[
    {
        "message": "Storage account enforces minimum TLS version",
        "metadata": {
            "event_code": "Storage account enforces minimum TLS version",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@CCC.Core",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.Core.CN01",
                "@Policy",
                "@PerService",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 3,
        "severity": "Medium",
        "status": "New",
        "status_code": "FAIL",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✗ I attempt policy check \"object-storage-tls-policy\" for control \"CCC.Core.CN01\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\" - Error: policy check failed: Azure Storage Account TLS Policy Check: \n⊘ \"{result}\" is true (skipped)",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN01.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812392,
            "created_time_dt": "2026-04-10T09:13:12Z",
            "desc": "Compliance test scenario: Storage account enforces minimum TLS version",
            "title": "Storage account enforces minimum TLS version",
            "types": [],
            "uid": "ccc-test-138-1775812392"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812392,
        "time_dt": "2026-04-10T09:13:12Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Object storage policy prevents the use of unencrypted ports",
        "metadata": {
            "event_code": "Object storage policy prevents the use of unencrypted ports",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.Core",
                "@CCC.Core.CN01",
                "@Policy",
                "@PerService",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 3,
        "severity": "Medium",
        "status": "New",
        "status_code": "FAIL",
        "status_detail": "✗ I attempt policy check \"object-storage-unencrypted-policy\" for control \"CCC.Core.CN01\" assessment requirement \"AR03\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\" - Error: policy check failed: Azure Storage Unencrypted Traffic Block Check: \n⊘ \"{result}\" is true (skipped)",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN01.AR03"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812393,
            "created_time_dt": "2026-04-10T09:13:13Z",
            "desc": "Compliance test scenario: Object storage policy prevents the use of unencrypted ports",
            "title": "Object storage policy prevents the use of unencrypted ports",
            "types": [],
            "uid": "ccc-test-291-1775812393"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812393,
        "time_dt": "2026-04-10T09:13:13Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Storage account enforces mutual TLS - NotTested",
        "metadata": {
            "event_code": "Storage account enforces mutual TLS - NotTested",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@tls",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.Core",
                "@CCC.Core.CN01",
                "@Policy",
                "@NotTested",
                "@PerService",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "Update",
        "status_code": "FAIL",
        "status_detail": "✓ no-op required",
        "status_id": 2,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN01.AR08"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812394,
            "created_time_dt": "2026-04-10T09:13:14Z",
            "desc": "Compliance test scenario: Storage account enforces mutual TLS - NotTested",
            "title": "Storage account enforces mutual TLS - NotTested",
            "types": [],
            "uid": "ccc-test-430-1775812394"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812394,
        "time_dt": "2026-04-10T09:13:14Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Object storage encryption compliance",
        "metadata": {
            "event_code": "Object storage encryption compliance",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN02",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I attempt policy check \"object-storage-encryption\" for control \"CCC.Core.CN02\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN02.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812394,
            "created_time_dt": "2026-04-10T09:13:14Z",
            "desc": "Compliance test scenario: Object storage encryption compliance",
            "title": "Object storage encryption compliance",
            "types": [],
            "uid": "ccc-test-470-1775812394"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812394,
        "time_dt": "2026-04-10T09:13:14Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Object storage delete protection compliance",
        "metadata": {
            "event_code": "Object storage delete protection compliance",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN03",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I attempt policy check \"object-storage-delete-protection\" for control \"CCC.Core.CN03\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN03.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812396,
            "created_time_dt": "2026-04-10T09:13:16Z",
            "desc": "Compliance test scenario: Object storage delete protection compliance",
            "title": "Object storage delete protection compliance",
            "types": [],
            "uid": "ccc-test-492-1775812396"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812396,
        "time_dt": "2026-04-10T09:13:16Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "API modification requires credential and trust perimeter origin - NotTestable",
        "metadata": {
            "event_code": "API modification requires credential and trust perimeter origin - NotTestable",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN03",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@NotTestable",
                "@object-storage",
                "@load-balancer"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ no-op required",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN03.AR02"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812397,
            "created_time_dt": "2026-04-10T09:13:17Z",
            "desc": "Compliance test scenario: API modification requires credential and trust perimeter origin - NotTestable",
