Hello Google AI Developers Team,
I am urgently seeking assistance regarding unauthorized Gemini 2.5 Pro API charges that appeared on my billing account within the past 24-48 hours (September 19th). This is particularly concerning as my applications are exclusively configured to use Gemini 2.5 Flash, and I have not initiated any Gemini 2.5 Pro requests since September 3rd.
Account Information
- Firebase Project: alphaness-322423
- Billing Account ID: 01568C-0C9EFD-5525C0
- Project ID: alphaness-322423
Issue Summary
- Problem: Unauthorized Gemini 2.5 Pro API usage charges
- Timeline: Past 24-48 hours (September 19th)
- Expected Usage: Only Gemini 2.5 Flash (no Pro usage since September 3rd)
Unauthorized SKU IDs
The following SKU IDs show usage that I did not initiate:
- 0F51-429B-C2DC
- 2D1C-F790-3C09
- 1FD9-C71B-4D32
Security Measures Implemented
To secure my account, I have immediately:
- Disabled the API
- Regenerated all API keys
- Deleted previous API keys
- Applied stricter API key restrictions
- Verified application configurations (confirmed no Pro usage)
Assistance Requested
- Technical Investigation: Please help identify how these unauthorized API calls occurred and investigate potential security vulnerabilities
- Billing Review: Request review and refund for unauthorized Gemini 2.5 Pro charges
- Security Guidance: Recommendations to prevent future unauthorized access
Concern Level
This situation suggests one of the following scenarios:
- Potential security breach or unauthorized access
- API billing system error
- Vulnerability in account infrastructure
I would greatly appreciate your prompt technical investigation and guidance. Please let me know what additional information or logs you require to resolve this matter.
Thank you for your urgent attention to this security and billing concern.
Best regards,
Giulio Leone