Google Cloud IAM website screenshot

Google Cloud IAM

Google Cloud Identity and Access Management (IAM) enables fine-grained access control and visibility for managing cloud resources. It provides the ability to create and manage service accounts, roles, and permissions to enforce least-privilege security policies across Google Cloud resources.

Google Cloud IAM publishes 4 APIs on the APIs.io network, including Permissions API, Roles API, Service Account Keys API, and 1 more. Tagged areas include Access Management, Google Cloud, IAM, Identity, and Permissions.

The Google Cloud IAM catalog on APIs.io includes 1 JSON-LD context and 1 Spectral governance ruleset.

Google Cloud IAM’s developer surface includes authentication, developer portal, getting-started guide, documentation, pricing, support, and 11 more developer resources.

61.3/100 strong ▬ flat Agent 31/100 agent aware Full breakdown ↓
scored 2026-07-28 · rubric v0.6
AccessFreemiumSelf serve⚡ Free to try
4 APIs
Access ManagementGoogle CloudIAMIdentityPermissionsSecurity

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-07-28 · rubric v0.6
Composite quality — 61.3/100 · strong
Contract Quality 16.3 / 25
Developer Ergonomics 9.6 / 20
Commercial Clarity 14.2 / 20
Operational Transparency 6.8 / 13
Governance 7.0 / 12
Discoverability 7.4 / 10
Agent readiness — 31/100 · agent aware
Machine-Readable Contract 18 / 18
Agentic Access Contract 10 / 10
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/google-cloud-iam: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 4

Individual APIs this provider publishes, each with its own machine-readable definition.

Google Cloud IAM Permissions API

The Permissions API from Google Cloud IAM — 1 operation(s) for permissions.

Google Cloud IAM Roles API

The Roles API from Google Cloud IAM — 2 operation(s) for roles.

Google Cloud IAM Service Account Keys API

The Service Account Keys API from Google Cloud IAM — 1 operation(s) for service account keys.

Google Cloud IAM Service Accounts API

The Service Accounts API from Google Cloud IAM — 2 operation(s) for service accounts.

Postman Collections 4

Ready-to-run Postman collections for exercising this provider's APIs.

Open Collections 1

Open, tool-agnostic API collections (OpenAPI-derived and Bruno).

Google Cloud IAM API

OPEN COLLECTION

Pricing Plans 1

Published pricing tiers and plan structures.

Rate Limits 1

Documented rate limits and quota policies.

Google Cloud Iam Rate Limits

5 limits

RATE LIMITS

FinOps 1

Cost, billing, and metering signals for API financial operations.

Semantic Vocabularies 1

JSON-LD contexts and semantic vocabularies used across these APIs.

context Context

3 classes · 0 properties

JSON-LD

Spectral Rules 1

Spectral governance rulesets for linting and validating these APIs.

Google Cloud IAM API Rules

5 rules · 3 warnings 2 info

SPECTRAL

JSON Schema 1

Standalone JSON Schema definitions for this provider's data models.

ServiceAccount

9 properties

JSON SCHEMA

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Google Cloud Iam Authentication

oauth2 · 1 scheme

SECURITY

Google Cloud Iam Domain Security

TLSv1.3 · HSTS · DMARC

SECURITY

Google Cloud Iam Vulnerability Disclosure

security.txt · contact published

SECURITY

Scopes 1

OAuth scopes governing access to this provider's APIs.

Google Cloud Iam Scopes

2 scopes · authorizationCode

2 scopes

SCOPES

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Google Cloud Iam Agentic Access

11 operations · 6 acting

11 operations · 6 acting

AGENTIC

Resources

Get Started 2

Portal, sign-up, and the first successful call

Documentation 1

Reference material describing how the API behaves

Agent Surfaces 1

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 1

Pagination, idempotency, versioning, errors, and events

Build 2

SDKs, sample code, and the tooling you integrate with

Access & Security 5

Authentication, authorization, and security posture

Operate 2

Status, limits, changes, and where to get help

Commercial 3

Pricing, plans, and the legal terms of use

Source (apis.yml)

