Help shape the future of Box
Welcome to Box Pulse, our product feedback tool powered by UserVoice. Got an idea for how to improve Box? Share it with us and gather support or vote on other people's ideas. Your feedback is essential to informing roadmap decisions and shaping the future of our products. Thanks for joining our community!
See user guide here.
402 results found
-
Check the details of SSO for external collaborators
We can require 2-FA for external collaborators, but for external collaborators using SSO, Box does not check for whether users pass multi-factor authentication. Please add the ability what kind of authentications(ID/Pass, MFA, Device check, IP address limitation, etc) does external collaborators passed on SSO.
20 votes -
Need guest authentication by own AzureAD for external collaborators
We can require 2-FA for external users, but it’s not enough security level to some customers. So, please add the ability to require guest authentication by own AzureAD for external collaborators.
19 votes -
Open Shared Link Controls: Prevent Open Shared Folder Links without Disabling Company Folder Shared Links
Right now you can't disable Open folder links without disabling Company folder links. The native Box setting for this is too restrictive (prevents sharing folders internally other than via collaboration).
18 votesWe are currently focussed on bulk operations with managing Shared links.
-
Secure open link - Domain white list for open shared link
This request is an idea that will become possible after the following requests are realized.
Secure open link① - Require email address verification with one-time password
https://pulse.box.com/forums/909778-help-shape-the-future-of-box/suggestions/43755942-secure-open-link-require-email-address-verifica【Summary】
Please add "Allow only email addresses from specific domains to receive one-time passwords" to the Open Link settings.
This will make it possible to prevent secondary distribution and miscommunication, which is a huge issue for Open Link.【Issues to be solved】
Current Open Link is not secure enough as an alternative to attachments.
Compared to attachments, the ability to determine the information of the access source and the ability to block access…15 votes -
Collaboration Blacklisting
We would benefit from the ability to make a blacklist of collaborations (perhaps via domain) to prevent against the inbound or outbound collaboration with a certain (or set) of domains.
The current collaboration whitelist capabilities do not permit for blacklisting -- they only allow for whitelisting.
For example: "Can we block all inbound and outbound requests to/from a certain domain (e.g., gmail.com)?"
15 votesNot currently planned at this time.
-
Request for Improvement of the “People with the Link” Feature in Box
Request for Improvement of the “People with the Link” Feature in Box
We would like to request the following improvements to the “People with the link” option within Box’s Share Link feature, which is used to grant viewing or downloading access to folders or files for organisations or email addresses that do not have a Box account or existing folder permissions.
At present, requiring the link creator to manually set a password is rather cumbersome, and as a result, many users choose not to do so. Since there is no enforcement mechanism, some organisations restrict or even prohibit the use…
14 votes -
Email Notifications for Expiring External Collaborators
In addition to the owner of the folder receiving a notification that a collaboration is expiring, the user who initiated (invited) the collaborator, and the collaborator themselves receive notifications.
14 votesWhile we like this idea, it is not currently planned at this time.
-
We want the Box administrator to be able to confirm when an IP address is blocked from communicating.
Box has a function to increase security by restricting the IP addresses accessing the system. When using this function, it is necessary to register the addresses to be used in the permission list when there is a system that wants to cooperate with Box.
However, there are cases where it is not possible to confirm the IP addresses used with each system vendor.
Therefore, currently, we block communication once and ask Box to confirm the information by contacting the company.
This operation requires support from Box and is inconvenient for us because it takes time to add the IP address…
13 votes -
Copy All Folder Settings when copying a Folder
When copying a folder, all folder settings should be copied over as well (or have the option to do so). As is, some settings do copy over while others don't. For example:
Can Copy: Restrict Collaboration to within ETF, Disable Commenting, Shared Link Access, Watermarking, Uploading (Overwrite files) and Email notifications
Won't Copy: Only Folder owners and co-owners can send collab invites, Hide Collaborators, Allow Uploads to this folderThis would be especially useful when copying a template folder with a folder structure that needs the same settings when copied for a new project/customer/etc.
12 votes -
Create exceptions for auto-expiration of sharing and external collaborators
We have auto-expiration on file sharing but often need to share files with external collaborators for an indefinite amount of time. We can't keep re-sharing the file. Same for external collaborators - we have auto-expiration but we can't keep re-sharing folders with them.
12 votes -
Automate quarantining of infected files
While speaking with Box Premiere Support Team, it was stated that there is no current option/means to automatically place an infected file into quarantine. The file stays available and is up to the Content Owner/Site Admin to manually address the issue.
It would be nice to have a feature that automatically placed suspicious/infected files in a designated quarantine folder while it is being reviewed. This will eliminate the potential for someone to accidentally download the file and cause potential harm.
12 votes -
Allow owners and co-owners of folders to be notified of auto-expiration events
Instead of only the owner and collaborator inviter being notified, include all folder co-owners in the email notification.
12 votes -
Require password when sharing with external users
There is a regulation in Japan called the privacy mark, where obtaining this qualification you need to put a password on all files you share outside of your company. Without this qualification you are not allowed to do business in certain industries
12 votesNot currently planned at this time.
-
12 votes
-
Require 2FA for certain content only (not globally)
Force 2-factor / MFA based on the type of content, folder, user. etc. - natively in Box or support this functionality through IdP
11 votes -
11 votes
This is not something that we would consider as part of the basic virus-scan for all files today. Customers requiring advanced features such as quarantining malicious files can benefit from a CASB product with Box integration
-
Add support to get Security logs event using Box Eventlog API
Currently Eventlog API doesn't logs event related to enterprise setting changes by admins. These logs are available using Security report (https://app.box.com/master/reports/security) but are not available through API.
For reference (https://community.box.com/t5/Platform-and-Development-Forum/How-to-get-security-logs-using-Box-Eventlog-API/m-p/79313#M7447)10 votes -
Increase minimum characters required for password
When making password requirement settings through the Admin Console security tab the range for minimum required characters only go up to 12. Can this be customised or increased to have more required characters than 12 up to 15?
10 votes -
10 votes
-
10 votes
- Don't see your idea?