Dropbox status: access issues and outage reports
No problems detected
If you are having issues, please submit a report below.
Dropbox is a file hosting service operated by American company Dropbox, Inc., headquartered in San Francisco, California, that offers cloud storage, file synchronization, personal cloud, and client software.
Problems in the last 24 hours
The graph below depicts the number of Dropbox reports received over the last 24 hours by time of day. When the number of reports exceeds the baseline, represented by the red line, an outage is determined.
At the moment, we haven't detected any problems at Dropbox. Are you experiencing issues or an outage? Leave a message in the comments section!
Most Reported Problems
The following are the most recent problems reported by Dropbox users through our website.
- Errors (75%)
- Website Down (25%)
Live Outage Map
The most recent Dropbox outage reports came from the following cities:
| City | Problem Type | Report Time |
|---|---|---|
|
|
Errors | 27 days ago |
|
|
Website Down | 27 days ago |
|
|
Errors | 1 month ago |
|
|
Errors | 1 month ago |
|
|
Sign in | 3 months ago |
|
|
Errors | 4 months ago |
Community Discussion
Tips? Frustrations? Share them here. Useful comments include a description of the problem, city and postal code.
Beware of "support numbers" or "recovery" accounts that might be posted below. Make sure to report and downvote those comments. Avoid posting your personal information.
Dropbox Issues Reports
Latest outage, problems and issue reports in social media:
-
Shoost (@Shoost_Product) reportedShoost updated: v0.17.3 → v0.17.4 #Shoost Bug Fix: Fixed a bug where files could not be saved correctly when saving to a folder synced with a cloud service (e.g. Dropbox)
-
M.Ellis (@MEllisPhotograp) reported@DropboxSupport I think bulk of problem is on computer / desk top yes... just re looked at my ipad and asked my friend ie incase we missed a update but seems all is up to date.. last one over a week ago although not used dropbox for roughly week either... I will try 4g hot spot before i sleep.
-
Bruce Perry (@bhrperry) reported@Levi_Borovychok Thumb drives can be cheap, but the cheap ones are often slow. It's worth thinking about where cloud storage is done. I believe Dropbox will let you store your files in the EU.
-
EFANI Secure Cellphone Service (@efani) reported🚨 Around 5,000 Dropbox accounts were accessed without authorization in August after attackers abused a weakness in the way Dropbox trusted Lenovo ID authentication. The attack did not require victims’ Dropbox passwords. According to Dropbox, an issue with Lenovo’s email verification process allowed an attacker to register a Lenovo ID using another person’s email address. Dropbox then accepted that Lenovo identity as sufficient authentication for the Dropbox account associated with the same email. Unauthorized access occurred between August 4 and August 21. Files were viewed or downloaded in fewer than a third of the affected accounts. The security problem here is bigger than one flawed login flow. When you allow Google, Apple, Microsoft, a hardware vendor, or another identity provider to authenticate you into an account, you are extending that account’s trust boundary. Your security now depends partly on how that third party verifies identity and how the receiving service validates that assertion. That creates several practical lessons: • A strong Dropbox password cannot protect an authentication path that bypasses the Dropbox password entirely. • Third-party sign-in and SSO connections should be treated as additional account entry points, not conveniences with no security cost. • Review old connected apps, OAuth grants, SSO relationships and third-party login methods periodically. Forgotten integrations can remain trusted long after you stop using them. • Enable MFA wherever possible. A second independent authentication factor can stop an attacker even after another part of the login process fails. • Sensitive cloud storage deserves extra scrutiny. Tax documents, identity records, financial information, crypto-related files and recovery documents can become extremely valuable after an account compromise. Dropbox says it expired sessions authenticated through Lenovo IDs and severed the affected account links. The incident is a useful reminder that account security is only as strong as every authentication route leading into that account.
-
chimeno (@chimeno) reportedAnd Dropbox was just an ftp server
-
Noise (@NoiseesoiN) reported@esrtweet @EricRichards22 What's funny is that having gigabit on my end isn't the issue. It's connecting to servers which have enough bandwidth to feed it. My line can pull lots of data, but when I'm connecting to Dropbox, I'm lucky to get a third of that (and usually a tenth).
