Open the checks
- Open Cloud > Posture and confirm the company scope.
- In a multi-company overview, click the Google Workspace row. With one company selected, available Google checks appear directly on the page.
- Confirm Google Workspace, MSPortal, the Snapshot date, the percentage and the points total.
- Read each row’s Check, Status, Coverage and Points. On small screens, scroll the table horizontally; the description also includes the counts when the separate Coverage column is hidden.
- Record the check and date when requesting help. The rows do not open lists of affected users or edit provider settings.
Read the provider, MSPortal score source and recorded snapshot date before interpreting the checks. This is an example captured from the MSP view.
Understand the six checks
Active users here exclude suspended and archived accounts. Administrator checks include active administrators and delegated administrators.Read statuses and points
Check freshness
The Snapshot date is the date the portal stored the sync’s snapshot. Google usage reporting is requested for an earlier date, normally three days before the run, and an older available report may be used. Directory, domain and license inputs are collected separately. The visible date is not a promise that all inputs describe that same day. If usage reports are unavailable, the sync can defer creating a new posture snapshot while other datasets update. The previous snapshot can remain visible. A new sync is not a guarantee that an Unknown check will resolve. MSP staff should check the Google connection’s Daily security posture sync setting, reporting availability and company mapping when a snapshot is missing or stale. See the separate Google Workspace setup guide. There is no Run now control on the checks reader.Request and track follow-up
Company users should open a ticket from the Home AI Assistant. Include the company, snapshot date, check title, status and coverage. The MSP can verify the underlying accounts or domains and decide on the appropriate changes. MSP staff can use Cloud Users and Cloud Domains as related inventories. Their current rows can differ from an older posture snapshot, and the checks panel does not expose its per-user evidence list. Confirm evidence in the connected provider before changing an account. Changes are reflected only after collection and a new posture calculation succeed.FAQs
Is this a Google-issued or Microsoft Secure Score?
Is this a Google-issued or Microsoft Secure Score?
Does an administrator need both enrollment and enforcement to pass?
Does an administrator need both enrollment and enforcement to pass?
Do suspended and archived users count against user checks?
Do suspended and archived users count against user checks?
Does License assignment visibility require a paid license for every user?
Does License assignment visibility require a paid license for every user?
Why can a check show Unknown with zero users?
Why can a check show Unknown with zero users?
Do missing individual values always make the whole check Unknown?
Do missing individual values always make the whole check Unknown?
Does Needs attention always mean zero points?
Does Needs attention always mean zero points?
Why can a newly created user pass account hygiene without signing in?
Why can a newly created user pass account hygiene without signing in?
Why did Cloud Users update while the posture date stayed old?
Why did Cloud Users update while the posture date stayed old?
Can I open the affected-user list or fix a check from this panel?
Can I open the affected-user list or fix a check from this panel?