Cortex connects to many third-party vendors whose system interfaces frequently change. As a result, integration behavior or configuration steps may shift without notice. If you encounter unexpected issues, check with your system administrator or refer to the vendor’s documentation for the most current information. Additionally, integration sync times vary and are subject to scheduling overrides and timing variance.
Viewing Google Cloud Observability data in entity pages
After connecting SLOs, Cortex surfaces Google Cloud Observability data directly on entity details pages:- An entity’s overview page shows a summary of its SLOs.
- Select Monitoring > Google in an entity’s sidebar for more detail, including the SLO name, targets, status, current value, and the time range it’s calculated over. For example, a time listed as “7 days ago” means the SLO covers the range from 7 days ago to now.
Creating Scorecard rules and writing CQL queries with the GCP integration
With the Google integration, you can create Scorecard rules and write CQL queries based on GCP details, Google Cloud Observability SLOs, and Google teams. See more examples in the CQL Explorer in Cortex.GCP details
GCP details
Get the GCP details for the entity.Definition - You might include a rule to check whether any labels on the GCP recourse are titled
gcp.details()ExamplesA Scorecard might include a rule to verify that an entity has GCP details:origin:SLOs
SLOs
SLOs associated with the entity via ID or tags. You can use this data to check whether an entity has SLOs associated with it, and if those SLOs are passing.Definition - Use this expression to make sure latency Service Level Indicator (SLI) value is above 99.99%:
slos: List<SLO>ExampleIn a Scorecard, you can use this expression to make sure an entity is passing its SLOs:All ownership details
All ownership details
A special built-in type that supports a null check or a count check, used to enforce ownership of entities.Definition -
ownership: Ownership | NullExampleAn initial level in a security Scorecard might include a rule to ensure an entity has at least one team as an owner:All owner details
All owner details
List of owners, including team members and individual users, for each entity.Definition -
ownership.allOwners()ExampleThe Scorecard might include a rule to ensure that entity owners all have an email set:Team details
Team details
List of teams for each entity.Definition -
ownership.teams(): List<Team>ExampleThe Scorecard might include a rule to ensure that an entity owners all have a description and are not archived:Viewing GCP integration logs
This feature is available in Cortex cloud.

Troubleshooting and FAQ
See frequently asked questions below.The GCP integration only supports a single service account. Is there a workaround?
The GCP integration only supports a single service account. Is there a workaround?
By default, GCP service accounts are restricted to the project they were created in. If other projects don’t explicitly allow that service account to access their resources, Cortex can’t collect data from them. To work around this, you can configure a principal service account and associate it with multiple projects in GCP. Once the service account is linked to other projects, Cortex can use that service account to pull data from multiple GCP projects.After creating a service account that is linked to a project, open your second project in GCP and go to IAM & Admin > IAM > Click +Add. Using the service account ID that you already created, add a principal to the project. Repeat these steps for each project.