USB Detection
We360.ai USB detection — monitor USB and external device connections for data loss prevention and endpoint security.
USB Detection gives you visibility into when USB storage devices are connected to or disconnected from monitored computers. It's a lightweight data-loss-prevention (DLP) and endpoint-security signal that helps you spot removable-media usage without deploying separate security tooling.
What It Monitors
The desktop agent logs connect and disconnect events for USB mass-storage devices (USB drives and external storage). Each record includes:
The event type — connected or disconnected.
The device name — its manufacturer and product name.
The timestamp and the employee the event belongs to.
Enabling USB Detection
USB Detection is off by default and controlled by your organization's monitoring policy. A Super Admin or Admin enables the USB Detection toggle under Settings → Compliance & Security → Compliance.
Policy changes can take up to about an hour to reach endpoints, so allow some time before expecting events to appear.
Reviewing Activity
USB connect and disconnect events are available in the USB Detection report (see Reports) as a per-user event log — timestamp, event type, device name, and user — filterable by date range, user, and team, and exportable to CSV. Viewing it requires a Manager or Owner role.
Platform Support
USB Detection is provided by the We360.ai desktop agent on Windows, macOS, and Linux. See the Desktop App for the full list of agent capabilities.
Last updated
Was this helpful?