Google Workspace admins: how do I approve Monty for our domain?

Someone on your sales team has asked you to let Monty (montyai.co) read and send from the team's inboxes. You do this with domain-wide delegation: you add one client ID in Admin Console and Monty can then act only for the users your team picks. It takes about two minutes, needs a super admin, and does not go through a per-user consent screen. The link you were sent opens a page with the same steps and copy buttons for each value; this article is the same thing in writing.

  1. 1Sign in to admin.google.com as a super admin and open Security → Access and data control → API controls → Manage Domain Wide Delegation. The direct address is admin.google.com/ac/owl/domainwidedelegation.
  2. 2Click Add new. In Client ID, paste the number from the page Monty sent you (it is the OAuth client ID of Monty's service account; it is not a secret).
  3. 3In OAuth scopes, paste the scope list from the same page as one comma-separated line, then click Authorise. The four scopes are Gmail read, Gmail send, Gmail modify (to mark and label threads) and directory user read-only (so your team can see the user list to tick). Nothing else.
  4. 4Back on the Monty page, type your admin address and click Check it worked. Monty makes one test call as you — it reads one page of the user list and your own Gmail profile — and shows a tick, or the exact thing to fix: the client ID was not saved, the scope list does not match, or the address is not a super admin.
  5. 5Done. You can close the page. Your colleague now picks which inboxes Monty uses; Monty never acts for anyone they do not tick.

To remove Monty later, delete the same Client ID from the Domain-wide delegation page. Every inbox disconnects at once and Monty's Integrations page tells the team why.

Didn’t find what you needed?

Contact support