ProviderObjectPrefix typedef

ProviderObjectPrefix = String

An object-key prefix within the account's bucket: one or more segments of lowercase letters, digits, ., _ and -, each beginning with a letter or digit and ending with /. No quote, backslash, wildcard, whitespace, .. segment or empty segment can appear. That is deliberate: the custodian places this value inside a provider policy — an IAM session policy (JSON), a GCS Credential Access Boundary condition (CEL) — and a value able to carry a metacharacter can break out of the string it is placed in and widen the policy. That is a known class of defect (CVE-2026-42811, a CEL injection in downscoped GCS credentials). Even with this pattern, a custodian MUST build provider policies with the provider language's own encoder, never by string interpolation.

Implementation

typedef ProviderObjectPrefix = String;