Migration
Google Vault export and retention support
A Google Vault export extracts mail, Chat and Drive content matching a defined search into PST or MBOX with an accompanying metadata index. Exports are capped in size, so we split any matter above 25 GB into scoped searches, each exported and hashed separately to keep the chain of custody defensible.
| Mail output formats | PST or MBOX, plus a metadata index |
|---|---|
| Drive output | Original files with an index of paths and owners |
| Scoping | By account, org unit, date range, terms and labels |
| Practical constraint | Per-export size caps force multi-part searches |
| Integrity | Export hash recorded on download for chain of custody |
| Our engagement | £850 / $1,100 for a scoped matter, quoted per search set |
Three reasons people need a Vault export
The first is legal: a matter is underway, custodians are on hold, and counsel needs the data in a form their review platform accepts. The second is regulatory: a subject access request or a regulator's information notice with a statutory deadline. The third is commercial: the organisation is leaving Google Workspace and needs a defensible archive before licences lapse.
The three look similar in the console and are entirely different in what matters. Legal exports need chain of custody. Subject access requests need aggressive scoping and redaction planning, because over-disclosure is its own breach. Platform exits need completeness above all, because there is no second chance after the tenant closes.
Scoping is the whole job
A badly scoped search returns everything, exceeds the export size cap, takes hours, and produces an unusable pile. A well-scoped search is a set of narrow searches, each defensible on its own terms and each documented with the query, the custodian list, the date range and the run timestamp.
We build the search set with counsel or the data protection lead rather than guessing, run each search, record its hit count before exporting, and keep a search log. The log is often more valuable than the data, because it is what demonstrates the process was reasonable.
- One search per custodian group and date range, not one search for everything
- Hit count recorded before every export runs
- Export hash captured at download and stored with the search log
- Downloads completed inside the same working week the export ran
- Holds verified as still in place after the export, not before
Retention rules people get wrong
Retention rules in Vault delete data when they expire. That is their purpose, and it is why a badly configured custom rule is the most dangerous object in a Workspace tenant. A rule scoped to an org unit that later gains accounts will start purging data for those accounts too.
Holds override retention, which is the safety net, but only for the accounts actually on hold. Before any retention change we snapshot the current rule set, list every account in scope, and get written sign-off. It is a fifteen-minute step that prevents an unrecoverable one.
Exports as part of leaving Workspace
If the export exists because you are leaving, sequence it before licence changes. Vault access depends on licensing, and downgrading seats to save money mid-project can remove the ability to export the data you were trying to preserve.
We run the archive export first, verify it, store it where you have specified, and only then advise on licence reduction. The order costs a little more in overlapping licence fees and removes the possibility of an unrecoverable mistake.
What we see that others don't say
Vault export jobs expire and become undownloadable after a fixed window, which means a large multi-part export left over a bank holiday weekend can silently need re-running; scheduling the export so downloads complete inside the same working week avoids repeating a search that may take hours.
What this doesn't cover
- We are not your lawyers. We build and run defensible searches; decisions about scope, privilege and disclosure belong with your legal advisers.
- We do not perform redaction. Exported material goes to your review platform or counsel, who handle redaction with the appropriate tooling.
- Vault does not cover data that was never retained. Where a retention rule already purged content, no export recovers it.
- Third-party applications storing data outside Workspace are outside Vault's reach and need their own export path.
Questions we get asked
- What formats does a Google Vault export produce?
- Mail exports as PST or MBOX with a separate metadata index; Drive exports as original files plus an index of paths and owners. Most legal review platforms accept both directly.
- Why did our Vault export fail or come back incomplete?
- Almost always the search exceeded the per-export size cap, or the export expired before the download completed. Both are solved by splitting into narrower searches and downloading inside the same working week.
- Does a legal hold stop our retention rules deleting data?
- Yes, for accounts covered by the hold. Accounts outside the hold remain subject to retention rules, which is why the hold's account scope must be verified rather than assumed.
- Can we export Vault data after cancelling Workspace?
- No. Vault access depends on active licensing, so the export must be completed and verified before any licence reduction or tenant closure. Run the archive first, then change licences.
How this page is verified
Reviewed by Pearl Lemon Cloud security desk, Workspace security and compliance reviewers. Last checked .
- Vault export formats, scoping options and licensing dependencies reflect Google Vault Help documentation as of 2026-08-06.
- Engagement pricing is the Pearl Lemon Cloud rate card as of 2026-08-06.
- Search-log practice follows generally accepted e-discovery defensibility guidance; it is not legal advice.
Sources you can check
Related pages
- Why Vault is not a backup
- Workspace for charities and nonprofits
- IMAP and cPanel mailbox migrations
- Estimate transfer hours for your mailbox count
- Fixed migration prices per mailbox
- Offboarding without losing a leaver's data
- Audit retention and holds across the tenant
- Workspace for law firms
- Migration services overview
Get a scoped Vault export
Tell us the custodians, the date range and the deadline. We build the search set, run it with a documented log, and hand over hashed exports.