Reviewing data recovery arrangements for Google Workspace
Google Partner · Authorized Reseller

Google Workspace Backup

Google protects comprehensively against Google failing. It does not protect against somebody deleting a folder in March and nobody noticing until June.

What you have instead is a set of recovery windows measured in weeks. Knowing where they end — and knowing that Vault is not a backup, whatever the higher edition implied — is most of what this page is for.

Your recovery windows

  • User's own Drive trash30 days
  • Admin recovery after trash emptied25 days
  • Restoring a deleted user account20 days
  • Restoring from Vault to a DriveNever

From Google's administrator documentation, checked September 2026.

Where the line falls

Google is not backing up your mistakes

The redundancy is real and it is excellent. It is also aimed entirely at one category of problem, and that category is not the one that loses businesses their data.

What Google protects against

Their infrastructure failing

  • Hardware failure, data centre loss and regional outage
  • Data corruption within their own systems
  • Redundancy across multiple locations, automatically
  • Availability of the service itself

What it does not protect against

Anything originating from your side

  • A user deleting something and nobody noticing for two months
  • A departing employee deleting deliberately on their way out
  • Ransomware encrypting files that then sync to Drive
  • An administrator making a mistake at scale
  • A compromised account emptying a mailbox
The numbers

What Google recovers, and for how long

Four rows worth knowing before you need them. The last one is the row that surprises people, and it surprises them at the worst possible moment.

WhatWho can recover itWindowDetail
Items in Drive trashThe user30 daysRestorable by the user themselves from their own trash, until it empties automatically.
Drive items after trash is emptiedAn administrator25 daysGoogle's stated window for administrator recovery. After it, the items are purged and cannot be recovered.
A deleted user accountAn administrator20 daysRestores the account along with Gmail content, Drive files that were not transferred, and the primary calendar.
Data under a Vault retention rule or holdA Vault userAs long as the rule holdsSearchable and exportable — but not restorable into the user's Drive. This distinction is the one that catches people out.

Read from Google's administrator documentation in September 2026. Google revises these windows, so confirm the current figures before anyone plans around them — particularly if a policy or contract is going to cite them.

The expensive misunderstanding

Vault is not a backup

This is the single most common and most costly confusion in this area, and it is usually discovered mid-incident. Businesses buy a higher edition, see Vault in the feature list, and reasonably conclude they are covered.

Vault answers a legal question, not an operational one

It exists to retain, search, export and place holds on data for compliance and eDiscovery. That is a genuinely valuable capability and it is not the same job as getting a folder back.

You cannot restore from it

Google's own documentation is explicit: retained data can be searched and exported, but you cannot directly restore it to the user's Drive. You get an export file, not the folder back where it was.

Retention is a floor and a ceiling

A retention rule keeps data for a defined period — and can also cause deletion once that period expires. It is a policy instrument, which means it can remove data as readily as preserve it.

It sits in the higher editions

Which means businesses often buy up a tier believing they have bought backup. They have bought retention and eDiscovery. Worth knowing before the invoice, not after the incident.

Google's own wording

On retrieving retained data older than the recovery window, Google's administrator documentation states: “you can't directly restore this data to the user's Drive.” You get an export. Not the folder back where it was.

In practice

What actually loses businesses their data

Not one of these is a Google failure, and the first one accounts for more losses than the rest combined. Notice how many of them are noticed late.

Ordinary human deletion

By a wide margin the most common cause. Someone clears out what looks like clutter, and the consequence surfaces when a client asks for something from last year — comfortably past every recovery window.

Departure, accidental or otherwise

Files in an individual's Drive leave with the account. Where the departure was unhappy, deliberate deletion before handover is not rare.

Ransomware reaching synced files

Drive for desktop syncs local changes upward. Files encrypted on a machine propagate as new versions. Version history helps and does not scale to thousands of files at once.

Administrative error at scale

A misapplied policy, a wrongly scoped bulk change, an organisational unit deleted with users still in it. Rare, and the blast radius is the whole organisation rather than one person.

A compromised account

An attacker who empties a mailbox or sets rules that quietly delete. Recoverable only inside the same windows, which are short if nobody notices quickly.

The honest question

Do you actually need third-party backup?

This is a product we could sell you every month forever, so treat the following with appropriate suspicion — and note that the first answer is the one we give most often.

Probably not

Who

Small teams with files in Shared Drives, a real leaver process, and nothing under a retention obligation.

Why

The recovery windows plus company-owned Shared Drives cover the realistic scenarios. Paying monthly for third-party backup you will never invoke is a cost with no return, and we would rather say so.

Worth pricing

Who

Organisations where discovering a loss two months later is plausible, or where a single person holds a lot of irreplaceable work.

Why

The question is not whether data could be lost but how long it would take you to notice. If the honest answer exceeds the recovery window, the window does not help you.