            "title": "API modification requires credential and trust perimeter origin - NotTestable",
            "types": [],
            "uid": "ccc-test-513-1775812397"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812397,
        "time_dt": "2026-04-10T09:13:17Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "UI viewing requires multi-factor authentication - NotTestable",
        "metadata": {
            "event_code": "UI viewing requires multi-factor authentication - NotTestable",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN03",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@NotTestable",
                "@object-storage",
                "@load-balancer"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ no-op required",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN03.AR03"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812397,
            "created_time_dt": "2026-04-10T09:13:17Z",
            "desc": "Compliance test scenario: UI viewing requires multi-factor authentication - NotTestable",
            "title": "UI viewing requires multi-factor authentication - NotTestable",
            "types": [],
            "uid": "ccc-test-529-1775812397"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812397,
        "time_dt": "2026-04-10T09:13:17Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "API viewing requires credential and trust perimeter origin - NotTestable",
        "metadata": {
            "event_code": "API viewing requires credential and trust perimeter origin - NotTestable",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN03",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@NotTestable",
                "@object-storage",
                "@load-balancer"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ no-op required",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN03.AR04"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812397,
            "created_time_dt": "2026-04-10T09:13:17Z",
            "desc": "Compliance test scenario: API viewing requires credential and trust perimeter origin - NotTestable",
            "title": "API viewing requires credential and trust perimeter origin - NotTestable",
            "types": [],
            "uid": "ccc-test-545-1775812397"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812397,
        "time_dt": "2026-04-10T09:13:17Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Object storage admin logging compliance",
        "metadata": {
            "event_code": "Object storage admin logging compliance",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN04",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ I attempt policy check \"admin-logging\" for control \"CCC.Core.CN04\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN04.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812397,
            "created_time_dt": "2026-04-10T09:13:17Z",
            "desc": "Compliance test scenario: Object storage admin logging compliance",
            "title": "Object storage admin logging compliance",
            "types": [],
            "uid": "ccc-test-589-1775812397"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812397,
        "time_dt": "2026-04-10T09:13:17Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Object storage data modification logging compliance",
        "metadata": {
            "event_code": "Object storage data modification logging compliance",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN04",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 3,
        "severity": "Medium",
        "status": "New",
        "status_code": "FAIL",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✗ I attempt policy check \"data-write-logging\" for control \"CCC.Core.CN04\" assessment requirement \"AR02\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\" - Error: policy check failed: Azure Diagnostic Logging Write Configuration: \n⊘ \"{result}\" is true (skipped)",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN04.AR02"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812401,
            "created_time_dt": "2026-04-10T09:13:21Z",
            "desc": "Compliance test scenario: Object storage data modification logging compliance",
            "title": "Object storage data modification logging compliance",
            "types": [],
            "uid": "ccc-test-641-1775812401"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812401,
        "time_dt": "2026-04-10T09:13:21Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Data read logging compliance",
        "metadata": {
            "event_code": "Data read logging compliance",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN04",
                "@tlp-red",
                "@Policy",
                "@object-storage",
                "@vpc"
            ],
            "version": "1.4.0"
        },
        "severity_id": 3,
        "severity": "Medium",
        "status": "New",
        "status_code": "FAIL",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✗ I attempt policy check \"data-read-logging\" for control \"CCC.Core.CN04\" assessment requirement \"AR03\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\" - Error: policy check failed: Azure Diagnostic Logging Read Configuration: \n⊘ \"{result}\" is true (skipped)",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN04.AR03"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812403,
            "created_time_dt": "2026-04-10T09:13:23Z",
            "desc": "Compliance test scenario: Data read logging compliance",
            "title": "Data read logging compliance",
            "types": [],
            "uid": "ccc-test-692-1775812403"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812403,
        "time_dt": "2026-04-10T09:13:23Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Storage is not configured for public write access",
        "metadata": {
            "event_code": "Storage is not configured for public write access",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN05",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"iam\"\n✓ I refer to \"{result}\" as \"iamService\"\n✓ I attempt policy check \"object-storage-block-public-write-access\" for control \"CCC.Core.CN05\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN05.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812404,
