Google Workspace、Gemini が社内データにデフォルトアクセス - 無効化方法
本文の状態
日本語全文を表示中
詳細モードで約7分の本文を読めます。
同じ出来事の情報源
この情報源を基点に整理
ZDNET AI
Google は Workspace のデータへの Gemini アクセスをデフォルトで有効化したが、管理者は設定を変更してこの機能を無効にすることでコンプライアンスやプライバシーリスクに対処できる。
AI深層分析を開く2026年8月17日 21:17
AI深層分析
キーポイント
デフォルト設定の現状
Google は Gemini が会社のデータにアクセスする機能をデフォルトで有効化しており、管理者が手動で無効にしない限りこの状態が続く。
コンプライアンスとプライバシーリスク
内部 AI へのアクセスを許可することは、企業のコンプライアンス要件やデータプライバシーの観点から重大なリスクを生み出す可能性がある。
管理者による制御手段
Workspace の管理者は設定画面を通じて、AI 情報源(インテリジェンスソース)へのアクセスをオフにする機能を持っている。
Gemini は会社のドメイン外でデータを使用しない
Google は Gemini を通じてアクセスしたデータをトレーニングや他社との共有に使用せず、生成された応答も他のユーザーと共有しない。
デフォルト設定は全 Workspace サービスへのアクセス許可
Gemini は Chat, Drive, Docs, Calendar, Meet, Gmail において、より関連性の高い回答を提供するためにデフォルトで各ワークスペースのデータにアクセスする。
重要な引用
Internal AI access can create compliance and privacy risks.
Google gives Gemini access to Workspace data by default.
the tech giant doesn't use it for training or even use it outside your company's domain
Nor does Google share prompts or generated responses with other users or other organizations.
編集コメントを表示
編集コメント
AI ツールの利便性とデータセキュリティのバランスをどう取るかは、各企業のポリシーに委ねられる。管理者はデフォルト設定が安全であると盲信せず、自社のリスク許容度に基づき設定を見直す必要がある。
Source Article
元記事を日本語で読む
本文に関係しない購読案内、埋め込み通知、サイト内プロモーションは除いています。

*ZDNET をフォロー:* *優先ソースとして追加* on Google.*
ZDNET の注目ポイント
- 社内向け AI アクセスは、コンプライアンスやプライバシーのリスクを生む可能性があります。
- Workspace の管理者は、AI の情報源を無効化できます。
- Google はデフォルトで Gemini に Workspace データへのアクセス権限を与えています。
私は長年、ある根本的な真実を受け入れてきました。それは「Google は私の行動すべてを知っている」という事実です。私はすでに 10 年以上にわたり、Gmail を人生の主要なダッシュボードとして使い続けています その理由についてはこちら。Gmail のインターフェースに表示される広告がたまにあるものの、Google は私の信頼を裏切るようなことはしていません。それでも、Gmail はすべてを見ているのです。Gmail はすべてを知っています。
私がブロードウェイで『ハミルトン』が上演される以前から送受信したすべてのメールは、Google の貪欲なデータ処理システムによって処理されてきました。
そのため、Gemini チャットボットが登場しても、Google の AI が私のメールや Google ドキュメントの内容を把握していることに対して、それほど不満を抱いていません。実際、この機能はかつて私を助けてくれました。私はむしろ、Google の AI により多くのことをやってほしいと考えています。ただし、技術には処理できるメッセージ数に限界があります。また、より複雑な調査タスクでは、AI は失敗してしまいました。
関連記事:Google がさらに多くのデータを AI 学習に利用し始めています(オプトアウト可能)- その方法はこちら
しかし、すべての人が Gmail、ドキュメント、カレンダー、チャット内の情報を Google にアクセスさせたいわけではありません。特に、商用の Google Workspace サービス を利用しているプロフェッショナルにとっては、その限りではありません。
それにもかかわらず、Google はデフォルト設定で Gemini がすべての Workspace サービスにアクセスできるようにしていることを知っていましたか?この記事では、まずその仕組みについて説明し、その後、会社全体でこの機能をオフにする方法を解説します。
この「闇の魔法」とは何か
朗報です。Google は確かに自動的にあなたの会社の Workspace データを Gemini に公開していますが、そのデータを学習に利用したり、自社のドメイン外で使ったりすることはありません。また、プロンプトや生成された回答を他のユーザーや組織と共有することもありません。さらに、文書やメールから AI 専用のデータベースを作成するわけでもありません。
関連記事:Gemini が Gmail で詰まった後、Claude Cowork を試したら作業時間を大幅に短縮できた
この事実により、Workspace の AI 利用に関する懸念は、規制やプライバシーに深く関わる深刻な火災のような問題から、企業ポリシーの問題へと性質を変えます。
*Gemini があなたのデータをどのように扱い、どう扱わないかを比較した表。画像提供:Google*
Gemini は Chat、Drive、Docs、Calendar、Meet、Gmail で利用可能です。この機能により、現在使用しているあらゆる業務環境から AI と対話できます。これらの業務環境内で AI の回答の関連性を高めるため、Gemini は応答分析の一環として Workspace データにアクセスします。