Yes

Who

Regulated work, contractual data-protection obligations, a history of ransomware in your sector, or an auditor asking the question directly.

Why

Here the requirement is usually external rather than technical, and being able to demonstrate point-in-time recovery is part of the obligation.

The question that settles it is not whether data could be lost. It is how long it would take you to notice — because if that exceeds the recovery window, the window does not help you.

Discussing data recovery requirements with a client
Costing nothing

Five things to do before buying anything

Every one of these is configuration or process rather than purchase, and together they remove most of the realistic exposure. Do these first and then decide whether you still need a product.

  1. 1

    Put organisational files in Shared Drives

    Owned by the company rather than by whoever created them. This single change removes the largest category of loss — files leaving with a person — and costs nothing.

  2. 2

    Write a leaver process and follow the order

    Suspend, delegate, transfer, remove, delete. Suspending first preserves everything; deleting first starts a twenty-day clock nobody is watching.

  3. 3

    Do not delete accounts to free licences

    Suspend instead until the transfers are verified. The licence saving is small and the window it starts is short.

  4. 4

    Check that someone would actually notice

    Most recovery failures are detection failures. If nobody would spot a missing folder for three months, no window of weeks protects you.

  5. 5

    Know where your recovery windows end

    Twenty-five days for Drive after trash, twenty days for a deleted user. Two numbers, worth knowing before you need them.

The leaver process in particular is covered properly on our administration page, where the order of operations is set out step by step.

Backup and recovery — common questions

Does Google Workspace back up my data?

Not in the sense most people mean. Google protects comprehensively against their own infrastructure failing — hardware loss, data centre outage, corruption in their systems — with redundancy you could not match yourself. What that does not cover is anything originating from your side: a user deleting something, a departing employee clearing their Drive, ransomware encrypting files that then sync, or an administrator error. For those you have recovery windows measured in weeks, not a backup.

How long do I have to recover deleted files?

Items a user deletes sit in their own trash for 30 days and they can restore them. Once trash is emptied, an administrator has 25 days to recover them, after which Google purges them and they cannot be recovered. A deleted user account can be restored for 20 days, which brings back their Gmail, any Drive files that were not transferred, and their primary calendar. Those figures were checked against Google's administrator documentation in September 2026 and Google does revise them.

Is Google Vault a backup?

No, and this is the most expensive misunderstanding in this area. Vault retains, searches, exports and places legal holds on data — it answers a compliance question. Google's own documentation states plainly that you cannot directly restore Vault-retained data to a user's Drive: you can export it, which gives you a file, not the folder back where it was. Businesses regularly buy a higher edition believing they have bought backup, and discover the difference during an incident.

Do we need third-party backup for Google Workspace?

Many small businesses genuinely do not, and we will tell you so rather than sell it. If your files are in Shared Drives owned by the company, you have a real leaver process, and nothing is under a retention obligation, the built-in windows cover the realistic scenarios. It becomes worth pricing when discovering a loss two months later is plausible, when one person holds a lot of irreplaceable work, or when a regulator, contract or auditor requires demonstrable point-in-time recovery.

What is the single most useful thing we can do at no cost?

Move organisational files into Shared Drives owned by the company rather than leaving them in individuals' Drive accounts. It removes the largest single category of data loss — files leaving with the person — costs nothing, and takes an afternoon. The second is writing a leaver process that suspends before it deletes.

Does version history protect us from ransomware?

Partly, and not at scale. Drive keeps version history, so an individual encrypted file can usually be rolled back to a previous version. What it does not do well is thousands of files at once — restoring them individually is not a realistic incident response. Version history is a genuine mitigation for isolated damage and not a substitute for a recovery plan where a whole synced folder tree has been encrypted.

If we delete a user to save a licence, what happens to their data?

You start a twenty-day clock, and that is usually a worse trade than it appears. The licence saving is small against the risk of discovering three weeks later that something of theirs was needed. Suspend the account instead, which preserves everything and stops access immediately, then transfer files and delegate mail before deleting anything. Some editions also offer archived-user licences that retain a leaver's mail at lower cost than an active seat.

How is backup different from retention?

Retention decides how long data is kept and when it is destroyed — it is a policy instrument that can delete as readily as preserve. Backup is about getting a specific thing back to a specific point in time after something went wrong. They are frequently sold as though they are the same and they answer different questions. An organisation can satisfy a retention obligation perfectly and still be unable to recover a folder somebody deleted in March.

Find out what you would actually lose

Tell us where your files live, whether you have a leaver process, and how long it would realistically take somebody to notice a missing folder. That last answer decides more than any product comparison.

  • A straight answer on whether you need third-party backup

  • Organisational files moved into company-owned Shared Drives

  • A leaver process that suspends before it deletes

  • The free measures applied before anything is sold to you

Working from Kerala with businesses across India — the local picture is on the Kerala page. Or call +91 99467 89916 or email admin@techgeum.com.

call