Googler, opinions are my own. I work on payments, and have dealt with our credit card processing a bunch.
As far as I know, we've never lost control of credit card numbers and had them leaked. We actually work very hard to make sure humans can never see card numbers (our internal controls are more strict than most banks and card networks).
Also, I didn't think we would hold an auth on a card for 30 days (normally it's less than that). For the MCCs we charge payments on, I believe Visa and the others will only hold an auth for 7 days[0]. If the Auth is staying on your card for longer than that, it's likely your bank is holding the funds, not Google. We try to always cancel auth holds before they expire, to make sure we don't have lingering auths like you saw (I've tweaked this previously due to complaints like yours).
I can maybe look into the payments on your account if you'd like (my work email is in my profile), but I wouldn't be able to reply. It would just give us data if we are failing to cancel auths in some cases.
Hey, thanks for the reply. I got the info with the 30 days from my bank alongside with the options I had, so it may as well be from them - I use a VISA card in Europe.
Also thank you for the offer to check my account, but there’s no need for that as I will try to never ever buy anything directly from Google
As far as I know, we've never lost control of credit card numbers and had them leaked. We actually work very hard to make sure humans can never see card numbers (our internal controls are more strict than most banks and card networks).
Also, I didn't think we would hold an auth on a card for 30 days (normally it's less than that). For the MCCs we charge payments on, I believe Visa and the others will only hold an auth for 7 days[0]. If the Auth is staying on your card for longer than that, it's likely your bank is holding the funds, not Google. We try to always cancel auth holds before they expire, to make sure we don't have lingering auths like you saw (I've tweaked this previously due to complaints like yours).
I can maybe look into the payments on your account if you'd like (my work email is in my profile), but I wouldn't be able to reply. It would just give us data if we are failing to cancel auths in some cases.
[0] https://www.chargebackgurus.com/blog/credit-card-authorizati...