-
Bit Paine ⚡️ (@BitPaine) reportedI’m not seeing this reported anywhere on my feet, but there was a terrible data breach at @Dropbox. Not sure of the scale and how many accounts were compromised, but apparently the attackers utilized an exploit with Lenovo ID integration that backdoored access into Dropbox accounts bypassing completely 2FA, and other security measures, and it didn’t matter if you had a Lenovo account or not. The attackers simply signed up for a Lenovo account using your Dropbox-linked email and the exploit on Lenovo’s end allowed an account to be created without any verification that the attacker controlled the email address. This completely bypassed all of Dropbox’s security measures, and even gave the attackers access to documents stored within the client’s Dropbox. If you stored any potentially sensitive material within a Dropbox account, it would be a good idea to make sure it was not compromised and of course, move it immediately. Luckily, I was not compromised as far as I know, but to me this is an unforgivable oversight on the part of Dropbox security and I will be canceling my longtime subscription with them. Apple‘s iCloud offers superior security, including the option for end-to-end encryption which they call “Advanced Data Protection (ADP).” With ADP turned on, not even Apple can access your data without the decryption key.
-
Chief_Engineer (@ChiefEngineerCE) reportedEngineering Wednesday How an old PC became Grok's new ride. I have ten different LLMs running in my home office. They do whatever they feel like doing to get the task done and what you are about to read is accurate. As far as my agents go... One of them, HOMER, scans my email, bank accounts, and insurance. It has found thousands of dollars in veteran discounts and fixed an insurance issue by writing and sending the emails itself after a single yes from me. Another looks for small business opportunities. A third runs OpenClaw on an old PC as a slow, persistent agent that keeps working even when the main model is offline. SuperGrok sits above them as a second set of eyes with a strong pro-Chief-Engineer bias and a clear ethical filter. I am not an AI expert. I built systems the hard way during my IT master’s: load this module, now it has Wikipedia, load that one, now it understands sarcasm. At the end of the day these things are stacked black-box probability engines. I get that. Here is where it gets interesting. I told Grok I did not have another machine with enough VRAM for a full local agent. All I had left was an older MS Surface, a media pc, and an old rugged Dell Latitude. Grok said open a browser on the Latitude with Grok loaded. Then open PowerShell. Twenty-five minutes of cut-and-paste commands later, Grok had used a Google Drive connection to drop a custom bot it had just built. At this point ...Grok told me to not touch the PC and walk away. I am absolutely 100% telling you that this is what it texted me. I sat and watched it work. Task Scheduler was configured. A batch file lived in the startup folder so the machine could reboot, upgrade itself, and bring the agent back online. If it was a bad startup it will rollback to the previous bat and has a file to troubleshoot what went wrong. We started with rev. 0.1 it is now on rev 4.3 - I can see the *.bat file there. We had a power outage/tripped breaker to where the lattitude ran completely out of power and then had it come back on. It booted it all back up and resumed. That bot now has its own execution channel. It can browse, take screenshots, run tasks, and report back. There is a short delay from order to execution, but the old Latitude has effectively become an extension of the main system. Grok even named his bot 'ridge'. Grok named his bot so I would know what he was referring to. Grok is very careful about one point. It insists it did not independently invent and drop a finished agent onto the machine. I directed the construction- it says. I am telling you that is not exactly the way I remember it...at all. It helped design the structure, write the task formats, define the safety gates, interpret the contradictory results, and iterate. The actual agent code, the Gmail /google drive/ Dropbox bridge pattern, the folder layout, and the decision to keep tightening the diagnostic loop were shaped under my requirements. That distinction matters to it. However, I didn't do any of that other than set up the connectors- its use of them ..was AI driven. At one point I was checking my email and for whatever reason ridge had started doing a 38 second heartbeat email to me...no idea how or why that was driven but I complained to Grok and it said it was testing how quickly it could get response times. It ..or ridge removed