Google Workspace low security app cutoff is nearly here
Be sure to check if your favourite apps will be disabled
Applications determined by Google to be not secure enough will have Workspace access disabled as of September 30.
Google’s previously announced cutoff for “less secure apps” (LSA) aims to lower the number of third-party applications that do not use secure authorization from Workspace accounts.
Only third-party applications that use OAuth will be trusted to remain connected to Workspace.
Admins beware
OAuth is an authorization protocol that allows you to use third-party applications without sharing your credentials with them, by providing an authorization token to allow interaction.
Google’s intention behind the cutoff of LSAs is to reduce the number of third-party apps that have access to your username and password to prevent attackers that compromise your credentials from having easy access to your account and networks.
As a result, CalDAV, CardDAV, IMAP, POP and Google Sync will all require OAuth to use, rather than just a password. Those using Thunderbird, the mail app for iOS or MacOS, or Outlook for Mac will simply need to re-add your account and sign in using Google with OAuth.
“Admins will need to push a Google Account using their MDM provider, which will re-add their Google accounts to iOS devices using OAuth,” Google said in the announcement.
Are you a pro? Subscribe to our newsletter
Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!
For those using Outlook 2016 or earlier, it’s time to upgrade to Microsoft 365, as it will be impossible to log in to older versions of Outlook without OAuth. Similarly, any third-party application that does not use OAuth will no longer work, so you may need to consider an alternative app.
More from TechRadar Pro
- These are the best productivity apps
- Google Workspace will now save you from making any embarrassing file-sharing mistakes
- Take a look at the best business laptops
Benedict has been writing about security issues for close to 5 years, at first covering geopolitics and international relations while at the University of Buckingham. During this time he studied BA Politics with Journalism, for which he received a second-class honours (upper division). Benedict then continued his studies at a postgraduate level and achieved a distinction in MA Security, Intelligence and Diplomacy. Benedict transitioned his security interests towards cybersecurity upon joining TechRadar Pro as a Staff Writer, focusing on state-sponsored threat actors, malware, social engineering, and national security. Benedict is also an expert on B2B security products, including firewalls, antivirus, endpoint security, and password management.