apis.yml Raw ↑
aid: google-cloud-iam
name: Google Cloud IAM
description: Google Cloud Identity and Access Management (IAM) enables fine-grained access control and visibility for managing
  cloud resources. It provides the ability to create and manage service accounts, roles, and permissions to enforce least-privilege
  security policies across Google Cloud resources.
accessModel:
  pricing: freemium
  onboarding: self-serve
  trial: false
  try_now: true
  public: false
  label: Freemium · Self-serve signup
  confidence: high
  source:
  - plans
  - authentication
  generated: '2026-07-22'
  method: derived
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/google-cloud-iam.png
url: https://raw.githubusercontent.com/api-evangelist/google-cloud-iam/refs/heads/main/apis.yml
created: '2026-03-13'
modified: '2026-05-19'
specificationVersion: '0.19'
type: Index
tags:
- Access Management
- Google Cloud
- IAM
- Identity
- Permissions
- Security
apis:
- aid: google-cloud-iam:google-cloud-iam-permissions-api
  name: Google Cloud IAM Permissions API
  description: The Permissions API from Google Cloud IAM — 1 operation(s) for permissions.
  humanURL: https://cloud.google.com/iam
  baseURL: https://iam.googleapis.com
  tags:
  - Permissions
  properties:
  - type: OpenAPI
    url: openapi/google-cloud-iam-permissions-api-openapi.yml
  - type: Documentation
    url: https://cloud.google.com/iam/docs/reference/rest
  - type: Authentication
    url: https://cloud.google.com/iam/docs/authentication
  - type: GettingStarted
    url: https://cloud.google.com/iam/docs/quickstarts
  - type: JSONSchema
    url: json-schema/service-account.json
  - type: JSONLDContext
    url: json-ld/context.jsonld
- aid: google-cloud-iam:google-cloud-iam-roles-api
  name: Google Cloud IAM Roles API
  description: The Roles API from Google Cloud IAM — 2 operation(s) for roles.
  humanURL: https://cloud.google.com/iam
  baseURL: https://iam.googleapis.com
  tags:
  - Roles
  properties:
  - type: OpenAPI
    url: openapi/google-cloud-iam-roles-api-openapi.yml
  - type: Documentation
    url: https://cloud.google.com/iam/docs/reference/rest
  - type: Authentication
    url: https://cloud.google.com/iam/docs/authentication
  - type: GettingStarted
    url: https://cloud.google.com/iam/docs/quickstarts
  - type: JSONSchema
    url: json-schema/service-account.json
  - type: JSONLDContext
    url: json-ld/context.jsonld
- aid: google-cloud-iam:google-cloud-iam-service-account-keys-api
  name: Google Cloud IAM Service Account Keys API
  description: The Service Account Keys API from Google Cloud IAM — 1 operation(s) for service account keys.
  humanURL: https://cloud.google.com/iam
  baseURL: https://iam.googleapis.com
  tags:
  - Service Account Keys
  properties:
  - type: OpenAPI
    url: openapi/google-cloud-iam-service-account-keys-api-openapi.yml
  - type: Documentation
    url: https://cloud.google.com/iam/docs/reference/rest
  - type: Authentication
    url: https://cloud.google.com/iam/docs/authentication
  - type: GettingStarted
    url: https://cloud.google.com/iam/docs/quickstarts
  - type: JSONSchema
    url: json-schema/service-account.json
  - type: JSONLDContext
    url: json-ld/context.jsonld
- aid: google-cloud-iam:google-cloud-iam-service-accounts-api
  name: Google Cloud IAM Service Accounts API
  description: The Service Accounts API from Google Cloud IAM — 2 operation(s) for service accounts.
  humanURL: https://cloud.google.com/iam
  baseURL: https://iam.googleapis.com
  tags:
  - Service Accounts
  properties:
  - type: OpenAPI
    url: openapi/google-cloud-iam-service-accounts-api-openapi.yml
  - type: Documentation
    url: https://cloud.google.com/iam/docs/reference/rest
  - type: Authentication
    url: https://cloud.google.com/iam/docs/authentication
  - type: GettingStarted
    url: https://cloud.google.com/iam/docs/quickstarts
  - type: JSONSchema
    url: json-schema/service-account.json
  - type: JSONLDContext
    url: json-ld/context.jsonld
common:
- type: PostmanWorkspace
  url: https://www.postman.com/kinlaneapi/google-cloud-iam/overview
- type: AgenticAccess
  url: agentic-access/google-cloud-iam-agentic-access.yml
- type: VulnerabilityDisclosure
  url: security/google-cloud-iam-vulnerability-disclosure.yml
- type: DomainSecurity
  url: security/google-cloud-iam-domain-security.yml
- type: Authentication
  url: authentication/google-cloud-iam-authentication.yml
- type: OAuthScopes
  url: scopes/google-cloud-iam-scopes.yml
- type: GitHubOrganization
  url: https://github.com/googleapis
- type: Portal
  url: https://cloud.google.com/iam
- type: GettingStarted
  url: https://cloud.google.com/iam/docs/quickstarts
- type: Documentation
  url: https://cloud.google.com/iam/docs
- type: Authentication
  url: https://cloud.google.com/iam/docs/authentication
- type: Pricing
  url: https://cloud.google.com/iam/pricing
- type: TermsOfService
  url: https://cloud.google.com/terms
- type: PrivacyPolicy
  url: https://policies.google.com/privacy
- type: StatusPage
  url: https://status.cloud.google.com/
- type: Support
  url: https://cloud.google.com/iam/docs/support
- type: JSONLDContext
  url: json-ld/context.jsonld
- type: Integrations
  url: https://cloud.google.com/marketplace
integrations:
- name: Become a Partner
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com