Agent Assist
Feature
Agent Assist offers a bidirectional API for next-generation audio and multi-modal experiences in both Conversational Agents and Agent Assist. The BiDiStreamingAnalyzeContent
API facilitates the streaming of audio data and returns either transcriptions or human agent suggestions to you.
Artifact Registry
Feature
Layer-based scanning for Artifact Analysis is in Preview. You can view vulnerability metadata for a specific layer of your image digest in the GCloud CLI. For more information, see the following topics:
- View layer metadata for Go images
- View layer metadata for Java images
- View layer metadata for Node.js images
- View layer metadata for Python images
Cloud Key Management Service
Feature
Cloud KMS now supports key encapsulation mechanisms (KEMs) for sharing secrets in Preview. KEMs are designed to be resistant to post-quantum attacks. You can use the following KEM algorithms:
ML_KEM_768
ML_KEM_1024
KEM_XWING
For more information about key encapsulation mechanisms, see Key encapsulation mechanisms. To learn how to use key encapsulation mechanisms to share secrets, see Encapsulate and decapsulate using KEMs.
Cloud NAT
Feature
Cloud NAT gateways for Public NAT support source-based NAT rules for IPv4 addresses. This feature is available in Preview.
Cloud NGFW
Feature
You can use the URL filtering service to filter your workload traffic by using domain and Server Name Indication (SNI) information available in the egress HTTP(S) messages. For more information, see URL filtering service overview. This feature is available in Preview.
Cloud Run
Feature
You can specify mount options when you configure Cloud Storage volume mounts for Cloud Run services, jobs, and worker pools. (GA)
Cloud SQL for MySQL
Feature
You can now provision, manage and query your databases using the dedicated Gemini CLI extension for Cloud SQL for MySQL. The extension provides full lifecycle control of your database—from provisioning instances, to exploring schemas and troubleshooting issues—from your command-line interface.
For more information, see Use Cloud SQL for MySQL with MCP, Gemini CLI, and other agents.
Feature
You can now retain point-in-time recovery (PITR) logs for an instance after its deletion for a specified retention period. These logs can be used to restore the deleted instance to a specific point in time. For more information, see Restore a deleted instance using PITR.
Cloud SQL for PostgreSQL
Feature
You can now provision, manage and query your databases using the dedicated Gemini CLI extension for Cloud SQL for PostgreSQL. The extension provides full lifecycle control of your database—from provisioning instances, to exploring schemas and troubleshooting issues—from your command-line interface.
For more information, see Use Cloud SQL for PostgreSQL with MCP, Gemini CLI, and other agents.
Feature
You can now retain point-in-time recovery (PITR) logs for an instance after its deletion for a specified retention period. These logs can be used to restore the deleted instance to a specific point in time. For more information, see Restore a deleted instance using PITR.
Cloud SQL for SQL Server
Feature
You can now provision, manage and query your databases using the dedicated Gemini CLI extension for Cloud SQL for SQL Server. The extension provides full lifecycle control of your database—from provisioning instances, to exploring schemas and troubleshooting issues—from your command-line interface.
For more information, see Use Cloud SQL for SQL Server with MCP, Gemini CLI, and other agents.
Feature
You can now retain point-in-time recovery (PITR) logs for an instance after its deletion for a specified retention period. These logs can be used to restore the deleted instance to a specific point in time. For more information, see Restore a deleted instance using PITR.
Cloud Service Mesh
Announcement
1.27.1-asm.2 is now available for in-cluster Cloud Service Mesh.
You can now download 1.27.1-asm.2 for in-cluster Cloud Service Mesh. It includes the features of Istio 1.27.1 subject to the list of supported features.
The following environment variables and annotations are not supported:
ENVOY_STATUS_PORT_ENABLE_PROXY_PROTOCOL
PILOT_DNS_CARES_UDP_MAX_QUERIES
PILOT_IP_AUTOALLOCATE_IPV4_PREFIX
andPILOT_IP_AUTOALLOCATE_IPV6_PREFIX
sidecar.istio.io/bootstrapOverride
For details on upgrading Cloud Service Mesh, see Upgrade Cloud Service Mesh. Cloud Service Mesh version 1.27.1-asm.2 uses Envoy v 1.35.3-dev.
