# Bulk tag policies that reach your cloud, and audited MCP reads

> Tagging policies no longer have to be built one rule at a time. Download the template, fill it in, upload it, and apply the whole sheet at once. Approved tags can now be written onto the real AWS, Google Cloud, or Azure resource rather than only recorded in ZopNight, and audit logs now capture the read-only lookups AI assistants make over MCP.

Source: https://zop.dev/changelog/v1-37-0
Published: 2026-08-13 · Tags: zopnight, zopday, tagging, audit-logs, deployments

---

Import tagging rules; apply them to real resources.

## New

- ZopNight: build tagging policies in a spreadsheet. Download the template, fill it in, upload it, and review every rule ZopNight read back before applying the whole sheet at once. Existing policies export the same way
- ZopNight: applying an approved Smart Tag now writes it straight onto the real AWS, Google Cloud, or Azure resource, not just records it inside ZopNight. Existing cloud tags are kept and nothing is ever removed, and every accept, revoke, and apply asks for confirmation first, stating how many tags will go onto how many resources
- ZopDay: deploy straight from a public repository or a container image using a shareable link, choosing the branch from a searchable list

## Improved

- ZopNight: audit logs now record the read-only lookups AI assistants make over MCP, shown as clearly labelled Read entries. A new source filter narrows the log to assistant activity, and repeated identical lookups collapse into a single line. Expect a busier log than before
