Skip to content

Releases: googleapis/mcp-toolbox

v1.13.1

Choose a tag to compare

@release-please release-please released this 25 Sep 23:10
e14cda6

1.13.1 (2026-09-25)

Bug Fixes

  • Revert "feat(sources): connect sources on first use" (#4137) (7fdbef9)
OS/Architecture Description SHA256 Hash
linux/amd64 (Signature) For Linux systems running on Intel/AMD 64-bit processors. d8e0df24b5ce9934c8f7ae8466f64ff5512857c5a7e47640301750ee82f92db3
darwin/arm64 For macOS systems running on Apple Silicon (M1, M2, M3, etc.) processors. fb14fd0692c777d14e45fbebeebd7907564a0e3a1942c55a8829cfd9423f012b
darwin/amd64 For macOS systems running on Intel processors. b26129f5773312d071fc28b060ca203843798caa5f82d2a123914907572dfde6
windows/amd64 For Windows systems running on Intel/AMD 64-bit processors. fbc00ac9d5be48c5c9948189a33db800087f9bd71778ac1c9c401fcb72a59582
windows/arm64 For Windows systems running on ARM 64-bit processors. fe4c49cf945044b837cbb91980cfec6cd816536de74afc0cfae0d46b7aa30f16

v1.13.0

Choose a tag to compare

@release-please release-please released this 25 Sep 01:20
8896373

1.13.0 (2026-09-24)

Features

  • Add prebuilt config for bigtable (#4068) (576b9f7)
  • Support --defer-source-connect flag to connecting sources on first use (#4076) (5700630)
  • tool/conversational-analytics-list-accessible-data-agents: Return all data agents and support manual paging (#4066) (0131c39)
  • tool/looker: Expose value_format and value_format_name in field metadata (#4094) (4b7a44d)

Bug Fixes

  • config: Fix parseEnv inconsistent handling with YAML comments (#4039) (558c5a9)
OS/Architecture Description SHA256 Hash
linux/amd64 (Signature) For Linux systems running on Intel/AMD 64-bit processors. 04a500b692020beeb31c928c0f3e8abc87638cef05e2fa819e59b9efad0d2346
darwin/arm64 For macOS systems running on Apple Silicon (M1, M2, M3, etc.) processors. ef4c86a5a1592f9674892ac2a47386dea9d23e08fc910d987f138613884bb0b9
darwin/amd64 For macOS systems running on Intel processors. 09f67b733684e2e1f297ffa789e9a6ed9698b1fc4ac8b7469c271c08e3ebef19
windows/amd64 For Windows systems running on Intel/AMD 64-bit processors. 8626992f54f70f968f5667b980cbdcb6427a9c05c9092f9b39137174b42b4e3d
windows/arm64 For Windows systems running on ARM 64-bit processors. 3d1aab86d9c1c8773dc3e227090dce262875d2bb9e06258222b16973f4d66b99

v1.12.0

Choose a tag to compare

@release-please release-please released this 17 Sep 22:52
c97ca4d

1.12.0 (2026-09-17)

Features

  • Added logic to serve /.well-known/openai-apps-challenge (#4038) (7ac00a2)
  • tool/looker: Expose certification_metadata in looker dashboard and look tools (#4041) (ed42084)

