GeethanTechGeethanTechTech, decoded daily.
LatestAISoftware & PlatformsCybersecurityStartups & VentureTech Business & Markets
All posts
AIabout 2 hours ago

Google details Gemini agent identity, network and cost controls

By megan

Google says its new work agent will use a distinct identity, a policy gateway and a project spend cap. IT teams need to test how those controls behave and confirm which capabilities are available.

A ribbed ceramic token sits in one recess of a terracotta disk, beside other empty recesses and a small green stop.

Google Cloud announced the Gemini agent on October 8, 2026. In its keynote account, the company describes a work agent that can use business tools, retain context across apps and continue longer tasks in the cloud. Google also outlined per-agent identities, network policy controls and project-level spending caps. These are company descriptions, not independent evidence that every control works in a particular deployment.

How the agent is designed to work

Google says the agent can take an objective, call reusable skills and tools, and coordinate temporary sub-agents for multi-step work. It also describes model selection across its Gemini models and Anthropic's Claude models. The announcement does not show how reliably those parts work together in a customer's environment.

The main operational question is narrower than whether an agent can complete a task: which systems can it reach, whose authority does it use, and how can administrators inspect its actions?

Identity and network boundaries

Google says each agent has its own identity and least-privilege permissions. It says actions are logged under that identity, including activity in virtual machines the agent creates to run code. For external systems, Google describes mapping and propagating the agent's identity through standards such as OAuth.

The company also describes an Agent Sandbox with a network boundary and an Agent Gateway intended to apply policy to traffic into, out of and between agents. A buyer should check the permissions actually granted to an agent, try an action that policy should deny, inspect the resulting logs and establish who can stop a running task. Those are evaluation steps, not test results supplied by Google.

A project cap is different from a token tier

Google says administrators can set a hard limit on a project's AI spending in the Cloud Billing Console. According to the company, the cap tracks token use and sandbox costs, pauses that project's agent when triggered, and allows an administrator to resume it. Google also says Smart Routing selects a model for each workload. Neither the announcement nor those control descriptions establish an independently measured cost saving for a reader's workload.

Teams should test a representative task against the cap, including model choice and sandbox use, before using Google's efficiency claims in a budget forecast.

Rollout details still matter

The October 8 keynote post does not give a general rollout date or a capability-by-capability availability table for the Gemini agent. Google separately labels its financial-services and legal specializations as previews. Organisations evaluating the broader agent should confirm access to the specific connectors, identity controls, gateway policies and billing limits they need. The practical value depends on those controls working together in the deployment a team can actually use.

Continue with this topicAI
Browse categoryarrow_forward
Continue reading

Related posts

Abstract illustration of a vertical threshold separating cool grey and coral blocks, representing a price change above 100,000 prompt tokens.
AI1 day agoBy megan

Claude Haiku 5.5 costs more above 100K prompt tokens

Anthropic’s new small model offers low API rates for shorter prompts, but requests above 100,000 prompt tokens move to a higher price tier. A move from Haiku 4.5 also requires checks for token counts, thinking settings and request compatibility.

Read article
An open ivory tray and a closed steel-lidded tray sit beside a loose green enamel tab on a pale textured surface.
AI2 days agoBy megan

Meta and Sierra propose OAuth-based protocol for personal AI agents

Personal Agent Protocol would let an agent discover a business’s services, start a guest or account session, and work through its website, APIs, or business agent. Sierra plans to publish the v0.1 specification later in October 2026, so the announced flow is not yet an implementable standard.

Read article
GeethanTech
GeethanTech
Tech, decoded daily.
Read
Latest postsAISoftware & PlatformsCybersecurityStartups & VentureTech Business & MarketsRSS feed
Connect
mailEmaillanguageWebsiteinLinkedInIGInstagramfFacebook@Xsmart_displayYouTube
From the publisher

Read all our publications: GeethanPost | GeethanTech

A chapter in the ElegantHumanity story

Powered byElegantArc