Identity and Access Management (IAM) lets you
grant roles conditionally. However, some Google Cloud
services don't allow conditional role bindings in their resources' allow
policies.
This page lists the services that allow conditional role bindings in their
resources' allow policies. To see which resource types for these services have
allow policies, see Resource types that accept allow
policies.
If you need to grant conditional access to a resource that doesn't allow
conditions or a resource that doesn't have an allow policy, see Support for
inherited conditions.
Services that allow conditions
You can add conditions to allow policies for resources from the
following services:
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-10-24 UTC."],[],[]]