Workspace ではこれらすべてのソースを「Workspace Intelligence Source(ワークスペースインテリジェンス・ソース)」とみなしています。ここで気になる疑問が浮かびます。「Google がこれらのデータを学習には使わない『Workspace Intelligence Source』と定義しているなら、なぜ AI のクエリでは使えるのか?」という点です。
また、ChatGPT、Gemini、Copilot、Claude との会話を可能な限り非公開にする方法についてはこちらをご覧ください。
答えは Google 自体が古くから持っているものと同じです。検索です。Google は Workspace のすべてのソースをインデックス化しています(創業以来ずっとそうしてきました)。Gemini がプロンプトを受け取ると、AI はリアルタイムの RAG(Retrieval-Augmented Generation)を使用します。要するに、Google は通常の検索と同様に Workspace データを検索し、アクセス許可のある関連情報を取得した上で、クエリへの回答を生成します。
内部データガバナンス
ただし、企業のデータを Gemini と共有しておらず、学習にも使用されていないからといって、すべてのデータを AI で利用可能にしておくべきだとは限りません。社内利用であっても同様です。
この機能を制限したいと考える最も明白な理由は、コンプライアンスや規制上の要件によるものです。クライアントとの契約や規制により、AI によるスキャンや企業情報からのデータ取得が明示的に禁止されている場合があります。また、社内外を問わずデータの共有を禁じる規制の対象となっている可能性もあります。
もう一つの理由は、必要な部門間の分離を強制するためです。AI が誤って機密記録(人事苦情や非公開の取引など)を含む回答を生成し、それを他の部署の従業員に提供してしまうリスクは常に存在します。
また、エンタープライズ AI エージェントが究極の内部脅威になる理由も参照してください。
この原則は、人間によるものでも AI によるものでも、高まる内部脅威のレベルにそのまま当てはまります。あなたが最も避けたいのは、好奇心旺盛な(あるいは悪意のある)従業員が部門のセキュリティ対策を迂回するために AI に問いかけ、本来アクセス権限のない情報にたどり着いてしまうケースです。
たとえ好奇心旺盛な従業員がいなくても、Workspace のデータが自動的に AI へ引き渡される状態であれば、無害な問い合わせによって、Google ドキュメントやチャットログ内に保存されている機密情報が社員に漏洩するリスクがあります。
停止方法
まず、Google Workspace の管理権限を持つアカウントでログインし、ブラウザから admin.google.com にアクセスします。メインのダッシュボードが表示されます。
*Google Workspace 管理ダッシュボード。スクリーンショット:David Gewirtz/ZDNET*
「Generative AI(1)」をクリックし、次に「Gemini in Workspace(2)」を選択してください。「Gemini in Workspace」ページが表示されたら、「Workspace Intelligence Sources」ブロックをクリックします。
*Gemini in Workspace ページ。スクリーンショット:David Gewirtz/ZDNET*
組織全体の個別設定ページが開きます。ここでは、ビジネス全体でこのソースを無効にするオプションを選択できます。
*これらの機能での AI 無効化。スクリーンショット:David Gewirtz/ZDNET*
個別ユーザーの機能を無効化しようとした際、問題が発生しました。ユーザーを「ユーザーブロック」に追加することは可能ですが(1 参照)、Drive や Docs などの特定のソースを無効化しようとすると(2 参照)、それをオフにするためのインターフェースが存在しませんでした。
*ユーザー設定は変更されません。スクリーンショット:David Gewirtz/ZDNET*
Gemini にその手順が取れない理由を尋ねたところ、その選択項目が「閲覧専用」に設定されているためだと回答されました。個別のユーザーに対して機能を無効化するには、該当するユーザーを独自の組織単位に移すか、新しいグループに追加する必要があります。
これで解決策は明確になりました。
Gemini が Workspace Intelligence Sources にアクセスすることを許可しますか?それとも直ちに無効化しますか?コメント欄で教えてください。
*日々のプロジェクトの進捗についてはソーシャルメディアでご覧ください。毎週の更新ニュースレターへの登録や、Twitter/X(@DavidGewirtz)、Facebook(Facebook.com/DavidGewirtz)、Instagram(Instagram.com/DavidGewirtz)、Bluesky(@DavidGewirtz.com)、YouTube(YouTube.com/DavidGewirtzTV)でのフォローもぜひご検討ください。*
原文を表示

*Follow ZDNET: *Add us as a preferred source* on Google.*
ZDNET's key takeaways
- Internal AI access can create compliance and privacy risks.
- Workspace admins can turn off intelligence sources.
- Google gives Gemini access to Workspace data by default.
I have long accepted one fundamental truth: Google knows everything that I do. I've been using Gmail as my primary life dashboard for over a decade now. Apart from the occasional ad in my Gmail interface, Google really hasn't abused my trust. But still, Gmail sees all. Gmail knows all.
