Founding customer offerAnnual for $1,895 instead of $2,995, price locked for as long as you stay subscribed.20 of 20 places left · ends 31 OctoberClaim it
SShareShiftby Cameron Shields
Security

We are not a data processor for your content.

ShareShift is worker-only. The application runs on machines you control, authenticates to Microsoft 365 as an app registration you own, and moves content directly from your source to your destination. Nothing of yours passes through our servers.

What our licence server never receives

What it does receive

This is enforced in the worker's code, not by policy: the client that talks to the licence server has no access to migration state, and the server's schema has no columns to hold it. The full contract is published in the repository's control plane documentation.

Where your data goes instead

Migration jobs use Microsoft's own SharePoint Migration API and Microsoft Graph. Content is encrypted by the worker with a per-job key and uploaded to Azure storage containers that Microsoft provisions inside your destination tenant. Job state, logs and reports are written to a local folder on the worker.

Authentication

You create the Entra app registration and its certificate. The private key stays on your worker; we never see it and cannot use it. The permissions the app needs, and why, are listed in the setup guide. Consent is granted by your Global Administrator and can be withdrawn at any time from the Entra portal, which stops ShareShift immediately.

For your security review

Questions for a security questionnaire: shareshift@cameronshields.co.uk.