            "created_time_dt": "2026-04-10T09:13:24Z",
            "desc": "Compliance test scenario: Storage is not configured for public write access",
            "title": "Storage is not configured for public write access",
            "types": [],
            "uid": "ccc-test-798-1775812404"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812404,
        "time_dt": "2026-04-10T09:13:24Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Unauthorized administrative access is blocked",
        "metadata": {
            "event_code": "Unauthorized administrative access is blocked",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN05",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"iam\"\n✓ I refer to \"{result}\" as \"iamService\"\n✓ no-op required",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN05.AR02"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812406,
            "created_time_dt": "2026-04-10T09:13:26Z",
            "desc": "Compliance test scenario: Unauthorized administrative access is blocked",
            "title": "Unauthorized administrative access is blocked",
            "types": [],
            "uid": "ccc-test-915-1775812406"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812406,
        "time_dt": "2026-04-10T09:13:26Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Cross-tenant access is blocked without explicit allowlist",
        "metadata": {
            "event_code": "Cross-tenant access is blocked without explicit allowlist",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN05",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I attempt policy check \"object-storage-cross-tenant-block\" for control \"CCC.Core.CN05\" assessment requirement \"AR03\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN05.AR03"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812406,
            "created_time_dt": "2026-04-10T09:13:26Z",
            "desc": "Compliance test scenario: Cross-tenant access is blocked without explicit allowlist",
            "title": "Cross-tenant access is blocked without explicit allowlist",
            "types": [],
            "uid": "ccc-test-933-1775812406"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812406,
        "time_dt": "2026-04-10T09:13:26Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "External unauthorized data requests are blocked",
        "metadata": {
            "event_code": "External unauthorized data requests are blocked",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN05",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I attempt policy check \"object-storage-block-public-read\" for control \"CCC.Core.CN05\" assessment requirement \"AR04\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN05.AR04"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812406,
            "created_time_dt": "2026-04-10T09:13:26Z",
            "desc": "Compliance test scenario: External unauthorized data requests are blocked",
            "title": "External unauthorized data requests are blocked",
            "types": [],
            "uid": "ccc-test-949-1775812406"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812406,
        "time_dt": "2026-04-10T09:13:26Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "External requests do not reveal service existence - NotTested",
        "metadata": {
            "event_code": "External requests do not reveal service existence - NotTested",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN05",
                "@tlp-red",
                "@Policy",
                "@NotTested",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "Update",
        "status_code": "FAIL",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ no-op required",
        "status_id": 2,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN05.AR05"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812408,
            "created_time_dt": "2026-04-10T09:13:28Z",
            "desc": "Compliance test scenario: External requests do not reveal service existence - NotTested",
            "title": "External requests do not reveal service existence - NotTested",
            "types": [],
            "uid": "ccc-test-963-1775812408"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812408,
        "time_dt": "2026-04-10T09:13:28Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "All unauthorized requests are blocked - Duplicate",
        "metadata": {
            "event_code": "All unauthorized requests are blocked - Duplicate",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN05",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@Duplicate",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"iam\"\n✓ I refer to \"{result}\" as \"iamService\"\n✓ no-op required",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN05.AR06"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812408,
            "created_time_dt": "2026-04-10T09:13:28Z",
            "desc": "Compliance test scenario: All unauthorized requests are blocked - Duplicate",
            "title": "All unauthorized requests are blocked - Duplicate",
            "types": [],
            "uid": "ccc-test-1000-1775812408"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812408,
        "time_dt": "2026-04-10T09:13:28Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Object storage region compliance",
        "metadata": {
            "event_code": "Object storage region compliance",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN06",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I attempt policy check \"object-storage-region\" for control \"CCC.Core.CN06\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN06.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812408,
            "created_time_dt": "2026-04-10T09:13:28Z",
            "desc": "Compliance test scenario: Object storage region compliance",
            "title": "Object storage region compliance",
            "types": [],
            "uid": "ccc-test-1036-1775812408"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812408,
        "time_dt": "2026-04-10T09:13:28Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Child resource region compliance - NotTestable",