Bug Fixes

  • prebuilt/cloud-sql-postgres: Clarify execute_sql tool description (#3884) (ed4cfde)
  • source/cockroachdb,source/redis: Release the handle when a connect attempt fails (#3933) (2d52f8a)
  • tool/looker-generate-embed-url: Require embed parameters (#3913) (93520cf)
  • tools/looker: Add additional annotations to support OpenAI plugins (#4035) (7b41e73)
OS/Architecture Description SHA256 Hash
linux/amd64 (Signature) For Linux systems running on Intel/AMD 64-bit processors. 69c1b1a7a74dcd2442dd1281e97030a9b9913e2fb221bf31961f9b9ada000543
darwin/arm64 For macOS systems running on Apple Silicon (M1, M2, M3, etc.) processors. 524ed5a0e8ca0d6660270523bc345c52ae2cff6104088a37e5790e7fed72df1d
darwin/amd64 For macOS systems running on Intel processors. 7f5bb2b1e1ab6f8fa8bb4b51fe14b10274f17a906e1f1084fbf400b6d6bdc5a9
windows/amd64 For Windows systems running on Intel/AMD 64-bit processors. c8d382ed597596f96aa015bf8ab5aaad557eb831d342813b8312fc582aa040f6
windows/arm64 For Windows systems running on ARM 64-bit processors. a0d152a1158d32d8a9df071e52277a59b7a79d1a50c044ee36b9907eb57a7003

v1.11.0

Choose a tag to compare

@release-please release-please released this 10 Sep 23:35
ff82869

1.11.0 (2026-09-10)

Features

  • Add Toolbox version check on startup (#3837) (7d36de3)
  • alloydb: Provide actionable error when read-only mode is used on pre-PG17 (#3902) (28ace11)
  • MCP Apps: Add support for MCP Apps (#4008) (9cf3e95)
  • MCPResources: Add support for MCP Resources (#3968) (fb227b0)
  • mcp: Serve groups/list and groups/get as a Toolbox extension (#3914) (eaf2a9c)
  • source/bigquery: Attach SQLCommenter attributes as BigQuery job labels (#3843) (bf0f1a5)
  • sources: Add ConnectOnce, a helper for connecting on first use (#3905) (16c31fa)

Bug Fixes

  • docs/cloudgda: Document context fields, fix PSV example and links (#3919) (ae47535)
  • looker: Update want clause (#3962) (9593321)
  • source/http: Block IETF protocol assignments range in default SSRF guard (#3909) (4302e86)
  • sources: Release the handle when a source fails to connect (#3921) (0001190)
  • test/alloydbainl: Use explicit SQL alias prompt in integration test (#3916) (596eaf9)
OS/Architecture Description SHA256 Hash
linux/amd64 (Signature) For Linux systems running on Intel/AMD 64-bit processors. 4d86b7c75916e2de721b9dc9dfb681f9a29fe4a8a01779007b2f6b1f5819296c
darwin/arm64 For macOS systems running on Apple Silicon (M1, M2, M3, etc.) processors. 5e94db330b5ec77a916c4670ec1337d97abbb9865b13a705f81f87ca14592307
darwin/amd64 For macOS systems running on Intel processors. 4a05bc786302571823f8c10b0ed2ce4f219c4a05c9899e91a9743ca8ec932743
windows/amd64 For Windows systems running on Intel/AMD 64-bit processors. 3c8c46d8efad225636e341fcdb137557779ee1c1b0c362d1b4870901c2668ccf
windows/arm64 For Windows systems running on ARM 64-bit processors. feb2d0d55c003b30af7a9afa22f11721239c70cc21812a2de66c425de76a2153

v1.10.0

Choose a tag to compare

@release-please release-please released this 27 Aug 23:37
21f972f

1.10.0 (2026-08-27)

Features

  • falkordb: Add FalkorDB source and tools (#3692) (a94702c)
  • mcp: Add Secure Parameters support as Toolbox experimental extension (#3394) (9750d2d)
  • server/mcp: Support com.google.cloud/toolbox.v1 extension in v20260728 (#3801) (f4f7da6)
  • skill: Add fix-failing-tests skill for mcp-toolbox (#3821) (168e69c)
  • sources: Support native read-only mode and dynamic tool annotations (#3872) (c257022), refs #3615 #3816 #3618 #3851 #3619 #3617
  • tools/firestore-mongodb: Add tools for execute mql and get schema (#3826) (4a85d75)
  • tool/mongodb: Allow collection to be specified at runtime (#3715) (7626eaf)