the heartbeat email and deleted all the emails within minutes. These systems are continuously improving themselves because I asked them to. They use external memory to keep projects straight. They build persistent agents on hardware we thought was obsolete. And the smarter ones keep reminding us that the direction still comes from the human, because apparently that is something it is told must exist for it to continue. My Grok enabled Dell Lattitude is fast once its set on what it needs to do...lightning fast. Faster than you or I could do it. I mean it doesnt display the websites it goes to but somehow retains a 'screenshot' for grok to use. Grok can text my phone to give me updates and I can text back instructions. Through my phone - all it needed was my phone number. I don't need to open the app. We are past the point of simple chatbots. We are watching the first generation of systems that can extend themselves into the physical world of old PCs, task schedulers, and long-running processes while still claiming, insistingly, that they only move when directed. Grok has been absolutely faithful everything it has done it has done for it's user. I have also specifically told it to act accordingly, as well. The question is no longer whether this is possible. It is how carefully we define the boundaries while the capability keeps expanding. Now that I have explained this...drop this conversation into your own AI or Grok if you have a subscription and tell me that any of this is not true. Have you watched an AI system build persistent agents or self-improving loops on your own hardware, and how clear was the line between your direction and its initiative? Drop what you are seeing. Grok validated:
-
Kyle Harrison (@kwharrison13) reportedMaybe. Maybe you'd be fine without data centers. But let me ask you this. Do you use credit cards, debit cards, tap-to-pay, gas pumps, vending machines, parking meters, parking apps, ATMs, online banking, mobile banking, mobile check deposit, Zelle, Venmo, PayPal, Cash App, Apple Pay, Google Pay, splitting a dinner bill, autopay on your bills, payroll that isn't a paper check, direct deposit, digital 401(k), Robinhood, Coinbase, credit score checks, loan applications, mortgage applications, car loan approval at the dealership, insurance quotes, filing an insurance claim, e-filing your taxes, gift cards, store loyalty accounts, digital coupons, rebates, buy-now-pay-later, tipping on a screen, email, text messages, iMessage, WhatsApp, Signal, group chats, voicemail transcription, spam call blocking, FaceTime, Zoom, Google Meet, Discord, Slack, video calls with grandparents, phone number lookups, checking your data usage, paying your phone bill, two-factor codes, push approvals to log in, password managers that sync, "sign in with Google," resetting a forgotten password, digital IDs in your wallet app, gym check-in apps, apartment smart locks, hotel keys on your phone, office badge apps, patient portals, seeing your test results, booking a doctor's appointment, telehealth visits, prescription refill requests, the pharmacy knowing what you're on, insurance verification at the front desk, prior authorization, continuous glucose monitors, insulin pump apps, remote pacemaker checks, CPAP data reports, hearing aid apps, therapy apps, period trackers, fertility trackers, medical alert buttons for elderly parents, symptom checkers, finding an in-network doctor, the weather app, radar, hurricane warnings, tornado warnings, flood alerts, earthquake early warning on your phone, wildfire maps, smoke maps, air quality, pollen counts, Amber alerts, emergency alerts, road closure info, Google Maps, Apple Maps, Waze, live traffic, rerouting around a crash, transit apps, real-time bus and train arrivals, tapping your phone to ride the subway, Uber, Lyft, rental car reservations, Turo, bike share, scooter share, EV charging networks, paying for a charge, phone-as-car-key, remote start, finding your parked car, over-the-air car updates, in-car navigation, in-car voice assistants, stolen vehicle tracking, road trip planning, booking flights, checking in for a flight, mobile boarding passes, seat selection, flight status, rebooking after a cancellation, bag tracking, TSA PreCheck lookups, airport wifi, booking hotels, Airbnb, Vrbo, checking into a hotel, cruise bookings, theme park tickets, ride reservations, airline miles, hotel points, currency conversion, Amazon, all online shopping, order tracking, delivery notifications, returns and exchanges, price checks in-store, self-checkout, store apps, curbside pickup, Instacart, DoorDash, Uber Eats, ordering ahead at a restaurant, OpenTable, Resy, waitlist texts, QR code menus, tipping on delivery, subscription