Open brandonjbjelland opened 1 year ago
GCP does not seem to have an atomatic way to add or remove a specific principal binding to a specific role. So updates should be kept to a minimum. There is a risk of overwriting someones IAM policy incorrect whenever we add or remove IAM policy bindings on GCP.
Context: https://github.com/substratusai/substratus/pull/171#discussion_r1290099399