Scanning as application default credentials — 1 project(s) dry run — 1 of 2 finding(s) can be cleaned, 1 cannot skip empty-vpc-network default: a network cannot be deleted until everything inside it is gone -- subnets, routes, firewall rules, Cloud Routers, peerings and any Private Service Connect attachment -- and the order depends on what else references them. Clean the findings inside the network first; this one goes away with them stale-artifact-repository gcr.io glitnir-dev · us · $0.01/mo DOCKER repository holding 0.1 GB with nothing pushed to it in 282 days → IRREVERSIBLE delete Artifact Registry repository gcr.io and its images artifactregistry.projects.locations.repositories.delete({'name': 'projects/glitnir-dev/locations/us/repositories/gcr.io'}) Would free about $0.01/month across 1 resource(s); 1 include irreversible steps. Nothing was changed. Re-run with --apply to perform these.