---
title: "POST /v2/{+parent}/services"
method: POST
path: "/v2/{+parent}/services"
tags: ["projects"]
---

# POST /v2/{+parent}/services

`POST /v2/{+parent}/services`

Creates a new Service in a given project and location.

## Path parameters

- `parent` string, required

## Query parameters

- `serviceId` string
- `validateOnly` boolean

## Request body

- GoogleCloudRunV2Service — Service acts as a top-level container that manages a set of configurations and revision templates which implement a network service. Service exists to provide a singular abstraction which can be access controlled, reasoned about, and which encapsulates software lifecycle decisions such as rollout policy and team resource ownership.
  - `binaryAuthorization` GoogleCloudRunV2BinaryAuthorization — Settings for Binary Authorization feature.
    - `policy` string — Optional. The path to a binary authorization policy. Format: `projects/{project}/platforms/cloudRun/{policy-name}`
    - `breakglassJustification` string — Optional. If present, indicates to use Breakglass using this justification. If use_default is False, then it must be empty. For more information on breakglass, see https://cloud.google.com/binary-authorization/docs/using-breakglass
    - `useDefault` boolean — Optional. If True, indicates to use the default project's binary authorization policy. If False, binary authorization will be disabled.
  - `defaultUriDisabled` boolean — Optional. Disables public resolution of the default URI of this service.
  - `createTime` string, google-datetime — Output only. The creation time.
  - `deleteTime` string, google-datetime — Output only. The deletion time. It is only populated as a response to a Delete request.
  - `uid` string — Output only. Server assigned unique identifier for the trigger. The value is a UUID4 string and guaranteed to remain unchanged until the resource is deleted.
  - `expireTime` string, google-datetime — Output only. For a deleted resource, the time after which it will be permanently deleted.
  - `traffic` GoogleCloudRunV2TrafficTarget[] — Optional. Specifies how to distribute traffic over a collection of Revisions belonging to the Service. If traffic is empty or not provided, defaults to 100% traffic to the latest `Ready` Revision.
    - `revision` string — Revision to which to send this portion of traffic, if traffic allocation is by revision.
    - `type` 'TRAFFIC_TARGET_ALLOCATION_TYPE_UNSPECIFIED' | 'TRAFFIC_TARGET_ALLOCATION_TYPE_LATEST' | 'TRAFFIC_TARGET_ALLOCATION_TYPE_REVISION' — The allocation type for this traffic target.
    - `tag` string — Indicates a string to be part of the URI to exclusively reference this target.
    - `percent` integer — Specifies percent of the traffic to this Revision. This defaults to zero if unspecified.
  - `description` string — User-provided description of the Service. This field currently has a 512-character limit.
  - `labels` object — Optional. Unstructured key value map that can be used to organize and categorize objects. User-provided labels are shared with Google's billing system, so they can be used to filter, or break down billing charges by team, component, environment, state, etc. For more information, visit https://cloud.google.com/resource-manager/docs/creating-managing-labels or https://cloud.google.com/run/docs/configuring/labels. Cloud Run API v2 does not support labels with `run.googleapis.com`, `cloud.googleapis.com`, `serving.knative.dev`, or `autoscaling.knative.dev` namespaces, and they will be rejected. All system labels in v1 now have a corresponding field in v2 Service.
  - `updateTime` string, google-datetime — Output only. The last-modified time.
  - `client` string — Arbitrary identifier for the API client.
  - `buildConfig` GoogleCloudRunV2BuildConfig — Describes the Build step of the function that builds a container from the given source.
    - `functionTarget` string — Optional. The name of the function (as defined in source code) that will be executed. Defaults to the resource name suffix, if not specified. For backward compatibility, if function with given name is not found, then the system will try to use function named "function".
    - `imageUri` string — Optional. Artifact Registry URI to store the built image.
    - `baseImage` string — Optional. The base image used to build the function.
    - `workerPool` string — Optional. Name of the Cloud Build Custom Worker Pool that should be used to build the Cloud Run function. The format of this field is `projects/{project}/locations/{region}/workerPools/{workerPool}` where `{project}` and `{region}` are the project id and region respectively where the worker pool is defined and `{workerPool}` is the short name of the worker pool.
    - `sourceLocation` string — The Cloud Storage bucket URI where the function source code is located.
    - `name` string — Output only. The Cloud Build name of the latest successful deployment of the function.
    - `enableAutomaticUpdates` boolean — Optional. Sets whether the function will receive automatic base image updates.
    - `environmentVariables` object — Optional. User-provided build-time environment variables for the function
    - `serviceAccount` string — Optional. Service account to be used for building the container. The format of this field is `projects/{projectId}/serviceAccounts/{serviceAccountEmail}`.
  - `template` GoogleCloudRunV2RevisionTemplate — RevisionTemplate describes the data a revision should have when created from a template.
    - `serviceAccount` string — Optional. Email address of the IAM service account associated with the revision of the service. The service account represents the identity of the running revision, and determines what permissions the revision has. If not provided, the revision will use the project's default service account.
    - `serviceMesh` GoogleCloudRunV2ServiceMesh — Settings for Cloud Service Mesh. For more information see https://cloud.google.com/service-mesh/docs/overview.
