
Google Drive Permissions Audit — Who Can Access Your Files
Most teams can't answer that. NeatDrive can, in about five minutes. The audit is free and read-only, and nothing in your Drive changes.
What the audit finds
Public links you forgot about — every file set to "anyone with the link," with owner, path and last-modified date. External access nobody's tracking — who outside your organization has access, grouped by domain and ranked by reach. Sensitive content, cross-referenced — heuristic detection for credentials, PII and financial data, checked against sharing status so you fix the worst thing first.
The audit runs on the narrowest access that can answer the question
NeatDrive's audit requests one Google scope: read-only file metadata. Names, sizes, dates, owners and sharing settings. Not file contents, not your spreadsheets, not permission to send mail as you, not permission to run while you're away. Write access is a separate request, made at the moment you approve a specific action, and switched off again from Settings. Every Drive tool publishes its permission list. Ours is worth comparing.
Fixing it is the part everyone gets wrong
A tool that can revoke a thousand permissions can also break a thousand workflows. Every change is shown to you row by row, spelling out exactly what it does, before anything is applied, and nothing changes unless you approve it. Files move to a quarantine batch inside your own Drive rather than being deleted. Revoke a share, undo it for 30 days; other actions recover differently, and some — bulk rename after the post-apply drawer closes, removing your own access, transferring ownership — can't be undone at all, so the preview is where you catch it. Every action is written to a full activity log you can export, tamper-evident and with a verifiable integrity chain — so when a client asks what you did about it, you have an answer with a chain of custody.
Built for the person who owns the problem but not the admin console
Operations leads. Partners at professional firms. Agency owners. Practice managers. Anyone responsible for client confidentiality who can't file an IT ticket and wait three weeks. Accounting, law, architecture, insurance, wealth management, and agencies with retainer clients — anywhere a file reaching the wrong person is a professional problem and not just an IT one.
