August 26, 2025
Context-Aware Access policies can now be applied to all internal and third-party apps using OpenID Connect
What’s changing
Getting started
- Admins: CAA for OIDC apps can be configured at the OU level. Visit the Help Center to learn more about context-aware access, creating context-aware access levels, and assigning access levels to third-party apps.
- End users: If enabled by your admin, you can access certain apps when authenticating using your Google sign-in. Or you may see a message letting you know that you cannot use Google sign-in to authenticate with certain apps or you may see remediation messages which will provide some options on how to unblock apps.
Rollout pace
- Rapid Release and Scheduled Release domains: Extended rollout (potentially longer than 15 days for feature visibility) starting on August 26, 2025.
Availability
- Frontline Standard and Plus
- Enterprise Standard and Plus
- Education Standard and Plus
- Enterprise Essentials Plus
- Also available for Cloud Identity Premium
Resources
- Google Workspace Admin Help: Context-Aware Access overview
- Google Workspace Admin Help: Create Context-Aware access levels
- Google Workspace Admin Help: Assign Context-Aware access levels to apps
- Google Workspace Admin Help: Context-Aware Access log events
- Google Workspace Admin Help: Allow users to unblock apps with remediation messages in Context Aware Access