| name | gpc-sdk-usage |
| description | Use when building applications that programmatically interact with the Google Play Developer API using GPC's TypeScript SDK packages. Make sure to use this skill whenever the user mentions @gpc-cli/api, @gpc-cli/auth, PlayApiClient, createApiClient, resolveAuth, Google Play API client, TypeScript SDK, programmatic access, API client, HTTP client, rate limiter, pagination, edit lifecycle in code, Node.js Google Play, server-side Play Store, backend integration — even if they don't explicitly say 'SDK.' Also trigger when someone wants to build a backend service, custom dashboard, automation script, or any TypeScript/JavaScript application that interacts with Google Play programmatically rather than through the CLI. For CLI usage, see other gpc-* skills. For building plugins, see gpc-plugin-development. |
| compatibility | GPC v0.9.82+ (new APIs require v0.9.51+, typed acknowledge/revoke bodies require v0.9.55+, Play Custom App Publishing API + `createEnterpriseClient` + `HttpClient.uploadCustomApp<T>` + `ResumableUploadOptions.initialMetadata` require v0.9.56+, changelog generation exports (`generateChangelog`, `renderPlayStore`, `resolveLocales`, `buildLocaleBundle`, `PLAY_STORE_LIMIT`, `LocaleBundle`, `LocaleEntry`) require v0.9.62+, apply + bundle processing exports (`applyReleaseNotes`, `waitForBundleProcessing`, `validateBundleForApply`, `bundleToReleaseNotes`) require v0.9.64+, `inAppUpdatePriority` + `retainedVersionCodes` on upload require v0.9.70+, `SubscriptionPurchaseV2.onHoldStateContext` + `inGracePeriodStateContext` typed fields require v0.9.76+, extended `waitForBundleProcessing` Fibonacci backoff (~86s) + multi-retry guard on validate/commit require v0.9.77+, `edits.tracks.create` for custom closed testing tracks require v0.9.79+, `OfferPhaseDetails` on Orders + `download()` exponential backoff require v0.9.79+, API type alignment (canceledStateContext nested shape, signupPromotion {oneTimeCode, vanityCode}, developerAccountPermissions plural, buyOption/rentOption fields, download retry with backoff, null-safe bundles.list/tracks.list) require v0.9.80+, `VitalsThresholds` in `GpcConfig`/`ResolvedConfig` require v0.9.82+). Requires Node.js 20+, TypeScript 5+. Packages: @gpc-cli/api, @gpc-cli/auth. v0.9.83+ for correct pagination resume and the unified list envelope. |
| metadata | {"version":"1.8.0"} |
gpc-sdk-usage
Use @gpc-cli/api and @gpc-cli/auth as standalone TypeScript SDK packages for programmatic Google Play access.
When to use
- Building a backend service that interacts with Google Play
- Creating custom dashboards or automation scripts
- Programmatic release management from TypeScript/JavaScript
- Using the typed API client directly (not through the CLI)
- Integrating Google Play operations into a larger application
Inputs required
- Node.js 20+ and TypeScript 5+
- @gpc-cli/api and @gpc-cli/auth packages
- Service account key — JSON file or raw JSON string
Procedure
0. Install packages
npm install @gpc-cli/api @gpc-cli/auth
These are standalone packages — no need to install the full CLI.
1. Authenticate
import { resolveAuth } from "@gpc-cli/auth";
const auth = await resolveAuth({
serviceAccountPath: "/path/to/key.json",
});
const auth = await resolveAuth({
serviceAccountJson: process.env.PLAY_SA_KEY,
});
const auth = await resolveAuth();
Read: references/auth-patterns.md for advanced auth patterns and token caching.
2. Create API client
import { createApiClient } from "@gpc-cli/api";
const client = createApiClient({
auth,
maxRetries: 3,
timeout: 30_000,
});
The client provides typed access to all 217 Google Play Developer API endpoints across the Android Publisher v3, Play Developer Reporting v1beta1, and (new in v0.9.56) Play Custom App Publishing v1 APIs.
2a. Create the Enterprise client (v0.9.56+)
For private app publishing via the Play Custom App Publishing API, use a separate factory:
import { createEnterpriseClient, type CustomApp } from "@gpc-cli/api";
const enterprise = createEnterpriseClient({ auth });
const app: CustomApp = await enterprise.apps.create(
"1234567890",
"./app.aab",
{
title: "My Private App",
languageCode: "en_US",
organizations: [{ organizationId: "customer-org-id" }],
},
);
console.log("Assigned package name:", app.packageName);
Notes:
- Private apps are permanently private. Once created, they cannot be made public.
- After creation, subsequent operations (version uploads, tracks, listings) go through the regular
createApiClient() using the returned packageName.
- Requires the "create and publish private apps" permission on your service account in Play Console.
- The underlying
HttpClient.uploadCustomApp<T>(path, filePath, metadata, contentType) method handles a multipart resumable upload where the initial session-initiation POST carries the JSON metadata. See ResumableUploadOptions.initialMetadata for reusing this pattern with other Google APIs.
