Google Security Review

We’re about to start the Google Security Review process for so we can utilize some of the restricted scopes for Gmail/Calendar API.

We’re doing this through Nylas.

Has anyone else done this previously?

Google wants a security firm to go through our source code for vulnerabilities, but that’s obviously not really how things work when you’re building on Bubble. I’m wondering if this will make the process easier or harder, or possibly help us avoiding paying for the security review entirely (it’s ~$15k).

Anyone have experience with this?