Admin privileges for the investigation tool

To use the investigation tool you need to be an administrator with investigation tool privileges. 

Add investigation tool privileges for admins

  1. Sign in to your Google Admin console.

    Sign in using your administrator account (does not end in

  2. From the Admin console Home page, go to Admin roles.

    To see Admin roles, you might have to click More controls at the bottom. 

  3. Click Security Center and then This user has full admin rights for Security Center.
  4. Next to Investigation Tool, you can add these specific privileges for access to different types of data, (Gmail, Drive, Device, and User):
    • View Metadata and Attributes—Run queries and see the results that are returned from the query in the investigation tool. The results could contain sensitive content, such as the subject of an email or title of a document. For example, this privilege allows admins to view headers for Gmail messages.
    • Update or Delete—Update content (such as changing the ACL of a document) or delete an email.
    • View Detailed Content (Beta)—See the content of Gmail messages in the investigation tool. This privilege can help admins understand any risk that might be associated with the message.

For more information about admin privileges, see Admin privileges for the security center.

Was this helpful?
How can we improve it?