The Google Ads API does support deploying your application on customers' machines. It is important to take appropriate security measures to protect your developer token and ensure compliance with our policies. To mitigate the risk of your developer token being leaked or compromised, consider using OAuth 2.0 authorization. OAuth allows you to access user data without storing their credentials on your server. OAuth allows users to grant your application access to their Google Ads account without sharing their credentials. This reduces the risk of your developer token being compromised. Let us know if you have any further queries.
This message is in relation to case "ref:!00D1U01174p.!5004Q02tJ3PA:ref" (ADR-00235956)
![]() |
Google Ads API Team |
Dear Team,
Thank you for your response. We are indeed already utilizing OAuth in our application. However, my primary concern still remains on the protection of our developer token on the customers' machine, which is mandatory to use per the API requirements.
Could you kindly elaborate on any specific measures or mechanisms that Google Ads API provides and I can leverage to further safeguard the developer token? Any best practices, guidelines, or recommendations in this regard would be immensely appreciated.