Workspace Migration Services

Managed

Google Workspace email archiving

Google Workspace email archiving is delivered through Google Vault retention rules applied per org unit, with Archived User licences holding leaver mailboxes at roughly a third of the cost of a full seat. Vault rules expire data on schedule once set, so a 2-year rule applied to 8 years of mail destroys records permanently.

Archiving building blocks
Retention engineGoogle Vault, included Business Plus and above
Rule scopeOrg unit, shared drive or whole domain
Leaver storageArchived User licence, cheaper than a full seat
Legal holdOverrides retention, no expiry until released
Export formatsPST or mbox, with metadata manifest
Restore testDated, twice a year on retainer

Write the policy before you touch a rule

The order that prevents disasters is: document what the organisation is required and choose to keep, per record type, with the legal or regulatory basis; then map those periods onto org units; then apply rules. Applying rules first and reconstructing policy afterwards is how organisations discover their retention was set by whoever happened to open Vault.

Different categories rarely share a period. Employment records, client correspondence, financial documentation and routine internal mail can carry six-year, seven-year and one-year expectations simultaneously, and Vault applies rules to org units rather than to content types, so the org structure has to carry the distinction.

  • Record type, retention period and the basis for it, in one table
  • Map each period to an org unit or shared drive that can carry it
  • Apply in reporting mode first where the tooling allows
  • Place holds on any matter already in contemplation before rules run

Archived User licences and the leaver problem

When someone leaves, their mail is often still needed — for a handover, an audit trail or a dispute that has not surfaced yet. Deleting the account destroys it; keeping a full licence is wasteful at scale. An Archived User licence retains the mailbox as searchable Vault data at a materially lower monthly cost with no interactive sign-in.

The decision rule we use is simple: any leaver in a client-facing, financial or regulated role goes to an archived licence for the length of the relevant retention period. Everyone else is transferred and deleted after a fixed window recorded in the offboarding evidence pack.

Holds, exports and disclosure

A legal hold overrides retention and prevents expiry for matching accounts and terms until released. Holds must be placed the moment litigation or investigation is reasonably anticipated, not when it begins, and the placement should be dated and recorded because the date is itself evidence.

Exports produce PST or mbox with a metadata manifest suitable for a solicitor or an assessor. Large exports take hours and count against export quotas, so a disclosure deadline is planned backwards from the export rather than discovered at the end of it.

The restore test nobody runs

Retention configuration is not a backup. Vault preserves and searches; it does not restore a deleted shared drive structure or roll a mailbox back to a point in time. Organisations that believe they have backup because they have Vault find out during the incident, which is the worst moment available.

Twice a year on retainer we run a dated restore test: pick a real scenario, attempt recovery with the tooling actually in place, record what came back and what did not, and put the result in writing. That document is what auditors and insurers ask for, and it is the only proof that the arrangement works.

What we see that others don't say

Vault retention is a deletion engine as much as a preservation one: setting a two-year rule on an organisation that has never deleted anything will remove eight years of mail on the day it is applied, and there is no undo path once the purge has run.

What this doesn't cover

  • Vault is retention and discovery, not backup. Where point-in-time restore is required we specify a third-party backup product and say why.
  • We configure retention to a policy you own. We are not lawyers and do not determine your statutory retention periods.
  • Archived User licences are read-only Vault storage; they do not allow the mailbox to send, receive or be signed into.
  • Export volumes are bounded by Google's own quotas, so very large disclosure exercises are scheduled rather than run on demand.

Get a fixed price for this

Send your seat count, current platform and deadline. You get a fixed price and an available cutover date, usually within one working day, from the engineer who would run the work.

Prefer to talk? Call +44 20 7183 3436 (Mon–Fri 08:00–18:00 GMT), or message WhatsApp +44 7403 423563.

Questions we get asked

Is Google Vault a backup?
No. Vault retains and searches data for discovery and compliance. It does not provide point-in-time restore of a mailbox or a shared drive, which needs a dedicated backup product.
What happens to a leaver's mail?
Either transfer and delete after a fixed window, or hold it on an Archived User licence for the retention period. Client-facing, financial and regulated roles get the archived licence by default.
Can a retention rule delete data we needed?
Yes, permanently. A rule shorter than the age of existing mail purges on application, which is why policy is documented and holds are placed before any rule is switched on.

How this page is verified

Reviewed by Deepak Shukla, Founder, Workspace Migration Services. Last checked .

  • Vault rule behaviour and hold precedence reflect Google Vault Help documentation as of 2026-08-06.
  • Archived User licence availability and behaviour are per Google Workspace Admin Help on 2026-08-06.
  • Restore-test practice reflects Workspace Migration Services retainer procedure to 2026-08-06.

Sources you can check

Cite this page

Free to reuse with attribution. Copy whichever form your publication needs.

Plain citation

Workspace Migration Services, "Google Workspace email archiving", https://workspacemigration.services/managed/google-workspace-email-archiving (last checked 2026-08-06).

HTML with source link

<p>A Google Vault retention rule expires data at the end of its period, so applying a rule shorter than existing mail age causes immediate irreversible deletion. Source: <a href="https://workspacemigration.services/managed/google-workspace-email-archiving">Google Workspace email archiving</a> — Workspace Migration Services.</p>

Embed this table

<table>
  <caption>Google Workspace email archiving — Workspace Migration Services, 2026-08-06</caption>
  <tr><th>Retention engine</th><td>Google Vault, included Business Plus and above</td></tr>
  <tr><th>Rule scope</th><td>Org unit, shared drive or whole domain</td></tr>
  <tr><th>Leaver storage</th><td>Archived User licence, cheaper than a full seat</td></tr>
  <tr><th>Legal hold</th><td>Overrides retention, no expiry until released</td></tr>
  <tr><th>Export formats</th><td>PST or mbox, with metadata manifest</td></tr>
  <tr><th>Restore test</th><td>Dated, twice a year on retainer</td></tr>
</table>
<p><a href="https://workspacemigration.services/managed/google-workspace-email-archiving">Google Workspace email archiving</a> — data maintained by Workspace Migration Services.</p>

Related pages

Get retention that matches your policy

We document the periods, map them to org units, place holds before any rule runs, and prove it works with a dated restore test twice a year.