Google Play Age Verification in 2026: 5 Ways to Prove Your Age

Updated August 2026 · Google's own help pages, the Play Age Signals documentation, Apple's developer material and the enrolled text of every state bill named here re-read on 18 August 2026

Our answer

Email verification is our first choice because Google's help page, read 18 August 2026, says partner VerifyMy gets only your address and does not keep it. A selfie is our second because Google's help page, read 18 August 2026, says partner Private ID gets only a random identifier and deletes the photo. A credit card is our last easy choice because Google's help page, read 18 August 2026, says card data is retained for legal requirements. Data checked: 18 August 2026.

Google Play asks some people to prove their age before it will hand over an app. This page covers the five methods Google's own help page listed on 18 August 2026, what each one gives away and to whom, which US state laws have actually started, and what Google says happens if you do nothing. Every quotation below is linked to the page it came from.

Compare the five ways to verify your age

How we verify. Every figure and quotation here was read on 18 August 2026 from the page that publishes it: Google's account help and Play Console help pages, the Play Age Signals developer documentation, Apple's developer documentation and news posts, the enrolled text of each state bill on that legislature's own site, the Fifth Circuit's published order and the Supreme Court docket. Where two Google pages disagree, both readings are printed rather than reconciled. Nothing here rests on our own use of the flow, and no source states what any particular reader will be shown, which is why Google's caveat about accounts, devices and regions is quoted rather than summarised. Last full pass: 18 August 2026, repeated quarterly.

Handing over the least

Email address · the lightest thing to hand over, and the most hands it passes through

Google Account Help, section "Use an email address for age verification", partner named as VerifyMy · Google Account Help · read 18 August 2026

The route that asks for the least and explains itself the most. Google says it hands VerifyMy your email address and nothing else from your account, that VerifyMy checks where that address has been used before, and that it answers one question only. The catch sits in the same paragraph: your address is passed on again, to database partners Google does not name.

  • Good: Google states that nothing else about you travels with it: "No other data associated with your account is shared."
  • Good: Google states the partner does not keep it: VerifyMy "doesn’t save your email address or use it for any purpose except to verify your age."
  • Good: Google states the answer is one bit, not a profile: VerifyMy and its partners "won't try to determine your exact age or whether you're under 18."
  • Con: The address is shared onward. Google says VerifyMy "will share your email address with its partners who are database providers to review sites and apps where you’ve previously used this email address."
  • Con: The categories checked are broad. Google's own examples run from financial institutions and government and credit bureaus to mortgage lenders, retail, travel and utility providers.
  • Con: Google says it can simply fail: "In some cases, we aren’t able to verify your age with this method."

Skip it if the address is new or barely used, because Google describes the check as reviewing sites and apps where you have used it before. Choose it over the selfie when you would rather not have a photograph of your face processed at all.

Back to the comparison table

No document, no card

Selfie · Private ID estimates your age, then deletes the photo

Google Account Help, section "Use a selfie for age verification", partner named as Private ID · Google Account Help · read 18 August 2026

The only method where something biometric leaves the phone, and also the only one where Google says the company receiving it is told nothing about who you are. Google's own wording flags this part of the product as unfinished, and the terms you accept are somebody else's.

  • Good: Google states Private ID gets no identity: it "provides to Private ID only a random identifier for your Google Account. No other data associated with your account is shared."
  • Good: Google states the result is a yes or no: Private ID "shares with Google if they can confirm you’re old enough."
  • Good: Google states the image does not survive the check: "Your selfie is then deleted."
  • Con: Google flags the whole area as in flux: "You may see new verification method types we’re testing."
  • Con: The terms are not Google's. Google tells you to review "the Terms of Use and Privacy Policy of Google’s partner that performs the verification, Private ID" and to contact that company with questions.
  • Con: Google publishes no accuracy figure for the estimate, and its own wording assumes misses: if your age "isn't verified", you get "information on options to try again or use a different verification method."

Skip it if you are not willing to have a biometric image processed by a company you did not choose. Choose it over the credit card because Google publishes a deletion sentence for the selfie and a retention sentence for the card.

