GCP releases

Google Cloud releases and Terraform Google provider. New features, breaking changes, security advisories and deprecations - each summarised in plain English and updated continuously.

Tracking 331 GCP releases · Updated

  • Google Cloud release notes networkinggcppreviewengineer ·

    App Engine Standard Ruby: Direct VPC egress in preview

    App Engine standard environment Ruby now supports Direct VPC egress in preview, offering a simpler and more cost-effective alternative to Serverless VPC Access connectors. This feature enables your workloads to access VPC network resources directly. This is particularly relevant for developers managing Ruby applications on App Engine who need to integrate with private VPC resources.

    feature
  • Google Cloud release notes aigcpgaarchitect ·

    Gemini Enterprise EU Compliance for NotebookLM Enterprise

    Gemini Enterprise now meets data residency and machine learning processing compliance standards in the EU for NotebookLM Enterprise's core source interaction features. This change is important for European organizations needing to adhere to strict data regulations within their AI tools. While core chat and source addition functionalities are covered, advanced generative features like audio overviews and reports are still excluded from MLP compliance. This update impacts organizations using or considering NotebookLM Enterprise within the EU.

    feature
  • Google Cloud release notes securitygcpengineer ·

    Sensitive Data Data Protection adds conversational content inspection

    Sensitive Data Protection now inspects and de-identifies conversational content, allowing users to include conversation data in their ContentItem requests. This enhancement expands the tool's capability to protect sensitive information within dialogues and chat logs. This feature is available for use in ContentItem requests.

    feature
  • Google Cloud release notes securitygcppreviewengineer ·

    VPC Service Controls Preview Support for Workload Identity API

    VPC Service Controls now supports a preview of Workload Identity API integration. This enhancement helps improve security posture by enabling fine-grained access control for workloads. The feature is currently in preview, meaning it is available for testing and feedback but not yet generally available for production use.

    feature
  • Google Cloud release notes awspreviewengineer ·

    App Engine Standard Node.js: Direct VPC Egress in Preview

    App Engine standard environment for Node.js now supports Direct VPC egress in preview. This feature offers a simpler and more cost-effective way to access VPC network resources compared to Serverless VPC Access connectors. It allows Node.js workloads to directly connect to resources within your Virtual Private Cloud.

    feature
  • Google Cloud release notes networkinggcppreviewengineer ·

    App Engine Standard Python: Direct VPC egress in Preview

    App Engine standard environment for Python now supports Direct VPC egress in preview. This feature provides a simpler and more cost-effective way for workloads to access VPC network resources, serving as an alternative to Serverless VPC Access connectors. It is now available for preview testing.

    feature
  • Terraform Google Provider Releases terraforminfragcpengineer ·

    Terraform Google Provider v7.35.0: New resources and improvements

    Terraform Google Provider v7.35.0 introduces several new resources for managing Google Cloud services, including Oracle GoldenGate connections, Dataplex data products, and Migration Center discoveries. Enhancements to existing resources like firewall policies and container node pools improve configuration flexibility. These updates benefit engineers and architects managing Google Cloud infrastructure through Terraform by expanding the provider's capabilities and fixing reported bugs.

    feature patch
  • Google Cloud release notes infragcppreviewengineer ·

    Managed Airflow Gen 3 supports internal-only Cloud Run endpoints

    Managed Service for Apache Airflow (Gen 3) now allows access to Cloud Run endpoints restricted to internal ingress traffic via your environment's network attachment. This enhancement improves network security and control for Airflow deployments. The feature is available to all Managed Airflow Gen 3 versions through gcloud CLI beta commands and the beta Cloud Composer API.

    feature
  • Google Cloud release notes awsazuregcpdatabrickssnowflakeengineer ·

    NetApp Volumes Flex Unified service now in limited preview

    NetApp Volumes Flex Unified service level is now available with limited performance in the us-east5 region. This announcement marks a step towards broader availability for this unified service. Engineers and architects working with data storage solutions on Google Cloud should note the regional availability and performance limitations.

    announcement
  • Google Cloud release notes aigcpengineer ·

    Gemini Enterprise Agent Platform: AI Safety Docs Updated

    Google Cloud has updated documentation for its Gemini Enterprise Agent Platform, focusing on abuse monitoring, zero data retention, and responsible AI practices. These changes align with the new Advanced AI Safety Addendum, providing clarity on safety measures and data handling for specific models. The updates are relevant for all users of the Gemini Enterprise Agent Platform, particularly those concerned with advanced AI safety and data privacy.

