Make sure your SHA-1 signing key is the same as the Google Play Console and Google Cloud Console or Firebase SHA-1 fingerprint.
Go to Google Play Console
Select your app
Navigate to:
Release > Setup > App Integrity
Under App Signing, copy the SHA-1 (App signing key)
Go to Google Cloud Console
Open your project
Go to:
APIs & Services → Credentials
Edit the OAuth 2.0 Client ID for your Android app
Add the new SHA-1 you got from the Play Console.
Note:
It can take 5–10 minutes for the change to propagate.
Internal testers may need to clear app data or reinstall.
Ensure the internal testers are added in your OAuth Consent Screen as test users (if app isn’t verified yet).