Troubleshooting
Fix Google invalid_grant and 7-day token expiry in Duaer
When a Gmail, Google Sheets, or Google Drive credential in Duaer fails with invalid_grant after a few days, the Google app is usually still in Testing. Publish it and reconnect.
Why Duaer shows invalid_grant
The error is usually invalid_grant or Token has been expired or revoked. Duaer tried to swap its refresh token for a new one and Google refused. Common causes:
- The OAuth app in Google Cloud has publishing status Testing, so refresh tokens for external users expire after 7 days. This is the most common cause.
- The Google account changed its password, or removed the app on its security page.
- The same account authorized the same client too many times, and the oldest token was revoked.
Fix it in Duaer
- Open Google Cloud console and select the project your Duaer credential uses.
- Open Audience under Google Auth Platform (OAuth consent screen in the older console) and select Publish app so the status reads In production.
- Back in Duaer, open the credential, select Sign in with Google, and save.
- Run the affected digital organizations with Execute step, then publish them again.
After publishing, Google may show an unverified app notice. You can continue for yourself and your team; offering restricted scopes such as Gmail to many outside users needs Google app verification. Full setup: Google OAuth credentials in Duaer.
Questions
Why does my Duaer Google credential need a new sign-in every 7 days?
The OAuth app in Google Cloud is still in Testing, so external refresh tokens expire after 7 days. Publish it to In production and reconnect once in Duaer.
After reconnecting a Duaer credential, do I edit every node?
No. Duaer nodes point to the same credential, so every node using it works after you sign in again and save.
In this section
Set up Google OAuth2 single service credentials in Duaer
Store Google OAuth2 single service connection details in Duaer for digital-organization nodes to use at runtime. Secrets are protected by the instance encryption key and are not written into node parameters.
NodesSend mail with Gmail in Duaer
In Duaer, Gmail defaults to Authentication OAuth2, Resource Message, and Operation Send. Email Type defaults to HTML. You need a gmailOAuth2 credential.
NodesRead rows with Google Sheets in Duaer
In Duaer, Google Sheets defaults to Authentication OAuth2, Resource Sheet, and Operation Get Row(s). You need a googleSheetsOAuth2Api credential.
ErrorsFix Google Sheets 429 quota exceeded in Duaer
When the Google Sheets node in Duaer returns 429 or Quota exceeded, it sent too many requests in a minute. Write in bulk, or batch with a wait.