notes
Creates, updates, deletes, gets or lists a notes resource.
Overview
| Name | notes |
| Type | Resource |
| Id | google.containeranalysis.notes |
Fields
The following fields are returned by SELECT queries:
- projects_locations_notes_get
- projects_locations_notes_list
- projects_notes_get
- projects_notes_list
| Name | Datatype | Description |
|---|---|---|
name | string | Output only. The name of the note in the form of projects/[PROVIDER_ID]/notes/[NOTE_ID]. |
aiSkillAnalysis | object | A note describing an AI skill analysis. (id: AISkillAnalysisNote) |
attestation | object | A note describing an attestation role. (id: AttestationNote) |
build | object | A note describing build provenance for a verifiable build. (id: BuildNote) |
compliance | object | A note describing a compliance check. (id: ComplianceNote) |
createTime | string (google-datetime) | Output only. The time this note was created. This field can be used as a filter in list requests. |
deployment | object | A note describing something that can be deployed. (id: DeploymentNote) |
discovery | object | A note describing the initial analysis of a resource. (id: DiscoveryNote) |
dsseAttestation | object | A note describing a dsse attestation note. (id: DSSEAttestationNote) |
expirationTime | string (google-datetime) | Time of expiration for this note. Empty if note does not expire. |
image | object | A note describing a base image. (id: ImageNote) |
kind | string | Output only. The type of analysis. This field can be used as a filter in list requests. (NOTE_KIND_UNSPECIFIED, VULNERABILITY, BUILD, IMAGE, PACKAGE, DEPLOYMENT, DISCOVERY, ATTESTATION, UPGRADE, COMPLIANCE, DSSE_ATTESTATION, VULNERABILITY_ASSESSMENT, SBOM_REFERENCE, SECRET, AI_SKILL_ANALYSIS) |
longDescription | string | A detailed description of this note. |
package | object | A note describing a package hosted by various package managers. (id: PackageNote) |
relatedNoteNames | array | Other notes related to this note. |
relatedUrl | array | URLs associated with this note. |
sbomReference | object | A note describing an SBOM reference. (id: SBOMReferenceNote) |
secret | object | A note describing a secret. (id: SecretNote) |
shortDescription | string | A one sentence description of this note. |
updateTime | string (google-datetime) | Output only. The time this note was last updated. This field can be used as a filter in list requests. |
upgrade | object | A note describing available package upgrades. (id: UpgradeNote) |
vulnerability | object | A note describing a package vulnerability. (id: VulnerabilityNote) |
vulnerabilityAssessment | object | A note describing a vulnerability assessment. (id: VulnerabilityAssessmentNote) |
| Name | Datatype | Description |
|---|---|---|
name | string | Output only. The name of the note in the form of projects/[PROVIDER_ID]/notes/[NOTE_ID]. |
aiSkillAnalysis | object | A note describing an AI skill analysis. (id: AISkillAnalysisNote) |
attestation | object | A note describing an attestation role. (id: AttestationNote) |
build | object | A note describing build provenance for a verifiable build. (id: BuildNote) |
compliance | object | A note describing a compliance check. (id: ComplianceNote) |
createTime | string (google-datetime) | Output only. The time this note was created. This field can be used as a filter in list requests. |
deployment | object | A note describing something that can be deployed. (id: DeploymentNote) |
discovery | object | A note describing the initial analysis of a resource. (id: DiscoveryNote) |
dsseAttestation | object | A note describing a dsse attestation note. (id: DSSEAttestationNote) |
expirationTime | string (google-datetime) | Time of expiration for this note. Empty if note does not expire. |
image | object | A note describing a base image. (id: ImageNote) |
kind | string | Output only. The type of analysis. This field can be used as a filter in list requests. (NOTE_KIND_UNSPECIFIED, VULNERABILITY, BUILD, IMAGE, PACKAGE, DEPLOYMENT, DISCOVERY, ATTESTATION, UPGRADE, COMPLIANCE, DSSE_ATTESTATION, VULNERABILITY_ASSESSMENT, SBOM_REFERENCE, SECRET, AI_SKILL_ANALYSIS) |