        "metadata": {
            "event_code": "Child resource region compliance - NotTestable",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN06",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@NotTestable",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ no-op required",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN06.AR02"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812409,
            "created_time_dt": "2026-04-10T09:13:29Z",
            "desc": "Compliance test scenario: Child resource region compliance - NotTestable",
            "title": "Child resource region compliance - NotTestable",
            "types": [],
            "uid": "ccc-test-1075-1775812409"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812409,
        "time_dt": "2026-04-10T09:13:29Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Enumeration activities publish events to monitored channels",
        "metadata": {
            "event_code": "Enumeration activities publish events to monitored channels",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN07",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 3,
        "severity": "Medium",
        "status": "New",
        "status_code": "FAIL",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✗ I attempt policy check \"enumeration-monitoring-policy\" for control \"CCC.Core.CN07\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\" - Error: policy check failed: Azure Storage Enumeration Monitoring Policy Check: \n⊘ \"{result}\" is true (skipped)",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN07.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812409,
            "created_time_dt": "2026-04-10T09:13:29Z",
            "desc": "Compliance test scenario: Enumeration activities publish events to monitored channels",
            "title": "Enumeration activities publish events to monitored channels",
            "types": [],
            "uid": "ccc-test-1096-1775812409"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812409,
        "time_dt": "2026-04-10T09:13:29Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Enumeration activities are logged",
        "metadata": {
            "event_code": "Enumeration activities are logged",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN07",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 3,
        "severity": "Medium",
        "status": "New",
        "status_code": "FAIL",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✗ I attempt policy check \"enumeration-logging-policy\" for control \"CCC.Core.CN07\" assessment requirement \"AR02\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\" - Error: policy check failed: Azure Storage Enumeration Logging Policy Check: \n⊘ \"{result}\" is true (skipped)",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN07.AR02"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812411,
            "created_time_dt": "2026-04-10T09:13:31Z",
            "desc": "Compliance test scenario: Enumeration activities are logged",
            "title": "Enumeration activities are logged",
            "types": [],
            "uid": "ccc-test-1122-1775812411"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812411,
        "time_dt": "2026-04-10T09:13:31Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Object storage replication compliance",
        "metadata": {
            "event_code": "Object storage replication compliance",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN08",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I attempt policy check \"object-storage-replication\" for control \"CCC.Core.CN08\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN08.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812413,
            "created_time_dt": "2026-04-10T09:13:33Z",
            "desc": "Compliance test scenario: Object storage replication compliance",
            "title": "Object storage replication compliance",
            "types": [],
            "uid": "ccc-test-1160-1775812413"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812413,
        "time_dt": "2026-04-10T09:13:33Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Object storage replication status is visible",
        "metadata": {
            "event_code": "Object storage replication status is visible",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN08",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I attempt policy check \"object-storage-replication-status\" for control \"CCC.Core.CN08\" assessment requirement \"AR02\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN08.AR02"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812414,
            "created_time_dt": "2026-04-10T09:13:34Z",
            "desc": "Compliance test scenario: Object storage replication status is visible",
            "title": "Object storage replication status is visible",
            "types": [],
            "uid": "ccc-test-1203-1775812414"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812414,
        "time_dt": "2026-04-10T09:13:34Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Object storage access logging compliance",
        "metadata": {
            "event_code": "Object storage access logging compliance",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN09",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 3,
        "severity": "Medium",
        "status": "New",
        "status_code": "FAIL",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✗ I attempt policy check \"object-storage-access-logging\" for control \"CCC.Core.CN09\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\" - Error: policy check failed: Azure Storage Account Diagnostic Logging Configuration: \n⊘ \"{result}\" is true (skipped)",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN09.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812415,
            "created_time_dt": "2026-04-10T09:13:35Z",
            "desc": "Compliance test scenario: Object storage access logging compliance",
            "title": "Object storage access logging compliance",
            "types": [],
            "uid": "ccc-test-1229-1775812415"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812415,
