Hi,
I’m running my backend on Koyeb in the Frankfurt region and recently all requests to the Google Secure Token JWK endpoint started failing with a 403 Forbidden error:
example GET https://www.googleapis.com/service_accounts/v1/jwk/securetoken@system.gserviceaccount.com
The response is the standard Google “403 Forbidden” page, which usually shows up when Google blocks or rate-limits traffic from an IP range. The same code works without any issues from other environments, so it looks like the outbound IPs used in the Frankfurt region might have been blocked.
As a temporary workaround I switched the service to the Paris region, and everything works fine there but this isn’t an optimal long-term solution for us.