      - `mesh` string — The Mesh resource name. Format: `projects/{project}/locations/global/meshes/{mesh}`, where `{project}` can be project id or number.
    - `nodeSelector` GoogleCloudRunV2NodeSelector — Hardware constraints configuration.
      - `accelerator` string — Required. GPU accelerator type to attach to an instance.
    - `containers` GoogleCloudRunV2Container[] — Holds the list which define the units of execution for this Revision.
      - `volumeMounts` GoogleCloudRunV2VolumeMount[] — Volume to mount into the container's filesystem.
        - `subPath` string — Optional. Path within the volume from which the container's volume should be mounted. Defaults to "" (volume's root). This field is currently rejected in Secret volume mounts.
        - `name` string — Required. This must match the Name of a Volume.
        - `mountPath` string — Required. Path within the container at which the volume should be mounted. Must not contain ':'. For Cloud SQL volumes, it can be left empty, or must otherwise be `/cloudsql`. All instances defined in the Volume will be available as `/cloudsql/[instance]`. For more information on Cloud SQL volumes, visit https://cloud.google.com/sql/docs/mysql/connect-run
      - `readinessProbe` GoogleCloudRunV2Probe — Probe describes a health check to be performed against a container to determine whether it is alive or ready to receive traffic.
        - `failureThreshold` integer — Optional. Minimum consecutive failures for the probe to be considered failed after having succeeded. Defaults to 3. Minimum value is 1.
        - `initialDelaySeconds` integer — Optional. Number of seconds after the container has started before the probe is initiated. Defaults to 0 seconds. Minimum value is 0. Maximum value for liveness probe is 3600. Maximum value for startup probe is 240.
        - `timeoutSeconds` integer — Optional. Number of seconds after which the probe times out. Defaults to 1 second. Minimum value is 1. Maximum value is 3600. Must be smaller than period_seconds.
        - `periodSeconds` integer — Optional. How often (in seconds) to perform the probe. Default to 10 seconds. Minimum value is 1. Maximum value for liveness probe is 3600. Maximum value for startup probe is 240. Must be greater or equal than timeout_seconds.
        - `httpGet` GoogleCloudRunV2HTTPGetAction — HTTPGetAction describes an action based on HTTP Get requests.
          - `httpHeaders` GoogleCloudRunV2HTTPHeader[] — Optional. Custom headers to set in the request. HTTP allows repeated headers.
            - `name` string — Required. The header field name
            - `value` string — Optional. The header field value
          - `path` string — Optional. Path to access on the HTTP server. Defaults to '/'.
          - `port` integer — Optional. Port number to access on the container. Must be in the range 1 to 65535. If not specified, defaults to the exposed port of the container, which is the value of container.ports[0].containerPort.
        - `tcpSocket` GoogleCloudRunV2TCPSocketAction — TCPSocketAction describes an action based on opening a socket
          - `port` integer — Optional. Port number to access on the container. Must be in the range 1 to 65535. If not specified, defaults to the exposed port of the container, which is the value of container.ports[0].containerPort.
        - `grpc` GoogleCloudRunV2GRPCAction — GRPCAction describes an action involving a GRPC port.
          - `service` string — Optional. Service is the name of the service to place in the gRPC HealthCheckRequest (see https://github.com/grpc/grpc/blob/master/doc/health-checking.md ). If this is not specified, the default behavior is defined by gRPC.
          - `port` integer — Optional. Port number of the gRPC service. Number must be in the range 1 to 65535. If not specified, defaults to the exposed port of the container, which is the value of container.ports[0].containerPort.
      - `sandboxLauncher` boolean — Optional. Indicates that this container can act as a sandbox supervisor and launch sandboxes.
      - `name` string — Name of the container specified as a DNS_LABEL (RFC 1123).
      - `buildInfo` GoogleCloudRunV2BuildInfo — Build information of the image.
        - `functionTarget` string — Output only. Entry point of the function when the image is a Cloud Run function.
        - `sourceLocation` string — Output only. Source code location of the image.
      - `env` GoogleCloudRunV2EnvVar[] — List of environment variables to set in the container.
        - `name` string — Required. Name of the environment variable. Must not exceed 32768 characters.
        - `value` string — Literal value of the environment variable. Defaults to "", and the maximum length is 32768 bytes. Variable references are not supported in Cloud Run.
        - `valueSource` GoogleCloudRunV2EnvVarSource — EnvVarSource represents a source for the value of an EnvVar.
          - `secretKeyRef` GoogleCloudRunV2SecretKeySelector — SecretEnvVarSource represents a source for the value of an EnvVar.
            - `secret` string — Required. The name of the secret in Cloud Secret Manager. Format: {secret_name} if the secret is in the same project. projects/{project}/secrets/{secret_name} if the secret is in a different project.
            - `version` string — The Cloud Secret Manager secret version. Can be 'latest' for the latest version, an integer for a specific version, or a version alias.
      - `ports` GoogleCloudRunV2ContainerPort[] — List of ports to expose from the container. Only a single port can be specified. The specified ports must be listening on all interfaces (0.0.0.0) within the container to be accessible. If omitted, a port number will be chosen and passed to the container through the PORT environment variable for the container to listen on.
