implementing-zero-trust-with-beyondcorp — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited implementing-zero-trust-with-beyondcorp (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Google BeyondCorp Enterprise implements the zero trust security model by eliminating the concept of a trusted network perimeter. Instead of relying on VPNs and network location, BeyondCorp authenticates and authorizes every request based on user identity, device posture, and contextual attributes. Identity-Aware Proxy (IAP) serves as the enforcement point, intercepting all requests to protected resources and evaluating them against Access Context Manager policies. This skill covers configuring IAP for web applications, defining access levels based on device trust and network attributes, and auditing access policies for compliance.
Configure Identity-Aware Proxy on Compute Engine, App Engine, or HTTPS load balancer backends.
Create Access Context Manager access levels based on IP ranges, device attributes (OS version, encryption, screen lock), and geographic location.
Apply access levels as IAP conditions to enforce context-aware access decisions on protected resources.
Query IAP audit logs, verify policy enforcement, and identify gaps in zero trust coverage.
JSON report containing IAP-protected resources, access level definitions, policy binding audit results, and zero trust coverage metrics.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.