1 What data should be secured?
Jonathan LeBlanc • Director of Developer Advocacy @ Box • Twitter: @jcleblanc • Email:
[email protected]
Application Keys (app identity)
Public / private keys, application access keys, or
any other app authentication keys.
Access Tokens (app access)
Generated access tokens, pre-authorized access
tokens, or any other string that grants privileged
access to resources.
Sensitive Information
Any sensitive non-anonymized, unencrypted,
information that can be attributed back to a user.