Google Workspace の AI がデフォルトで業務データにアクセス可能に
本文の状態
日本語全文を表示中
詳細モードで約7分の本文を読めます。
同じ出来事の情報源
この情報源を基点に整理
ZDNET AI
Google は Workspace の AI 機能である Gemini が、ユーザーの許可なくビジネスデータを学習に使用するデフォルト設定を導入したが、管理者はこれを無効化してコンプライアンスリスクを回避できる。
AI深層分析を開く2026年8月19日 01:07
AI深層分析
キーポイント
データ利用のデフォルト設定
Google は Workspace の AI 機能 Gemini が、ユーザーの明示的な同意なしに組織内のビジネスデータを学習データとして使用する設定を標準で有効化している。
管理者による制御権限
Workspace の管理者は、AI のインテリジェンスソースを無効化する設定を変更することで、企業データの外部利用を防止する権利を持っている。
コンプライアンスとプライバシーリスク
内部 AI アクセスがデフォルトで有効化されることは、企業のデータコンプライアンス要件や顧客のプライバシー保護において潜在的なリスクを生み出す要因となる。
Gemini はデフォルトですべての Workspace データにアクセス可能
Google は Gemini が Chat, Drive, Docs, Calendar, Meet, Gmail のすべてのサービスからデータを読み取ることをデフォルトで許可している。
データは社外へ流出せずトレーニングにも使用されない
Gemini は回答の精度向上のために社内データを参照するが、他組織との共有やモデル学習には利用しない。
重要な引用
Internal AI access can create compliance and privacy risks.
Workspace admins can turn off intelligence sources.
Google gives Gemini access to Workspace data by default.
Google defaults to allowing Gemini access to all Workspace services.
編集コメントを表示
編集コメント
AI の利便性を高めるためにデータ利用をデフォルトで許可する動きは、セキュリティ意識の高い企業にとって大きな懸念材料となる。管理者が設定を適切に管理できる仕組みがある点は評価できるが、ユーザーへの周知徹底が急務である。
Source Article
元記事を日本語で読む
本文に関係しない購読案内、埋め込み通知、サイト内プロモーションは除いています。

*ZDNET をフォロー:* *優先ソースとして追加する* on Google.*
ZDNET の注目ポイント
- 社内 AI アクセスはコンプライアンスやプライバシーのリスクを生む可能性がある。
- Workspace の管理者は、AI が参照する情報源をオフにできる。
- Google はデフォルトで Gemini に Workspace データへのアクセス権限を与えている。
私は長年、ある一つの真実を受け入れてきた。それは「Google は私の行動すべてを知っている」という事実だ。私は過去 10 年以上にわたり、Gmail を人生の主要な管理画面として使い続けている その理由はこちら。Gmail のインターフェースに表示される広告がたまにある程度で、Google が私の信頼を裏切ったことはほとんどない。それでも、Gmail はすべてを見ている。Gmail はすべてを知っているのだ。
私がブロードウェイで『ハミルトン』が上演される前も含め、過去に送受信したすべてのメールは、Google の貪欲なデータ処理システムによって処理されてきました。
関連記事:Google がさらに多くのデータを AI 学習に利用し始めています。オプトアウトする方法はこちら
そこで、Gemini チャットボットの件ですが、Google の AI が私のメールや Google ドキュメントの内容を把握していることに対しては、それほど不満を持っていません。実際、この機能は ある時役に立ちました。私はむしろ、Google の AI にさらに多くのことをやってほしいと思っていますが、技術的には処理できるメッセージ数には 限界があります。また、より複雑な調査タスクでは、AI は 失敗してしまいました。
しかし、すべての人が Google に Gmail、ドキュメント、カレンダー、チャットの全データへのアクセスを許可したいわけではありません。特に、商用の Google Workspace サービス を利用しているプロフェッショナルにとっては、そうはいきません。
それなのに、Google はデフォルトで Gemini がすべての Workspace サービスにアクセスできるように設定されていることを知っていましたか?この記事では、その仕組みについて解説します。その後、会社全体でこの機能をオフにする方法をお伝えします。
この「暗黙の魔法」とは何か
好消息は、Google が自動的に社内の Workspace データを Gemini に公開している一方で、同社はそれを学習に使用したり、自社のドメイン外で利用したりしない点です。また、プロンプトや生成された回答を他のユーザーや組織と共有することもありません。さらに、文書やメールから AI 専用のデータベースを作成することもないのです。
関連記事:Claude がコンテンツに透かしを入れるのを避ける方法
この事実は、Workspace の AI 利用に関する懸念を、規制やプライバシーに深く関わる大規模な危機から、企業ポリシーの問題へと位置づけます。
*Gemini がデータをどのように扱い、どう扱わないかを比較した表。画像提供:Google*
Gemini は Chat、Drive、Docs、Calendar、Meet、Gmail で利用可能です。この機能により、現在使用しているあらゆる業務環境で AI と対話できるようになります。これらのワークスペース内で AI の回答の関連性を高めるため、Gemini は応答分析の一部として Workspace データにアクセスします。