Every email message I have sent or received since before *Hamilton* opened on Broadway has been processed through Google's voracious data maw.
So, when it comes to the Gemini chatbot, I haven't been too upset that Google's AI seems to know what's in my email or my Google Docs. In fact, that capability helped me out at one point. I actually want Google's AI to do more, but the tech has a limited number of messages it can process. The AI crashed and burned on a more complex research task.
Also: Google is training AI on even more of your data now, unless you opt out - here's how
But not everyone wants Google to access everything in Gmail, Docs, Calendar, and Chat, particularly professionals who use the commercial Google Workspace service.
And yet, did you know that Google defaults to allowing Gemini access to all Workspace services? In this article, I'll show you how that process works. Then, I'll show you how to turn it off for your company.
What is this dark magic?
The good news is that while Google does automatically expose your company's Workspace data to Gemini, the tech giant doesn't use it for training or even use it outside your company's domain. Nor does Google share prompts or generated responses with other users or other organizations. It also doesn't create an AI-specific database from your documents and email messages.
Also: I tried Claude Cowork on my Gmail inbox after Gemini choked - and it saved me hours of work
This fact converts concerns around Workspace AI use from a potential five-alarm fire with deep regulatory and privacy implications to more of a corporate policy issue.
*Table comparing what Gemini does and does not do with your data. Image: Google*
Gemini is available in Chat, Drive, Docs, Calendar, Meet, and Gmail. This capability means you can interact with the AI from whatever work surface you are currently using. To increase the relevance of AI responses while in those workspaces, Gemini accesses Workspace data as part of its response analysis.
Workspace considers each of these sources to be a Workspace Intelligence Source. On the surface, there's an interesting question you might raise. If Google considers each of these buckets a Workspace Intelligence Source but doesn't use them for training, how can it use them in AI queries?
Also: How to keep your conversations with ChatGPT, Gemini, Copilot, or Claude as private as possible
The answer is as old as Google itself: search. Google indexes all your Workspace sources (as it has since the beginning). When Gemini receives a prompt, the AI uses real-time Retrieval-Augmented Generation (RAG). Basically, Google searches the Workspace data as it would during search, retrieves relevant information it has permission to touch, and then formulates a query answer.
Internal data governance
However, just because your corporate data isn't shared with Gemini or used in its training, that doesn't mean you want it all available for AI use, even internally.
The most obvious reason you might want to restrict this capability is for compliance and regulatory reasons. You might have client contracts or regulatory restrictions that explicitly prohibit AI scanning and data retrieval from company information. You might also be subject to regulations that prevent data sharing, even internally.
Another reason is to enforce necessary departmental isolation. It's always possible that an AI could produce an answer that accidentally includes confidential records (think HR complaints, private deals, and more) and provide those answers to employees working in other departments.
Also: Why enterprise AI agents could become the ultimate insider threat
The same principle applies to the rising level of insider threats, both perpetrated by humans and by AI. The last thing you want is curious (or malicious) employees querying an AI to circumvent departmental safeguards to access information they shouldn't be privy to.
Even if you don't have curious employees, if Workspace data is automatically surfaced to the AI, innocent queries could give employees access to sensitive company info that happens to be living in a Google Doc or a Chat log.
How to shut it down
Log in to an account that has admin access to your Google Workspace. Then point your browser to admin.google.com. You'll see your main dashboard.
*Google Workspace admin dashboard. Screenshot by David Gewirtz/ZDNET*
Click Generative AI (at 1) and then Gemini in Workspace (at 2). You'll see the Gemini in Workspace page. Now, click the Workspace Intelligence Sources block.
*Gemini in a Workspace page. Screenshot by David Gewirtz/ZDNET*
You'll get the individual settings page for the entire organization. Here, you can click an option to disable the source for the whole business.
*Turn off AI in these features. Screenshot by David Gewirtz/ZDNET*
I ran into an issue when I tried to turn off a feature for an individual user. You can enter a user into the users block (shown at 1). But when I tried turning off one of the sources, like Drive and Docs (at 2), there was no interface to disable the feature.
*User settings don't change. Screenshot by David Gewirtz/ZDNET*
When I asked Gemini why I couldn't take that step, I was told it's because that selector is marked as view-only. To turn off features for individuals, those users would need to be moved to their own organizational units or added to a new group.
So now you know.
Will you let Gemini access your Workspace Intelligence Sources or shut it down immediately? Let us know in the comments below.
*You can follow my day-to-day project updates on social media. Be sure to subscribe to my weekly update newsletter, and follow me on Twitter/X at @DavidGewirtz, on Facebook at Facebook.com/DavidGewirtz, on Instagram at Instagram.com/DavidGewirtz, on Bluesky at @DavidGewirtz.com, and on YouTube at YouTube.com/DavidGewirtzTV.*
関連記事
今日のまとめ
AIデイリーブリーフで今日の重要ニュースをまとめ読み