Back to the comparison table

No photo of anything

Credit card · an authorization, not a charge, and the one Google says it keeps

Google Account Help, sections "Use a credit card for age verification" and "How credit card verification works" · Google Account Help · read 18 August 2026

Nothing is uploaded and nothing is photographed, and Google is unusually plain that the money side is theatre: the card is checked, not charged. What the page also says, and what this page never mentioned before, is that this is the one method whose section states Google keeps the data.

  • Good: Google states it twice: "This is an authorization request, and not a charge. You don't pay for an authorization." and, further down, "You won't be charged to verify your age."
  • Good: No document image and no biometric leaves the device, so nothing is created that could later be reused as identification.
  • Good: Google states a narrow purpose: it can use the details to confirm the card "is current and valid" and to confirm you are old enough.
  • Con: It is the only method whose section says Google keeps what you enter: "Google will retain this data as necessary to meet legal and regulatory requirements."
  • Con: A pending authorization can sit on the account. Google says it "may stay in your account for 1 to 14 business days depending on your bank", and to contact the bank if it outlasts that.
  • Con: Google says credit card in the heading and in every step. The word debit appears nowhere on the page, so there is no promise that one will work.

Skip it if you would rather keep payment details out of the flow entirely. Choose it over a government ID because nothing is uploaded and no manual review stands behind it.

Back to the comparison table

A wallet you already use

Digital ID · Android devices only, and documented least of the five

Google Account Help, section "Use a digital ID for age verification" · Google Account Help · read 18 August 2026

If your device wallet already holds a digital ID, this is the shortest path in the list: pick the ID, follow the wallet, done. It is also the method Google says least about. There is no retention sentence, no partner name and no issuer list, and there is a platform limit in Google's own words.

  • Good: The document stays in the wallet. Google's steps are to select a digital ID "if one is available in a digital wallet on your device" and then follow that wallet's own instructions.
  • Good: No image file is uploaded and no card authorization is raised.
  • Good: Google publishes the platform limit before you start, which it does for no other method here.
  • Con: Android only, in Google's words: "Currently, you can use your digital ID for age verification only on Android devices."
  • Con: Google adds "This option is not available in all regions", on top of the caveat covering the whole page.
  • Con: Google publishes no retention statement, no issuer list and no partner for this route, so there is nothing to read about what happens next.

Skip it if you are verifying on anything that is not an Android device, because Google states that limit itself. Choose it over the ID upload because the document never leaves the wallet as an image file.

Back to the comparison table

When the rest have failed

Government ID · the photo is deleted, the date of birth is not

Google Account Help, sections "Use an ID for age verification" and "How ID age verification works" · Google Account Help · read 18 August 2026

The heaviest thing to hand over and the only one Google promises to delete. Read the promise closely, because it covers the image and not what is taken from it: the date of birth is saved to your payments profile and to your Google Account. A person may also read the document.

  • Good: Google publishes a deletion commitment. An uploaded ID "Is stored securely", "Won't be made public" and "Will be deleted after your date of birth is successfully verified."
  • Good: Google publishes what it may use the document for: confirming the ID "is current and valid", confirming you are old enough, and to "Improve our verification services for Google products and protect against fraud and abuse."
  • Good: Several countries let you black out parts of the document first, and Google lists them by name, including the national identification number in Denmark, Finland, Slovakia and Sweden, photo and signature in Germany, and the BSN and photo in the Netherlands.
  • Con: What is derived from the document stays: "Your date of birth will be saved to your payments profile and updated in your Google Account to support your experience across Google services."
  • Con: A person may read it: "In certain cases, your ID may be subject to manual review in accordance with Google security policies."
  • Con: The third permitted use is not about your age at all. Improving Google's verification services and protecting against fraud is a purpose beyond the question you were asked.

Skip it if any of the other four are offered to you, because this is the only one that puts a full identity document into the flow. Choose it over a selfie only when the lighter methods have failed, since this is the route Google says may go to manual review.

Back to the comparison table

Where the law has actually started

Which states are live, and which wait until 2027

The prompt is driven by law, and most of those laws are not running yet. Of the four US states that have passed an app store accountability act, one obligation date has arrived.

