google/agents-cli

google-agents-cli-publish

This skill should be used when the user wants to "publish an agent", "publish my ADK agent", "register an agent with Gemini Enterprise", "publish to Gemini Enterprise", or needs guidance on the agents-cli publish gemini-enterprise command. Also use when the user wants to "manage agents in Agent Registry", "list/update/delete registered agents", or "register an MCP server". Covers ADK vs A2A registration modes, programmatic and interactive usage, flag reference, auto-detection from deployment me…

All-time #268 Trending #55 Hot #3 First seen Apr 21, 2026
8-week activity · all time api

Installation

$ npx skills add google/agents-cli --skill google-agents-cli-publish

Similar popular skills

Related neighbors and high-traction skills in the same topics — useful to compare before installing.

Security audits

Partner security reviews for this skill.

agent-trust-hub SAFE

Analyzed May 19, 2026

This skill provides instructions for registering agents with Gemini Enterprise using the google-agents-cli tool. It covers standard registration modes, permissions management, and configuration via environment variables. All tools and packages referenced are official Google resources within the Agent Development Kit (ADK) ecosystem.

snyk MEDIUM

Analyzed May 19, 2026

[MEDIUM] W011: Third-party content exposure detected (indirect prompt injection risk). [MEDIUM] W012: Unverifiable external dependency detected (runtime URL that controls agent).

socket Score 0.9000 · 0 alerts

Analyzed May 19, 2026

  • license 1
  • maintenance 1
  • quality 0.9
  • supply chain 1
  • vulnerability 1

0 alerts

Also in this package

Other skills from google/agents-cli.

npx skills add google/agents-cli

Browse all from google/agents-cli

More details

Agent compatibility

Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.

Claude Code Not declared
Cursor Not declared
Codex Not declared
GitHub Copilot Not declared
Windsurf Not declared
Gemini CLI Declared
Cline Not declared
OpenCode Not declared

Repository health

Stars 5.8K
License LICENSE
Default branch main
Open issues 30
Status Active

Skill metadata

Parsed from SKILL.md frontmatter.

Version1.5.0
LicenseApache-2.0
Declared agents gemini
More metadata
author
Google
license
Apache-2.0
version
1.5.0
requires
{"bins":["agents-cli"],"install":"uv tool install google-agents-cli"}

Package contents

Files included with this skill beyond the listing page.

  • skill md SKILL.md 11,549 B
  • docs SUMMARY.md 688 B

History

  1. First seen on skills.sh
  2. First recorded snapshot · 163,800 installs

SKILL.md

Gemini Enterprise Registration

Requires: A deployed agent. For Agent Runtime, deployment_metadata.json (created by agents-cli deploy) enables auto-detection. For Cloud Run or GKE, provide the agent card URL and flags directly.

Prerequisites

  1. Agent must be deployed — the agent must be running and reachable
  2. Gemini Enterprise app must exist — Create one in Google Cloud Console → Gemini Enterprise → Apps before registering
  3. deployment_metadata.json (Agent Runtime only) — Created automatically by agents-cli deploy; contains the agent runtime ID, deployment target, the A2A flag, and the agent directory

Required Permissions for A2A on Cloud Run

  • roles/run.servicesInvoker granted to the Discovery Engine service account (service-<PROJECT_NUMBER>@gcp-sa-discoveryengine.iam.gserviceaccount.com) on the Cloud Run service.

Registration Modes

A2A Registration

Every scaffolded agent serves the Agent-to-Agent protocol. A2A is the default — and only — registration type on Cloud Run and GKE (no reasoning engine to invoke natively). It also works on Agent Runtime via --registration-type a2a. For an ADK agent there the CLI warns against it, because Gemini Enterprise can invoke Agent Runtime natively via :streamQuery — prefer ADK registration in that case. For an agent built on another framework there is no ADK app to invoke natively, so A2A is the right mode on every target and the warning is expected. Pass the agent card URL and the command fetches the card and registers it; display name and description default to the card's name/description.

