MEDIUM
Source
CloudSploit
ID
disable-guest-attributes

Disable Guest Attributes

Determine if “Disable Guest Attributes of Compute Engine Metadata” constraint policy is enabled at the GCP organization level.

Guest attributes are used for VM instance configuration. For security reasons, ensure that users cannot configure guest attributes for your VM instances.

Ensure that “Disable Guest Attributes of Compute Engine Metadata” constraint is enforced at the organization level.