Skip to main content

What is Shadow IT Detection?

There are three methods for Shadow IT detection. This page explains method ①, detection via Google Workspace. For methods ② and ③, see their respective pages.
  1. Detection using sign-in logs
  2. Detection using the browser extension
  3. Connect to the Cost Master to detect SaaS services from payment history

View Shadow IT

After setting up SaaS integrations (for sign-in-based detection) or distributing the browser extension, detected services appear under Integrations > Shadow IT. Among the connectable SaaS, any not yet connected appear under Shadow IT. The Shadow IT screen under Integrations

Criteria for Shadow IT Review and Management

Shadow IT displays SaaS services that are not yet connected. Use the following criteria to prioritize them, then connect them via 3. How to Connect Your SaaS.

Export as CSV

Click Export in the upper right to export the detected SaaS list. The Shadow IT CSV export screen The exported CSV file contains the following fields. The filename format is recommended-services_<organization ID>_<date>.csv.

FAQ

Q. The active user count shown after clicking a SaaS in Shadow IT does not match the user list. A. The active user count is retrieved from event logs for the past 3 months. Users from before that period do not appear in the list. The FAQ screen about active user count
Last modified on August 4, 2026