Akeeba Backup for WordPress

#28137 Limit dropbox access to one dir only

Posted in ‘Akeeba Backup for WordPress’
This is a public ticket

Everybody will be able to see its contents. Do not include usernames, passwords or any other sensitive information.

Environment Information

WordPress version
PHP version
Akeeba Backup version

Latest post by on Thursday, 17 August 2017 17:17 CDT
Hello. I'm using post procesing to send backups to dropbox. It's great feture. But..
Is there a way to limit Dropbox access to one dir only? I know I can set dir to upload backup but app has still full access to all dropbox files.
I have there many important data and with no such limit every website has full access to all files in my accout. I think it's huge security risk. Aspecially when I use it on many clients websites.

Please consider developing such feature if it's possible.

Akeeba Staff
I'm afraid you'd have to raise that feature request with Dropbox, not Akeeba. We can only use the public API they publish. The public Dropbox API, as it stands, allows you to link the entire Dropbox account to an application.

The other alternative offered is an application directory, over the location of which you have no say. However, this solution has two problems.

First, as I said, you don't have a choice over where this folder is located which defeats the purpose you want it for: all backups would end up in the same folder for everyone.

Second, it's an either/or proposition, meaning that we can either offer access limited to the one fixed directory OR let you define the directory you want to use. We cannot give you a choice between the two.

As a result it didn't make sense using the app-specific folder approach. It'd be more limiting and wouldn't offer any advantage to our clients.

I doubt that Dropbox would ever offer the feature you are interested in. From their business perspective one Dropbox folder = one individual (person). The solution they would prefer you to follow is to create a different Dropbox account for each one of your clients. Then you can share the backup folder for that client with your account so that you have centralized control over the backups and your clients are isolated from one another.

However, as I already said, this is something you have to take to Dropbox. We can't offer access control on your Dropbox account that Dropbox itself doesn't offer because, well, we're not Dropbox Inc :(

Nicholas K. Dionysopoulos

Lead Developer and Director

🇬🇷Greek: native 🇬🇧English: excellent 🇫🇷French: basic • 🕐 My time zone is Europe / Athens
Please keep in mind my timezone and cultural differences when reading my replies. Thank you!

System Task
This ticket has been automatically closed. All tickets which have been inactive for a long time are automatically closed. If you believe that this ticket was closed in error, please contact us.

Support Information

Working hours: We are open Monday to Friday, 9am to 7pm Cyprus timezone (EET / EEST). Support is provided by the same developers writing the software, all of which live in Europe. You can still file tickets outside of our working hours, but we cannot respond to them until we're back at the office.

Support policy: We would like to kindly inform you that when using our support you have already agreed to the Support Policy which is part of our Terms of Service. Thank you for your understanding and for helping us help you!