  • Texas · in force. SB 2420 says "This Act takes effect January 1, 2026" in its enrolled text, read 18 August 2026. Two universal preliminary injunctions were entered on 23 December 2025; the Fifth Circuit granted a stay pending appeal on 4 June 2026, ordering that "the opposed motion for stay of the universal preliminary injunctions pending appeal is GRANTED" (published order); and on 6 July 2026 the Supreme Court denied the applications to vacate that stay (docket 25A1390). The injunctions are suspended rather than gone, and no court has ruled on whether the law is constitutional.
  • Utah · not until 2027. The duties in enrolled H.B. 498, read 18 August 2026, are each written "Beginning May 6, 2027", a phrase that appears ten times in the bill. Accounts that already exist get a further twelve months after that, which lands around May 2028. The act now sits at Title 13, chapter 76.
  • Louisiana · repealed, then rewritten. The 2025 act never started. Act 185 of 2026 opens "Act No. 481 of the 2025 Regular Session shall not become effective", and its substantive sections begin on 1 July 2027, read 18 August 2026.
  • Alabama · 2027. "Section 15. This act shall become effective on January 1, 2027", in the enrolled bill, read 18 August 2026. Accounts already in existence on 2 October 2026 must be handled by 1 October 2027.
  • California · different machinery. AB 1043 is an age signal law rather than a per download consent gate, and its text says "This title shall become operative on January 1, 2027" (bill text, read 18 August 2026).
  • Kansas and South Carolina · nothing to wait for. Kansas SB 372 died on the House calendar, on the legislature's own record. South Carolina H. 3405 has had no action since 13 January 2026 and would take effect only on approval, so it carries no date at all (bill history). Both read 18 August 2026.

None of this is only American. Google says the Play Age Signals API "started returning age signals for users in Brazil for requirements under Digital ECA" on 17 March 2026, months before Texas (Play Age Signals overview, read 18 August 2026).

Back to the comparison table

What Google actually says

If you do not verify

Start with what is not there. Google's user help page describes five ways to verify and states no consequence at all for declining. This page used to say Google had warned of disruptions in getting apps; that sentence belongs to a news summary rather than to Google, and it has been removed.

What Google does document is the developer side, and it explains why the experience feels patchy. If you have not verified, the API reports your status as VERIFICATION_REQUIRED, which Google defines as meaning "the user's age is unknown and the user is in an applicable jurisdiction or region where age verification and age signals sharing is mandatory" (request age signals, read 18 August 2026). The same page carries something readers in covered states should know: "For eligible users in US states with laws requiring app stores to provide verified age information to developers, the in-app prompt is not triggered. Instead, users will be asked to verify or set up supervision when they visit the Play Store app."

More apps come into scope shortly. A policy preview dated 26 August 2026, read 18 August 2026, expands the age restricted content policy "to apply to anonymous chat and random chat apps".

One thing to be strict about. Every method Google documents begins inside the Play Store or a prompt on the device, never from a link in a message. Google does say it emails you when a manual review of an uploaded ID finishes, so a message can be genuine once you have started, but nothing legitimate asks you to begin by following a link. A current antivirus app is a reasonable backstop against pages that copy these screens.

Back to the comparison table

What a parent approves

Children and supervised accounts

Children are not expected to verify themselves. Google says it "will use existing parental controls to facilitate download and purchase approvals for eligible supervised users", and that "Google Play will seek parental consent from parents of supervised users for downloads, purchases and significant changes in applicable U.S. states" (Play Console help, read 18 August 2026). Note the wording: Google says existing parental controls, and does not name Family Link in that sentence.

The reassurance parents want sits on a different page, and it is narrower than it looks. Google says "You or your child will still be able to see any apps and games you downloaded before you added content restrictions, even if they're outside of the rating you set", and in the very next sentence that "If your child's account is supervised with Family Link, you can block these apps on their Android devices" (content restrictions help, read 18 August 2026). Blocking takes "about 5 minutes, or once the device is connected to the internet", and Google warns that "Some apps can't be blocked because they're required for parent supervision settings to work" (Family Link help, read 18 August 2026).

