Google Cloud CLI remote MCP plus Sume MCP in one agent

Google's Cloud CLI remote MCP server is in preview. Two hosted MCP servers in one agent: what each does and how to keep their permissions apart.

5 min readSume
All posts

You can connect Google's Cloud CLI remote MCP server and Sume's hosted server to the same agent; they are independent endpoints with separate sign-in. Google announced the Cloud CLI server in preview on 2026-09-30 at https://cloudcli.googleapis.com/mcp, and Sume's is https://mcp.sume.com/mcp.

The risk to manage is permission blur, since one agent now holds a cloud-operations tool and a spend-capable media tool.

What Google's server offers

Per the announcement it exposes run_gcloud_command and run_bq_command, authenticates with keyless Agent Identity or OAuth 2.0, needs the Cloud CLI Execution API enabled and the roles/mcp.toolUser role, and has no extra charge for the server itself.

At a glance

Two hosted MCP servers compared, read 2026-10-03.
ItemGoogle Cloud CLISume
Endpointhttps://cloudcli.googleapis.com/mcphttps://mcp.sume.com/mcp
StatusPreview (2026-09-30)Hosted MCP server
AuthAgent Identity or OAuth 2.0OAuth or API key
Toolsrun_gcloud_command, run_bq_commandSee tools_list

What Sume's server offers

Sume's is a tools-only server for generation, jobs and assets. OAuth gives mcp:read by default and mcp:write on opt-in; an API key is the alternative. Write and paid calls need an idempotency_key.

Keep the two apart: give each its own approval rules, and never let a prompt from a Sume result flow into a gcloud command without review.

  • Separate scopes: mcp:read for Sume, least-privilege role for Google.
  • Review any command text the model builds from tool output.
  • Set max_spend_usd on Sume paid calls.

Limits and what is not verified

I did not connect both in one client for this post. The Google details come from the announcement, which is a preview and may change.

Sources

Related posts

More in Integrations

All Integrations posts

Written by Sume