IAM references for Cloud Storage

This page provides links to theIdentity and Access Management (IAM) tablesthat apply to Cloud Storage. To learn how to use IAMwith Cloud Storage, seeUsing IAM Permissions.

TableDescription
IAM permissions for Cloud StorageIAM permissions that apply to Cloud Storage.
IAM roles for Cloud StorageIAM roles that apply to Cloud Storage and the permissions contained in each role.
IAM permissions for Google Cloud console actionsIAM permissions that are required to perform actions in the Google Cloud console related to Cloud Storage.1
IAM permissions for Google Cloud CLI commandsIAM permissions that are required to execute eachgcloud storage command for Cloud Storage.1
IAM permissions for gsutil commandsIAM permissions that are required to execute each gsutil command for Cloud Storage.1
IAM permissions for JSON methodsIAM permissions that are required to use each of the available JSON methods for Cloud Storage.1
IAM permissions for XML requestsIAM permissions that are required to use each of the available XML requests for Cloud Storage.1

1 Users can make requests on objects if they have sufficientpermissions in theaccess control list (ACL) for the desired object,even if they don't have sufficient IAM permissions.

Except as otherwise noted, the content of this page is licensed under theCreative Commons Attribution 4.0 License, and code samples are licensed under theApache 2.0 License. For details, see theGoogle Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.

Last updated 2026-02-19 UTC.