title: IR (Target) description: Non-read permissions required for IR stage: GA includedPermissions: - compute.disks.create - compute.disks.createSnapshot - compute.firewalls.create - compute.firewalls.delete - compute.firewalls.update - compute.instances.delete - compute.instances.deleteAccessConfig - compute.instances.resume - compute.instances.setMetadata - compute.instances.setTags - compute.instances.suspend - compute.networks.addPeering - compute.networks.updatePolicy - compute.projects.setCommonInstanceMetadata - compute.snapshots.create - compute.snapshots.delete - compute.subnetworks.update - container.networkPolicies.create - container.nodes.update - container.pods.evict - container.pods.exec - container.pods.update - container.services.delete - container.services.update - iam.roles.delete - iam.roles.update - iam.serviceAccountKeys.delete - iam.serviceAccounts.actAs - iam.serviceAccounts.delete - iam.serviceAccounts.disable - iam.serviceAccounts.setIamPolicy - logging.sinks.delete - logging.sinks.update - resourcemanager.projects.setIamPolicy - storage.buckets.create - storage.buckets.get - storage.buckets.getIamPolicy - storage.buckets.setIamPolicy - storage.buckets.update - storage.objects.delete - storage.objects.get - storage.objects.getIamPolicy - storage.objects.list - storage.objects.setIamPolicy - storage.objects.update