        - `name` string — If specified, used to specify which protocol to use. Allowed values are "http1" and "h2c".
        - `containerPort` integer — Port number the container listens on. This must be a valid TCP port number, 0 < container_port < 65536.
      - `args` string[] — Arguments to the entrypoint. The docker image's CMD is used if this is not provided.
      - `startupProbe` GoogleCloudRunV2Probe — Probe describes a health check to be performed against a container to determine whether it is alive or ready to receive traffic.
        - `failureThreshold` integer — Optional. Minimum consecutive failures for the probe to be considered failed after having succeeded. Defaults to 3. Minimum value is 1.
        - `initialDelaySeconds` integer — Optional. Number of seconds after the container has started before the probe is initiated. Defaults to 0 seconds. Minimum value is 0. Maximum value for liveness probe is 3600. Maximum value for startup probe is 240.
        - `timeoutSeconds` integer — Optional. Number of seconds after which the probe times out. Defaults to 1 second. Minimum value is 1. Maximum value is 3600. Must be smaller than period_seconds.
        - `periodSeconds` integer — Optional. How often (in seconds) to perform the probe. Default to 10 seconds. Minimum value is 1. Maximum value for liveness probe is 3600. Maximum value for startup probe is 240. Must be greater or equal than timeout_seconds.
        - `httpGet` GoogleCloudRunV2HTTPGetAction — HTTPGetAction describes an action based on HTTP Get requests.
          - `httpHeaders` GoogleCloudRunV2HTTPHeader[] — Optional. Custom headers to set in the request. HTTP allows repeated headers.
            - `name` string — Required. The header field name
            - `value` string — Optional. The header field value
          - `path` string — Optional. Path to access on the HTTP server. Defaults to '/'.
          - `port` integer — Optional. Port number to access on the container. Must be in the range 1 to 65535. If not specified, defaults to the exposed port of the container, which is the value of container.ports[0].containerPort.
        - `tcpSocket` GoogleCloudRunV2TCPSocketAction — TCPSocketAction describes an action based on opening a socket
          - `port` integer — Optional. Port number to access on the container. Must be in the range 1 to 65535. If not specified, defaults to the exposed port of the container, which is the value of container.ports[0].containerPort.
        - `grpc` GoogleCloudRunV2GRPCAction — GRPCAction describes an action involving a GRPC port.
          - `service` string — Optional. Service is the name of the service to place in the gRPC HealthCheckRequest (see https://github.com/grpc/grpc/blob/master/doc/health-checking.md ). If this is not specified, the default behavior is defined by gRPC.
          - `port` integer — Optional. Port number of the gRPC service. Number must be in the range 1 to 65535. If not specified, defaults to the exposed port of the container, which is the value of container.ports[0].containerPort.
      - `dependsOn` string[] — Names of the containers that must start before this container.
      - `image` string — Required. Name of the container image in Dockerhub, Google Artifact Registry, or Google Container Registry. If the host is not provided, Dockerhub is assumed.
      - `resources` GoogleCloudRunV2ResourceRequirements — ResourceRequirements describes the compute resource requirements.
        - `startupCpuBoost` boolean — Determines whether CPU should be boosted on startup of a new container instance above the requested CPU threshold, this can help reduce cold-start latency.
        - `limits` object — Only `memory`, `cpu` and `nvidia.com/gpu` keys in the map are supported. Notes: * The only supported values for CPU are '1', '2', '4', and '8'. Setting 4 CPU requires at least 2Gi of memory. For more information, go to https://cloud.google.com/run/docs/configuring/cpu. * For supported 'memory' values and syntax, go to https://cloud.google.com/run/docs/configuring/memory-limits * The only supported 'nvidia.com/gpu' value is '1'.
        - `cpuIdle` boolean — Determines whether CPU is only allocated during requests (true by default). However, if ResourceRequirements is set, the caller must explicitly set this field to true to preserve the default behavior.
      - `command` string[] — Entrypoint array. Not executed within a shell. The docker image's ENTRYPOINT is used if this is not provided.
      - `sourceCode` GoogleCloudRunV2SourceCode — Source type for the container.
        - `cloudStorageSource` GoogleCloudRunV2CloudStorageSource — Cloud Storage source.
          - `bucket` string — Required. The Cloud Storage bucket name.
          - `object` string — Required. The Cloud Storage object name.
          - `generation` string, int64 — Optional. The Cloud Storage object generation.
        - `inlinedSource` GoogleCloudRunV2InlinedSource — Inlined source.
          - `sources` GoogleCloudRunV2SourceFile[] — Required. Input only. The source code.
            - `filename` string — Required. Input only. The file name for the source code. e.g., `"index.js"` or `"node_modules/dependency.js"`. The filename must be less than 255 characters and cannot contain `..`, `./`, `//`, or end with a `/`. Cloud Run will place the files in the container subdirectories, please use relative path to access the file.
            - `content` string — Required. Input only. Represents the exact, literal, and complete source code of the file. Placeholders like `...` or comments such as `# [rest of code]` should NEVER be used as omission. Every character in this field will be built into the final container. Any omission will result in a broken application.
