Blog/ Gmail how-tos

How to See and Sign Out Devices on Your Google Account

Nafiul HasanNafiul Hasan· 9 min read
Diagram of the Google Account security panel showing a list of active device sessions with options to review and sign out remotely

The short answer

Go to myaccount.google.com, open Security, and select Your devices. Each entry shows the model, location, and last active time. To sign out one device, tap it and choose Sign out. To sign out all sessions at once, scroll to Where you're signed in and select Sign out of all devices.

Learn how to see devices signed into your Google account, review active sessions, and sign out remotely — in under five minutes.

On this page
  1. 01The short answer
  2. 02Before you start
  3. 03How to see and sign out devices — step by step
  4. 04Platform differences: where the device list lives
  5. 05What to do about an unknown device on your Google account
  6. 06Does signing out everywhere log me out of the Gmail app?
  7. 07A faster way to catch unauthorized access early

Knowing which devices are signed into your Google account is one of the fastest security checks you can run. It takes under five minutes and answers two questions at once: are there sessions from devices you no longer own, and is anything active right now that should not be? This guide covers how to see devices signed into your Google account, how to sign them out remotely, and what to make of the entries you find.

The steps below are accurate as of August 2026, verified against Google Account Help. Google occasionally updates the exact labels and navigation paths in its security panel, so if a step looks slightly different from what you see, follow the nearest matching option.

The short answer#

Go to myaccount.google.com and open the Security tab. Under the Your devices card, you will see every device where your Google account is currently active. Each entry shows the device model or browser, the approximate location, and when it was last used. Tap any entry to expand it — from there you can sign out that single device.

To sign out of all sessions at once, scroll to the Where you're signed in card, which lists active web sessions across browsers and apps, and use the Sign out of all devices option at the bottom. On mobile, the same flow is available through the Google app or the Gmail app: tap your profile picture, then Manage your Google Account, then Security.

Signing out does not change your password

Signing out of all devices terminates the active sessions but does not revoke third-party app access or change your password. If you suspect unauthorized access, sign out first, then change your password, then review which third-party apps can access your account — in that order.

Before you start#

Two things worth knowing before you begin the review.

First, the device list shows where your Google account is signed in right now — not every device that has ever accessed your Gmail. A device you wiped and factory-reset will often still appear until the session expires or you sign it out manually. Conversely, a device that connected only via IMAP using your password directly may not appear in this list at all.

Second, an unfamiliar location does not always mean an intruder. Google maps the sign-in to a city or region based on IP address, and VPNs will report the exit node's location rather than your actual one. A session showing a different city may be your own phone connecting through a corporate VPN, a hotel Wi-Fi, or a home router whose IP geolocation is simply wrong. Check the device model and last-active time before drawing conclusions.

  • Have your Google password ready — you may be asked to re-authenticate before the security panel loads on a new browser.
  • Check the device model and last-active timestamp first. An iPhone entry from last Tuesday is less urgent than one from an unfamiliar country that was active an hour ago.
  • If you manage a Google Workspace account, the admin console offers a broader login audit across your whole domain. The personal security panel covers your own sessions only.

How to see and sign out devices — step by step#

  1. 1

    Open your Google Account

    Go to myaccount.google.com in any browser, or tap your profile picture in Gmail, Google Search, or the Google app and choose Manage your Google Account.

  2. 2

    Open the Security tab

    Select Security from the navigation menu on the left on desktop, or from the tab row at the top on mobile. Scroll down past the two-step verification section.

  3. 3

    Open Your devices

    Under the Your devices card, tap Manage all devices. You will see a list of devices with their model names, operating systems, and the last active time. Devices that have been inactive for 28 days or more appear in a separate section at the bottom.

  4. 4

    Inspect each entry

    Tap a device to expand its details. You will see the approximate sign-in location, the browser or app used, and the last active timestamp. If an entry looks unfamiliar, note the device model and location before taking action.

  5. 5

    Sign out a single device

    Inside the expanded view, tap Sign out. Google terminates that device's session immediately. The account stays on the device — the next time someone opens Gmail there, they will need to sign back in.

  6. 6

    Sign out all devices at once

    Go back to the Security tab and scroll to the Where you're signed in card. At the bottom of the list, choose Sign out of all devices. This ends every active session across all browsers and apps. It does not sign you out of the device you are currently using to perform the review.

  7. 7

    Check third-party app access next

    Device sessions and third-party OAuth tokens are tracked separately. An app you sign out via the device list can still hold an active OAuth grant unless you also revoke it under Security > Third-party apps with account access. Run that check after signing out devices for a complete audit.

