7,363 open-source and SaaS tools, with GitHub stats refreshed every day.

Authenticate to Google Cloud

Open source

A GitHub Action that authenticates GitHub workflows to Google Cloud using Workload Identity Federation or a service account key.

cloud.google.com
Authenticate to Google Cloud homepage screenshot
GitHub stars
1.4k
Last commit
2 mo ago
Repository age
5 years
Version
v3
Licence
Apache-2.0
Self-hosted
Yes

About Authenticate to Google Cloud

The auth action, from the google-github-actions organization, authenticates GitHub Actions workflows to Google Cloud. It supports authentication through Workload Identity Federation or a Google Cloud service account key JSON, so later workflow steps can call Google Cloud services with the right identity.

Workload Identity Federation is recommended over service account keys because it avoids exporting a long-lived credential and creates a trust relationship between a particular workflow run and permissions on Google Cloud. There are three setup modes: direct Workload Identity Federation, which is preferred, Workload Identity Federation through a service account, and a service account key JSON. A checkout step must run before the action, credentials files should be kept out of release artifacts through ignore files, and the action runs on Node 24, so the runner version must support it. The gsutil command will not use the exported credentials; gcloud storage should be used instead.

The README states it is not an officially supported Google product and is not covered by a Google Cloud support contract. The action is written in TypeScript and licensed under Apache-2.0.

Key features

  • Workload Identity Federation support
  • Service account key JSON option
  • Direct federation without a service account
  • Short-lived credentials for workflows
  • Examples for common setups

Good fit for

  • →Deploying to Google Cloud from GitHub Actions
  • →Replacing long-lived service account keys in CI
Built with
TypeScript
Tags
github-actions
google-cloud
authentication
workload-identity
iam
ci-cd
security

Authenticate to Google Cloud: questions and answers

What is Authenticate to Google Cloud used for?
Authenticate to Google Cloud is a GitHub Action that authenticates GitHub workflows to Google Cloud using Workload Identity Federation or a service account key. It is a good fit for deploying to Google Cloud from GitHub Actions and replacing long-lived service account keys in CI.
Is Authenticate to Google Cloud open source?
Yes. Authenticate to Google Cloud is open source under the Apache-2.0 licence. Its source code is on GitHub at google-github-actions/auth and is written mainly in TypeScript.
Is Authenticate to Google Cloud free?
Yes. Authenticate to Google Cloud is open source, so the software itself is free to use.
What are some alternatives to Authenticate to Google Cloud?
Similar open-source tools in the CI/CD & DevOps category include actionlint, Release Changelog Builder Action and CML. SaaS products in the same category include Blacksmith, Google Cloud Build and Namespace.
Is Authenticate to Google Cloud actively maintained?
Yes. The most recent commit to Authenticate to Google Cloud was on 29 July 2026, and the latest release is v3, published on 3 September 2025. The project has 1.4k stars on GitHub.

Open-source alternatives to Authenticate to Google Cloud

See all

SaaS alternatives to Authenticate to Google Cloud

See all