      - `livenessProbe` GoogleCloudRunV2Probe — Probe describes a health check to be performed against a container to determine whether it is alive or ready to receive traffic.
        - `failureThreshold` integer — Optional. Minimum consecutive failures for the probe to be considered failed after having succeeded. Defaults to 3. Minimum value is 1.
        - `initialDelaySeconds` integer — Optional. Number of seconds after the container has started before the probe is initiated. Defaults to 0 seconds. Minimum value is 0. Maximum value for liveness probe is 3600. Maximum value for startup probe is 240.
        - `timeoutSeconds` integer — Optional. Number of seconds after which the probe times out. Defaults to 1 second. Minimum value is 1. Maximum value is 3600. Must be smaller than period_seconds.
        - `periodSeconds` integer — Optional. How often (in seconds) to perform the probe. Default to 10 seconds. Minimum value is 1. Maximum value for liveness probe is 3600. Maximum value for startup probe is 240. Must be greater or equal than timeout_seconds.
        - `httpGet` GoogleCloudRunV2HTTPGetAction — HTTPGetAction describes an action based on HTTP Get requests.
          - `httpHeaders` GoogleCloudRunV2HTTPHeader[] — Optional. Custom headers to set in the request. HTTP allows repeated headers.
            - `name` string — Required. The header field name
            - `value` string — Optional. The header field value
          - `path` string — Optional. Path to access on the HTTP server. Defaults to '/'.
          - `port` integer — Optional. Port number to access on the container. Must be in the range 1 to 65535. If not specified, defaults to the exposed port of the container, which is the value of container.ports[0].containerPort.
        - `tcpSocket` GoogleCloudRunV2TCPSocketAction — TCPSocketAction describes an action based on opening a socket
          - `port` integer — Optional. Port number to access on the container. Must be in the range 1 to 65535. If not specified, defaults to the exposed port of the container, which is the value of container.ports[0].containerPort.
        - `grpc` GoogleCloudRunV2GRPCAction — GRPCAction describes an action involving a GRPC port.
          - `service` string — Optional. Service is the name of the service to place in the gRPC HealthCheckRequest (see https://github.com/grpc/grpc/blob/master/doc/health-checking.md ). If this is not specified, the default behavior is defined by gRPC.
          - `port` integer — Optional. Port number of the gRPC service. Number must be in the range 1 to 65535. If not specified, defaults to the exposed port of the container, which is the value of container.ports[0].containerPort.
      - `workingDir` string — Container's working directory. If not specified, the container runtime's default will be used, which might be configured in the container image.
      - `baseImageUri` string — Base image for this container. Only supported for services. If set, it indicates that the service is enrolled into automatic base image update.
    - `annotations` object — Optional. Unstructured key value map that may be set by external tools to store and arbitrary metadata. They are not queryable and should be preserved when modifying objects. Cloud Run API v2 does not support annotations with `run.googleapis.com`, `cloud.googleapis.com`, `serving.knative.dev`, or `autoscaling.knative.dev` namespaces, and they will be rejected. All system annotations in v1 now have a corresponding field in v2 RevisionTemplate. This field follows Kubernetes annotations' namespacing, limits, and rules.
    - `volumes` GoogleCloudRunV2Volume[] — Optional. A list of Volumes to make available to containers.
      - `emptyDir` GoogleCloudRunV2EmptyDirVolumeSource — In memory (tmpfs) ephemeral storage. It is ephemeral in the sense that when the sandbox is taken down, the data is destroyed with it (it does not persist across sandbox runs).
        - `medium` 'MEDIUM_UNSPECIFIED' | 'MEMORY' | 'DISK' — The medium on which the data is stored. Acceptable values today is only MEMORY or none. When none, the default will currently be backed by memory but could change over time. +optional
        - `sizeLimit` string — Limit on the storage usable by this EmptyDir volume. The size limit is also applicable for memory medium. The maximum usage on memory medium EmptyDir would be the minimum value between the SizeLimit specified here and the sum of memory limits of all containers. The default is nil which means that the limit is undefined. More info: https://cloud.google.com/run/docs/configuring/in-memory-volumes#configure-volume. Info in Kubernetes: https://kubernetes.io/docs/concepts/storage/volumes/#emptydir
      - `gcs` GoogleCloudRunV2GCSVolumeSource — Represents a volume backed by a Cloud Storage bucket using Cloud Storage FUSE.
        - `mountOptions` string[] — A list of additional flags to pass to the gcsfuse CLI. Options should be specified without the leading "--".
        - `bucket` string — Cloud Storage Bucket name.
        - `readOnly` boolean — If true, the volume will be mounted as read only for all mounts.
      - `name` string — Required. Volume's name.
      - `cloudSqlInstance` GoogleCloudRunV2CloudSqlInstance — Represents a set of Cloud SQL instances. Each one will be available under /cloudsql/[instance]. Visit https://cloud.google.com/sql/docs/mysql/connect-run for more information on how to connect Cloud SQL and Cloud Run.