longDescription | string | A detailed description of this note. |
package | object | A note describing a package hosted by various package managers. (id: PackageNote) |
relatedNoteNames | array | Other notes related to this note. |
relatedUrl | array | URLs associated with this note. |
sbomReference | object | A note describing an SBOM reference. (id: SBOMReferenceNote) |
secret | object | A note describing a secret. (id: SecretNote) |
shortDescription | string | A one sentence description of this note. |
updateTime | string (google-datetime) | Output only. The time this note was last updated. This field can be used as a filter in list requests. |
upgrade | object | A note describing available package upgrades. (id: UpgradeNote) |
vulnerability | object | A note describing a package vulnerability. (id: VulnerabilityNote) |
vulnerabilityAssessment | object | A note describing a vulnerability assessment. (id: VulnerabilityAssessmentNote) |
| Name | Datatype | Description |
|---|---|---|
name | string | Output only. The name of the note in the form of projects/[PROVIDER_ID]/notes/[NOTE_ID]. |
aiSkillAnalysis | object | A note describing an AI skill analysis. (id: AISkillAnalysisNote) |
attestation | object | A note describing an attestation role. (id: AttestationNote) |
build | object | A note describing build provenance for a verifiable build. (id: BuildNote) |
compliance | object | A note describing a compliance check. (id: ComplianceNote) |
createTime | string (google-datetime) | Output only. The time this note was created. This field can be used as a filter in list requests. |
deployment | object | A note describing something that can be deployed. (id: DeploymentNote) |
discovery | object | A note describing the initial analysis of a resource. (id: DiscoveryNote) |
dsseAttestation | object | A note describing a dsse attestation note. (id: DSSEAttestationNote) |
expirationTime | string (google-datetime) | Time of expiration for this note. Empty if note does not expire. |
image | object | A note describing a base image. (id: ImageNote) |
kind | string | Output only. The type of analysis. This field can be used as a filter in list requests. (NOTE_KIND_UNSPECIFIED, VULNERABILITY, BUILD, IMAGE, PACKAGE, DEPLOYMENT, DISCOVERY, ATTESTATION, UPGRADE, COMPLIANCE, DSSE_ATTESTATION, VULNERABILITY_ASSESSMENT, SBOM_REFERENCE, SECRET, AI_SKILL_ANALYSIS) |
longDescription | string | A detailed description of this note. |
package | object | A note describing a package hosted by various package managers. (id: PackageNote) |
relatedNoteNames | array | Other notes related to this note. |
relatedUrl | array | URLs associated with this note. |
sbomReference | object | A note describing an SBOM reference. (id: SBOMReferenceNote) |
secret | object | A note describing a secret. (id: SecretNote) |
shortDescription | string | A one sentence description of this note. |
updateTime | string (google-datetime) | Output only. The time this note was last updated. This field can be used as a filter in list requests. |
upgrade | object | A note describing available package upgrades. (id: UpgradeNote) |
vulnerability | object | A note describing a package vulnerability. (id: VulnerabilityNote) |
vulnerabilityAssessment | object | A note describing a vulnerability assessment. (id: VulnerabilityAssessmentNote) |
| Name | Datatype | Description |
|---|---|---|
name | string | Output only. The name of the note in the form of projects/[PROVIDER_ID]/notes/[NOTE_ID]. |
aiSkillAnalysis | object | A note describing an AI skill analysis. (id: AISkillAnalysisNote) |
attestation | object | A note describing an attestation role. (id: AttestationNote) |
build | object | A note describing build provenance for a verifiable build. (id: BuildNote) |
compliance | object | A note describing a compliance check. (id: ComplianceNote) |
createTime | string (google-datetime) | Output only. The time this note was created. This field can be used as a filter in list requests. |
