For Google Workspaceβ„’ Admins

CMMC Compliance
In One Click

Instantly scan your Google Workspace configuration against CMMC Level 2 controls. Get an audit-ready PDF report with technical attestation β€” no screenshots needed.

πŸ”’ Read-only access  Β·  No data leaves your domain  Β·  SOC 2 compliant

How It Works

Three steps from install to audit-ready evidence

01
πŸ”—

Install & Connect

Admin installs from Google Workspace Marketplace. OAuth consent grants read-only access to your Admin SDK.

02
πŸ”

Scan Your Domain

Our scanner checks 10+ GWS apps against 22 CMMC controls β€” MFA, Drive sharing, Gmail, Chrome, session management, and more.

03
πŸ“„

Get Your Report

Download a branded PDF with configuration attestation tables, per-user breakdowns, raw API evidence, and SHA-256 integrity verification.

What We Scan

Comprehensive coverage of CMMC-relevant GWS configurations

πŸ”

Identity & MFA

2-Step Verification enrollment, admin enforcement, per-user audit

IA.L2-3.5.3 IA.L2-3.5.7
πŸ“

Google Drive & DLP

External sharing, link access, DLP rule enforcement

AC.L2-3.1.3 MP.L2-3.8.7
πŸ“§

Gmail Compliance

Forwarding rules, IMAP/POP, TLS enforcement

SC.L1-3.13.1 SC.L2-3.13.8
πŸ–₯️

Chrome Management

Device policies, Context-Aware Access, profile separation

CM.L2-3.4.1 AC.L2-3.1.18
⏱️

Session Control

Session timeout verification, re-authentication patterns

SC.L2-3.13.9 AC.L2-3.1.10
πŸ—„οΈ

Vault & Retention

Legal holds, retention rules, audit log preservation

AU.L2-3.3.1 AU.L2-3.3.9
⚠️
Google Workspace Edition Matters

Full CMMC L2 compliance requires Enterprise Plus features (DLP, Context-Aware Access, Chrome Policy API). Our scanner auto-detects your edition and clearly identifies which controls are blocked by plan limitations vs. misconfiguration.

Per-User Pricing

Start free. Pro scales with your organization β€” commit annually and save 20%.

Free
$0/mo
  • βœ“ 1 scan per month
  • βœ“ Summary compliance report
  • βœ“ 8 GWS app coverage
  • βœ“ Edition detection
  • βœ— Attestation tables
  • βœ— Per-user breakdowns
  • βœ— Raw API evidence
  • βœ— SHA-256 integrity
Get Started

Includes 1 admin seat Β· Additional admins $25/mo each Β· User counts auto-reconciled after each scan Β· Single-session enforcement prevents credential sharing

Want Continuous Compliance?

This scanner provides point-in-time assessments. For continuous monitoring, automated POA&M tracking, and fleet-wide compliance visibility across all infrastructure layers, get early access to Aegis.

Get Early Adopter Pricing β†’