        - `instances` string[] — A list of Cloud SQL instance connection names. Cloud Run uses these to establish connections to the specified Cloud SQL instances. While the SQL instance name itself is unique within a project, the full connection name requires the location for proper routing. Format: `{project}:{location}:{instance}` Example: `my-project:us-central1:my-instance` You can find this value on the instance's **Overview** page in the Google Cloud console or by using the following `gcloud` command: ```sh gcloud sql instances describe INSTANCE_NAME \ --format='value(connectionName)' ``` Visit https://cloud.google.com/sql/docs/mysql/connect-run for more information on how to connect Cloud SQL and Cloud Run.
      - `nfs` GoogleCloudRunV2NFSVolumeSource — Represents an NFS mount.
        - `server` string — Hostname or IP address of the NFS server
        - `path` string — Path that is exported by the NFS server.
        - `readOnly` boolean — If true, the volume will be mounted as read only for all mounts.
      - `secret` GoogleCloudRunV2SecretVolumeSource — The secret's value will be presented as the content of a file whose name is defined in the item path. If no items are defined, the name of the file is the secret.
        - `defaultMode` integer — Integer representation of mode bits to use on created files by default. Must be a value between 0000 and 0777 (octal), defaulting to 0444. Directories within the path are not affected by this setting. Notes * Internally, a umask of 0222 will be applied to any non-zero value. * This is an integer representation of the mode bits. So, the octal integer value should look exactly as the chmod numeric notation with a leading zero. Some examples: for chmod 640 (u=rw,g=r), set to 0640 (octal) or 416 (base-10). For chmod 755 (u=rwx,g=rx,o=rx), set to 0755 (octal) or 493 (base-10). * This might be in conflict with other options that affect the file mode, like fsGroup, and the result can be other mode bits set. This might be in conflict with other options that affect the file mode, like fsGroup, and as a result, other mode bits could be set.
        - `secret` string — Required. The name of the secret in Cloud Secret Manager. Format: {secret} if the secret is in the same project. projects/{project}/secrets/{secret} if the secret is in a different project.
        - `items` GoogleCloudRunV2VersionToPath[] — If unspecified, the volume will expose a file whose name is the secret, relative to VolumeMount.mount_path + VolumeMount.sub_path. If specified, the key will be used as the version to fetch from Cloud Secret Manager and the path will be the name of the file exposed in the volume. When items are defined, they must specify a path and a version.
          - `version` string — The Cloud Secret Manager secret version. Can be 'latest' for the latest value, or an integer or a secret alias for a specific version.
          - `mode` integer — Integer octal mode bits to use on this file, must be a value between 01 and 0777 (octal). If 0 or not set, the Volume's default mode will be used. Notes * Internally, a umask of 0222 will be applied to any non-zero value. * This is an integer representation of the mode bits. So, the octal integer value should look exactly as the chmod numeric notation with a leading zero. Some examples: for chmod 640 (u=rw,g=r), set to 0640 (octal) or 416 (base-10). For chmod 755 (u=rwx,g=rx,o=rx), set to 0755 (octal) or 493 (base-10). * This might be in conflict with other options that affect the file mode, like fsGroup, and the result can be other mode bits set.
          - `path` string — Required. The relative path of the secret in the container.
    - `gpuZonalRedundancyDisabled` boolean — Optional. True if GPU zonal redundancy is disabled on this revision.
    - `clientVersion` string — Optional. Arbitrary version identifier for the API client.
    - `executionEnvironment` 'EXECUTION_ENVIRONMENT_UNSPECIFIED' | 'EXECUTION_ENVIRONMENT_GEN1' | 'EXECUTION_ENVIRONMENT_GEN2' — Optional. The sandbox environment to host this Revision.
    - `vpcAccess` GoogleCloudRunV2VpcAccess — VPC Access settings. For more information on sending traffic to a VPC network, visit https://cloud.google.com/run/docs/configuring/connecting-vpc.
      - `connector` string — VPC Access connector name. Format: `projects/{project}/locations/{location}/connectors/{connector}`, where `{project}` can be project id or number. For more information on sending traffic to a VPC network via a connector, visit https://cloud.google.com/run/docs/configuring/vpc-connectors.
      - `networkInterfaces` GoogleCloudRunV2NetworkInterface[] — Optional. Direct VPC egress settings. Currently only single network interface is supported.
        - `tags` string[] — Optional. Network tags applied to this Cloud Run resource.
        - `network` string — Optional. The VPC network that the Cloud Run resource will be able to send traffic to. At least one of network or subnetwork must be specified. If both network and subnetwork are specified, the given VPC subnetwork must belong to the given VPC network. If network is not specified, it will be looked up from the subnetwork.
        - `subnetwork` string — Optional. The VPC subnetwork that the Cloud Run resource will get IPs from. At least one of network or subnetwork must be specified. If both network and subnetwork are specified, the given VPC subnetwork must belong to the given VPC network. If subnetwork is not specified, the subnetwork with the same name with the network will be used.
      - `egress` 'VPC_EGRESS_UNSPECIFIED' | 'ALL_TRAFFIC' | 'PRIVATE_RANGES_ONLY' — Optional. Traffic VPC egress settings. If not provided, it defaults to PRIVATE_RANGES_ONLY.