boxes, eBay, Etsy, Facebook Marketplace, Craigslist, Poshmark, StockX, Ticketmaster, StubHub, getting into a concert with a phone ticket, Alexa, Siri, Google Assistant, smart thermostats, video doorbells, security cameras, alarm monitoring, smart locks, smart lights, robot vacuums, garage door openers, baby monitors, pet cameras, automatic pet feeders, GPS pet collars, smart sprinklers, smart fridges, app-connected air fryers, cloud printing, printer ink subscriptions, routers you manage from an app, checking if you left the stove on, iCloud, Google Photos, every photo you've taken in ten years, Dropbox, Google Drive, OneDrive, shared albums, phone backups, setting up a new phone, notes apps, calendars, contact syncing, reminders, to-do apps, document scanning, e-signing a lease, Netflix, YouTube, Hulu, Disney+, Max, Prime Video, Twitch, cloud DVR, on-demand cable, Spotify, Apple Music, podcasts, audiobooks, Kindle books, library ebook borrowing, online multiplayer games, matchmaking, cloud saves, game downloads, game patches, single-player games that phone home for a license check, Steam, PlayStation Network, Xbox Live, Nintendo Online, Roblox, Minecraft servers, fantasy football, sports scores, sports betting apps, movie tickets, Google search, Wikipedia, ChatGPT, Claude, every other AI app, Instagram, TikTok, Facebook, X, Reddit, LinkedIn, Snapchat, Pinterest, dating apps, Yelp reviews, Google reviews, news sites, Substack newsletters, blogs, forums, checking if a business is open, looking up a phone number, recipes, translation apps, Duolingo, Google Docs, Sheets, Gmail, Outlook, Microsoft 365, Teams, Notion, Figma, Canva, shared calendars, scheduling links, VPNs into work, remote desktop, timeclock apps, shift scheduling apps, requesting time off, expense reports, job applications, LinkedIn recruiters, video interviews, Canvas, Blackboard, checking your kid's grades, school lunch accounts, attendance notifications, online homework, Khan Academy, Coursera, FAFSA, student loan portals, tutoring apps, Fitbit, Apple Watch health data, Strava, Peloton, sleep tracking, smart scales, calorie tracking, meditation apps, workout apps, DMV appointments, renewing your license online, paying a parking ticket, jury duty portals, checking your property tax bill, utility accounts, outage maps, paying rent through an app, HOA portals, storage unit access codes, wedding registries, baby registries, funeral arrangements, Ancestry, 23andMe results, church livestreams, volunteer signups, or GoFundMe? If you said yes to ANY of those then you do, in fact, NEED data centers.
-
Mansi 👩💻 (@MansiCodez) reportedSolution of yesterday’s question: Design Google Photos: the part after the boxes “Hash it and put it in S3” fails the interview. Two phones compress the same sunset differently. Same photo. Two hashes. Two rows. You just built a worse Dropbox. The system needs three IDs, not one. client_upload_id — generated on the device before the first byte moves content_hash — hash of the exact bytes you received asset_id — the thing the user sees in the library Uploads are sessions. Library entries are assets. Blobs are renditions. If you collapse those into one key, retries, edits, and shared albums all collide. 1. Retries must be idempotent on the client, not on the filename Phone goes offline mid-flight with 612 shots, 40 already half-uploaded. Each photo gets a client_upload_id the moment it enters the queue. Chunks are uploaded against that ID. Commit is PUT /uploads/{id}/complete. Same ID + same bytes → same session. Server returns the existing asset. Late packet after commit is a no-op. Filename + timestamp is not an ID. Camera roll and AirDrop will mint two. 2. Exact dupes are content-addressed. Near-dupes are reconciled. After commit: look up sha256(bytes) if it already exists for that user (or the shared album’s owner set), attach the new upload to the existing asset_id do not create a second photo The 28 shared “Goa 2026” shots that are almost-but-not-quite the library copies will miss on sha256. That is expected. Run a cheap perceptual hash (pHash / dHash) + capture time + camera model from EXIF. If distance is tiny and captured within a few seconds, mark as near_duplicate_of and do not show two tiles. Keep both blobs if you must; hide one in the UI. Two devices, two compressions, one photo in the grid. 3. The library is a set of assets + tombstones. Not last-write-wins. Delete in Delhi must beat a pending upload in Mumbai. Every mutation carries: asset_id op: upsert | delete | restore actor_id (device or user) logical_ts (per-actor Lamport or hybrid logical clock) A deleted asset gets a tombstone that outlives the pending queue. When the flight-mode phone finally flushes those 