deployment | object | A note describing something that can be deployed. (id: DeploymentNote) |
discovery | object | A note describing the initial analysis of a resource. (id: DiscoveryNote) |
dsseAttestation | object | A note describing a dsse attestation note. (id: DSSEAttestationNote) |
expirationTime | string (google-datetime) | Time of expiration for this note. Empty if note does not expire. |
image | object | A note describing a base image. (id: ImageNote) |
kind | string | Output only. The type of analysis. This field can be used as a filter in list requests. (NOTE_KIND_UNSPECIFIED, VULNERABILITY, BUILD, IMAGE, PACKAGE, DEPLOYMENT, DISCOVERY, ATTESTATION, UPGRADE, COMPLIANCE, DSSE_ATTESTATION, VULNERABILITY_ASSESSMENT, SBOM_REFERENCE, SECRET, AI_SKILL_ANALYSIS) |
longDescription | string | A detailed description of this note. |
package | object | A note describing a package hosted by various package managers. (id: PackageNote) |
relatedNoteNames | array | Other notes related to this note. |
relatedUrl | array | URLs associated with this note. |
sbomReference | object | A note describing an SBOM reference. (id: SBOMReferenceNote) |
secret | object | A note describing a secret. (id: SecretNote) |
shortDescription | string | A one sentence description of this note. |
updateTime | string (google-datetime) | Output only. The time this note was last updated. This field can be used as a filter in list requests. |
upgrade | object | A note describing available package upgrades. (id: UpgradeNote) |
vulnerability | object | A note describing a package vulnerability. (id: VulnerabilityNote) |
vulnerabilityAssessment | object | A note describing a vulnerability assessment. (id: VulnerabilityAssessmentNote) |
Methods
The following methods are available for this resource:
Parameters
Parameters can be passed in the WHERE clause of a query. Check the Methods section to see which parameters are required or optional for each operation.
| Name | Datatype | Description |
|---|---|---|
locationsId | string | |
notesId | string | |
projectsId | string | |
filter | string | |
noteId | string | |
pageSize | integer (int32) | |
pageToken | string | |
returnPartialSuccess | boolean | |
updateMask | string (google-fieldmask) |
SELECT examples
- projects_locations_notes_get
- projects_locations_notes_list
- projects_notes_get
- projects_notes_list
Gets the specified note.
SELECT
name,
aiSkillAnalysis,
attestation,
build,
compliance,
createTime,
deployment,
discovery,
dsseAttestation,
expirationTime,
image,
kind,
longDescription,
package,
relatedNoteNames,
relatedUrl,
sbomReference,
secret,
shortDescription,
updateTime,
upgrade,
vulnerability,
vulnerabilityAssessment
FROM google.containeranalysis.notes
WHERE projectsId = '{{ projectsId }}' -- required
AND locationsId = '{{ locationsId }}' -- required
AND notesId = '{{ notesId }}' -- required
;
Lists notes for the specified project.
SELECT
name,
aiSkillAnalysis,
attestation,
build,
compliance,
createTime,
deployment,
discovery,
dsseAttestation,
expirationTime,
image,
kind,
longDescription,
package,
relatedNoteNames,
relatedUrl,
sbomReference,
secret,
shortDescription,
updateTime,
upgrade,
vulnerability,
vulnerabilityAssessment
FROM google.containeranalysis.notes
WHERE projectsId = '{{ projectsId }}' -- required
AND locationsId = '{{ locationsId }}' -- required
AND filter = '{{ filter }}'
AND pageSize = '{{ pageSize }}'
AND pageToken = '{{ pageToken }}'
AND returnPartialSuccess = '{{ returnPartialSuccess }}'
;
Gets the specified note.
SELECT
name,
aiSkillAnalysis,
attestation,
build,
compliance,
createTime,
deployment,
discovery,
dsseAttestation,
expirationTime,
image,
kind,
longDescription,
package,
relatedNoteNames,
relatedUrl,
sbomReference,
secret,
shortDescription,
updateTime,
upgrade,
vulnerability,
vulnerabilityAssessment
FROM google.containeranalysis.notes
WHERE projectsId = '{{ projectsId }}' -- required
AND notesId = '{{ notesId }}' -- required
;
Lists notes for the specified project.
