How to See Devices Signed In to Your Google Account and Remove a Suspicious Session

If you got a strange sign-in alert, changed phones recently, or just want to clean up old sessions, it is worth checking which devices still have access to your Google Account. The official flow runs through the Security area of your account, where Google lets you review devices, recent security events, and recovery settings.

Quick answer

Open myaccount.google.com, go to Security, find Your devices, and select Manage all devices. Open any device you do not recognize and sign out. Then review Recent security events, change your password if the activity looks real, and confirm that 2-Step Verification is still active.

Why this matters now

In its May 1, 2026 World Password Day post, Google again highlighted passkeys, 2-Step Verification, and account review tools as practical ways to keep accounts both secure and accessible. That is the key point here: turning on 2FA is not the end of the job. Reviewing devices is part of the same security routine.

What to check

Inside the device list, compare the device type, recent activity, approximate location, and browser or system shown. An old laptop of yours may still appear there legitimately. The real warning sign is a device, place, or timestamp that makes no sense for your normal use.

When signing out is enough

If the device is simply old, sold, reset, or no longer used by you, signing out of that device may be enough. If the device looks unfamiliar or the sign-in itself seems suspicious, Google recommends changing your password immediately and then removing unfamiliar devices.

Review recent security events too

If Google sent a suspicious sign-in email, open Recent security events and review the details. Google says to look for unfamiliar locations or devices and use Secure your account if something does not match your activity.

What to do after cleanup

After removing a suspicious session, confirm your recovery email and phone, keep 2-Step Verification active, and make sure you still have backup codes or another fallback method. If the account protects high-impact services such as banking, work email, or authenticators, creating a passkey is also worth considering.

Practical takeaway

Treat device review as routine maintenance, not only as emergency response. It takes a few minutes, but it closes one of the most common gaps left behind after phone changes, password resets, or phishing scares.