How to test the Google Workspace OAuth flow
Use the one-time Google Workspace connect URL supplied in the Google verification response. That URL opens the same Connect Google Workspace screen used by business customers during secure setup.
- Open the reviewer-specific Google Workspace connect URL supplied by FlowAudit.
- Confirm the page says Connect Google Workspace for the reviewer account.
- Click Connect securely. The browser redirects to Google's OAuth consent screen.
- Review the requested read-only scopes and approve with a Google account suitable for review testing.
- Google redirects back to https://flowaudit.co.uk/revenue-recovery/oauth-callback.
- The app records the Google Workspace connection for the reviewer business profile and shows the connection as completed.
/oauth-start route requires a valid one-time token. If opened without the reviewer token, it correctly shows the link as unavailable.Post-consent connected state
Revenue Recovery Desk can now use read-only Gmail context and Drive metadata to support human-reviewed revenue recovery workflows. Outreach remains approval-gated and no Google data is modified by these scopes.
What reviewers do not need
Google reviewers do not need access to Hermes, the internal recovery agent runtime, Supabase, Orgo/cloud desktops, client secrets, API keys, or terminal sessions. The app-facing test surface is the FlowAudit web OAuth flow and connected-state behavior described above.
All real customer outreach produced by Revenue Recovery Desk remains human-reviewed and approval-gated before send.
Verification URLs
- Product page: https://flowaudit.co.uk/revenue-recovery
- Reviewer page: https://flowaudit.co.uk/revenue-recovery/reviewer
- OAuth start route: https://flowaudit.co.uk/revenue-recovery/oauth-start
- OAuth callback route: https://flowaudit.co.uk/revenue-recovery/oauth-callback
- Privacy: https://flowaudit.co.uk/privacy
- Terms: https://flowaudit.co.uk/terms