# Know who can get in. Even after they leave.

> See who can get into your Google Workspace: accounts, sign ins and apps people allowed. Free to see. The Proof plan keeps a sealed record when someone leaves.

Page: https://cybee.ai/product/workspace/ (Google Workspace security and offboarding)

Google Workspace

cybee shows who can get into your team’s Google Workspace: the accounts, when they sign in and the apps people have let in.

`curl -sSf https://get.cybee.dev | sh`

From get.cybee.dev, cybee’s install server. [Read the script](https://get.cybee.dev)

Run it in Terminal, a chat, your IDE or a CLI. Keep working where you started.

Figure: Illustration: Ana asks her assistant what Noor can still get into now that Noor’s project has ended. cybee answers that Noor’s Google Workspace account is still active, that she last signed in yesterday, and that one app she allowed can still read Drive.

## Access outlives the project. Then a client asks about it.

In a small team, people and apps come and go with each client. Their accounts and permissions often stay open after the work ends, until someone outside the company asks who can reach their files.

when someone leaves

### A freelancer’s project ends.

Their work account still opens the shared folders. Nobody has closed it, because nobody was sure whose job it was.

any week

### Someone tries an app with their work account.

An app tried for one job can still have permission months later.

before a deal

### A client sends a security questionnaire.

“Who at your company can reach our files?”

They want a date and a record, not a promise.

on a review

### A partner asks who can reach shared work.

They want the accounts and the apps, with dates, for the company they are about to trust.

## See it. Close it. Show the record.

Connect your company’s Google Workspace once, after you have read [the permissions it asks for](https://cybee.ai/docs/requirements/#workspace). Then ask about it in the same assistant you use for your Macs.

See Free

### Every account and what it let in. Next to the Macs.

cybee lists the accounts in your connected Workspace and their security settings, when each one signed in, the apps given access through an account, Drive downloads and changes to how the organisation is managed.

[Review the apps your team allowed](https://cybee.ai/use-cases/workspace-app-access/)

09:12

09:30

09:36

09:41

Figure: One account, the events around it and the Mac beside it.

Close Free Proof plan

### Someone leaves. Close their access, with a date.

Ask cybee what the person can still reach. It finds their Workspace account and shows the step it proposes. You read it first, and nothing changes until you confirm.

What it does not close

Closing a Workspace account does not close every other account, rotate every key or erase copies someone already made. Client tools and API keys stay with the people who run them.

[Plan a departure, step by step](https://cybee.ai/use-cases/team-changes/)

10:05

10:14

10:15

Figure: A person confirms. The record keeps the time.

Prove Proof plan

### When a client asks, send the right record. Each says what it covers.

Your Workspace gets its own account record: the accounts and events of the organisation you connected. Your Macs have the Trust Passport: the settings cybee checked on each Mac it assessed.

The two stay apart, so neither claims more than it saw. Each one says what was checked and when, and neither certifies the company.

[What the Trust Passport covers](https://cybee.ai/docs/trust-passport/)

Figure: Two records, kept apart. Neither certifies the company.

## Nobody buys security. Somebody else sets a date.

An agency of about ten people, all on Macs. Their insurer sent a security questionnaire.

- 23:41 Found cybee.

- 23:44 Installed.

- 23:47 First record sealed.

- 08:00 Sent to the insurer.

No demo. No call. The insurance policy was issued.

The first record shows what was true that night. Every day after adds history.

A real customer story, shared anonymously.

## Seeing it is free. The sealed record is the Proof plan.

Connecting Workspace and seeing who can get in costs nothing. The sealed account record and the offboarding evidence come with the Proof plan. Your Google Workspace subscription stays separate.

### Free

Free

Forever. Unlimited Macs and people.

- Stops bad software while it runs

- Alerts in macOS, Slack, Teams and SMS

- 118 safety checks on each Mac

- Apps, extensions and AI agents listed

- “Am I safe?” answers in your AI assistant

- Google Workspace account activity

- Email support within one working day

[Start free](https://cybee.ai/docs/install/)

### Proof plan

CHF 9 per Mac per month, or 90 a year

Everything in Free, plus:

- Weak settings fixed and kept fixed

- The sealed Trust Passport

- Security training, completion recorded

- Incident response plan

- Chat support

[Install, then start the 14 day trial](https://cybee.ai/docs/install/)

The 14 day trial starts in your AI assistant, after cybee is installed. Ask for a Proof plan feature, such as the Trust Passport. The link arrives in the chat and leads to Stripe, the payment service.

Per Mac, excluding tax. The same number in CHF, EUR, USD and GBP. Runs on Macs with an Apple chip, M1 or newer. Macs with an Intel chip are not supported. To check a Mac, open the Apple menu and choose About This Mac. [All plan details](https://cybee.ai/pricing/)

## Accounts and events. Never your email or your files.

cybee sees the security side of the Workspace you connect. It does not read what people write or store there.

what cybee sees

### The security events of the organisation you connect.

- Accounts and their security settings, including what is available about extra sign in checks.

- When a work account was used to sign in.

- Which apps were given access through a work account.

- Drive download events, without the documents.

- Dated changes to how your organisation is managed.

outside it

### What it never reads, and what it does not cover.

- The contents of email.

- The contents of documents.

- Personal Google accounts.

- Client organisations you have not connected.

- Other services, such as client tools and API keys.

[Security and privacy details](https://cybee.ai/security/)

## Before you connect it.

**Q:** What does cybee not do in Workspace?

It does not read email or document contents. It covers only the Google Workspace organisation you connect, not personal Google accounts, client organisations or other services. Closing an account does not rotate keys or erase copies someone already made. It is not a certification. Microsoft 365 is in build.

**Q:** Does cybee read our emails or documents?

No. Workspace visibility covers accounts and security events, including Drive downloads. It does not read email or document contents.

**Q:** Which accounts are included?

The Google Workspace organisation you connect. Personal Google accounts, client organisations you have not connected and unrelated services are outside that connection. A connected Mac does not connect its owner’s accounts on its own.

**Q:** What about Microsoft 365?

It is in build, so you cannot connect it yet. [Follow it on the roadmap](https://cybee.ai/product/roadmap/#microsoft-365).

**Q:** Is Google Workspace itself part of cybee?

No. You keep your own Google Workspace subscription. cybee connects to it and does not replace it.

## Where to go next.

[Workspace app access Find the apps your team allowed and ask what each one is for.](https://cybee.ai/use-cases/workspace-app-access/) [Team changes From the first day to the last, with an owner for every check.](https://cybee.ai/use-cases/team-changes/) [Requirements What your Macs and your Workspace need before you connect them.](https://cybee.ai/docs/requirements/#workspace) [Trust Passport What the record of your Macs covers, and what it leaves out.](https://cybee.ai/docs/trust-passport/) [Pricing Every plan detail, the trial and the arithmetic per Mac.](https://cybee.ai/pricing/) [Product overview Protection, safer settings and proof for the Macs your team works on.](https://cybee.ai/product/)

## Your next client will ask. Be ready.

`curl -sSf https://get.cybee.dev | sh`

Run it in Terminal, a chat, your IDE or a CLI. Keep working where you started.

Free for every Mac with an Apple chip · Asks before it changes your Mac [What it installs](https://cybee.ai/docs/install/#see) [Read the install script](https://get.cybee.dev)