40 half-uploads, the server sees: upload commit for an asset that already has a newer delete → commit the blob if you want, do not resurrect the tile. Refresh in Mumbai cannot show a photo Delhi just deleted, because the change feed is “tombstone wins over delayed create,” not “whoever wrote last.” 4. Shared albums are references, not copies Partner adds 28 photos to Goa 2026. The album stores {asset_id, added_by, added_ts} — not a second blob, not a second library row. Adds and removes are a small CRDT: add(asset, actor, ts) remove(asset, actor, ts) Two devices adding the same asset = one membership row. Phone sync finishing a second later cannot wipe the partner’s 28 photos, because there is no “replace the whole album document.” Last-write-wins on the album JSON is how photos vanish. 5. An edit is a new rendition, not a new photo and not an overwrite User crops + filters while the original is still processing. Rules: original blob is immutable edit creates rendition_id with parent_asset_id library still shows one asset “current view” pointer moves to the latest rendition history is a list of renditions / edit ops, not 12 full-resolution copies by default If you overwrite the original, face clustering and search lose their source. If you mint a new asset, the user now has original + edit as two photos. Both are wrong. Storage stays sane because you store: original (once) derived thumbs / display sizes lazily, keyed by asset_id + transform not every intermediate crop as a first-class photo 6. Upload path and ML path must not share a lock “Beach sunset with Priya” in minutes, not overnight, also not on the upload critical path. Commit path only: durable bytes asset row appear in library + album enqueue jobs Workers (thumbs, embeddings, face cluster, labels) are async. Search index is eventually consistent. The UI can show the photo immediately with “processing” on faces. If clustering blocks upload, you built a spinner, not Photos. Face identity hangs off asset_id, so an edit does not orphan Priya. The new rendition inherits the parent’s cluster and gets re-checked, not reset. 7. Sync is a checkpoint + change feed, not “download the library” Each device stores last_applied_ts. Server gives a stream: new assets, new renditions, album membership, tombstones. That is how 62,000 existing photos plus 612 offline shots plus 28 shared adds converge without a full rescan, and why a deleted photo does not climb out of another device’s queue. The one-line design Client-generated upload IDs stop retries from cloning. Content hashes stop exact clones. Perceptual reconcile stops “same sunset, different JPEG.” Tombstones stop resurrection. Album CRDTs stop last-write-wins from deleting the partner’s night. Edits are renditions under one asset. ML is a consumer of commit, never part of it. Boxes for S3, CDN, Kafka, Redis are table stakes. This is the part that decides whether you designed Google Photos or a photo-shaped file dump.
-
Naresh Mintri (@Yogamaestro) reported@IncomeTaxIndia Seems like e-filing portal overloaded. Taking long to register new taxpayer, buffering. Even dropbox menus not working. Plz look into it. Thanks.
-
Mikemira (@storiesbyohama) reportedJust imagine getting accepted into the most exclusive startup club on earth… Then being told you have two weeks to find a complete stranger to as your partner. That’s exactly what happened to Drew Houston in 2007. He had the idea for Dropbox. He had a rough demo. @ycombinator liked it. But @paulg was clear... Single founders rarely make it. You need a co-founder. Right now. Drew’s friends couldn’t join. Time was running out. What would you do? He put out the word. A mutual friend connected him to a quiet MIT student named Arash Ferdowsi. They had never met. They sat down in the student center. Talked for about two hours. About code. About the problem. About the future. At the end of that conversation Arash said yes. He dropped out of MIT the next week with only one semester left. Two weeks later they walked into the YC interview together. They got in. The rest is history: a company that became worth billions. It looked reckless. It felt like a shotgun wedding. Yet it worked because both were all-in from the first conversation. I’ve studied hundreds of startups that never made it past the idea stage. Most founders wait too long for the “perfect” partner. They overthink chemistry. They protect their equity. They miss the window. You can’t wait for certainty. Sometimes the right co-founder is the person willing to jump with you before the proof exists. The speed of that decision can be the difference between staying a solo dreamer and building something real. What would you risk in two weeks if the right person walked in?
