For the complete documentation index, see llms.txt. This page is also available as Markdown.

USB Detection

We360.ai USB detection — monitor USB and external device connections for data loss prevention and endpoint security.

USB Detection gives you visibility into when USB storage devices are connected to or disconnected from monitored computers. It's a lightweight data-loss-prevention (DLP) and endpoint-security signal that helps you spot removable-media usage without deploying separate security tooling.

What It Monitors

The desktop agent logs connect and disconnect events for USB mass-storage devices (USB drives and external storage). Each record includes:

  • The event type — connected or disconnected.

  • The device name — its manufacturer and product name.

  • The timestamp and the employee the event belongs to.

USB Detection focuses on removable storage. Everyday peripherals such as keyboards and mice are not logged, and the feature records device connection activity — it is not a file-transfer scanner. Its purpose is to flag when removable media is in use so you can follow up where your policy requires it.

Enabling USB Detection

USB Detection is off by default and controlled by your organization's monitoring policy. A Super Admin or Admin enables the USB Detection toggle under Settings → Compliance & Security → Compliance.

Reviewing Activity

USB connect and disconnect events are available in the USB Detection report (see Reports) as a per-user event log — timestamp, event type, device name, and user — filterable by date range, user, and team, and exportable to CSV. Viewing it requires a Manager or Owner role.

Platform Support

USB Detection is provided by the We360.ai desktop agent on Windows, macOS, and Linux. See the Desktop App for the full list of agent capabilities.

Last updated

Was this helpful?