Workspace ではこれらすべてのソースを「Workspace Intelligence Source」として扱います。一見すると、興味深い疑問が浮かびます。「Google がこれらを Workspace Intelligence Source とみなしながら学習には使用しないなら、なぜ AI での問い合わせで利用できるのか?」という点です。
また、ChatGPT、Gemini、Copilot、Claude との会話を可能な限り非公開にする方法もご覧ください。
答えは Google 創業以来変わらないものです。それは「検索」です。Google は Workspace のすべての情報源をインデックス化しています(創業当初から一貫して)。Gemini がプロンプトを受け取ると、AI はリアルタイムの RAG(Retrieval-Augmented Generation)を活用します。つまり、Google は通常の検索と同様に Workspace データを検索し、アクセス権限のある関連情報を取得した上で、クエリに対する回答を生成します。
内部データガバナンス
しかし、企業のデータを Gemini に共有したり学習に利用したりしていないからといって、すべてのデータを AI が自由に使える状態にしておくことが望ましいとは限りません。社内利用であっても制限が必要になるケースがあります。
その最も明白な理由は、コンプライアンスや規制への対応です。顧客との契約や法令により、AI によるデータのスキャンや検索が明示的に禁止されている可能性があります。また、社内外を問わずデータの共有を制限する規制に準拠しなければならない場合もあります。
もう一つの理由は、必要な部門間の分離を保つためです。AI が回答を生成する際に、人事苦情や非公開の取引など機密情報に誤って言及し、他部署の従業員にその情報を提供してしまうリスクは常に存在します。
また、エンタープライズ向け AI エージェントが究極の内部脅威となる理由も参照してください。
この原則は、人間によるものでも AI によるものでも、高まる内部脅威のレベルにそのまま当てはまります。最も避けたいのは、好奇心旺盛な(あるいは悪意のある)従業員が AI に問い合わせることで部門のセキュリティ対策を回避し、アクセス権限のない情報にたどり着いてしまうケースです。
好奇心を持つ従業員がいなくても、Workspace のデータが自動的に AI へ引き出される状態であれば、無実の問い合わせによって、Google ドキュメントやチャットログ内に保存されている機密情報が従業員に漏洩するリスクがあります。
停止する方法
まず、Google Workspace の管理権限を持つアカウントにログインし、ブラウザで admin.google.com にアクセスします。メインのダッシュボードが表示されます。
*Google Workspace 管理ダッシュボード。スクリーンショット:David Gewirtz/ZDNET*
「Generative AI」(1)をクリックし、続いて「Gemini in Workspace」(2)を選択してください。「Gemini in Workspace」ページが表示されます。その後、「Workspace Intelligence Sources」ブロックをクリックします。
*Gemini in Workspace ページ。スクリーンショット:David Gewirtz/ZDNET*
組織全体の個別設定ページが開きます。ここでは、ビジネス全体でこのデータソースを無効にするオプションを選択できます。
*これらの機能での AI 無効化。スクリーンショット:David Gewirtz/ZDNET*
個別ユーザーに対して機能をオフにする際、問題に直面しました。ユーザーを「ユーザーブロック」に入力することは可能ですが(1 参照)、Drive や Docs のような特定のソースを無効化しようとすると(2 参照)、機能をオフにするためのインターフェースが表示されませんでした。
*ユーザー設定は変更されません。スクリーンショット:David Gewirtz/ZDNET*
Gemini にその手順が取れない理由を尋ねたところ、その選択項目が「表示専用」に設定されているためだと回答されました。個別のユーザーに対して機能を無効化するには、対象のユーザーを独自の組織単位に移すか、新しいグループに追加する必要があります。
これで状況は明確になったはずです。
Gemini が Workspace Intelligence Sources にアクセスするのを許可しますか?それともすぐに停止させますか?コメント欄で教えてください。
*日々のプロジェクトの更新情報はソーシャルメディアでフォローできます。週刊ニュースレター の購読を忘れず、Twitter/X(@DavidGewirtz)、Facebook(Facebook.com/DavidGewirtz)、Instagram(Instagram.com/DavidGewirtz)、Bluesky(@DavidGewirtz.com)、YouTube(YouTube.com/DavidGewirtzTV)でもフォローしてください。*
原文を表示

*Follow ZDNET: *Add us as a preferred source* on Google.*
ZDNET's key takeaways
- Internal AI access can create compliance and privacy risks.
- Workspace admins can turn off intelligence sources.
- Google gives Gemini access to Workspace data by default.
I have long accepted one fundamental truth: Google knows everything that I do. I've been using Gmail as my primary life dashboard for over a decade now. Apart from the occasional ad in my Gmail interface, Google really hasn't abused my trust. But still, Gmail sees all. Gmail knows all.
