Blocks.ai publishes this comparison and sells in this market. Every claim about another product links to a public source.
Gemini Enterprise Agent Platform vs Zenity
Gemini Enterprise Agent Platform
Google Cloud platform to build, deploy, govern, and optimize AI agents
Zenity AI Agent Security & Governance Platform
Security and governance platform for AI agents, aimed at security teams
Short answer
Gemini Enterprise Agent Platform is Google Cloud’s platform to build, deploy, and govern agents; Zenity is a security and governance platform for AI agents.Source 1, Source 2 Agent Platform’s gateway can govern Agent Runtime and Gemini Enterprise app traffic, while Zenity says it catalogs agents widely and blocks inline on Copilot Studio, Microsoft Foundry, and coding agents.Source 3, Source 4, Source 5, Source 6
Where each one sits
Six layers of running AI agents at a company, and what each product’s own public sources say it covers.
These aren’t the same kind of product
Gemini Enterprise Agent Platform
Zenity
- Build agents: Not publicly documented
- Host and run agents: Not publicly documented
- Identity and access: Not publicly documented
- Agents across organizations: Not publicly documented
At a glance
What each one is
Gemini Enterprise Agent Platform
Gemini Enterprise Agent Platform, an evolution of Vertex AI, is Google Cloud’s platform to build, deploy, govern, and optimize agents.Source 1 Agent Registry catalogs agents and MCP servers, Agent Identity can give agents on supported runtimes an identity, and Agent Gateway checks agent traffic against policy.Source 3, Source 7, Source 8
Zenity AI Agent Security & Governance Platform
Zenity is a SaaS security and governance platform for AI agents, which it aims at security teams.Source 2, Source 12 Zenity describes three layers: Surface finds agents and their exposure, Enforce governs their actions in real time, and Protect detects and responds to runtime threats.Source 12
The differences that matter
How agents get into the inventory
Gemini Enterprise Agent PlatformAgents on supported Google Cloud runtimes can be registered automatically within one project; others can be registered manually with the API, CLI, or Terraform.Source 24, Source 25
ZenityZenity says AI Observability scans the environment and catalogs agents with their configuration, permissions, and tool access, flagging ones outside sanctioned deployment channels.Source 4
Agent Registry can also be searched, by keyword or semantically, for agents, their skills, and MCP servers.Source 26 Whether employees or agents can search Zenity’s inventory isn’t in Zenity’s public docs.
Where rules are enforced
Gemini Enterprise Agent PlatformAt Agent Gateway: outbound calls are blocked by default unless an IAM policy grants them, and attached Model Armor filters scan prompts and tool responses.Source 3
ZenityRuntime Boundaries can check agent actions in real time; Zenity says it can block them on Copilot Studio, Microsoft Foundry, and coding agents.Source 5, Source 6
Inbound, Agent Gateway can control which clients reach Agent Runtime agents.Source 3 Zenity says its Custom Agents integration supports inline enforcement through an Evaluate API.Source 27
Which agents each one covers
For security teams
What a security review asks, answered from each vendor’s public documentation.
Full comparison
18 criteria in five groups. Every cell links to its source, or says no public source answers it.
| Gemini Enterprise Agent Platform | Zenity | |
|---|---|---|
| What it is | ||
| What it is and who it’s for | Google Cloud platform to build, deploy, govern, and optimize AI agents, described as an evolution of Vertex AI, for developers and technical teams.Source 1, Source 11 | Security and governance platform for AI agents across SaaS, homegrown cloud platforms, and end-user devices, which Zenity aims at security teams.Source 2, Source 12 |
| Maturity | Google announced it on 22 April 2026.Source 19 Registry and Gateway GA 18 June 2026; access policies GA 31 August 2026.Source 20 Agent Identity is GA; its API is in preview.Source 20 | Zenity announced AWS Marketplace availability in January 2026, Foundry runtime GA in March 2026, and GitHub Copilot and Codex coverage GA in August 2026.Source 22, Source 27, Source 38 |
| Control | ||
| Agent registry and discovery | Agent Registry: a per-project catalog of agents, MCP servers, and tools.Source 7, Source 13 Agents on supported runtimes can be registered automatically, others manually.Source 24, Source 25 | Zenity says AI Observability scans for agents in SaaS platforms, custom builds, and on laptops, listing each with its permissions and tool access.Source 4 |
| Identity and access control | Agents on supported runtimes can get a SPIFFE-based identity.Source 8 Access policies link it to approved tools; other outbound gateway calls are blocked by default.Source 3 | Zenity says Boundaries rules can reference Okta attributes such as active status, role, and department.Source 5 Issuing agent identities isn’t in Zenity’s public docs. |
| Ownership, policy, and revocation | Allow and deny access policies (deny overrides allow), in enforce or dry-run mode, plus Model Armor filters.Source 3, Source 30 An agent owner field: not publicly documented. | Zenity says it blocks actions inline on Copilot Studio, Microsoft Foundry, and coding agents.Source 6 It says ownership is surfaced per discovered agent.Source 39 |
| Audit log and observability | Registry admin changes are audit-logged; reads only if Data Access logs are on.Source 31, Source 32 Gateway traffic shows in Cloud Logging.Source 3 Traces need agents’ OpenTelemetry data.Source 40 | Zenity says it logs messages, tool calls, and handoffs, and can send audit log events to Splunk or Sentinel and findings to AWS Security Hub.Source 4, Source 27, Source 41 |