Firestore
Feature
You can now query your databases and update data using the dedicated Gemini CLI extension for Firestore. This feature is available in beta.
Generative AI on Vertex AI
Announcement
Gemini 2.5 Flash with Live API Native Audio Preview
Gemini 2.5 Flash with Live API Native Audio (gemini-live-2.5-flash-preview-native-audio-09-2025
) is available in Preview. A single, unified model processes audio input and generates audio output directly, eliminating separate text-to-speech/speech-to-text conversions. This results in-low latency, high-quality, and incredibly human-like conversations. New features and capabilities include:
Improved Barge-in: Interrupt Gemini more naturally and reliably, even in loud and noisy environments.
Robust Function Calling: We’ve improved the triggering rate, allowing Gemini to successfully execute the functions you define with greater precision.
Accurate Transcription: The accuracy of audio-to-text transcription has been significantly enhanced.
Seamless Multilingual Support: Speak to Gemini in multiple languages, and it will effortlessly switch between them without any pre-configuration. Language is no longer a barrier!
Enhanced Audio Quality: Experience a dramatically improved audio quality that truly feels like speaking with a person.
Proactive Audio: Define Gemini’s expertise and set conditions for when it should respond. Gemini can act as a “silent listener,” only chiming in when the conversation touches upon its designated area of expertise.
Affective Dialog: Gemini can adapt and adjust its generated voice to match the emotional tone of the speaker, creating more empathetic and natural interactions.
Watch our comprehensive demo to see these features in action, including seamless language switching, expert mode, emotionally aware responses, memory recall, and interactive screen sharing for engineering tasks – all demonstrated directly within Vertex AI Studio without writing a single line of code!
Google Agentspace
Breaking
Google Agentspace: Change in ACLs for incidents in ServiceNow
The access-control list (ACL) behavior for ServiceNow incidents has significantly changed, from too permissive to least-privilege behavior. This change drastically reduces the possibility of data leaks, but might be too restrictive for your needs.
For more information about ServiceNow, see Connect ServiceNow and Add ServiceNow actions.
Google SecOps
Changed
Transport-layer migration for third-party API feeds
Google SecOps is migrating the transport layer for third-party API feeds to a new platform to improve performance and reliability. This migration will be completed in phases and is expected to finish by the end of October 2025. The migration should not impact any existing or new, third-party API feeds. If you experience any unexpected issues with your feeds during the migration, contact your Google SecOps representative.
Google SecOps SIEM
Changed
Transport-layer migration for third-party API feeds
Google SecOps is migrating the transport layer for third-party API feeds to a new platform to improve performance and reliability. This migration will be completed in phases and is expected to finish by the end of October 2025. The migration should not impact any existing or new, third-party API feeds. If you experience any unexpected issues with your feeds during the migration, contact your Google SecOps representative.
Identity-Aware Proxy
Feature
The ability to use a path wildcard in the aud
(audience) field when using a service account JWT to authenticate with an IAP-secured resource is generally available.
For more information, see Authenticate with a service account JWT
Looker
Feature
You can now connect to your Looker instance with the Gemini CLI using a dedicated Gemini extension. The Gemini extension can run queries, create Looks and dashboards, and retrieve elements of your LookML models.
Oracle Database@Google Cloud
Feature
Oracle Database@Google Cloud supports Exadata Database Service on Exascale Infrastructure, which lets you create and manage Exascale VM Clusters and Exascale Storage Vaults. This feature is generally available (GA).
Spanner
Feature
You can now use read lease regions to reduce latency for strong reads in multi-region or dual-region instances. Read leases use designated non-leader, read-write or read-only regions to serve strong reads locally, eliminating the network round trip to the leader region that is typically required. This feature is generally available (GA).
Feature
You can now use the dedicated Gemini CLI extension for Spanner to execute SQL statements and query your Spanner instance using natural language controls.
Virtual Private Cloud
Feature
Service producers can publish services that are hosted on cross-region internal Application Load Balancers. This feature is available in General Availability. For more information, see Publish services by using Private Service Connect.
Source: Google Cloud Platform