OAuth sensitive scope verification stuck on Privacy Policy review for 5+ weeks — no Trust & Safety email received

My OAuth app verification has been stuck on the “Privacy policy requirements” phase for over 5 weeks with no communication from the Trust and Safety team.

Project details:

  • App name: Speq
  • Sensitive scope: calendar.events.readonly
  • Also requesting: userinfo.email, openid
  • Submitted for verification: ~May 13, 2026

Current verification status:

  • Homepage requirements — :white_check_mark: Approved (May 13, 2026)
  • Branding guidelines — :white_check_mark: Approved (May 13, 2026)
  • Privacy policy requirements — Under review (no updates for 5+ weeks)
  • App functionality — Pending
  • Appropriate data access — Pending
  • Request minimum scopes — Pending

What I’ve submitted:

  • Privacy policy hosted at same domain as homepage
  • Scope justification explaining calendar read-only use
  • YouTube demo video showing the full OAuth flow and calendar integration
  • Domain ownership verified in Search Console

The issue:
I have never received any email from the Trust and Safety team. I’ve checked inbox, spam, promotions, and all folders — nothing from google-cloud-compliance@google.com or any related address. The developer contact email in the OAuth consent screen configuration is correct.

Requesting a status check or escalation. Happy to provide any additional information needed.

Many developers face this exact OAuth verification delay. Unfortunately, UI glitches often prompt you to “reply to your email thread” before the Trust & Safety team has even sent one or when an initial email was blocked.