Your workflow is unique 👨💻 - tell us how you use Dropbox here.
Forum Discussion
sanjayssk
8 years agoHelpful | Level 6
Chooser and security
I'm a beginner but am now using the Chooser API successfully from a Web app. But I'm concerned about the security of the link obtained. Your description of the returned link is too short and doesn't ...
- 8 years agoYes, the shared links returned by the Chooser are the same kind of shared link as used by the general shared link feature in Dropbox:
https://www.dropbox.com/help/files-folders/view-only-access
That allows anyone with the link to access the shared content. Users can always revoke these shared links from the web site:
https://www.dropbox.com/share/links
Hope this helps!
sanjayssk
8 years agoHelpful | Level 6
Hi Greg,
Thanks for replying promptly.
A few related questions:
1) I thought specifying the Chooser/Saver domain for the App Settings will only make the file available to that domain. Is that true at least for the second type of "download" URL that expires in 4 hours? Or is that also available from anywhere for download?
2) BUG: Also when I click on the Links (www.dropbox.com/share/links) to see what links are now exposed, it's just stuck on wait cursor for a long time, over 15 minutes now. Seems like a bug.
I think when Web Apps use this feature, they are exposing a security risk for the end user where the user is unaware that private files may be exposed via links. At least the chooser dialog should give a prominent warning.
Thanks.
Greg-DB
Dropbox Community Moderator
8 years ago1) No, the Chooser/Saver domains specify which domains can use your app key for the Chooser/Saver. That does not affect the resulting links.
2) That sounds like an issue with the web site. Please open a ticket here for help with that:
https://www.dropbox.com/support
And thanks for the feedback!
2) That sounds like an issue with the web site. Please open a ticket here for help with that:
https://www.dropbox.com/support
And thanks for the feedback!
About Dropbox API Support and Feedback
Get help with the Dropbox API from fellow developers and experts.
The Dropbox Community team is active from Monday to Friday. We try to respond to you as soon as we can, usually within 2 hours.
If you need more help you can view your support options (expected response time for an email or ticket is 24 hours), or contact us on X, Facebook or Instagram.
For more info on available support options for your Dropbox plan, see this article.
If you found the answer to your question in this Community thread, please 'like' the post to say thanks and to let us know it was useful!
Related Content
- 4 years agoanonymous