Google Cloud KMS website screenshot

Google Cloud KMS

Google Cloud Key Management Service (KMS) allows you to create, import, and manage cryptographic keys and perform cryptographic operations in a central cloud service. It supports encryption, decryption, signing, and verification using symmetric and asymmetric keys for securing data and workloads.

Google Cloud KMS publishes 3 APIs on the APIs.io network: Crypto Keys API, Crypto Operations API, and Key Rings API. Tagged areas include Cryptography, Encryption, Google Cloud, Key Management, and KMS.

The Google Cloud KMS catalog on APIs.io includes 1 JSON-LD context and 1 Spectral governance ruleset.

Google Cloud KMS’s developer surface includes authentication, developer portal, getting-started guide, documentation, pricing, support, and 11 more developer resources.

61.3/100 strong ▬ flat Agent 31/100 agent aware Full breakdown ↓
scored 2026-07-28 · rubric v0.6
AccessFreemiumSelf serve⚡ Free to try
3 APIs
CryptographyEncryptionGoogle CloudKey ManagementKMSSecurity

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-07-28 · rubric v0.6
Composite quality — 61.3/100 · strong
Contract Quality 16.3 / 25
Developer Ergonomics 9.6 / 20
Commercial Clarity 14.2 / 20
Operational Transparency 6.8 / 13
Governance 7.0 / 12
Discoverability 7.4 / 10
Agent readiness — 31/100 · agent aware
Machine-Readable Contract 18 / 18
Agentic Access Contract 10 / 10
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/google-cloud-kms: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 3

Individual APIs this provider publishes, each with its own machine-readable definition.

Google Cloud KMS Crypto Keys API

The Crypto Keys API from Google Cloud KMS — 2 operation(s) for crypto keys.

Google Cloud KMS Crypto Operations API

The Crypto Operations API from Google Cloud KMS — 2 operation(s) for crypto operations.

Google Cloud KMS Key Rings API

The Key Rings API from Google Cloud KMS — 2 operation(s) for key rings.

Postman Collections 3

Ready-to-run Postman collections for exercising this provider's APIs.

Open Collections 1

Open, tool-agnostic API collections (OpenAPI-derived and Bruno).

Google Cloud KMS API

OPEN COLLECTION

Pricing Plans 1

Published pricing tiers and plan structures.

Rate Limits 1

Documented rate limits and quota policies.

Google Cloud Kms Rate Limits

5 limits

RATE LIMITS

FinOps 1

Cost, billing, and metering signals for API financial operations.

Semantic Vocabularies 1

JSON-LD contexts and semantic vocabularies used across these APIs.

context Context

3 classes · 0 properties

JSON-LD

Spectral Rules 1

Spectral governance rulesets for linting and validating these APIs.

Google Cloud KMS API Rules

5 rules · 3 warnings 2 info

SPECTRAL

JSON Schema 1

Standalone JSON Schema definitions for this provider's data models.

CryptoKey

10 properties

JSON SCHEMA

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Google Cloud Kms Authentication

oauth2 · 1 scheme

SECURITY

Google Cloud Kms Domain Security

TLSv1.3 · HSTS · DMARC

SECURITY

Google Cloud Kms Vulnerability Disclosure

security.txt · contact published

SECURITY

Scopes 1

OAuth scopes governing access to this provider's APIs.

Google Cloud Kms Scopes

2 scopes · authorizationCode

2 scopes

SCOPES

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Google Cloud Kms Agentic Access

9 operations · 5 acting

9 operations · 5 acting

AGENTIC

Resources

Get Started 2

Portal, sign-up, and the first successful call

Documentation 1

Reference material describing how the API behaves

Agent Surfaces 1

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 1

Pagination, idempotency, versioning, errors, and events

Build 2

SDKs, sample code, and the tooling you integrate with

Access & Security 5

Authentication, authorization, and security posture

Operate 2

Status, limits, changes, and where to get help

Commercial 3

Pricing, plans, and the legal terms of use

Source (apis.yml)

