Gemini Enterprise now appearing..

alexgrutza
Contributor III

So I am either out of the loop or because I was on vacation.. but now under Generative AI in Admin Console, there's a Gemini Enterprise listed that is enabled on a random sub-OU where our service accounts reside. Also, the service is enabled for two groups whose specific purpose is to give our IT Admins access to GCP. 

Maybe I'm missing a memo or something, but that is new to me, and was not configured by me nor would anyone in our IT department know about this (highly unlikely they would..). 

My question is: can we disable this Gemini Enterprise at all levels and remove groups? We're Google Workspace Education Fundamentals, with 2 Gemini AI Pro licenses. We're piloting Gemini to be used as our AI tool and it's only enabled for a pilot group and IT department at this time. 

Part of the issue is also Google loves to put in new settings or features in an ON by default fashion... even when I believe I have any setting related to that to be turned off.. but anyways.. 

--
CISSP | LinkedIn | @Phyxiis
3 REPLIES 3

JantechNJ
New Contributor III

Thank you for bringing this up. I see that Gemini Enterprise is enabled on ALL of our OUs - which has since been changed.  One of the features I'm not comfortable with is the ability to share Gemini chats outside of the domain, which can be turned off separately. I queried the difference between Gemini in Workspace and Gemini Enterprise. Here's what I was given: 

When Gemini Enterprise is enabled, the primary "risk" of data sharing typically comes from Extensions.

Extensions allow Gemini to interact with other apps. While most are Google-owned (like Drive, Gmail, or Maps), some can connect to external platforms. However, as an Admin, you have full control over these.

 

 

🛡️ How Data Sharing is Restricted

By default, Google’s enterprise-grade protections ensure that:

  • No Training on Your Data: Google does not use your school's data to train its public models.

     

     

  • Internal Stays Internal: If a teacher uses Gemini to summarize a Google Doc, that text is processed securely and is not shared with any third party unless a specific third-party extension is enabled and used.

⚙️ How to Audit & Restrict Third-Party Sharing

To ensure data isn't leaking to outside companies, you can manage these settings in the Google Admin Console:

  1. Manage Extensions: Go to Apps > Additional Google Services > Gemini Business and Enterprise Settings. Here, you can see which "Google Apps in Gemini" (Extensions) are active.

     
    Tip: You can turn off specific extensions (like Google Maps or YouTube) if you don't want Gemini passing location or search data to those services.
  2. Control Workspace Data Access: In the same settings area, look for "Allow Gemini to access Google Workspace data."

     

     

    • If you turn this OFF, Gemini becomes a "general" chatbot. It can no longer read your school's emails or files, which effectively eliminates the risk of that data being passed anywhere.

  3. Check Third-Party App Permissions: Go to Security > Access and data control > API controls.

    • Here, you can see if any third-party AI agents or apps have been granted permission to access your domain's data. You can "Trust," "Limit," or "Block" these apps individually.

Kim_Nilsson
Admin Moderator

If I'm reading it right, none of it is relevant to Education.

The wording around it only mentions Business and Enterprise, not Education.

Also this.

Availability
Available to all Google Workspace customers with Gemini Enterprise licenses

--
https://wheretofind.me/@NoSubstitute