    - `encryptionKey` string — A reference to a customer managed encryption key (CMEK) to use to encrypt this container image. For more information, go to https://cloud.google.com/run/docs/securing/using-cmek
    - `maxInstanceRequestConcurrency` integer — Optional. Sets the maximum number of requests that each serving instance can receive. If not specified or 0, concurrency defaults to 80 when requested `CPU >= 1` and defaults to 1 when requested `CPU < 1`.
    - `encryptionKeyShutdownDuration` string, google-duration — Optional. If encryption_key_revocation_action is SHUTDOWN, the duration before shutting down all instances. The minimum increment is 1 hour.
    - `encryptionKeyRevocationAction` 'ENCRYPTION_KEY_REVOCATION_ACTION_UNSPECIFIED' | 'PREVENT_NEW' | 'SHUTDOWN' — Optional. The action to take if the encryption key is revoked.
    - `scaling` GoogleCloudRunV2RevisionScaling — Settings for revision-level scaling settings.
      - `cpuUtilization` number, float — Optional. Determines a threshold for CPU utilization before scaling begins. Accepted values are between `0.1` and `0.95` (inclusive) or `0.0` to disable CPU utilization as threshold for scaling. CPU and concurrency scaling cannot both be disabled.
      - `concurrencyUtilization` number, float — Optional. Determines a threshold for concurrency utilization before scaling begins. Accepted values are between `0.1` and `0.95` (inclusive) or `0.0` to disable concurrency utilization as threshold for scaling. CPU and concurrency scaling cannot both be disabled.
      - `maxInstanceCount` integer — Optional. Maximum number of serving instances that this resource should have. When unspecified, the field is set to the server default value of 100. For more information see https://cloud.google.com/run/docs/configuring/max-instances
      - `minInstanceCount` integer — Optional. Minimum number of serving instances that this resource should have.
    - `sessionAffinity` boolean — Optional. Enable session affinity.
    - `client` string — Optional. Arbitrary identifier for the API client.
    - `revision` string — Optional. The unique name for the revision. If this field is omitted, it will be automatically generated based on the Service name.
    - `timeout` string, google-duration — Optional. Max allowed time for an instance to respond to a request.
    - `healthCheckDisabled` boolean — Optional. Disables health checking containers during deployment.
    - `labels` object — Optional. Unstructured key value map that can be used to organize and categorize objects. User-provided labels are shared with Google's billing system, so they can be used to filter, or break down billing charges by team, component, environment, state, etc. For more information, visit https://cloud.google.com/resource-manager/docs/creating-managing-labels or https://cloud.google.com/run/docs/configuring/labels. Cloud Run API v2 does not support labels with `run.googleapis.com`, `cloud.googleapis.com`, `serving.knative.dev`, or `autoscaling.knative.dev` namespaces, and they will be rejected. All system labels in v1 now have a corresponding field in v2 RevisionTemplate.
  - `multiRegionSettings` GoogleCloudRunV2MultiRegionSettings — Settings for multi-region deployment.
    - `regions` string[] — Required. List of regions to deploy to, including primary region.
    - `multiRegionId` string — Optional. System-generated unique id for the multi-region Service.
  - `observedGeneration` string, int64 — Output only. The generation of this Service currently serving traffic. See comments in `reconciling` for additional information on reconciliation process in Cloud Run. Please note that unlike v1, this is an int64 value. As with most Google APIs, its JSON representation will be a `string` instead of an `integer`.
  - `urls` string[] — Output only. All URLs serving traffic for this Service.
  - `customAudiences` string[] — One or more custom audiences that you want this service to support. Specify each custom audience as the full URL in a string. The custom audiences are encoded in the token and used to authenticate requests. For more information, see https://cloud.google.com/run/docs/configuring/custom-audiences.
  - `reconciling` boolean — Output only. Returns true if the Service is currently being acted upon by the system to bring it into the desired state. When a new Service is created, or an existing one is updated, Cloud Run will asynchronously perform all necessary steps to bring the Service to the desired serving state. This process is called reconciliation. While reconciliation is in process, `observed_generation`, `latest_ready_revision`, `traffic_statuses`, and `uri` will have transient values that might mismatch the intended state: Once reconciliation is over (and this field is false), there are two possible outcomes: reconciliation succeeded and the serving state matches the Service, or there was an error, and reconciliation failed. This state can be found in `terminal_condition.state`. If reconciliation succeeded, the following fields will match: `traffic` and `traffic_statuses`, `observed_generation` and `generation`, `latest_ready_revision` and `latest_created_revision`. If reconciliation failed, `traffic_statuses`, `observed_generation`, and `latest_ready_revision` will have the state of the last serving revision, or empty for newly created Services. Additional information on the failure can be found in `terminal_condition` and `conditions`.
  - `creator` string — Output only. Email address of the authenticated creator.
  - `launchStage` 'LAUNCH_STAGE_UNSPECIFIED' | 'UNIMPLEMENTED' | 'PRELAUNCH' | 'EARLY_ACCESS' | 'ALPHA' | 'BETA' | 'GA' | 'DEPRECATED' — Optional. The launch stage as defined by [Google Cloud Platform Launch Stages](https://cloud.google.com/terms/launch-stages). Cloud Run supports `ALPHA`, `BETA`, and `GA`. If no value is specified, GA is assumed. Set the launch stage to a preview stage on input to allow use of preview features in that stage. On read (or output), describes whether the resource uses preview features. For example, if ALPHA is provided as input, but only BETA and GA-level features are used, this field will be BETA on output.
