gcloud iam service-accounts describe - show metadata for a service account from a project
gcloud iam service-accounts describe SERVICE_ACCOUNT [GCLOUD_WIDE_FLAG ...]
This command shows metadata for a service account.
This call can fail for the following reasons:
The specified service account does not exist. In this case, you receive a PERMISSION_DENIED error.
The active user does not have permission to access the given service account.
To print metadata for a service account from your project, run:
$ gcloud iam service-accounts describe \ my-iam-account@my-project.iam.gserviceaccount.com
- SERVICE_ACCOUNT
The service account to describe. The account should be formatted either as a numeric service account ID or as an email, like this: 123456789876543212345 or my-iam-account@somedomain.com.
These flags are available to all commands: --access-token-file, --account, --billing-project, --configuration, --flags-file, --flatten, --format, --help, --impersonate-service-account, --log-http, --project, --quiet, --trace-token, --user-output-enabled, --verbosity.
Run $ gcloud help for details.
These variants are also available:
$ gcloud alpha iam service-accounts describe
$ gcloud beta iam service-accounts describe