What is eDiscovery Content Search vs. Metadata Search?
SysCloud eDiscovery allows administrators to search backed-up data across supported SaaS applications and locate files, emails, chats, records, and other backed-up items from a single search interface.
SysCloud offers two eDiscovery search options:
- Metadata Search
- Content Search
What is Metadata Search?
Metadata Search allows you to search using the information associated with an item, without searching inside the item content.
Metadata may include details such as:
- File name
- Email subject
- Sender or recipient
- Date
- Owner
- File type
- App name
- Record name
- Chat or conversation details
Metadata Search is available with eDiscovery Lite.
What is Content Search?
Content Search allows you to search inside the backed-up item content, in addition to metadata.
For example, Content Search can help locate a keyword or phrase inside:
- Email body content
- File content
- Chat messages
- Records
- Conversations
Content Search is available with eDiscovery Advanced. In the eDiscovery search page, select Enable content search to search inside the content of supported backed-up items.
Difference between eDiscovery Lite and eDiscovery Advanced
| Plan | Search scope |
|---|---|
| eDiscovery Lite | Searches metadata fields only |
| eDiscovery Advanced | Searches both metadata fields and item content |
Apps supported in eDiscovery search
eDiscovery search is available for the following backed-up apps:
Google Workspace
- Gmail
- Google Drive
- Shared Drive
- Google Calendar
- Google Contacts
- Classroom
Microsoft 365
- Outlook
- OneDrive
- SharePoint sites
- Teams private chat
- Microsoft Calendar
- People
QuickBooks Online
Slack
When should I use Metadata Search?
Use Metadata Search when you know item-level details such as the file name, email subject, sender, recipient, date, app, owner, or other searchable properties.
When should I use Content Search?
Use Content Search when you need to find data based on words or phrases inside files, emails, chats, records, or conversations.
Actions available from eDiscovery search results
After the search results are displayed, administrators can perform actions such as:
- Hold: Place selected items on legal hold to prevent deletion and override retention policies.
- Export: Export selected search results for review or investigation.
- Restore: Restore selected items to their original location.
- Delete: Permanently remove selected items from SysCloud backup archives and user accounts.
The available search options and supported apps depend on your SysCloud eDiscovery plan and the apps backed up in your SysCloud account. Use eDiscovery Lite for metadata-only searches and eDiscovery Advanced for both metadata and content searches.