elba
Demo
All integrations

Dropbox integration

Dropbox

Reduce risky Dropbox access without downloading file content

Connect team, linked-application and sharing metadata to the people and assets involved, then apply an eligible source action when the live issue supports it.

The Dropbox Business connector reads supported team and sharing metadata. Its documented file scope reads file and folder metadata without downloading file content.

Why connect

File exposure hides in memberships, apps and sharing links

A team can remove a user and still miss a linked application or a shared link that preserves access. elba brings the supported Dropbox relationships into one review so each exposure can be traced to the relevant member, application or item.

What elba finds

Connected Dropbox team and sharing evidence

The connector uses the active Dropbox Business grant to retrieve the objects supported by its enabled scopes.

  • Team members

    Synchronize supported Dropbox team members for identity and account review.

    From the connected application

  • Linked applications

    List supported applications linked to Dropbox member sessions for Third-Party Apps findings.

    From the connected application

  • File, folder and sharing metadata

    Read supported file and folder metadata, sharing members and shared-link details used by enabled Data Protection workflows.

    From the connected application

What elba can change

Apply an eligible change in Dropbox

elba exposes only the direct actions supported by the connected source and selected object.

  • Suspend a supported team member

    Suspend an eligible Dropbox team member when the live remediation workflow exposes that action.

    Action in the application

  • Revoke a supported linked application

    Remove an eligible linked application from the relevant member session through the connected source.

    Action in the application

  • Remove supported sharing access

    Remove an eligible sharing member or revoke a supported shared link from the affected Dropbox item.

    Action in the application

Setup

Authorize the intended Dropbox Business team

Use an administrator account that can approve the permissions displayed by Dropbox.

  1. 1

    Open Settings → Integrations in elba and select Dropbox.

  2. 2

    Start the connection and sign in to the intended Dropbox Business team with an authorized administrator.

  3. 3

    Review the complete permission set on the live Dropbox authorization screen before approval.

  4. 4

    Return to elba, confirm the integration is connected and wait for the initial synchronization to finish.

Validate team identity, data coverage and one eligible action

Use representative records rather than assuming that authorization alone proves coverage.

  • The connected team and authorizing administrator match the intended Dropbox Business environment.
  • Expected team members and a representative linked application appear after synchronization.
  • A representative file or folder shows the expected supported sharing metadata without a downloaded content copy.
  • If direct remediation is part of the rollout, test an eligible low-risk object and confirm the source reflects the change.

Important boundaries

  • The Dropbox authorization screen is the exhaustive source for the currently enabled grant; capabilities can vary with connector configuration.
  • The documented metadata scope does not download file content.
  • Direct actions apply only to supported members, linked applications, sharing members and shared links exposed as eligible in elba.
  • Detection and remediation can vary by source state, object type and workspace configuration.

FAQ

Dropbox integration questions

Does elba download Dropbox file content?

The documented files.metadata.read scope reads file and folder metadata without downloading file content. Review the live Dropbox authorization screen for the complete current grant.

Can elba revoke a linked Dropbox application?

Yes, for supported linked applications exposed as eligible by the active connector and remediation workflow.

Can elba change Dropbox sharing?

The connector supports removing eligible sharing members and revoking supported shared links. The action must be available for the specific item in elba.

Where should an administrator verify the requested permissions?

Use the live Dropbox authorization screen as the exhaustive source, because the enabled application grant can change independently of older documentation.

Turn Dropbox sharing context into focused remediation

See how members, linked applications and supported sharing exposure can move through one accountable security workflow.

Book a demo