  - `conditions` GoogleCloudRunV2Condition[] — Output only. The Conditions of all other associated sub-resources. They contain additional diagnostics information in case the Service does not reach its Serving state. See comments in `reconciling` for additional information on reconciliation process in Cloud Run.
    - `executionReason` 'EXECUTION_REASON_UNDEFINED' | 'JOB_STATUS_SERVICE_POLLING_ERROR' | 'NON_ZERO_EXIT_CODE' | 'CANCELLED' | 'CANCELLING' | 'DELETED' | 'DELAYED_START_PENDING' — Output only. A reason for the execution condition.
    - `state` 'STATE_UNSPECIFIED' | 'CONDITION_PENDING' | 'CONDITION_RECONCILING' | 'CONDITION_FAILED' | 'CONDITION_SUCCEEDED' — State of the condition.
    - `severity` 'SEVERITY_UNSPECIFIED' | 'ERROR' | 'WARNING' | 'INFO' — How to interpret failures of this condition, one of Error, Warning, Info
    - `revisionReason` 'REVISION_REASON_UNDEFINED' | 'PENDING' | 'RESERVE' | 'RETIRED' | 'RETIRING' | 'RECREATING' | 'HEALTH_CHECK_CONTAINER_ERROR' | 'CUSTOMIZED_PATH_RESPONSE_PENDING' | 'MIN_INSTANCES_NOT_PROVISIONED' | 'ACTIVE_REVISION_LIMIT_REACHED' | 'NO_DEPLOYMENT' | 'HEALTH_CHECK_SKIPPED' | 'MIN_INSTANCES_WARMING' — Output only. A reason for the revision condition.
    - `reason` 'COMMON_REASON_UNDEFINED' | 'UNKNOWN' | 'REVISION_FAILED' | 'PROGRESS_DEADLINE_EXCEEDED' | 'CONTAINER_MISSING' | 'CONTAINER_PERMISSION_DENIED' | 'CONTAINER_IMAGE_UNAUTHORIZED' | 'CONTAINER_IMAGE_AUTHORIZATION_CHECK_FAILED' | 'ENCRYPTION_KEY_PERMISSION_DENIED' | 'ENCRYPTION_KEY_CHECK_FAILED' | 'SECRETS_ACCESS_CHECK_FAILED' | 'WAITING_FOR_OPERATION' | 'IMMEDIATE_RETRY' | 'POSTPONED_RETRY' | 'INTERNAL' | 'VPC_NETWORK_NOT_FOUND' — Output only. A common (service-level) reason for this condition.
    - `message` string — Human readable message indicating details about the current status.
    - `lastTransitionTime` string, google-datetime — Last time the condition transitioned from one status to another.
    - `type` string — type is used to communicate the status of the reconciliation process. See also: https://github.com/knative/serving/blob/main/docs/spec/errors.md#error-conditions-and-reporting Types common to all resources include: * "Ready": True when the Resource is ready.
  - `threatDetectionEnabled` boolean — Output only. True if Cloud Run Threat Detection monitoring is enabled for the parent project of this Service.
  - `terminalCondition` GoogleCloudRunV2Condition — Defines a status condition for a resource.
    - `executionReason` 'EXECUTION_REASON_UNDEFINED' | 'JOB_STATUS_SERVICE_POLLING_ERROR' | 'NON_ZERO_EXIT_CODE' | 'CANCELLED' | 'CANCELLING' | 'DELETED' | 'DELAYED_START_PENDING' — Output only. A reason for the execution condition.
    - `state` 'STATE_UNSPECIFIED' | 'CONDITION_PENDING' | 'CONDITION_RECONCILING' | 'CONDITION_FAILED' | 'CONDITION_SUCCEEDED' — State of the condition.
    - `severity` 'SEVERITY_UNSPECIFIED' | 'ERROR' | 'WARNING' | 'INFO' — How to interpret failures of this condition, one of Error, Warning, Info
    - `revisionReason` 'REVISION_REASON_UNDEFINED' | 'PENDING' | 'RESERVE' | 'RETIRED' | 'RETIRING' | 'RECREATING' | 'HEALTH_CHECK_CONTAINER_ERROR' | 'CUSTOMIZED_PATH_RESPONSE_PENDING' | 'MIN_INSTANCES_NOT_PROVISIONED' | 'ACTIVE_REVISION_LIMIT_REACHED' | 'NO_DEPLOYMENT' | 'HEALTH_CHECK_SKIPPED' | 'MIN_INSTANCES_WARMING' — Output only. A reason for the revision condition.
