Skip to content

Help shape the future of Box

Welcome to Box Pulse, our product feedback tool powered by UserVoice. Got an idea for how to improve Box? Share it with us and gather support or vote on other people's ideas. Your feedback is essential to informing roadmap decisions and shaping the future of our products. Thanks for joining our community!

See user guide here.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback

395 results found

  1. Expire individual collaborator access from folder after x days

    More granular than unsharing the entire folder

    2 votes
    not planned  ·  0 comments  ·  Security  ·  Admin →
    How important is this to you?
  2. Reduce considerable increase in file size when watermarking content

    Expected behavior that watermarking files will convert files to pdf upon download (if the user is not a collaborator) and greatly increase the file size.

    1 vote
    0 comments  ·  Security  ·  Admin →
    How important is this to you?
  3. 1 vote
    0 comments  ·  Security  ·  Admin →
    How important is this to you?
  4. 50 votes
    0 comments  ·  Security  ·  Admin →
    How important is this to you?

    As part of our ongoing commitment to securing all of our customers’ most critical content, Box has launched the Beta for a new watermarking feature that enables organizations to apply watermarking to their video content - this beta is targeting Shield Customers mainly.

  5. 2 votes
    0 comments  ·  Security  ·  Admin →
    How important is this to you?
  6. Refresh Tokens coordinating with IdP Requirements

    We would like our Box refresh tokens to align with our IdP requirements.

    We use Azure (https://docs.microsoft.com/en-us/azure/active-directory/active-directory-configurable-token-lifetimes).

    Azure supports configurable refresh tokens. Can/Will Box configurable refresh tokens eventually respect these IdP refresh tokens?

    2 votes
    not planned  ·  0 comments  ·  Security  ·  Admin →
    How important is this to you?
  7. Configurable minimum TLS level for communicating with our tenant

    We want a means to force TLS 1.2 in our environment for both internal and external users. We can control our managed users, but it does leave some external users potentially using a lower TLS connection.

    1 vote
    not planned  ·  0 comments  ·  Security  ·  Admin →
    How important is this to you?
  8. Collaborator Expiration - Include Co-Owner(s) in the Email Notification

    Current Behavior:

    --Email Notification - Sent to 'affected users' (defined as Folder Owner and the original Inviter, aka the person who invited in the collaborator who is about to expire)
    --Ability to Extend Expiration Date - Folder Owner & Co-Owners

    REQUEST: Add Co-Owner(s) to the email notification distribution so that they can take the burden off the folder owner (since co-owners already have the ability to extend the expiration date).

    86 votes
    4 comments  ·  Security  ·  Admin →
    How important is this to you?
  9. Watermark on Download when user has View Upload rights

    We need users who have Viewer Uploader rights to always have a document watermarked on DL. According to the ACL, Viewer Uploaders download without the Watermark.

    3 votes
    not planned  ·  0 comments  ·  Security  ·  Admin →
    How important is this to you?
  10. KeySafe HSM Support in Azure

    We would like to also leverage the same Azure relationship for key management.

    3 votes
    0 comments  ·  Security  ·  Admin →
    How important is this to you?
  11. 1 vote
    not planned  ·  0 comments  ·  Security  ·  Admin →
    How important is this to you?
  12. Device Trust separate desktop and 3rd party apps

    We're trying to limit Box to managed devices. We enable DT on webapp, deploy Box for EMM, but when we try to open/edit a file in iOS Office, DT considers it a 3rd party app and blocks it.

    Decoupling the two would leave the desired state of blocking webapp on unmanaged devices, controlling mobile through EMM, but also allowing editing in apps as desired on that managed device.

    0 votes
    1 comment  ·  Security  ·  Admin →
    How important is this to you?
  13. Open Shared Link Controls: Default Password Requirements for Open Shared Links

    REQUEST: Admin would like the ability to set a global control whereby all public/open ('people with the link') links must have a password.

    Our current controls on shared links impact all 3 Shared Link permissions causing additional impact on the user experience.

    157 votes
    24 comments  ·  Security  ·  Admin →
    How important is this to you?

    Instead of “require password” security control, we intend to support “Require OTP” requirement for public links (via SMS, Email, or TOTP). I wanted to share where we are headed. We do not plan on delivering this ask as is, but we do intend to solve the security use case behind it.

    Please comment if you disagree.

  14. Require 2FA for certain content only (not globally)

    Force 2-factor / MFA based on the type of content, folder, user. etc. - natively in Box or support this functionality through IdP

    11 votes
    not planned  ·  3 comments  ·  Security  ·  Admin →
    How important is this to you?
  15. Allow admin to disable external password

    Instead of being able to only "reset" the external passwords, we want to block the ability for users to use/access their external passwords.

    4 votes
    not planned  ·  0 comments  ·  Security  ·  Admin →
    How important is this to you?
  16. Suppress Notifications - Expand Scope to Suppress In-App Entries in the Updates Feed & Access Stats (for DLP & CASB Integrations)

    Services (like DLP and CASB partners such as Netskope and Skyhigh) that use the Content API to scan Box content have the ability to suppress email notifications that would normally be generated for various activity (such as downloads, etc.). This is great as the activity from these services should be transparent and not exposed to the end user.

    However, the Suppress Notifications header currently only applies to suppressing email notifications -- these entries for activity from these API-based services still are exposed in-app to end users on the Updates feed and in other locations such as Access Stats.

    REQUEST: Expand…

    10 votes
    0 comments  ·  Security  ·  Admin →
    How important is this to you?
  17. Provide a complementary Event in the Events API that a file has been successfully scanned for viruses

    We would like to take an action on a file once it has been successfully scanned for viruses. The files are being uploaded from an external party through a white labeled application.

    We understand we would get an event that a malicious file has been found. We would also like the opposite event that a file has been scanned and has not been found to be malicious via the API.

    9 votes
    0 comments  ·  Security  ·  Admin →
    How important is this to you?
  18. Restrict downloads from IE Browser

    Right now, any user can from IE browser right-click and download an image/video, even when the shared link or collaboration level through which they are previewing is restricting downloads

    1 vote
    not planned  ·  1 comment  ·  Security  ·  Admin →
    How important is this to you?
  19. API to managed IP whitelists for web and API traffic to Box

    As an admin, I can neither view or manage the IPs I've chosen to whitelist.

    1 vote
    0 comments  ·  Security  ·  Admin →
    How important is this to you?
  20. Custom Watermarking

    User would like the ability to increase the size of the watermarks, as well as the frequency that it shows up on the documents

    16 votes
    0 comments  ·  Security  ·  Admin →
    How important is this to you?
  • Don't see your idea?

Help shape the future of Box

Categories

Feedback and Knowledge Base