Google has added a way to strengthen how staff sign in to Windows PCs, and separately given admins a heads-up on a tool change taking effect this month.
- What it is: Google Credential Provider for Windows (GCPW) now supports physical FIDO2 security keys as a second sign-in factor for Windows machines managed through Workspace. Separately, Google is retiring parts of its Security Investigation Tool, with saved investigations and custom charts moving to legacy data after August 2026.
- Who is affected: Businesses using Google Workspace to manage staff sign-ins on Windows PCs, and any Workspace admin who relies on saved investigations or custom charts in the Security Investigation Tool.
- What the risk is: There is no risk from the security key option itself, it is a positive hardening step. But any custom security monitoring built on the Security Investigation Tool may stop returning current data once the change takes effect.
- What action is needed: Consider rolling out physical security keys for staff with access to sensitive systems, and if your business uses the Security Investigation Tool for monitoring, review those setups before the end of August.
Neither change needs to be actioned today, but reviewing them now avoids a scramble later in the month.
Sources: What's new in GCPW, Admin log event changes