Box Developer Documentation

FedRAMP

FedRAMP

Overview

FedRAMP is a certification program that allows federal agencies to use cloud providers for increasingly secure/sensitive government or government-adjacent data.

FedRAMP defines three categories regarding levels of security, Low, Moderate, and High.

The higher the security level the more restrictions are in place.

Box is currently certified as FedRAMP Moderate.

Considerations

In order to be FedRAMP compliant, your administrator must setup Box in very a very specific way. It is possible that the administrator has further restricted access to Box functionalities.

Consult with your administrator to identify security restrictions in place that might affect the usage of the API.

API usage in FedRAMP

For FedRAMP compliance, you may use the below URLs for API entry points.

FedRAMP Moderate
account.box.com
api.box.com
upload.box.com
dl.boxcloud.com
realtime.services.box.net