policytroubleshooter.googleapis.com
Policy Troubleshooter is a Google Cloud service that checks whether a principal has a specific permission on a resource and explains why access is allowed or denied. It is part of Google Cloud's Policy Intelligence tooling for troubleshooting IAM access.
policytroubleshooter.googleapis.com exposes a Google Cloud REST API for IAM policy troubleshooting plus a public MCP server at `/mcp`.
- Policy Troubleshooter MCP Serverdetected
- Policy Troubleshooter REST APIdiscovered
Easiest path: install the Google Cloud CLI and run gcloud auth application-default login or gcloud auth login to obtain Google-issued access tokens with the https://www.googleapis.com/auth/cloud-platform scope for your account. For browser-based app integrations, create OAuth credentials in Google Cloud Console and request the https://www.googleapis.com/auth/cloud-platform scope.
In Google Cloud Console, create an API key under APIs & Services → Credentials. Restrict the key to the needed APIs/projects as appropriate. The discovery document states requests may send the key as the key query parameter and that it is required unless you provide an OAuth 2.0 token.
conventions · 0/8 published
- integrations.json✗
/.well-known/integrations.json - llms.txt✗
/llms.txt - API catalog✗
/.well-known/api-catalog - OpenAPI document✗
/api/schema/, /openapi.json, /swagger.json, /api/openapi.json, or /v1/openapi.json - MCP server card✗
/.well-known/mcp/server-card.json - OAuth protected resource✗
/.well-known/oauth-protected-resource - Agent card✗
/.well-known/agent-card.json - Agent skills✗
/.well-known/agent-skills/index.json
Publish these signals → /publishing