    - `reason` 'COMMON_REASON_UNDEFINED' | 'UNKNOWN' | 'REVISION_FAILED' | 'PROGRESS_DEADLINE_EXCEEDED' | 'CONTAINER_MISSING' | 'CONTAINER_PERMISSION_DENIED' | 'CONTAINER_IMAGE_UNAUTHORIZED' | 'CONTAINER_IMAGE_AUTHORIZATION_CHECK_FAILED' | 'ENCRYPTION_KEY_PERMISSION_DENIED' | 'ENCRYPTION_KEY_CHECK_FAILED' | 'SECRETS_ACCESS_CHECK_FAILED' | 'WAITING_FOR_OPERATION' | 'IMMEDIATE_RETRY' | 'POSTPONED_RETRY' | 'INTERNAL' | 'VPC_NETWORK_NOT_FOUND' — Output only. A common (service-level) reason for this condition.
    - `message` string — Human readable message indicating details about the current status.
    - `lastTransitionTime` string, google-datetime — Last time the condition transitioned from one status to another.
    - `type` string — type is used to communicate the status of the reconciliation process. See also: https://github.com/knative/serving/blob/main/docs/spec/errors.md#error-conditions-and-reporting Types common to all resources include: * "Ready": True when the Resource is ready.
  - `satisfiesPzs` boolean — Output only. Reserved for future use.
  - `name` string — Identifier. The fully qualified name of this Service. In CreateServiceRequest, this field is ignored, and instead composed from CreateServiceRequest.parent and CreateServiceRequest.service_id. Format: projects/{project}/locations/{location}/services/{service_id}
  - `iapEnabled` boolean — Optional. IAP settings on the Service.
  - `trafficStatuses` GoogleCloudRunV2TrafficTargetStatus[] — Output only. Detailed status information for corresponding traffic targets. See comments in `reconciling` for additional information on reconciliation process in Cloud Run.
    - `uri` string — Displays the target URI.
    - `tag` string — Indicates the string used in the URI to exclusively reference this target.
    - `revision` string — Revision to which this traffic is sent.
    - `percent` integer — Specifies percent of the traffic to this Revision.
    - `type` 'TRAFFIC_TARGET_ALLOCATION_TYPE_UNSPECIFIED' | 'TRAFFIC_TARGET_ALLOCATION_TYPE_LATEST' | 'TRAFFIC_TARGET_ALLOCATION_TYPE_REVISION' — The allocation type for this traffic target.
  - `ingress` 'INGRESS_TRAFFIC_UNSPECIFIED' | 'INGRESS_TRAFFIC_ALL' | 'INGRESS_TRAFFIC_INTERNAL_ONLY' | 'INGRESS_TRAFFIC_INTERNAL_LOAD_BALANCER' | 'INGRESS_TRAFFIC_NONE' — Optional. Provides the ingress settings for this Service. On output, returns the currently observed ingress settings, or INGRESS_TRAFFIC_UNSPECIFIED if no revision is active.
  - `etag` string — Optional. A system-generated fingerprint for this version of the resource. May be used to detect modification conflict during updates.
  - `generation` string, int64 — Output only. A number that monotonically increases every time the user modifies the desired state. Please note that unlike v1, this is an int64 value. As with most Google APIs, its JSON representation will be a `string` instead of an `integer`.
  - `scaling` GoogleCloudRunV2ServiceScaling — Scaling settings applied at the service level rather than at the revision level.
    - `manualInstanceCount` integer — Optional. total instance count for the service in manual scaling mode. This number of instances is divided among all revisions with specified traffic based on the percent of traffic they are receiving.
    - `minInstanceCount` integer — Optional. total min instances for the service. This number of instances is divided among all revisions with specified traffic based on the percent of traffic they are receiving.
    - `scalingMode` 'SCALING_MODE_UNSPECIFIED' | 'AUTOMATIC' | 'MANUAL' — Optional. The scaling mode for the service.
    - `maxInstanceCount` integer — Optional. total max instances for the service. This number of instances is divided among all revisions with specified traffic based on the percent of traffic they are receiving.
  - `uri` string — Output only. The main URI in which this Service is serving traffic.
  - `latestCreatedRevision` string — Output only. Name of the last created revision. See comments in `reconciling` for additional information on reconciliation process in Cloud Run.
  - `lastModifier` string — Output only. Email address of the last authenticated modifier.
  - `invokerIamDisabled` boolean — Optional. Disables IAM permission check for run.routes.invoke for callers of this service. For more information, visit https://cloud.google.com/run/docs/securing/managing-access#invoker_check.
  - `latestReadyRevision` string — Output only. Name of the latest revision that is serving traffic. See comments in `reconciling` for additional information on reconciliation process in Cloud Run.
  - `annotations` object — Optional. Unstructured key value map that may be set by external tools to store and arbitrary metadata. They are not queryable and should be preserved when modifying objects. Cloud Run API v2 does not support annotations with `run.googleapis.com`, `cloud.googleapis.com`, `serving.knative.dev`, or `autoscaling.knative.dev` namespaces, and they will be rejected in new resources. All system annotations in v1 now have a corresponding field in v2 Service. This field follows Kubernetes annotations' namespacing, limits, and rules.
  - `clientVersion` string — Arbitrary version identifier for the API client.

## Response `200`

Successful response

---

[API](https://skmtc.net/google/apis/run.md) · [All operations](https://skmtc.net/google/apis/run/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/google/run/versions/59efba436157/schema)
