Top
Best
New

Posted by agwa 11/3/2025

Google suspended my company's Google cloud account for the third time(www.agwa.name)
416 points | 192 commentspage 4
rekabis 11/4/2025|
Considering how so many things have an API due to client-side development, is there not a possibility to automate the OIDC workflow from your own end, such as in a customized app on your own servers that provides a wizard interface for your clients?
LightBug1 11/3/2025||
I'll tell you the problem with Google (in my experience). They've moved to Big Company cash cow mode. They even use SAP Ariba ... which dictates that their teams are silo'd and ultra rigid ... and so dealing with them is a nightmare.

N=1

fencepost 11/3/2025||
There's a reason Google has a reputation of "Don't use it for anything that you can't afford to have disappear with no notice or recourse."

You also can't expect it to get any better, both because Alphabet has never shown any interest in improving things and because you and the services you've been using them for aren't the new AI hotness. Even if you're absurdly profitable for them (and you're clearly not) you're not in an area that their internal people are competing to serve.

jordanb 11/3/2025|
I can't help but think that the mass layoffs at Amazon will produce the same culture soon. And I wonder how much is downstream of Google "defeating" antitrust.

It's open season for customers, employees, suppliers and contributors.

causal 11/3/2025|||
Secret to Azure success: Just wait for the others to f it up.
fencepost 11/7/2025|||
Maybe, but Amazon has one thing that Google seems to take pride in avoiding - customer service.

I can't help but think of the mass banning they did of people who spammed emoji in chat for a game streamer by request to vote on which direction he should choose who only got unbanned because he has a big enough following to cause bad PR. I can't imagine being in a position where you depended on Google not banning you for your livelihood. Sure you'd have separate accounts, but it's pretty much guaranteed Google knows they're connected and what's to prevent the shriek of "circumvention!" followed by banning all of them?

6510 11/3/2025||
> Clearly, I cannot rely on having a Google account for production use cases. Google has built a complex, unreliable system

You cant use anything from Google. I only use gmail, my mail account only got banned one time for a week. For years I thought the punishment for using gmail was just a mater of time. I tried to imagine what weird things could trigger it. Maybe they will one day just end the service because it isn't profitable enough?

I decided the most likely would be that the mail account gets banned as a punishment for using any of their other services.

Then I made the "mistake" to switch from iphone to android. It almost immediately started complaining that my mailbox was full. The new reality is that each and every button I press on the phone could potentially end my mailbox.

Now that they [also] have very sophisticated LLM's the crappy customer service seems intentional.

gethly 11/3/2025||
As certain youtuber says - go where you're treated best.

Google ain't it.

arccy 11/3/2025||
The google docs they point to say

> You can access data from your users' Google Cloud projects by creating a service account to represent your service, and then having your customers grant that service account appropriate access to their cloud data using IAM policies. Note that you might want to create a service account per customer if you need to avoid confused deputy problems.

If you look at most SaaS services, they rarely use a service account per customer. IMO it's no different than any part of your own services where you need to handle multiple customers. Creating multiple service accounts is just overhead.

skywhopper 11/3/2025|
The text you quoted explains why you wouldn’t want to create a single service account for all customers. It’s a security decision, which yes adds overhead.
agwa 11/3/2025||
I'll note that the overhead is only on the provider side; from the customer's perspective it's all the same. In contrast, OpenID Connect puts overhead onto the customer (in addition to the provider) which I find unfortunate since I want to provide a good experience.
Frannky 11/3/2025||
The problem is that they manage customers through automation. If the system flags you, you’re out. By using their products, you accept the risk of being cut off.
Havoc 11/3/2025|
Which makes it utterly useless for important use cases. Crazy way to do business but I guess Google doesn’t care
herpessimplex10 11/3/2025||
Until people stop building applications with hard dependencies on "other people's computers" this is going to keep happening.
merb 11/3/2025||
Gcp still can’t change our street address because of the d-u-n-s validation (of course d-u-n-s actually uses our new address… and all other vendors are fine with it). How bad must their service be that they can’t change a fucking address. Oh and the free billing support is horrible, always the same response like ‘a special team is working on it’.. yeah sure and they can’t fix an address for like a month. It’s worse since all our invoices use the old address which in Germany is a fucking problem. Time to make a migration plan.
btfo 11/4/2025|
You only got what you deserve for knowingly using proprietary software on cloud (just someone elses computer). You deserve no sympathy.
More comments...