        "time_dt": "2026-04-10T09:13:35Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Disabling logs requires disabling the resource - NotTestable",
        "metadata": {
            "event_code": "Disabling logs requires disabling the resource - NotTestable",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN09",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@NotTestable",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ no-op required",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN09.AR02"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812417,
            "created_time_dt": "2026-04-10T09:13:37Z",
            "desc": "Compliance test scenario: Disabling logs requires disabling the resource - NotTestable",
            "title": "Disabling logs requires disabling the resource - NotTestable",
            "types": [],
            "uid": "ccc-test-1246-1775812417"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812417,
        "time_dt": "2026-04-10T09:13:37Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Redirecting logs requires halting the resource - NotTestable",
        "metadata": {
            "event_code": "Redirecting logs requires halting the resource - NotTestable",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN09",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@NotTestable",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ no-op required",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN09.AR03"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812417,
            "created_time_dt": "2026-04-10T09:13:37Z",
            "desc": "Compliance test scenario: Redirecting logs requires halting the resource - NotTestable",
            "title": "Redirecting logs requires halting the resource - NotTestable",
            "types": [],
            "uid": "ccc-test-1261-1775812417"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812417,
        "time_dt": "2026-04-10T09:13:37Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Object storage replication destination compliance",
        "metadata": {
            "event_code": "Object storage replication destination compliance",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@CCC.Core",
                "@CCC.Core.CN10",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I attempt policy check \"object-storage-replication-destination\" for control \"CCC.Core.CN10\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.Core.CN10.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812417,
            "created_time_dt": "2026-04-10T09:13:37Z",
            "desc": "Compliance test scenario: Object storage replication destination compliance",
            "title": "Object storage replication destination compliance",
            "types": [],
            "uid": "ccc-test-1283-1775812417"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812417,
        "time_dt": "2026-04-10T09:13:37Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Test policy for bucket access control",
        "metadata": {
            "event_code": "Test policy for bucket access control",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.ObjStor.CN01",
                "@Policy"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"iam\"\n✓ I refer to \"{result}\" as \"iamService\"\n✓ I attempt policy check \"no-public-access\" for control \"CCC.ObjStor.CN01\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN01.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812418,
            "created_time_dt": "2026-04-10T09:13:38Z",
            "desc": "Compliance test scenario: Test policy for bucket access control",
            "title": "Test policy for bucket access control",
            "types": [],
            "uid": "ccc-test-1364-1775812418"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812418,
        "time_dt": "2026-04-10T09:13:38Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "All unauthorized requests are blocked",
        "metadata": {
            "event_code": "All unauthorized requests are blocked",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.ObjStor.CN01",
                "@Policy"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"iam\"\n✓ I refer to \"{result}\" as \"iamService\"\n✓ I call \"{storage}\" with \"CreateObject\" using arguments \"{ResourceName}\", \"test-object={Timestamp}.txt\", and \"test content\"\n✓ \"{result}\" is not an error\n✓ I attempt policy check \"object-storage-no-public-principals\" for control \"CCC.ObjStor.CN01\" assessment requirement \"AR02\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN01.AR02"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812420,
            "created_time_dt": "2026-04-10T09:13:40Z",
            "desc": "Compliance test scenario: All unauthorized requests are blocked",
            "title": "All unauthorized requests are blocked",
            "types": [],
            "uid": "ccc-test-1450-1775812420"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812420,
        "time_dt": "2026-04-10T09:13:40Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "All unauthorized requests are blocked",
        "metadata": {
            "event_code": "All unauthorized requests are blocked",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.ObjStor.CN01",
                "@Policy"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"iam\"\n✓ I refer to \"{result}\" as \"iamService\"\n✓ I attempt policy check \"object-storage-no-public-principals\" for control \"CCC.ObjStor.CN01\" assessment requirement \"AR03\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN01.AR03"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812482,
            "created_time_dt": "2026-04-10T09:14:42Z",
            "desc": "Compliance test scenario: All unauthorized requests are blocked",
            "title": "All unauthorized requests are blocked",
            "types": [],
            "uid": "ccc-test-1532-1775812482"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812482,
        "time_dt": "2026-04-10T09:14:42Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "All unauthorized requests are blocked",
        "metadata": {
            "event_code": "All unauthorized requests are blocked",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.ObjStor.CN01",
