Sharing and forwarding.
Found and ranked.
Auditex flags mail forwarded outside the domain, files shared with anyone, external calendar access, open groups and stale or compromised devices, each tied to its evidence.
Auditex for Google Workspace
Check Gmail forwarding, Drive sharing, Calendar access, groups and devices with a read-only domain-delegated or OAuth run. Review findings and coverage gaps in the same report-pack contract as Microsoft 365.
Read-only, for tenants you own or may audit.
Not certification, not legal advice and not guaranteed security.
Explore the evidence
Auditex flags mail forwarded outside the domain, files shared with anyone, external calendar access, open groups and stale or compromised devices, each tied to its evidence.
Directory, Gmail settings, reports, alerts, devices, DNS, Drive, groups and Calendar collectors record what was attempted and the class of data touched. The API inventory lets you inspect the run’s read-only boundary and its gaps.
In detail
Google runs produce the same manifest, evidence index, validation file and customer pack as Microsoft 365 runs, and pass the same verify-pack checks.
Clone the repository and install it with Python 3.11 or newer on macOS, Linux or Windows. Google Workspace and MCP support use optional dependencies.
Run auditex setup-guide for the exact roles or scopes, then sign in with a reader account for a tenant you are authorised to audit.
Read the findings, proof table and API inventory locally, then run auditex report verify-pack before you hand anything over. Review recorded coverage gaps alongside the findings.
Good to know
No. The public audit surface is read-only. The separate lab-bootstrap toolkit is a distinct setup tool. Validation fails a run whose API inventory reports tenant writes or mailbox and file content reads.
Raw evidence stays on the machine that ran the audit. Normalised records, findings and MCP-ready report packs (for Model Context Protocol clients) are the surfaces meant for review and for AI assistants.
No. Auditex is not certification, not legal advice and not guaranteed security. It gives a reviewer evidence to check; a person still makes the judgement.
Only people who own the tenant or have the owner’s written authorisation. In the UK, unauthorised access is an offence under the Computer Misuse Act 1990; similar laws apply elsewhere.
Nothing. Auditex is free and open source under the Apache License 2.0. Source, docs, issues and releases live on GitHub.
