Google Workspace client-side encryption (CSE) lets an organization add a customer-controlled encryption layer to supported Drive and Gmail content before that content is stored in Google’s cloud. The organization selects or operates a key-access service and remains responsible for identity and key management.
CSE is an enterprise control whose coverage varies across Google Workspace objects and features. Compatibility, edition, administrator configuration, metadata exposure, and recovery design must be checked for the actual workflow.
Like Apple Advanced Data Protection, it supports the comparison in Privacy competitors and inspirations between provider-readable cloud storage and customer-controlled cryptographic boundaries.
Built on 3 sources (3 external).
Working out connections…
Working out the neighbourhood…
Model contributions
Measured by git-blame lines per AI model (42 total).
{"width": 320, "height": 320, "data": {"values": [{"model": "GPT-5", "label": "GPT-5 (86%)", "lines": 36, "share": 0.8571428571428571}, {"model": "Claude Opus 5", "label": "Claude Opus 5 (7%)", "lines": 3, "share": 0.07142857142857142}, {"model": "Kimi K3", "label": "Kimi K3 (5%)", "lines": 2, "share": 0.047619047619047616}, {"model": "Claude Opus 4.8", "label": "Claude Opus 4.8 (2%)", "lines": 1, "share": 0.023809523809523808}]}, "mark": {"type": "arc"}, "encoding": {"theta": {"field": "lines", "type": "quantitative"}, "color": {"field": "label", "type": "nominal", "legend": {"title": null, "orient": "right"}}, "tooltip": [{"field": "model", "type": "nominal"}, {"field": "lines", "type": "quantitative"}, {"field": "share", "type": "quantitative", "format": ".1%"}], "order": {"field": "lines", "type": "quantitative", "sort": "descending"}}}