Back to all guides
Google Workspace Integration
Set up Bleach to monitor and protect your Google Workspace.
Overview
The Google Workspace integration enables monitoring of Gmail, Google Drive, Calendar, and user management. Get comprehensive security insights across your Google environment.
Prerequisites
- Super Admin access to Google Workspace Admin Console
- Google Workspace Business, Enterprise, or Education edition
- Permission to authorise third-party applications
Step 1: Initiate Connection
- Navigate to Integrations → Available Integrations
- Find Google Workspace and click "Connect"
- Review the OAuth scopes that will be requested
- Click "Authorise with Google"
Step 2: Google Authentication
- Sign in with your Google Workspace Super Admin account
- Select the correct Google Workspace domain if prompted
- Review and approve the requested permissions
- Click "Allow" to complete authorisation
Step 3: Domain-Wide Delegation (If Required)
For full functionality, you may need to set up domain-wide delegation:
- Go to Google Admin Console → Security → API Controls
- Click "Manage Domain Wide Delegation"
- Add the Bleach service account (provided in the integration settings)
- Add the required OAuth scopes (listed in the integration guide)
Step 4: Configure and Sync
- Select which Workspace services to monitor
- Configure organisational unit scope if needed
- Start the initial sync process
- Wait for completion (typically 10-45 minutes)
What's Monitored
- User accounts and 2-Step Verification status
- Gmail security settings and external forwarding
- Drive sharing and external access settings
- Admin roles and privileged accounts
- Third-party app access and OAuth grants
- Security alerts from Google Security Centre