ○ |
Cloud Monitoring gcp.obs.monitoring | ◐ | ◐ | ○ | ○ | ✕ | ○ | ◐ | ◐ | ○ |
Cloud Trace gcp.obs.trace | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Error Reporting gcp.obs.errorrep | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
BigQuery gcp.analytics.bigquery | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Dataflow gcp.analytics.dataflow | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Dataproc gcp.analytics.dataproc | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Pub/Sub gcp.integration.pubsub | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud Tasks gcp.integration.cloudtasks | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Workflows gcp.integration.workflows | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Eventarc gcp.integration.eventarc | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Cloud Endpoints gcp.integration.endpoints | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Organization gcp.mgmt.org | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Folder gcp.mgmt.folder | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Project gcp.mgmt.project | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Marketplace gcp.mgmt.marketplace | ◐ | ◐ | ○ | ○ | ✕ | ○ | ○ | ◐ | ○ |
Pod k8s.workload.pod | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
Deployment k8s.workload.deployment | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
StatefulSet k8s.workload.statefulset | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
DaemonSet k8s.workload.daemonset | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
Job k8s.workload.job | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
CronJob k8s.workload.cronjob | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
ReplicaSet k8s.workload.rs | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
ConfigMap k8s.config.configmap | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
Secret k8s.config.secret | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
Service k8s.net.service | ● | ● | ● | ◐ | ◐ | ● | ◐ | ✕ | ○ |
Ingress k8s.net.ingress | ● | ● | ● | ◐ | ◐ | ● | ◐ | ✕ | ○ |
NetworkPolicy k8s.net.netpol | ● | ● | ◐ | ◐ | ● | ● | ◐ | ✕ | ○ |
Endpoints k8s.net.endpoint | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
EndpointSlice k8s.net.endpointslice | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
Role k8s.rbac.role | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
ClusterRole k8s.rbac.clusterrole | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
RoleBinding k8s.rbac.rb | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
ClusterRoleBinding k8s.rbac.crb | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
ServiceAccount k8s.rbac.sa | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
PodSecurityAdmission k8s.policy.psp | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
Namespace k8s.namespace | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
Node k8s.node | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
PersistentVolume k8s.storage.pv | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
PersistentVolumeClaim k8s.storage.pvc | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
StorageClass k8s.storage.sc | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
HorizontalPodAutoscaler k8s.autoscaling.hpa | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
VerticalPodAutoscaler k8s.autoscaling.vpa | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
CustomResourceDefinition k8s.crd | ● | ● | ◐ | ◐ | ◐ | ● | ◐ | ✕ | ○ |
Microsoft Entra ID identity.entra | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Microsoft Entra B2C identity.entra_b2c | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Entra Domain Services identity.entra_ds | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Active Directory Federation Services (ADFS) identity.adfs | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Active Directory (on-prem) identity.active_directory | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
LDAP / OpenLDAP identity.ldap | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Okta identity.okta | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Ping Identity identity.ping | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
OneLogin identity.onelogin | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
ForgeRock Identity Cloud identity.forgerock | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Auth0 (Okta) identity.auth0 | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
JumpCloud identity.jumpcloud | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Google Cloud Identity identity.gcp_identity | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Amazon Cognito identity.cognito | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
SailPoint IdentityNow identity.sailpoint | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Saviynt Identity Cloud identity.saviynt | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
CyberArk identity.cyberark | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Delinea (Thycotic + Centrify) identity.delinea | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Duo Security (Cisco) identity.duo | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
RSA SecurID identity.rsa_securid | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
Keycloak identity.keycloak | ○ | ○ | ○ | ○ | ✕ | ○ | ◐ | ✕ | ○ |
ExpressRoute (Azure) hybrid.azure.expressroute | ◐ | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ✕ | ○ |
VPN Gateway (Azure) hybrid.azure.vpngateway | ◐ | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ✕ | ○ |
Direct Connect (AWS) hybrid.aws.directconnect | ◐ | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ✕ | ○ |
Site-to-Site VPN (AWS) hybrid.aws.sitevpn | ◐ | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ✕ | ○ |
Cloud Interconnect (GCP) hybrid.gcp.interconnect | ◐ | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ✕ | ○ |
Cloud VPN (GCP) hybrid.gcp.cloudvpn | ◐ | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ✕ | ○ |
Hybrid DNS resolution hybrid.dns.resolver | ◐ | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ✕ | ○ |
Identity federation hybrid.identity.federation | ◐ | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ✕ | ○ |
ServiceNow CMDB hybrid.cmdb.servicenow | ◐ | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ✕ | ○ |
Webhook integration bridge hybrid.webhook.bridge | ◐ | ◐ | ◐ | ○ | ◐ | ✕ | ○ | ✕ | ○ |
Read-only and advisory by design — we never modify cloud resources. The grades describe what we can observe, not what we can change.