Product updates, security insights, and best practices for Google Workspace auditing.
September 29, 2026
Phishing-resistant MFA, spoofed mail left in the inbox, MTA-STS, dormant and suspended admins, admin roles inherited through open groups, device posture, Takeout per service and the 30 alert rules CISA SCuBA requires. What each new check catches and why the Admin console makes it easy to miss.
Read article →August 5, 2026
Why per-OU sharing settings strain at scale, why trust rules are the recommended way to implement restrictive sharing without breaking collaboration, and how v1.4.0's trust-rule-aware checks turn false-positive FAILs into PASS, MANUAL, or PARTIAL.
Read article →May 25, 2026
Google Workspace Trust Rules give admins granular Drive sharing control per OU, but no API exposes them. Learn how to export trust rules and feed them to gws-auditor to eliminate false positives on Drive sharing checks.
Read article →May 17, 2026
Google just shipped a global Context-Aware Access policy for SAML apps. ArgusSec ships ADD-40 to audit it, and rebuilds ADD-20 (OIDC) with a three-state log-driven decision tree that replaces a blanket MANUAL with a real answer.
Read article →April 24, 2026
Severity-weighted posture scoring with A-F grades, run audits from your own infrastructure with the new agent subcommand, GCE and Workload Identity Federation auth, and a complete email notification system.
Read article →April 10, 2026
200 security checks across 4 compliance frameworks, automated scanning, AI analyst, multi-tenant management, integrations, backup and restore, and more. Everything you need to audit GWS at scale.
Read article →