Google ACE Deploying and Implementing a Cloud Solution Practice Question
A developer wants to deploy a containerized application to Cloud Run that should be publicly accessible over the internet. The container image is stored in Container Registry. Which gcloud command should they use?
⚠ Common exam trap
ACE often tests the exact syntax of gcloud commands, especially the --platform value and the --allow-unauthenticated flag, tempting candidates to confuse Cloud Run with GKE or forget public access.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
gcloud run deploy my-service --image gcr.io/my-project/my-image --region us-central1 --platform managed --allow-unauthenticated
The correct gcloud command uses --platform managed, which is the required value for Cloud Run (fully managed). The --allow-unauthenticated flag makes the service publicly accessible. Option B includes both correct flags. Option A uses --platform cloud-run, which is invalid; the accepted values are managed or gke. Option C uses --platform gke, which would deploy to a GKE cluster, not Cloud Run. Option D omits --allow-unauthenticated, so the service would require authentication, not public.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
gcloud run deploy my-service --image gcr.io/my-project/my-image --region us-central1 --platform cloud-run --allow-unauthenticated
Why it's wrong here
The --platform cloud-run value is invalid; Cloud Run's platform flag accepts only managed or gke, so the command fails rather than deploying. It is tempting because --allow-unauthenticated correctly enables public access, which the scenario requires, but that flag alone cannot compensate for the malformed platform argument.
- ✓
gcloud run deploy my-service --image gcr.io/my-project/my-image --region us-central1 --platform managed --allow-unauthenticated
Why this is correct
The --allow-unauthenticated flag grants the allUsers IAM binding, satisfying the public internet access requirement, while --platform managed and --region target the fully managed Cloud Run service. The --image flag correctly references the Container Registry path.
- ✗
gcloud run deploy my-service --image gcr.io/my-project/my-image --region us-central1 --platform gke --allow-unauthenticated
Why it's wrong here
Setting --platform gke deploys to a Google Kubernetes Engine cluster rather than Cloud Run, contradicting the requirement. The --allow-unauthenticated flag makes it tempting by appearing to satisfy public access, yet the platform value routes the deployment to the wrong compute environment entirely.
- ✗
gcloud run deploy my-service --image gcr.io/my-project/my-image --region us-central1 --platform managed
Why it's wrong here
Omitting --allow-unauthenticated leaves the service requiring authentication, so it is not publicly accessible over the internet as required. The managed platform value is correct, making this option tempting, but public access on Cloud Run is governed solely by the authentication flag, which this command lacks.
Go deeper
Related to this question
Learn chapter
Artifact Registry and Container Management
Key term
Cloud Run
Cloud Run is a fully managed compute platform from Google Cloud that lets you run containerized applications in a serverless environment, automatically scaling from zero to thousands of requests.
Key term
Container registry
A container registry is a centralized storage and distribution system for container images, enabling developers to push, pull, and manage versions of application snapshots across environments.
About these practice questions
Courseiva writes every ACE question from scratch — 775 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Google Cloud exam blueprint
This ACE practice question is part of Courseiva's free Google Cloud certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the ACE exam.