Since launching ChatGPT in 2022, OpenAI has defied expectations with a gentle stream of product bulletins and enhancements. One such announcement got here on Could 16, 2024, and for many shoppers, it in all probability felt innocuous. Titled “Enhancements to information evaluation in ChatGPT,” the submit outlines how customers can add information straight from Google Drive and Microsoft OneDrive. It is price mentioning that different genAI instruments like Google AI Studio and Claude Enterprise have additionally added comparable capabilities not too long ago. Fairly nice, proper? Perhaps.
Once you join your group’s Google Drive or OneDrive account to ChatGPT (or different genAI instruments), you grant it in depth permissions for not solely your private information, however sources throughout your whole shared drive. As you may think, the advantages of this sort of in depth integration include an array of cybersecurity challenges.
So, how are you going to discover out if workers have enabled the mixing between ChatGPT and Google Drive, and how are you going to monitor which information have been accessed? This submit walks by how to do that natively in Google Workspace, and the way Nudge Safety will help you uncover all genAI apps in use, and what different apps they have been built-in with.
The place to see ChatGPT exercise in Google Workspace
In Google Workspace, there are a pair methods to establish and examine exercise related to the ChatGPT connection.
From Google Workspace’s Admin Console, navigate to Reporting > Audit and investigation > Drive log occasions. Right here you will see an inventory of Google Drive sources accessed.
It’s also possible to examine the exercise by way of API calls below Reporting→Audit and investigation→ Oauth log occasions.
So, periodically checking your Google Workspace admin console will help you perceive what sources are being accessed by ChatGPT, however seeing this exercise after it has already occurred is after all much less worthwhile than getting alerted as quickly as new integrations are created with ChatGPT. That is the place Nudge safety will help.
The way to see all genAI integrations with Nudge Safety
Nudge Safety discovers all accounts ever created by anybody in your group for any SaaS utility, together with ChatGPT and the quickly increasing checklist of newly created genAI instruments, with out requiring any prior data of the instrument’s existence. With the built-in AI dashboard, clients can sustain with AI adoption and proactively mitigate AI safety dangers.
Moreover, Nudge Safety surfaces your whole group’s OAuth grants, equivalent to these granted to ChatGPT, inside a filterable OAuth dashboard that features grant sort (sign-in or integration), exercise, and danger insights. Filter by class to see all grants related to AI instruments:
Click on on a grant to open a element display screen, the place you’ll be able to assessment a danger profile, particulars on who created the grant and when, entry particulars, scopes granted, and extra:
You possibly can then ship a “nudge” to the creator of the grant by way of Slack or e mail to take a sure motion, like limiting the scope of the grant, or you’ll be able to instantly revoke the grant from throughout the Nudge Safety person interface.
Lastly, you’ll be able to arrange a customized rule to make sure that you’re notified when a person at your group creates an OAuth grant for ChatGPT—or every other genAI app for that matter. It’s also possible to create guidelines to be alerted instantly when new genAI accounts are created, and nudge new genAI customers to assessment and acknowledge your genAI acceptable use coverage.
Balancing productiveness with safety
Whereas the mixing of ChatGPT with Google Drive and Microsoft OneDrive presents immense potential for enhancing productiveness, it additionally opens the door to important safety dangers. Organizations should method these integrations with a transparent understanding of the potential dangers and implement correct governance and safety measures to mitigate them.
Nudge Safety offers visibility in addition to context and automation to assist companies undertake genAI instruments with out compromising information safety.
Begin a free, 14-day trial right this moment to right away uncover all genAI apps ever launched to your group together with all integrations into your different functions.