Bug Fixes

  • cloud-storage: Resolve symlinks when enforcing local path boundaries (#3810) (c2ada64)
  • config: Compare env var offsets in rune space when skipping comments (#3856) (2e76934)
  • Merge prebuilt tools when reloading custom config (#3864) (5a6d865)
  • Normalize postgres UUIDs to strings (#3806) (3b02f1d)
  • postgres: Filter background processes in postgres-list-active-queries (#3885) (3d9e62a)
OS/Architecture Description SHA256 Hash
linux/amd64 (Signature) For Linux systems running on Intel/AMD 64-bit processors. 7e15dba09e6f957f64ce5924a0aa06b12cdf83ab26119813b0fa40edab566dd4
darwin/arm64 For macOS systems running on Apple Silicon (M1, M2, M3, etc.) processors. c994f06781462abba4171cb4844776c45605e391c57dc96adb3e130c81b53825
darwin/amd64 For macOS systems running on Intel processors. 12ebf78d9d05e8f3fe90c5d02ae14f2ccd96cf036f3dfba430bc32e3cfeadfd4
windows/amd64 For Windows systems running on Intel/AMD 64-bit processors. 734783941cb5864c0e5d4d78be625f8b12be23b01d94781d7fa7db9b3c25aac6
windows/arm64 For Windows systems running on ARM 64-bit processors. d9be7c2ce1d2e29c20f2974cbac4cde857adad836cee565d2584f3fbcc97f096

v1.9.0

Choose a tag to compare

@release-please release-please released this 14 Aug 01:16
5de8f13

1.9.0 (2026-08-14)

Features

  • groups: Add ttlMs and cacheScope customization to config (#3805) (a5d4947)
  • migrate: Convert toolset to group kind during migration (#3704) (0adeaa5)
  • server/mcp: Introduce generic client extension registry (#3723) (016245c)
  • skill: Add review-prs skill for mcp-toolbox (#3743) (5b7bacc)
  • source/bigquery: Add apiEndpoint field to override BigQuery API host (#3437) (4da1600)
  • source/databaseinsights: Add databaseinsights source (#3461) (3b9615d)
  • sources/spanner: Rename execute_sql_dql to execute_sql_readonly (#3776) (cf5a0c8)
  • tools/bigtable: Add admin lifecycle and listing tools (#3596) (801d589)
  • tools/bigtable: Bigtable-list-schemas MCP tool (#3683) (9228c61)
  • tools/databaseinsights: Add Advanced Query Insights tools for AlloyDB (#3722) (74d18ae)
  • tools/looker: Add additional tools to allow dashboards to be modified, and their layouts altered. (#3597) (b2b80fb)
  • tools: Add cloud-sql-connect-gce for pg, mysql, mssql (#3740) (ca58fa4)

Bug Fixes

  • auth/mcp: Derive PRM URL from Toolbox URL (#3765) (aa30842)
  • config: Ignore environment variables in YAML comments (#3807) (79aa732), refs #3793
  • mcp: Return Tool execution error for invalid input param (#3799) (8120197)
  • prebuilt/cloud-storage: Declare tool collections as groups (#3764) (7d468be)
  • server/mcp: Disallow client overriding URL bound parameters (#3798) (f15a9c7)
  • server: Avoid a nil-flusher panic in the SSE handler (#3520) (947f42f)
  • tools/bigquery: Keep the provider error classification in bigquery-execute-sql (#3738) (42570b8)
  • tools/looker: Scope the filters quoting rule to values in query description (#3788) (78eb0b8)
  • util: Convert exponent-form JSON numbers in ConvertNumbers (#3730) (e9713ee)
OS/Architecture Description SHA256 Hash
linux/amd64 (Signature) For Linux systems running on Intel/AMD 64-bit processors. 18f420003278d839410ddf3290740863ab017955889ad4a9b7b6a827be90a9f2
darwin/arm64 For macOS systems running on Apple Silicon (M1, M2, M3, etc.) processors. 182ed68a206742e41f31c29e669b3c657025b3e0c561490f58af569e1d364c77
darwin/amd64 For macOS systems running on Intel processors. c0598bfe7704d197d7c96bdd47cd18612141f9d46be9f52de6258d970979e4f1
windows/amd64 For Windows systems running on Intel/AMD 64-bit processors. cab08bf7ce933b040cc2b86f59d97433c82e3e5b5d944348df37336fd63c7f99
windows/arm64 For Windows systems running on ARM 64-bit processors. 4de939f84acba9c51175fe93b9c347567c71c158829a6300d2ff0f6914ddc156