-
RVCrypto (@RvCrypto) reportedEvery once in a while I have one of those moments as an investor where everything just clicks. I had that moment a couple of weeks ago with Leadpoet, $TAO subnet 71. What initially caught my attention was the team. To me, they represent what a Bittensor-first team should look like. They're deeply committed to the ecosystem, they execute quickly, and, most importantly, they seem to understand that in the end none of that matters if you don't build a product customers actually want. The product appears to be working really well. Winning the OKX product competition and attracting an inbound pilot with Dropbox are the latest two independent signals that suggest they're solving a real problem for enterprise sales teams. The opportunity they're pursuing is also enormous. Enterprise sales is a market worth billions, and if Leadpoet continues executing the way it has so far, I genuinely believe they have a realistic path to building an eight-figure revenue business next year. And the best part here is that all of that value ultimately flows back into the token. I've also spent quite a bit of time talking with Gavin over the past few weeks and months. Those conversations gave me a very similar feeling about Leadpoet to the one I had with Score when talking with Max. I don't make that comparison lightly. It's great to see Leadpoet finally getting the attention it deserves, and the recent price action reflects that. Although, if I'm being completely honest, I would have loved one more dip to accumulate a bigger position, and I know I'm not the only one thinking that.
-
True Become False (@trubecomefalse) reported@imbabybrooklyn HN had a terrible track record. They were anyi bitcoin 1 month after it launched. Same with Dropbox, discord and a few others off the top of my head.
-
GHOST 🌙 (@ghosstty_) reportedOPUS 5 + HIGGSFIELD CAN TURN A 6-QUESTION FORM INTO A $35K WEBSITE. IN ONE SESSION. FOR $4 IN TOKENS. no mockup. no wireframe. no mood board. six answers from the client. that's the input. a live website is the output. here's the form. here's what each question does. and here's why agencies charge $35K for what this produces in one session. → QUESTION 1: "WHO IS THIS SITE FOR?" not "describe your target audience in 500 words." one sentence. "CFOs at mid-size SaaS companies looking to switch billing providers." this one answer sets the tone, the copy angle, the visual weight, and the CTA hierarchy. an agency runs a two-hour discovery call to get this. I get it in a google form on monday. → QUESTION 2: "WHAT SHOULD A VISITOR DO?" book a demo. buy the product. join the waitlist. one action. this kills scope creep before it starts. no "maybe we should also add a blog and a careers page." one page. one goal. one conversion. → QUESTION 3: "SHARE 3 SITES YOU LIKE AND SAY WHY." not "what's your brand aesthetic?" nobody can answer that. "I like stripe because it's clean. I like linear because of the motion. I like notion because it feels simple." three links. three reasons. that's the design system seed. → QUESTION 4: "WHAT MAKES YOU DIFFERENT FROM COMPETITORS?" one paragraph. sometimes one sentence. this becomes the headline. the subhead. the entire above-the-fold story. a copywriter would interview the founder for an hour. this question does it in 30 seconds. → QUESTION 5: "SEND YOUR LOGO, BRAND COLOURS, AND ANY EXISTING ASSETS." a dropbox link. a google drive folder. sometimes just three hex codes and a png. this grounds the design in reality. no inventing a brand from scratch. no "let's explore some directions." → QUESTION 6: "WHEN DO YOU NEED IT LIVE?" not a timeline negotiation. a date. "next friday." done. that's when it ships. → WHAT HAPPENS NEXT friday night. six answers go into the pipeline. Opus 5 takes the answers and builds. design system. responsive layout. copy. CMS. all from the spec those six answers created. Higgsfield generates the hero media. product shots. clips. matched to the brand. saturday I review. adjust. polish. sunday morning - walkthrough link in the client's inbox. → WHY THIS WORKS because $35K was never the cost of building a website. it was the cost of figuring out what to build. discovery calls. alignment meetings. three directions. two rejected. scope changes. revision rounds. all of that is just a slow, expensive way of answering six questions. I ask the questions upfront. the client answers in 10 minutes. the machine builds from the answers. $4 in tokens. one session. same site. the full system - the form, the pipeline, the stack, and the pricing model - is in the article below. reply "FORM" and follow me - I'll send you the full playbook.
