Access control with IAM
Google Cloud offers Identity and Access Management (IAM), which lets you give granular access to specific Google Cloud resources and prevents unwanted access to other resources.
Web Risk provides access control for Web Risk APIs using VPC Service Controls.
To learn how to assign IAM roles to a user or service account, read Managing policies in the IAM documentation.
Permissions and roles
This section summarizes the permissions and roles Web Risk supports.
API permissions
Web Risk does not require any special permissions to call any APIs. This means you can use service accounts with no IAM roles.
VPC Service Controls
VPC Service Controls supports Web Risk to provide additional access control for Web Risk APIs. For more information, see Supported products and limitations > Web Risk.