v1.8.0

Choose a tag to compare

@release-please release-please released this 28 Jul 01:25
44d1a05

1.8.0 (2026-07-28)

Features

  • Add groups support (#3605) (e75ec3b)
  • prebuilt: Migrate skills-repo toolsets to kind: group with descriptions (#3595) (b895b36)
  • server: Add /healthz endpoint for container health checks (#3060) (d5aefbc)
  • skills: Add --group flag to generate a skill from one group (#3585) (c1abd4f)
  • skills: Default --name to --group, --toolset, or single --prebuilt name (#3586) (2b33b08)
  • skills: Make description optional during skills gen (#3584) (d0a8f14)
  • tool/looker: Add get_field_value_suggestions tool (#3696) (3debe81)
  • tools/dataplex-update-data-product-aspects: Add dataplex-update-data-product-aspects tool (#3607) (f940937)
  • Update draft specs to 2026-07-28 (#3699) (cf128ff)

Bug Fixes

  • Re-add name validation to tools name (#3654) (944f6ce)
  • Re-add tool validation during startup (#3705) (25ce953)
  • server: Sort default toolset alphabetically for stable ordering (#3539) (e5da24c)
  • source/cloud-sql-admin: Validate source instance for backup-run restore (#3555) (3ebe500)
  • source/dataplex: Cleanup Dataplex Data Product resources that may have leaked due to previously aborted tests (#3627) (3fb5a3f)
  • source/http: Block CGNAT 100.64.0.0/10 in default SSRF guard (#3625) (a0f36f4)
  • tools/looker: Enhance looker-run-dashboard to handle result maker structures and merge queries (#3698) (7666bc0)
  • tools/looker: Log request/response traces at debug, not error (#3552) (c3ad445)
OS/Architecture Description SHA256 Hash
linux/amd64 (Signature) For Linux systems running on Intel/AMD 64-bit processors. 8c0ac3b9785d1424ad3d66799c26c5da695d73c74c45225a301689bf7d39d714
darwin/arm64 For macOS systems running on Apple Silicon (M1, M2, M3, etc.) processors. c69e0b5e25bd5f5f3f3f4d7563d1d8ef0b8ecc922c6654d5db7641f4b0bc4b95
darwin/amd64 For macOS systems running on Intel processors. cd69bb08c9e25c372e39cfd765e9166a7473f66ea15865870bd141014ddf4212
windows/amd64 For Windows systems running on Intel/AMD 64-bit processors. f3cd288d184adae71c9cc2d627e7d4db1f0d5c8a00d5d4cab30a42acecb43082
windows/arm64 For Windows systems running on ARM 64-bit processors. a18405b1a13656ca23c6667cc4a8a9b01ebd29b4f0057e74811f44c78bc8d266

v1.7.0

Choose a tag to compare

@release-please release-please released this 16 Jul 18:48
fbe2b21

1.7.0 (2026-07-16)