One promise here is easy to over-read. Google says "Google Play will not revoke app access or disable the app based on significant change approvals". That is scoped by its own words to the significant change flow, and it is not a general guarantee about everything already installed. For controls beyond the built-in ones, our roundup of the best parental control apps for Android covers third-party tools.

Back to the comparison table

What the app receives

What the app on the other side actually receives

The app you are installing never sees your date of birth. It receives a band and a source, through the Play Age Signals API, which Google labels beta on its own Play Console help page, read 18 August 2026. The default bands are "0-12, 13-15, 16-17, and 18+" and a developer can ask for custom ones (integration guide).

The field that says how your age was established is ageRangeSource, and its values are the only place all five methods appear together. TIER_C covers a user whose "age is assessed by using credit card, email address, selfie assessment, Government ID, or Tax ID", and TIER_D covers "a combination of Government ID and selfie assessment, or Digital ID" (response fields, read 18 August 2026).

Two things follow that this page previously had backwards. Google does not gate your content: it says "You are responsible for restricting access to any content or functionality in your app relating to significant changes based on the approval status you receive from the Play Age Signals API" (significant changes), and it orders nobody to adopt any of this: "It is your responsibility to determine how these laws apply to your app, and whether and how to use these features to meet your obligations." Even what counts as a significant change is the developer's call: "It is the developer's responsibility to decide what constitutes a significant change for their app."

Google against Google. The Play Console help page still describes apps receiving "age verification or supervision status", while the developer release notes for version 0.0.4, published in July 2026, say "userStatus is deprecated and no longer supported in version 0.0.4 or higher" and replaced by ageRangeSource and significantChangeStatus (release notes, read 18 August 2026). Both pages are Google's, both were live on 18 August 2026, and this page prints both rather than choosing between them.

For Texas, Google says the API "has started returning age signals for eligible users in Texas who created their accounts after May 28, 2026 as part of our compliance efforts for Texas SB2420" (overview, read 18 August 2026). That is a cutoff deciding whose accounts produce a signal, not a date when something switched on for everybody, and Google publishes no such switch-on date.

Back to the comparison table

The same question, a different mechanism

Apple asks the same question a different way

Buying an iPhone does not get you out of this. Apple runs a parallel scheme, the Declared Age Range API, built to answer the same question with less data: "Rather than receiving an exact age, you receive age range bounds that correspond to your specified age gates." The developer picks the thresholds, up to three of them, each range at least two years wide.

What comes back depends on where you are. Apple says that when a child, or a parent or guardian, chooses to share, the API "will return the age band or age category, depending on legal requirements in the region", and that "In certain regions, where legally required, Apple uses age assurance methods to confirm an Apple Account holder's age" (Apple age assurance, read 18 August 2026). Apple's own Texas post is explicit that the brackets people quote are the statute's rather than the API's: the age category is "defined by Texas state law as under 13, 13-15, 16-17, or over 18" (Apple developer news, 4 November 2025).

Read Apple's dates against the statutes. Apple's post of 24 February 2026 tells developers to expect age categories for new accounts in Utah "as of May 6, 2026" and in Louisiana "as of July 1, 2026". Both dates have since been overtaken by the legislatures: Utah's duties moved to 6 May 2027, and Louisiana's 2025 act was repealed before it started. Apple's post was accurate when published and has not been updated, read 18 August 2026.

The same post carries a measure that is genuinely live and has nothing to do with US states: since 24 February 2026 Apple "will block users in Australia, Brazil, and Singapore from downloading apps rated 18+ unless they have been confirmed to be adults through reasonable methods."

Apple is also on the record against the law it is complying with. In a developer post of 8 October 2025 it wrote that it is "concerned that SB2420 impacts the privacy of users by requiring the collection of sensitive, personally identifiable information to download any app, even if a user simply wants to check the weather or sports scores." Neither company presents this as its own idea. If sideloading looks like the escape route, that ground is moving too: see what is changing for sideloading in 2026.

Back to the comparison table

Keep reading

Questions, answered

Which Google Play age verification method gives away the least?