See the gpc-enterprise skill for the CLI equivalent and full setup walkthrough.
Read: references/api-reference.md for the complete client API with all namespaces and methods.
3. Edit lifecycle
Most Google Play operations require an edit session:
const APP = "com.example.app";
const edit = await client.edits.insert(APP);
const tracks = await client.tracks.list(APP, edit.id);
const details = await client.details.get(APP, edit.id);
await client.edits.validate(APP, edit.id);
await client.edits.commit(APP, edit.id);
await client.edits.commit(APP, edit.id, {
changesNotSentForReview: true,
changesInReviewBehavior: "HALT_REVIEW",
});
Important: Only one edit can be open at a time. Always commit or delete edits.
4. Common patterns
Create a custom closed testing track (v0.9.79+)
const track = await client.edits.tracks.create(packageName, "my-custom-track");
Custom tracks must be created before any release can be assigned to them. After creation, use the standard client.tracks.update() call to push a release to the new track.
Upload a release
const edit = await client.edits.insert(APP);
const bundle = await client.bundles.upload(APP, edit.id, "app-release.aab");
const bundle2 = await client.bundles.upload(APP, edit.id, "app-release.aab", {
deviceTierConfigId: "my-tier-config",
});
await client.tracks.update(APP, edit.id, "beta", {
track: "beta",
releases: [{
versionCodes: [bundle.versionCode],
status: "completed",
releaseNotes: [
{ language: "en-US", text: "Bug fixes and improvements" },
],
}],
});
await client.edits.validate(APP, edit.id);
await client.edits.commit(APP, edit.id);
List and respond to reviews
const reviews = await client.reviews.list(APP, {
maxResults: 50,
translationLanguage: "en",
startIndex: 0,
});
for (const review of reviews.reviews ?? []) {
if (review.comments?.[0]?.userComment?.starRating <= 2) {
await client.reviews.reply(APP, review.reviewId, "Thanks for the feedback!");
}
}
Manage subscriptions
const subs = await client.subscriptions.list(APP);
const sub = await client.subscriptions.get(APP, "premium_monthly");
await client.subscriptions.update(APP, "premium_monthly", data, "price", {
allowMissing: true,
latencyTolerance: "PRODUCT_UPDATE_LATENCY_TOLERANCE_LATENCY_TOLERANT",
});
await client.subscriptions.activateBasePlan(APP, "premium_monthly", "monthly");
Verify purchases
const purchase = await client.purchases.getProduct(APP, "coins_100", purchaseToken);
if (purchase.purchaseState === 0 && purchase.acknowledgementState === 0) {
await client.purchases.acknowledgeProduct(APP, "coins_100", purchaseToken);
}
Upload deobfuscation files (v0.9.51+)
await client.deobfuscation.upload(APP, edit.id, versionCode, "mapping.txt", "proguard");
await client.deobfuscation.upload(APP, edit.id, versionCode, "symbols.zip", "nativeCode");
Manage expansion files (v0.9.51+)
const obb = await client.expansionFiles.get(APP, edit.id, versionCode, "main");
const uploaded = await client.expansionFiles.upload(APP, edit.id, versionCode, "main", "main.obb");
await client.expansionFiles.patch(APP, edit.id, versionCode, "main", {
referencesVersion: 10,
});
List one-time products with pagination (v0.9.51+)
const products = await client.oneTimeProducts.list(APP, {
pageSize: 25,
pageToken: nextToken,
});
5. Pagination
Use the built-in pagination utilities for large result sets:
import { paginate, paginateAll } from "@gpc-cli/api";
for await (const page of paginate(
(token) => client.subscriptions.list(APP, { pageToken: token }),
{ limit: 100 },
)) {
for (const sub of page) {
console.log(sub.productId);
}
}
const all = await paginateAll(
(token) => client.subscriptions.list(APP, { pageToken: token }),
);
New in v0.9.83: paginateAll now returns a real continuation token, so --limit + --next-page correctly resumes across reviews, users, purchases, IAP, and subscriptions. Every CLI list command also shares the unified { <key>, nextPageToken, meta.count, message? } JSON envelope (extended to grants, testers, and tracks in v0.9.87). Scripts reading a bare array from list commands will break — update to destructure the keyed field.
