DRIVE-009: Third-Party App Drive Access

Platform
Google Workspace
Category
Drive Security & Data Protection
Severity
High
Zero Trust pillar
Data (weight 2)
Golden fixtures
3
Branch coverage
Observed: fixtures prove the verdicts they exercise
Provenance
baseline

What it checks

Third-party applications with access to Drive data should be reviewed and restricted to prevent unauthorized data exfiltration

Recommended value

Third-party app access to Drive data restricted and reviewed

Remediation

Admin Console > Security > API controls > Third-party app access > Review and restrict apps with Drive access

Fixture-proven verdicts

Every verdict below is proven by a golden fixture in the module's gating test suite. This table derives from the last green run; it cannot be edited by hand.

Verdict scenarios for DRIVE-009
ScenarioExpected verdict
cleanPASS
known-badWARN
throttledNot Assessed

Framework mappings

NIST SP 800-53
AC-3, AC-20
CIS Benchmark
2.9
MITRE ATT&CK
T1530, T1567.002