HEX
Server: Apache/2.4.65 (Ubuntu)
System: Linux ielts-store-v2 6.8.0-1036-gcp #38~22.04.1-Ubuntu SMP Thu Aug 14 01:19:18 UTC 2025 x86_64
User: root (0)
PHP: 7.2.34-54+ubuntu20.04.1+deb.sury.org+1
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,
Upload Files
File: //snap/google-cloud-cli/current/lib/surface/scc/artifact_guard/policies/create.yaml
- release_tracks: [ALPHA]
  hidden: true
  help_text:
    brief: |
      Create a new artifact guard policy.
    description: |
      Create a new artifact policy, which is used to guardrail the vulnerabilities that can
      be present in an artifact. Each policy has two defining components:
      1. Policy Definition: The various rules a given image must adhere to. For this release, the
        policy definition is limited to a list of allowed vulnerabilities.
      2. Scope: This defines the resources that the policy will be applied to. For this release, the
        scope is limited to pipeline type.
    examples: |
      Create a policy with full name:
      $ {command} organizations/123/locations/global/policies/my-policy --policy-file-path=/usr/local/home/user/policy.yaml

      Create a policy with policy id:
      $ {command} my-policy --policy-file-path=/usr/local/home/user/policy.yaml --location=global --organization=123

  request:
    collection: artifactscanguard.organizations.locations.policies
    api_version: v1alpha
    method: create

  arguments:
    resource:
      spec: !REF googlecloudsdk.command_lib.scc.resources:policy
      help_text: |
        The full name of the policy to create. For example:
        organizations/123/locations/global/policies/myPolicy

    params:
    - arg_name: policy-file-path
      api_field: policy
      required: true
      type: "googlecloudsdk.calliope.arg_parsers:FileContents:"
      processor: googlecloudsdk.core.yaml:load
      help_text: |
        YAML file containing the body of the policy to be created.

    - arg_name: validate-only
      api_field: validateOnly
      type: bool
      help_text: |
        If set, the request will be validated but not executed.