Features

  • Add quotaProject support for BigQuery and Looker conversational analytics (#2610) (f3e7ca9)
  • arcadedb: Add arcadedb source and tools (#2961) (351de00)
  • cmd/internal,docs: Add warning log that prebuilt tools are for developer use (#3451) (8cffcef)
  • source/postgres: Add optional connectTimeout (#3620) (b574b07)
  • tool/clickhouse-sql: Add native vector embedding support (#3229) (6cbe1c2)
  • tool/dataplex-update-data-product,tool/dataplex-create-data-asset,tool/dataplex-update-data-asset: Add update data product, create data asset, and update data asset tools for knowledge catalog source (#3574) (721c204)
  • tools/dataplex-create-data-product: Add dataplex-create-data-product tool (#3504) (5cee0d2)
  • tools/dataplex-get-data-asset: Add dataplex-get-data-asset tool (#3503) (1ddfbe9)

Bug Fixes

  • parameters: Report the offending value in array/map type errors (#3512) (4034d6f)
  • parameters: Return an error instead of panicking on a non-string type field (#3516) (66a0d53)
  • source/looker: Dynamically resolve public host URL (#3603) (0428afd)
  • tool/looker-run-dashboard: Add support for SQL Runner query tiles (#3594) (0975d0a)
OS/Architecture Description SHA256 Hash
linux/amd64 (Signature) For Linux systems running on Intel/AMD 64-bit processors. ec24af08ebb9fc9fbeae8d47bc3cb74e6ba0b028884bbbcfb2c14ad1e1fb117d
darwin/arm64 For macOS systems running on Apple Silicon (M1, M2, M3, etc.) processors. df337f16e9bba23163ab543ade94f1a685b7d07baa88f19b37fa154ef686793e
darwin/amd64 For macOS systems running on Intel processors. 2dba9b6ce39938a307fec9f66aea9973c115cadd1dccca0575e87b2bded28b21
windows/amd64 For Windows systems running on Intel/AMD 64-bit processors. d784d56db0497de5870f19884fe83765f1eb97dd39b963d47e813f7e11f5a0a2
windows/arm64 For Windows systems running on ARM 64-bit processors. 1eac04aa9555611805ad278a91b743dcb232201a327d201bc0cd5dd1a5df60ac

v1.6.0

Choose a tag to compare

@release-please release-please released this 01 Jul 00:28
35c13ad

1.6.0 (2026-06-30)

Features

  • Support MCP 2026 draft specs (#3544) (d12eaa8)
  • release: Add digital signature to Toolbox binaries (#3528) (3f0f0af)
  • tool/cloud-storage: Configure object operation parameters (#3529) (d6dc5fe)
  • tool/cloud-storage: Support configurable parameters (#3478) (bc2de2a)
  • tools/dataplex-list-data-products: Add dataplex-list-data-products tool (#3337) (6dd669a)
  • tools/dataplex-get-data-product: Add dataplex-get-data-product tool (#3499) (7ea7a09)
  • tools/dataplex-list-data-assets: Add dataplex-list-data-assets tool (#3500) (182f933)
  • tools/looker: Support complex filter_expression parameter in queries (#3494) (997fb8c)
  • tools/looker: Support dynamic_fields parameter in queries (#3507) (cd22b89)

Bug Fixes

  • tools/gda: Support mTLS and GOOGLE_API_USE_MTLS_ENDPOINT for GDA client (#3460) (cc2a61e)
  • tools/looker-conversational-analytics: Validate explore_references shape instead of panicking (#3531) (b67419d)
  • tool/looker-create-view-from-table: Correct Looker API payload structure (#3515) (18c539c)
OS/Architecture Description SHA256 Hash
linux/amd64 (Signature) For Linux systems running on Intel/AMD 64-bit processors. 0cd6fa1773926a37e55c803542f16ef621eaea38b015ec9778dfaae9f30da302
darwin/arm64 For macOS systems running on Apple Silicon (M1, M2, M3, etc.) processors. feb567fb8416504004ff99acd4661278a88d70cc137681f6535a5e54469c6594
darwin/amd64 For macOS systems running on Intel processors. fbb5af6b170431edb08741828a2581f9ee8548dd37c3e8222a3c2722f0007f32
windows/amd64 For Windows systems running on Intel/AMD 64-bit processors. 3be7e587c86dd9dbdb593a380396f399358c179ce37aed3045b4c8bf42569394
windows/arm64 For Windows systems running on ARM 64-bit processors. 3c6345114032a0671a5b66764673124ec4c27b5b41d1816ea15ac8afb5ca7cdc

v1.5.0

Choose a tag to compare

@release-please release-please released this 18 Jun 23:34
45c0f86

1.5.0 (2026-06-18)

