Resmo Documentation
SupportStatuspageTwitterLinkedIn
  • Welcome!
  • Getting Started
    • Quick Start Guide for Admins
    • SaaS Security Guide for Employees
    • Glossary
    • FAQ
    • Support
    • Resources documentation (automated)
  • Guides
    • Query Your First Resources
    • Create Your First Rule
  • Resources
    • Resources
    • Resource Changes
  • Notebooks
    • Notebooks
  • Audit Logs
    • Audit Logs
  • API
    • Basics
    • Query API
  • Resource Tags
    • Tag Rules
    • Manual Tagging
  • Queries
    • Query Types
    • Standard SQL Queries
    • Change SQL Queries
  • SaaS Discovery
    • SaaS Discovery Methods
    • Browser Extension Admin Guide
    • AI Email Scanning
    • Resmo Agent (Beta)
    • Apps Page
    • Users Page
  • Rules
    • Rules
    • Suppression
    • AWS Config Rules vs Resmo Rules
  • Dashboards
    • Dashboards
  • Packs (Compliance and Security Best Practices)
    • Packs
    • Pack Exports
  • Alerts
    • Alerts
  • Variables
    • Variables
  • integrations
    • Integrations Guide
    • Custom Data Integration
    • AWS Integration
    • Azure Integration
    • GCP Integration
    • Google Drive Integration
    • Kubernetes Integration
    • Google Workspace Integration
    • GitHub Integration
    • Slack Integration
    • GitLab Integration
    • New Relic Integration
    • Jira Integration
    • PagerDuty Integration
    • Opsgenie Integration
    • MongoDB Atlas Integration
    • Azure Active Directory Integration
    • Cloudflare Integration
    • Confluence Integration
    • Bitbucket Integration
    • Okta Integration
    • Datadog Integration
    • Gandi Integration
    • Snyk Integration
    • Duo Integration
    • Jamf Integration
    • Snowflake Integration
    • Heroku Integration
    • Fastly Integration
    • Hubspot Integration
    • BambooHR Integration
    • Azure DevOps Integration
    • Kolide Integration
    • Flyio Integration
    • Upstash Integration
    • Qualys Integration
    • Sentry Integration
    • Brex Integration
    • JumpCloud Integration
    • Webflow Integration
    • Tenable Integration
    • SonarCloud Integration
    • Salesforce Integration
    • LastPass Integration
    • Microsoft Teams Integration
    • Zendesk Integration
    • Segment Integration
    • Terraform Cloud Integration
    • Tailscale Integration
    • Vercel Integration
    • GoDaddy Integration
    • Kandji Integration
    • LaunchDarkly Integration
    • PlanetScale Integration
    • Zoom Integration
    • Jotform Integration
    • Auth0 Integration
    • Wizer Integration
    • Linear Integration
    • Figma Integration
    • Trello Integration
    • Mixpanel Integration
    • Trivy Integration
    • CSV Integration
    • DocuSign Integration
    • Tinybird Integration
    • MonoSign Integration
    • DigitalOcean Integration
    • Sophos Integration
    • Firebase Integration
    • MySQL Integration
    • PostgreSQL Integration
    • MongoDB Integration
    • ClickHouse Integration
    • Help Scout Integration
    • Intercom Integration
    • Atlassian Integration
    • Drata Integration
    • Hetzner Cloud Integration
    • Vanta Integration
    • Microsoft Intune Integration
    • Microsoft Defender Integration
    • Microsoft 365 Integration
    • NPM Integration
    • CrowdStrike Integration
    • 1Password Integration
    • Lucid Integration
    • OneDrive Integration
    • JetBrains Integration
    • Google Analytics Integration
    • Hexnode Integration
    • SendGrid Integration
    • WordPress Integration
  • Notifications
    • Notification Channels
    • Email Notification Channel
    • Slack Notification Channel
    • Webhook Notification Channel
    • Opsgenie Notification Channel
    • PagerDuty Notification Channel
    • Amazon SNS Notification Channel
    • Parny Notification Channel
    • Linear Notification Channel
    • Jira Notification Channel
    • Microsoft Teams Notification Channel
  • Plugins
    • Raycast
  • Users and Permissions
    • User
    • User Roles
    • RBAC (Role-Based Access Control)
      • Custom Roles and Policies
    • SSO - Social Login
  • Settings
    • Accounts
    • Billing Policy
    • Pricing
      • Resource Count Calculation
Powered by GitBook
On this page
  • Resmo + Google Drive Integration Fundamentals
  • What does Resmo offer to Google Drive users?
  • How does the integration work?
  • How to grant domain-wide delegation access to your organization
  • Integration walkthrough
  • How to install
  • How to uninstall

Was this helpful?

  1. integrations

Google Drive Integration

Guide for Resmo Google Drive integration

PreviousGCP IntegrationNextKubernetes Integration

Last updated 1 year ago

Was this helpful?

Resmo + Google Drive Integration Fundamentals

Resmo integrates with Google Drive in one click to bring visibility and security to your Google Drive environment.

What does Resmo offer to Google Drive users?

  • Collect any kind of documents from your Drive.

  • Query your documents to see scopes and visibilities.

  • Set up custom security rules and run custom SQL queries to improve asset visibility.

  • Use managed queries to evaluate your Google Drive security quickly.

  • Understand how your Drive assets relate to each other in graph view.

How does the integration work?

Resmo uses Google Workspace Reports API to do the initial polling and collect existing resources. Following the initial polling, it receives events in real time through webhook.

Available resources

Critical Notes

  • Business Standard pricing plan required at least one Google Workspace account to run this integration successfully.

  • We are not accessing your document's content. Google Drive integration only takes permission for audit logs and customer information.

  • Initially, this integration polls the last six months' audit logs, creates document resources, and listens for document events.

How to grant domain-wide delegation access to your organization

  1. Go to Security > Access and data control > API Controls

  2. Click Manage Domain Wide Delegation.

  3. Click Add new and enter.

    1. Client ID: 109597776999965244120

    2. OAuth Scopes: https://www.googleapis.com/auth/drive

  • For comprehensive management of file permissions via Resmo, the broader Drive permission scope is essential. This scope facilitates both the listing and the permission management of files within Google Drive. The OAuth scope to enable this enhanced functionality is https://www.googleapis.com/auth/drive.

  • Alternatively, to assign Resmo read-only access for the Google Drive integration, thereby excluding remediation functionalities, you may allocate the read-only scope. This restricts Resmo's capabilities to data retrieval without the possibility of modification. You can only list and monitor your Drive files without the ability to manage them through Resmo. The read-only OAuth scope for this level of permission is https://www.googleapis.com/auth/drive.metadata.

  1. Click Authorize.

Integration walkthrough

How to install

  1. Log in to your Resmo account and go to the Integrations page.

  2. From there, select Google Drive and click the Add Integration button from the bottom right corner of the opening modal.

5. Hit the Create button, and you'll be redirected to your Google Account. Accept permissions.

6. Your Google Drive integration is ready! Now you can start querying your resources!

How to uninstall

  1. Go to your Integrations page on Resmo.

  2. Select Google Drive and go to the Integrated Accounts tab on the opening modal. Select the account you want to remove.

  3. For temporary disabling, click the Disable button from the top right. This action can be reversed later by enabling the integration back. Or you can permanently uninstall the integration by clicking the Delete button. This action cannot be undone.

Resmo needs domain-wide delegation access to collect users' files in your organization. Yo can grant domain-wide delegation access for Resmo using following below steps. Visit official documentation for more .

Go to

information
https://admin.google.com
Google DriveResource Directory
Logo