SELECT
name,
aiSkillAnalysis,
attestation,
build,
compliance,
createTime,
deployment,
discovery,
dsseAttestation,
expirationTime,
image,
kind,
longDescription,
package,
relatedNoteNames,
relatedUrl,
sbomReference,
secret,
shortDescription,
updateTime,
upgrade,
vulnerability,
vulnerabilityAssessment
FROM google.containeranalysis.notes
WHERE projectsId = '{{ projectsId }}' -- required
AND filter = '{{ filter }}'
AND pageSize = '{{ pageSize }}'
AND pageToken = '{{ pageToken }}'
AND returnPartialSuccess = '{{ returnPartialSuccess }}'
;
INSERT examples
- projects_locations_notes_batch_create
- projects_locations_notes_create
- projects_notes_batch_create
- projects_notes_create
- Manifest
Creates new notes in batch.
INSERT INTO google.containeranalysis.notes (
data__notes,
projectsId,
locationsId
)
SELECT
'{{ notes }}',
'{{ projectsId }}',
'{{ locationsId }}'
RETURNING
notes
;
Creates a new note.
INSERT INTO google.containeranalysis.notes (
data__aiSkillAnalysis,
data__attestation,
data__build,
data__compliance,
data__createTime,
data__deployment,
data__discovery,
data__dsseAttestation,
data__expirationTime,
data__image,
data__kind,
data__longDescription,
data__name,
data__package,
data__relatedNoteNames,
data__relatedUrl,
data__sbomReference,
data__secret,
data__shortDescription,
data__updateTime,
data__upgrade,
data__vulnerability,
data__vulnerabilityAssessment,
projectsId,
locationsId,
noteId
)
SELECT
'{{ aiSkillAnalysis }}',
'{{ attestation }}',
'{{ build }}',
'{{ compliance }}',
'{{ createTime }}',
'{{ deployment }}',
'{{ discovery }}',
'{{ dsseAttestation }}',
'{{ expirationTime }}',
'{{ image }}',
'{{ kind }}',
'{{ longDescription }}',
'{{ name }}',
'{{ package }}',
'{{ relatedNoteNames }}',
'{{ relatedUrl }}',
'{{ sbomReference }}',
'{{ secret }}',
'{{ shortDescription }}',
'{{ updateTime }}',
'{{ upgrade }}',
'{{ vulnerability }}',
'{{ vulnerabilityAssessment }}',
'{{ projectsId }}',
'{{ locationsId }}',
'{{ noteId }}'
RETURNING
name,
aiSkillAnalysis,
attestation,
build,
compliance,
createTime,
deployment,
discovery,
dsseAttestation,
expirationTime,
image,
kind,
longDescription,
package,
relatedNoteNames,
relatedUrl,
sbomReference,
secret,
shortDescription,
updateTime,
upgrade,
vulnerability,
vulnerabilityAssessment
;
Creates new notes in batch.
INSERT INTO google.containeranalysis.notes (
data__notes,
projectsId
)
SELECT
'{{ notes }}',
'{{ projectsId }}'
RETURNING
notes
;
Creates a new note.
INSERT INTO google.containeranalysis.notes (
data__aiSkillAnalysis,
data__attestation,
data__build,
data__compliance,
data__createTime,
data__deployment,
data__discovery,
data__dsseAttestation,
data__expirationTime,
data__image,
data__kind,
data__longDescription,
data__name,
data__package,
data__relatedNoteNames,
data__relatedUrl,
data__sbomReference,
data__secret,
data__shortDescription,
data__updateTime,
data__upgrade,
data__vulnerability,
data__vulnerabilityAssessment,
projectsId,
noteId
)
SELECT
'{{ aiSkillAnalysis }}',
'{{ attestation }}',
'{{ build }}',
'{{ compliance }}',
'{{ createTime }}',
'{{ deployment }}',
'{{ discovery }}',
'{{ dsseAttestation }}',
'{{ expirationTime }}',
'{{ image }}',
'{{ kind }}',
'{{ longDescription }}',
'{{ name }}',
'{{ package }}',
'{{ relatedNoteNames }}',
'{{ relatedUrl }}',
'{{ sbomReference }}',
'{{ secret }}',
'{{ shortDescription }}',
'{{ updateTime }}',
'{{ upgrade }}',
'{{ vulnerability }}',
'{{ vulnerabilityAssessment }}',
'{{ projectsId }}',
'{{ noteId }}'
RETURNING
name,
aiSkillAnalysis,
attestation,
build,
compliance,
createTime,
deployment,
discovery,
dsseAttestation,
expirationTime,
image,
kind,
longDescription,
package,
relatedNoteNames,
relatedUrl,
sbomReference,
secret,
shortDescription,
updateTime,
upgrade,
vulnerability,
vulnerabilityAssessment
;
# Description fields are for documentation purposes
- name: notes
props:
- name: projectsId
value: "{{ projectsId }}"
description: Required parameter for the notes resource.
