ProviderObjectPrefix typedef
An object-key prefix within the account's bucket: one or more segments of lowercase
letters, digits, ., _ and -, each beginning with a letter or digit and ending
with /. No quote, backslash, wildcard, whitespace, .. segment or empty segment
can appear. That is deliberate: the custodian places this value inside a provider
policy — an IAM session policy (JSON), a GCS Credential Access Boundary condition
(CEL) — and a value able to carry a metacharacter can break out of the string it is
placed in and widen the policy. That is a known class of defect (CVE-2026-42811, a
CEL injection in downscoped GCS credentials). Even with this pattern, a custodian
MUST build provider policies with the provider language's own encoder, never by
string interpolation.
Implementation
typedef ProviderObjectPrefix = String;