Features

  • auth/google: Require audience or clientId for mcpEnabled (#3450) (59f7b6e)
  • Enable per source level flags for sql commenter (#3465) (ecce6b7)
  • mcp: Add URL parameter binding for HTTP transport (#3112) (0cc7b37)
  • scylladb: Adding support for ScyllaDB source and tool (#3119) (2dada83)
  • server: Add support for toolset filtering in prebuilt CLI flag (#3245) (7cc4f65)
  • skills: Generate skills offline without live source connections (#3388) (4c860b6)
  • skills: Tolerate missing env vars during offline skills-generate (#3399) (ea5d3e5)
  • source/cloud-storage: Restrict bucket and local path access (#3454) (2c3ca5d)
  • tools/bigquery: Add per tool query label in BigQuery jobs (#1975) (3f6a49f)
  • tools/dataplex: Add tools to support metadata enrichment workflow (#3270) (05289aa)
  • tools/mysql: Add show-query-stats and list-all-locks tools for MySQL and Cloud SQL MySQL source (#2954) (a9693bd)
  • tools: Decouple tool initialization from sources (#3355) (32a24e3)

Bug Fixes

  • auth/dataplex: Fix failing source with service account credentials (#3369) (ba4deef)
  • bigquery: Wire maximumBytesBilled into prebuilt config (#3385) (4abbf6e)
  • Bound MCP HTTP body size (#3216) (d4f4342)
  • config: Add doc/line context to parse errors (#2957) (4b097da)
  • Escape delimiter characters in applyEscape to prevent SQL injection (#2811) (932519a)
  • npm: Source binary version from cmd/version.txt (#3417) (6ffbdec)
  • prebuilt/alloydb-omni: Require password env var explicitly (#3398) (fcbe3e7)
  • server: Fail if MCP auth is enabled together with enable-api (#3435) (a6ff910)
  • server: Return errors instead of panicking in InitializeConfigs (#3397) (f48b01d)
  • source/cloudhealthcare: Validate pageURL parameter to prevent SSRF (#3453) (9abf47d)
  • source/dataplex,source/datalineage: Specify cloud-platform scope for default credentials (#3376) (13e8c36)
  • source/http: Implement SSRF guard (#3448) (24d7d29)
  • tool/bigquery-execute-sql: Prevent dataset restriction bypass (#3452) (ca6d5e3)
  • tool/mysql-get-query-plan: Prevent query execution bypass and statement injection (#3235) (7ed1e7b)
  • tool/spanner-sql,tool/spanner-execute-sql: Use read-only annotations when readOnly is set (#3338) (8bde0ec)
OS/Architecture Description SHA256 Hash
linux/amd64 For Linux systems running on Intel/AMD 64-bit processors. 7df2d9941ce34e53af0eacc74e09b29f6ac38543b010b637a0938f2dd2d75609
darwin/arm64 For macOS systems running on Apple Silicon (M1, M2, M3, etc.) processors. 732da7bc161072073f8342dea376f7021711f3556f4153f160b8d0d58e097269
darwin/amd64 For macOS systems running on Intel processors. 3eae4f7786778ab07fcd5475763c9ffecdcfe1c77604b55aa8f27df20ccdc292
windows/amd64 For Windows systems running on Intel/AMD 64-bit processors. e9a598fc65dcde86bda89ad7fe4e7a4c7dbe8b916b656daf811cd42dd49dff2c
windows/arm64 For Windows systems running on ARM 64-bit processors. ec43fc884dd9c8955335ac9259e9665206b12aa4f491504e00f28e3e8d47f122