Google Workspace: allow OutreachFox in Google Admin
Before a Google Workspace mailbox can be connected to OutreachFox, a Workspace administrator must mark the OutreachFox app as trusted in the Google Admin console. This is a one-time task per Worksp…
Before a Google Workspace mailbox can be connected to OutreachFox, a Workspace administrator must mark the OutreachFox app as trusted in the Google Admin console. This is a one-time task per Workspace domain; once done, any user on that domain can connect their mailbox.
Prerequisites
- Super admin (or an admin with API-controls rights) access to the Google Admin console for the domain.
- The OutreachFox client ID, shown on the Google Workspace connection screen in OutreachFox (Mailbox → Connect Mailbox → Google Workspace).
Steps
- In OutreachFox, go to Mailbox → Connect Mailbox → Google Workspace. You are shown instructions to set up access in your Google Admin account. Click the provided link, or open admin.google.com in a new tab.

- In the Google Admin console, type API in the search bar at the top.

- Click API controls.

- Click Manage App Access (under Third-party app access).

- Click Configure new app.

- Return to the OutreachFox setup screen and copy the displayed client ID.

- Paste the client ID into the search field in the admin console and click Search.

- Select the app that is found.

- Click Continue.

- Set the app access to Trusted.

- Click Continue to save.

- Follow the remaining prompts to finish the configuration.

You can now go back to OutreachFox and connect the mailbox. See Connect a Google Workspace mailbox to OutreachFox.
Why this matters
Google Workspace blocks third-party apps from accessing Gmail data through OAuth unless an admin has allowed them. Marking OutreachFox as Trusted lets the "Connect with Google" sign-in succeed and lets OutreachFox send and read mail on behalf of the mailbox. Without it, users see an "app is blocked" or "admin policy" error during sign-in.
Tips
- If you have several Workspace domains, repeat these steps in each domain's admin console.
- Apply the setting to the whole organisation (top-level OU) unless you deliberately want to restrict which users can connect.
- Changes normally take effect within a few minutes; if the connection still fails, wait up to 24 hours as Google's policy cache refreshes.
Troubleshooting
- App not found when searching the client ID — make sure you copied the full ID with no trailing spaces and searched under the OAuth App Name Or Client ID option.
- "This app is blocked" during Connect with Google — the app is still marked Blocked or Limited; return to Manage App Access and set it to Trusted.
- No API controls menu — your account lacks admin rights; ask a super admin.
Related articles
- Connect a Google Workspace mailbox to OutreachFox
- Fix mailbox disconnection errors (Google, Microsoft, SMTP)
- Buy domai
Was this helpful?