6. Rate limiting
Since v0.9.47, createApiClient() automatically applies rate limiting to all API calls using Google's 6-bucket model (3,000 queries/min each). No manual configuration needed:
const client = createApiClient({ auth });
To customize rate limits (e.g., for shared quota across multiple processes):
import { createRateLimiter, RATE_LIMIT_BUCKETS } from "@gpc-cli/api";
const limiter = createRateLimiter([
{ ...RATE_LIMIT_BUCKETS.edits, maxTokens: 1500 },
{ ...RATE_LIMIT_BUCKETS.purchases, maxTokens: 1500 },
]);
const client = createApiClient({ auth, rateLimiter: limiter });
The resolveBucket(path) function maps API paths to buckets automatically:
/edits/ paths → edits bucket
/purchases/, /orders → purchases bucket
/reviews → reviews bucket
- Reporting API →
reporting bucket
/subscriptions, /oneTimeProducts, /inappproducts → monetization bucket
- Everything else →
default bucket
7. Error handling
import { PlayApiError } from "@gpc-cli/api";
import { AuthError } from "@gpc-cli/auth";
try {
await client.edits.insert(APP);
} catch (error) {
if (error instanceof AuthError) {
console.error(`Auth failed: ${error.code}`);
} else if (error instanceof PlayApiError) {
console.error(`API error ${error.status}: ${error.code}`);
console.error(`Suggestion: ${error.suggestion}`);
}
}
Changelog generation (v0.9.62+)
The changelog pipeline from gpc changelog generate is exposed as standalone @gpc-cli/core exports — useful for CI tooling that wants the clustered/linted data structure directly.
import {
generateChangelog,
resolveLocales,
renderPlayStore,
PLAY_STORE_LIMIT,
type LocaleBundle,
type GeneratedChangelog,
} from "@gpc-cli/core";
const generated: GeneratedChangelog = await generateChangelog({
from: "v0.9.61",
to: "HEAD",
});
const locales = await resolveLocales("en-US,fr-FR,de-DE");
const { output, bundle } = renderPlayStore(generated, {
locales,
format: "json",
});
for (const entry of bundle.locales) {
console.log(`${entry.language}: ${entry.chars}/${entry.limit} (${entry.status})`);
}
For --locales auto, pass { client, packageName } as the second arg to resolveLocales — it calls client.listings.list to infer the locale set from your live Play Store listing.
Apply release notes to a draft (v0.9.64+)
import {
applyReleaseNotes,
validateBundleForApply,
bundleToReleaseNotes,
waitForBundleProcessing,
} from "@gpc-cli/core";
const releaseNotes = bundleToReleaseNotes(bundle);
const errors = validateBundleForApply(bundle);
if (errors.length > 0) throw new Error(errors.join(", "));
await applyReleaseNotes(client, "com.example.app", "production", releaseNotes);
await waitForBundleProcessing(client, "com.example.app", editId, versionCode);
VitalsThresholds in config types (v0.9.82+)
VitalsThresholds is now part of the typed config surface exposed by @gpc-cli/config:
import type { GpcConfig } from "@gpc-cli/config";
const config: GpcConfig = {
vitals: {
thresholds: { crashRate: 2.0 },
},
};
VitalsThresholds is also present on ResolvedConfig (the fully merged runtime shape). Use it when building tooling that reads or writes GPC config files programmatically.
OfferPhaseDetails on Orders (v0.9.79+)
The flat offerPhase string field on Orders is deprecated. Read from offerPhaseDetails instead:
const order = await client.purchases.orders.get(APP, orderId);
const phase = order.offerPhaseDetails;
download() exponential backoff (v0.9.80+)
client.download() (used for APK/AAB binary downloads) now retries automatically with exponential backoff, matching the retry behavior of request(). No code changes needed — transient 5xx errors and network timeouts are retried transparently.
API correctness history (recent)
- v0.9.57:
apprecovery.cancel/deploy URLs now use plural /appRecoveries/. dataSafety.update is POST, not PUT. Phantom dataSafety.get was removed. onetimeproducts.offers.activateOffer / deactivateOffer added. New getVitalsErrorCount function.
- v0.9.58 / v0.9.59: Vitals LMK metric set is
lmkRateMetricSet with metrics userPerceivedLmkRate, userPerceivedLmkRate7dUserWeighted, userPerceivedLmkRate28dUserWeighted, distinctUsers. (v0.9.58 shipped the wrong resource name; v0.9.59 is the corrected build.)
Verification
resolveAuth() returns a valid auth client
createApiClient({ auth }) creates a working client
client.edits.insert(APP) successfully opens an edit
- API calls return typed responses
- Error handling catches
PlayApiError and AuthError
Failure modes / debugging
| Symptom | Likely Cause | Fix |
|---|
AUTH_NO_CREDENTIALS | No auth source found | Pass serviceAccountPath or set GPC_SERVICE_ACCOUNT |
AUTH_INVALID_KEY | Bad JSON in key file | Re-download from Google Cloud Console |
| Edit insert fails with 403 | Service account lacks API access | Enable Google Play Developer API in GCP |
| Concurrent edit conflict | Another edit is open | Commit or delete the existing edit first |
PlayApiError with status 429 | Rate limited | Use createRateLimiter() with appropriate buckets |
| Types not resolving | Wrong TypeScript config | Ensure moduleResolution: "bundler" or "node16" |
Related skills
- gpc-setup — service account creation and auth configuration
- gpc-plugin-development — building plugins that use the SDK internally
- gpc-troubleshooting — interpreting API error codes