    announcement
  • Google Cloud release notes infra ·

    GKE enhances maintenance exclusions

    Google Kubernetes Engine is expanding maintenance exclusion capabilities for node pools. This feature allows for per-node pool exclusions and extends the default "No upgrades" exclusion to 90 days, providing greater control over cluster maintenance schedules. These enhancements are available in GKE release channels for cluster administrators.

    feature
  • Google Cloud release notes aigcpgapreviewengineer ·

    Gemini Enterprise Adds Gemini 3 Pro and 3.1 Flash Image Models

    Gemini Enterprise is now generally available with Gemini 3 Pro image (Nano Banana Pro) and Gemini 3.1 flash image (Nano Banana 2) for image generation. These models enhance generative AI capabilities within the Gemini Enterprise app, offering advanced image creation features. Administrators can manage model availability through feature controls, with both models defaulting to off and available in the Global region.

    feature
  • Google Cloud release notes datagcpgaengineer ·

    Datastream adds free tier for change data capture

    Datastream now includes a free tier for change data capture (CDC) data processed from Google Cloud sources like AlloyDB for PostgreSQL and Spanner. This offers cost savings for users by providing the first 100 GiB of CDC data free per billing account monthly. The feature is available now and details are on the Pricing page.

    feature
  • Google Cloud release notes observabilitygcpgaengineer ·

    Cloud Monitoring Histogram widgets for custom dashboards now GA

    Histogram widgets are now generally available for Cloud Monitoring custom dashboards, offering a new way to visualize data distributions. These widgets group time series values into ranges and display their relative frequency, providing insights beyond simple point-in-time values. This enhancement is available for all users creating custom dashboards.

    feature
  • Google Cloud release notes infragcppreviewengineer ·

    Cloud Composer: Internal ingress for Cloud Run endpoints

    Cloud Composer now supports accessing Cloud Run endpoints restricted to internal ingress traffic via your environment's network attachment. This enhancement is available for all Managed Airflow (Gen 3) versions through gcloud CLI beta commands and the beta Cloud Composer API. This update allows for more secure and restricted communication between Airflow environments and internal Cloud Run services.

    feature
  • Google Cloud release notes observabilitygcpengineer ·

    Cloud Trace enforces organization policies for observability buckets

    The create-observability bucket flow now enforces organization policies for resource locations, Customer-Managed Encryption Keys (CMEKs), and key storage projects. This change enhances security and compliance for trace data stored in observability buckets. The feature is available now for organizations using Cloud Trace with applicable policies.

    feature
  • Google Cloud release notes networkinggcpgaengineer ·

    Filestore supports Private Service Connect

    Google Cloud Filestore instances can now be configured to use Private Service Connect. This allows consumers to access managed services privately from within their VPC network using NFSv3 or NFSv4.1 file system protocols and IPv4 or IPv6 address families. This feature is now generally available.

    feature
  • Google Cloud release notes datagcpgaengineer ·

    BigQuery Remote Functions: Custom Paths in Endpoint URL

    BigQuery remote functions now support custom paths in the endpoint URL, allowing reuse of a single Cloud Run service for multiple functions via path suffixes. This enhancement provides greater flexibility in managing remote function endpoints. The feature is now generally available.

    feature
  • Google Cloud release notes securitygcpsecurity-advisoryengineer ·

    Apigee X: Updated Cassandra version released for security

    Google Cloud has released an updated version of Apigee X's Cassandra, incorporating a security fix for infrastructure vulnerabilities. This update addresses multiple CVEs and aims to enhance the security posture of Apigee X deployments. The rollout began on June 2nd, 2026, and may take several business days to complete across all Google Cloud zones.

    security announcement
  • Google Cloud release notes securitygcppreviewengineer ·

    Cloud Load Balancing adds post-quantum key exchange

    Google Cloud Load Balancing now supports post-quantum key exchange for Application Load Balancers and external proxy Network Load Balancers. This feature protects current traffic from future quantum decryption risks by enabling clients that support TLS 1.3 and X25519MLKEM768 to use post-quantum key exchange. The rollout occurs in three phases, with opt-in available now and enablement by default beginning October 2026.

    feature