- name: locationsId
value: "{{ locationsId }}"
description: Required parameter for the notes resource.
- name: notes
value: "{{ notes }}"
description: |
Required. The notes to create. Max allowed length is 1000.
- name: aiSkillAnalysis
value: "{{ aiSkillAnalysis }}"
description: |
A note describing an AI skill analysis.
- name: attestation
description: |
A note describing an attestation role.
value:
hint:
humanReadableName: "{{ humanReadableName }}"
- name: build
description: |
A note describing build provenance for a verifiable build.
value:
builderVersion: "{{ builderVersion }}"
- name: compliance
description: |
A note describing a compliance check.
value:
cisBenchmark:
profileLevel: {{ profileLevel }}
severity: "{{ severity }}"
description: "{{ description }}"
impact: "{{ impact }}"
rationale: "{{ rationale }}"
remediation: "{{ remediation }}"
scanInstructions: "{{ scanInstructions }}"
title: "{{ title }}"
version:
- benchmarkDocument: "{{ benchmarkDocument }}"
cpeUri: "{{ cpeUri }}"
version: "{{ version }}"
- name: createTime
value: "{{ createTime }}"
description: |
Output only. The time this note was created. This field can be used as a filter in list requests.
- name: deployment
description: |
A note describing something that can be deployed.
value:
resourceUri:
- "{{ resourceUri }}"
- name: discovery
description: |
A note describing the initial analysis of a resource.
value:
analysisKind: "{{ analysisKind }}"
- name: dsseAttestation
description: |
A note describing a dsse attestation note.
value:
hint:
humanReadableName: "{{ humanReadableName }}"
- name: expirationTime
value: "{{ expirationTime }}"
description: |
Time of expiration for this note. Empty if note does not expire.
- name: image
description: |
A note describing a base image.
value:
fingerprint:
v1Name: "{{ v1Name }}"
v2Blob:
- "{{ v2Blob }}"
v2Name: "{{ v2Name }}"
resourceUrl: "{{ resourceUrl }}"
- name: kind
value: "{{ kind }}"
description: |
Output only. The type of analysis. This field can be used as a filter in list requests.
valid_values: ['NOTE_KIND_UNSPECIFIED', 'VULNERABILITY', 'BUILD', 'IMAGE', 'PACKAGE', 'DEPLOYMENT', 'DISCOVERY', 'ATTESTATION', 'UPGRADE', 'COMPLIANCE', 'DSSE_ATTESTATION', 'VULNERABILITY_ASSESSMENT', 'SBOM_REFERENCE', 'SECRET', 'AI_SKILL_ANALYSIS']
- name: longDescription
value: "{{ longDescription }}"
description: |
A detailed description of this note.
- name: name
value: "{{ name }}"
description: |
Output only. The name of the note in the form of `projects/[PROVIDER_ID]/notes/[NOTE_ID]`.