Platform differences: where the device list lives#

The same data surfaces in slightly different locations depending on where you are starting from. The table below maps each entry point so you can find it on any device without hunting.

PlatformPath to the device listRemote sign-out available?Notes
Desktop browsermyaccount.google.com > Security > Your devices > Manage all devicesYesMost detail per entry; easiest to work through systematically
Gmail (web)Profile picture > Manage your Google Account > Security > Your devicesYesOpens the same panel as myaccount.google.com in the current tab
Google app (iOS / Android)Profile picture > Manage your Google Account > Security > Your devicesYesIdentical path to desktop; works on mobile data
Gmail app (iOS / Android)Profile picture > Google Account > Security > Your devicesYesRedirects to myaccount.google.com in an in-app browser
Google Workspace admin consoleAdmin console > Reporting > Audit > Login, or Device managementYes — admin onlyCovers all accounts in the domain; separate from the personal security panel
Chrome browser (Settings)chrome://settings/people — shows Sync status, not the full session listPartialDoes not show non-Chrome sessions; use myaccount.google.com for the complete view

What to do about an unknown device on your Google account#

Finding an unfamiliar entry does not automatically mean someone else is in your account. Work through these questions in order before changing your password.

Is the device model familiar even if the name is not? Google sometimes labels a device with its model number rather than a nickname. SM-G991B is a Samsung Galaxy S21. A quick search of an unfamiliar string will usually identify it.

Was the last-active time recent? A stale session from several months ago could be a device you sold or wiped. Signing it out is correct hygiene; it is less urgent than a session that shows activity from this week.

Does the location match a VPN, travel, or a router with an off-base IP geolocation? If you use a corporate VPN or connected from a hotel, the reported city may differ from where you physically were. That is expected.

If you work through all three and the session is still unexplained — unfamiliar device model, recent activity, location that makes no sense — treat it as a likely compromise: sign out all devices immediately, change your password, then audit your third-party app access and review your Gmail forwarding rules.

Active unknown session right now

If you see a session that is active at this moment from a device or location you do not recognise, sign out all devices first, then change your password. Do not wait — an attacker who holds an active session can modify your recovery options and two-step verification settings before you do.

Does signing out everywhere log me out of the Gmail app?#

Yes. Sign out of all devices terminates every active Google session, including the one the Gmail app on your phone is currently using. The next time you open Gmail on that phone you will be prompted to sign back in. Your mail, contacts, and labels are untouched — only the authenticated session ends.

One thing that does not happen: signing out does not revoke the OAuth tokens held by third-party apps. If you have connected a calendar tool, a CRM, or another service to your Google account, those connections stay active until you revoke them separately. For a complete lockdown, sign out all devices first, then change your password, then go through Third-party apps with account access and remove anything you do not recognise.

Diagram showing before state with multiple active device sessions including an unknown entry, and after state with a clean list showing only trusted, recognised devices
A device-list review: before (stale and unknown sessions included) and after (only current, recognised devices remain).

A faster way to catch unauthorized access early#

The device review above is a periodic manual check. The session list shows what is connected right now — it does not alert you when a new sign-in happens, and it does not intercept the reconnaissance that typically precedes an account takeover: phishing emails, fake Google security alerts, and password-reset probes that land in your inbox first.

AI Emaily, which we build, catches that earlier layer. Its spam protection filters phishing and social-engineering attempts before they reach your inbox, and it treats every message as untrusted data — so a message crafted to look like a Google security alert cannot instruct the assistant to act on it. It connects to Gmail over OAuth with least-privilege scopes and does not train on your mail. The full data model is documented in our privacy overview at /docs/privacy-model. Running the device check above alongside an inbox that filters credential-phishing attempts addresses two different parts of the same threat. You can try AI Emaily with a 7-day free trial — see pricing at /pricing.

Frequently asked

Nafiul Hasan

Written by

Nafiul Hasan

Nafiul Hasan is an entrepreneur and AI automation system builder with 10+ years of experience turning messy, manual workflows into reliable automated systems. He designs and ships AI enterprise solutions end-to-end — the agent logic, the data plumbing, and the product people actually use — and founded AI Emaily to give busy professionals their attention back. He writes here from the builder's seat: what works, what breaks, and how to put AI to work without giving up control.

EntrepreneurAI Automation System BuilderAI EnthusiastBuilds AI Enterprise Solutions10+ years experience
More from Nafiul
Ready when you are

Keep your inbox a step ahead of unauthorized access

AI Emaily filters phishing and credential attacks before they reach you — no training on your mail, approval before send, full audit trail. Start a 7-day free trial.

  • 7-day free trial
  • Cancel anytime
  • Every provider