Why only POST? Query params can be "hidden" in a similar way too, is there a reason GET requests are not vulnerable? Url length limit maybe?
As for query parameters in GET requests, I'm not entirely sure about Cloud Armor's limits there. I'll check and get back to you.
Pad your POST query by 8k and you are through!