Status: IN
The Service Account User role (roles/iam.serviceAccountUser) is a privilege escalation vector — anyone with this role inherits the service account's full access.
Source: entries/2026/03/10/iam-best-practices.md
JSON