Skip to content
All providers

Move your email from Google Workspace to FranklyMail

The same 16-digit app password as personal Gmail, but an administrator can block it in four different places. Try the app-passwords page first — if it is not there, this page lists exactly what the admin needs to check, with the deep links.

Which password Google Workspace (your own domain) wants

An app password, the same 16-digit kind personal Gmail uses. Whether you can create one is decided by your administrator, and Google’s own pages disagree about this: the consumer help page lists "signed in to a work or school account" as a reason app passwords are unavailable, while the Workspace admin documentation tells exactly those users to create them. So the honest instruction is to try, and to know what to ask for if it is not there.

Getting it, step by step.

Written against Google Workspace (your own domain)'s current screens — the words in quotes are the words on the buttons.

If you would rather skip the menus: https://myaccount.google.com/apppasswords opens the right screen directly, in whatever language your account is set to.

  1. 1

    Try myaccount.google.com/apppasswords first. If the page lets you create one, you are done — skip to the last step.

    You will need 2-Step Verification on the account, and your administrator has to permit that too.

  2. 2

    If it is missing, the administrator checks whether 2-Step Verification is allowed: admin.google.com/ac/security/2sv, the box labelled "Allow users to turn on 2-Step Verification".

  3. 3

    On the same screen, check which 2-Step methods are permitted. If it is set to "Only security key", app passwords are impossible.

    Google states this outright: you cannot require a security key for 2-Step Verification and also allow app passwords for older apps. Loosening this is the fix, and it is a real security decision — it is reasonable for an administrator to say no.

  4. 4

    Then check IMAP itself: admin.google.com/ac/apps/gmail/enduseraccess, the "POP and IMAP access" section, "Enable IMAP access for all users".

    Unlike consumer Gmail, Workspace can still turn IMAP off entirely. Google does not document what the default is, so this is worth looking at rather than assuming.

  5. 5

    On that same screen, make sure client access is not restricted to OAuth clients only.

    This is the setting that fails silently. If an administrator has chosen "Restrict which mail clients users can use (OAuth mail clients only)", a perfectly good app password will still be refused, because Google only allows a short list of named clients. It is off by default, so most accounts are fine — but when everything else looks right, this is the one.

  6. 6

    With the app password in hand, use imap.gmail.com, port 993, the full address, and the 16-digit code.

What to put in the import form.

In the FranklyMail panel, open Mailboxes and find "Bring your old mail across".

imap.gmail.com
IMAP server
imap.gmail.com
Port
993 — TLS from the first byte.
Username
Your full address at Google Workspace (your own domain), not just the part before the @.
Password
An app password, if your admin allows it, from the steps above.

For the technically curious: on 24 August 2026 this server answered AUTH=PLAIN, AUTH=XOAUTH2, AUTH=OAUTHBEARER to a CAPABILITY command on port 993. That is what it accepts on the wire; which password it accepts from you is the separate question the section above answers.

What goes wrong with Google Workspace (your own domain).

  • An administrator can also revoke an existing app password from Directory → Users → the user → Security. An import that stops working after being fine is worth checking there.
  • Google gives three different dates for the end of plain-password access across its own current pages — January 2025, 14 March 2025 and 1 May 2025. The date does not matter much; what matters is that it is gone and app passwords are not.
  • If your administrator will not enable any of this, the Thunderbird route on the Microsoft 365 page works for Workspace too — Thunderbird signs in to Google the way a browser does, so it needs no password at all.

Then the part that is the same for everyone.

Getting the password is the only step that differs by provider. The order of the move, what does and does not come across, and the one decision that stops you ending up with two copies of every message are on the main migration page.

How the move works

$9/yr, and your archive comes with you.

Unlimited mailboxes and aliases on your own domain, 10 GB pooled across the account, 30 days to change your mind.