MCP on Google Cloud roles and permissions

This page lists the IAM roles and permissions for MCP on Google Cloud. To search through all roles and permissions, see the role and permission index.

MCP on Google Cloud roles

Role Permissions

(roles/mcp.toolUser)

Role for calling tools on any MCP server enabled by the parent project.

mcp.tools.call

resourcemanager.projects.get

resourcemanager.projects.list

MCP on Google Cloud permissions

Permission Included in roles

Owner (roles/owner)

Editor (roles/editor)

MCP tool user (roles/mcp.toolUser)