                "@Policy"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ \"{result}\" is not an error\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"iam\"\n✓ I refer to \"{result}\" as \"iamService\"\n✓ \"{result}\" is not an error\n✓ I attempt policy check \"object-storage-no-public-principals\" for control \"CCC.ObjStor.CN01\" assessment requirement \"AR04\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN01.AR04"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812483,
            "created_time_dt": "2026-04-10T09:14:43Z",
            "desc": "Compliance test scenario: All unauthorized requests are blocked",
            "title": "All unauthorized requests are blocked",
            "types": [],
            "uid": "ccc-test-1620-1775812483"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812483,
        "time_dt": "2026-04-10T09:14:43Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Test policy for uniform access",
        "metadata": {
            "event_code": "Test policy for uniform access",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.ObjStor.CN02",
                "@Policy"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"iam\"\n✓ I refer to \"{result}\" as \"iamService\"\n✓ I attempt policy check \"uniform-bucket-level-access\" for control \"CCC.ObjStor.CN02\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN02.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812484,
            "created_time_dt": "2026-04-10T09:14:44Z",
            "desc": "Compliance test scenario: Test policy for uniform access",
            "title": "Test policy for uniform access",
            "types": [],
            "uid": "ccc-test-1682-1775812484"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812484,
        "time_dt": "2026-04-10T09:14:44Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Uniform bucket-level access prevents object-level deny overrides - Duplicate",
        "metadata": {
            "event_code": "Uniform bucket-level access prevents object-level deny overrides - Duplicate",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.ObjStor.CN02",
                "@Policy",
                "@Duplicate",
                "@object-storage"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"iam\"\n✓ I refer to \"{result}\" as \"iamService\"\n✓ no-op required",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN02.AR02"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812485,
            "created_time_dt": "2026-04-10T09:14:45Z",
            "desc": "Compliance test scenario: Uniform bucket-level access prevents object-level deny overrides - Duplicate",
            "title": "Uniform bucket-level access prevents object-level deny overrides - Duplicate",
            "types": [],
            "uid": "ccc-test-1744-1775812485"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812485,
        "time_dt": "2026-04-10T09:14:45Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Test policy for bucket soft delete",
        "metadata": {
            "event_code": "Test policy for bucket soft delete",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.ObjStor.CN03",
                "@Policy"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I attempt policy check \"bucket-soft-delete\" for control \"CCC.ObjStor.CN03\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN03.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812485,
            "created_time_dt": "2026-04-10T09:14:45Z",
            "desc": "Compliance test scenario: Test policy for bucket soft delete",
            "title": "Test policy for bucket soft delete",
            "types": [],
            "uid": "ccc-test-1804-1775812485"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812485,
        "time_dt": "2026-04-10T09:14:45Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Test policy for immutable bucket retention lock",
        "metadata": {
            "event_code": "Test policy for immutable bucket retention lock",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.ObjStor.CN03",
                "@Policy"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I attempt policy check \"bucket-retention-lock\" for control \"CCC.ObjStor.CN03\" assessment requirement \"AR02\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN03.AR02"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812487,
            "created_time_dt": "2026-04-10T09:14:47Z",
            "desc": "Compliance test scenario: Test policy for immutable bucket retention lock",
            "title": "Test policy for immutable bucket retention lock",
            "types": [],
            "uid": "ccc-test-1852-1775812487"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812487,
        "time_dt": "2026-04-10T09:14:47Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Test policy for default object retention",
        "metadata": {
            "event_code": "Test policy for default object retention",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.ObjStor.CN04",
                "@Policy"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"iam\"\n✓ I refer to \"{result}\" as \"iamService\"\n✓ I attempt policy check \"object-default-retention\" for control \"CCC.ObjStor.CN04\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN04.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812488,
            "created_time_dt": "2026-04-10T09:14:48Z",
            "desc": "Compliance test scenario: Test policy for default object retention",
            "title": "Test policy for default object retention",
            "types": [],
            "uid": "ccc-test-1940-1775812488"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812488,
        "time_dt": "2026-04-10T09:14:48Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Test policy for object retention enforcement",
        "metadata": {
            "event_code": "Test policy for object retention enforcement",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@CCC.ObjStor.CN04",
                "@Policy"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"iam\"\n✓ I refer to \"{result}\" as \"iamService\"\n✓ I attempt policy check \"object-retention-enforcement\" for control \"CCC.ObjStor.CN04\" assessment requirement \"AR02\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN04.AR02"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812490,
            "created_time_dt": "2026-04-10T09:14:50Z",
