In File Storage, you can share content not only with users in your workspace but also with entire workspaces in the same tanent. You can also use SAS keys to grant time-limited, system-level access and they are ideal for external tools and integrations.
This article explains how cross-workspace sharing works and when to use SAS keys instead.
Share items with users or entire workspaces
You can share files and folders with:
Individual users, or
Entire workspaces (within the same tenant)
To share:
Go to File Storage and select the three-dot menu next to the file or folder.
Choose Share.
Enter the recipient’s email address or click the people icon to select a workspace.
🔒 You can only share with users or workspaces in the same tenant as your workspace.
Where shared items appear
If shared with a user, they will see it in the Shared with me tab under Data Catalogue.
If shared with a workspace, all its members will see it in File storage under the Shared by other workspaces tab.
🗑️Note: Removing a shared item from a recipient’s view does not delete it from the original workspace.
Control whether they can re-share
During the sharing process, you can allow the recipient to re-share the item within the Data Workbench environment:
Tick the tick box:
✅ Allow recipients to directly share
When enabled, the recipient can share the item but only with the same access level they received.
🔐 This setting only applies to sharing within the Data Workbench platform.
When to use SAS keys instead
If you want to provide access for external tools, systems, or applications, rather than individual users, use a SAS key.
SAS keys (Shared Access Signatures) are ideal for machine-to-machine access because they:
Can grant access to files, folders, or the entire File storage of a workspace
Are system-friendly (usable by tools like Azure Storage Explorer)
Are time-limited (access expires automatically)
Do not require a Veracity account
✅ Use sharing for people, and SAS keys for systems and applications.
🔐 Best practice: Always use the minimum required access level and the shortest necessary expiration period. You can revoke keys at any time.