{"event":{"id":"evt-google-agent-identity-principal-20260506","dedupe_key":"agent_identity_principal_ga:2026-05-06:google-cloud-makes-agent-identity-a-first-class-principal","event_type":"agent_identity_principal_ga","title":"Google Cloud makes agent identity a first-class principal","summary":"Google Cloud described Agent Identity as a dedicated first-class principal distinct from human identities and generic service accounts, with cryptographic protection and strong attestation; Agent Identity for Agent Runtime was generally available.","occurred_at":"2026-05-06T00:00:00.000Z","published_at":"2026-05-06T00:00:00.000Z","observed_at":"2026-10-08T19:29:00.000Z","reconstructed_at":null,"ingest_type":"live_world_scan","locations":null,"status":"verified","confidence":0.99,"metadata":{"actors":["Google Cloud"],"affected_layers":["layer-agents","layer-identity","layer-permissions"],"change_kind":"first_class_agent_identity","uncertainty":"This is Google Cloud product architecture and does not establish cross-provider identity portability or universal adoption."},"created_at":"2026-10-08T20:03:28.737Z","updated_at":"2026-10-08T20:03:28.737Z"},"artifacts":[{"id":"art-google-agent-identity-principal-20260506","dedupe_key":"c58e9cfb073143ffb4fc7702b947e0fbe5cc45f340cedeaca000b6bf34417059","canonical_url":"https://cloud.google.com/blog/products/identity-security/whats-new-in-iam-security-governance-and-runtime-defense","evidence_locator":"","artifact_type":"agent_identity_security_release","title":"Google Cloud Agent Identity as a first-class principal","summary":"Google Cloud described Agent Identity as a dedicated, strongly attested cryptographic identity and first-class principal distinct from human identities and generic service accounts; Agent Identity for Agent Runtime was generally available.","creator_entities":["Google Cloud"],"released_at":"2026-05-06T00:00:00.000Z","content_hash":null,"metadata":[],"created_at":"2026-10-08T20:03:28.734Z","updated_at":"2026-10-08T20:03:28.734Z","relation":"evidenced_by"}],"signals":[{"id":"sig-agent-control-plane-convergence-20261008","statement":"Identity, scoped authorization, credential brokering, per-agent audit attribution, gateway enforcement and sandbox boundaries are converging into an integrated control plane for consequential agent action.","signal_type":"agent_control_plane_convergence","direction":"increasing","confidence":0.95,"epistemic_status":"supported_inference","mapping_mode":"contemporaneous","reconstructed_at":null,"created_at":"2026-10-08T20:03:28.740Z","updated_at":"2026-10-08T20:03:28.740Z"},{"id":"sig-first-class-agent-principals-20261008","statement":"Agent identity has matured into a first-class cloud principal with cryptographic attestation, agent-specific IAM treatment and lifecycle-bound identity rather than relying only on inherited human or generic service-account identity.","signal_type":"first_class_agent_principal","direction":"increasing","confidence":0.98,"epistemic_status":"supported_inference","mapping_mode":"contemporaneous","reconstructed_at":null,"created_at":"2026-10-08T20:03:28.739Z","updated_at":"2026-10-08T20:03:28.739Z"}]}