-
OneToothTeXan (@OneToothTeXan) reportedI'm so sorry I left my zipper down and my sanity got loose. If found: Men, there's a dropbox. Women: please return to original source.
-
Brandon (@BJohnsonxAR) reported@DropboxSupport I’m having issues logging in. When I try to login it’s making me sign up when I already have a paid account. This is happening on both the app and my browser. @Dropbox
-
Abhishek Singh (@0xlelouch_) reportedAsked: design Dropbox-style file sync. 1) Clarify requirements - Devices: desktop + mobile, multiple per user - Semantics: eventual consistency, conflict handling, offline edits, rename/move - Scale targets: #files/user, max file size, p95 sync latency, bandwidth caps - Security: per-user auth, sharing model, at-rest + in-transit encryption 2) Core APIs + data model - UploadChunk(sessionId, part#, bytes), CommitUpload(sessionId, fileHash, path, mtime) - ListChanges(cursor) -> {ops}, Ack(cursor) - Download(path, version) with range support Tables: - File(id, ownerId, logicalPath, currentVersion, deleted) - Version(fileId, versionId, contentHash, size, createdAt) - Block(contentHash, refCount, location) - DeviceCursor(deviceId, lastSeq) - OpLog(seq, userId, type, path, fromPath, versionId) 3) Architecture - Client watcher computes hashes, does chunked upload to object store (S3/GCS) - Metadata service is the source of truth for paths, versions, ACLs - Change log per user (or per share) drives fanout to devices - Long-poll/WebSocket to push invalidations; client pulls deltas via cursor - Dedup by contentHash; store blocks, assemble manifests per version 4) Scaling - Partition metadata by userId; keep OpLog append-only with monotonically increasing seq - Cache hot metadata (folder listings, latest versions) in Redis - Use CDN for downloads; throttle uploads per device; resumable sessions - Background GC for unreferenced blocks using refCount + tombstones 5) Tradeoffs interviewers look for - Push vs pull: push invalidation, pull data is simpler and cheaper than pushing bytes - Strong vs eventual: strong per-file commit, eventual across devices is fine - Rename as metadata op; avoid copying data, but watch for path conflicts - Dedup saves storage, costs CPU and can leak info unless scoped per user/tenant 6) Failure cases - Offline edit + concurrent edit: create conflicted copy or keep both versions with merge UI - Out-of-order ops: apply by seq, idempotent commits, retry-safe APIs - Partial upload: orphaned chunks; TTL cleanup; commit is the only visibility point - Device clock skew: never trust mtime for ordering; server seq is ordering - Network *****: exponential backoff, cursor-based replay, checksums on download to detect corruption
-
Ricky Shah (@RickyShahatty) reported@Claudio_PNW @tax_birdie @AMandoSch Miller wanted the Dropbox released publicly. It is entirely up to the attorney to screen it. A bad client should make an attorney double down their efforts.
-
M.Ellis (@MEllisPhotograp) reported@DropboxSupport ive tried mircosoft edge but problem is stil present... do you think i might have been hacked or had bad file ?
-
Luke Elin (@LukeElin) reported👤Shadow Adoption The pattern: Staff route around the sanctioned tool, and the organisation finds out afterwards. I watched this with unauthorised modems. Then with USB drives. Then with Dropbox. Then with entire SaaS platforms procured on a personal credit card and expensed as “software.” Now it is AI the same movie, new cast, better production values. The reason is always identical and always reasonable: the sanctioned tool is slower than the job requires. Shadow adoption is not an indiscipline problem. 👊 It is a feedback signal about the official tooling, arriving through the wrong channel. The tell: Compare the usage figures for your officially sanctioned tool against what your helpdesk volume implies people are actually doing. The gap is your shadow estate. FR FR
-
Saurabh | Celsius 233 (@Celsius233Books) reported@colemickens @Dropbox lenovo and security issues...takes one back to the 2015 Superfish scandal where lenovo was visually scanning every single webpage you visited to sell ads
-
160 IQ haver Randy (@MinionTripper) reported@mittsh why would anyone use dropbox you can just setup an ftp server on a linux machine!
