All skills
google avatar

/spanner-basics

@becc4b8
by googlegoogle/skills21k stars
1,698

Assists in provisioning instances and databases, designing performant schemas, and querying data in Spanner. Use when designing primary keys, writing SQL queries or client library code, or diagnosing performance issues.

Use this Skill: https://skilld.dev/gh/google/skills/spanner-basics

This session only. Nothing lands on disk.

referencesiam-security.md

≈306 tokens on demand. Your agent reads this file only when SKILL.md points to it.

IAM Security

Common IAM roles for Spanner and security best practices.

Predefined IAM Roles

  • Cloud Spanner Admin (roles/spanner.admin): Full control over all Spanner resources.
  • Cloud Spanner Database Admin (roles/spanner.databaseAdmin): Full control over databases, backups, and operations.
  • Cloud Spanner Database Reader (roles/spanner.databaseReader): Can read data and execute queries.
  • Cloud Spanner Database User (roles/spanner.databaseUser): Can read and write data.
  • Cloud Spanner Viewer (roles/spanner.viewer): Can view Spanner resources but cannot access data.

Security Best Practices

  • Principle of Least Privilege: Grant only the minimum necessary permissions to users and service accounts.
  • Use Service Accounts: For applications, use service accounts instead of personal user accounts.
  • VPC Service Controls: Use VPC Service Controls to help mitigate data exfiltration risks.
  • CMEK: Use Customer-Managed Encryption Keys (CMEK) if required by your security policy.

[!CAUTION] Granting roles/spanner.admin gives full access to all Spanner resources in the project. Use with caution.

Source: SKILL.md on GitHub

No alerts10d3 checks · Risk SAFE
  • Gen Agent Trust Hub10d

    This skill is designed to assist with Google Cloud Spanner administration and development. It provides standard workflows for schema design, SQL querying, and resource management using official Google tools and libraries. It includes appropriate safety guardrails requiring user confirmation for destructive database operations.

  • Socket10d

    No alerts

  • Snyk10d

    Risk: LOW · No issues

Signed by skilld at becc4b8. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub yesterday.

Activeupdated 2 weeks ago
metadata
{
  "version": "1.0.0",
  "category": "Databases"
}

README badge

README badge for google/skills/spanner-basics