{"found":true,"collection":"terms","library_url":"https://www.grokbotdb.com/library/gls.scoped-service-account","generated":"2026-09-06T05:32:11Z","citation":["Quote the record id and its source_url (or provenance if there is no URL).","Include last_verified or observed_at when present. Do not present an old date as current.","If tier is community and confidence is low, say so. Do not launder it into a fact.","If the database does not hold the answer, say that. Do not invent Grok Bot product claims.","Contradictions are data: when conflicts_with is present, report both records rather than picking a favourite.","Deprecated and removed records stay visible. They are history, not current guidance."],"record":{"id":"gls.scoped-service-account","term":"Scoped service account","definition":"A dedicated identity created in a source system, limited to the minimum a workflow needs, used instead of the owner's administrator credentials.","do_not_confuse_with":"A separate Bot, which provides no isolation. Where a workload genuinely needs its own credentials and machine, the answer is a separate Cursor user.","first_seen":"2026-09-03","last_verified":"2026-09-03"}}