On Google's own help page, read 18 August 2026, the email check is described most tightly: Google says its partner VerifyMy is given your email address and no other account data, that VerifyMy does not keep the address or use it for anything else, and that the check answers only whether you are old enough. The selfie route comes next, because Google says its partner Private ID receives only a random account identifier and the photo is deleted once your age is estimated. The credit card section is the only one that says Google retains what you enter, to meet legal and regulatory requirements. Checked 18 August 2026.

Does verifying my age cost anything?

No. Google's help page says the card check is an authorization request and not a charge, that you do not pay for an authorization, and separately that you will not be charged to verify your age. It does warn that a pending authorization may sit on your account for 1 to 14 business days depending on your bank, and tells you to contact the bank if it is still showing after 14 business days. Checked 18 August 2026.

What happens if the selfie estimate gets my age wrong?

Google plans for it on the page itself. If your age is not verified, it says you will get information on options to try again or to use a different verification method, and each method screen offers a route out to another one. Google publishes no accuracy figure for the estimate, so how often it misreads a face is not something anyone can quote from the source rather than guess. Checked 18 August 2026.

Do I have to verify if I do not live in Texas?

Texas was the only US state whose app store law had actually started as of 18 August 2026. Utah begins on 6 May 2027, Alabama on 1 January 2027 and Louisiana on 1 July 2027, on the enrolled text of each bill. Google says only that an eligible account identified as being in an applicable US state will be asked, in line with that state's effective legal date, and it names no other state. Age checks can still reach you for reasons that have nothing to do with US state law, including Brazil, where Google says signals began on 17 March 2026. Checked 18 August 2026.

Will my child have to upload an ID to download apps?

No. Google says it will use existing parental controls to handle download and purchase approvals for eligible supervised users, and that it will seek parental consent for downloads, purchases and significant changes in applicable US states. Read the limit alongside it: Google says it will not revoke app access or disable an app based on significant change approvals, and that sentence covers that one flow rather than everything already installed. Checked 18 August 2026.

Would switching to an iPhone let me avoid this?

No. Apple runs its own Declared Age Range API, which returns an age band rather than an exact age, and Apple says whether you get a band or a legally defined category depends on the region. Apple has also blocked users in Australia, Brazil and Singapore from downloading apps rated 18 and over since 24 February 2026 unless they are confirmed adults. The requirement follows the law rather than the phone. Checked 18 August 2026.

Is a message asking me to verify my Play account genuine?

Treat it as fake until you have checked. Every method Google documents starts inside the Play Store or a prompt on the device, never from a link in a text or an email. Google does say it will email you once a manual review of an uploaded ID is complete, so a message can be genuine after you started a check yourself, but nothing legitimate asks you to begin one by following a link. Checked 18 August 2026.

Checked 18 August 2026: the page was rebuilt against primary sources and the corrections are substantial. Google's help page lists five verification methods, not the four this page counted, and it names the partners: Private ID performs the selfie estimate and VerifyMy the email check, where this page had attached a single provider to the wrong one of the two. The sentence claiming Google says verification data is not turned into ad targeting is deleted outright: no Google page states it, and it was the most load-bearing unsourced claim here. In its place stand the statements Google does make, that an uploaded ID is deleted after the date of birth is verified while the date of birth itself is saved to the payments profile, and that card details are retained to meet legal and regulatory requirements. The claim that a temporary charge is refunded is gone, because Google charges nothing and never uses the word; the word debit is gone, because Google's page says credit card throughout. On the law, the assertion that the Fifth Circuit lifted the block is replaced by what the order says, that the injunctions are stayed pending appeal, with the Supreme Court's denial of 6 July 2026 added and the caution that no court has ruled on the merits. Utah switched nothing on in May 2026: its duties begin 6 May 2027, written ten times in the enrolled bill, with existing accounts around May 2028. Louisiana's 2025 act was repealed before it took effect rather than delayed. Alabama and California are added with their own dates, Kansas is removed because its bill died on the House calendar, and the claim that Google warned of disruptions in getting apps is withdrawn as a misattribution of a news summary. The Texas Tribune link now serves a different story than the sentence citing it described, so the court record is cited instead. A decision table, an "Our answer" capsule, a dated verification box and this changelog are new, and the anecdotal opening was cut to fund them.

Google Play Age Verification 2026: The 5 Ways to Prove Your Age