- name: package
description: |
A note describing a package hosted by various package managers.
value:
architecture: "{{ architecture }}"
cpeUri: "{{ cpeUri }}"
description: "{{ description }}"
digest:
- algo: "{{ algo }}"
digestBytes: "{{ digestBytes }}"
distribution:
- architecture: "{{ architecture }}"
cpeUri: "{{ cpeUri }}"
description: "{{ description }}"
latestVersion:
epoch: {{ epoch }}
fullName: "{{ fullName }}"
inclusive: {{ inclusive }}
kind: "{{ kind }}"
name: "{{ name }}"
revision: "{{ revision }}"
maintainer: "{{ maintainer }}"
url: "{{ url }}"
license:
comments: "{{ comments }}"
expression: "{{ expression }}"
maintainer: "{{ maintainer }}"
name: "{{ name }}"
packageType: "{{ packageType }}"
url: "{{ url }}"
version:
epoch: {{ epoch }}
fullName: "{{ fullName }}"
inclusive: {{ inclusive }}
kind: "{{ kind }}"
name: "{{ name }}"
revision: "{{ revision }}"
- name: relatedNoteNames
value:
- "{{ relatedNoteNames }}"
description: |
Other notes related to this note.
- name: relatedUrl
description: |
URLs associated with this note.
value:
- label: "{{ label }}"
url: "{{ url }}"
- name: sbomReference
description: |
A note describing an SBOM reference.
value:
format: "{{ format }}"
version: "{{ version }}"
- name: secret
value: "{{ secret }}"
description: |
A note describing a secret.
- name: shortDescription
value: "{{ shortDescription }}"
description: |
A one sentence description of this note.
- name: updateTime
value: "{{ updateTime }}"
description: |
Output only. The time this note was last updated. This field can be used as a filter in list requests.
- name: upgrade
description: |
A note describing available package upgrades.
value:
distributions:
- classification: "{{ classification }}"
cpeUri: "{{ cpeUri }}"
cve: "{{ cve }}"
severity: "{{ severity }}"
package: "{{ package }}"
version:
epoch: {{ epoch }}
fullName: "{{ fullName }}"
inclusive: {{ inclusive }}
kind: "{{ kind }}"
name: "{{ name }}"
revision: "{{ revision }}"
windowsUpdate:
categories:
- categoryId: "{{ categoryId }}"
name: "{{ name }}"
description: "{{ description }}"
identity:
revision: {{ revision }}
updateId: "{{ updateId }}"
kbArticleIds:
- "{{ kbArticleIds }}"
lastPublishedTimestamp: "{{ lastPublishedTimestamp }}"
supportUrl: "{{ supportUrl }}"
title: "{{ title }}"
- name: vulnerability
description: |
A note describing a package vulnerability.
value:
advisoryPublishTime: "{{ advisoryPublishTime }}"
cvssScore: {{ cvssScore }}
cvssV2:
attackComplexity: "{{ attackComplexity }}"
attackRequirements: "{{ attackRequirements }}"
attackVector: "{{ attackVector }}"
authentication: "{{ authentication }}"
availabilityImpact: "{{ availabilityImpact }}"
baseScore: {{ baseScore }}
confidentialityImpact: "{{ confidentialityImpact }}"
exploitMaturity: "{{ exploitMaturity }}"
exploitabilityScore: {{ exploitabilityScore }}
impactScore: {{ impactScore }}
integrityImpact: "{{ integrityImpact }}"
privilegesRequired: "{{ privilegesRequired }}"
scope: "{{ scope }}"
subsequentSystemAvailabilityImpact: "{{ subsequentSystemAvailabilityImpact }}"
subsequentSystemConfidentialityImpact: "{{ subsequentSystemConfidentialityImpact }}"
subsequentSystemIntegrityImpact: "{{ subsequentSystemIntegrityImpact }}"
userInteraction: "{{ userInteraction }}"
vulnerableSystemAvailabilityImpact: "{{ vulnerableSystemAvailabilityImpact }}"
vulnerableSystemConfidentialityImpact: "{{ vulnerableSystemConfidentialityImpact }}"
vulnerableSystemIntegrityImpact: "{{ vulnerableSystemIntegrityImpact }}"
cvssV3:
attackComplexity: "{{ attackComplexity }}"
