Every Google Workspace customer.
One governed console.
See and manage your whole customer book without losing sight of the tenant. Posture, lifecycle, devices, approvals and evidence, across all of them, a group, or one.
Already have access? Sign in · New to CrossTenant? Request access and we set up your invitation with you.
Works with Google Workspace
Works across the Google Workspace surfaces you already run.
The operating model
The whole customer book.
With control built in.
Admin tooling grew one tab at a time: a console per domain, a script between two of them, a spreadsheet for the rest. CrossTenant brings Google Workspace posture, users, devices, approvals and client-ready evidence into one cross-tenant workflow, with Google-specific controls and data boundaries.
- A browser tab per customer
- →One scope picker: all tenants, a group, or one
- Scripts, CSVs and tribal knowledge
- →Live, structured cross-tenant pages
- Spot checks when there's time
- →Whole-book security posture, worst-first
Know CIPP? This is the Google side. CIPP is an independent CyberDrain project for Microsoft 365, named only as the model MSPs already know; CrossTenant is a separate product built for Google Workspace.
Platform
The whole fleet, at every altitude
All tenants, a tenant group, or a single customer. The same console follows you.
Cross-tenant administration
Users, groups, devices, licences and policies across customers, with writes routed to the owning tenant.
ExploreSecurity posture
CIS Benchmark, Cyber Essentials, email authentication and policy drift, scored across the book, worst-first.
ExploreLifecycle & devices
Joiners, leavers, ChromeOS, mobile and managed browsers, with security actions behind confirmation.
ExploreApprovals & audit
Dry-runs, explicit confirmation, optional second-person approval and a tamper-evident audit trail behind every write.
ExploreAI assistant
Fleet-wide answers and drafted fixes. A proposer, not an actor: dry-run first, human-confirmed.
ExploreReports & customer portal
Branded evidence, operator-defined alerts, and scoped seats for customers with their own IT.
ExploreScope
All tenants. A group. One customer.
The same console follows you.
Every page is scoped on purpose. Widen to the whole book to find the tenant that needs you today; narrow to one customer to act, with the tenant name in view the whole time.
Statuses always carry a word. Colour is never the only signal.
Trust
Secure by architecture
Content is not warehoused
No Google Workspace message or file content is retained in CrossTenant's server-side stores.
Per-tenant isolation
Credentials, tokens and audit logs are isolated per customer. One tenant's authorisation never reaches another's data.
Writes are explicit and recorded
Workspace mutations remain explicit operator actions and are recorded in a tenant-bound audit trail. Second-person approval is optional and configurable.
Pricing
Per tenant, not per seat
Per-user pricing is built for a single organisation; you run a fleet. CrossTenant is quoted per customer tenant you manage.
Core
Fast onboarding · no extra Google review
- ✓ Cross-tenant directory & user lifecycle
- ✓ Device & ChromeOS management
- ✓ Security posture & customer health
- ✓ Reports, schedules & alerts
- ✓ Customer portal seats & role-based access
Complete
Planned mail & Drive governance — not currently enabled
- ✓ Mailbox-level mail governance across the book
- ✓ Drive and shared-drive administration
- ✓ Offboarding hand-over of files
- ✓ Vault & Drive-label compliance reads
- ✓ Enabled per customer as Google review and consented scopes allow
Quoted per managed customer tenant; figures are provisional. Restricted Gmail and Drive operations are currently disabled. Complete availability depends on Google review and the connected scopes. Get in touch for a quote.
Get started
Three ways to start
Access to the console is by invitation, and we set it up with you rather than behind a sign-up form. Sign in if you already have access, walk through the demo, or book a call and we onboard your first tenant together.
-
01
Sign in, or request access
Invited operators sign in with their Google or Microsoft account. New to CrossTenant? Request access with a couple of lines about your MSP, and a person replies to set up your invitation.
-
02
See the demo
A guided walkthrough of the console over fictional customer tenants: the whole book on one screen, one finding followed from signal to audited action, and the evidence a customer gets at the end. Take the tour.
-
03
Book a demo
Thirty minutes on a video call with the founder: your book, your questions, and whether a first tenant makes sense. Onboarding happens on a call like this one, not in a form. Pick a time.
What onboarding looks like
-
01
Connect a customer
A guided consent flow shows which permissions are requested and why. Read-only onboarding is available where Google provides read-only scopes.
-
02
See the whole book
Posture and alerts across every customer from the first screen, worst-first.
-
03
Act from one place
Dry-run previews, explicit confirmation, and a tamper-evident per-customer audit trail.
Guided onboarding · nothing to install in your customers' tenants · toby@crosstenant.com