Connect
Optimize
Secure
Announcing StackOne Defender: leading open-source prompt injection guard for your agent • Read More →
Production-ready Google Cloud Security MCP server with 56 extensible actions — plus built-in authentication, security, and optimized execution.
Coverage
Create, read, update, and delete across Google Cloud Security — and extend your agent's capabilities with custom actions.
Authentication
Per-user OAuth in one call. Your Google Cloud Security MCP server gets session-scoped tokens with zero credentials stored on your infra.
Agent Auth →Security
Every Google Cloud Security tool response scanned for prompt injection in milliseconds — 88.7% accuracy, all running on CPU.
Prompt Injection Defense →Performance
Free up to 96% of your agent's context window to enhance reasoning and reduce cost, on every Google Cloud Security call.
Tools Discovery →A Google Cloud Security MCP server lets AI agents read and write Google Cloud Security data through the Model Context Protocol — Anthropic's open standard for connecting LLMs to external tools. StackOne's Google Cloud Security MCP server ships with 56 pre-built actions, fully extensible via the Connector Builder — plus managed authentication, prompt injection defense, and optimized agent context. Connect it from MCP clients like Claude Desktop, Cursor, and VS Code, or from agent frameworks like OpenAI Agents SDK, LangChain, and Vercel AI SDK.
Every action from Google Cloud Security's API, ready for your agent. Create, read, update, and delete — scoped to exactly what you need.
Create a new folder
List folders under a parent resource
Get details of a specific folder
Search for folders using a query
Update a folder
Delete a folder
Get the IAM policy for a project
Set the IAM policy for a project
Get details of a specific organization
Search for GCP organizations
Create a new GCP project
List all accessible GCP projects
Get details of a specific GCP project
Search for GCP projects using a query
Update a GCP project
Delete a GCP project
Create a custom IAM role in a project
List all custom roles in a project
Update a custom IAM role in a project
Delete a custom IAM role from a project
Create a new key for a service account
List all keys for a service account
Get details of a specific service account key
Permanently delete a service account key
Add a new version with secret data
List all versions of a secret
Get metadata of a specific secret version
Create a new secret in a project
List all secrets in a project
Get metadata of a specific secret
Update metadata of an existing secret
Permanently delete a secret and all its versions
Get the IAM policy for a secret
Set the IAM policy for a secret
Create a new service account in a project
List all service accounts in a project
Get details of a specific service account
Update the metadata of an existing service account
Delete a service account from a project
List tag keys under a parent resource
Get details of a specific tag key
List tag values under a tag key
Get details of a specific tag value
List all predefined IAM roles
Get details of a specific IAM role
Test which IAM permissions the caller has on a project
Restore a recently deleted custom IAM role
Disable a service account key
Enable a previously disabled service account key
Access the payload of a secret version
Enable a previously disabled secret version
Disable a secret version
Permanently destroy a secret version
Disable a service account immediately
Enable a previously disabled service account
Restore a recently deleted service account
One endpoint. Any framework. Your agent is talking to Google Cloud Security in under 10 lines of code.
MCP Clients
Agent Frameworks
{
"mcpServers": {
"stackone": {
"command": "npx",
"args": [
"-y",
"mcp-remote@latest",
"https://api.stackone.com/mcp?x-account-id=<account_id>",
"--header",
"Authorization: Basic <YOUR_BASE64_TOKEN>"
]
}
}
}Anthropic's code_execution processes data already in context. Custom MCP code mode keeps raw tool responses in a sandbox. 14K tokens vs 500.
11 min
Benchmarking BM25, TF-IDF, and hybrid search for MCP tool discovery across 916 tools. The 80/20 TF-IDF/BM25 hybrid hits 21% Top-1 accuracy in under 1ms.
10 min
MCP tools that read emails, CRM records, and tickets are indirect prompt injection vectors. Here's how we built a two-tier defense that scans tool results in ~11ms.
12 min
origin_owner_id.All the tools you need to build and scale AI agent integrations, with best-in-class connectivity, execution, and security.