            "desc": "Compliance test scenario: Test policy for object retention enforcement",
            "title": "Test policy for object retention enforcement",
            "types": [],
            "uid": "ccc-test-2084-1775812490"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812490,
        "time_dt": "2026-04-10T09:14:50Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Objects are stored with unique version identifiers",
        "metadata": {
            "event_code": "Objects are stored with unique version identifiers",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@CCC.ObjStor.CN05",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ I attempt policy check \"object-storage-versioning\" for control \"CCC.ObjStor.CN05\" assessment requirement \"AR01\" for service \"{ServiceType}\" on resource \"{ResourceName}\" and provider \"{Provider}\"\n✓ \"{result}\" is true",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN05.AR01"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812491,
            "created_time_dt": "2026-04-10T09:14:51Z",
            "desc": "Compliance test scenario: Objects are stored with unique version identifiers",
            "title": "Objects are stored with unique version identifiers",
            "types": [],
            "uid": "ccc-test-2124-1775812491"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812491,
        "time_dt": "2026-04-10T09:14:51Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Modified objects receive new version identifiers - Duplicate",
        "metadata": {
            "event_code": "Modified objects receive new version identifiers - Duplicate",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@CCC.ObjStor.CN05",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@Duplicate"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ no-op required",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN05.AR02"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812492,
            "created_time_dt": "2026-04-10T09:14:52Z",
            "desc": "Compliance test scenario: Modified objects receive new version identifiers - Duplicate",
            "title": "Modified objects receive new version identifiers - Duplicate",
            "types": [],
            "uid": "ccc-test-2161-1775812492"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812492,
        "time_dt": "2026-04-10T09:14:52Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Previous object versions can be recovered",
        "metadata": {
            "event_code": "Previous object versions can be recovered",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@CCC.ObjStor.CN05",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ no-op required",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN05.AR03"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812492,
            "created_time_dt": "2026-04-10T09:14:52Z",
            "desc": "Compliance test scenario: Previous object versions can be recovered",
            "title": "Previous object versions can be recovered",
            "types": [],
            "uid": "ccc-test-2207-1775812492"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812492,
        "time_dt": "2026-04-10T09:14:52Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    },
    {
        "message": "Object versions are retained after deletion - Duplicate",
        "metadata": {
            "event_code": "Object versions are retained after deletion - Duplicate",
            "product": {
                "name": "CCC-Complete (Policy)",
                "uid": "CCC-Complete (Policy)",
                "vendor_name": "FINOS",
                "version": "0.1"
            },
            "profiles": [
                "@PerService",
                "@object-storage",
                "@CCC.ObjStor",
                "@CCC.ObjStor.CN05",
                "@tlp-clear",
                "@tlp-green",
                "@tlp-amber",
                "@tlp-red",
                "@Policy",
                "@Duplicate"
            ],
            "version": "1.4.0"
        },
        "severity_id": 1,
        "severity": "Informational",
        "status": "New",
        "status_code": "PASS",
        "status_detail": "✓ a cloud api for \"{Instance}\" in \"api\"\n✓ I call \"{api}\" with \"GetServiceAPI\" using argument \"object-storage\"\n✓ I refer to \"{result}\" as \"storage\"\n✓ no-op required",
        "status_id": 1,
        "unmapped": {
            "compliance": {
                "CCC": [
                    "CCC.ObjStor.CN05.AR04"
                ]
            }
        },
        "activity_name": "Test",
        "activity_id": 1,
        "finding_info": {
            "created_time": 1775812492,
            "created_time_dt": "2026-04-10T09:14:52Z",
            "desc": "Compliance test scenario: Object versions are retained after deletion - Duplicate",
            "title": "Object versions are retained after deletion - Duplicate",
            "types": [],
            "uid": "ccc-test-2266-1775812492"
        },
        "category_name": "Findings",
        "category_uid": 2,
        "class_name": "Compliance Finding",
        "class_uid": 2004,
        "time": 1775812492,
        "time_dt": "2026-04-10T09:14:52Z",
        "type_uid": 200401,
        "type_name": "Compliance Finding: Test",
        "resources": [
            {
                "cloud_partition": "azure",
                "region": "eastus",
                "data": {
                    "details": " service on :",
                    "metadata": {
                        "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                        "status": "ACTIVE",
                        "findings": [],
                        "tags": [],
                        "type": "object-storage",
                        "region": "eastus"
                    }
                },
                "group": {
                    "name": "object-storage"
                },
                "name": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z",
                "type": "object-storage",
                "uid": "/subscriptions/c1cedd8e-bf91-4d7d-a4cc-45700402a2a1/resourceGroups/cfi_test_20260410t090725z/providers/Microsoft.Storage/storageAccounts/stgcfi20260410t090725z"
            }
        ]
    }
]