attackVector: "{{ attackVector }}"
availabilityImpact: "{{ availabilityImpact }}"
baseScore: {{ baseScore }}
confidentialityImpact: "{{ confidentialityImpact }}"
exploitabilityScore: {{ exploitabilityScore }}
impactScore: {{ impactScore }}
integrityImpact: "{{ integrityImpact }}"
privilegesRequired: "{{ privilegesRequired }}"
scope: "{{ scope }}"
userInteraction: "{{ userInteraction }}"
cvssV4:
attackComplexity: "{{ attackComplexity }}"
attackRequirements: "{{ attackRequirements }}"
attackVector: "{{ attackVector }}"
authentication: "{{ authentication }}"
availabilityImpact: "{{ availabilityImpact }}"
baseScore: {{ baseScore }}
confidentialityImpact: "{{ confidentialityImpact }}"
exploitMaturity: "{{ exploitMaturity }}"
exploitabilityScore: {{ exploitabilityScore }}
impactScore: {{ impactScore }}
integrityImpact: "{{ integrityImpact }}"
privilegesRequired: "{{ privilegesRequired }}"
scope: "{{ scope }}"
subsequentSystemAvailabilityImpact: "{{ subsequentSystemAvailabilityImpact }}"
subsequentSystemConfidentialityImpact: "{{ subsequentSystemConfidentialityImpact }}"
subsequentSystemIntegrityImpact: "{{ subsequentSystemIntegrityImpact }}"
userInteraction: "{{ userInteraction }}"
vulnerableSystemAvailabilityImpact: "{{ vulnerableSystemAvailabilityImpact }}"
vulnerableSystemConfidentialityImpact: "{{ vulnerableSystemConfidentialityImpact }}"
vulnerableSystemIntegrityImpact: "{{ vulnerableSystemIntegrityImpact }}"
cvssVersion: "{{ cvssVersion }}"
details:
- affectedCpeUri: "{{ affectedCpeUri }}"
affectedPackage: "{{ affectedPackage }}"
affectedVersionEnd:
epoch: {{ epoch }}
fullName: "{{ fullName }}"
inclusive: {{ inclusive }}
kind: "{{ kind }}"
name: "{{ name }}"
revision: "{{ revision }}"
affectedVersionStart:
epoch: {{ epoch }}
fullName: "{{ fullName }}"
inclusive: {{ inclusive }}
kind: "{{ kind }}"
name: "{{ name }}"
revision: "{{ revision }}"
description: "{{ description }}"
fixedCpeUri: "{{ fixedCpeUri }}"
fixedPackage: "{{ fixedPackage }}"
fixedVersion:
epoch: {{ epoch }}
fullName: "{{ fullName }}"
inclusive: {{ inclusive }}
kind: "{{ kind }}"
name: "{{ name }}"
revision: "{{ revision }}"
isObsolete: {{ isObsolete }}
packageType: "{{ packageType }}"
severityName: "{{ severityName }}"
source: "{{ source }}"
sourceUpdateTime: "{{ sourceUpdateTime }}"
vendor: "{{ vendor }}"
severity: "{{ severity }}"
sourceUpdateTime: "{{ sourceUpdateTime }}"
windowsDetails:
- cpeUri: "{{ cpeUri }}"
description: "{{ description }}"
fixingKbs: "{{ fixingKbs }}"
name: "{{ name }}"
- name: vulnerabilityAssessment
description: |
A note describing a vulnerability assessment.
value:
assessment:
cve: "{{ cve }}"
impacts:
- "{{ impacts }}"
justification:
details: "{{ details }}"
justificationType: "{{ justificationType }}"
longDescription: "{{ longDescription }}"
relatedUris:
- label: "{{ label }}"
url: "{{ url }}"
remediations:
- details: "{{ details }}"
remediationType: "{{ remediationType }}"
remediationUri:
label: "{{ label }}"
url: "{{ url }}"
shortDescription: "{{ shortDescription }}"
state: "{{ state }}"
vulnerabilityId: "{{ vulnerabilityId }}"
languageCode: "{{ languageCode }}"
longDescription: "{{ longDescription }}"
product:
genericUri: "{{ genericUri }}"
id: "{{ id }}"
name: "{{ name }}"
publisher:
issuingAuthority: "{{ issuingAuthority }}"
name: "{{ name }}"
publisherNamespace: "{{ publisherNamespace }}"
shortDescription: "{{ shortDescription }}"
title: "{{ title }}"
- name: noteId
value: "{{ noteId }}"
UPDATE examples
- projects_locations_notes_patch
- projects_notes_patch
Updates the specified note.
