Risks to Be Aware Of

An identity document such as a national ID contains sensitive personal information: an identification number, date of birth, address, and biometric data. If this document falls into the wrong hands, it can be used for a range of criminal activities including identity fraud and the opening of fake accounts. Awareness of these risks is essential so you can take appropriate precautions.

The primary risks to consider are: transmission to an unauthorized party, interception during data transmission, unauthorized storage of documents by a third party, and the use of documents for purposes beyond verification. Each of these risks can be mitigated with the right steps.

  • Only send documents through the official Google platform or encrypted channels.
  • Do not send documents via unencrypted standard email.
  • Confirm the service provider's privacy policy before sharing documents.
  • Request confirmation that documents will be deleted after use.
  • Monitor the use of your personal data after the verification process is complete.

Secure Channels for Sending Documents to Google

The safest way to send verification documents is directly through the official form in your Google Ads dashboard. Google uses SSL/TLS encryption for all data transmissions, so documents you upload directly on their platform are protected during transfer.

Avoid sending identity documents via standard email, social media platforms, or unencrypted file-sharing services. If you are using a third-party service, ask which channel they use to send documents to Google and confirm the process is secure.

How to Protect Your Documents When Sharing with Third Parties

If you are using a verification support service, there are several steps you can take to protect your documents. First, ask whether the provider can delete your documents from their systems after the process is complete. Second, use an encrypted file-sharing platform such as Google Drive or OneDrive with strict access settings — not email.

Consider adding a digital watermark to the copy of the document you share. A watermark indicating the date and purpose of use does not affect the document's validity for verification, but makes it harder for the document to be misused for other purposes if it is ever compromised.

What Google Does with Verification Documents

According to Google's privacy policy, documents uploaded for verification purposes are used to process that submission. Google has a data retention policy that governs how long documents are stored after the verification process is complete. You can read this policy on the Google Ads help pages.

Google uses a combination of automated systems and human review to process verification documents. Only authorized personnel have access to these documents, and the process is conducted in a protected environment that meets high security standards.

Steps to Take After Verification Is Complete

Once verification is approved, there is no reason for a third-party service provider to retain copies of your identity documents. Request written confirmation that the documents have been deleted from their systems. If you have any doubts, consider reporting to the relevant data protection authority.

Monitor your important accounts for a few months after the verification process to detect any unusual activity. While this is a precautionary measure that may not be necessary, it is a good security practice after sharing sensitive information.