apis.yml Raw ↑
aid: google-cloud-kms
name: Google Cloud KMS
description: Google Cloud Key Management Service (KMS) allows you to create, import, and manage cryptographic keys and perform
  cryptographic operations in a central cloud service. It supports encryption, decryption, signing, and verification using
  symmetric and asymmetric keys for securing data and workloads.
accessModel:
  pricing: freemium
  onboarding: self-serve
  trial: false
  try_now: true
  public: false
  label: Freemium · Self-serve signup
  confidence: high
  source:
  - plans
  - authentication
  generated: '2026-07-22'
  method: derived
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/google-cloud-kms.png
url: https://raw.githubusercontent.com/api-evangelist/google-cloud-kms/refs/heads/main/apis.yml
created: '2026-03-13'
modified: '2026-05-19'
specificationVersion: '0.19'
type: Index
tags:
- Cryptography
- Encryption
- Google Cloud
- Key Management
- KMS
- Security
apis:
- aid: google-cloud-kms:google-cloud-kms-crypto-keys-api
  name: Google Cloud KMS Crypto Keys API
  description: The Crypto Keys API from Google Cloud KMS — 2 operation(s) for crypto keys.
  humanURL: https://cloud.google.com/kms
  baseURL: https://cloudkms.googleapis.com
  tags:
  - Crypto Keys
  properties:
  - type: OpenAPI
    url: openapi/google-cloud-kms-crypto-keys-api-openapi.yml
  - type: Documentation
    url: https://cloud.google.com/kms/docs/reference/rest
  - type: Authentication
    url: https://cloud.google.com/kms/docs/iam
  - type: GettingStarted
    url: https://cloud.google.com/kms/docs/quickstart
  - type: JSONSchema
    url: json-schema/crypto-key.json
  - type: JSONLDContext
    url: json-ld/context.jsonld
- aid: google-cloud-kms:google-cloud-kms-crypto-operations-api
  name: Google Cloud KMS Crypto Operations API
  description: The Crypto Operations API from Google Cloud KMS — 2 operation(s) for crypto operations.
  humanURL: https://cloud.google.com/kms
  baseURL: https://cloudkms.googleapis.com
  tags:
  - Crypto Operations
  properties:
  - type: OpenAPI
    url: openapi/google-cloud-kms-crypto-operations-api-openapi.yml
  - type: Documentation
    url: https://cloud.google.com/kms/docs/reference/rest
  - type: Authentication
    url: https://cloud.google.com/kms/docs/iam
  - type: GettingStarted
    url: https://cloud.google.com/kms/docs/quickstart
  - type: JSONSchema
    url: json-schema/crypto-key.json
  - type: JSONLDContext
    url: json-ld/context.jsonld
- aid: google-cloud-kms:google-cloud-kms-key-rings-api
  name: Google Cloud KMS Key Rings API
  description: The Key Rings API from Google Cloud KMS — 2 operation(s) for key rings.
  humanURL: https://cloud.google.com/kms
  baseURL: https://cloudkms.googleapis.com
  tags:
  - Key Rings
  properties:
  - type: OpenAPI
    url: openapi/google-cloud-kms-key-rings-api-openapi.yml
  - type: Documentation
    url: https://cloud.google.com/kms/docs/reference/rest
  - type: Authentication
    url: https://cloud.google.com/kms/docs/iam
  - type: GettingStarted
    url: https://cloud.google.com/kms/docs/quickstart
  - type: JSONSchema
    url: json-schema/crypto-key.json
  - type: JSONLDContext
    url: json-ld/context.jsonld
common:
- type: PostmanWorkspace
  url: https://www.postman.com/kinlaneapi/google-cloud-kms/overview
- type: AgenticAccess
  url: agentic-access/google-cloud-kms-agentic-access.yml
- type: VulnerabilityDisclosure
  url: security/google-cloud-kms-vulnerability-disclosure.yml
- type: DomainSecurity
  url: security/google-cloud-kms-domain-security.yml
- type: Authentication
  url: authentication/google-cloud-kms-authentication.yml
- type: OAuthScopes
  url: scopes/google-cloud-kms-scopes.yml
- type: GitHubOrganization
  url: https://github.com/googleapis
- type: Portal
  url: https://cloud.google.com/kms
- type: GettingStarted
  url: https://cloud.google.com/kms/docs/quickstart
- type: Documentation
  url: https://cloud.google.com/kms/docs
- type: Authentication
  url: https://cloud.google.com/kms/docs/iam
- type: Pricing
  url: https://cloud.google.com/kms/pricing
- type: TermsOfService
  url: https://cloud.google.com/terms
- type: PrivacyPolicy
  url: https://policies.google.com/privacy
- type: StatusPage
  url: https://status.cloud.google.com/
- type: Support
  url: https://cloud.google.com/kms/docs/support
- type: JSONLDContext
  url: json-ld/context.jsonld
- type: Integrations
  url: https://cloud.google.com/marketplace
integrations:
- name: Become a Partner
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com