New best practices are available for securing generative AI agents using
Share
Services
## Announcement
Announcement
New best practices are available for securing generative AI agents using Model Context Protocol (MCP) with Google Cloud databases. This guide covers key security measures like least privilege, native database controls, and secure agent design to help you build safer AI applications. For more information, see[Best practices for securing agent interactions with Model Context Protocol](https://cloud.google.com/spanner/docs/secure-agent-interactions-mcp).
This feature is in [Preview](https://cloud.google.com/products/#product-launch-stages).
## Change
Change
After March 17, 2026, when you enable Spanner, the Spanner MCP server is automatically enabled.
## Deprecate
Deprecated
Control of MCP use with organization policies is deprecated. After March 17, 2026, organization policies that use the`gcp.managed.allowedMCPServices` constraint won't work, and you can control MCP use with IAM deny policies.
For more information about controlling MCP use, see[Control MCP use with IAM](https://cloud.google.com/mcp/control-mcp-use-iam).
What else is happening at Google Cloud Platform?
You can update a service attachment's target service without recreating the service attachment
about 11 hours ago
Services
Share
You can deploy instances in the asia-southeast3 (Bangkok) region
about 14 hours ago
Services
Share
You can deploy instances in the asia-southeast3 (Bangkok) region
about 15 hours ago
Services
Share
GKE cluster versions have been updated. New versions available for upgrades and new clusters
about 16 hours ago
Services
Share