Google Cloud

Manage GCP projects, IAM, and compute resources.

Works with: Claude DesktopCursor

Community server · details last checked

Quick install
npx -y gcp-mcp

How to install the Google Cloud MCP server

Add this to your Claude Desktop MCP configuration:

{
  "mcpServers": {
    "gcp": {
      "command": "npx",
      "args": [
        "-y",
        "gcp-mcp"
      ]
    }
  }
}

Add this to your Cursor MCP configuration:

{
  "mcpServers": {
    "gcp": {
      "command": "npx",
      "args": [
        "-y",
        "gcp-mcp"
      ]
    }
  }
}

Built by ContextBoltThis directory is built by ContextBolt: MCP-native memory and SEO tools that run alongside Google Cloud in the same client.

Explore ContextBolt

The Google Cloud MCP server gives an agent read and management access to GCP resources: projects, IAM policies, compute instances and the surrounding configuration. It is aimed at the questions that are annoying to answer through the console, particularly anything that spans more than one project.

What it actually does

The server authenticates through OAuth and wraps GCP APIs as tools. Claude can enumerate projects, read IAM bindings, look at compute resources and inspect configuration. The strongest use is interrogation rather than change: asking who has access to what, or which resources are running where, and getting an answer assembled from the actual API rather than from memory.

Practical patterns:

  • ‘Who has edit access to this project, and through which groups?’
  • ‘List every compute instance across my projects and flag the ones with public IPs.’
  • ‘What changed in the IAM policy on this bucket?‘

Why use it

IAM is the canonical example of something humans are bad at auditing. Permissions arrive through nested groups and inherited roles, and the effective answer to “can this person read that bucket” takes real work to derive. Something that can query the policy directly and explain it in a sentence is genuinely useful, and it is the kind of task where an agent’s patience beats yours.

Gotchas

OAuth means the server inherits your account’s reach, which for an administrator is everything. A dedicated service account with a viewer role is a much better starting point than your own credentials. The server is community-maintained rather than official, and Google’s first-party MCP support has been changing, so verify coverage before depending on it. As with AWS, start read-only and add write access only for a specific job.

Built by ContextBolt

This directory is built by ContextBolt

We build MCP-native tools that give your AI the context it cannot reach on its own. Bookmarks turns your saved posts into agent-queryable memory. SEO puts live keyword and ranking data inside Claude. Both run alongside Google Cloud in the same client.

Explore the products →

Google Cloud MCP server: FAQs

How does it authenticate?

Through OAuth against your Google account, so it inherits whatever that account can reach. Use a service account with a narrow role if you can.

Can it audit IAM?

Reading policies and explaining who can do what is one of the better uses. Asking a person to read a real IAM policy tree is how mistakes survive.

Does it cover BigQuery?

Use the dedicated BigQuery server for warehouse queries. This one is aimed at project, identity and compute resources.

Is it official?

No, it is community-maintained. Google's own MCP tooling exists for some services and moves quickly, so check what is current.