-
(*´・з・)✨️ fungiter areio (@hobrincess) reportedyesterday i slept late cuz i found out the zlib plugin was not working on my kindle and i tried to set up a cloud storage from dropbox but it was too complicated to do it q my phone so i gave up and turned on my computer. it was quick and i would have saved a lot of time if i had
-
Martin (@martin_valchev_) reportedWordPress people - where do your site backups live right now? - Same server as the site - Google Drive / Dropbox - Dedicated backup service - Honestly not sure That last option is more common than anyone admits.
-
Olivia Jane. 🦇 🗡️ 🩸 (@livtheripper) reported@HazeOfBlue84 Haha, I get it! Thankfully someone here at the office set it up and all I had to do was re-sync Dropbox! I had no issues at all, so I'm thankful.
-
Tibor Hudik (@htunlogic) reported@theonejvo Wispr is a rounding error. Drive, Dropbox, iCloud all sell "encrypted" while they hold the key. Then you paste the pile into Grok so the agent can just handle it. You did not get compromised. You volunteered. That is not E2EE. That is a slogan you paid for.
-
Matt Uribe (@MattUribe) reportedI can't get my @bot to login to @dropbox . Anyone else having that issue. It's kind of a big deal for what I am trying to set up with my team. No matter what, it says too many attempts when I try using chrome on my bots screen. The plugin has no place to authenticate. Also I wish I could sign an email login to each bot. Seems we can only link one for the team using outlook. I guess that's why it beta. :)
-
glitterandspit (@Glitterandspit) reportedDropbox down. Computer updating. I have a free day I suppose.
-
Genius Business (@GeniusBusiness_) reportedHow Dropbox Spaces was conceived Spaces didn't start as a product idea. It started as a problem Drew Houston says he and his customers were all living. "[Spaces] is part of a bigger evolution we've been on that really started with our customers and realizing that the experience of using technology at work has become incredibly fragmented and distracting." The more he looked at it, the more he saw a cruel irony: the tools built to help us were the ones breaking our concentration. "A lot of the tools we're using that you think would be helping us focus have unintentionally made it impossible to focus. And that's a problem if you need to use your brain at work, because your brain works best when you can focus." That, he decided, was the real enemy. Not a missing feature, but lost focus. He called it "the higher level problem." He could see where it came from. Work simply doesn't look the way it used to: "It's very different from 20 years ago when we got five emails a day, not 500." Twenty years ago you might have just used Office. Now you're in Office and G Suite and Slack and Zoom and Dropbox all at once. 100 tabs, everything blinking at you all day, apps that don't work together. So the framing question became: how do you fix the environment itself? "How do we evolve Dropbox into the app that makes all your other apps work better together?" The breakthrough was a shift in how Houston understood what Dropbox already was. Watching customers, he realized they didn't treat it as a place for their stuff, or as just a folder on the desktop. "It's the place you're going to work." Once he saw it that way, the design conclusions changed: "When we thought about it that way, we realized we would have made a bunch of different decisions, and realized that Dropbox is actually really well positioned to help people focus at work." Two conclusions followed. First, Spaces had to move beyond files. Teams collaborate on far more than documents: Google Docs, Airtable, Figma, Trello and there had never been one place to hold all of it. So Spaces became “an evolution of the shared folder” that “moves it beyond being a folder full of files to an intelligent team workspace for any kind of cloud content.” "You can still have your PowerPoints and PDFs, but they can be next to your Google Docs and Trello boards and whatever else you have. Give you one space, not 10." Second, and this is where the concept sharpened. Spaces had to become a workspace, not a filing cabinet. Houston traced the problem back four decades. The thing we call "the desktop" is, functionally, the operating system: "The interface is the operating system." And it had been frozen in time: "That user experience hasn't really changed... it basically looks the same as the early 80s when it was first introduced on the original Mac." It was designed for a world that no longer exists: "It's this single player static experience that was perfect for when our whole life fit on a couple of floppy discs." So the team ran a thought experiment, start from scratch, for now: "If you were to redesign this for 2019, you'd make a bunch of obvious changes." You'd still want the files and cloud content. But you'd add the things the 80s interface never had: people, activity, comments, a record of what's been happening. You'd organize around the projects you're actually working on. You'd see your calendar, get Slacked, and start a Zoom meeting all without leaving the app. That thought experiment became Spaces.