# A2A on Cloud Run / GKE
agents-cli publish gemini-enterprise \
  --agent-card-url https://my-service-abc123.us-east1.run.app/a2a/app/.well-known/agent-card.json \
  --gemini-enterprise-app-id projects/123456/locations/global/collections/default_collection/engines/my-app

Pass --display-name / --description to override the card defaults. On Agent Runtime, the card URL auto-builds from deployment_metadata.json if you omit --agent-card-url.

ADK Registration (default on Agent Runtime)

ADK projects only. The agent must be deployed to Agent Runtime as an ADK app, since
registration invokes it through :streamQuery. An agent on another framework registers over
A2A, so deploy it to Cloud Run or GKE and publish from there.

This is the default and recommended registration for ADK agents on Agent Runtime: Gemini Enterprise invokes the agent natively via :streamQuery on its reasoning engine resource, authenticating end-to-end. Under the hood, :streamQuery dispatches to the AdkApp's streamingagentrunwithevents method — when debugging an ADK invocation, search the runtime's reasoningenginestderr logs for that method name to trace the failure. It's also the path to use when the agent needs an OAuth authorization (--authorization-id). The agent is registered directly via its reasoning engine resource name; no agent card URL is needed.

agents-cli publish gemini-enterprise \
  --registration-type adk \
  --agent-runtime-id projects/123456/locations/us-east1/reasoningEngines/789 \
  --gemini-enterprise-app-id projects/123456/locations/global/collections/default_collection/engines/my-app \
  --display-name "My Agent" \
  --description "Handles customer queries" \
  --tool-description "Answers questions about products"

Programmatic Mode (CI/CD)

The command is non-interactive by default — pass all required values via flags or environment variables. This makes it safe for CI/CD pipelines.

Via flags

agents-cli publish gemini-enterprise \
  --agent-runtime-id "$AGENT_RUNTIME_ID" \
  --gemini-enterprise-app-id "$GEMINI_ENTERPRISE_APP_ID" \
  --display-name "Production Agent" \
  --registration-type adk

Via environment variables

Most flags have an env var alternative (--metadata-file, --interactive, and --list do not):

export AGENT_RUNTIME_ID="projects/123456/locations/us-east1/reasoningEngines/789"
export GEMINI_ENTERPRISE_APP_ID="projects/123456/locations/global/collections/default_collection/engines/my-app"
export GEMINI_DISPLAY_NAME="Production Agent"
export GEMINI_DESCRIPTION="Handles customer queries"

agents-cli publish gemini-enterprise

Interactive Mode (--interactive)

Pass --interactive (or -i) to be guided through any missing values with interactive prompts. The command will list available Gemini Enterprise apps, offer to auto-detect the agent runtime ID from metadata, and prompt for display name and description.

agents-cli publish gemini-enterprise --interactive

Complete Flag Reference

Flag Env Var Description
--agent-runtime-id AGENTRUNTIMEID Agent Runtime resource name (auto-detected from deployment_metadata.json)
--gemini-enterprise-app-id ID or GEMINIENTERPRISEAPP_ID Gemini Enterprise app full resource name
--display-name GEMINIDISPLAYNAME Display name in Gemini Enterprise
--description GEMINI_DESCRIPTION Agent description
--tool-description GEMINITOOLDESCRIPTION Tool description (ADK mode only, defaults to description)
--registration-type REGISTRATION_TYPE adk or a2a (defaults to adk for an ADK agent on Agent Runtime, a2a everywhere else, including any non-ADK framework)
--agent-card-url AGENTCARDURL Agent card URL for A2A registration
--deployment-target DEPLOYMENT_TARGET agentruntime, cloudrun, or gke (sets the default registration type — ADK on Agent Runtime, A2A on Cloud Run / GKE — and the A2A auth method)
--project-id GOOGLECLOUDPROJECT GCP project ID for billing
--project-number PROJECT_NUMBER GCP project number (used for Gemini Enterprise lookup)
--authorization-id GEMINIAUTHORIZATIONID OAuth authorization resource name
--metadata-file Path to deployment metadata (default: deployment_metadata.json)
--interactive / -i Enable interactive prompts
--list List Gemini Enterprise apps in the current project and exit