UPDATE google.containeranalysis.notes
SET
data__aiSkillAnalysis = '{{ aiSkillAnalysis }}',
data__attestation = '{{ attestation }}',
data__build = '{{ build }}',
data__compliance = '{{ compliance }}',
data__createTime = '{{ createTime }}',
data__deployment = '{{ deployment }}',
data__discovery = '{{ discovery }}',
data__dsseAttestation = '{{ dsseAttestation }}',
data__expirationTime = '{{ expirationTime }}',
data__image = '{{ image }}',
data__kind = '{{ kind }}',
data__longDescription = '{{ longDescription }}',
data__name = '{{ name }}',
data__package = '{{ package }}',
data__relatedNoteNames = '{{ relatedNoteNames }}',
data__relatedUrl = '{{ relatedUrl }}',
data__sbomReference = '{{ sbomReference }}',
data__secret = '{{ secret }}',
data__shortDescription = '{{ shortDescription }}',
data__updateTime = '{{ updateTime }}',
data__upgrade = '{{ upgrade }}',
data__vulnerability = '{{ vulnerability }}',
data__vulnerabilityAssessment = '{{ vulnerabilityAssessment }}'
WHERE
projectsId = '{{ projectsId }}' --required
AND locationsId = '{{ locationsId }}' --required
AND notesId = '{{ notesId }}' --required
AND updateMask = '{{ updateMask}}'
RETURNING
name,
aiSkillAnalysis,
attestation,
build,
compliance,
createTime,
deployment,
discovery,
dsseAttestation,
expirationTime,
image,
kind,
longDescription,
package,
relatedNoteNames,
relatedUrl,
sbomReference,
secret,
shortDescription,
updateTime,
upgrade,
vulnerability,
vulnerabilityAssessment;
Updates the specified note.
UPDATE google.containeranalysis.notes
SET
data__aiSkillAnalysis = '{{ aiSkillAnalysis }}',
data__attestation = '{{ attestation }}',
data__build = '{{ build }}',
data__compliance = '{{ compliance }}',
data__createTime = '{{ createTime }}',
data__deployment = '{{ deployment }}',
data__discovery = '{{ discovery }}',
data__dsseAttestation = '{{ dsseAttestation }}',
data__expirationTime = '{{ expirationTime }}',
data__image = '{{ image }}',
data__kind = '{{ kind }}',
data__longDescription = '{{ longDescription }}',
data__name = '{{ name }}',
data__package = '{{ package }}',
data__relatedNoteNames = '{{ relatedNoteNames }}',
data__relatedUrl = '{{ relatedUrl }}',
data__sbomReference = '{{ sbomReference }}',
data__secret = '{{ secret }}',
data__shortDescription = '{{ shortDescription }}',
data__updateTime = '{{ updateTime }}',
data__upgrade = '{{ upgrade }}',
data__vulnerability = '{{ vulnerability }}',
data__vulnerabilityAssessment = '{{ vulnerabilityAssessment }}'
WHERE
projectsId = '{{ projectsId }}' --required
AND notesId = '{{ notesId }}' --required
AND updateMask = '{{ updateMask}}'
RETURNING
name,
aiSkillAnalysis,
attestation,
build,
compliance,
createTime,
deployment,
discovery,
dsseAttestation,
expirationTime,
image,
kind,
longDescription,
package,
relatedNoteNames,
relatedUrl,
sbomReference,
secret,
shortDescription,
updateTime,
upgrade,
vulnerability,
vulnerabilityAssessment;
DELETE examples
- projects_locations_notes_delete
- projects_notes_delete
Deletes the specified note.
DELETE FROM google.containeranalysis.notes
WHERE projectsId = '{{ projectsId }}' --required
AND locationsId = '{{ locationsId }}' --required
AND notesId = '{{ notesId }}' --required
;
Deletes the specified note.
DELETE FROM google.containeranalysis.notes
WHERE projectsId = '{{ projectsId }}' --required
AND notesId = '{{ notesId }}' --required
;