Stay organized with collections
Save and categorize content based on your preferences.
Access control with IAM
Google Cloud offers
Identity and Access Management (IAM), which lets
you give granular access to specific Google Cloud resources
and prevents unwanted access to other resources.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-08-29 UTC."],[],[],null,["# Access control with IAM\n=======================\n\nGoogle Cloud offers\n[Identity and Access Management (IAM)](/iam/docs), which lets\nyou give granular access to specific Google Cloud resources\nand prevents unwanted access to other resources.\n\nWeb Risk provides access control for Web Risk APIs using [VPC Service Controls](/vpc-service-controls/docs).\n\nTo learn how to assign IAM roles to a user or service account,\nread [Managing policies](/iam/docs/managing-policies) in the IAM\ndocumentation.\n\nPermissions and roles\n---------------------\n\nThis section summarizes the permissions and roles Web Risk supports.\n\n### API permissions\n\nWeb Risk does not require any special permissions to call any APIs. This means\nyou can use service accounts with no IAM roles.\n\nVPC Service Controls\n--------------------\n\nVPC Service Controls supports Web Risk to provide additional\naccess control for Web Risk\nAPIs. For more information, see\n[Supported products and limitations \\\u003e Web Risk](/vpc-service-controls/docs/supported-products#table_webrisk)."]]