Updating Scopes for the Compromised Account Feature (Google)
In this guide you will learn how to update the scopes in Google to use the compromised account feature.
Part 1: Update Domain Wide Delegation Scopes
- Log in to the Google Admin Console at https://admin.google.com
- Click Security> Access and data control> API controls. Then click Manage Domain Wide Delegation.

- Click Edit on the row with CyberNut listed.

- Scroll down and paste the following OAuth scopes and click Authorize and then Confirm.
https://www.googleapis.com/auth/admin.directory.user
https://www.googleapis.com/auth/admin.directory.user.security
Part 2: Enable Compromised Account feature in CyberNut Admin Portal
- Login to the CyberNut Admin Portal at http://admin.cybernut.com
- Click Settings in the bottom left corner.
- Click Compromised Accounts.

- Scroll down and enable the feature labeled Enable Compromised Account Detection.

- Enable the feature labeled Email admins when an account is flagged as compromised. The email(s) that will be notified will be found on the Report Button tab.

- Enable the feature named Automatically suspend compromised accounts if you want the account to be suspended.

- If you have emails that should never be automatically suspended you can add them to the list of exceptions.

- After making all your changes go to the bottom of the screen and click Save.
Note: It may take up to 24 hours before you can enable this feature once you have updated the OAuth scope.