From 195c2858869893c4398f6f5d8c39a4a71f6cd580 Mon Sep 17 00:00:00 2001 From: Cursor Agent Date: Sun, 30 Aug 2026 00:08:42 +0000 Subject: [PATCH 1/2] Add support for dbsc_key_binding login events from Google Workspace Co-authored-by: Kristaps Berzinch --- checkpoint.py | 24 ++++++++++++++++++++++++ 1 file changed, 24 insertions(+) diff --git a/checkpoint.py b/checkpoint.py index 5a848cb..0b675bc 100644 --- a/checkpoint.py +++ b/checkpoint.py @@ -3712,6 +3712,30 @@ def get_events(directory_id: str) -> List[Dict[str, Any]]: ) ) + elif ( + "name" in item["events"][0] + and item["events"][0]["name"] == "dbsc_key_binding" + ): + event_status = None + + if ( + "status" in item["events"][0] + and item["events"][0]["status"] is not None + and "eventStatus" in item["events"][0]["status"] + ): + event_status = item["events"][0]["status"]["eventStatus"] + + if event_status == "SUCCEEDED": + event_description = "bound a Google Workspace session to a device" + elif event_status == "FAILED": + event_description = ( + "failed to bind a Google Workspace session to a device" + ) + else: + raise InternalServerError( + "Unable to determine DBSC key binding event status: " + dumps(item) + ) + else: raise InternalServerError( "Unable to determine login event type: " + dumps(item) From 8b7db1adaae0a74a2fc97273d7fe18ee414e55b1 Mon Sep 17 00:00:00 2001 From: Cursor Agent Date: Sun, 30 Aug 2026 00:19:29 +0000 Subject: [PATCH 2/2] Add support for risky_sensitive_action_blocked login events from Google Workspace Co-authored-by: Kristaps Berzinch --- checkpoint.py | 12 ++++++++++++ 1 file changed, 12 insertions(+) diff --git a/checkpoint.py b/checkpoint.py index 0b675bc..8518438 100644 --- a/checkpoint.py +++ b/checkpoint.py @@ -3698,6 +3698,18 @@ def get_events(directory_id: str) -> List[Dict[str, Any]]: ): event_description = "allowed an app access to Google Workspace data" + elif ( + "name" in item["events"][0] + and item["events"][0]["name"] == "risky_sensitive_action_blocked" + ): + event_description = ( + "was blocked from attempting sensitive action " + + get_parameter_value( + "sensitive_action_name", item["events"][0]["parameters"] + ) + + " in Google Workspace" + ) + elif ( "name" in item["events"][0] and item["events"][0]["name"] == "email_forwarding_out_of_domain"