Help shape the future of Box
Welcome to Box Pulse, our product feedback tool powered by UserVoice. Got an idea for how to improve Box? Share it with us and gather support or vote on other people's ideas. Your feedback is essential to informing roadmap decisions and shaping the future of our products. Thanks for joining our community!
See user guide here.
213 results found
-
Download and Print restriction policy and Office co-authoring
I have Office co-editing enabled on my device.
An error appears when I try to edit an Office file from a web browser that has the file labeled with "Download and Print Restrictions Access Policy for Box Desktop" enabled.
It's meant to be a label to disable BoxDrive, but I'm having trouble if I can't edit it from a web browser.
Please enable Office co-authoring from a web browser, even if the file is labeled with these restriction.
2 votes -
Box Shield Alert for Anomalous Deletion of Folders or Data
We would like an alert to be created if a user deletes an anomalous amount of data. We recently had an employee leave the company under bad terms and found that before we could let her go, she had deleted a bunch of folders from Box. We were able to recover them, but this would be an indicator (much like anomalous download alerts) that something is up with this employee and we should be digging in deeper.
2 votes -
Ability to provide feedback on anomalous download alerts
I would like the ability to provide user-level feedback on anomalous download alerts. Today, you can only provide feedback via the folder and suggest whether or not it contains sensitive information. It would be better if you could provide this feedback at the user level - if someone is on a specific team, they may be expected to download a lot of files from a specific folder. However, that behavior might be anomalous for another user on a different team. I also find that these alerts are often triggered for new users who are not actually downloading an unusual amount…
3 votes -
Shield admin notifications to other admins when files are marked safe, etc
Interest in letting all Shield admins know when a file has been marked safe, useable, etc by another Shield admin
2 votes -
Allow admins to be able to exclude specific folders from scanning policies
Be able to safelist individual folders and their content, in case the latter are part of normal operational activities of specific teams, and to reduce false positives/noise to SecOps teams.
2 votes -
Allows the report to see the classification labels that have been applied in the past
In the User Activity Report, when a classification label is changed, it is logged. However, it does not record from which label was changed to which label..
One user currently sets the privilege to edit classification labels to editors (general employees). However, the more users with editing privileges, the greater the security risk. The only way to avoid this risk is to limit the scope of editing privileges to the owner or co-owner (superior). In that case, it would be too inconvenient, since it would be necessary to apply to the superior for a change in the classification label.
By…5 votes -
Give download rights for analysis without flagging safe
Hi, we have a process of validating in a secured sandbox environment documents that are flag as malicious to be analyse to put back into circulation if it's a false positive. Right now, Box Shield co-admin cannot retrieve those documents. Support suggest to flag them as false positive, download them and revert them back. It is a horrible practice to have to do that. It gives false information to the AI and it prevents automation via webhooks.
I have a multiple async jobs I want to run when a file becomes a false positive. This way of downloading is dangerous…
3 votes -
Update Shield Access Policy Restriction for Box Sign
For the Box Sign Request Restriction, add the option allow a signature request, but require additional security controls (e.g., signer authentication, password) for the signature request.
We need the ability to send sensitive content for signature but don't want it sent using a public link.
1 vote -
Shield Requests
Currently Box sheild has the capability to Scan only newly updated/created files or only if the existing file is modified. In simple terms the scan happens only for the newly created version of the files and not any existing files before Box shield is being implemented.
Feature request:
We need to have the option of Scanning all the files at rest & transit in Box irrespective of when it was created/ modified, etc so that it can detect any malware on already available files as well.
Currently Box only encrypts the file with a red banner on top if malware…
2 votes -
Filter Marked as safe
Shield needs a filter and a display setting for the dashboard for an alert that have been checked and marked as safe, currently it is hard to identify alerts that have been checked by other admins and marked as safe causing duplicate effort.
4 votes -
Be able to Block specific filetypes from being uploaded to Box
Allow for an organization-wide policy to block specific filetypes from being uploaded to Box, or at least prevent them from being uploaded/moved to specific folders with specific classifications.
1 vote -
Access policy prohibiting copying and moving to external folders(gray folders)
Current Status and Issues:
Currently, when a file or folder with a classification label is copied or moved to a gray folder, the classification is lost and the associated access policy stops working.
The only way to prevent this is to prohibit the move or copy itself by attaching a DL inhibit label.Desired improvement:
Please add "Prohibit copying to gray folders" to the access policy so that it can be set for each classification label.Why it is needed:
Because some customers are not attracted to Shield due to the above problem.
Also, setting a "no download" label would…16 votes -
Allow Shield Location Rule Restriction By Folder
Currently Shield's Location Restriction rule is applied to the entire EID by user/groups. It would be helpful to be able to set this up by specific folder(s) or folder structure.
Ex. Team A is not allowed to view specific content while in Location X, however Team B is able to. Currently the restriction would be set on the EID level and both teams would be under this restriction.
We could exclude group B or other groups from the rule however Group A would still be restricted from accessing other content within the EID.
1 vote -
Make MPIP and Shield Classification Labels Bidirectional
This make require partnership with Microsoft, but it would be ideal if the MPIP integration was bidirectional. For example, if a file in Box doesn't have an MPIP label, but a Shield classification label is applied, the document would have an MPIP label applied based on the mapping table
3 votes -
Request to improve the behavior of files with "Download and Print Restrictions" set on Box Drive
In Shield > Access Policy, we are creating a classification label for the policy that has "Restrict downloading and printing" set as the security control.
Depending on when you set this label classification, Box Drive may not have the limitations you expect.
I would like to see an improvement so that files with "Download and Print Restrictions" set cannot be opened or copied in Box Drive from the moment the settings are set.The specific steps and events are as follows.
1. Open the file before setting the classification label in Box Drive.
2. Edit, save and close the file.…4 votes -
2 votes
-
Ability to map Box Groups to Information Barrier Segments
The current requirement for uniqueness in Information Barrier segments only allows Box Admins to add individual users to segments, not user groups. This process can increase the long-term maintenance.
Ideally, customers should be able to use attributes from Active Directory that are then synced to Box Groups. Ultimately, the Box Groups would be used to update Information Barrier segment membership automatically. If the group update breaks the requirement that a user can only belong to one segment, Box could produce an error message.
2 votes -
Applying folder exceptions/exclusions to Classification policies
Would like to apply folder exceptions/exclusions to Classification Policies. Currently, we can apply to a selected group of folders, but we have an organizational need to be able to apply a classification policy to all content and add a small selection of folders to exclude from that classification policy.
1 vote -
Additional info in Anomalous Download Shield e-mail notifications
It would be very helpful to see "Previous weekly download amount", "anomalous download amount" and the "delta" on Anomalous download e-mail notifications. We use these to identify notifications that require further investigation, but these are only available by clicking into the reports which make this kind of detection difficult to scale and manage.
1 vote -
Enhanced Auto Classification and File Criteria for All File Types in Box
We would like to have the ability to specify all file types in the file criteria for auto classification. Since there is currently no way to cascade classifications to all files excluding folders (categorizing confidential info on a file-by-file basis), I would like a feature where all files can be classified.
With the current individual extension specifications, it is not possible to use wildcard characters, so we would like to reduce the potential for information leakage due to intentional extension changes.
2 votes
- Don't see your idea?