Auto-Detection from Metadata

When deployment_metadata.json exists, the command automatically:

  • Reads the agent runtime ID (remoteagentruntime_id)
  • Determines the registration type: defaults to ADK (native :streamQuery) on Agent Runtime, and A2A on Cloud Run / GKE (which have no reasoning engine). A project scaffolded with another framework serves no ADK app, so it defaults to A2A on every target. Override with --registration-type.
  • Determines the deployment target for authentication

This means that for the simplest case (an ADK agent on Agent Runtime, registered as ADK), you only need to provide the Gemini Enterprise app ID:

agents-cli publish gemini-enterprise \
  --gemini-enterprise-app-id projects/123456/locations/global/collections/default_collection/engines/my-app

SDK Compatibility

Agent Runtime deployments may encounter "Session not found" errors with google-cloud-aiplatform versions <= 1.128.0. In interactive mode (--interactive), the command checks the SDK version from uv.lock and offers to upgrade. In programmatic mode, ensure your SDK is up to date before registering.


Agent Registry (agents and MCP servers)

Agent Registry (Preview) is the Google Cloud fleet-wide catalog of agents and MCP servers, separate from a Gemini Enterprise app. Agents deployed to a managed runtime (Agent Runtime on Gemini Enterprise Agent Platform) are auto-registered — no extra step after agents-cli deploy. Manage them with gcloud (requires roles/agentregistry.editor):

# List / inspect agents
gcloud agent-registry agents list --project PROJECT --location LOCATION
gcloud agent-registry agents describe AGENT_NAME

# Update endpoint/metadata — edit the Service resource, not the Agent
gcloud agent-registry services update AGENT_NAME \
  --display-name "..." --description "..." \
  --interfaces "url=ENDPOINT_URL,protocolBinding=http-json"

# Register an external MCP server: not auto-introspected, so upload a
# toolspec.json (its tools/list response, max 10 KB). No us/eu multi-region.
gcloud agent-registry services create SERVER_NAME --location=LOCATION \
  --mcp-server-spec-type=tool-spec --mcp-server-spec-content=toolspec.json \
  --interfaces="url=SERVER_URL,protocolBinding=jsonrpc"  # or http-json, grpc

# Remove: delete the underlying runtime agent (auto-registered) OR, for
# manually registered agents/servers, delete the Service resource
gcloud agent-registry services delete NAME

Terraform: googleagentregistryservice with an mcpserver_spec block.

Docs: https://docs.cloud.google.com/agent-registry/manage-agents · https://docs.cloud.google.com/agent-registry/register-mcp-servers


Troubleshooting

Issue Solution
"Session not found" after registration SDK version issue — upgrade google-cloud-aiplatform (see SDK Compatibility above), redeploy, then re-register
--registration-type is required Non-interactive mode needs --registration-type when no deployment_metadata.json exists
"Gemini Enterprise App ID is required" Provide --gemini-enterprise-app-id or set the ID / GEMINIENTERPRISEAPP_ID env var
Re-publishing the same agent Registration is idempotent — re-running updates the existing registration in place instead of creating a duplicate
HTTP 403 on registration Check that your account has Discovery Engine Editor permissions on the Gemini Enterprise project
Debugging ADK invocation failures on Agent Runtime Gemini Enterprise calls the agent via the AdkApp's streamingagentrunwithevents method (the native :streamQuery contract). Grep the runtime's reasoningenginestderr logs for streamingagentrunwithevents to find the underlying error
"Could not fetch agent card" Verify the agent is running and the URL is correct; for Cloud Run, ensure gcloud auth login is done

Related Skills

  • /google-agents-cli-deploy — Deployment targets, CI/CD pipelines, and production workflows (also covers Agent Gateway governed ingress/egress and Semantic Governance awareness)
  • /google-agents-cli-workflow — Development workflow, coding guidelines, and operational rules
  • /google-agents-cli-scaffold — Project creation and enhancement with agents-cli scaffold create / scaffold enhance