🚀 Now in Beta — Join Early Adopters →
Find it before they do

Your Google Workspace has |

Most IT teams find out after a breach, an audit, or an uncomfortable question from leadership. Sleuthr finds the problems first.

Automated scans across your entire domain. Actionable reports in minutes. No scripts required.

No credit card required · Results in minutes

Currently securing Google Workspace for our customers' IT teams.

4 min

from OAuth connect to your first findings report

20 hrs

saved per month vs. manual spreadsheet audits

Most

domains we scan have publicly exposed files admins didn't know about

The exposure problem

The risks already hiding in your domain.

Google Drive makes sharing easy. That's the problem. Files shared years ago are still public. Former employees still have access. Sleuthr finds all of it.

  • Invoices and contracts shared via 'anyone with the link'
  • Former employees still holding file access
  • Sensitive docs openly indexed by Google Search
  • External collaborators from untrusted domains
  • Files violating your own sharing policy
  • Orphaned files with no current owner
  • OAuth apps with broader permissions than needed

From zero to answers in minutes

No installs. No service accounts. No waiting.

1

Connect in one click (5 seconds)

OAuth only. We never store credentials or modify your files. No complex setup or service accounts.

2

We scan your entire domain (minutes)

Every user, every file, every permission. Analyzed in real time. Progress shown as it runs.

3

Act on your findings (instant)

Prioritized issues with one-click remediation. Export-ready reports for auditors, no Admin Console required.

One-click remediation

See a risk. Fix it. Done.

Sleuthr shows exactly why a file is flagged and lets you revoke access in one click. No Admin Console required.

sleuthr.app / findings
FileExposureAction

Q4-2024-Financials.xlsx

Owned by sarah@company.com · Last modified 3 days ago

Anyone with link

Team-Onboarding-Guide.gdoc

Owned by admin@company.com · Internal only

Internal only—

Changes apply immediately via the Google Drive API. The first time you revoke access, Google will ask you to approve write permission. After that, fixes are one click.

Built for IT teams who are tired of guessing

Be ready before anyone asks

Real-time alerts when sharing patterns change. When leadership or auditors ask, you have the answer ready. Not in three days.

Reclaim 20 hours a month

One scan covers every user, every file, every permission. Focus your time on remediating risks, not opening files one at a time.

Auditor-ready exports, one click

PDF and CSV exports your auditors can read on day one, branded with your logo. Download and send, no spreadsheet wrangling.

Read-only by default

Read-only until you ask us to fix something. Then Google asks for your approval again. OAuth tokens are stored encrypted, never raw.

SOC 2 Type IIEncrypted tokens
For Managed Service Providers

All your clients. One dashboard.

Running security audits for ten clients shouldn't mean ten logins, ten spreadsheets, and ten times the manual work. One portal covers all of them.

Multi-tenant, one login

Manage every client from one account. No separate logins, no password managers, no tab chaos.

Instant client switching

Jump into any client's full dashboard in one click. See exactly what they see.

Risk view across all clients

Critical findings across every client in one place. See which domain needs attention before it becomes a problem.

For Google Workspace Administrators

No scripts. No console. Just answers.

GWS admins shouldn't need to write a Python script every time someone asks "who has access to this?" Sleuthr answers that question across your entire domain in minutes. No code required.

Complete permission visibility

Every public file, external collaborator, and misconfigured permission across your domain. One report, nothing missing.

Policy violation detection

Risky sharing gets flagged automatically: public links, external collaborators, and anyone-with-link access. No rules to configure.

Fix it without leaving Sleuthr

Revoke access and remove sharing links directly from the dashboard. No Admin Console required.

Don't wait for the breach to find out.

IT teams who run Sleuthr go from "I think we're okay" to "here's the report" in under five minutes.

No credit card required · Try it risk-free

SOC 2 Type II Certified
Read-only by default. Write access only when you revoke.
OAuth only, tokens encrypted at rest