DefaultObjectAccessControls: get

Returns the default object ACL entry for the specified entity on the specified bucket.

Required permissions

To use this method, the authenticated user must have the following IAM permissions for the bucket containing the default object ACL entry:

  • storage.buckets.get
  • storage.buckets.getIamPolicy


HTTP request


In addition to standard query parameters, the following query parameters apply to this method.

To see an example of how to include query parameters in a request, see the JSON API Overview page.


Parameter name Value Description
Path parameters
bucket string Name of a bucket.
entity string The entity holding the permission. Can be user-emailAddress, group-groupId, group-emailAddress, allUsers, or allAuthenticatedUsers.

Request body

Do not supply a request body with this method.


If successful, this method returns a DefaultObjectAccessControls resource in the response body.

Try it!

Use the APIs Explorer below to call this method on live data and see the response.