# How does the Google authentication work?

**URL:** <https://forum.heroiclabs.com/t/how-does-the-google-authentication-work/2144>\
**Category:** Runtime Framework\
**Created:** [November 29, 2021, 8:17am UTC](https://forum.heroiclabs.com/t/how-does-the-google-authentication-work/2144 "2021-11-29T08:17:16Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![rwwwwwwww](https://sea2.discourse-cdn.com/flex020/user_avatar/forum.heroiclabs.com/rwwwwwwww/32/891_2.png) [@rwwwwwwww](https://forum.heroiclabs.com/u/rwwwwwwww)\
**Post date:** [November 29, 2021, 8:17am UTC](https://forum.heroiclabs.com/t/how-does-the-google-authentication-work/2144/1 "2021-11-29T08:17:16Z")

</div>

Basically when I sent an authentication using a Google token, how does nakama verify that token is legit? Does it actually verify it through some api that connects back to Google’s servers?

---

<div class="post-metadata">

**Author:** ![mofirouz](https://sea2.discourse-cdn.com/flex020/user_avatar/forum.heroiclabs.com/mofirouz/32/1523_2.png) [@mofirouz](https://forum.heroiclabs.com/u/mofirouz)\
**Post date:** [November 29, 2021, 9:40am UTC](https://forum.heroiclabs.com/t/how-does-the-google-authentication-work/2144/2 "2021-11-29T09:40:44Z")

</div>

You can view the source code:

> <https://github.com/heroiclabs/nakama/blob/master/social/social.go#L276>
