Google SecOps SIEM deprecates legacy APIs
Google Security Operations is deprecating its legacy SIEM APIs, including the Backstory API and Ingestion API, in favor of the modern Chronicle API. This change affects custom scripts, integrations, SOAR connectors, or ingestion feeds that rely on these legacy endpoints. The deprecation will fully take effect with the complete shutdown of legacy APIs for all existing instances on July 20, 2027.
Deprecations (1) ›
- Google SecOps SIEM [Spotlight Feature] Deprecation of Google Security Operations legacy SIEM APIs
[Spotlight Feature] Deprecation of Google Security Operations legacy SIEM APIs Google Security Operations is deprecating its legacy SIEM APIs— Backstory API (including Customer Management API ) and Ingestion API —in favor of the modern Chronicle API . Key dates October 26, 2026: New Google SecOps instances provisioned from this date will no longer support legacy API calls. July 20, 2027: All requests to legacy endpoints fail from this date because legacy APIs for all existing instances will be completely turned down. This change applies only to custom scripts, integrations, SOAR connectors, or
https://docs.cloud.google.com/release-notes#July_20_2026
Related releases
- GKE introduces Agent Substrate to scale agentic workloads efficiently Google Cloud release notes ·
- Apigee X fixes SemanticCacheLookup incompatibility with Vertex AI Vector Search PSC Google Cloud release notes ·
- Cluster Toolkit v1.102.0 Enhances GKE with MTC, Flex Volumes, and HPC Capabilities Google Cloud release notes ·
- Google Cloud's Managed Apache Airflow receives new features and improved resilience Google Cloud release notes ·
- Google Cloud CCaaS v6.12 Adds Cold Transfer Auto-Resume, HubSpot DNC, & Network Diagnostics Google Cloud release notes ·
- Google Addresses Security Vulnerabilities in Slurm for Cluster Toolkit Google Cloud release notes ·