{
  "title": "DDetectiveActorAttributionOptional",
  "description": "Optional custom role for the Cloudkeel-DD GCP connector - lets Cloudkeel-DD look up who most recently changed a resource via Cloud Audit Logs' Admin Activity log. Scanning works identically without this role; only the 'changed by' field on drift findings stays blank for GCP resources.",
  "stage": "GA",
  "includedPermissions": [
    "logging.logEntries.list"
  ]
}
