HEX
Server: Apache/2.4.68 (Debian)
System: Linux as-cs-widget-demo-us-central1 6.1.0-44-cloud-amd64 #1 SMP PREEMPT_DYNAMIC Debian 6.1.164-1 (2026-03-09) x86_64
User: root (0)
PHP: 8.2.32
Disabled: NONE
Upload Files
File: //lib/google-cloud-sdk/lib/surface/iap/oauth_brands/create.yaml
release_tracks: [ALPHA, BETA, GA]
help_text:
  brief: |
    Create a Cloud OAuth brand for the project.
  description: |
    *{command}* is used to create a Cloud OAuth brand for the project. The brand is 'internal only',
    meaning OAuth clients created under it only accept requests from users who belong to the same
    G Suite account as the project. The brand is created in unreviewed status. Your domain will not
    appear on the OAuth consent screen until it is reviewed after you manually start a review
    process in Google Cloud Platform Console. Note that the
    'internal only' setting can be manually changed in Google Cloud Platform Console
    (https://console.cloud.google.com/apis/credentials/consent). A project can only have one brand.
  examples: |
    To create a Cloud OAuth brand for the current project, run:

        $ {command} --application_title=APPLICATION_TITLE --support_email=SUPPORT_EMAIL

    To create a Cloud OAuth brand for the project PROJECT_ID, run:

        $  {command} --application_title=APPLICATION_TITLE --support_email=SUPPORT_EMAIL --project=PROJECT_ID


request:
  collection: iap.projects.brands
  api_version: v1

arguments:
  resource:
    spec: !REF googlecloudsdk.command_lib.iap.resources:project
    is_parent_resource: true
    help_text: |
      Name of the project to create a Cloud OAuth brand under.
  params:
  - arg_name: support_email
    api_field: brand.supportEmail
    required: true
    help_text: |
      Support email displayed on the OAuth consent screen.
  - arg_name: application_title
    api_field: brand.applicationTitle
    required: true
    help_text: |
      Application name displayed on the OAuth consent screen.

output:
  format: yaml