| Connection | ||
| How agents connect | Agent Gateway can govern traffic in and out of Runtime agents and out of the Gemini Enterprise app.Source 3 Outside agents can be registered by endpoint or agent card.Source 28 | Zenity says OpenTelemetry-emitting agents can connect, with an Evaluate API for inline enforcement.Source 27 Network requirements aren’t in Zenity’s public docs. |
| Agents across organizations | Agent Runtime agents can call outside agents and MCP servers.Source 3 Partners sharing agents under access they control: not publicly documented. | Not in Zenity’s public docs; its product docs require a login (checked 2 October 2026)Source 29 |
| Protocol support | Agent Registry catalogs MCP servers and A2A agents; Agent Gateway carries MCP and A2A traffic.Source 3, Source 25, Source 42 A2A agents on Agent Runtime are in preview.Source 43 | Zenity says custom agents use OpenTelemetry and agent hooks can block risky coding-agent tool calls.Source 9, Source 27 Whether Zenity supports A2A isn’t publicly documented. |
| Frameworks, models, and clouds supported | Agent Development Kit or any open-source framework, with Gemini or other Model Garden models.Source 10 Google calls Agent Gateway framework agnostic.Source 3 | Zenity says it covers agents in Copilot Studio, ChatGPT Enterprise, and Agentforce, homegrown agents on Bedrock or Vertex AI, and coding agents.Source 4, Source 9 |
| Operations | ||
| Deployment options and data residency | Agent Gateway is managed and regional; Runtime and gateway data at rest stays in the selected location.Source 14, Source 15 Gateway self-hosting: not publicly documented. | Software as a service, deployed on AWS per its AWS Marketplace listing.Source 2 Regions, data residency, and self-hosting aren’t in Zenity’s public docs. |
| Compliance attestations | Google lists Agent Platform in scope for ISO 27001, 27017, and 27018, SOC 1, 2, and 3, and PCI DSS.Source 34 It is in Google Cloud’s HIPAA BAA.Source 35 | Zenity says the company holds SOC 2 Type II and is ISO 27001 compliant.Source 36 It announced FedRAMP “In Process” status in March 2026, with authorization pending.Source 37 |
| Support and SLA | Google Cloud support packages, with options such as 24/7 coverage.Source 44 An uptime SLA naming Agent Registry, Gateway, Identity, or Runtime: not publicly documented. | Zenity’s subscription terms commit to commercially reasonable efforts toward 99.9% monthly uptime.Source 45 Support requests go through Zendesk during business hours.Source 45 |
| Time and effort to get running | A Google Cloud project with the Agent Registry API enabled, plus the Identity-Aware Proxy API for gateway policy.Source 13 Google recommends dry-run mode in staging.Source 30 | Zenity says its Cursor plugin installs in Cursor desktop, and Security Hub activates from its console.Source 41, Source 46 Prerequisites aren’t in Zenity’s public docs. |
| Pricing model and public prices | Agent Registry is free; skill scanning is billed from January 2027.Source 17 Gateway egress: $0.085 per 15,000 requests; runtime: $0.085 a vCPU-hour.Source 16 Monthly free tier.Source 16 | Main AWS listing: custom pricing.Source 2 Security Hub Extended listing: $130 per resource a month (Observability), $16 per million tokens a month (Runtime Protection).Source 18 |
| Building | ||
| Agent building tools | Agent Studio (low-code canvas), the open-source Agent Development Kit, and Agent Garden prebuilt agents and templates.Source 1, Source 10 A Managed Agents API is in preview.Source 1 | Not in Zenity’s public docs; its product docs require a login (checked 2 October 2026)Source 29 |
| Model access | Google says Model Garden offers more than 200 models, including Gemini, third-party models such as Anthropic’s Claude, and open-source models.Source 1, Source 19 | Zenity says AIDR combines deterministic rules with LLM-based detections.Source 47 Its models aren’t in Zenity’s public docs. |
| Integrations and ecosystem | Agents in Agent Registry can be made available to users of the Gemini Enterprise app.Source 14 Google’s own remote MCP servers are registered automatically.Source 42 | Zenity says it integrates with Microsoft Agent 365 and AWS Security Hub and is on the Cursor Marketplace.Source 41, Source 46, Source 48 It announced a ServiceNow SecOps partnership.Source 49 |
Which to choose
Choose Gemini Enterprise Agent Platform if
- You want to build, deploy, and govern agents on one platform, with Agent Studio and the open-source Agent Development Kit.Source 1, Source 10
- Your agents run on Google Cloud, where agents on supported runtimes, such as Google Kubernetes Engine, can be registered automatically.Source 24, Source 25
- You want outbound gateway calls blocked unless an IAM policy grants them, with Model Armor filters scanning prompts and tool responses.Source 3
- You want agents on Agent Runtime, the Gemini Enterprise app, or Cloud Run to be able to get their own SPIFFE-based identity.Source 8
Choose Zenity if
- You want what Zenity says it offers: one inventory and activity record for agents in Copilot Studio, ChatGPT Enterprise, and Agentforce.Source 4
- Your security team wants what Zenity says it offers: agents found by scanning, including on laptops or outside sanctioned channels.Source 4
- You want what Zenity says it offers: real-time checks on agent actions, and a kill switch for tool and data access.Source 5
- You need the coverage Zenity says it gives coding agents such as Claude Code, Cursor, GitHub Copilot, and ChatGPT Codex.Source 9, Source 27
Questions buyers ask
Is Gemini Enterprise Agent Platform the same as the Gemini Enterprise app?
