
What happened
Palo Alto Networks announced Prisma AIRS runtime security integrated with Google Cloud's Agent Gateway, a Gemini Enterprise Agent Platform component, with broader availability expected this fall, and packaged model scanning as an agent on Google Cloud Marketplace.
Why it matters
The integration inspects tool calls between agents and external systems, aiming to catch risks that prompt-level checks miss as enterprises deploy more autonomous agents, and the model-scanning agent lets other agents request policy verdicts before using models.
What to watch
The broader availability is expected this fall, but the expansion to scan all user inputs and outputs hinges on that rollout; watch whether the three focus areas—cloud, SaaS platforms and endpoint agents—produce more details soon.
WHO IT HITSEnterprise security teams and platform engineers running agents on Google Cloud will need runtime controls that inspect tool calls and model use, not just prompts, as agent deployments grow; Palo Alto Networks is positioning Prisma AIRS for that role.
Summaries like this, in your inbox every morning.
The shift from chatbots to autonomous agents has changed the enterprise risk equation because agents can access tools, retain information and act without waiting for a human prompt. Traditional chatbot security largely concentrates on inspecting inputs and responses for prompt injection, data leakage or harmful content. Autonomous agents require broader oversight because they may call external services, manipulate enterprise resources or coordinate with other agents, so security controls must evaluate intent and behavior while activity is happening.
Palo Alto Networks is addressing that change through Prisma AIRS integrations designed to inspect agent activity within Google Cloud environments. The connection to Google Cloud's Agent Gateway, a component of the Gemini Enterprise Agent Platform, is intended to inspect tool calls as they pass between agents and external systems. Model Context Protocol connections present a two-way exposure: sensitive credentials can leave an enterprise through an agent request, while a compromised MCP server can return malicious links, malware or instructions embedded in tool descriptions. Runtime inspection therefore must assess the request, the response and the metadata surrounding the transaction.
Agent-based security is also extending into model governance. Palo Alto Networks has packaged its model-scanning service as an agent available through Google Cloud Marketplace, allowing other agents to request a policy verdict before continuing a workflow. The company says Prisma AIRS more than tripled its customer base within three months. The outcome hinges on whether the broader availability expected this fall delivers the promised expansion to user inputs and outputs, and on whether security teams can reconcile continuous activity from nonhuman identities as agent deployments grow.
For example, today's edition would include:
AI-summarized, only the topics you pick: one digest a day via Email, LINE, or Slack.
Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →
Ask AI anything about this article. The AI reads this article, earlier AIToday articles, and Wikipedia, and cites its sources. Q&As are published on this page for other readers too.
PKSHA Technology provided the conversational AI agent feature of its AI SaaS "PKSHA ChatAgent" to NTT Docomo's…

Tamara Grant, who finished Purdue University's Master of Science in Artificial Intelligence in spring 2026, wa…

In a Sept. 25 letter, Walmart CEO John Furner said the retailer will not use AI, customers' income, shopping h…

Texas Instruments is trading around $278.05, above its $275.21 breakout level, and is testing resistance at $2…

Qualcomm introduced the Snapdragon 8 Elite Gen 6 and Elite Extreme Gen 6 chips with on-device AI, aiming at pr…

ASML trades around 31 times forward earnings and Applied Materials near 27 times, the article notes
