Since launching ChatGPT in 2022, OpenAI has defied expectations with a gradual stream of product bulletins and enhancements. One such announcement got here on Might 16, 2024, and for many customers, it most likely felt innocuous. Titled “Enhancements to knowledge evaluation in ChatGPT,” the publish outlines how customers can add recordsdata immediately from Google Drive and Microsoft OneDrive. It is value mentioning that different genAI instruments like Google AI Studio and Claude Enterprise have additionally added comparable capabilities just lately. Fairly nice, proper? Perhaps.
If you join your group’s Google Drive or OneDrive account to ChatGPT (or different genAI instruments), you grant it intensive permissions for not solely your private recordsdata, however sources throughout your total shared drive. As you may think, the advantages of this type of intensive integration include an array of cybersecurity challenges.
So, how are you going to discover out if staff have enabled the mixing between ChatGPT and Google Drive, and how are you going to monitor which recordsdata have been accessed? This publish walks by means of how to do that natively in Google Workspace, and the way Nudge Safety can assist you uncover all genAI apps in use, and what different apps they have been built-in with.
The place to see ChatGPT exercise in Google Workspace
In Google Workspace, there are a pair methods to establish and examine exercise related to the ChatGPT connection.
From Google Workspace’s Admin Console, navigate to Reporting > Audit and investigation > Drive log occasions. Right here you will see a listing of Google Drive sources accessed.
You too can examine the exercise through API calls beneath Reporting→Audit and investigation→ Oauth log occasions.
So, periodically checking your Google Workspace admin console can assist you perceive what sources are being accessed by ChatGPT, however seeing this exercise after it has already occurred is after all much less beneficial than getting alerted as quickly as new integrations are created with ChatGPT. That is the place Nudge safety can assist.
The right way to see all genAI integrations with Nudge Safety
Nudge Safety discovers all accounts ever created by anybody in your group for any SaaS utility, together with ChatGPT and the quickly increasing checklist of newly created genAI instruments, with out requiring any prior data of the device’s existence. With the built-in AI dashboard, clients can sustain with AI adoption and proactively mitigate AI safety dangers.
Moreover, Nudge Safety surfaces your total group’s OAuth grants, similar to these granted to ChatGPT, inside a filterable OAuth dashboard that features grant kind (sign-in or integration), exercise, and threat insights. Filter by class to see all grants related to AI instruments:
Click on on a grant to open a element display screen, the place you’ll be able to overview a threat profile, particulars on who created the grant and when, entry particulars, scopes granted, and extra:
You possibly can then ship a “nudge” to the creator of the grant through Slack or e-mail to take a sure motion, like limiting the scope of the grant, or you’ll be able to instantly revoke the grant from inside the Nudge Safety person interface.
Lastly, you’ll be able to arrange a customized rule to make sure that you’re notified when a person at your group creates an OAuth grant for ChatGPT—or every other genAI app for that matter. You too can create guidelines to be alerted instantly when new genAI accounts are created, and nudge new genAI customers to overview and acknowledge your genAI acceptable use coverage.
Balancing productiveness with safety
Whereas the mixing of ChatGPT with Google Drive and Microsoft OneDrive gives immense potential for bettering productiveness, it additionally opens the door to important safety dangers. Organizations should method these integrations with a transparent understanding of the potential dangers and implement correct governance and safety measures to mitigate them.
Nudge Safety offers visibility in addition to context and automation to assist companies undertake genAI instruments with out compromising knowledge safety.
Begin a free, 14-day trial in the present day to instantly uncover all genAI apps ever launched to your group together with all integrations into your different functions.