Every email message I have sent or received since before *Hamilton* opened on Broadway has been processed through Google's voracious data maw.
Also: Google is training AI on even more of your data now, unless you opt out - here's how
So, when it comes to the Gemini chatbot, I haven't been too upset that Google's AI seems to know what's in my email or my Google Docs. In fact, that capability helped me out at one point. I actually want Google's AI to do more, but the tech has a limited number of messages it can process. The AI crashed and burned on a more complex research task.
But not everyone wants Google to access everything in Gmail, Docs, Calendar, and Chat, particularly professionals who use the commercial Google Workspace service.
And yet, did you know that Google defaults to allowing Gemini access to all Workspace services? In this article, I'll show you how that process works. Then, I'll show you how to turn it off for your company.
What is this dark magic?
The good news is that while Google does automatically expose your company's Workspace data to Gemini, the tech giant doesn't use it for training or even use it outside your company's domain. Nor does Google share prompts or generated responses with other users or other organizations. It also doesn't create an AI-specific database from your documents and email messages.
Also: How to avoid Claude watermarking your content
This fact converts concerns around Workspace AI use from a potential five-alarm fire with deep regulatory and privacy implications to more of a corporate policy issue.
*Table comparing what Gemini does and does not do with your data. Image: Google*
Gemini is available in Chat, Drive, Docs, Calendar, Meet, and Gmail. This capability means you can interact with the AI from whatever work surface you are currently using. To increase the relevance of AI responses while in those workspaces, Gemini accesses Workspace data as part of its response analysis.
Workspace considers each of these sources to be a Workspace Intelligence Source. On the surface, there's an interesting question you might raise. If Google considers each of these buckets a Workspace Intelligence Source but doesn't use them for training, how can it use them in AI queries?
Also: How to keep your conversations with ChatGPT, Gemini, Copilot, or Claude as private as possible
The answer is as old as Google itself: search. Google indexes all your Workspace sources (as it has since the beginning). When Gemini receives a prompt, the AI uses real-time Retrieval-Augmented Generation (RAG). Basically, Google searches the Workspace data as it would during search, retrieves relevant information it has permission to touch, and then formulates a query answer.
Internal data governance
However, just because your corporate data isn't shared with Gemini or used in its training, that doesn't mean you want it all available for AI use, even internally.
The most obvious reason you might want to restrict this capability is for compliance and regulatory reasons. You might have client contracts or regulatory restrictions that explicitly prohibit AI scanning and data retrieval from company information. You might also be subject to regulations that prevent data sharing, even internally.
Another reason is to enforce necessary departmental isolation. It's always possible that an AI could produce an answer that accidentally includes confidential records (think HR complaints, private deals, and more) and provide those answers to employees working in other departments.
Also: Why enterprise AI agents could become the ultimate insider threat
The same principle applies to the rising level of insider threats, both perpetrated by humans and by AI. The last thing you want is curious (or malicious) employees querying an AI to circumvent departmental safeguards to access information they shouldn't be privy to.
Even if you don't have curious employees, if Workspace data is automatically surfaced to the AI, innocent queries could give employees access to sensitive company info that happens to be living in a Google Doc or a Chat log.
How to shut it down
Log in to an account that has admin access to your Google Workspace. Then point your browser to admin.google.com. You'll see your main dashboard.
*Google Workspace admin dashboard. Screenshot by David Gewirtz/ZDNET*
Click Generative AI (at 1) and then Gemini in Workspace (at 2). You'll see the Gemini in Workspace page. Now, click the Workspace Intelligence Sources block.
*Gemini in a Workspace page. Screenshot by David Gewirtz/ZDNET*
You'll get the individual settings page for the entire organization. Here, you can click an option to disable the source for the whole business.
*Turn off AI in these features. Screenshot by David Gewirtz/ZDNET*
I ran into an issue when I tried to turn off a feature for an individual user. You can enter a user into the users block (shown at 1). But when I tried turning off one of the sources, like Drive and Docs (at 2), there was no interface to disable the feature.
*User settings don't change. Screenshot by David Gewirtz/ZDNET*
When I asked Gemini why I couldn't take that step, I was told it's because that selector is marked as view-only. To turn off features for individuals, those users would need to be moved to their own organizational units or added to a new group.
So now you know.
Will you let Gemini access your Workspace Intelligence Sources or shut it down immediately? Let us know in the comments below.
*You can follow my day-to-day project updates on social media. Be sure to subscribe to my weekly update newsletter, and follow me on Twitter/X at @DavidGewirtz, on Facebook at Facebook.com/DavidGewirtz, on Instagram at Instagram.com/DavidGewirtz, on Bluesky at @DavidGewirtz.com, and on YouTube at YouTube.com/DavidGewirtzTV.*
関連記事
今日のまとめ
AIデイリーブリーフで今日の重要ニュースをまとめ読み