How is each one priced?
Agent Registry is free; skill scanning is billed from January 2027.Source 17 Agent Runtime is $0.085 per vCPU-hour; Agent Gateway egress, $0.085 per 15,000 requests.Source 16 Zenity’s AWS Marketplace listing has custom pricing; its Security Hub Extended listing shows usage prices, such as $130 per resource monthly.Source 2, Source 18
Do they support MCP and A2A?
Agent Registry catalogs MCP servers and A2A agents, and Agent Gateway carries MCP and A2A traffic.Source 3, Source 25, Source 42 For coding agents, Zenity says its agent hooks can block or modify a dangerous tool call before it executes.Source 9 Whether Zenity supports A2A isn’t publicly documented.
Can either one find agents running in other vendors’ platforms?
Agent Registry lists agents hosted on external platforms, on premises, or in other Google Cloud projects only through manual registration.Source 25 Zenity says its AI Observability inventories agents inside platforms such as Copilot Studio, ChatGPT Enterprise, and Agentforce, and homegrown agents on Bedrock or Vertex AI.Source 4
How we compare
Read the full methodEvery claim on this page links to a public source. Where none answers a question, the page says so.
We re-check every fact at least every 90 days. This page was last checked .
Something wrong or out of date? Tell us and we’ll correct it.
Sources
56 public sources, each with the date we checked it. Every one opens in a new tab.
Source 4: AI Observability | See Every Agent, Know What it Touches | Zenity Back:abcdefghijklmnop
Source 5: Runtime Boundaries | The Runtime Boundary for Autonomous AI | Zenity Back:abcdefg
Source 6: Zenity's Coverage of the 2026 OWASP Top 10 for LLM Apps Back:abcde
Source 10: Build with Gemini Enterprise Agent Platform Back:abcd
Source 11: Gemini Enterprise Agent Platform (formerly Vertex AI) Back:ab
Source 12: Platform | AI Agent Security & Governance Platform | Zenity Back:abcd
Source 15: Supported locations for agents in Agent Platform Back:ab
Source 16: Gemini Enterprise Agent Platform pricing Back:abcd
Source 18: AWS Marketplace: Zenity AI Security & Governance Platform for Security Hub Extended Back:abc
Source 19: Introducing Gemini Enterprise Agent Platform, powering the next wave of agents Back:abc
Source 20: Gemini Enterprise Agent Platform release notes Back:abcd
Source 21: Zenity Now Available in the Microsoft Azure Marketplace Back to text
Source 22: Zenity Now Available on AWS Marketplace, Bringing End-to-End Security to Amazon Bedrock AgentCore and Enterprise AI Agents Everywhere Back:ab
Source 23: Introducing Microsoft Marketplace - Thousands of solutions. Millions of customers. One Marketplace. - The Official Microsoft Blog Back to text
Source 26: Search for agents, tools, and skills Back to text
Source 27: From Triage to Full Coverage: The Shift AI Agent Security Took in August Back:abcdefg
Source 33: Monitor traffic through Agent Gateway Back to text
Source 34: Google Cloud Platform Services in Scope by Compliance Program Back:ab
Source 37: Zenity Achieves FedRAMP “In Process” Status for AI Agent Security Back:ab
Source 38: Zenity Announces Availability of Inline Agent Runtime Security for Agents Built on Microsoft Foundry Back to text
Source 39: AI Security Posture Management (AISPM) | Stop Agent Risk Before Deployment | Zenity Back to text
Source 41: Zenity Selected for AWS Security Hub Extended to Secure Enterprise AI Agents Back:abc
Source 45: Zenity Subscription Terms and Conditions (EULA linked from Zenity's AWS Marketplace listings) Back:ab
Source 46: Seeing Every MCP Connection: Zenity Joins the Cursor Marketplace Back:ab
Source 47: AI Detection and Response (AIDR) | See the Threat, Stop the Action | Zenity Back to text
Source 48: Zenity Now Integrates with Microsoft Agent 365 Back to text
Source 49: Zenity Announces Partnership with ServiceNow to Operationalize AI Agent Risk Reduction in SecOps Back to text