Google makes passkeys mandatory for Google Ads API users
Google is implementing a mandatory passkey requirement for new authentications to its Google Ads API. This change aims to enhance security for developers and applications interacting with the advertising platform.
The new policy specifically targets *new* Google Ads API authentications, meaning that any existing refresh tokens currently in use will remain unaffected by this update. This allows for a phased transition without immediately disrupting ongoing operations for current API users. The move signals a broader industry trend towards stronger, passwordless authentication methods.
For SEO professionals, site owners, and marketers who utilize the Google Ads API for managing campaigns, reporting, or integrating ad data into other systems, this change means adapting to a more secure authentication standard for future setups. While existing integrations won't be immediately impacted, anyone planning new API connections or re-authenticating older ones will need to ensure their processes support passkeys. This proactive step by Google underscores the increasing importance of robust security practices in digital advertising and data management.
Brief by Black & Gold SEO · original reporting by Search Engine Land. We summarize and link — full credit to the original publisher.