Allowlisted Domains API now generally available

The Google Workspace Allowlisted Domains API is now generally available. Previously, administrators had to manage their allowlisted domains list manually through the Google Workspace Admin console. With this release, hosted under the Cloud Identity API suite as a top-level resource, organizations can securely automate and programmatically manage their list of allowlisted domains.

By programmatically managing trusted external sharing boundaries, Workspace administrators can easily automate domain lists. This allows organizations to restrict external collaboration to verified, trusted partners, thereby mitigating data exfiltration risks and strengthening overall security posture without manual administrative overhead.

This launch includes a robust set of core capabilities to support your domain management workflows:

  • Core CRUD operations: Programmatic Create, Delete, List, and Get capabilities to manage your list of allowlisted domains
  • Exact-match filtering: Easily check and verify the presence of specific domains using exact-match filtering within the List API

Note: Reseller-managed workflows are not currently supported.

Getting started

  • Admins: To configure these rules via the API, administrators must have either domain management or domain allowlist management privileges for Google Workspace. See our documentation to learn more.
  • End users: There is no end-user setting or action required for this feature.

Rollout pace

Availability

  • Available to all Google Workspace customers

Resources